Warning: The GandCrab 5.2 ransomware is impersonating the Ministry of Public Security of Vietnam

Recently, the Vietnam Computer Emergency Response Team (VNCERT) issued Official Dispatch No. 81/VNCERT-DPUC to warn about monitoring and blocking connections to the command and control servers of the GandCrab 5.2 malware.

In Vietnam, GandCrab 5.2 is distributed through spoofed emails claiming to be from the Ministry of Public Security, with the subject "Goi trong Cong an Nhan dan Viet Nam" and an attached file named documents.rar. When users extract and open the file, their data is encrypted, and a ransom demand file is generated, asking for a ransom of USD 400 - 1,000.

To help users prevent this malware, Official Dispatch No. 81/VNCERT-DPUC provides the following measures:

- Monitor and block connections to the command and control servers of the GandCrab ransomware, and update protection systems such as IDS/IPS, Firewall, etc.;

- If detected, promptly isolate the affected area/machine;

- Do not open or click on links or attachments in emails from unknown sources that contain files in formats such as .doc, .pdf, .zip, rar, etc.

More details can be found in Official Dispatch No. 81/VNCERT-DPUC issued on March 15, 2019.

>> CLICK HERE TO READ THIS ARTICLE IN VIETNAMESE

1 lượt xem



  • Address: 19 Nguyen Gia Thieu, Vo Thi Sau Ward, District 3, Ho Chi Minh City
    Phone: (028) 7302 2286
    E-mail: [email protected]
Parent company: THU VIEN PHAP LUAT Ltd.
Editorial Director: Mr. Bui Tuong Vu - Tel. 028 3935 2079
P.702A , Centre Point, 106 Nguyen Van Troi, Ward 8, Phu Nhuan District, HCM City;