IT Services Alerts - Ransomware advisory - Bad Rabbit, October 25th, 10:25am
All users should be aware of a new type of ransomware in circulation known as Bad Rabbit.
Ransomware: what you need to know.
Ransomware is malicious software which when installed on your PC, will lock your PC so you cannot access your programs and files and can also encrypt your files. The software will then demand a ‘ransom’ or payment from you to get access to your programs or files again.
How does the malicious software get onto your PC?
Ransomware can infect your PC through an email which will ask you to open an attached MS Word or Excel file, PDF document or picture file which is infected; or will provide a link to a website from which it downloads onto your computer. However, it could come from sites you browse, particularly sites involving free downloads of movies/music/games, where the virus is attached to the downloaded file.
Bad Rabbit infects your PC by using a fake pop up window for updating Flash software.
IT Services have blocked access to all websites known to be related to the bad rabbit ransomware infection, however caution is advised as new sites may become infected.
How can I protect my PC and my data?
1. Exercise caution when browsing the Internet and opening emails, do not click on any unexpected pop-up windows or links as these can introduce the infection to your computer. Users should be particularly cautious if they receive any unexpected emails with Microsoft Office file attachments. Be mindful if you are downloading free software or other content from the internet as such files may contain hidden or "trojan" viruses which could infect your computer.
2. Make sure that you update the Microsoft software on your PC. If you have a Windows PC on the staff network updates will be pushed by IT Services which will help to ensure your PC is not as susceptible to new ransomware and virus threats. If you are unsure whether your PC has the most current updates, you can verify by manually running Windows Update service. More information on security updates can be found at https://www.tcd.ie/itservices/security/software-updates.php
3. Ensure that you are running anti-virus software and that it is up to date.More information on anti-virus for staff and supported antivirus solutions for students can be found at our antivirus page https://www.tcd.ie/itservices/security/anti-virus-info.php
4. Ensure you have a recent backup of your important College files. It is always prudent to back up your files, either to a trusted backup drive or using OneDrive for staff / MyZone Drive for students.
More information on our Tips and Good Practice page https://www.tcd.ie/itservices/security/tips-good-practice.php
Note: If there are any computers in your area which are shared by students for lab work or by guests you should remember to check that they are also protected.
What should I do if I think that my computer is infected?
If you think that your computer has become infected you should immediately disconnect if from the Trinity network, then turn it off and contact IT Service Desk. https://www.tcd.ie/itservices/help/it-service-desk-contact.php