Phishing emails are still a big danger to PC users, even in 2022

Hacker
(Image credit: Thianchai Sitthikongsak/Getty)

If there's one thing 2022 has proved, It's that it's not just your grandparent's computers you need to be worried about. In the era of Discord hosted malware and NFTs, there's more threats than ever before coming for your digital data. It's easy to forget that something as simple as phishing emails exist, and are causing big problems for people's security. 

Several sites are reporting an increase in phishing emails attempting to install malware on unsuspecting PCs. According to The Register, bad actors are using Microsoft Exchange servers that have been compromised to send out spam emails. Attached to the emails is an encrypted file, typically a .zip, continuing the malware known as IcedID.

The .zip file will often come with a password to unpack the file. In the emails this is presented as a layer of security to help make the victim feel more at ease. Instead entering the passcode will allow IcedID to immediately install onto the computer. 

This malware then provides a backdoor for further installations from the criminals. Often this access is sold to another party wanting to install ransomware onto the machine.

Window shopping

Windows 11 Square logo

(Image credit: Microsoft)

Windows 11 review: What we think of the new OS
How to install Windows 11: Safe and secure install
What you need to know before upgrading: Things to note before downloading the latest OS
Windows 11 TPM requirements: Microsoft's strict security policy

Intezer further explains that the reason these emails are so convincing is due to thread hijacking. The emails containing the malware are often presented as a reply to a previously stolen email, making them look more valid and less randomised. Intezer also does a bit of a deep dive into how this new attack campaign is working which is worth a look for anyone interested in the ins and outs of how their computer can be attacked.

So far it seems the emails are using fairly consistent language, requesting an unprocessed payment for a recent contract. It's all purposely vague which should help to raise red flags for many. The details for this contract are supposedly in the malicious attachment which you would need to unlock using the provided code. We would recommend not doing so, and maybe get in control of all those passwords while you're at it.

As always, downloading something, especially in a compressed format from an email is risky business. But when it looks like this email comes from a known source, it's understandable that people are being caught unawares. This is just another reminder to be ever vigilant against cyber attacks.

Hope Corrigan
Hardware Writer

Hope’s been writing about games for about a decade, starting out way back when on the Australian Nintendo fan site Vooks.net. Since then, she’s talked far too much about games and tech for publications such as Techlife, Byteside, IGN, and GameSpot. Of course there’s also here at PC Gamer, where she gets to indulge her inner hardware nerd with news and reviews. You can usually find Hope fawning over some art, tech, or likely a wonderful combination of them both and where relevant she’ll share them with you here. When she’s not writing about the amazing creations of others, she’s working on what she hopes will one day be her own. You can find her fictional chill out ambient far future sci-fi radio show/album/listening experience podcast right here. No, she’s not kidding. 

Read more
Kinzie, in an FBI jacket, uses a computer with the logo of the Third Street Saints on it
Have I Been Pwned adds over 284 million compromised passwords from latest breach
Microsoft Windows 11
If you installed Windows 11 with certain security updates and a USB stick, you may not get any more security updates warns Microsoft
A computer screen with program code warning of a detected malware script program. 3d illustration
Second Steam listing this year found hiding 'new and clever' malware. This time through a fake demo link on developer's website
Retro 1990s style beige desktop PC computer and monitor screen and keyboard. 3D illustration.
Microsoft nixes details of its Windows 11 TPM 2.0 security bypass though there are still other ways of getting the latest OS on 'unsupported' hardware
Mister Fantastic giving a thumbs up
A Marvel Rivals player has uncovered 'one of the most dangerous vulnerabilities a game can have' that'll let cheaters take over your PC and find your passwords
The Buffalo RUF3-KEV USB drive on a red-orange gradient
This USB flash drive has a built-in anti-malware system, but I still wouldn't use one I found in a parking lot
Latest in Gaming PCs
HP Omen 45L gaming desktop
This Redditor rocked up to Best Buy and bought an RTX 4060 gaming PC for cheaper than its extended warranty, saving $1,195 and their friend from buying a console
A gaming PC with RGB lighting enabled on a desk.
This gaming PC build smashes together the very latest components but if I did it again, I'd do it differently
Skytech Shadow gaming PC on a blue background
Screw waiting for GPU restocks, with an AMD RX 9070 gaming PC going for as cheap as this I'd hop on the pre-built bandwagon
Cobratype RTX 5070 Ti gaming PC on a blue background
This RTX 5070 Ti gaming PC is about as cheap as we've seen so far, and it's got me all nostalgic for PC prices long past
Framework Desktop with AMD Strix Halo mainboard
iFixit has pulled apart Framework's mini PC and it looks to be the AMD Strix Halo-powered desktop device I've been wanting for at least a week and more
Framework Desktop with AMD Strix Halo mainboard
Framework's first desktop PC is giving us the AMD Strix Halo machine we've been craving, and the opportunity to build our own
Latest in News
The snazzy red and black HyperX Cloud Alpha wireless headphones float in a teal void. The microphone is attached to the headset.
The best wireless gaming headset is now even better in the Amazon Big Spring Sale, boasting a more than $50 discount
A chip being held up in an Intel fab
Intel is reportedly 'working to finalize commitments from Nvidia' as a foundry partner, suggesting gaming potential for the 18A node
Amazon box
Don't panic! The 'Do Not Send Voice Recordings' option Amazon just removed was only used by 0.03% of customers and they can still have it
Digital generated image of people surrounded by interactive transparent and glowing panels with data. Visualising smart technology, blockchain and artificial intelligence
Now I shall demand the cookies! Proposed new browsing agreement turns the tables and lets users dictate terms to websites
Intel CEO, Pat Gelsinger, with a 18A SRAM test wafer
Former Intel CEO, Pat Gelsinger becomes executive chairman of a 'Technology Platform Connecting the Faith Ecosystem' to work on Christian AI using DeepSeek
Assassin's Creed Shadows immersive mode - Naoe holding a tanto in her hand as two guards fall to the ground behind her.
Assassin's Creed Shadows' first hotfix addresses stability issues and a photo mode crash