Bogus Amazon order for Sony VAIO carries malware

Graham Cluley
Graham Cluley
@

 @grahamcluley.com
 / grahamcluley

Sony VAIO
SophosLabs is intercepting a large amount of malicious spam at the moment, disguised as an email from Amazon.com.

The emails claim that the recipient has ordered a Sony VAIO A1133651A, and that documentation for tracking the delivery can be found in the file attached to the email.

However, this file (track.zip) contains a malicious Trojan horse – designed to infect Windows computers with fake anti-virus software (also known as scareware).

Of course, this tactic is nothing new. But clearly cybercriminals think it is still an effective route to achieve their goal – to infect as many computers as possible with their malware.

Sign up to our free newsletter.
Security news, advice, and tips.

A typical email has the following characteristics:

Subject: Thank you for setting the order No.538532
Message body:

Dear Customer!

Thank you for ordering at our online store.
Your order: Sony VAIO A1133651A, was sent at your address.
The tracking number of your postal parcel is indicated in the document attached to this letter.
Please, print out the postal label for receiving the parcel.

Attached file: track.zip

Malicious email pretending to come from Amazon.com for a Sony VAIO computer

Sophos detects the malware as Troj/FakeAV-BAH. Remember to always be suspicious of unsolicited email attachments that you receive out of the blue, and be sure to keep your anti-virus protection and other security systems updated.


Graham Cluley is an award-winning keynote speaker who has given presentations around the world about cybersecurity, hackers, and online privacy. A veteran of the computer security industry since the early 1990s, he wrote the first ever version of Dr Solomon's Anti-Virus Toolkit for Windows, makes regular media appearances, and hosts the popular "Smashing Security" podcast. Follow him on TikTok, LinkedIn, Bluesky and Mastodon, or drop him an email.

What do you think? Leave a comment

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.