I know i'm a little late to this scene, but I'd like to talk Crypto-Locker here. I have a few ideas on negating the effects, but I can't for the life of me find anything to corroborate the results of my thoughts. Please feel free to weigh in with any life saving tips at any time.
Thoughts:
- Does the cryptolocker require admin privileges, or does it escalate no matter what?
- Shouldn't there be a way to disable the encryption ability of a computer? Like turning off EFS or BitLocker. Does the virus bring its own ability to encrypt or piggy back on yours?
- Would an early detection system befeasible? Like something as simple as a batch file comparing the value of a "bait file" to that of a stored variable. When the two values don't match the batch file automatically sends email and shuts down the machine. Eh?
- I have read up that the reason it is so...