Attachments

Toll Roads are growing in number and so are packages delivered.  These attacks you to open an attached ZIP file with harmful software (malware) -- DO NOT OPEN THE ZIP FILE ATTACHED.


EXAMPLES PRESENTED INCLUDE:
  1. Demand to appear in court for toll road charges - includes attachment - DO NOT OPEN IT!
  2. Package delivery failure - includes Delivery Label attachment - DO NOT OPEN IT!



TOLL ROAD / COURT ORDER SCAM

A growing number of states are using Toll Roads to cut costs and, in turn, using automated scanning of tags and license plates to charge subscribers and find those who do not pay.  Private companies often operate these and collect feels and or percentages for their efforts.  Because these phishing attack e-mails are mass generated in waves, they can easily insure dates shown are always in the near future to put further pressure on you to act quickly, and without first thinking, to open the infected attachment.

e-mail addresses have been changed below to protect people from the Bad Guys or highlight items.



To: Trusting@emailVictims.com behalf of;
      'E-ZPass Agent' 
curtis.noble@personnelnetworksgroup.com
Payment for driving on toll road, invoice #000205645

ATTACHMENT:  0000521865.zip

Notice to Appear,

 

This is to inform you to appear in the Court on the July 13 for your case hearing.

Please, prepare all the documents relating to the case and bring them to Court on the specified date.

Note: The case will be heard by the judge in your absence if you do not come.

 

You can find the Court Notice is in the attachment.

 

Kind regards,

Raymond Logan,

Clerk of Court.


HOW DO YOU DETECT THE ATTACK?
STEP 1:  Take a deep breath and get your head into this e-mail.

STEP 2:  Read the letter as a skeptic not as a victim.

  1. These letters normally come from a government agency which will have reviewed in detail the notice to insure legal compliance.  Notices nearly always include what Court you are to appear before, in what Chamber of what building at what address, who the Judge is, phone number for the Court Clerk for information, etc.
    BIG NOTE ... DO NOT OPEN AN ATTACHMENT FROM SOMEONE YOU DO NOT KNOW
                           ESPECIALLY IF IT IS A ZIP FILE (like the attached file, 0000521865.zip)!
  2. Do you been in an area over the past 12 months that has toll roads?
  3. Do you have an E-Z Pass (not the use of "E-ZPass" which is not correct)?
  4. If you have an E-Z Pass, is it setup as a "direct bill" to a credit card, is it a pre-paid account, or do they invoice you?  In any of these cases, why is something unpaid?
  5. In some if not all states you may not be tried in absentia (a legal term meaning "in the absence" or "while absent").  In such matters, the Court often has the right to issue an arrest warrant.
  6. It requires you to prepare all the documents without reference as to what those are or where they may be obtained.
  7. It signed by the "Clerk of Court" and not the "Court Clerk" suggesting a foreign involvement.



UNABLE TO DELIVER SCAM

Subject:  Unable to deliver your item, #000648468

Attachment:  FedEx_ID_000648468.zip (2KB)

Dear Customer,

 

We could not deliver your parcel.

Delivery Label is attached to this email.

 

Thanks and best regards,

Gary Bean,

FedEx Delivery Agent.


HOW DO YOU DETECT THE ATTACK?
STEP 1:  Take a deep breath and get your head into this e-mail.

STEP 2:  Read the letter as a skeptic not as a victim.


  1. Why would this rather generic announcement be sent by a secureserver.net?
    There is no highly confidential information shown and FedEx does not send notices like this with attachments.  But if you don't open their attachment the attack fails!
  2. They know who the package is going to but do not personalize the e-mail.
    A frequent sign of a mass mail attack.
  3. Try calling FedEx for a Gary Bean in your local area and see if he exists in the local offices for package delivery as a last line to realize DO NOT OPEN THE ATTACHMENT!

The beauty of these attacks is you can send it/them to nearly anywhere in the United States or other advanced countries and it shakes people up into opening the attachment ... AND THAT'S THE ATTACK ON YOU!