Feed on

Category Archive for 'Security'

Sent: Wednesday, September 20, 2017 8:20 PM To: xxxxx, xxxxx Subject: Invoice number 647003812 Notification Dear Client, Here is your invoice dated 21 Sep 17. Give me a phone call at 01322 444908, if you have any questions regarding this invoice. See Invoice Below: hxxpr://ladymicki.cox/Invoice-Dated-21-Sep-17-12787148683/SGYO-JQB/2017/ –> This address will install malware on your system.  Thank you!

09/19/2017 Subject: important

From: “Wesleyan Universityr” <mhaarnold@wesleyan.edu> Date: Tue, Sep 19, 2017 at 9:52 AM -0400 Subject: important To: “Xxxxx, Xxxxx” <xxxxx@wesleyan.edu>    Dear xxxxx@wesleyan.edu, You are required to update your account. CLICK HERE Security Service Wesleyan University The originating address looks legitimate. However, if you try to look them up in the address book they do not […]

From: Wesleyan University <xw322@drexel.edu> Subject: You have (1) new Message Date: September 12, 2017 at 8:37:41 PM EDT To: Recipients <xw322@drexel.edu> Dear User, You have (1) new Security Mail. Kindly CLICK HERE to read now. Wesleyan University   The “From” address is not a valid Wesleyan address. The link takes you to a totally invalid […]

Hello, all. In light of the Equifax security breach below are some resources to read. Please, be vigilant at home and work to avoid phishing scams. The bad guys will be working to get your money and more information about you like your SSN, Drivers license number, bank and credit card numbers. The scammers will likely, […]

From: “Wesleyan University Library” <libraries@wesleyan.com> –>Convincing looking “From” address. Date: Sep 11, 2017 5:08 PM Subject: Library Notifications To: a wesleyan person Cc: Dear Student, This is to inform you that your access to Wesleyan University Library Databases will expire soon. Due to security precautions established to protect Wesleyan University Libraries System, you have to renew your […]


The “Wesleyan University” address is actually, ryry@coultercomm.com.  Not a Wesleyan Address. The “CLICK HERE“ is a downloadable malware package. It is not a web Redirect and you will be infected. There is no signature or specific contact person identified.

From: Director Bobzien [mailto:BODBobzien@reston.org] Sent: Friday, September 08, 2017 11:04 AM Subject: Message From Administrator   your Webmail Account need verification Immediately. Please Verify now to Keep email Account active.   ——–>the shortcut in BLUE actually, goes to hxxp://tyjuanmsta.bplaced.net/bloog/upd/int/sys/12XY. The original message text is actually, red.

08/30/2017 subject: Summer Arrival

Please review the document I uploaded for you HERE its very IMPORTANT.   hxxp://takrebanok.info/tadako/wait.php?stuff=4  <–Actual link path. Not legitimate.

This is a nasty Phish as it is from a compromised Wesleyan account.  The attachment is infected and will put malware on to your system. Do NOT click the attachment.

08/21/2017 Subject: Request

From: “A valid Wesleyan employee” <executive.server@aol.com>  <–Note you will see a valid Wesleyan employee. Note the address is NOT a Wes address Date: Monday, August 21, 2017 at 10:45 AM To: Wes Employee <WesEmployee@wesleyan.edu> Subject: Request   Lisa,   Are you in the office? —————————————————————– This is an interesting email as it only asks you to […]

Next »