Bitcoin Forum
November 14, 2024, 11:25:29 PM *
News: Check out the artwork 1Dq created to commemorate this forum's 15th anniversary
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: Ransomware and BTC  (Read 2051 times)
pellegri (OP)
Newbie
*
Offline Offline

Activity: 2
Merit: 0


View Profile
October 05, 2016, 04:34:04 PM
 #1

Hi. I’ve registered in your community in hope that you’ll help me. My problem is that my wife’s laptop is infected with Odin virus that has encrypted all files. And now it claims for 1.5 BTC for encryption. I tried different tools, antiviruses, guides etc. One thing that had helped me was ShadowExplorer (http://www.shadowexplorer.com/downloads.html) which I found in this site (http://myspybot.com/odin-virus/), and with a help of it I managed to decrypt little bit of files, but not very important. Sad
So finally I decided to pay 1.5 BTC for encryption, but I don’t know how, where and when I can buy this crypto currency. So I hope that you can give me some advice's or provide with a link to a step-by-step guide on how to use BTC. Huh Huh
And last question – why can’t I pay with my dollar card? What is a reason for them to use Bitcoins? I don’t get it. Undecided
OmegaStarScream
Staff
Legendary
*
Offline Offline

Activity: 3668
Merit: 6446



View Profile
October 05, 2016, 04:39:51 PM
 #2

There is different reasons why they chose Bitcoin instead of credit cards . Bitcoin is irreversible (your can't chargeback) and untraceable (police won't be able to find them) , It's just a procedure hackers do to make sure they won't be caught.
As for buying Bitcoin then It  really depends where you live and the payments methods you are willing to use honestly. but there is Coinbase , Virwox.com , Circle.com and others. (check them out , they are legit services)

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
BitAurum
Sr. Member
****
Offline Offline

Activity: 318
Merit: 250


View Profile
October 05, 2016, 04:40:31 PM
 #3

The reason Ransomware viruses use bitcoin is due to the fact that its untraceable and irreversible too.
If you were able to decrypt a bit of the files it should be possible to decrypt all the files too.

I wouldn't pay them unless I had something really important on that machine and all other means to recover the files failed.
BitAurum
Sr. Member
****
Offline Offline

Activity: 318
Merit: 250


View Profile
October 05, 2016, 04:42:00 PM
 #4

There is different reasons why they chose Bitcoin instead of credit cards . Bitcoin is irreversible (your can't chargeback) and untraceable (police won't be able to find them) , It's just a procedure hackers do to make sure they won't be caught.
As for buying Bitcoin then It  really depends where you live and the payments methods you are willing to use honestly. but there is Coinbase , Virwox.com , Circle.com and others. (check them out , they are legit services)

Are you suggesting that he gives into the demands of the hackers while there might be other means to recover his files?
Coin-Keeper
Hero Member
*****
Offline Offline

Activity: 762
Merit: 606



View Profile
October 05, 2016, 06:56:02 PM
 #5

I wouldn't pay unless the files are EXTREMELY valuable.  1.5 btc is almost a thousand dollars.  In the worst case where you cannot decrypt those files you could contact the laptop mfg and reload the system from scratch.  Probably an available download for free even and then forensically wipe the disk before installing the new system.  It would only take a few hours to have a fresh new system disk.  If important files are backed up on a flash or external drive those can be copied back easily.  Do NOT connect any removable media to that infected computer.  This is what I do, so if you need a few steps in the process to be outlined, please ask here.

BTC: 1PYSBbuKM3kW19xe9TXJQfq64rPhd8XorF
Staked and Verified: https://bitcointalk.org/index.php?topic=996318.msg17102755#msg17102755
Steve_T
Full Member
***
Offline Offline

Activity: 210
Merit: 100



View Profile WWW
October 05, 2016, 07:02:26 PM
 #6

This is genuine re-occuring dream of mine, they've locked up my computer and want all my BTC (having converted my other crypto into BTC moments before)... Always wake up in a cold sweat.
pellegri (OP)
Newbie
*
Offline Offline

Activity: 2
Merit: 0


View Profile
October 05, 2016, 07:45:13 PM
 #7

I wouldn't pay unless the files are EXTREMELY valuable.  1.5 btc is almost a thousand dollars.  In the worst case where you cannot decrypt those files you could contact the laptop mfg and reload the system from scratch.  Probably an available download for free even and then forensically wipe the disk before installing the new system.  It would only take a few hours to have a fresh new system disk.  If important files are backed up on a flash or external drive those can be copied back easily.  Do NOT connect any removable media to that infected computer.  This is what I do, so if you need a few steps in the process to be outlined, please ask here.
I'll try it.
Thanks for all reply's
outatime1
Sr. Member
****
Offline Offline

Activity: 364
Merit: 254

CryptoTalk.Org - Get Paid for every Post!


View Profile
October 05, 2016, 10:46:21 PM
 #8

I knew someone that had this problem before and they took the computer to a professional to have the computer cleaned up. I think he lost everything that was infected though. I think that's the best thing to do in this situation.

 
                                . ██████████.
                              .████████████████.
                           .██████████████████████.
                        -█████████████████████████████
                     .██████████████████████████████████.
                  -█████████████████████████████████████████
               -███████████████████████████████████████████████
           .-█████████████████████████████████████████████████████.
        .████████████████████████████████████████████████████████████
       .██████████████████████████████████████████████████████████████.
       .██████████████████████████████████████████████████████████████.
       ..████████████████████████████████████████████████████████████..
       .   .██████████████████████████████████████████████████████.
       .      .████████████████████████████████████████████████.

       .       .██████████████████████████████████████████████
       .    ██████████████████████████████████████████████████████
       .█████████████████████████████████████████████████████████████.
        .███████████████████████████████████████████████████████████
           .█████████████████████████████████████████████████████
              .████████████████████████████████████████████████
                   ████████████████████████████████████████
                      ██████████████████████████████████
                          ██████████████████████████
                             ████████████████████
                               ████████████████
                                   █████████
YoBit AirDrop $|
Get 700 YoDollars for Free!
🏆
traderethereum
Hero Member
*****
Offline Offline

Activity: 3066
Merit: 574


DGbet.fun - Crypto Sportsbook


View Profile WWW
October 05, 2016, 11:58:01 PM
 #9

I knew someone that had this problem before and they took the computer to a professional to have the computer cleaned up. I think he lost everything that was infected though. I think that's the best thing to do in this situation.

i think i will give the same suggestion to him, because if we don't know anything about computer, better we go to into computer store and ask them to help us to cure the virus. but for a short time i do searching, there are many clue on the search engine that you can use to try it with your self to cure the virus.

maybe you want to look on this links https://www.google.com/search?client=opera&q=how+to+cure+Odin+virus&sourceid=opera&ie=UTF-8&oe=UTF-8

i use the keyword how to cure Odin virus, and i see that there is many website that give the answer but i am not sure, where is the right answer that you need it. better you see by yourself.

ricreis394
Newbie
*
Offline Offline

Activity: 37
Merit: 0


View Profile
October 06, 2016, 12:17:01 AM
 #10

Bitcoin is used because it's anonymous and police can't trace the payment.
Try to buy bitcoins at localbitcoins website, my first time buying bitcoins was from that site and cash in hand to reduce the fees.
Ransomware viruses are very annoying and isn't very much to do than paying and pray for they giving the private key to de encrypt.
morantis
Hero Member
*****
Offline Offline

Activity: 868
Merit: 503



View Profile
October 06, 2016, 12:59:58 AM
 #11

don't pay, it might even be a modified odin or a downloaded copy and the people have no idea what they are doing, meaning your computer stays that way after paying.  if there is nothing that cannot be replaced on there, put windows on a usb from a friends computer and start over.  make sure that you completely format the drive during install rather than trying to save files.  if your legacy to mankind is on there, say f it and take the thing to best buy.  they are better equipped to deal with and a lot cheaper than 1.5 BTC. 
X7
Legendary
*
Offline Offline

Activity: 1175
Merit: 1016


Let he who is without sin cast the first stone


View Profile
October 06, 2016, 01:34:27 AM
 #12

I'm literally in the process of writing an article explaining ransomware, what it is and how to avoid it - it is running rampant at the moment.

For what shall it profit a man, if he shall gain the world, and lose his own soul?
morantis
Hero Member
*****
Offline Offline

Activity: 868
Merit: 503



View Profile
October 06, 2016, 01:55:40 AM
 #13

I'm literally in the process of writing an article explaining ransomware, what it is and how to avoid it - it is running rampant at the moment.

without being insensitive, it is a hell of a concept and nearly impossible to get around.  when properly used it is a menace, apparently the biggest issue at the moment is that the people finding it around the internet are not really coders and do not have the experience to use it right in the first place, meaning that even the people that are breaking down and paying are not getting their PC's back
X7
Legendary
*
Offline Offline

Activity: 1175
Merit: 1016


Let he who is without sin cast the first stone


View Profile
October 06, 2016, 01:57:28 AM
 #14

I'm literally in the process of writing an article explaining ransomware, what it is and how to avoid it - it is running rampant at the moment.

without being insensitive, it is a hell of a concept and nearly impossible to get around.  when properly used it is a menace, apparently the biggest issue at the moment is that the people finding it around the internet are not really coders and do not have the experience to use it right in the first place, meaning that even the people that are breaking down and paying are not getting their PC's back

Yeah I tried to be loving in the article, giving a good 15+ tips on what kind of mindset you need and what to look out for while using the internet. Education on the matter may help save a few people!

For what shall it profit a man, if he shall gain the world, and lose his own soul?
morantis
Hero Member
*****
Offline Offline

Activity: 868
Merit: 503



View Profile
October 06, 2016, 02:01:32 AM
 #15

I'm literally in the process of writing an article explaining ransomware, what it is and how to avoid it - it is running rampant at the moment.

without being insensitive, it is a hell of a concept and nearly impossible to get around.  when properly used it is a menace, apparently the biggest issue at the moment is that the people finding it around the internet are not really coders and do not have the experience to use it right in the first place, meaning that even the people that are breaking down and paying are not getting their PC's back

Yeah I tried to be loving in the article, giving a good 15+ tips on what kind of mindset you need and what to look out for while using the internet. Education on the matter may help save a few people!

yeah, this goes right around normal practices of safety.  used to be that you simply set a restore point in the case of concern and backed to it when there was an issue.  this is a complete shell replace, root kit, you ain't getting in there issue that cannot be "restored" or "rolled back"
mammabitcoin2u
Sr. Member
****
Offline Offline

Activity: 266
Merit: 250

Don't follow the herd~make your own path


View Profile
October 06, 2016, 02:39:18 AM
 #16

Hi. I’ve registered in your community in hope that you’ll help me. My problem is that my wife’s laptop is infected with Odin virus that has encrypted all files. And now it claims for 1.5 BTC for encryption. I tried different tools, antiviruses, guides etc. One thing that had helped me was ShadowExplorer (http://www.shadowexplorer.com/downloads.html) which I found in this site (http://myspybot.com/odin-virus/), and with a help of it I managed to decrypt little bit of files, but not very important. Sad
So finally I decided to pay 1.5 BTC for encryption, but I don’t know how, where and when I can buy this crypto currency. So I hope that you can give me some advice's or provide with a link to a step-by-step guide on how to use BTC. Huh Huh
And last question – why can’t I pay with my dollar card? What is a reason for them to use Bitcoins? I don’t get it. Undecided


I'll chime in with others.

1, don't even bother paying this "ransom" you are just tossing out good $
2, use that $ and buy yourself another computer and try to safeguard it better, not downloading things and sites you visit, anti-virus, different passwords, all sorts of things I don't have the time to list
3, learn to remove the virus yourself/with help from online, malewarebyets is a pretty good site that helps people, I haven't been there in years, but know it exists
4, your computer is already compromised and any files will just compromise a new system.........don't even bother accept the loss, documents and photos should of been printed anyways and not just stored on a pc  Undecided

Lastly, sorry this happened to you.  Most people are just assholes and we have to learn how to swim among them.

~Be Wise & Scrutinize Everything~~Scammers are like roaches squash 1 there's millions more hiding~I will NEVER ask for a loan~I got plenty of my own ~ BIGGEST lie to date said about me: https://bitcointalk.org/index.php?topic=2046485.msg20429473#new
morantis
Hero Member
*****
Offline Offline

Activity: 868
Merit: 503



View Profile
October 06, 2016, 02:43:04 AM
 #17

Hi. I’ve registered in your community in hope that you’ll help me. My problem is that my wife’s laptop is infected with Odin virus that has encrypted all files. And now it claims for 1.5 BTC for encryption. I tried different tools, antiviruses, guides etc. One thing that had helped me was ShadowExplorer (http://www.shadowexplorer.com/downloads.html) which I found in this site (http://myspybot.com/odin-virus/), and with a help of it I managed to decrypt little bit of files, but not very important. Sad
So finally I decided to pay 1.5 BTC for encryption, but I don’t know how, where and when I can buy this crypto currency. So I hope that you can give me some advice's or provide with a link to a step-by-step guide on how to use BTC. Huh Huh
And last question – why can’t I pay with my dollar card? What is a reason for them to use Bitcoins? I don’t get it. Undecided


I'll chime in with others.

1, don't even bother paying this "ransom" you are just tossing out good $
2, use that $ and buy yourself another computer and try to safeguard it better, not downloading things and sites you visit, anti-virus, different passwords, all sorts of things I don't have the time to list
3, learn to remove the virus yourself/with help from online, malewarebyets is a pretty good site that helps people, I haven't been there in years, but know it exists
4, your computer is already compromised and any files will just compromise a new system.........don't even bother accept the loss, documents and photos should of been printed anyways and not just stored on a pc  Undecided

Lastly, sorry this happened to you.  Most people are just assholes and we have to learn how to swim among them.

as a cheaper solution, you don't even have to replace the computer, just the hard drive, those can be pretty cheap.  you may even have another older computer sitting around that has a hard drive you can use.  but, with a new hard drive in place, do not get skippy and try adding the infected drive after the fact and get your files, within seconds of adding that hard drive you will likely be right back here at square one
Coin-Keeper
Hero Member
*****
Offline Offline

Activity: 762
Merit: 606



View Profile
October 06, 2016, 03:53:17 AM
 #18

As I mentioned above this is something I do.  Once this gets behind you learn to make solid sector images of your computer disk.  Its easy and with modern USB speeds you can restore at least a 100 Gig per hour going sector by sector.  Next time (hopefully none) you would simply wipe the disk and then write back a perfectly clean image from backup.  Total restore is almost always under half a day and usually about 2 hours.  FREE too if you had those items at the ready!!

BTC: 1PYSBbuKM3kW19xe9TXJQfq64rPhd8XorF
Staked and Verified: https://bitcointalk.org/index.php?topic=996318.msg17102755#msg17102755
pooya87
Legendary
*
Offline Offline

Activity: 3640
Merit: 11033


Crypto Swap Exchange


View Profile
October 06, 2016, 04:39:06 AM
 #19

Hi. I’ve registered in your community in hope that you’ll help me. My problem is that my wife’s laptop is infected with Odin virus that has encrypted all files. And now it claims for 1.5 BTC for encryption. I tried different tools, antiviruses, guides etc. One thing that had helped me was ShadowExplorer (http://www.shadowexplorer.com/downloads.html) which I found in this site (http://myspybot.com/odin-virus/), and with a help of it I managed to decrypt little bit of files, but not very important. Sad
So finally I decided to pay 1.5 BTC for encryption, but I don’t know how, where and when I can buy this crypto currency. So I hope that you can give me some advice's or provide with a link to a step-by-step guide on how to use BTC. Huh Huh
And last question – why can’t I pay with my dollar card? What is a reason for them to use Bitcoins? I don’t get it. Undecided


I'll chime in with others.

1, don't even bother paying this "ransom" you are just tossing out good $
2, use that $ and buy yourself another computer and try to safeguard it better, not downloading things and sites you visit, anti-virus, different passwords, all sorts of things I don't have the time to list
3, learn to remove the virus yourself/with help from online, malewarebyets is a pretty good site that helps people, I haven't been there in years, but know it exists
4, your computer is already compromised and any files will just compromise a new system.........don't even bother accept the loss, documents and photos should of been printed anyways and not just stored on a pc  Undecided

Lastly, sorry this happened to you.  Most people are just assholes and we have to learn how to swim among them.

as a cheaper solution, you don't even have to replace the computer, just the hard drive, those can be pretty cheap.  you may even have another older computer sitting around that has a hard drive you can use.  but, with a new hard drive in place, do not get skippy and try adding the infected drive after the fact and get your files, within seconds of adding that hard drive you will likely be right back here at square one

correct me if i am wrong but can't you just format the hard drive instead? it is not physically damaged. the files re just encrypted which you can format and start fresh with an empty HDD.

and to OP, i have seen some progress in breaking the encryption of some types of ransomeware on reddit. maybe you should check it out.

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
NorrisK
Legendary
*
Offline Offline

Activity: 1946
Merit: 1007



View Profile
October 06, 2016, 06:44:08 AM
 #20

Use the money to buy some good anti virus plans for you and your wife, get a license for hitman pro and install hitman pro alert as well and finally put your wife through cyber security training so this won't happen again.

Paying these people is not the solution, it will just keep happening to people around the world when people fall for their demands.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!