{"id":2941,"date":"2011-05-05T05:00:38","date_gmt":"2011-05-05T09:00:38","guid":{"rendered":"http:\/\/www.georgetoon.com\/blog\/?p=2941"},"modified":"2011-05-04T11:41:43","modified_gmt":"2011-05-04T15:41:43","slug":"another-phishing-scam","status":"publish","type":"post","link":"https:\/\/www.georgetoon.com\/blog\/another-phishing-scam\/","title":{"rendered":"Another Phishing Scam"},"content":{"rendered":"<div id=\"attachment_2999\" style=\"width: 274px\" class=\"wp-caption alignleft\"><a href=\"http:\/\/www.georgetoon.com\/blog\/wp-content\/uploads\/2011\/05\/scam-cropped-edited.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-2999\" class=\"size-medium wp-image-2999\" title=\"scam-cropped-edited\" src=\"http:\/\/www.georgetoon.com\/blog\/wp-content\/uploads\/2011\/05\/scam-cropped-edited-264x300.jpg\" alt=\"This is the email I recently received. The email address and companyinformation has been purposly blacked out to help protect innocent companies.\" width=\"264\" height=\"300\" srcset=\"https:\/\/www.georgetoon.com\/blog\/wp-content\/uploads\/2011\/05\/scam-cropped-edited-264x300.jpg 264w, https:\/\/www.georgetoon.com\/blog\/wp-content\/uploads\/2011\/05\/scam-cropped-edited.jpg 637w\" sizes=\"auto, (max-width: 264px) 100vw, 264px\" \/><\/a><\/p>\n<p id=\"caption-attachment-2999\" class=\"wp-caption-text\">This is the email I recently received. The email address and company name used in this Phishing scam have been purposely blacked out.<\/p>\n<\/div>\n<p>Another <a title=\"Phising Scam Defined.\" href=\"http:\/\/en.wikipedia.org\/wiki\/Phishing\" target=\"_blank\">Phishing scam<\/a> has turned up.<\/p>\n<p>This one poses as a credit card purchase.\u00a0 A fake confirming order comes in your email with an attachment.\u00a0 The attachment is a zipped file.<\/p>\n<p>When you download, unzip and open the &#8220;document&#8221; to read the details, your system becomes infected.<\/p>\n<p>I know about this scam firsthand because it recently turned up in my email box.<\/p>\n<p>At left is the email I received. I blacked out the email addresses and company names.\u00a0 Unfortunately, these email scams are all pretty much the same in that any well-known company&#8217;s name can be dropped in order to disguise the email and its nefarious payload.<\/p>\n<p>What&#8217;s in the attachment?\u00a0 Well, as detailed, <a title=\"Stop Malvertising\" href=\"http:\/\/stopmalvertising.com\/spam-scams\/successfull-order-unsolicited-email-from-bobijou.html\" target=\"_blank\">here<\/a>, &#8220;The file actually needs to be renamed first as <strong>Order details.zip<\/strong> to be able to extract <strong>Order details.exe<\/strong>.\u00a0 The file is detected as <strong>Trojan-Downloader.Win32.Injecter.fse<\/strong> by Kaspersky and poses as a <strong>PDF document<\/strong>.  You should never trust a file by its icon, always pay attention to the  file extension instead and make sure that Windows Explorer is set to show  file extensions.&#8221;<\/p>\n<p>This website goes on to confirm that, &#8220;As stated on (the Company&#8217;s) Facebook page, (The Company) does not send order confirmations or other unsolicited  requests that require you to open attachments. If you did receive such  an email, note that there are no orders or any transactions between you  and (The Company).&#8221;<\/p>\n<p>So, once again a legitimate company is being used by the Phisheing scammers to try an infect computers and possibly steal personal information. (Again, I&#8217;ve tried my best to omit the company name.\u00a0 They are an innocent party in all this).<\/p>\n<p>Whenever you receive an email tht you simply do not recognize, give it a closer look.\u00a0 For instance, with this particular email, the thing that tipped me off was the email subject heading, &#8220;Succesfull_Order\u00a0 300147.&#8221;\u00a0\u00a0 The sender added an extra &#8220;L&#8221; to the word successful.<\/p>\n<p>So, when in doubt about any email, always SEARCH FIRST!\u00a0 Do not download suspicious attachments.\u00a0 Regularly update your anti-virus software.<\/p>\n<p>And lastly, get the Windows target off your back!\u00a0 Switch to <a title=\"PCLinuxOS\" href=\"http:\/\/www.pclinuxos.com\/\" target=\"_blank\">Linux<\/a>!\u00a0 <a title=\"PCLinuxOS\" href=\"http:\/\/www.pclinuxos.com\/\" target=\"_blank\">Linux <\/a>is immune to Windows&#8217; viruses, spyware, Trojans, and other nasty computer infections.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Another Phishing scam has turned up. This one poses as a credit card purchase.\u00a0 A fake confirming order comes in your email with an attachment.\u00a0 The attachment is a zipped file. When you download, unzip and open the &#8220;document&#8221; to read the details, your system becomes infected. I know about this scam firsthand because it [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4,5],"tags":[35,41,10,146,36],"class_list":["post-2941","post","type-post","status-publish","format-standard","hentry","category-blog","category-news","tag-computer","tag-email","tag-pclinuxos","tag-virus","tag-virus-news"],"_links":{"self":[{"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/posts\/2941","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/comments?post=2941"}],"version-history":[{"count":45,"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/posts\/2941\/revisions"}],"predecessor-version":[{"id":3026,"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/posts\/2941\/revisions\/3026"}],"wp:attachment":[{"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/media?parent=2941"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/categories?post=2941"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.georgetoon.com\/blog\/wp-json\/wp\/v2\/tags?post=2941"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}