Hunting Down and Killing Ransomware - Russinovich

Started by Jeremy Collake, January 20, 2013, 10:14:51 AM

Previous topic - Next topic

Jeremy Collake

Russinovich on Scarware .. or, How to find potentially abusive processes ....

http://blogs.technet.com/b/markrussinovich/archive/2013/01/07/3543763.aspx

Actual title is Hunting Down and Killing Ransomware
Software Engineer. Bitsum LLC.

BenYeeHua

He has a good skill that many devs don't have, writing. :)
And this.
Quotereaching Safe Mode is a little more difficult in Windows 8
lol. ;D
But as the normal user don't know about anything and will not disable MSE, it is not a problem.
Except MSE don't detect and kill them.

I also using the other software like Process Monitor, Process Explorer etc. ;)

Jeremy Collake

You just have to be super fast with F8 ;). It is annoying, as if you have severe PC problems you may have trouble reconfiguring the boot settings to extend the wait time, and end up having to make this modification manually just so you can safely and reliably invoke Safe Mode.
Software Engineer. Bitsum LLC.

BenYeeHua

Quote from: Jeremy Collake on January 20, 2013, 10:47:45 AM
You just have to be super fast with F8 ;). It is annoying, as if you have severe PC problems you may have trouble reconfiguring the boot settings to extend the wait time, and end up having to make this modification manually just so you can safely and reliably invoke Safe Mode.
Ya, why they forgot to give the option in BIOS or the UEFI.
And I am not a superman that can clicking in 100ms. ;D