Author Topic: Dangerous Emails  (Read 6394 times)

0 Members and 1 Guest are viewing this topic.

Offline pajamajero

  • Swag User
  • **
  • Posts: 56
  • Thanked: 8 times
  • Gender: Male
Dangerous Emails
« on: April 21, 2015, 07:17:02 PM »
Hi Folks

There are nasty emails around at the moment, my company at a different location to me made a mistake in opening an attachment. It was ...  resume.zip. Unfortunately they were accepting job applications at the time, so the attachment looked normal. Here is a copy of an email I sent to all staff members, friends and customers.

There are dangerous emails spreading across North Qld and beyond.
They will come often from people or customers you know.

The suspect emails contain RANSOMWARE, which will take over your files and encrypt them, then demand money to restore the files.

The files we have seen are all *.ZIP.
We have received so far

resume.zip
electronic.zip
invoice.zip

We have suffered an attack at Mareeba, and today received 2 more infected emails here in Innisfail, one from a local company, and one from a real estate company in Cairns.

DO NOT double click or open these ZIP files, it will activate the RANSOMWARE which is trouble for you and everybody on your contacts list

Advise everyone you can


The ransomware is called CRYPTOWALL, a google search will return more information.
It encrypts every file it can find on you hard drive, and leaves files telling you how to pay them US$500.
It even encrypted files on our company Dropbox. It also searches out your 'contacts' and sends them all an email with the*.zip file. You can see how quickly it can spread. Your contacts are not expecting a contaminated email from you. If caught you will quickly learn how a fairly current backup of your hard drive can save your *ss. You made need professional help to sort your computer out. If you are not really a computer person but own and use a computer, the key word here is BACKUP.

These emails are not an issue unless you double click the attachment !! Just delete them.
Not sure - Don't risk it, even from friends.

If you are unfamiliar with some of the terms I have used - please ask and will do my best to explain them

Cheers

Paj




 
Vehicle: 2005 NP Auto DiD GLX 2015 Mazda BT50 Dual Cab
Camper: 2015 ABC Forward Fold Hard Floor 2015 Jayco 21.65.3 Silverline Outback
The following users thanked this post: Moggy

Offline Nomad

  • Hard Top Camper User
  • ******
  • Posts: 2622
  • Thanked: 94 times
  • Gender: Male
Re: Dangerous Emails
« Reply #1 on: April 21, 2015, 07:22:45 PM »
Yeah too true.

My IT guy has told me to delete any email that comes in with a ZIP file attached. He reckons its just rife at the moment.

 :cheers:

Offline duggie

  • Hard Top Camper User
  • ******
  • Posts: 2455
  • Thanked: 176 times
  • Gender: Male
  • Dont you just love it.
Re: Dangerous Emails
« Reply #2 on: April 21, 2015, 07:29:55 PM »
Hi  pajamajero,

thanks for the heads up.

cheers duggie
" Old Nissans Just Keep On Truckin On "

Offline JCOJ

  • 2019 National Meet Volunteer
  • Hard Top Camper User
  • *****
  • Posts: 2476
  • Thanked: 73 times
  • Gender: Male
Re: Dangerous Emails
« Reply #3 on: April 21, 2015, 07:32:08 PM »
I received a few of them today. I got sus as soon as I read that the e-mail that it came from was from Letitia@ my company!?!?


Offline Bird

  • Once Was Lost, now am found
  • Hard Top Camper User
  • ******
  • Posts: I am a geek!!
  • Thanked: 1874 times
  • Gender: Male
  • Life is far too long....
    • My Place.
Re: Dangerous Emails
« Reply #4 on: April 21, 2015, 09:12:51 PM »
theres that much Shit going on at the moment, its no wonder some companies have got rid of email all together....
-
Click to enlarge

Gone to a new home

Offline bruce93

  • Sleeping Bag User
  • *
  • Posts: 35
  • Thanked: 1 times
Re: Dangerous Emails
« Reply #5 on: April 21, 2015, 10:26:28 PM »
When I was working in I.T last year one of our users in Sydney opened one. Infected 2 servers in Sydney before they noticed it. Thankfully we took the VPN down between Melb and Sydney so the servers I was looking after didn't get infected. Took the Sydney boys 2 days to recover the data from back ups. Very very nasty stuff ransomware!!

Offline peterdeg

  • Tent User
  • ***
  • Posts: 143
  • Thanked: 3 times
  • Gender: Male
Re: Dangerous Emails
« Reply #6 on: April 22, 2015, 08:47:21 AM »
The funny thing is that they're ethical crooks. If you pay the ransom, they do actually give you the unlock key.
Peter.
Bluetongue Trekka Offroad
http://www.myswag.org/index.php?topic=36718.0

Offline tk421

  • Hard Floor Camper User
  • *****
  • Posts: 1050
  • Thanked: 108 times
  • Gender: Male
    • Out of the Office... Road trips round Australia
Re: Dangerous Emails
« Reply #7 on: April 22, 2015, 10:06:46 AM »
We are really well protected at work, but we still had a few machines at work taken out by ransom-ware a while ago. People got an email  from Energy Australia saying "You owe money. Click here to see the bill".   Funny thing was, no-one who clicked the link was actually with Energy Australia. No one thought to question it.

We just flattened the machines and they lost all their data because you can't really recover from the cryptotography.  But seeing as our company policy is specifically to not store any company data on your local hard-drives because they're not backed up (all other systems are) the responses were along the lines of "Sucks to be you". "Lost your Bali holiday photos? Tough"
“It is good to have an end to journey toward; but it is the journey that matters, in the end.”  - Ernest Hemingway

Offline pajamajero

  • Swag User
  • **
  • Posts: 56
  • Thanked: 8 times
  • Gender: Male
Re: Dangerous Emails
« Reply #8 on: April 22, 2015, 01:20:16 PM »
The advice is never pay, no matter how bad your issues are.
The other thing is they want payment by bitcoin, which would prove difficult at best

Paj
Vehicle: 2005 NP Auto DiD GLX 2015 Mazda BT50 Dual Cab
Camper: 2015 ABC Forward Fold Hard Floor 2015 Jayco 21.65.3 Silverline Outback

Offline BaseCamp

  • Hard Top Camper User
  • ******
  • Posts: 1681
  • Thanked: 205 times
  • Gender: Male
  • Shake & Bake BB!
Re: Dangerous Emails
« Reply #9 on: April 22, 2015, 05:36:31 PM »
The funny thing is that they're ethical crooks. If you pay the ransom, they do actually give you the unlock key.

no sadly its all just business as usual in Scumville....

If they didn't go to the bother of sending you the unlock key - then I guess pretty soon social media and a gazillion web based forums such as this; would be warning victims not to pay ...   "because you are screwed in any case"...

This is very different from a person hostage situation because you WILL pay the ransom (if possible) - to get your loved one back; but its a once off deal; (with high risk to victim-returning so called "ethical crook"...)

AKA - most times they will just kill em and dump the bodies somewhere
« Last Edit: April 22, 2015, 05:38:07 PM by BaseCamp »
You get out and in to the world -- you take more @#&$. …You climb a little higher, ..you take less @#&$.  …Till one day -- you're up in the rarefied atmosphere -- and you've forgotten what @#&$ even looks like….  Welcome to the layer cake son.

Offline #jonesy

  • Hard Floor Camper User
  • *****
  • Posts: 1326
  • Thanked: 163 times
  • Gender: Male
Re: Dangerous Emails
« Reply #10 on: April 22, 2015, 06:05:01 PM »
My wife's work had the same last week, resume.zip
 One of the employees got it and deleted it then thought they better check it, not that he was in a position to read resumes anyway. Lucky they back up regularly.

Never open zip files unless you know where they are from. virus scanners don't scan them as viruses

2013 Aussie Jays - Crusher      2013 Toyota Hilux. 

Offline nic0

  • Sleeping Bag User
  • *
  • Posts: 25
  • Thanked: 1 times
Re: Dangerous Emails
« Reply #11 on: April 30, 2015, 04:42:50 PM »
Buy a portable hard disk, connect it up one a month, backup all of your important stuff then unplug it. In my opinion its a cheap insurance policy.
« Last Edit: April 30, 2015, 04:44:52 PM by nic0 »

Offline Humphreythebear

  • Tent User
  • ***
  • Posts: 106
  • Thanked: 12 times
Re: Dangerous Emails
« Reply #12 on: April 30, 2015, 07:01:15 PM »
Erm , I opened one this morning ....... I know - goose alert !

But , it was from the AFP , as in Australian Federal Police , a driving infringement. When you clucky clicky it takes you to the official AFP site .

I rang the AFP and the answer was "oh yeah that started this morning "
No announcement that they have been hacked ..........

If you can't trust our police , who do you trust ?


And yes , the it guy hates me !
Q
Outback Sturt , Holden SS Ute and a MTB for the Rough Stuff

Offline #jonesy

  • Hard Floor Camper User
  • *****
  • Posts: 1326
  • Thanked: 163 times
  • Gender: Male
Re: Dangerous Emails
« Reply #13 on: May 01, 2015, 06:11:40 AM »
Did it have the real AFP Site.         afp.gov.au?

What was the address it came from?    ????@afp.gov.au,   Or more like.    .????@afp.au.dodgy-country-code

Same rules apply,

- NEVER open zip files.
- Check the from address.
- Check the county codes at the end of any website links.
- If it is not personally addressed to you, by name.
- No bank etc EVER asks for you to log into your account via email links
« Last Edit: May 01, 2015, 06:13:46 AM by #jonesy »
2013 Aussie Jays - Crusher      2013 Toyota Hilux. 

Offline Humphreythebear

  • Tent User
  • ***
  • Posts: 106
  • Thanked: 12 times
Re: Dangerous Emails
« Reply #14 on: May 01, 2015, 05:40:50 PM »
Yep , genuine AFP site - I rang them using the contact details ......
Our it guy has re or is that un buggered my computer , he is still shirty with me !
Outback Sturt , Holden SS Ute and a MTB for the Rough Stuff

KingBilly

  • Guest
Re: Dangerous Emails
« Reply #15 on: May 01, 2015, 06:28:51 PM »
Erm , I opened one this morning ....... I know - goose alert !

But , it was from the AFP , as in Australian Federal Police , a driving infringement. When you clucky clicky it takes you to the official AFP site .

I rang the AFP and the answer was "oh yeah that started this morning "
No announcement that they have been hacked ..........

If you can't trust our police , who do you trust ?


And yes , the it guy hates me !
Q

Do you live in the ACT?  Or have you driven through the ACT lately?

KB

Offline Humphreythebear

  • Tent User
  • ***
  • Posts: 106
  • Thanked: 12 times
Re: Dangerous Emails
« Reply #16 on: May 02, 2015, 05:53:35 PM »
No , in Vic - drive past Melbourne airport every morning and night .
Also apparently AFP don't do traffic infringements.....
So I'm a double goose ! Or is that a super goose .
Outback Sturt , Holden SS Ute and a MTB for the Rough Stuff

Offline shrek4

  • Soft Floor Camper User
  • ****
  • Posts: 519
  • Thanked: 36 times
  • Gender: Male
  • Lifestyle AT12 & 2020 Nissan Patrol Ti-L
Re: Dangerous Emails
« Reply #17 on: May 02, 2015, 06:05:21 PM »
No , in Vic - drive past Melbourne airport every morning and night .
Also apparently AFP don't do traffic infringements.....
So I'm a double goose ! Or is that a super goose .
i

So long as you're not a cooked goose!