Wednesday, March 6, 2019

PREVENTION AND IDENTIFICATION OF RANSOMWARE


What is Ransomware ?

'Ransomware' is a type of malware that attempts to extort money from a computer user by infecting and taking control of the victim's machine, or the files or documents stored on it. 

Typically, the Ransomware will either 'lock' the computer to prevent normal usage, or encrypt the documents and files on it to prevent access to the saved data.

Types of Ransomware

  • Encryption Ransomware
  • Lock Screen Ransomware 
  • Master Boot Record (MBR) Ransomware 

How to prevent Ransomware

  • Keep all of the software on your computer up to date. 
  • Make sure automatic updating is turned on to get all the latest Microsoft security updates and browser-related components (Java, Adobe, and the like).
  • Keep your firewall turned on.
  • Don't open spam email messages or click links on suspicious websites. (CryptoLocker spreads via .zip files sent as email attachments, for example.)
  • Download Microsoft Security Essentials, which is free, or use another reputable antivirus and anti-malware program. 
  • If you run Windows 8 or Windows RT, you don’t need Microsoft Security Essentials.
  • Scan your computer with the Microsoft Safety Scanner. 
  • Keep your browser clean.
  • Always have a good backup system in place, just in case your PC does become infected and you can’t recover your files.


Identifying the Ransomware

Most commonly, ransomware is saved to one of the following locations:

  • C:\Programdata\(random alpha numerics).exe
  • C:\Users\(username)\0.(random numbers).exe
  • C:\Users\Username\AppData\(random alpha numerics).exe

No comments:

Post a Comment