26/09/2016
Security bulletin
Ransomware virus on the rise. YOU could be next.
Beware of this latest variant called “Cerber3”
What is Ransomware?
Ransomware is a type of virus that encrypts all your important files such as documents, Photos, databases etc.
The cyber-criminals use this type of virus in order to extort money from their victims. Once your files are encrypted the only way to safety restore them is through backups.
Sometimes you can get away with file restoration programs such as “Get data back”
NEVER EVER EVER pay the ransom. There is NO guarantee that you will get your data. We CAN guarantee that you will be funding these criminals.
What is so Dangerous about “Cerber3”?
This latest variant uses AES as well as RSA type encryption making a decipher application virtually impossible. It also claims to use Cipher block chaining (CBC) which means, if we try to decrypt the file without the unique private key attached to the encryption, the files get damaged and corrupted rendering the file completely destroyed.
I have an Anti-Virus so I should be safe right?
NO, Cerber3 makes use of stealth which means the Anti-Virus only discovers it AFTER the damage is done. It attaches itself to legitimate software as well as through SPAM emails and web. All it takes is for the website to load without the need to click any links.
What type of files does it target?
Cerber3 targets everything except systems files.
Is there any way to decrypt the files once I am hit?
At present, NO. There are NO possible means of decrypting the files using 3rd party software. The only possible way of recovery is via backups or alternatively system restore. There are also claims that it destroys any shadow copies making a restore via shadow copies impossible.
What can I do to be safe?
Be careful on the internet. Do not click on suspicious links and DELETE suspicious emails. Be especially careful on torrent sites if you use them. Once the virus hits, it only takes seconds to destroy ALL your important data.
For further reading simply google “Cerber3 ransomware”
Thank you and stay safe.
Samrag I.T. Enterprise.