Fake Brightpay payslip notification attempts to deliver Trickbot

A bit of a change to the Trickbot delivery system today, In fact quite a lot of changes. This example is an email containing the subject of “FW: Payslip ” pretending to come from Brightpay payroll services but actually coming from a look-a-like  or typo-squatted domain “Debra.Mitchel@bright-pay.co.uk”  with a malicious word doc attachment  is today’s latest spoof of a well-known company, bank or public authority that attempts to deliver Trickbot banking Trojan. This particular version fails with errors in all online sandboxes. I don’t know if it will run on a real computer. The word doc with a complicated macro runs OK but Continue reading →

The post Fake Brightpay payslip notification attempts to deliver Trickbot appeared first on My Online Security.