{"id":22467,"date":"2016-05-13T10:57:18","date_gmt":"2016-05-13T02:57:18","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=22467"},"modified":"2016-05-13T10:59:40","modified_gmt":"2016-05-13T02:59:40","slug":"10-tips-protect-files-ransomware","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2016\/05\/13\/10-tips-protect-files-ransomware\/","title":{"rendered":"10 tips to protect your files from ransomware"},"content":{"rendered":"<p><strong>Ransomware has overtaken news about APT attacks to become the main topic of the quarter. According to Kaspersky Lab\u2019s Q1 malware report, the company\u2019s experts detected 2,900 new malware modifications during the quarter, an increase of 14 percent on the previous quarter.\u00a0<\/strong><\/p>\n<p><a href=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2016\/05\/Image-5-13-16-at-10.51-AM.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-22468\" src=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2016\/05\/Image-5-13-16-at-10.51-AM.jpg\" alt=\"Image 5-13-16 at 10.51 AM\" width=\"750\" height=\"500\" srcset=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2016\/05\/Image-5-13-16-at-10.51-AM.jpg 750w, http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2016\/05\/Image-5-13-16-at-10.51-AM-300x200.jpg 300w, http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2016\/05\/Image-5-13-16-at-10.51-AM-84x55.jpg 84w\" sizes=\"auto, (max-width: 750px) 100vw, 750px\" \/><\/a><\/p>\n<p>Kaspersky Lab\u2019s database now includes about 15 thousand ransomware modifications and the number continues to grow.<\/p>\n<p>One of the most famous and widespread ransomware in Q1, 2016 was <a href=\"https:\/\/securelist.com\/blog\/research\/74398\/locky-the-encryptor-taking-the-world-by-storm\/\">Locky<\/a>. Kaspersky Lab products detected attempts to infect users with this Trojan in 114 countries, and as of early May 2016 it remains active.<\/p>\n<p>Another ransomware called <a href=\"https:\/\/securelist.com\/blog\/research\/74609\/petya-the-two-in-one-trojan\/\">Petya<\/a> was interesting from a technical perspective because of its ability not only to encrypt data stored on the computer, but also to overwrite the hard disk drive&#8217;s master boot record (MBR), leaving infected computers unable to boot into the operating system.<\/p>\n<p>According to Kaspersky Lab detections the top three ransomware families in Q1 were: <a href=\"https:\/\/securelist.com\/blog\/research\/71371\/teslacrypt-2-0-disguised-as-cryptowall\/\">Teslacrypt<\/a> (58.4%), <a href=\"https:\/\/securelist.com\/blog\/research\/73989\/ctb-locker-is-back-the-web-server-edition\/\">CTB-Locker<\/a> (23.5%), and <a href=\"https:\/\/business.kaspersky.com\/cryptowall-3-0-an-evolution-twist\/4137\/\">Cryptowall<\/a> (3.4%). All three propagate mainly through spam emails with malicious attachments or links to infected web pages.<\/p>\n<p>There is a further reason for the rise in ransomware attacks: users believe the threat is unbeatable. Businesses and individuals are not aware of the <a href=\"https:\/\/blog.kaspersky.com\/ransomware-cyber-extortion\/2196\/\">technology countermeasures<\/a> that could help to prevent infection and the locking of files or systems; and by ignoring basic IT Security rules they allow cybercriminals and others to profit.<\/p>\n<p>10 simple tips<\/p>\n<p>To avoid dealing with consequences brought by ransomware, here are 10 simple tips to protect your data from this stealthy malware:<\/p>\n<ol>\n<li><b>Always <\/b><a href=\"https:\/\/blog.kaspersky.com\/call-for-backup\/1387\/\"><b>back up<\/b><\/a><b> your files.<\/b> Make sure that you back up your important files regularly. It is highly recommended that you create two back up copies: one to be stored in the cloud (using services like Dropbox, Google Drive, etc.) and the other recorded to a physical means of storage (portable hard drive, thumb drive, extra laptop, etc.).<\/li>\n<li><b>Check your back up files.<\/b> Regularly check that your back up copy is ok. There are times when an accidental failure can inflict damage to your files.<\/li>\n<li><b>Be keen with attachments.<\/b> Cybercriminals often distribute <a href=\"https:\/\/blog.kaspersky.com\/how-to-avoid-phishing\/6145\/\">fake email messages<\/a> mimicking email notifications from an online store or a bank, luring a user to click on a malicious link and distribute malware. This method is called <a href=\"https:\/\/blog.kaspersky.com\/phishing-ten-tips\/10550\/\">phishing<\/a>. With that in mind, fine-tune your antispam settings and never open attachments sent by an unknown sender.<\/li>\n<li><b>Trust no one, literally.<\/b> Malicious links can be sent by your friends on social media, your colleague or <a href=\"https:\/\/blog.kaspersky.com\/teslacrypt-20-ransomware\/9314\/\">online gaming<\/a> partner whose accounts have been compromised in one way or another.<\/li>\n<li><b>Enable \u2018Show file extensions\u2019 option in the Windows settings.<\/b> This will make it much easier to distinguish potentially malicious files. As Trojans are programs, you should be warned to stay away from file extensions like \u201cexe\u201d, \u201cvbs\u201d and \u201cscr\u201d.You need to keep a vigilant eye on this as many <a href=\"http:\/\/www.howtogeek.com\/137270\/50-file-extensions-that-are-potentially-dangerous-on-windows\/\">familiar file types can also be dangerous<\/a>. Scammers could use several extensions to masquerade a malicious file as a video, photo, or a document (like hot-chics.avi.exe or doc.scr).<\/li>\n<li><b>Regularly <\/b><a href=\"https:\/\/blog.kaspersky.com\/why-bother-with-software-updates\/6863\/\"><b>update<\/b><\/a><b> your operating system, browser, antivirus, and other programs.<\/b> Culprits tend to exploit vulnerabilities in software to compromise systems.<\/li>\n<li><b>Use a robust antivirus program<\/b>. Choose solutions that prevent viruses from getting into your computer, or, should the virus infiltrate your system after all, protect important files using its <a href=\"https:\/\/blog.kaspersky.com\/tip-of-the-week-cryptoware\/6199\/\">special capability<\/a>.<\/li>\n<li><b>If you discover a rogue or unknown process on your machine, cut off the Internet connection immediately.<\/b> If the ransomware did not manage to erase the encryption key from your computer, there\u2019s still a chance you can restore the files. However, the new strains of this type of malware use a predefined key, so this tip, unfortunately, would not work in that case.<\/li>\n<li><b>Don\u2019t pay the ransom.<\/b> If you are unlucky to have your files encrypted, don\u2019t pay the ransom, unless the instant access to some of your files is critical. In fact, each payment fuels this unlawful business which would prosper as long as you pay money.<\/li>\n<li><b>Know the malware\u2019s name.<\/b> If you have been infected by ransomware, you should try to find out the name of the malware: maybe it\u2019s an older version and it is relatively simple to restore the files. Ransomware used to be less advanced in the past. Moreover, the police and cybersecurity experts (including those working for Kaspersky Lab) <a href=\"https:\/\/blog.kaspersky.com\/criminals-behind-the-coinvault-ransomware-are-busted-by-kaspersky-lab-and-dutch-police\/9886\/\">collaborate<\/a> to detain the adversaries and provide file restoration tools online. Some people have an opportunity to decrypt their files without having to pay the ransom.<\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":"<p>Ransomware has overtaken news about APT attacks to become the main topic of the quarter. According to Kaspersky Lab\u2019s Q1 malware report, the company\u2019s experts detected 2,900 new malware modifications during the quarter, an increase of 14 percent on the previous quarter.\u00a0 Kaspersky Lab\u2019s database now includes about 15 thousand ransomware modifications and the number [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":22468,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19,22],"tags":[495,286,117,1591],"class_list":["post-22467","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","category-spotlight","tag-cybersecurity-and-cybercrime","tag-it-security","tag-kaspersky-lab","tag-ransomware"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/22467","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=22467"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/22467\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/22468"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=22467"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=22467"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=22467"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}