{"id":27,"date":"2010-01-12T10:13:51","date_gmt":"2010-01-12T15:13:51","guid":{"rendered":"http:\/\/williamscomputers.com\/?p=27"},"modified":"2010-01-12T10:13:51","modified_gmt":"2010-01-12T15:13:51","slug":"amazon-shipping-update-email-contains-malware","status":"publish","type":"post","link":"https:\/\/williamscomputers.com\/?p=27","title":{"rendered":"Amazon Shipping update email contains malware"},"content":{"rendered":"<p>Waiting for a delivery from Amazon.com? Well, be careful if you receive a  notification in your email &#8211; as it could be that hackers are trying to trick you  into infecting your computer.<\/p>\n<p>We&#8221;re intercepting a wave of forged emails which claim to come from  <tt>order-update@amazon.com<\/tt>, but unlike regular emails from  the dot com giant they have a malicious file attached designed to run a Trojan  horse on your computer.<\/p>\n<p>In a seeming attempt to entice users to open the dangerous attachment, the  emails have embedded inside them an image of a familiar half-opened Amazon  branded package.<\/p>\n<p><img decoding=\"async\" title=\"Amazon email malware attack\" src=\"http:\/\/www.sophos.com\/blogs\/gc\/images\/blogs\/gc\/2010\/01\/amazon-malware.jpg\" alt=\"Amazon email malware attack\" \/><\/p>\n<p>The emails have the following characteristics:<\/p>\n<div>\n<p><strong>Subject:<\/strong><br \/>\n<tt>Shipping update for your Amazon.com order  254-71546325-658732<\/tt><\/p>\n<p><strong>Message body:<\/strong><br \/>\n<tt>Shipping update for your Amazon.com  order 254-78546325-658742<\/tt><\/p>\n<p>\u200f[Image of Amazon package]<\/p>\n<p><tt>Please check the attachment and confirm your shipping details.<\/tt><\/p>\n<p><strong>Attached file:<\/strong> <tt>Shipping documents.zip<\/tt><\/p>\n<\/div>\n<p>The Virus software detects the attached file as <a href=\"http:\/\/www.sophos.com\/security\/analyses\/viruses-and-spyware\/trojcryptbxzp.html\">Troj\/CryptBx-Zp<\/a> and <a href=\"http:\/\/www.sophos.com\/security\/analyses\/viruses-and-spyware\/malcryptboxa.html\">Mal\/CryptBox-A<\/a>.<\/p>\n<p>As always, be sure that you have kept your computer&#8221;s defences up to date,  and ensure that you never open unsolicited email attachments. An email can claim  to come from a well-established brand like Amazon, but easily be a forgery  created by hackers.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Waiting for a delivery from Amazon.com? Well, be careful if you receive a notification in your email &#8211; as it could be that hackers are trying to trick you into infecting your computer. We&#8221;re intercepting a wave of forged emails which claim to come from order-update@amazon.com, but unlike regular emails from the dot com giant [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[],"class_list":["post-27","post","type-post","status-publish","format-standard","hentry","category-virusalerts"],"_links":{"self":[{"href":"https:\/\/williamscomputers.com\/index.php?rest_route=\/wp\/v2\/posts\/27","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/williamscomputers.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/williamscomputers.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/williamscomputers.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/williamscomputers.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=27"}],"version-history":[{"count":0,"href":"https:\/\/williamscomputers.com\/index.php?rest_route=\/wp\/v2\/posts\/27\/revisions"}],"wp:attachment":[{"href":"https:\/\/williamscomputers.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=27"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/williamscomputers.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=27"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/williamscomputers.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=27"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}