Failed on delivery Royal Mail Team malspam

An email with the subject of Failed on delivery pretending to come from Royal Mail Team <info@footballplayers1.ga> with a zip attachments containing a malicious word doc is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans … Continue reading →

Source

Continue reading Failed on delivery Royal Mail Team malspam

The attached proposal includes declaration malspam broken malware macros

An email where the subject is the word FWD: or Fw: and the alleged senders name  pretending to come from random senders  with a malicious word RTF doc spreadsheet attachment  is another one from the current bot runs which try to … Continue reading →

Source

Continue reading The attached proposal includes declaration malspam broken malware macros

ОТНОСНО ЦЕНИ ЕЛ.ЕНЕРГИЯ ( ON ELECTRICITY PRICES) word doc macro uses PowerShell to deliver malware

Despite it being the Spring /Whitsun Bank holiday in UK and Memorial day holiday in USA, the malspam continues. An email in Cyrillic script ( Russian / Bulgarian) with the subject of ОТНОСНО ЦЕНИ ЕЛ.ЕНЕРГИЯ  ( which means ON ELECTRICITY PRICES ) pretending … Continue reading →

Source

Continue reading ОТНОСНО ЦЕНИ ЕЛ.ЕНЕРГИЯ ( ON ELECTRICITY PRICES) word doc macro uses PowerShell to deliver malware

Suspicious logon attempt or Account Compromised leads to Dridex

An email with the subject of  Suspicious logon attempt pretending to come from random senders, companies and email addresses  with a malicious word doc inside a zip attachment  is another one from the current bot runs which try to download various Trojans … Continue reading →

Source

Continue reading Suspicious logon attempt or Account Compromised leads to Dridex

NuevoDocumento 1 pretending to come from random names at your own email domain

An email in Spanish language with the subject of  NuevoDocumento 1  [ random numbered]  pretending to come from  random names at your own email domain  with a malicious word doc attachment  is another one from the current bot runs which downloads … Continue reading →

Source

Continue reading NuevoDocumento 1 pretending to come from random names at your own email domain

May Sale Invoices from random companies delivers unknown malware

An email with the subject of May Sale Invoices from  xxxxxxxxxx  pretending to come from  random email addresses and names with a zip attachment containing a malicious word doc is another one from the current bot runs which try to download various … Continue reading →

Source

Continue reading May Sale Invoices from random companies delivers unknown malware

SPAM MALWARE: shipment address confirmation (re-send)

An email with the subject of shipment address confirmation (re-send) pretending to come from info <info@dhl-services.com>  with a zip attachment that extracts to a  malicious word doc   is another one from the current bot runs which try to download various Trojans and password stealers … Continue reading →

Source

Continue reading SPAM MALWARE: shipment address confirmation (re-send)

Sent from my Samsung device Scan – word doc macro malware delivering #Locky

An email saying Sent from my Samsung device with the subject of scan pretending to come from random names at Gmail.com  with a malicious word doc attachment  is another one from the current bot runs which try to download various Trojans … Continue reading → Continue reading Sent from my Samsung device Scan – word doc macro malware delivering #Locky

Someone Might Be Using Your Account – word doc macro malware leads to #Dridex

An email with the subject of  Someone Might Be Using Your Account 022FCF [random characters] pretending to come from random names and email addresses with a malicious word doc rtf  or a zip file attachment  is another one from the current bot … Continue reading → Continue reading Someone Might Be Using Your Account – word doc macro malware leads to #Dridex

Your ID card has been found – word doc macro malware

An email with the subject of  pretending to come from  random email addresses with a malicious word doc RTF attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like Dridex … Continue reading → Continue reading Your ID card has been found – word doc macro malware