ICT HelpDesk Upgrade Outlook Web App – phishing

We see lots of phishing attacks pretending to be notices to update email accounts or change credentials for Outlook Web App. Lots of users get confused and fill in these sort of generic forms and reply without really thinking. So … Continue reading →

Source

Continue reading ICT HelpDesk Upgrade Outlook Web App – phishing

VP Invoice/Credit/Statement – H10040 malspam leads to Locky

The second of Today’s Locky downloaders is an email with the subject of VP Invoice/Credit/Statement – H10040  pretending to come from Prism Server Account <accounts@vpplc.com>  with a malicious word doc attachment which downloads Locky ransomware They are using email addresses and … Continue reading →

Source

Continue reading VP Invoice/Credit/Statement – H10040 malspam leads to Locky

Please see Fedex label as attached – Mary Leons – airmenzies.com malspam leads to Locky ransomware

An email with the subject of PO5 pretending to come from Mary Leons <mary.leons@airmenzies.com> with a malicious word doc attachment which downloads Locky ransomware They are using email addresses and subjects that will scare or entice a user to read the email and open … Continue reading →

Source

Continue reading Please see Fedex label as attached – Mary Leons – airmenzies.com malspam leads to Locky ransomware

Java Adwind Trojans via fake transaction malspam emails

Overnight we received 2 separate sets of malspam emails both eventually leading to the same Java Adwind Trojan They use email addresses and subjects that will entice a user to read the email and open the attachment. A very high proportion … Continue reading →

Source

Continue reading Java Adwind Trojans via fake transaction malspam emails

Sent from my Samsung device malspam word macro delivers Locky

Following on from THIS earlier Malspam delivering Locky ransomware via WSF files inside a zip we are also  seeing a concurrent malspam run using Word Docs with macros. They are very terse and simple emails with a subject of  Scan****** ( random … Continue reading →

Source

Continue reading Sent from my Samsung device malspam word macro delivers Locky

bank account report malspam leads to Locky ransomware

A new week and another malspam run of Locky ransomware with generic subjects. Today’s starts with an email with the subject of  bank account report  pretending to come from  random senders   with a zip attachment  containing a WSF file which … Continue reading →

Source

Continue reading bank account report malspam leads to Locky ransomware

malspam email with fake profile leads to malware

An email with the subject of  Profile pretending to come from random senders   with a zip attachment  which downloads some malware They use email addresses and subjects that will entice a user to read the email and open the attachment. A very high … Continue reading →

Source

Continue reading malspam email with fake profile leads to malware

Please find the bill enclosed with this msg malspam word docs delivers unknown malware

An email with the subject of Re: senders name  pretending to come from  random senders with a malicious word doc attachment  is another one from the current bot runs which try to download various Trojans and password stealers especially banking Trojans like Dridex … Continue reading →

Source

Continue reading Please find the bill enclosed with this msg malspam word docs delivers unknown malware