Sponsored by..

Thursday 10 December 2015

Malware spam: "Order 311286 Acknowledged" / "sales@touchstonelighting.co.uk"

This fake financial spam does not come from Touchstone Lighting but is instead a simple forgery with a malicious attachment.

From:    sales@touchstonelighting.co.uk
Date:    10 December 2015 at 12:02
Subject:    Order 311286 Acknowledged

There is no body text. Attached is a malicious Word document Order Acknowledgement.doc which appears to be exactly the same as the payload used for this spam run.

7 comments:

vazr said...

opened it in ipad. do you think he will install something?

Unknown said...

i have received this file in outlook , not open file and scan with 360 total security but not find any alert why ????

the file are : Order Acknowledgement.DOC (62Kb)

Match said...

@Vazr: you are safe on iPad, no viruses on Apple phones/tablets
@Mirko: this is 0day virus (technically, it is virus carefully crafted to the shape that no antivirus will detect it and after that it is released. Now it is turn for antivirus companies to add it to virus definitions database). You are not alone

Rosie said...

I received this today on Windows 10. I didn't open it, but it's just another spam that I am receiving almost daily from various 'spammers'.
Rosie.

its_EZ said...

Received this mail earlier today.

Surprised to see info on it already.
Going to open it in a VM when time allows to mess with it.

@Match, there are most definitely viruses out there targeted at iDevices.

Anyway that is my two cents.

Peace gents.

Jan said...

This is almost certainly more Dridex which has gone nutso with this stuff for several weeks. Dridex is historically windows only so you (@vazr) are probably ok this time.

johng said...

just received this email down under after recent emails with majestic wines (UK)

hope I've deleted it OK