The FBI's Internet Crime Control Center (IC3) has joined Trusteer in warning users about an ongoing malware attack that plants ransomware on the target PC, rendering the system useless until the user pays a $100 fine to unlock it.The attack starts when the user visits a malicious website that infects their computer with the Citadel Trojan via drive-by-download. The Citadel Trojan then connects to its command & control server to download the Reveton ransomware.
Upon execution, Reveton locks the infected system and displays a fake warning message from the US Department of Justice claiming that the user’s IP address was used to view disturbing content, including child pornography, and that a $100 fine must be paid to unlock the system.

Attention!
This operating system is locked due to the violation of the federal laws of the United States of America! Following violations were detected
Your IP address is [YOUR IP]. This IP address was used to visit websites containing pornography, child pornography, zoophilia, and child abuse. Your computer also contains video with pornographic content, elements of violent and child pornography! Spam-messages with terrorist motives were also sent from your computer.
This computer lock is aimed to stop your illegal activity.
It is important to note that even if the user makes the mistake of paying off the “fine” cooked up by the Reveton ransomware, they’re still not off the hook.
The Citadel Trojan continues to work independently of the Reveton ransomware, harvesting personal and financial information that will be used by cybercriminals to commit identity theft and credit card fraud. The infected machine may also be recruited to participate in DDoS attacks and spam campaigns.
Protecting Your PC From Citadel & Reveton Malware
Since the Citadel Trojan is delivered via drive-by-download attacks, users can minimize their chances of infection by:
- Keeping your operating system patched and up-to-date.
- Installing updates for any software on your machine, especially Adobe Flash, Adobe Acrobat and Java since they are commonly exploited in drive-by-download attacks. You may also want to consider disabling Java if it’s not needed.
- Always run antivirus software and make sure the virus definitions are current.
- Remain vigilant and use common sense. Don’t visit sites that are suspicious, but keep in mind that cybercriminals often use compromised sites to conduct drive-by-downloads.
[via IC3 & Trusteer]
Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet, “Like” us on Facebook or add us to your circle on Google+
If you're like me, you like Google+, but don’t really use it because all of your friends are still on Facebook.
It’s often said that good things come in small packages. Apparently the same rings true for very, very bad things.
Print professional color for a low cost per page. Tap the touchscreen to access apps and control print, copy, and scan jobs. Easily print on the go, and share on a wireless network.




Did you receive a text message saying you were randomly selected to receive a $1,000 Best Buy gift card?

Are you being prompted to enter your debit card information to redeem special rebates or enable fraud protection features when you visit Facebook or try to login to your Gmail, Hotmail or Yahoo account?
It may be worthwhile to put our URL investigative tips to good use before following a shortened URL shared via private messages or chat on Facebook.
Skype users should be wary of random messages from their friends (or strangers if they allow IMs from folks that are not within their list of contacts) that consist of nothing more than a virtual laugh and link:
If you get an email posing as a notification from Chase saying that they’ve detected “an unusual error in your Online access” and need you to download a file attachment containing a web page that will allow you to “confirm your account information” - please delete it immediately.
Did you get an email asking if you recently verified your login or reset your online American Express account password?
McAfee is advising Pinterest users to “pin with caution” to avoid falling for scams shared by cybercrooks looking to make a quick buck off of the pinboard-style social sharing site.
Tread carefully if you’re on the hunt for a free Diablo 3 download.
Are you seeing ads on Wikipedia?
Build projects, inspire teams and impress clients with this HP notebook with a vibrant 14" display and advanced graphics performance.
The Better Business Bureau is warning small businesses and consumers across the country about a phishing email campaign using the BBB's trusted name to dupe users into downloading malicious file attachments.



Oh no! Is someone spreading nasty rumors about you on Twitter?!
The compact Veriton X series desktops pack powerful components and advanced technologies to handle the most challenging office tasks.
Stay on your guard, another round of DHL spam is hitting inboxes.
Take a moment to update Adobe Flash today, folks.
You may be tempted to “click first, think later” when you receive a notice from PayPal saying you just sent payment to some random stranger, but is that email really from PayPal?
Compromised websites serving drive-by-downloads targeting PCs is not exactly new.
Forbes 

What’s this? More pharmacy spam disguised as a social network notification email?