Check from Christian Liberty Financial? Beware spammed-out malware attack

ChequesWould you believe your luck if someone handed you money in the street for doing.. well.. nothing?

Probably not. So why would you believe an email that arrives out of the blue, claiming to have a check attached?

We’re intercepting a malicious spam campaign that claims to come from Christian Liberty Financial, and might trick the unwary into believing that they have landed a windfall of umpteen thousand dollars (the actual amount can vary).

Here’s an example we intercepted with a subject line of “Check from Christian Liberty Financial” with the date and time attached:

Sign up to our free newsletter.
Security news, advice, and tips.

Malicious email

The attached ZIP file claims to contain details of your check, but in reality are designed to infect your PC. Sophos products will detect the malware proactively as Mal/BredoZp-B.

So, the usual rules apply. Keep your anti-virus software up-to-date, and don’t forget to use your common sense when opening unsolicited emails which arrive out of the blue sounding too good to be true.

Pile of checks image from ShutterStock.


Graham Cluley is an award-winning keynote speaker who has given presentations around the world about cybersecurity, hackers, and online privacy. A veteran of the computer security industry since the early 1990s, he wrote the first ever version of Dr Solomon's Anti-Virus Toolkit for Windows, makes regular media appearances, and is the co-host of the popular "Smashing Security" podcast. Follow him on Twitter, Mastodon, Threads, Bluesky, or drop him an email.

What do you think? Leave a comment

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.