{"id":395,"date":"2019-04-06T19:33:19","date_gmt":"2019-04-06T19:33:19","guid":{"rendered":"http:\/\/www.syyhoaxanalyzer.com\/?p=395"},"modified":"-0001-11-30T00:00:00","modified_gmt":"-0001-11-29T17:00:00","slug":"'You-Have-Received-a-5-Page-fax'-Email-Contains-Malware","status":"publish","type":"post","link":"https:\/\/www.syyhoaxanalyzer.com\/?p=395","title":{"rendered":"&#8216;You Have Received a 5 Page fax&#8217; Email Contains Malware"},"content":{"rendered":"<div>\n<p><span style=\"color: #ff0000;\"><strong>Outline:<\/strong><\/span><br \/>\nEmail claims that you \u00a0have received a 5 page fax from \u00a0online fax service eFax and can view the document \u00a0by opening an attached file.<\/p>\n<p><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<!-- HS Net Top Content Responsive --><br \/>\n<ins class=\"adsbygoogle\"\n     style=\"display:block\"\n     data-ad-client=\"ca-pub-0355887770822260\"\n     data-ad-slot=\"4870821038\"\n     data-ad-format=\"auto\"><\/ins><br \/>\n<script>\n(adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><br \/>\n<span style=\"color: #ff0000;\"><strong>Brief Analysis:<\/strong><\/span><br \/>\nThe email is not from eFax and the attachment does not contain a faxed document. Instead, the attached contains a malicious file that, if opened, can install malware on your computer.<\/p>\n<div class=\"example\"><span style=\"color: #ff0000;\"><b>Example:<\/b><\/span><br \/>\nFax Message<\/p>\n<p>You have received a 5 page fax at Thu, 21 Jan 2016 10:26:57 +0700.* The reference number for this fax is syd1_did14-20160121032657-8544745-16.<\/p>\n<p>View this fax using your PDF reader.<\/p>\n<p>Please visit www.efax.com.au\/web-fax-faq if you have any questions regarding this message or your service.<\/p>\n<p>Thank you for choosing eFax!<\/p>\n<p>The eFax \u00ae Team<\/p>\n<p><a href=\"http:\/\/hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1.jpg\" data-rel=\"penci-gallery-image-content\"  rel=\"attachment wp-att-552\"><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"552\" data-permalink=\"https:\/\/www.hoax-slayer.net\/you-have-received-a-5-page-fax-email-contains-malware\/5-page-fax-malware-1\/\" data-orig-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1.jpg\" data-orig-size=\"800,785\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"5-page-fax-malware-1\" data-image-description=\"\" data-medium-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1-300x294.jpg\" data-large-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1.jpg\" class=\"aligncenter size-full wp-image-552\" src=\"https:\/\/hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1.jpg\" alt=\"Five Page Fax Malware Email\" width=\"800\" height=\"785\" srcset=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1.jpg 800w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1-300x294.jpg 300w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1-768x754.jpg 768w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/5-page-fax-malware-1-204x200.jpg 204w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/a><\/p>\n<\/div>\n<p><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<!-- HSNet Article Center --><br \/>\n<ins class=\"adsbygoogle\" style=\"display: block;\" data-ad-client=\"ca-pub-0355887770822260\" data-ad-slot=\"5727909035\" data-ad-format=\"auto\"><\/ins><br \/>\n<script>\n(adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><\/p>\n<p>\n<span style=\"color: #ff0000;\"><strong>Detailed Analysis:<\/strong><\/span><br \/>\nAccording to this email, which at first glance appears to come from popular online fax service eFax, you have received a five page fax. The email, which features \u00a0the eFax logo along with a fax reference number and other details, claims that you can view your fax using your PDF reader. The email includes an attached .zip file which supposedly contains the promised fax.<\/p>\n<p>However, the email is not from eFax and the attachment does not contain a fax message.<\/p>\n<p>While reliance on the once ubiquitous office fax machine has ebbed considerably in recent years, faxes can still be sent and received via online fax services. These services usually \u00a0send users an email to notify them that a fax has been received.<\/p>\n<p>The criminals bank on the fact that at least a few customers of such services may open the attachment \u00a0without due caution. And, even people that have never used such a service may open the attachment out of simple curiosity.<\/p>\n<p>Opening the attached .zip file reveals a dangerous executable file that, if clicked, can install malware on Windows based computers.<\/p>\n<p>The exact nature of the malware payload may vary. Typically however, once installed, such malware may harvest sensitive information from the infected computer and send it to criminals waiting online. It may also download and install further malware components and allow the criminals to control the infected computer from afar.<\/p>\n<p>Because online fax services do generally notify people of incoming faxes via email, criminals often send emails pretending to be from \u00a0such services to trick people into installing malware.  \u00a0If you receive such an email, do not open any attachments or click any links that it contains. Instead, login your online fax service account by entering the \u00a0account address into your browser&#8217;s address bar.  \u00a0If you really did receive a fax, you should be able to safely access and view it via the service&#8217;s website.<\/p>\n<p>\n<script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<!-- Third Content Ad Responsive --><br \/>\n<ins class=\"adsbygoogle\"\n     style=\"display:block\"\n     data-ad-client=\"ca-pub-0355887770822260\"\n     data-ad-slot=\"1909104632\"\n     data-ad-format=\"auto\"><\/ins><br \/>\n<script>\n(adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><\/p>\n<div align=\"center\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js\"><\/script><br \/>\n<!-- HS Net Bottom AdLinks --><br \/>\n<ins class=\"adsbygoogle\" style=\"display: block;\" data-ad-client=\"ca-pub-0355887770822260\" data-ad-slot=\"1358951439\" data-ad-format=\"link\"><\/ins><br \/>\n<script>\n(adsbygoogle = window.adsbygoogle || []).push({});\n<\/script><\/div>\n<p>\n<a href=\"http:\/\/hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35.jpg\" data-rel=\"penci-gallery-image-content\"  rel=\"attachment wp-att-553\"><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"553\" data-permalink=\"https:\/\/www.hoax-slayer.net\/you-have-received-a-5-page-fax-email-contains-malware\/malware-2016-35\/\" data-orig-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35.jpg\" data-orig-size=\"800,566\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"malware-2016-35\" data-image-description=\"\" data-medium-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35-300x212.jpg\" data-large-file=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35.jpg\" class=\"aligncenter size-full wp-image-553\" src=\"https:\/\/hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35.jpg\" alt=\"Malware Threat\" width=\"800\" height=\"566\" srcset=\"https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35.jpg 800w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35-300x212.jpg 300w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35-768x543.jpg 768w, https:\/\/www.hoax-slayer.net\/wp-content\/uploads\/2016\/01\/malware-2016-35-283x200.jpg 283w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/a><\/p>\n<p class=\"date\">Last updated: \u00a0September 1, 2016<br \/>\nFirst published: \u00a0January 22, 2016<br \/>\nBy Brett M. Christensen<br \/>\n<a class=\"foot\" href=\"http:\/\/www.hoax-slayer.com\/about.shtml\">About Hoax-Slayer<\/a><\/p>\n<p class=\"ref\">References<br \/>\n<a title=\"'You Have Received a 4 Page Fax' Malware Email\" href=\"http:\/\/www.hoax-slayer.com\/efax-corporate-malware-email.shtml\">&#8216;You Have Received a 4 Page Fax&#8217; Malware Email<\/a><br \/>\n<a title=\"'Incoming Fax Report' Malware Email\" href=\"http:\/\/www.hoax-slayer.com\/incoming-fax-report-malware-email.shtml\">&#8216;Incoming Fax Report&#8217; Malware Email<\/a><br \/>\n<a title=\"Malware Threat Articles\" href=\"http:\/\/www.hoax-slayer.com\/malware-threat-articles.shtml\">Malware Threat Articles<\/a><\/p>\n<p><\/br><\/br> Original Source : <a href=\"https:\/\/www.hoax-slayer.net\/you-have-received-a-5-page-fax-email-contains-malware\/\" target=\"_blank\">https:\/\/www.hoax-slayer.net\/you-have-received-a-5-page-fax-email-contains-malware\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Outline: Email claims that you \u00a0have received a 5 page fax from \u00a0online fax service eFax and can view the document \u00a0by opening an attached file. Brief Analysis: The email is not from eFax and the attachment does not contain a faxed document. Instead, the attached contains a malicious file that, if opened, can install [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":6890,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-395","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hoax-inggris"],"_links":{"self":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts\/395"}],"collection":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=395"}],"version-history":[{"count":0,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/posts\/395\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=\/wp\/v2\/media\/6890"}],"wp:attachment":[{"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=395"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=395"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.syyhoaxanalyzer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=395"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}