Spamvertised bogus online casino themed emails serving adware


By Dancho Danchev

Cybercriminals are currently spamvertising online casino themed emails, which ultimately redirect users to a bogus casino site offering an executable download. Upon deeper examination, it appears that the download is actually adware.

More details:

Continue reading

A peek inside a managed spam service


By Dancho Danchev

Just how easy is it to become a spammer in 2012? Too easy to be true.

Especially in times when everything needed to become a spammer, starting for a managed spam appliance, DIY email harvesters, and millions of harvested emails, are available for sale within the cybercrime ecosystem. Despite the numerous botnet take downs we’ve seen in recent years, spam and phishing attacks continue plaguing millions of end and corporate users, potentially exposing them to malicious links, malicious payloads and fraudulent propositions.

In this post, I’ll profile a Russian managed spam service that’s been in operation for 5 years, allowing novice cybercriminals an easy entry into the world of spamming.

More details:

Continue reading

Spamvertised ‘Pizzeria Order Details’ themed campaign serving client-side exploits and malware


By Dancho Danchev

End and corporate users (and especially Pizza eaters), beware!

Cybercriminals are currently spamvertising hundreds of thousands of emails, impersonating FLORENTINO`s Pizzeria, and enticing  users into clicking on a client-side exploits and malware serving link in order to cancel a $169.90 order that they never really made.

More details:

Continue reading

Millions of harvested U.S government and U.S military email addresses offered for sale


By Dancho Danchev

Remember the underground service offering millions of harvested emails for sale profiled at the Webroot Threat Blog in January?

It appears  that cybercriminals are continuing to innovate in this underground market segment by offering geolocated databases of millions of harvested emails for better targeting in their upcoming spam campaigns.

In this post, I’ll profile yet another cybercrime underground  service selling millions of harvested emails to potential cybercriminals.

Continue reading