|
|
 |
Fake Bank of America Security Emails!Email Scam!
What It Does: Sends emails that are supposedly from "Bank of America" with a link that will send a user to a false Bank of America page with 4 places to download the infected file (Sslsetup.exe). Two are within the text that tell you to install the new tool, the other two links are above that are for a Free Norton 60 Day Trial and a Bank of America Toolbar. All of those links will download (or run, depending on your browser and security settings) the infected file.
How To Avoid Infection: Avoid emails with the following characteristics:
From: (One of the following senders)
- Bank of America Support Center
- Bank of America Update Center
- Bank of America Security
Subject: (One of the following subjects)
- Bank of America We recognize your right to privacy.
- Bank of America Release-Critical Bugs.
- Bank of America Provide superior service.
Message: (One of the following messages)
- Attention all Bank of America Consumers.
At Bank of America, the security of your information is paramount. Our systems and security procedures are designed to keep your personal and financial data confidential at all times. You also have a significant role to play and should adopt the following practices to help keep your personal and financial information protected from unauthorized use - Keep Your Internet Banking Session Secure and set up SSL Certificate.
Read more about installation of SSL Certificate>> (<-hyperlinked to bad site)
Sincerely, Tod Childers. 2008 Bank of America Corporation. All rights reserved.
Attachment: (One of the following attachments)
- Sslsetup.exe
Other Safety Tips:- Do not click any unexpected links in instant messages or emails.
- Do not download email attachments from unexpected sources.
- Do not download unknown files or files from unknown sources.
- Scan all downloaded files with StopSign.
- Ensure that all updates are installed from Microsoft's Windows Update.
Vulnerable Operating Systems: Windows 95/98/ME/NT/2000/XP
Type: Worm
|