if open it steals personal data


A fraud IT in a workmanlike manner. Receive a communication fromRevenue Agency it is not always reassuring, it is even less so if a email is hidden in a virus computer scientist. As reported by the Cert-Pa, the Computer Emergency Response Team of the Public Administration, in Italy, through a spam campaign, the Maze ransomware is spreading as an official communication from the Revenue Agency. The danger is not contained in the communication, which copies the institutional logo of the Treasury, but in the annex: it is a Word file with the name VERDI.doc, if opened it downloads Maze.Revenue Agency – Collection: attention to fraud with false e-mails

The ransomware is a virus that takes devices hostage, encrypts the files contained and to get them back you have to pay a redemption to cyber criminals. Among the encrypted files, in fact, there appears one named DECRYPT-FILES.txt containing the instructions to pay the ransom and purchase the private key needed to decrypt the files. To try to seem more plausible, the message that Maze distributes relies on three domains, registered a few days ago, which might seem legitimate to a distracted eye but in reality they are not: it is agencyentrateinformazioni.icu, agenziaentrate.icu and Agenziainformation .icu.

Fraud false e-mails on electronic billing, alert of the Revenue Agency

At the moment a tool to defend oneself has not been created, therefore prevention is needed. The first step is to update both the antivirus and the operating system, in addition of course to the version of Flash Player installed on the computer, given that Maze just exploits a vulnerability in these Adobe software. Then it is important to periodically perform a data backup, ie a copy of your files to be restored in case of attack. Finally, verify that every email actually arrives from the indicated sender: in this case, the domains used do not belong to the Revenue Agency.

Source link



Please enter your comment!
Please enter your name here

15 − eleven =