Categories: NewsSecurity

Unknown Ransomware Is Distributed Through Fake IRS Emails

Whenever the IRS issues a statement regarding technology or cryptocurrency, there is plenty of reason to be concerned. In some cases, however, the institution legitimately aims to protect consumers from financial harm. Its latest communication appears to concern the topic of ransomware distributed via phishing emails. Interestingly enough, these emails are fake. 

IRS Phishing Emails Distribute Ransomware

Cybercriminals know no boundaries when it comes to nefarious activity. Although the distribution of malware and ransomware via email is nothing new by any means, they do not shy away from impersonating legitimate agencies either. Sending out fake emails seemingly coming from the Internal Revenue Service to distribute ransomware is bound to get the attention of the real IRS sooner or later. It turns out the criminals have succeeded, although it is nearly impossible to thwart their efforts right away.

The fake IRS email looks pretty legitimate. It boasts an official logo, and the message included leaves nothing to the imagination. Victims are told they must download a questionnaire, fill it in with personal information, and email it to the IRS. The email in question also bears the logo of the FBI, although it is unclear why that institution would be involved. Then again, the email states that the goal is to maximize tax revenue, and a mention of the FBI might make some people believe this questionnaire to be legitimate.

That is not the case, though. As soon as a recipient downloads the attachment, they will effectively allow their computer to be infected with ransomware. For the time being, researchers have no clue which ransomware they are dealing with, as it does not bear any resemblance with any known strains. It does successfully encrypt files on the computer in question, although there is no mention of it altering master boot records or anything like that. Nor is it clear how much money its developers ask for when the customer wishes to decrypt his or her files.

Related Post

Schemes like these are nothing new either, though. Criminals have used IRS-spoofed email messages in the past for other nefarious purposes, such as the infamous tax return scam. It is up to individual consumers to identify these threats and take action accordingly. The IRS would never contact users with a questionnaire using a file that must be downloaded and mailed to them in physical form. The whole setup makes no sense whatsoever, despite the inclusion of logos belonging to the IRS and FBI.

Indeed, anyone in the U.S. with a potential tax issue would not be contacted by email or phone either. Nor would that communication take place in a threatening tone. Luckily, the IRS issued a few warnings weeks ago to prevent U.S. citizens from falling victim to any form of scam, hack, or malware distribution attempt. It is good to see officials explain this situation so it is clear for everyone to understand. This governmental institution is widely respected, even though not everyone agrees with its decisions every time.

The bigger question is who is behind this new ransomware distribution campaign. Researchers would also love to know which type of malware is being distributed exactly. Knowing that this is a serious threat which no one has encountered before will not put people’s minds at ease by any means. There is also no free decryption tool available for this ransomware, as researchers literally know nothing about it at this stage. Once they can analyze a few samples, things will become a lot clearer.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitcoin Crashes Below $67,000 as $700 Million Wiped From Crypto Market in Hours

Bitcoin is bleeding. The world's largest cryptocurrency plunged to $66,997 on Tuesday, shedding over $6,750…

1 day ago

Ripple’s RLUSD Goes Live in Türkiye, Hits $1.7 Billion Market Cap

Ripple is not pausing for breath. The company has brought its dollar-pegged stablecoin, $RLUSD, to…

1 day ago

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

2 days ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

2 days ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

3 days ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

3 days ago