blog.dynamoo.com
Dynamoo's Blog: Viruses
http://blog.dynamoo.com/search/label/Viruses
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Showing posts with label Viruses. Showing posts with label Viruses. Thursday, 18 August 2016. Malware spam: "The office printer is having problems so I've had to email the UPS label". This fake UPS email has a malicious attachment. It appears to come from various countries UPS domains (e.g. ups.de, ups.co.uk), and from various senders. Laurence lumb" [Laurence.lumb25@ups.de]. Thu, 18 Aug 2016 17:35:21 0530. Please find att...
blog.dynamoo.com
Dynamoo's Blog: More highly personalised malspam using hijacked domains
http://blog.dynamoo.com/2017/03/more-highly-personalised-malspam-using.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Monday, 20 March 2017. More highly personalised malspam using hijacked domains. Following on from this spam some weeks ago. Another one comes in using a broadly similar technique of including the potential victim's real home address while using apparently hijacked infrastructure (although in this case the hijacking isn't so elaborate). Customerservice@newshocks.com [mailto:customerservice@newshocks.com]. 15 March 2017 18:23.
blog.dynamoo.com
Dynamoo's Blog: Highly personalised malspam making extensive use of hijacked domains
http://blog.dynamoo.com/2017/02/highly-personalised-malspam-making.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Wednesday, 15 February 2017. Highly personalised malspam making extensive use of hijacked domains. This spam email contained not only the intended victim's name, but also their home address and an apparently valid mobile telephone number:. 14 February 2017 13:52. Mr [Redacted] Your order G29804772-064 confirmation. Dear Mr [redacted],. Thank you for placing an order with us. Get your order G29804772-064 details. 21 days af...
blog.dynamoo.com
Dynamoo's Blog: January 2017
http://blog.dynamoo.com/2017_01_01_archive.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Monday, 23 January 2017. WARNING: pmacademyusa.org / "Project Management Academy USA". For the past six years. This latest scheme is a quite snazzy-looking website at www.pmacademyusa.org. Called " Project Management Academy USA. The website may look professional, but it is simply done using the WIX website builder:. You'll notice that the site supplies no information at all about who runs it. However a useful tip. Funnily...
blog.dynamoo.com
Dynamoo's Blog: October 2016
http://blog.dynamoo.com/2016_10_01_archive.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Monday, 31 October 2016. Malware spam: "SureVoIP" / "Voicemail from." leads to Locky. This fake voicemail message leads to Locky ransomware:. Voicemail from Catalina rigby 02355270166 02355270166 00:01:22. Monday, 31 October 2016, 11:17. Message From "Catalina rigby 02355270166" 02355270166. Created: 2016.10.31 14:46:53 PM. The C2 servers overlap with the ones found here. Malware spam: "Wrong tracking number" leads to Locky.
blog.dynamoo.com
Dynamoo's Blog: Apple (AAPL) pump-and-dump spam
http://blog.dynamoo.com/2013/09/apple-aapl-pump-and-dump-spam.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Thursday, 19 September 2013. Apple (AAPL) pump-and-dump spam. A pump and dump spam trying to move Apple ( AAPL. I don't think a spam run is going to have much effect on a $473 share in a company worth $420bn. Subject: This Company continues to surge, could new highs be ahead? Apple has presented its new models - iPhone 5S and iPhone 5C,. Which actually have not moved the providers of financing. But, we. A third sample adds...
blog.dynamoo.com
Dynamoo's Blog: March 2017
http://blog.dynamoo.com/2017_03_01_archive.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Friday, 31 March 2017. Leaked documents reveal post-Brexit switch to pre-decimal currency. So with the UK leaving the EU thing kicking off into full swing a lot of interesting stories have been lost in the noise. As expected not only have hard Brexiteers managed to sneak in proposals that we ditch the metric system, it now also seems that they want to ditch decimal currency too. One might argue that the penny could be elim...
blog.dynamoo.com
Dynamoo's Blog: November 2016
http://blog.dynamoo.com/2016_11_01_archive.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Tuesday, 29 November 2016. Fake eFax spam uses hacked Sharepoint to spread malware. This fake fax leads to a malicious ZIP file:. 29 November 2016 at 16:01. EFax message from "61 2 97855412" - 2 page(s). You have received a 2 page fax at 11/29/2016 5:01:13 PM. The reference number for this fax is syd1 did12-5405183509-083357256-5. Click here to view this fax message. Thank you for using the eFax service! That look like this.
blog.dynamoo.com
Dynamoo's Blog: Malware spam: "The Insolvency Service" / "Investigations Inquiry Notification" / chucktowncheckin.com / chapelnash.com
http://blog.dynamoo.com/2017/01/malware-spam-insolvency-service.html
Malware, spam, scams and random stuff, by Conrad Longmore. Get Updates on Twitter. Thursday, 19 January 2017. Malware spam: "The Insolvency Service" / "Investigations Inquiry Notification" / chucktowncheckin.com / chapelnash.com. This malware spam in unusual in many respects. The payload may be some sort of ransomware [ UPDATE. This appears to be Cerber]. The Insolvency Service [mailto:service@chucktowncheckin.com]. 19 January 2017 12:22. EGY 318NHAR12 - Investigations Inquiry Notification. SHV 622WYXP68...
SOCIAL ENGAGEMENT