{"id":16952,"date":"2019-11-21T10:00:08","date_gmt":"2019-11-21T18:00:08","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2019\/11\/21\/news-10689\/"},"modified":"2019-11-21T10:00:08","modified_gmt":"2019-11-21T18:00:08","slug":"news-10689","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/11\/21\/news-10689\/","title":{"rendered":"Warning! Windows 10 Fake Update is Actually Ransomware"},"content":{"rendered":"<p><strong>Credit to Author: Trend Micro| Date: Thu, 21 Nov 2019 16:27:31 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"200\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-300x200.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"Mobile devices could be the biggest ransomware threat.\" style=\"float: left; margin-right: 5px;\" link_thumbnail=\"\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-300x200.jpg 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-440x294.jpg 440w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-380x254.jpg 380w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500.jpg 500w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>Microsoft never sends updates via email. Many folks don\u2019t know that, which is why a new ransomware campaign masquerading as a Windows 10 update is so pernicious.<\/p>\n<p>You may have already gotten a fake notice saying \u201cInstall Latest Microsoft Update Now!\u201d Or \u201cCritical Microsoft Windows Update!\u201d, with the body of the message asking you to \u201cPlease install the latest critical update from Microsoft attached to this mail,\u201d with an apparent JPG file attached, (which is actually an executable .NET file).<\/p>\n<p>Do NOT click on the attachment and delete the email immediately.<\/p>\n<p>The file is a ransomware called Cyborg, which will encrypt all your files, lock their contents, and change their extensions to 777. As is typical of ransomware, you\u2019ll also be delivered a file named \u201cCyborg_DECRYPT.txt,\u201d which contains the instructions on how you can recover your files\u2014<em>if<\/em> you pay the cybercriminal. You should <em>never<\/em> do that. There\u2019s no guarantee that even if you fork over the cash, the cybercriminals will release your computer.<\/p>\n<p>Trustware, which discovered the ransomware, says four variants are out there, spawned from somewhere in Russia, so you should be on the lookout for variations to the email notice, including those that are attached to other emails. The ransomware has the capacity to evade gateway controls.<\/p>\n<p>Keep in mind that it\u2019s always a best practice to be <em>very<\/em> cautious about unknown mails you get, and even those \u201capparently\u201d from people you know, and never click on enclosed files in email unless you\u2019re 100% sure of its source (which means: you need to make a separate effort to check it).<\/p>\n<p>If you\u2019re already infected, go to our <a href=\"https:\/\/esupport.trendmicro.com\/en-us\/home\/pages\/technical-support\/maximum-security\/1099580.aspx?cm_mmc=iKB-_-Ransomware_help-_-TEG0-_-EN-US\">Ransomware Prevention and Help<\/a> page from another computer to get help. From there, you can contact our <a href=\"https:\/\/esupport.trendmicro.com\/en-us\/home\/pages\/technical-support\/maximum-security\/1099580.aspx?cm_mmc=iKB-_-Ransomware_help-_-TEG0-_-EN-US#myModal\">Technical Support<\/a> for further assistance.<\/p>\n<p>Know too, that <a href=\"https:\/\/www.trendmicro.com\/en_us\/forHome\/products\/maximum-security.html\">Trend Micro Security<\/a> has built-in protections against ransomware. Its <a href=\"https:\/\/www.youtube.com\/watch?v=Gh-0bKDBcCc&amp;list=PLZm70v-MT4JrrjgguJYCNR8yNjGq0swB3&amp;index=10\">Folder Shield<\/a> protection can help stop it in its tracks from encrypting your precious files, as you can see in our video we\u2019ve linked here.<\/p>\n<p>When it comes to ransomware outbreaks, you can <em>never<\/em> be too cautious. Stay alert! Hoaxed emails can take many forms.<\/p>\n<p>&nbsp;<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/warning-windows-10-fake-update-is-actually-ransomware\/\">Warning! Windows 10 Fake Update is Actually Ransomware<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n<p><a href=\"https:\/\/blog.trendmicro.com\/warning-windows-10-fake-update-is-actually-ransomware\/\" target=\"bwo\" >http:\/\/feeds.trendmicro.com\/TrendMicroSimplySecurity<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Trend Micro| Date: Thu, 21 Nov 2019 16:27:31 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"200\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-300x200.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"Mobile devices could be the biggest ransomware threat.\" style=\"float: left; margin-right: 5px;\" link_thumbnail=\"\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-300x200.jpg 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-440x294.jpg 440w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500-380x254.jpg 380w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/Mobile-devices-could-be-the-biggest-ransomware-threat_459_40163488_0_14127427_500.jpg 500w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>Microsoft never sends updates via email. Many folks don\u2019t know that, which is why a new ransomware campaign masquerading as a Windows 10 update is so pernicious. You may have already gotten a fake notice saying \u201cInstall Latest Microsoft Update Now!\u201d Or \u201cCritical Microsoft Windows Update!\u201d, with the body of the message asking you to&#8230;<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/warning-windows-10-fake-update-is-actually-ransomware\/\">Warning! Windows 10 Fake Update is Actually Ransomware<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10413],"tags":[3924,3765,666,23508],"class_list":["post-16952","post","type-post","status-publish","format-standard","hentry","category-security","category-trendmicro","tag-phishing","tag-ransomware","tag-uncategorized","tag-windows-update-hoaxes"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/16952","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=16952"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/16952\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=16952"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=16952"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=16952"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}