Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

July 2nd, 2012, 13:28 GMT · By

BLOG

Fake ADP Funding Notifications and Security Updates Used to Spread Malware

SHARE:

Adjust text size:


Fake ADP email Enlarge picture - Fake ADP email
Have you received any emails from payroll processor ADP lately? If you have and you clicked on the links they contain, you might have infected your computer with a nasty piece of malware.

Spam campaigns have represented a major issue for more than a decade now and it seems that the phenomenon is not going to disappear anytime soon.

There are currently two popular variants of the ADP scam making the rounds. One of them informs the recipient of a “funding notification – debit draft” and the other one is an alleged request that comes as a result of a security update made by the firm, Sophos experts report.

All the links contained within the messages lead to compromised websites that host the famous Blackhole exploit kit, which attempts to find security holes in order to push a Trojan identified as Troj/Dloadr-DPB.

Take a look at the sample email and be sure to delete it in case it lands in your inbox.

TELL US WHAT YOU THINK:

8,898 hits · 9 comments · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Experts Find Improvements in Classic Phishing Emails

Rogue Live Security Platinum Takes Off via Delta Airlines

London Olympics-Themed Spam: Prize Notifications, Awards and Visa Lotteries

Scam: Dear PayPal Customer, Update Your Records Before June 12

Fake NatWest Emails from Stephen Hester Lure Users to Replica of Bank Site

READER COMMENTS:


Comment #1 by: kroz on 09 Jul 2012, 12:38 UTC reply to this comment

A new version? This arrived this morning. Never had heard of these people.
----------------------------------------------------
From: ADP_Netsecure@adp.com
Subject: ADP Generated Message: First Notice - Digital Certificate Expiration

This e-mail has been sent from an automated system. PLEASE DO NOT REPLY. If you have any questions, please contact your administrator for assistance.

---------------------------------------------------------------------
Digital Certificate About to Expire
---------------------------------------------------------------------
The digital certificate you use to access ADP's Internet services is about to expire. If you do not renew your certificate by the expiration date below, you will not be able to access ADP's Internet services.

Days left before expiration: 2
Expiration date: Jul 11 23:59:59 GMT-03:59 2012

--------------------------------------------------------------------
Renewing Your Digital Certificate
---------------------------------------------------------------------
1. Go to this URL: https://netsecure.adp.com/pages/cert/register2.jsp

2. Follow the instructions on the screen.

3. Also you can download new digital certificate at https://netsecure.adp.com/pages/cert/pickUpCert.faces.

---------------------------------------------------------------------
Deleting Your Old Digital Certificate
---------------------------------------------------------------------
After you renew your digital certificate, be sure to delete the old certificate. Follow the instructions at the end of the renewal process.
Date: July 9, 2012 9:08:43 AM ADT

Comment #1.1 by: Eduard K on 09 Jul 2012, 12:58 GMT

Thanks for letting us know. It does appear to be a new variant.


Comment #2 by: joyous on 02 Aug 2012, 23:48 UTC reply to this comment

thanks a million for this info. I got one today on my MAC that ended up in my junk mail, that was on my Outlook for Mac program. Appreciated the info.


Comment #3 by: koIB on 11 Oct 2012, 23:13 UTC reply to this comment

Received this "ADP Invoice Reminder" from: ADP_Netsecure@adp.com

Your latest ADP Services Invoice is now available to view or pay online at ADP Online Invoice Management .

To protect the security of your data, you will need to enter your ID and password, then click on Access your Online Invoice Management Account.

Total amount due by October 11, 2012

$44166.06

If you have already sent your payment please disregard this friendly reminder and Thank you for choosing ADP.

Questions about your bill?

Contact your ADP administrator by Secure Mail.

Note: This is an automated email. Please do not reply.

Comment #3.1 by: Suecalt on 16 Oct 2012, 19:49 GMT

Thanks for this! I got the same thing. Also went to my junk mail on outlook.


Comment #4 by: Notthistime! on 15 Oct 2012, 12:11 UTC reply to this comment

Thank you very much for the heads-up. this is exactly what I saw this morning when I checked my e-mail. I didn't think I owed anybody $47,000. ouch! thanks.


Comment #5 by: Brenda on 19 Oct 2012, 11:14 UTC reply to this comment

Thank you so much for this info. I got a email, saying I owed $47901.01, this morning. I was like, who is ADP Netsecure. Your article told me everything I needed to know. Thanks again.


Comment #6 by: gransyl on 10 Jan 2013, 17:54 UTC reply to this comment

I just received an ADP Urgent Notification and it was rather disturbing....I did not open either of the two links but with so much breech of personal identy these days - it was disturbing.


Comment #7 by: Amrve on 09 Mar 2013, 01:36 UTC reply to this comment

I just received this one this morning, then another later on sending me a new temp password. Not sure what to make of it, as there are no links to web.

From: "ADP_Netsecure@adp.com"
Date: March 8, 2013, 10:13:25
Subject: ADP Generated Message: Email Address Change

Your email address used for receiving information from ADP was changed on Fri Mar 08 10:13:25 EST 2013:

Old email address: ayrve@hotmail.com
New email address: eahmeta@eger.org

Important: If you did not initiate or authorize this change, or if the new email address above is incorrect, report it immediately: Contact your company administrator for assistance.

This email has been sent from an automated system. DO NOT REPLY.

Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM