It encrypts your files and asks you for ransom to decrypt your personal files.
Stay vigilant, and do not click on unsolicited links or unknown attachments.
Keep your system up-to-date and make sure you have an antivirus (eg. Trend Micro Titanium).
If you have any questions or need further assistance, email us at info@sosecure.org.
A recent discovery of a Zero-Day Vulnerability in the “Windows Help Centre” HCP Protocol Handler, which does not handle correctly malformed “Escape Sequences”. Hence, executing code remotely without the authorization of the user.
As per Microsoft, the vulnerability is applicable only to Windows XP and Windows Server 2003.
Scareware criminals are already taking advantage of the vulnerability to earn profit by installing unauthorized software on user machines (i.e. Fake Antivirus).
Here is what you can do to prevent damages:
Try the following harmless Proof-of-Concept (at your own risk):
UPDATE (2010/07/13): Microsoft has released a patch for this issue (MS10-042). Please update as soon as possible.
Few days ago, it was discovered that all desktop AntiVirus products are vulnerable to a technique that Malware can use to bypass SSDT (System Service Dispatch Table) Hooking on Windows Kernel Mode Drivers, which are used by all current Antivirus Vendors.
The KHOBE Attack (Kernel HOok Bypassing Engine) has been proven effective and demonstrated against virtualy every AntiVirus product in the market today!
UPDATE (2010/05/08): Trend Micro acknowledged the issue with no time-frame for a future solution, referring it’s customers to the “Trend Micro Threat Management Services” product.
So, you probably own an iPhone, and you jailbroke it to support your carrier. You should lock-down your iPhone to keep the recent iPhone-Targeted Worms out of your device and to keep your information safe.
One of these solutions will keep you safe:
- Change your “root” and “mobile” user passwords
- Uninstall “OpenSSH” from Cydia/Icy