Debunking hoaxes and exposing scams since 2003!





Jump To: Example    Detailed Analysis   Comments   References

E-ZPass Agent 'Unpaid Toll Road Bill' Malware Email


Jump To: Example    Detailed Analysis   Comments   References

Outline

Email purporting to be from an agent at US toll collection system E-ZPass claims that you have an unpaid toll road bill and should open an attached file to review the invoice.

Malware Alert



Brief Analysis

The email is not from E-ZPass. It is a criminal ruse designed to trick you into installing malware on your computer. The malware is contained in the attached file. Details in the malware messages may vary. If you receive such a message, do not open any attachments or click any links contained within.

   

Share







Bookmark and Share





related Links

Related Links

Identity theft is one of the fastest growing crimes in the world. Learn how to stay safe online with Hoax-Slayer's comprehensive eBook:




Example

Subject: [Recipient's name or email address], Indebted for driving on toll road #00000973323

Dear [Recipient's name or email address],

You have a unpaid bill for using toll road.

Please, do not forget to service your debt. You can review the invoice in the attachment.

Sincerely,
Thomas Lewis,
E-ZPass Agent.



Detailed Analysis

'E-ZPass Agent' Email Claims You Must Pay a Toll Road Bill

According to this email, which claims to be from an agent at US toll collection system E-ZPass, you have an unpaid bill for using a toll road. It claims that you can review an invoice for the supposed toll road bill by opening an attached file.

Email is Not From 'E-ZPass - Attachment Contains Malware

However, the email is not from E-ZPass or any of its agents.

If you open the attached .zip file in the hope of seeing the supposed invoice, you will find that it contains malicious JavaScript files. These files can download and install further malware that may steal personal information from the infected computer.

It may also install a rogue antivirus program that will try to panic you into paying a fee to remove viruses from your computer. In fact, the viruses found by the fake scanner do not exist on your system.

Details, such as the supposed agent's name, the subject line, and the name of the attached file may vary in different incarnations of the scam.

This malware email is similar to an earlier E-ZPass malware message that also claimed that you had unpaid toll bills. The earlier version asked users to click a link rather than open an attachment and the resulting malware payload was different. It is unclear if the two attacks are related.

If you receive an unsolicited email claiming that you have an unpaid toll bill that you know nothing about, do not click any links or open any attachments that it contains.

E-ZPass Malware

©Depositphotos.com/klublub


Last updated: March 30, 2015
First published: March 30, 2015
By Brett M. Christensen
About Hoax-Slayer

References
E-ZPass Toll Road Charge Series - JS Malware
E-ZPass Unpaid Toll Email Links to Malware Website






More stories!

'Internet Capacity Warning' Phishing Scam
According to this email, which claims to be from the 'Support Department' at 'Information Technology Services', your internet capacity is 70% full and you therefore need to contact support to avoid problems.
Published: July 6, 2015


Kroger 'Free Coupons' Survey Scam
Message being distributed across Facebook claims that users can receive free coupons from American retailer Kroger just by sharing a message and visiting a third party website to claim their prize.
Published: June 16, 2015


Pointless Facebook Warning - Hackers Posting Insulting Messages or Sexual Content In Your Name
'Hacker' alert messages circulating on Facebook claim that, without your knowledge, hackers are posting insulting or sexual messages that appear to come from you onto your Facebook Timeline.
Published: June 3, 2015