Return-Path: <1921889-490-1022@be5.maropost.com>
Delivered-To: edward@transocean.com
Received: from vps.transocean.com
	by vps.transocean.com (Dovecot) with LMTP id 4SqTNDqdpVl7EQAAInt2oQ
	for <edward@transocean.com>; Tue, 29 Aug 2017 09:58:34 -0700
Return-path: <1921889-490-1022@be5.maropost.com>
Envelope-to: edward@transocean.com
Delivery-date: Tue, 29 Aug 2017 09:58:34 -0700
Received: from mta7168.mp2200.com ([162.247.117.168]:46390)
	by vps.transocean.com with esmtp (Exim 4.89)
	(envelope-from <1921889-490-1022@be5.maropost.com>)
	id 1dmjq8-0001CL-Aq
	for edward@transocean.com; Tue, 29 Aug 2017 09:58:34 -0700
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
 s=default; d=knowbe4.com; t=1504025890; l=1; h=from:subject:date:to;
 bh=nR4OLZRZ0GUjrRPiikCTwjFrqv567Fsl8w66LhE1mcQ=;
 b=Hw6D5cDrISgypRdQ2SKEoWrfO2komaYuE6L7/P7GZeferuSCzljnKjbOLGPnz9b205HMfo
 9VnlyVVtNoZBDOyRzj0hL2az3Lb0FMJG+ZXRmdDlYOhZURpqHJc0HJn58k7XYVN04V8RiL
 0KtGtjAWdLL2lo4jmQBDkFEx9NNjpCk=
Received: from [<1921889-490-1022@be5.maropost.com>] ([<1921889-490-1022@be5.maropost.com>] helo=) 
 by 771426-mailer10 (envelope-from 1921889-490-1022@be5.maropost.com)
 (Jetsend MTA 0.0.1 with ESMTP; Tue Aug 29 11:14:42 EDT 2017
Date: Tue, 29 Aug 2017 11:14:41 -0400
From: CyberheistNews Flash <feedback@knowbe4.com>
Reply-To: feedback@knowbe4.com
To: edward@transocean.com
Message-ID: <b4a02190-6efa-0135-226e-0cdcd4b634c4@knowbe4.com>
Subject: [ALERT] The IRS Issued An Urgent Warning Against An IRS / FBI-Themed
 Ransomware Phishing Attack
Mime-Version: 1.0
Content-Type: multipart/alternative;
 boundary="--==_mimepart_59a584e1aba44_5ba076fd89c4894913f9";
 charset=UTF-8
Content-Transfer-Encoding: 7bit
List-Unsubscribe: <mailto:1921889-490-1022-162.247.117.168-gmail@abuse.maropost.com>
X-CampaignID: 490
X-Campaign-ID: 490
X-ContactID: 1921889
X-AccountID: 1022
X-Binding: 162.247.117.168
X-DkimDomain: knowbe4.com
X-DkimSelector: default
X-Feedback-ID: 490:Maropost
X-Spam-Status: No, score=0.7
X-Spam-Score: 7
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "vps.transocean.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 
 Content preview:  This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt;
    by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt; Manage Subscriptions
    http://newsletter.knowbe4.com/a/1022/unsubscribe/490/1921889/cca4bff1658b608098a16141a469e5e8969afc7a
    33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA Report Spam http://newsletter.knowbe4.com/a/1022/report_spam/490/1921889/cca4bff1658b608098a16141a469e5e8969afc7a
    [...] 
 
 Content analysis details:   (0.7 points, 3.0 required)
 
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: irs.gov]
  0.0 T_SPF_HELO_TEMPERROR   SPF: test of HELO record failed (temperror)
  0.0 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail
                             domains are different
 -0.0 SPF_PASS               SPF: sender matches SPF record
  0.8 BAYES_50               BODY: Bayes spam probability is 40 to 60%
                             [score: 0.4910]
  0.0 T_KAM_HTML_FONT_INVALID BODY: Test for Invalidly Named or Formatted
                             Colors in HTML
  0.0 HTML_MESSAGE           BODY: HTML included in message
  0.1 DKIM_SIGNED            Message has a DKIM or DK signature, not necessarily valid
 -0.1 DKIM_VALID             Message has at least one valid DKIM or DK signature
 -0.1 DKIM_VALID_AU          Message has a valid DKIM or DK signature from author's
                             domain
  0.0 UNPARSEABLE_RELAY      Informational: message has unparseable relay lines
X-Spam-Flag: NO


----==_mimepart_59a584e1aba44_5ba076fd89c4894913f9
Content-Type: text/plain;
 charset=UTF-8
Content-Transfer-Encoding: 7bit

This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt; by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt;
Manage Subscriptions
http://newsletter.knowbe4.com/a/1022/unsubscribe/490/1921889/cca4bff1658b608098a16141a469e5e8969afc7a
33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA
Report Spam
http://newsletter.knowbe4.com/a/1022/report_spam/490/1921889/cca4bff1658b608098a16141a469e5e8969afc7a


----==_mimepart_59a584e1aba44_5ba076fd89c4894913f9
Content-Type: text/html;
 charset=UTF-8
Content-Transfer-Encoding: quoted-printable

  <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3=
.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  <html xmlns=3D"http://www.w3.org/1999/xhtml">
    <head>
      <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DU=
TF-8">
      <meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-sc=
ale=3D1.0">
      <title>[ALERT] The IRS Issued An Urgent Warning Against An IRS / FB=
I-Themed Ransomware Phishing Attack</title>
    </head>
    <body>
      <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" "http=
://www.w3.org/TR/REC-html40/loose.dtd">
<html><body><table cellpadding=3D"0" cellspacing=3D"0" width=3D"100%">
<tr><td>
<img height=3D"1" width=3D"1" alt=3D"" style=3D"display:block;" src=3D"ht=
tp://newsletter.knowbe4.com/a/1022/open/490/1921889/cca4bff1658b608098a16=
141a469e5e8969afc7a">
</td></tr>
<tr><td>


<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-8">=

<title></title>
<meta charset=3D"utf-8">
<meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-scale=3D=
1">
<meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge">
<link href=3D"https://fonts.googleapis.com/css?family=3DOpen+Sans:300,400=
,600,700,800" rel=3D"stylesheet">
<style type=3D"text/css">/* CLIENT-SPECIFIC STYLES */
    #outlook a{padding:0;} /* Force Outlook to provide a "view in browser=
" message */
    .ReadMsgBody{width:100%;} .ExternalClass{width:100%;} /* Force Hotmai=
l to display emails at full width */
    .ExternalClass, .ExternalClass p, .ExternalClass span, .ExternalClass=
 font, .ExternalClass td, .ExternalClass div {line-height: 100%;} /* Forc=
e Hotmail to display normal line spacing */
    body, table, td, a{-webkit-text-size-adjust:100%; -ms-text-size-adjus=
t:100%;} /* Prevent WebKit and Windows mobile changing default text sizes=
 */
    table, td{mso-table-lspace:0pt; mso-table-rspace:0pt;} /* Remove spac=
ing between tables in Outlook 2007 and up */
    img{-ms-interpolation-mode:bicubic;} /* Allow smoother rendering of r=
esized image in Internet Explorer */

    /* RESET STYLES */
    body{margin:0; padding:0; background-color:#ffffff;}
    img{border:0; height:auto; line-height:100%; outline:none; text-decor=
ation:none;}
    body{height:100% !important; margin:0; padding:0; width:100% !importa=
nt;}

    /* iOS BLUE LINKS */
    .appleBody a {color:#f16824; text-decoration: none;}
    .appleFooter a {color:#f16824; text-decoration: none;}

    /* MOBILE STYLES */
    @media screen and (max-width: 525px) {
</style>
<!--LOGO-->


<div style=3D"max-width:800px; margin:auto; padding: 40px 20px 20px 20px;=
 text-align:center;"><a href=3D"http://newsletter.knowbe4.com/a/1022/clic=
k/490/1921889/769ac1fa5ebea5c8e10e2e92d69ff7676363f85b/cca4bff1658b608098=
a16141a469e5e8969afc7a" target=3D"0"><img align=3D"center" src=3D"https:/=
/www.knowbe4.com/hubfs/CHN-LOGO-NF.jpg" style=3D"width:100%;"></a></div>
<!--/LOGO--><!--ISSUE & DATE-->

<div style=3D"max-width:800px; margin:auto; padding: 0px 20px 0px 20px; t=
ext-align:center;">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
</div>
<!--/ISSUE & DATE--><!--MAIN STORY-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<center><span style=3D"font-size: 24px; line-height:30px; font-family: 'O=
pen Sans', sans-serif; color: #f16622;">[ALERT] The IRS Issued An Urgent =
Warning Against An IRS / FBI-Themed Ransomware Phishing Attack</span></ce=
nter>
<br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">WASHINGTON, August 28, 2017 =E2=80=94 The =
Internal Revenue Service warned people to avoid a new phishing scheme tha=
t impersonates the IRS and the FBI as part of a ransomware scam to take c=
omputer data hostage.<br>
<br>
The IRS said: "The scam email uses the emblems of both the IRS and the Fe=
deral Bureau of Investigation. It tries to entice users to select a =E2=80=
=9Chere=E2=80=9D link to download a fake FBI questionnaire. Instead, the =
link downloads a certain type of malware called ransomware that prevents =
users from accessing data stored on their device unless they pay money to=
 the scammers."<br>
<br>
</span>

<center><span style=3D"font-size:16px; line-height:22px; font-family: 'Op=
en Sans', sans-serif; color: #333333;"><a><img src=3D"https://blog.knowbe=
4.com/hs-fs/hubfs/irs_questionnaire_safe.jpg"></a></span></center>
<br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">=E2=80=9CThis is a new twist on an old sch=
eme,=E2=80=9D said IRS Commissioner John Koskinen. =E2=80=9CPeople should=
 stay vigilant against email scams that try to impersonate the IRS and ot=
her agencies that try to lure you into clicking a link or opening an atta=
chment. People with a tax issue won=E2=80=99t get their first contact fro=
m the IRS with a threatening email or phone call."<br>
<br>
<b>I suggest you send employees, friends and family an email about this r=
ansomware attack, you're welcome to copy/paste/edit:</b> </span><br>
=C2=A0
<blockquote><span style=3D"font-size:16px; line-height:22px; font-family:=
 'Open Sans', sans-serif; color: #333333;"><i>"Heads-up! The IRS is warni=
ng against a new phishing scam that tries to make you download an FBI que=
stionnaire. But if you click the link, your computer will be infected wit=
h ransomware instead. The scam email uses the emblems of both the IRS and=
 the Federal Bureau of Investigation.<br>
<br>
Remember that the IRS does not use email, text messages or social media t=
o discuss personal tax issues, such as those involving bills or refunds. =
THINK BEFORE YOU CLICK!</i> </span></blockquote>
<br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">The IRS stated: "Victims should not pay a =
ransom. Paying it further encourages the criminals, and frequently the sc=
ammers won=E2=80=99t provide the decryption key even after a ransom is pa=
id. Victims should immediately report any ransomware attempt or attack to=
 the FBI at the Internet Crime Complaint Center, www.IC3.gov. Forward any=
 IRS-themed scams to phishing@irs.gov."<br>
<br>
Here is the official IRS Newsroom post:<br>
https://www.irs.gov/uac/newsroom/irs-issues-urgent-warning-to-beware-irs-=
fbi-themed-ransomware-scam </span><br>
=C2=A0
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> </span>
</div>

<div align=3D"center" style=3D"max-width:800px; margin:auto; padding: 20p=
x 20px 40px 20px;"><span style=3D"font-size: 24px; line-height:30px; font=
-family: 'Open Sans', sans-serif; color: #000000;">Does *Your* Antivirus =
block the latest Ransomware Strains? </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"><b>How vulnerable is your network against =
ransomware attacks?</b><br>
<br>
Bad guys are constantly coming out with new versions of ransomware strain=
s to evade detection. Is your network effective in blocking ransomware wh=
en employees fall for social engineering attacks?<br>
<br>
<b>KnowBe4=E2=80=99s Ransomware Simulator "RanSim" gives you a quick look=
 at the effectiveness of your existing network protection.</b><br>
<br>
<font color=3D"#E46D2C"><b>Here's how RanSim works:</b></font><br>
<br>
<a href=3D"http://newsletter.knowbe4.com/a/1022/click/490/1921889/769ac1f=
a5ebea5c8e10e2e92d69ff7676363f85b/cca4bff1658b608098a16141a469e5e8969afc7=
a" target=3D"0"><img align=3D"right" src=3D"https://blog.knowbe4.com/hs-f=
s/hubfs/RanSim%201010%20fail.jpg"></a> =E2=9C=94 100% harmless simulation=
 of a real ransomware infection<br>
<br>
=E2=9C=94 Does not use any of your own files<br>
<br>
=E2=9C=94 Tests 10 types of infection scenarios<br>
<br>
=E2=9C=94 Just download the install and run it<br>
<br>
=E2=9C=94 Results in a few minutes!<br>
<br>
<br>
<b>RanSim has been downloaded thousands of times and run against dozens o=
f AV products.</b> The results have been an eye opening experience for ma=
ny IT pros. <b>NOTE:</b> RanSim was created for Windows-based workstation=
s running Windows 7 or higher.<br>
<br>
<b>Download RanSim Now</b><br>
<br>
<a href=3D"http://newsletter.knowbe4.com/a/1022/click/490/1921889/769ac1f=
a5ebea5c8e10e2e92d69ff7676363f85b/cca4bff1658b608098a16141a469e5e8969afc7=
a" target=3D"0"><img align=3D"left" src=3D"https://www.knowbe4.com/hubfs/=
btn-downloadnow.jpg"></a><br>
<br>
<br>
Don't like to click on redirected buttons? Cut &amp; Paste this link in y=
our browser:<br>
https://info.knowbe4.com/ransomware-simulator-tool-1chn </span><br>
=C2=A0
<p><span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sa=
ns', sans-serif; color: #333333;"><img src=3D"http://cdn2.hubspot.net/hub=
fs/241394/CHN-STU-2017-1.png" style=3D" padding: 10px 0px 10px 0px;" widt=
h=3D"144"><br>
Warm Regards,<br>
Stu Sjouwerman<br>
Founder &amp; CEO<br>
KnowBe4, Inc.</span></p>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> </span>
</div>
<!--/MAIN STORY--><!--SOCIAL & COPYRIGHT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">FOLLOW US ON: <a href=3D"http://newsletter.knowbe4.com/a/1022/click/490=
/1921889/12f6f18bb2280eb257fda0ee104ee0a8a9355394/cca4bff1658b608098a1614=
1a469e5e8969afc7a" style=3D"color:#f16824; text-decoration:none;" target=3D=
"_blank">Twitter</a> | <a href=3D"http://newsletter.knowbe4.com/a/1022/cl=
ick/490/1921889/35c8d23f428e99808212e79c497c5c7904ccc19f/cca4bff1658b6080=
98a16141a469e5e8969afc7a" style=3D"color:#f16824; text-decoration:none;" =
target=3D"_blank">LinkedIn</a> | <a href=3D"http://newsletter.knowbe4.com=
/a/1022/click/490/1921889/665fd8e8468a0fa0d279b30bd4c7ba97f04517dd/cca4bf=
f1658b608098a16141a469e5e8969afc7a" style=3D"color:#f16824; text-decorati=
on:none;" target=3D"_blank">Google</a> | <a href=3D"http://newsletter.kno=
wbe4.com/a/1022/click/490/1921889/947165ed658284c668dbae4f407761b5796d074=
5/cca4bff1658b608098a16141a469e5e8969afc7a" style=3D"color:#f16824; text-=
decoration:none;" target=3D"_blank">YouTube</a></span></div>

<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Copyright =C2=A9 2014-2017 KnowBe4, Inc. All rights reserved.</span><=
/div>
</div>
<!--SOCIAL & COPYRIGHT-->


</td></tr>
<tr><td>
<div class=3D"footersp" style=3D"height:1px; width: 100%; margin-left: au=
to; margin-right: auto; background-color:black;display:block !important;"=
>=C2=A0</div>
=C2=A0

<div class=3D"footerco" style=3D"margin-left: auto; margin-right: auto; w=
idth: 100%; background-color:#ffffff !important; display:block !important=
;">
<table border=3D"0" cellpadding=3D"0" cellspacing=3D"0" style=3D"width:10=
0%; display:table !important;">
	<tbody>
		<tr style=3D"display:table-row !important;">
			<td style=3D"width:20%; display:table-cell !important;">=C2=A0</td>
			<td align=3D"center" style=3D"mso-table-lspace: 0pt;mso-table-rspace: =
0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: 100%;text-align:=
center;vertical-align:middle; display:table-cell !important;font-size:8.0=
pt; font-family:'Arial','sans-serif'; color:#666666;">This email was sent=
 to <b>edward@transocean.com</b> by <b>feedback@knowbe4.com</b><br>
			<br>
			33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA<br>
			=C2=A0
			<div style=3D"display:block"><a class=3D"maro_no_record" href=3D"http:=
//newsletter.knowbe4.com/a/1022/one_click_unsubscribe/490/1921889/cca4bff=
1658b608098a16141a469e5e8969afc7a" rel=3D"nofollow" style=3D"border:0px;c=
olor:#000;display:inline !important;">1-Click Unsubscribe</a></div>
			</td>
			<td align=3D"right" style=3D"text-align:right;mso-table-lspace: 0pt;ms=
o-table-rspace: 0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: =
100%;width:20%;vertical-align:middle; display:table-cell !important;font-=
size:8.0pt; font-family:'Arial','sans-serif'; color:#666666;" valign=3D"m=
iddle">=C2=A0</td>
		</tr>
	</tbody>
</table>
</div>
</td></tr>
</table></body></html>


    </body>
  </html>

----==_mimepart_59a584e1aba44_5ba076fd89c4894913f9--
