# Tags

Your package has arrived!

The email shown below seems to arrive from United Parcel Service (UPS) International Shipping Company but in reality it is not. In fact, it has a hidden link to a malicious website. It downloads a binary invoice[random_number].JPG.exe with double extensions which looks as if it is an image file. Quick Heal detects this file as […]

DHL – Email Scam

We all know if you want your ordered goods to be at your doorstep then you opt for DHL. But cyber-criminals are now taking advantage of DHL emails and they are now sending fake emails with the same format to random users. The email shows up the following screenshot: This email pretends to be from […]

Phishing Attack – SBI Bank

Phishing is a common form of Internet scam. It is deployed to steal confidential financial information like bank account numbers, net banking passwords, credit card numbers, personal identity details etc. Indian banks are specially getting targeted by such attacks. We came across a mail which is targeting SBI customers and carrying a zip file as […]

NACHA – ACH Payment Cancelled Scam

An email purporting to be from NACHA, the Electronic Payments Association, is currently being fraudulently circulated to unsuspecting individuals and corporations. The email claims that a certain payment has been cancelled and then induces readers to download the attached ZIP file for details of said cancellation. The mail typically looks like: The attached zip file […]

UPDATE YOUR E-MAIL SECURITY IMMEDIATELY (IUEU) SCAM!

Today we received the following email: ************************************************************** From: “Squirrel Mail Development Team” Subject: UPDATE YOUR E-MAIL SECURITY IMMEDIATELY (IUEU) Date: Thu, 1 Sep 2011 19:14:23 +0700 X-Mailer: Microsoft Outlook Express 6.00.2600.0000 X-EMLSPAM: 0 X-EMLSPAM-SCORE: -100 Dear E-Mail User Due to the package compromise of 1.4.11,1.4.12 and 1.4.13, we are forced to release 1.4.15 to ensure […]

Worm Morto Spreading via RDP

Our research team came across a Worm file, which upon execution wriggles its way through the systems using the RDP port. This worm is known as Morto and it is spreading very quickly in the wild. Morto uses the RDP (Remote Desktop protocol) to connect to a remote system and tries scanning the RDP port […]