SpiderLabs Blog

Trustwave TrustKeeper PCI Scan Notification - Phishing ALERT

Written by Trustwave SpiderLabs | Feb 21, 2013 6:03:00 AM

Over the last few hours, Trustwave has received multiple reports of individuals receiving fake emails pretending to be from Trustwave.

These emails did not originate from Trustwave. Recipients should immediately delete the emails and not follow any links presented in them.

These emails indicate they are being sent as part of a "TrustKeeper PCI Scan Notification" and are alerting the recipient to login to a portal to respond to an issue related to a vulnerability scan of their network.

Early analysis has shown these emails are being sent from many variations of fake Trustwave email addresses and redirecting users to multiple non-Trustwave URLs. Visiting these URLs might introduce malware onto your systems.

Below is a screenshot of a fake email: