The judicial summons you've gotten via email is likely malicious Researchers at AppRiver have been tracking an uptick in the number of emails containing the Zortob Trojan. The surge seems to be focused on an old scam, which warns the victim that they’ve been ordered to appear in court.The emails represent a classic Phishing / Social Engineering ploy: frighten the potential victim with severe consequences if they don’t do what’s asked of them.In this case, seeing a random notice to appear in court, which implies severe consequences if the person fails to show up, will entice people to open the attached summons in order to get to figure out what’s going on.In this instance, the attachment is malicious. If the attached ZIP file is opened, the executable inside is a variant of Zortob, a Trojan that exposes the infected host to additional malware – in many cases is used to infect the victim with the Zeus Trojan. Zeus is arguably one of the world’s most-known malware families, as it’s been used to steal banking information and personal information, create botnets, propagate itself via spam campaigns.The court notification scam isn’t new. In December of 2013, leading into the first part of this year, criminals used this same trick to spread malware. Those behind the campaign reached such a wide number of potential victims that many US courts had to issue notifications to the public. The following was taken from an AOUSC notice issued earlier this year.“According to the Security Operations Center of the Administrative Office of the U.S. Courts, the emails are instructing recipients to report to a hearing on a specified day and time. The emails also instruct recipients to review an attached document for detailed case information… Several state courts have reported similar schemes, and also are warning the public about potential viruses.”AppRiver advises that notices such as these be deleted and dismissed. Moreover, the age-old rule of avoiding attachments that arrive unexpectedly also applies in this case. Related content news Gwinnett Medical Center investigating possible data breach After being contacted by Salted Hash, Gwinnett Medical Center has confirmed they're investigating a security incident By Steve Ragan Oct 02, 2018 6 mins Regulation Data Breach Hacking news Facebook: 30 million accounts impacted by security flaw (updated) In a blog post, Facebook’s VP of product management Guy Rosen said the attackers exploited a flaw in the website's 'View As' function By Steve Ragan Sep 28, 2018 4 mins Data Breach Security news Scammers pose as CNN's Wolf Blitzer, target security professionals Did they really think this would work? By Steve Ragan Sep 04, 2018 2 mins Phishing Social Engineering Security news Congress pushes MITRE to fix CVE program, suggests regular reviews and stable funding After a year of investigation into the Common Vulnerabilities and Exposures (CVE) program, the Energy and Commerce Committee has some suggestions as to how it can be improved By Steve Ragan Aug 27, 2018 3 mins Vulnerabilities Security Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe