分析者: Cedrick Ramos

A number of users may receive a fake utility bill email that contains malware. The email is in Japanese and contains an .xls attachment that is supposed to be filled up by the recipient. However, once the file is executed, the user's machine gets infected. The malware is detected as HEUR_VBA.O2.

The email addresses the recipient in good nature initially, then proceeds to tell the user to confirm the invoice by entering information in the attachment.

Users should take extra precautions against unsolicited emails and not click links or open attachments therein. Security solutions with anti-spam and anti-malware capabilities provide an effective defense against such threat.
 垃圾邮件阻止日期/时间 : 2017年9月7日 22:30:00 GMT-8
 TMASE
  • TMASE引擎(全局:
  • TMASE样式(全局):3312