fake clothing order Berhanu (PURCHASE DEPARTMENT) using winace files delivers Loki bot

Continuing with the never ending series of malware downloaders is an email with the subject of RE: CLOTHING ORDER coming or pretending to come from Berhanu (PURCHASE DEPARTMENT) <berhanukb@mail.com>  with an attachment named CLOTHES & GARMENT ORDER JUNE 2017.ace Aace files are a different form of compressed archive ( zip file ) that needs special Continue reading → Continue reading fake clothing order Berhanu (PURCHASE DEPARTMENT) using winace files delivers Loki bot

Request for 1st new order proforma invoice malspam delivers luminosity link R A T

I really wasn’t expecting any real malware to come via email this Easter Sunday, however some has arrived, just to keep us on our toes. This fake Request for 1st new order proforma invoice scam delivers luminosity link Remote Access Tool  Trojan which is being heavily misused by criminal gangs … Continue reading → Continue reading Request for 1st new order proforma invoice malspam delivers luminosity link R A T

Request for 1st new order proforma invoice malspam delivers luminosity link R A T

I really wasn’t expecting any real malware to come via email this Easter Sunday, however some has arrived, just to keep us on our toes. This fake Request for 1st new order proforma invoice scam delivers luminosity link Remote Access Tool  Trojan which is being heavily misused by criminal gangs … Continue reading → Continue reading Request for 1st new order proforma invoice malspam delivers luminosity link R A T

Order 903644 (Acknowledgement) malspam delivers Locky

The next in the never ending series of Locky downloaders is an email with the subject of  Order 903644 (Acknowledgement) [random numbers]  coming as usual from random companies, names and email addresses  with a  zip attachment that starts with several random … Continue reading →

Source

Continue reading Order 903644 (Acknowledgement) malspam delivers Locky

James Correy Re: Order Details delivers malware via malicious office docs

An email with the subject of Re: Order Details pretending to come from James Correy <jamescorrey@gmail.com> with a malicious word doc or Excel XLS spreadsheet attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially … Continue reading →

Source

Continue reading James Correy Re: Order Details delivers malware via malicious office docs

Your order has been proceeded malspam delivers Locky

The next in the never ending series of Locky downloaders, which is running concurrently with THIS  is an email with the subject of  Your order has been proceeded coming as usual from random companies, names and email addresses  with a … Continue reading →

Source

Continue reading Your order has been proceeded malspam delivers Locky

Your order has been proceeded malspam delivers Locky

The next in the never ending series of Locky downloaders, which is running concurrently with THIS  is an email with the subject of  Your order has been proceeded coming as usual from random companies, names and email addresses  with a … Continue reading →

Source

Continue reading Your order has been proceeded malspam delivers Locky

Your Order malspam delivers Locky

The next in the never ending series of Locky downloaders is an email with the subject of  Your Ordercoming as usual from random companies, names and email addresses  with a semi-random named zip attachment starting order_details_ containing a .JS file starting … Continue reading →

Source

Continue reading Your Order malspam delivers Locky