Your Latest Documents from Angel Springs Ltd [STA054C] – word doc macro malware leads to Locky Ransomware

An email with the subject of Your Latest Documents from Angel Springs Ltd [STA054C]  pretending to come from  ebilling@angelsprings.com with a malicious word doc attachment  is another one from the current bot runs which try to download various Trojans and password stealers … Continue reading → Continue reading Your Latest Documents from Angel Springs Ltd [STA054C] – word doc macro malware leads to Locky Ransomware

Dossier n° 46612 CABINET BETTAN – word doc macro malware

A French language email with the subject of Dossier n° 46612 [ random numbers] pretending to come from CABINET BETTAN <joel.bettan@cabinetbettan.com> with a malicious word doc or Excel XLS spreadsheet attachment  is another one from the current bot runs which try to download various … Continue reading → Continue reading Dossier n° 46612 CABINET BETTAN – word doc macro malware

latest invoice / sales invoice /purchase invoice – word doc macro malware

A series of  email with the basic subject of invoice  pretending to come from  random names with a malicious word doc attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like … Continue reading → Continue reading latest invoice / sales invoice /purchase invoice – word doc macro malware

Remittance Details (USD 7956.88) – your web address – word doc rtf macro malware delivers Dridex

An email with the subject of  Remittance Details (USD 7956.88) – your web address  pretending to come from  random senders  with a malicious word doc or Excel XLS spreadsheet attachment  is another one from the current bot runs which try to … Continue reading → Continue reading Remittance Details (USD 7956.88) – your web address – word doc rtf macro malware delivers Dridex

Document(1) pretending to come from your own email address – word doc macro malware

A blank / empty  email with the subject of Document(1)  pretending to come from your own email address  with a malicious word doc attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking … Continue reading → Continue reading Document(1) pretending to come from your own email address – word doc macro malware

PFI -05.04.16 Union National Bank-Egypt – word doc malware

This email that appears to be from Union  National Bank-Egypt with the subject of PFI -05.04.16  pretending to come from CEO Finexx Group <sales@salesbabu.com>  with a malicious word doc attachment  is another one from the current bot runs which try to download various … Continue reading → Continue reading PFI -05.04.16 Union National Bank-Egypt – word doc malware

Receipt xencourier.co.uk – excel xls spreadsheet macro malware

An email with the subject of Receipt pretending to come from Mike  <mike@xencourier.co.uk> with a malicious Excel XLS spreadsheet attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like Dridex or Dyreza … Continue reading → Continue reading Receipt xencourier.co.uk – excel xls spreadsheet macro malware

scanned document Tara Savill Charisma Bathrooms Limited – word doc macro malware

Last revised or Updated on: 29th March, 2016, 3:21 PMAn email with the subject of  pretending to come from Tara Savill <tara@charismabathrooms.com> with a malicious word doc or Excel XLS spreadsheet attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like Dridex or Dyreza and ransomware like Locky, cryptolocker or Teslacrypt. They are using email addresses and subjects that will scare or entice a user to read the email and open the attachment. A very high proportion are being targeted at small and medium size businesses, with the hope of getting a better response than they do from consumers. Tara Savill  and Charisma Bathrooms Limited have not been hacked or had their … Continue reading → Continue reading scanned document Tara Savill Charisma Bathrooms Limited – word doc macro malware

EUROPOWER INVOICES – word doc macro malware

Last revised or Updated on: 29th March, 2016, 10:55 AMAn email with the subject of EUROPOWER INVOICES  pretending to come from Europower Electrical <admin@europower-electrical.com> with a malicious word doc or Excel XLS spreadsheet attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like Dridex or Dyreza and ransomware like Locky, cryptolocker or Teslacrypt. They are using email addresses and subjects that will scare or entice a user to read the email and open the attachment. A very high proportion are being targeted at small and medium size businesses, with the hope of getting a better response than they do from consumers. Europower Electrical  has not been hacked or had their email or … Continue reading → Continue reading EUROPOWER INVOICES – word doc macro malware

Emerson Sherman. Payment – word doc macro malware

Last revised or Updated on: 29th March, 2016, 9:22 AMAn email with the subject of [random name] payment / invoice / report / message /Transaction  pretending to come from  the same random name but a totally different email address  with a random numbered malicious word doc attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like Dridex or Dyreza and ransomware like Locky, cryptolocker or Teslacrypt. They are using email addresses and subjects that will scare or entice a user to read the email and open the attachment. A very high proportion are being targeted at small and medium size businesses, with the hope of getting a better response than they do from … Continue reading → Continue reading Emerson Sherman. Payment – word doc macro malware