{"id":235,"date":"2019-04-06T19:33:17","date_gmt":"2019-04-06T19:33:17","guid":{"rendered":"http:\/\/www.syyhoaxanalyzer.com\/?p=235"},"modified":"-0001-11-30T00:00:00","modified_gmt":"-0001-11-29T17:00:00","slug":"'Funeral-Account-Recovery'-Malware","status":"publish","type":"post","link":"https:\/\/www.syyhoaxanalyzer.com\/?p=235","title":{"rendered":"&#8216;Funeral Account Recovery&#8217; Malware"},"content":{"rendered":"<div>\n<p><a href=\"http:\/\/hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1.jpg\" data-rel=\"penci-gallery-image-content\"  rel=\"attachment wp-att-867\"><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"867\" data-permalink=\"https:\/\/www.hoax-slayer.net\/funeral-account-recovery-malware\/malware-bomb-1\/\" data-orig-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1.jpg\" data-orig-size=\"800,720\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"malware-bomb-1\" data-image-description=\"\" data-medium-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1-300x270.jpg\" data-large-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1.jpg\" class=\"aligncenter size-full wp-image-867\" src=\"https:\/\/hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1.jpg\" alt=\"Malware Bomb\" width=\"800\" height=\"720\" srcset=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1.jpg 800w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1-300x270.jpg 300w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1-768x691.jpg 768w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/03\/malware-bomb-1-222x200.jpg 222w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/a><\/p>\n<p>In a particularly callous move, online criminals are currently distributing malware emails that supposedly contain a funeral invoice in an attached file.<\/p>\n<p>The emails, which claim to be from &#8216;Funeral Account Recovery&#8217; and have a subject line that appears to contain an invoice number, ask you to open an attached file to view a letter. Recipients who have recently lost a loved-one may be especially vulnerable to this ruse.<\/p>\n<p>If you open the attached .zip file, you will find that it contains a javascript (.js) file. If \u00a0you then <a title=\"Malicious spam with zip attachments containing .js files\" href=\"https:\/\/isc.sans.edu\/forums\/diary\/Malicious+spam+with+zip+attachments+containing+js+files\/20153\/\">click \u00a0the .js file<\/a>, malware may be installed on your Microsoft Windows based computer. Once installed, the malware may join the infected computer to a botnet and download \u00a0further malware.<\/p>\n<p>This ruse is not unprecedented.  \u00a0In early 2014,  \u00a0<a title=\"Bogus Funeral Notification Emails Point to Malware\" href=\"http:\/\/www.hoax-slayer.com\/funeral-notification-malware-emails.shtml\">malware emails<\/a> purporting to be from various funeral homes were being distributed. These fake funeral notices contained links to websites that harboured malware.<\/p>\n<div align=\"center\"><script src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\" async=\"\"><\/script><br \/>\n <!-- HSNet Article Center --><br \/>\n <ins class=\"adsbygoogle\" style=\"display: block;\" data-ad-client=\"ca-pub-0355887770822260\" data-ad-slot=\"5727909035\" data-ad-format=\"auto\"><\/ins><br \/>\n<script>\/\/ <![CDATA[\n(adsbygoogle = window.adsbygoogle || []).push({});\n\/\/ ]]&gt;<\/script><\/div>\n\n\n\n\n<div class=\"example\">\n\n\n<p><b>EXAMPLE:<\/b><\/p>\n\n\n\n\n<p><strong>From: Funeral Account Recovery<br \/>\nSubject: Inv. 75344<\/strong>Please see attached letter.<\/p>\n\n\n\n\n<p>&#8212;<br \/>\nJill [Surname removed]<br \/>\nFuneral Account Recovery<\/p>\n\n\n<\/div>\n\n\n\n\n<p><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<!-- HS Net Bottom Content --><br \/>\n<ins class=\"adsbygoogle\"\n     style=\"display:block\"\n     data-ad-client=\"ca-pub-0355887770822260\"\n     data-ad-slot=\"4810115431\"\n     data-ad-format=\"auto\"><\/ins><br \/>\n<script>\n(adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><\/p>\n\n\n\n\n<p class=\"date\">Last updated: March 1, 2016<br \/>\nFirst published: March 1, 2016<br \/>\nBy Brett M. Christensen<br \/>\n<a class=\"foot\" href=\"http:\/\/www.hoax-slayer.com\/about.shtml\">About Hoax-Slayer<\/a><\/p>\n\n\n\n\n<p class=\"ref\">References<br \/>\n<a title=\"Bogus Funeral Notification Emails Point to Malware\" href=\"http:\/\/www.hoax-slayer.com\/funeral-notification-malware-emails.shtml\">Bogus Funeral Notification Emails Point to Malware<\/a><br \/>\n<a title=\"Malware Threat Articles\" href=\"http:\/\/www.hoax-slayer.com\/malware-threat-articles.shtml\">Malware Threat Articles<\/a><br \/>\n<a title=\"Malicious spam with zip attachments containing .js files\" href=\"https:\/\/isc.sans.edu\/forums\/diary\/Malicious+spam+with+zip+attachments+containing+js+files\/20153\/\">Malicious spam with zip attachments containing .js files<\/a><\/p>\n\n\n\n\n<p>&nbsp;<\/p>\n\n\n<\/br><\/br> Original Source : <a href=\"https:\/\/www.hoax-slayer.net\/funeral-account-recovery-malware\/\" target=\"_blank\">https:\/\/www.hoax-slayer.net\/funeral-account-recovery-malware\/<\/a><br \/>\n<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In a particularly callous move, online criminals are currently distributing malware emails that supposedly contain a funeral invoice in an attached file. The emails, which claim to be from &#8216;Funeral Account Recovery&#8217; and have a subject line that appears to contain an invoice number, ask you to open an attached file to view a letter. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":6890,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-235","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hoax-inggris"],"_links":{"self":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts\/235"}],"collection":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=235"}],"version-history":[{"count":0,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts\/235\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/media\/6890"}],"wp:attachment":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=235"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=235"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=235"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}