Whatever level of IT support you need.

01628 552860

SHARP BLOG

How do ransomware infections happen?

[av_section min_height='custom' min_height_px='350px' padding='default' shadow='no-border-styling' bottom_border='no-border-styling' bottom_border_diagonal_color='#333333' bottom_border_diagonal_direction='' bottom_border_style='' id='' color='main_color' custom_bg='' src='http://www.complete-it.co.uk/wp-content/uploads/a-blog-header-background.jpg' attachment='3135' attachment_size='full' attach='scroll' position='top center' repeat='no-repeat' video='' video_ratio='16:9' overlay_opacity='0.5' overlay_color='' overlay_pattern='' overlay_custom_pattern='' custom_class='blog__banner'][/av_section]

[av_section min_height='' min_height_px='500px' padding='default' shadow='no-border-styling' bottom_border='no-border-styling' id='' color='main_color' custom_bg='' src='' attachment='' attachment_size='' attach='scroll' position='top left' repeat='no-repeat' video='' video_ratio='16:9' overlay_opacity='0.5' overlay_color='' overlay_pattern='' overlay_custom_pattern='' custom_class='single-post']

[av_two_third first min_height='' vertical_alignment='' space='' custom_margin='' margin='0px' padding='0px' border='' border_color='' radius='0px' background_color='' src='' background_position='top left' background_repeat='no-repeat' animation='']

[av_image src='' attachment='' attachment_size='' align='center' styling='' hover='' link='' target='' caption='' font_size='' appearance='' overlay_opacity='0.4' overlay_color='#000000' overlay_text_color='#ffffff' animation='no-animation' custom_class=''][/av_image]

[av_heading tag='h1' padding='10' heading='How do ransomware infections happen?' color='' style='' custom_font='' size='' subheading_active='' subheading_size='15' custom_class='' admin_preview_bg=''][/av_heading]

[av_hr class='invisible' height='30' shadow='no-shadow' position='center' custom_border='av-border-thin' custom_width='50px' custom_border_color='' custom_margin_top='30px' custom_margin_bottom='30px' icon_select='yes' custom_icon_color='' icon='ue808' font='entypo-fontello' custom_class='']

[av_textblock size='' font_color='' color='' custom_class='' admin_preview_bg='']
Though the infection phase is slightly different for each ransomware version, the key stages are the following:

ransomware-infection

Initially, the victim receives an email which includes a malicious link or a malware-laden attachment. Alternatively, the infection can originate from a malicious website that delivers a security exploit to create a backdoor on the victim’s PC by using a vulnerable software from the system.

If the victim clicks on the link or downloads and opens the attachment, a downloader (payload) will be placed on the affected PC.

The downloader uses a list of domains or C&C servers controlled by cyber criminals to download the ransomware program on the system.

The contacted C&C server responds by sending back the requested data, in our case, the ransomware.

The ransomware starts to encrypt the entire hard disk content, personal files and sensitive information. Everything, including data stored in cloud accounts (Google Drive, Dropbox) synced on the PC. It can also encrypt data on other computers connected in the local network.

A warning pops up on the screen with instructions on how to pay for the decryption key.

warning

To ensure your business is as safe as possible from ransomware attacks, take a look at this blog on How to Protect your Business from a Ransomware Attack

Call us on 01628 552 860 or email enquiries@complete-it.co.uk to book a meeting.
[/av_textblock]

[av_social_share title='Share this entry' style='' buttons='' share_facebook='' share_twitter='' share_pinterest='' share_gplus='' share_reddit='' share_linkedin='' share_tumblr='' share_vk='' share_mail=''][/av_social_share]

[/av_two_third][av_one_third min_height='' vertical_alignment='' space='' custom_margin='' margin='0px' padding='0px' border='' border_color='' radius='0px' background_color='' src='' background_position='top left' background_repeat='no-repeat' animation='']

[av_sidebar widget_area='Categories Menu']

[/av_one_third][/av_section]