Hawkeye keylogger via fake Bank Details in the Invoice

  Continuing with this  malware campaign trying to deliver Hawkeye Keylogger/ Infostealer from yesterday. The same bad actor has updated the  email, changed the payload slightly to try to bypass AV detections and instead of a .exe attachment has u… Continue reading Hawkeye keylogger via fake Bank Details in the Invoice→

Hawkeye keylogger via fake Proforma Invoice that probably fails delivery

  A marginally interesting malware campaign trying to deliver Hawkeye Keylogger/ Infostealer. The email is nothing special and is a typical fake invoice. Where the bad actor has gone wrong with this campaign is he or she attached a .exe to the ema… Continue reading Hawkeye keylogger via fake Proforma Invoice that probably fails delivery→

Fake PO Inquiry email delivers Agent Tesla Keylogger via rtf exploits

An email with the subject of  POQEA inquiry for order pretending to come from Balwinder Singh <sanjayl.sherma@gmail.com>  with a link to download a  malicious word doc   delivers Agent Tesla Keylogger / Remote Access Trojan.  This campaign is u… Continue reading Fake PO Inquiry email delivers Agent Tesla Keylogger via rtf exploits→

Fake Royal Bank of Canada Payment Receipt Advise/Avis de Reception de paiement delivers Trickbot

This example is today’s latest spoof or imitation of a well-known company, bank or public authority delivering Trickbot banking Trojan. The email with the subject of “Payment Receipt Advise/Avis de Reception de paiement” pretends to come fr… Continue reading Fake Royal Bank of Canada Payment Receipt Advise/Avis de Reception de paiement delivers Trickbot→