tl:dr – Don’t open any attachments from suspicious emails. Australia Post doesn’t send notifications this way. If you believe you may be infected, turn off the computer and seek professional advice immediately.
Two Ransom-ware outbreaks are happening right now: Australia Post and Cryptowall Attachment.
The spam (distributing Cryptowall 4) is using an obfuscated JavaScript attachment. (Spam mails are already detected by the latest AS full pattern 2092).
The obfuscated JavaScript downloads malicious content from URLs such as: hxxp://dertinyanl.com/img/script.php?tup1.jpg … hxxp://yalcingulten.com/dbsys.php
At the present we have seen 85 fake Australia Post websites (the list is still growing): hxxp://adventuredmc.com/JXZ9TMtUgiI/VvqyrjDo.php … hxxp://wilanowski.net/uUJTW/9oyONj.php
We advise users:
Not to enter Captcha codes to any postal tracking site
Not to open invoice / refund attachments from email (Cryptowall)
Be especially careful about anything purporting to be a parcel notification or Australia Post (use the phone to call Australia Post and confirm any such email).
Email is an integral part of most of business these days with many businesses actually conducting most stages of their workflow through email and/or email clients. Business email use is not the same as personal email use, where personal use is trending towards predominate mobile usage. While businesses are including mobile email access in their...
Today’s blog is about Cyber Security in your business. I’ve condensed into an article and a checklist (skip to Download
Atcom's Checklist for Cyber Security & Breach Prevention
) what I think is important for you to know right now. Cyber Security is about the security of data, information, systems and technology. It includes theft, damage, misdirection, interruption and globally costs business...
In the wake of the recent NHS cyber attack “WannaCry”, please be extra cautious opening emails in the morning! Spread the word! Cyber security flaws can be costly. If your computer or server has not restarted in a while, it isn’t patched either! *Update 15 May 2017: WannaCry variants are already out which extend this...