<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ITWurx &#187; ransomware</title>
	<atom:link href="https://www.itwurx.net/blog/tag/ransomware/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.itwurx.net/blog</link>
	<description>ITWurx Inc.</description>
	<lastBuildDate>Sat, 06 Jan 2018 09:13:19 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.2</generator>
		<item>
		<title>New CryptoWall 3.0 surfaces</title>
		<link>https://www.itwurx.net/blog/new-cryptowall-3-0-surfaces/</link>
		<comments>https://www.itwurx.net/blog/new-cryptowall-3-0-surfaces/#comments</comments>
		<pubDate>Mon, 09 Mar 2015 21:30:59 +0000</pubDate>
		<dc:creator>Ethan</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[CryptoLocker]]></category>
		<category><![CDATA[CryptoWall]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[Virus]]></category>

		<guid isPermaLink="false">http://www.itwurx.net/blog/?p=429</guid>
		<description><![CDATA[A new wave of CryptoWall attacks have shown up in e-Mails containing social engineering attacks call Phishing attacks. These e-Mails have .chm files attached that carry the malware infection into the network.  A .chm file is a file type used for publishing Help documents &#8230; <a href="https://www.itwurx.net/blog/new-cryptowall-3-0-surfaces/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>A new wave of CryptoWall attacks have shown up in e-Mails containing social engineering attacks call Phishing attacks. These e-Mails have .chm files attached that carry the malware infection into the network.  A .chm file is a file type used for publishing Help documents in applications.  CryptoWall 3.0 is the latest version of ransom-ware that encrypts your files and then demands a fee to recover your data.</p>
<p>Back in September of 2013, CryptoLocker produced 27 Million dollars in ransom within the first 3 months of existence. CryptoWall and CryptoLocker usually infects users by attaching itself to e-mails and making itself look like something legitimate, like a UPS or FedEx delivery report, a Scan or Fax from your office machine, or in the latest version, an incoming fax report. The attached files are usually nested inside of a .Zip file.</p>
<p>Once a user is fooled into executing the attached file, the virus encrypts files on your computer and files on mapped drives and then demands that you pay hundreds of dollars by MoneyPack or BitCoin for a decryption key.</p>
<p>Ask yourself right now, &#8220;Am I sure that I am protected against this type of threat?&#8221;  If you are not sure that your network is protected against the damage that CryptoWall 3.0 can do &#8211; <strong>call <a href="tel:3104642387">310 464-2387</a> now and let&#8217;s discuss how we can protect your network and your data from being destroyed beyond recovery.</strong></p>
]]></content:encoded>
			<wfw:commentRss>https://www.itwurx.net/blog/new-cryptowall-3-0-surfaces/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#8220;Your Computer has been locked!&#8221; &#8211; About the fake FBI Warning Ransomware Virus</title>
		<link>https://www.itwurx.net/blog/your-computer-has-been-locked-about-the-fake-fbi-warning-ransomware-virus/</link>
		<comments>https://www.itwurx.net/blog/your-computer-has-been-locked-about-the-fake-fbi-warning-ransomware-virus/#comments</comments>
		<pubDate>Tue, 16 Oct 2012 19:17:25 +0000</pubDate>
		<dc:creator>Ethan</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[FBI Virus]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[Your Computer has been locked!]]></category>

		<guid isPermaLink="false">http://itwurx.net/blog/?p=245</guid>
		<description><![CDATA[As an ardent supporter of Windows, its subsceptability to malware attacks is still a sore black eye.  Fortunately for me, I followed this advice to minimize the impact of a virus.  Specifically &#8211; my account was a standard user account, &#8230; <a href="https://www.itwurx.net/blog/your-computer-has-been-locked-about-the-fake-fbi-warning-ransomware-virus/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>As an ardent supporter of Windows, its subsceptability to malware attacks is still a sore black eye.  Fortunately for me, I <a title="Simple Windows Tips to Avoid Viruses and Increase Security" href="http://itwurx.net/blog/simple-windows-tips-to-avoid-viruses-and-increase-security/">followed this advice to minimize the impact of a virus</a>.  Specifically &#8211; my account was a standard user account, not an administrative one.  Read that article to learn more about how to use your Windows computer more securely.</p>
<div id="attachment_250" class="wp-caption alignright" style="width: 310px"><a href="http://itwurx.net/blog/wp-content/uploads/2012/10/Your-Computer-has-been-locked.jpg"><img class="size-medium wp-image-250" title="Your Computer has been locked!" src="http://itwurx.net/blog/wp-content/uploads/2012/10/Your-Computer-has-been-locked-300x222.jpg" alt="&quot;Your Computer has been locked!&quot; - Fake FBI Message" width="300" height="222" /></a><p class="wp-caption-text">&#8220;Your Computer has been locked!&#8221; &#8211; Fake FBI Warning</p></div>
<p>While browsing a website, my computer suddenly displayed this screen.  My first reaction was &#8220;whatever, ALT+F4&#8243;  My next reaction was &#8220;oh &#8211; that didn&#8217;t work.&#8221;  <a title="How do mulitiple monitors make you more productive?" href="http://itwurx.net/blog/how-do-mulitiple-monitors-make-you-more-productive/">I have dual monitors</a>, so one of them showed only my desktop background.  The other showed this bogus message.  I tried &#8220;CTRL+ALT+DEL&#8221; and then run task manager, but I would be returned to my blank desktop and this message. The message did exactly what it threatened to do, and it did it pretty well.  I&#8217;ve been a computer network engineer for over a decade and this thing briefly left me feeling locked out&#8230; WOW</p>
<p>The message claims to be from the FBI warning that &#8220;The work on your computer has been suspended on the grounds of unauthorized cyberactivity.&#8221;  The message further states &#8220;To unlock your computer and to avoid other legal consequences, you are obligated to pay a release fee of $200.&#8221;  (OK thieves &#8211; at least be reasonable, and by the way I hope you die painfully for all the trouble you cause)  The message advises you to go to your local 7-11, Rite Aid, Kmart, CVS, Walgreens or Walmart and pickup a &#8220;green dot MoneyPak&#8221; voucher.</p>
<p>This is (obviously) a fake message.  The creator of this virus is dressing this scam up as an FBI enforcement warning when it&#8217;s really a trick to have you send them $200 bucks!  This is a great specimen of &#8220;Ransomware&#8221; where a virus gets into your computer, locks your files or your access and then demands money to unlock your files or access to your computer.  This type of ransomware has usually surfaced as fake anti-virus in the past.  So incase you were on the way to the store to pick up a MoneyPak card, please don&#8217;t!</p>
<p>So now that you know this is a fake message and that your computer IS NOT LOCKED by the FBI, see our <a title="“Your Computer has been locked!” – Fake FBI Virus Removal Guide" href="http://itwurx.net/blog/your-computer-has-been-locked-fake-fbi-virus-removal-guide/">&#8220;Your Computer has been locked&#8221; virus removal guide</a>.  Our <a title="“Your Computer has been locked!” – Fake FBI Virus Removal Guide" href="http://itwurx.net/blog/your-computer-has-been-locked-fake-fbi-virus-removal-guide/">virus removal guide</a> doesn&#8217;t require any downloads and doesn&#8217;t require you to purchase anything.</p>
<p>If you require further assistance, as always, feel free to call (888) 777-WURX.  One of our engineers will be glad to help you rid yourself of this pesky virus for much less than  the $200.00 the ransomware is asking for.</p>
<p><a title="“Your Computer has been locked!” – Fake FBI Virus Removal Guide" href="http://itwurx.net/blog/your-computer-has-been-locked-fake-fbi-virus-removal-guide/">Click HERE to see our Virus Removal Guide for the Fake FBI Virus</a></p>
]]></content:encoded>
			<wfw:commentRss>https://www.itwurx.net/blog/your-computer-has-been-locked-about-the-fake-fbi-warning-ransomware-virus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
