(page 2 of 2)
93.35, 8800.org, 61.129.112.73
US-CERT Critical Infrastructure Information Notice 07-332-01 November 28, 2007 Page 2 of 2
Recommendations (U//FOUO) US-CERT recommends that organizations apply the above signatures into their IDS and border devices and actively monitor for anomalous activity. Organizations should follow their established internal procedures if any suspected malicious activity is observed, and report their findings to US-CERT for correlation against other incidents. In addition, US-CERT strongly encourages all organizations to remind users of the following preventative measures when working with e-mail:
Do not trust unsolilited e-mail.
Treat all e-mail attachments with caution.
Do not click links in unsolicited e-mail messages.
Install anti-virus software, and keep its virus signature files up to date.
Turn off the option to automatically download attachments
Block executable and unknown file types at the e-mail gateway.
Configure your e-mail client for security.
Employ the use of a spam filter.
For additional information, refer to the Using Caution with Email Attachments document located on the US-CERT website.
Report to US-CERT (U//FOUO) Please report any validated incidents involving this activity to the US-CERT for further correlation, analysis and assistance. E-mail: soc@us-cert.gov Voice: 1-888-282-0870 Incident Reporting Form: https://forms.us-cert.gov/report/
WARNING: This document is UNCLASSIFIED//FOR OFFICIAL USE ONLY (U//FOUO). It contains information that may be exempt from public release under the Freedom of Information Act (5 U.S.C.552). It is to be controlled, stored, handled, transmitted, distributed, and disposed of in accordance with Department of Homeland Security policy relating to FOUO information and is not to be released to the public or other personnel who do not have a valid "need to know" without prior approval of the US-CERT Operations Center at 1-888-282-0870. No portion of this report should be furnished to the media, either in written or verbal form.