Analys¨¦ parMark Christian Aquino

A spam campaign leveraging HSBC leads to a blackhole exploit kit server. The email notification poses as a ¡°virus scan instruction' for HSBC customers to supposedly better protect the user's online banking profile. The email notification contains a malicious link that once clicked points unsuspecting users to a site, which host a JavaScript. The script then redirects to a blackhole exploit kit server which then executes a malicious code (.JAR) to download malicious executable files.

  • Blackhole Exploit Kit Spam Run Use Bank of America, Capital One, and Linkedin