Computer Consulting & Repair, Inc. (CCR)

Computer Consulting & Repair, Inc. (CCR) IT Security & Network Management

05/31/2016

New Ransomware warning: As of May 24th a new Ransomware called ZCryptor which works like a worm and spreads though removable media and network shares has been detected.

This is what Microsoft had to say about it last week: “We are alerting Windows users of a new type of ransomware that exhibits worm-like behavior,” Microsoft's Malware Protection Center post stated. A subsequent analysis by Trend Micro confirmed Microsoft's findings, categorizing the threat as a "worm," with self-propagation features.

ZCryptor spreads via email with malicious macro attachments and a fake Adobe Flash Player installer.

Microsoft wrote that this strain use fake installers, usually for Adobe Flash, along with macro-based booby-trapped Office files to distribute the Zcryptor ransomware. Macro-based malware uses what could be argued as "user-consent prompt fatigue," only Microsoft can come up with a term like that.

Once the user installs the fake Adobe Flash update or allows an attached Office file to run macros, the Zcryptor ransomware is installed on the user's computer. The first thing the ransomware does is to gain PC restart persistence by adding a key to the computer's registry. After this, it starts to encrypt files.

Based on samples it analyzed, Microsoft reported the ransomware was targeting 88 different file types. The security researcher MalwareHunterTeam told Softpedia that, in samples he analyzed, he saw the ransomware targeted 121 different file types, so it appears that ZCryptor's criminal developers are still working and adding new code.

ZCryptor apparently is able to copy itself to removable and network drives.

The most worrying thing was Microsoft saying the ransomware has "worm-like behavior," meaning it can spread by itself to nearby targets. This type of behavior was predicted, but now it's here.
Once installed on disk and available files are encrypted, a ransom note appears demanding 1.2 bitcoins, around 500 dollars, for the decryption key. It gives the victim four days to comply and then boosts the payment to five Bitcoins.

the Key lesson here is DO NOT OPEN FILES, that you are not 100% sure what they are and where they came from.

07/01/2015

Attention! Scam Notice.

Apparently, it's that time again...People posing as "Microsoft" are making calls to our area code once again. These people are leading off saying things such as "You have errors and malicious software installed on your computer."

Always remember that MICROSOFT WILL NEVER CALL YOU FIRST. They only respond to calls you've made to them.

This particular scam allows the caller to take control of your computer, and should you do as they ask, it will end up costing you money for "fixing" problems that they themselves create. Should you receive a call from someone posing as Microsoft, let them know you are aware of the scam and simply hang up. Do NOT allow them access to your computer. Do NOT give out any information.

Thank you for reading. Stay vigilant!

05/26/2015

On the Security warning list today: do not open any emails with an "SVG" file attached. this is a new way CryptoWall Ransomware is being distributed. The email may say it contains a Resume' but in-fact it contains a zip file that will redirect your computer to another site and download another zip file that will infect your computer with the CryptoWall Ransomware. Best thing to do is just delete any e-mail that has a SVG file attached, without opening it.

05/19/2015

Attention!
There is a new job scam going around, preying on people that want to make $600 a week with Red Bull advertising on their car. It sounds like a great deal, but this scam is run by criminals that will try to use their victims for money laundering. If you get an email claiming to be from Red Bull (or anyone else for that matter) that offers you an attractive advertising deal, use that delete key. In general, be very careful with any Internet “work from home” schemes, many of these are fraudulent. Do not give out any personal information to these criminals and warn your family and friends.

05/05/2015

The FBI has issued a news story about Scammers using both Facebook and Twitter to trick people into "Donating" money for the Nepal earthquake victims. Of course that means there will also be e-mail scams of the same nature.
Please beware of what you click on, never click on a link in an email of this nature. If you want to help in the relief effort make sure you are actually on the charity site you wish to donate to, by typing in the address at the top of your browser.

02/02/2015

I just read about a new e-mail scam that I find so scary I feel I should point out the threat to all.

There is a new e-mail that arrives warning parents about a child predator that has moved into your area, the e-mail goes on to ask you to put in your zip code to give you the information on this person, when you do this you are re directed to a legitimate site for "Kids Live Safe", although this site is just a distraction as the malware infection will start as soon as you click on the link.

So always remember be incredibly carful when clicking on links in e-mails, especially if you do not know the sender.

New build sheet for 10/8/14, prices have dropped, so now is the time to order!
10/08/2014

New build sheet for 10/8/14, prices have dropped, so now is the time to order!

Here is Zach's new "Custom" Computer, he started with the HAF case, then spent about 17 Hrs. in paint and body. the pict...
06/13/2014

Here is Zach's new "Custom" Computer, he started with the HAF case, then spent about 17 Hrs. in paint and body. the picture doesn't really due the pearl white justice

Special Edition "ZAX-HAF" this box is built to game, run some of the upgrade options and you'll have a screamer on your ...
02/10/2014

Special Edition "ZAX-HAF" this box is built to game, run some of the upgrade options and you'll have a screamer on your hands!

Address

Searcy, AR

Alerts

Be the first to know and let us send you an email when Computer Consulting & Repair, Inc. (CCR) posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Share