{"id":2762,"date":"2019-04-06T19:34:12","date_gmt":"2019-04-06T19:34:12","guid":{"rendered":"http:\/\/www.syyhoaxanalyzer.com\/?p=2762"},"modified":"-0001-11-30T00:00:00","modified_gmt":"-0001-11-29T17:00:00","slug":"RapidFax-Malware-Email","status":"publish","type":"post","link":"http:\/\/www.syyhoaxanalyzer.com\/?p=2762","title":{"rendered":"RapidFax Malware Email"},"content":{"rendered":"<div>\n<h2>Outline<\/h2>\n<p>Email purporting to be from fax to email service RapidFax claims that a received fax can be viewed by opening an attached file. \u00a0 <\/p>\n<p><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<!-- HS Net Top Content Responsive --><br \/>\n<ins class=\"adsbygoogle\"\n     style=\"display:block\"\n     data-ad-client=\"ca-pub-0355887770822260\"\n     data-ad-slot=\"4870821038\"\n     data-ad-format=\"auto\"><\/ins><br \/>\n<script>\n(adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><\/p>\n<h2>Brief Analysis<\/h2>\n<p>The message is not from RapidFax. The attached zip file contains malware.<\/p>\n<h2>Example<\/h2>\n<div class=\"example\">\n<p><strong>Subject: Inbound Fax<\/strong><\/p>\n<p>A fax has been received.<\/p>\n<p>MCFID = 74887842<br \/>\nTime Received = Tue, 04 Dec 2012 10:56:12 +0700<br \/>\nFax Number = 7302936127<br \/>\nANI = 7272765955<br \/>\nNumber of Pages = 16<br \/>\nCSID = 78125793173<br \/>\nFax Status Code = Successful<\/p>\n<p>Please do not reply to this email.<\/p>\n<p>RapidFAX Customer Service<br \/>\nwww.rapidfax.com<\/p>\n<p><a href=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax.jpg\" data-rel=\"penci-gallery-image-content\" ><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"23281\" data-permalink=\"https:\/\/www.hoax-slayer.net\/rapidfax-malware-email\/rapidfax\/\" data-orig-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax.jpg\" data-orig-size=\"582,295\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"Rapidfax\" data-image-description=\"\" data-medium-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax-300x152.jpg\" data-large-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax.jpg\" class=\"aligncenter size-full wp-image-23281\" src=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax.jpg\" alt=\"RapidFax Malware Email\" width=\"582\" height=\"295\" srcset=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax.jpg 582w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax-300x152.jpg 300w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2018\/12\/Rapidfax-500x253.jpg 500w\" sizes=\"(max-width: 582px) 100vw, 582px\" \/><\/a><\/p>\n<\/div>\n<p>&nbsp;<\/p>\n<h2>Detailed Analysis<\/h2>\n<p>This message, which purports to be from online fax to email service RapidFax, claims that a fax has been received and can be viewed by opening an attached file. The email includes a list of details about the supposed fax along with the RapidFax logo and links to associated websites.<\/p>\n<p>However, the email is not from RapidFax and the attachment does not contain a fax as claimed. In fact, the attachment contains a .zip \u00a0file that harbours a trojan. \u00a0<\/p>\n<p><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<ins class=\"adsbygoogle\"\n     style=\"display:block; text-align:center;\"\n     data-ad-format=\"fluid\"\n     data-ad-layout=\"in-article\"\n     data-ad-client=\"ca-pub-0355887770822260\"\n     data-ad-slot=\"9162856233\"><\/ins><br \/>\n<script>\n     (adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><\/p>\n<p> Unzipping the attached file reveals a malicious .exe file. If the user proceeds to open this .exe file, the trojan will be installed on his or her computer.<\/p>\n<p>Typically, such trojans can make contact with remote servers controlled by cybercriminals, harvest sensitive information from the compromised computer and download further malware.<\/p>\n<p>If you receive one of these emails, do not open any attachments or click any links that it may contain.<\/p>\n<p><\/br><\/br> Original Source : <a href=\"https:\/\/www.hoax-slayer.net\/rapidfax-malware-email\/\" target=\"_blank\">https:\/\/www.hoax-slayer.net\/rapidfax-malware-email\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Outline Email purporting to be from fax to email service RapidFax claims that a received fax can be viewed by opening an attached file. \u00a0 Brief Analysis The message is not from RapidFax. The attached zip file contains malware. Example Subject: Inbound Fax A fax has been received. MCFID = 74887842 Time Received = Tue, [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":6890,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-2762","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hoax-inggris"],"_links":{"self":[{"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts\/2762"}],"collection":[{"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2762"}],"version-history":[{"count":0,"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts\/2762\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/media\/6890"}],"wp:attachment":[{"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2762"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2762"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2762"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}