Uncategorized

Covid-19. [Current date] horrible Charts

May 12, 2020

This phishing attack pretends to be from the Johns Hopkins Center. Attached to this email is a malicious Excel file titled ‘covid_usa_nyt_8072.xls’ that displays the number of Coronavirus-related deaths in the United States.   If the user opens the Excel attachment and clicks ‘Enable Content’, malicious macros install the NetSupport Manager client from a remote […]


UT Health San Antonio Important Message!

April 13, 2020

The message below takes advantage of the COVID-19 pandemic crisis and a re-purposed message in an effort to steal login credentials. Remember, no one at the University will ever legitimately ask for your password.


RES: IT-Service.

April 10, 2020


FFCRA_Employee Rights_Non-Federal Poster [[Smishing alert]]

April 2, 2020

Smishing is short for SMS phishing. It works just like a phishing email but uses text messages to get victims to visit a link or send personal or confidential data to the sender. You should delete any unsolicited text messages; they are almost always attempts to gain personal or confidential data from you. To verify […]



COVID-19 Phishing Sample #5: Dirty little secret

March 24, 2020

In scams like these, the crooks don’t have any data on you, let alone details about all your family members and where they live. The “proof or secret” they may have is a password you used to have that was extracted from publicly available data leaked in an old data breach. Don’t be scared, send […]


COVID-19 Phishing Sample #4: Coronavirus disease (COVID-19) outbreak prevention and cure update

March 24, 2020

This email instructs recipients to open an attachment for the purpose of receiving updated instructions on how to fight the coronavirus. This attachment was an archive that, when opened, revealed “Coronavirus Disease (Covid-19) CURE.exe.” When run, this executable loaded HawkEye, a keylogger which is capable of intercepting keystrokes, stealing credentials, taking screenshots, and exfiltrating its […]


COVID-19 Phishing Sample #3

March 23, 2020

1 – From address is inconsistent with name 2 – Lure intended to entice user to click suspicious links; verify something like this with a reputable news source


COVID-19 Phishing Sample #2

March 23, 2020

1 – From address is inconsistent with name 2 – Generic greeting 3 – 700,000 euros == if it looks too good to be true, it probably is 4 – Bank secretary with a Gmail.account + many, many punctuation and spelling errors


COVID-19 Phishing Sample #1

March 23, 2020

From address claims Federal agency (CDC), but displays incorrect address. The attachment contains malicious code to infect the user’s computer.