Twistcosm.com

By Sumo3000 in Rogue Websites

Twistcosm.com is an attack website that is linked to a wave of attacks involving fake emails from NACHA or LinkedIn. Basically, a downloader Trojan will be contained in a malicious email attachment which will then attempt to connect to Twistcosm.com and download malware onto the victim's computer system. Twistcosm.com is only one of a large number of malicious websites that have been linked to this particular malware scam. As they are added to security software blacklists, criminals attempt to stay one step ahead of PC security researchers by constantly setting up new malicious websites hosting Trojans and other kinds of malware infections.

It is rare for computer users to connect to Twistcosm.com directly; rather, malware on the victim's computer will automatically connect to a page corresponding to a malicious forum post within Twistcosm.com where other malware will be hosted. The ultimate goal of the criminals behind Twistcosm.com is to steal your sensitive information, such as online banking data, as well as being able to take over your computer system in order to use it to send out spam email and carry out other malicious activities.

Twistcosm.com is Linked to a Dangerous Email Attachment

Twistcosm.com will usually be connected to a fake email claiming to come from 'The Electronic Payments Association.' There are several variations on this fake email, but they will usually involve some kind of notification about a failed transfer. The computer user is then prompted to open the attached Microsoft Word file (DOC format) in order to view what the malicious email claims is some kind of transaction report, invoice, or other financial document.

In reality, the attached file is actually a Trojan that will immediately attempt to connect to Twistcosm.com and download and install malware onto the victim's computer system. Because of this, ESG security researchers strongly advise against opening unsolicited email messages, even if they look like to have been assigned by a legitimate company. These kinds of malicious attached files are regular vehicle for malware. By now, most legitimate companies are known not to send file attachments within their email messages unless necessary. ESG security researchers also recommend updating your anti-malware scanner to include Twistcosm.com in its blacklist. This will automatically block any connections to Twistcosm.com, preventing the installation of other malware on your computer system from this location.

Trending

Most Viewed

Loading...