SophosLabs’s worldwide network of email-monitoring stations has seen a tidalwave of malicious messages being spammed out with an attachment that redirects users’ web browsers to a fake anti-virus attack.
The emails have subject names such as:
- Parking Permit and/or Benefit Card Order Receipt – <random number>
- You’re invited to view my photos!
- Appointment Confirmation
- Your Bell e-bill is ready
- Your Vistaprint Order Is Confirmed
- Vistaprint Canadian Tax Invoice (<random number>)
By sending emails that pose as credit card charges and free-to-view holiday snaps from Bermuda, it wouldn’t be any surprise at all if some users clicked on the attached files (which go by names such as Benefit Card Order Receipt.html, Print this album.html, Appointment Confirmation.html, e-bill.html, Vistaprint Order…
Read more in my article on the Naked Security website.
Found this article interesting? Follow Graham Cluley on Twitter or Mastodon to read more of the exclusive content we post.