04/09/2026
Kindly share - Massive malware attacks currently
How The Attack Works
• User receives a message from an unknown contact with an attached file
• The file appears to be a legitimate document (e.g., account statement or financial report)
• If opened, the file installs malware that gives attackers remote control over the user’s computer
Warning Signs
• The malware attempts to mount as a new drive
Known Suspicious Filenames
Be cautious of attachments with these, or similar, names:
• 09.02Statement of Account.zip
• 20260902.zip
• accountstatement.zip
• _N.0902114137.zip
• Notice from Tax Department.zip
• -tax-documents.zip
• 20260901014217-9FAC88CE137D.zip
Precautions for Users
If Suspicious Message Is Received
• Do not open the attachment
• Delete the message immediately or contact your IT/Security Team
• Block the sender’s account If The Attachment Has Been Opened
• Unmount the drive
• Change all passwords from a separate, clean device
• Contact your IT/Security Team immediately
Guidance From Security Teams To Users
• Educate employees about this campaign
• Reinforce that official institutions do not send documents via WhatsApp. Any such communication should be treated as suspicious
• Encourage verification through alternate channels before opening attachments