‘Windstream bill’ themed emails serving client-side exploits and malware


By Dancho Danchev

Cybercriminals are currently spamvertising millions of emails impersonating the Windstream Corporation, in an attempt to trick end and corporate users into clicking on links found in the malicious email.

Upon clicking on the links hosted on compromised web sites, users are exposed to client-side exploits served by the BlackHole web malware exploitation kit.

More details:

Continue reading

Spamvertised ‘Pizzeria Order Details’ themed campaign serving client-side exploits and malware


By Dancho Danchev

End and corporate users (and especially Pizza eaters), beware!

Cybercriminals are currently spamvertising hundreds of thousands of emails, impersonating FLORENTINO`s Pizzeria, and enticing  users into clicking on a client-side exploits and malware serving link in order to cancel a $169.90 order that they never really made.

More details:

Continue reading

Spamvertised ‘US Airways’ themed emails serving client-side exploits and malware


By Dancho Danchev

Cybercriminals are currently spamvertising yet another social-engineering driven malicious email campaign, this time impersonating U.S Airways.

Upon clicking on the malicious links found in the emails, end and corporate users are exposed to client-side exploits courtesy of the BlackHole web malware exploitation kit.

More details:

Continue reading

Spamvertised Verizon-themed ‘Your Bill Is Now Available’ emails lead to ZeuS crimeware


By Dancho Danchev

Cybercriminals newest spamvertised malware campaign is brand-jacking Verizon Wireless in an attempt to trick end users into clicking on the malicious links embedded in the email.

More details:

Continue reading

Spamvertised LinkedIn notifications serving client-side exploits and malware


By Dancho Danchev

Cybercriminals are currently spamvertising LinkedIn themed messages, in an attempt to trick end and corporate users into clicking on the malicious links embedded in the emails.

The campaign is using real names of LinkedIn users in an attempt to increase the authenticity of the spamvertised campaign.

More details:

Continue reading

Malicious USPS-themed emails circulating in the wild


By Dancho Danchev

Cybercriminals are currently spamvertising malicious USPS-themed emails, that entice end and corporate users into clicking on malicious links found in the emails.

More details:

Continue reading