Dev License: This installation of WHMCS is running under a Development License and is not authorized to be used for production use. Please report any cases of abuse to abuse@whmcs.com

Windows 10 upgraders targeted in ransomware scam

Attackers are taking advantage of impatient Windows users by sending out phishing emails designed as a Windows 10 upgrade alert from Microsoft, but which instead delivers ransomware.

Users have begun receiving emails - which appear legitimate - containing a .zip compressed email attachment claiming to be a Windows 10 installer.

The scammers are spoofing the sender's email address to make it appear as though the email is from Microsoft. They also have mimicked the blue and white colour scheme used by Microsoft in its Windows 10 branding in the dodgy emails, making them appear more legitimate.

Once a user downloads the attached .zip file, a piece of ransomware dubbed CTB-Locker launches and encrypts the user's files.

The malware requests payment within 96 hours to decrypt the documents. If users fail to pay within that period of time or attempts to remove the ransomware, the blackmailers threaten to destroy the decryption key and leave files permanently scrambled.

Users are advised to keep an external backup of their files and not to click on attachments in phishing emails.

Note: Microsoft is not distributing Windows 10 through emails or attachments. The company has opted to automatically download Windows 10 onto systems via windows update for users who previously opted in to the upgrade.




Wednesday, August 5, 2015

« Back

Powered by WHMCompleteSolution