Linked threats
Friday, November 29, 2019
Malware is often dispensed through emails. One way to avoid infection is to filter out executable attachments in your email messages. For example, Microsoft Outlook traditionally hides files with names that have certain extensions. The list of unwanted file types has recently been expanded.
The "forbidden" file types blocked by Outlook on the web now include Java files (.jar and .jnlp), Python (.py, .pyc, .pyo, .pyw, .pyz and .pyzw), PowerShell (.ps1, .ps1xml, .ps2, .ps2xml, .psc1, .psc2, .psd1, .psdm1, .psd1 и .psdm1), digital certificate files (.cer, .crt and .der), as well as vulnerability exploits (.appcontent-ms, .settingcontent-ms, .cnt, .hpj, .website, .webpnp, .mcf, .printerexport, .pl, .theme, .vbp, .xbap, .xll, .xnk, .msu, .diagcab and .grp).
As a result, the number of blocked file types has reached 142. That fact alone wouldn’t have been a sufficient reason for this publication; but we have alarming statistics indicating that
in the second quarter of 2019, 85% of spam messages contained links to download malicious files instead of traditional attachments.
Spammers have realised that users are now wary of malicious attachments and serve recipients with bogus URLs far more often than ever before. After all, email clients can't filter out links.
The Anti-virus Times recommends
- Use the Dr. Web Parental Control. It will prevent you from navigating to a bogus site.
- Let SpIDer Gate check your Internet traffic for malware.
- If you have a different anti-virus (not Dr. Web), at least verify the safety of the URLs you open with the Dr.Web Link Checker.
And of course, never open suspicious attachments. In previous AVT issues featuring the #spam hashtag, we told our readers how they could recognise spam emails.
Tell us what you think
To leave a comment, you need to log in under your Doctor Web site account. If you don't have an account yet, you can create one.
Comments
pigsy
14:12:42 2019-12-05
I use a personalised e-mail system and use Dr Web on a Linux desktop which scans the e-mails and then passes them on to smb: for the Windows workstations they then get scanned again on the Windows side by a different brand of virus scanner a double-check. stupid virus writers can make a hard life even harder so you have to be careful. Unfortunately because of my domain name i receive quite a lot of malware.
EvgenyZ
22:29:38 2019-11-29
Шалтай Александр Болтай
22:13:42 2019-11-29
razgen
21:37:13 2019-11-29
ka_s
20:52:17 2019-11-29
Татьяна
19:04:15 2019-11-29
Toma
17:04:50 2019-11-29
Thank you for recommendations and protection!
Неуёмный Обыватель
14:21:30 2019-11-29
Masha
14:04:41 2019-11-29
Dmur
09:59:42 2019-11-29
Пaвeл
08:02:49 2019-11-29