NCCIC / US-CERT
National Cyber Awareness System:
TA14-295A: Crypto Ransomware [https://www.us-cert.gov/ncas/alerts/TA14-295A]https://www.us-cert.gov/ncas/alerts/TA13-309Ahttps://www.us-cert.gov/ncas/alerts/TA14-150Ahttps://www.us-cert.gov/ncas/tips/st04-014 ] for more information on social
engineering attacks.
* Use caution when opening email attachments. For information on safely
handling email attachments, see Recognizing and Avoiding Email Scams [
https://www.us-cert.gov/sites/defaul...scams_0905.pdf
].
* Follow safe practices when browsing the web. See Good Security Habits [
https://www.us-cert.gov/ncas/tips/ST04-003 ] and Safeguarding Your Data [
https://www.us-cert.gov/ncas/tips/ST06-008 ] for additional details.
Individuals or organizations are not encouraged to pay the ransom, as this
does not guarantee files will be released. Report instances of fraud to the
FBI at the Internet Crime Complaint Center [ http://www.ic3.gov/ ] or
contact the CCIRC <[email protected]> .
References
* Kaspersky Lab, Kaspersky Lab detects mobile Trojan Svpeng: Financial
malware with ransomware capabilities now targeting U.S. [
http://www.kaspersky.com/about/news/...etects-mobile-
Trojan-Svpeng-Financial-malware-with-ransomware-capabilities-now-targeting-U
S-users ]
* United States National Cybersecurity and Communications Integration
Center, Cryptolocker Ransomware [
http://www.cod.edu/about/information...ansomware20131http://nakedsecurity.sophos.com/2014...omware-cryptow
all-picks-up-where-cryptolocker-left-off/ ]
* Symantec, CryptoDefence, the CryptoLocker Imitator, Makes Over $34,000
in One Month [
http://www.symantec.com/connect/blog...er-imitator-ma
kes-over-34000-one-month ]
* Symantec, Cryptolocker: A Thriving Menace [
http://www.symantec.com/connect/blog...hriving-menace ]
* Symantec, Cryptolocker Q&A: Menace of the Year [
http://www.symantec.com/connect/blog...qa-menace-year ]
* Symantec, International Takedown Wounds Gameover Zeus Cybercrime Network
[
http://www.symantec.com/connect/blog...ounds-gameover
-zeus-cybercrime-network ]
Revision History
* Initial Publication, October 22, 2014
National Cyber Awareness System:
TA14-295A: Crypto Ransomware [https://www.us-cert.gov/ncas/alerts/TA14-295A]https://www.us-cert.gov/ncas/alerts/TA13-309Ahttps://www.us-cert.gov/ncas/alerts/TA14-150Ahttps://www.us-cert.gov/ncas/tips/st04-014 ] for more information on social
engineering attacks.
* Use caution when opening email attachments. For information on safely
handling email attachments, see Recognizing and Avoiding Email Scams [
https://www.us-cert.gov/sites/defaul...scams_0905.pdf
].
* Follow safe practices when browsing the web. See Good Security Habits [
https://www.us-cert.gov/ncas/tips/ST04-003 ] and Safeguarding Your Data [
https://www.us-cert.gov/ncas/tips/ST06-008 ] for additional details.
Individuals or organizations are not encouraged to pay the ransom, as this
does not guarantee files will be released. Report instances of fraud to the
FBI at the Internet Crime Complaint Center [ http://www.ic3.gov/ ] or
contact the CCIRC <[email protected]> .
References
* Kaspersky Lab, Kaspersky Lab detects mobile Trojan Svpeng: Financial
malware with ransomware capabilities now targeting U.S. [
http://www.kaspersky.com/about/news/...etects-mobile-
Trojan-Svpeng-Financial-malware-with-ransomware-capabilities-now-targeting-U
S-users ]
* United States National Cybersecurity and Communications Integration
Center, Cryptolocker Ransomware [
http://www.cod.edu/about/information...ansomware20131http://nakedsecurity.sophos.com/2014...omware-cryptow
all-picks-up-where-cryptolocker-left-off/ ]
* Symantec, CryptoDefence, the CryptoLocker Imitator, Makes Over $34,000
in One Month [
http://www.symantec.com/connect/blog...er-imitator-ma
kes-over-34000-one-month ]
* Symantec, Cryptolocker: A Thriving Menace [
http://www.symantec.com/connect/blog...hriving-menace ]
* Symantec, Cryptolocker Q&A: Menace of the Year [
http://www.symantec.com/connect/blog...qa-menace-year ]
* Symantec, International Takedown Wounds Gameover Zeus Cybercrime Network
[
http://www.symantec.com/connect/blog...ounds-gameover
-zeus-cybercrime-network ]
Revision History
* Initial Publication, October 22, 2014
Comment