Showing posts with label MSRT Tool. Show all posts
Showing posts with label MSRT Tool. Show all posts

Thursday, 10 September 2015

Microsoft Checks On Millions Of Computers Ransomware


Since yesterday evening, Microsoft has millions of Windows computers on the presence of an active ransomware family-controlled. It involves the Teerac-ransomware, which has been active since early 2014. In recent months, hundreds of thousands of computers with ransomware in touch.

These are essentially computers in Australia, Germany and Turkey. Teerac spreads via email attachments. When a user opens the attachment kinds of files are encrypted and there should be a fee of $ 500 in bitcoin paid to recover the files.According to Microsoft appear every day new instances of ransomware to avoid being detected by anti-virus software.

Due to the increasing activity of Teerac decided the Microsoft Malicious Software Removal Tool (MSRT) update in Windows so that the program can recognize and remove ransomware. The MSRT is a removal tool which is updated every month with new virus definitions and then scan the computer. In the case of an infection, the malware found is then removed. According to Microsoft, prevention is better than cure. Users also are advised to make backups, to keep software up to date, use a pop-up blocker and not to open attachments from strangers.

Wednesday, 11 February 2015

Microsoft Will Scan Windows Computers On Sony Malware


The Windows built-in virus removal tool MSRT yesterday evening an update feature, making hundreds of millions of Windows computers again for the presence of malware have been checked. The update for the Malicious Software Removal Tool ensures that the scanner also detects the malware used by Sony, as well as malware that credit card data from Windows Cash stolen.

Sony, Microsoft does not mention by name, but mentions in the virus definition of " NukeSped "as the malware is called a link to an article from Reuters. Since Sony has been called by name. Also, the image showing the malware match the image that appeared on the infected computers from Sony, as well as the file names used. "The wiper-malware" erased all kinds of files on computers and servers of Sony, which remained unusable.

NukeSped however is installed on your computer by other malware, called ESCAD . This malware can act as a proxy server, send files to a remote IP address, firewall settings and IP settings, system data gathering and place files on the infected system. The MSRT is an "on-demand" scanner and scans the computer only if the user gives the command for that, or for example during the monthly Patch Tuesday.

The real-time security software from Microsoft, such as Security Essentials, recognized both as ESCAD NukeSped earlier.One day 400 computers were found in December that were infected with ESCAD. This mainly involves computers in the United States and Taiwan.