Sunday, March 27, 2016

Has Your Computer Been Ransomed? Here's What is Happening:

A computer is "ransomed" when a message pops up that says you can't use your computer any more, or the computer is severely compromised and a phone number is provided to "fix the problem."  Call that number and you will typically be switched to some overseas (outside the US) number.  They will charge a price to fix the problem, plus offer to give you ongoing support.  You will be asked for your credit card number and other personal information.  They will typically ask for access to your computer to fix the problem.  ALL THESE REQUESTS ARE "NO-NOs".

The typical example looks like this:


Sometimes the message shows from within the browser, but usually it takes over your entire screen.  The latter is a coding trick that forces your browser full screen.  I hit escape on the above message to bring the browser image back down to "normal" full screen browser size.  Most users don't know to do this, so they don't see the address window and they can't find a way to get rid of the image.  Note the url in the address bar:  malware-present.com?  Not likely!  So, if you get a message and you can't seem to get rid of it, go into the task manager (Windows- ctrl-alt-del at same time)  If you don't see a "Processes" tab at the top and you are using Windows 8 or above, Click on the "More Details" down arrow on the lower left of the Task Manager window.

On the Processes tab, find the process or processes that are associated with your browser. Click on each one to highlight, then click the "End Task" button for each.  Next, start Malwarebytes* and run it.  Delete all the objects it finds.  Then restart your computer.  Restart your browser, and go to the Settings page.  Find extensions or Add Ons.  Look through the list for anything you don't want.  Trash or disable them.

*Everyone, Mac or PC alike, should have Malwarebytes installed.  Since this is a "browser-"initiated ransom, both OS and Windows systems are vulnerable.  Download the free version.  When installing, make sure you don't install the Pro version unless you want to pay for the Pro version.

No comments:

Post a Comment

Printfriendly

Print Friendly and PDF