Page 1 of 4 1234 LastLast
Results 1 to 15 of 57

Thread: Help please. Cryptowall 3.0 bit me.

  1. #1

    Help please. Cryptowall 3.0 bit me.

    My personal desk top got infected tonight. Im working from a tablet right now. I thought I stopped the opening of that zip file but obviously didnt. Im not about to click any of their links or download their special SW. Ive already screwed up once tonight. I dont know how high their ransom is, but Im guessing that even if I got my data back Id have backdoors and spyware installed all over the place. This computer is about 4 yrs old, running Vista. I backed up a few months ago and, while inconvenient, could probably live without the data Im losing.

    Is there a straight forward way to recover - like go back to my last restore point? Else, I might just go buy a new machine for $500.

    Id really appreciate your advice on how to correct this.

    Thanks guys.
    Fred

  2. #2
    Join Date
    Mar 2009
    Location
    Red Deer, Alberta
    Posts
    918
    I have a couple of these sites and just hit ctrl>alt>delete, log off and then reboot. Not sure if it will work for all sites though...
    Funny, I don't remember being absent minded...

  3. #3
    Quote Originally Posted by Keith Westfall View Post
    I have a couple of these sites and just hit ctrl>alt>delete, log off and then reboot. Not sure if it will work for all sites though...
    Thanks Keith. Im bitten real good. Rebooting didnt help. (Sigh)
    "All that is necessary for the triumph of evil is that good men do nothing."

    “If you want to know what a man's like, take a good look at how he treats his inferiors, not his equals.”

  4. #4
    Was your backup drive attached when you got hit?

    If not, I'd suggest secure-erasing the drive and then restoring your backup.

  5. #5
    Quote Originally Posted by Phil Thien View Post
    Was your backup drive attached when you got hit?

    If not, I'd suggest secure-erasing the drive and then restoring your backup.
    Thanks Phil. It was not attached - one good thing! I appreciate your advice.
    Fred
    "All that is necessary for the triumph of evil is that good men do nothing."

    “If you want to know what a man's like, take a good look at how he treats his inferiors, not his equals.”

  6. #6
    Join Date
    Feb 2003
    Location
    South Jersey
    Posts
    1,571
    I loaded some software my Vista PC didn't like, wasn't a virus but got a Blue screen when I rebooted. I did a System Restore from Safe Mode and everything was good again. Do a Google search to see how to do a System Restore for you computer as each one is a little different. You won't lose anything when do this except programs that got loaded (i.e Virus) after the date of the restore you pick.

  7. #7
    Quote Originally Posted by Peter Stahl View Post
    I loaded some software my Vista PC didn't like, wasn't a virus but got a Blue screen when I rebooted. I did a System Restore from Safe Mode and everything was good again. Do a Google search to see how to do a System Restore for you computer as each one is a little different. You won't lose anything when do this except programs that got loaded (i.e Virus) after the date of the restore you pick.
    Thanks Peter!
    "All that is necessary for the triumph of evil is that good men do nothing."

    “If you want to know what a man's like, take a good look at how he treats his inferiors, not his equals.”

  8. #8
    Join Date
    Feb 2003
    Location
    Mtl, Canada
    Posts
    2,379
    Quote Originally Posted by Frederick Skelly View Post
    My personal desk top got infected tonight. Im working from a tablet right now. I thought I stopped the opening of that zip file but obviously didnt. Im not about to click any of their links or download their special SW. Ive already screwed up once tonight. I dont know how high their ransom is, but Im guessing that even if I got my data back Id have backdoors and spyware installed all over the place. This computer is about 4 yrs old, running Vista. I backed up a few months ago and, while inconvenient, could probably live without the data Im losing.

    Is there a straight forward way to recover - like go back to my last restore point? Else, I might just go buy a new machine for $500.

    Id really appreciate your advice on how to correct this.

    Thanks guys.
    Fred
    Can you wipe the hard d rive and reinstall windows? Do you have the original install disk? The cryptovirus infections are difficult and a ransom is usually demanded to unlock the computer. If you can go back to a restore point then maybe it will work again. But with your backup files, as was mentioned, are safe but do not connect the external drive until the virus is gone.

  9. #9
    Join Date
    Feb 2003
    Location
    Mtl, Canada
    Posts
    2,379
    or possible this youtube video may be of some help...
    https://www.youtube.com/watch?v=gPelrlpQIJg

  10. #10
    Join Date
    Feb 2014
    Location
    Lake Gaston, Henrico, NC
    Posts
    9,023
    Reboot in safe mode. When you turn the computer back on, keep hitting F8 until safe mode is available. You might have to reboot several times until this is successful. Select Safe Mode with Networking so you can use the internet. Download Spyhunter and run it to clear the virus.

    edited to add: Sorry I missed the Vista part of the original post. I don't know anything about that.
    Last edited by Tom M King; 04-03-2015 at 11:12 AM.

  11. #11
    Buy a new drive (they're cheap) and restore to that.

    All of this other advice is going to do absolutely nothing for CryptoWall. Those files on that drive are gone...finito...no more. Getting rid of the virus will do zippo to get the data back. If you'd like to, keep the drive around and wait. They may find these guys and gain access to the private keys, just like they did with CryptoLocker, and then you can get the data back.
    Last edited by John Coloccia; 04-03-2015 at 8:50 AM.

  12. #12
    Join Date
    Jun 2006
    Location
    The Hartland of Michigan
    Posts
    7,628
    Quote Originally Posted by John Coloccia View Post
    Buy a new drive (they're cheap) and restore to that..
    ^^This^^
    What happens is the boot sector gets the infection. You are not going to fix it with Safe Mode, scan programs, anything.
    Toss the drive and re-install.
    Also consider a new machine. Even Microsoft admits Vista was a bad idea.
    Never, under any circumstances, consume a laxative and sleeping pill, on the same night

  13. #13
    Join Date
    Oct 2006
    Location
    Minneapolis, MN
    Posts
    5,454
    For the future I recommend backing up to the cloud if you have a decent Internet connection. I pay $50 a year with Acronis Cloud, but I also had to spend about $50 for the software. I back up my machine every day both to an external drive and to the cloud. I do both as the hard drive restore will be much faster if my main drive fails. I don't think the virus could get to the files in the cloud, at least not yet.

    I know some are worried about data mining and security in the cloud, but I am not that worried about it.

  14. #14
    You have to be careful. The crypto-whatever viruses often encrypt cloud data too.

  15. #15
    Join Date
    Nov 2007
    Location
    NW Indiana
    Posts
    3,085
    Sorry about your troubles....

    Moral of the story....backup...backup....backup.....image file

    Do not leave your backup drive attached....

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •