-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
National Cyber Awareness System
Recent Reports of DHS-Themed Ransomware
Original release date: March 21, 2013
US-CERT has received reports of apparently DHS-themed ransomware
occurring in the wild. Users who are being targeted by the ransomware
receive an email message claiming that use of their computer has been
suspended and that the user must pay a fine to unblock it. The
ransomware falsely claims to be from the U.S. Department of Homeland
Security and the National Cyber Security Division.
US-CERT and DHS encourage users and administrators to use caution when
encountering these types of email messages and take the following
preventive measures to protect themselves from phishing scams and
malware campaigns that attempt to frighten and deceive a recipient for
the purpose of illegal gain.
* Do not click on or submit any information to webpages.
* Do not follow unsolicited web links in email messages.
* Use caution when opening email attachments. Refer to the Security Tip
* Using Caution with Email Attachments for more information on safely
handling email attachments.
* Maintain up-to-date antivirus software.
* Refer to the Recognizing and Avoiding Email Scams (pdf) document for
more information on avoiding email scams.
* Refer to the Security Tip Avoiding Social Engineering and Phishing
Attacks for more information on social engineering attacks.
Relevant URL(s):
<http://www.us-cert.gov/cas/ tips/ST04-014.html>
<http://www.us-cert.gov/ reading_room/emailscams_0905. pdf>
<http://www.us-cert.gov/cas/ tips/ST04-010.html>
______________________________ ______________________________ ________
Produced by US-CERT, a government organization.
______________________________ ______________________________ ________
This product is provided subject to this Notification:
http://www.us-cert.gov/ privacy/notification/
Privacy & Use policy:
http://www.us-cert.gov/ privacy/
This document can also be found at
http://www.us-cert.gov/ncas/ current-activity/2013/03/21/ Recent-Reports-DHS-themed- Ransomware
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iQEVAwUBUUswnHdnhE8Qi3ZhAQL/ agf+ Oo7vs4QKBTdG4PVMZl4pI4JuDYk+ 3q3G
C587XSwwEt3MnuI5JsQihY2k0c7TLE SPJSalyZNRDxcfgsHluBMxUyXQVxGZ wYej
llV4zUYa1ijogf/ gwgQPqvRqlGeTzFY7f9XSWZ7lenfol GVgaTtMVNqWQZCbvKTM
DlYuYaXlHMTXGwdOoVLTAqQxnYFVtC 1rRj/yubLvbyXd5/ NsASlOw0gJn6IddD5o
SRH5Iq8k93OAfsc01seWFtRSvav/ gJ0WBmNqaassQTnpnVfj1gN+ In0G8UgDyics
1rkSuqxhI2ZY6JFF1GdLDjH3WMn+ GWam0IwigaTBN/rqx3HkAqCJzA==
=jQ2R
-----END PGP SIGNATURE
Hash: SHA1
National Cyber Awareness System
Recent Reports of DHS-Themed Ransomware
Original release date: March 21, 2013
US-CERT has received reports of apparently DHS-themed ransomware
occurring in the wild. Users who are being targeted by the ransomware
receive an email message claiming that use of their computer has been
suspended and that the user must pay a fine to unblock it. The
ransomware falsely claims to be from the U.S. Department of Homeland
Security and the National Cyber Security Division.
US-CERT and DHS encourage users and administrators to use caution when
encountering these types of email messages and take the following
preventive measures to protect themselves from phishing scams and
malware campaigns that attempt to frighten and deceive a recipient for
the purpose of illegal gain.
* Do not click on or submit any information to webpages.
* Do not follow unsolicited web links in email messages.
* Use caution when opening email attachments. Refer to the Security Tip
* Using Caution with Email Attachments for more information on safely
handling email attachments.
* Maintain up-to-date antivirus software.
* Refer to the Recognizing and Avoiding Email Scams (pdf) document for
more information on avoiding email scams.
* Refer to the Security Tip Avoiding Social Engineering and Phishing
Attacks for more information on social engineering attacks.
Relevant URL(s):
<http://www.us-cert.gov/cas/
<http://www.us-cert.gov/
<http://www.us-cert.gov/cas/
______________________________
Produced by US-CERT, a government organization.
______________________________
This product is provided subject to this Notification:
http://www.us-cert.gov/
Privacy & Use policy:
http://www.us-cert.gov/
This document can also be found at
http://www.us-cert.gov/ncas/
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iQEVAwUBUUswnHdnhE8Qi3ZhAQL/
C587XSwwEt3MnuI5JsQihY2k0c7TLE
llV4zUYa1ijogf/
DlYuYaXlHMTXGwdOoVLTAqQxnYFVtC
SRH5Iq8k93OAfsc01seWFtRSvav/
1rkSuqxhI2ZY6JFF1GdLDjH3WMn+
=jQ2R
-----END PGP SIGNATURE