Most malspam contains a malicious URL these days, not file attachments

Image: Proofpoint

Most malicious email spam (malspam) sent in the first half of the year has contained links to malicious files, rather than file attachments, according to telemetry gathered by cyber-security firm Proofpoint.

More precisely, 85% of all malspam sent in Q2 2019 (April, May, and June) contained a link to a malicious file download, rather than the actual malicious file attached to the email.

The Q2 number continues a Q1 trend, where malicious URLs also dominated as the favorite way of distributing malware via email spam.

But while email spam botnet operators may be criminals, they are in no way stupid. They can be as focused on running an efficient operation like any other Silicon Valley engineer, if not more.

If the majority of malspam content sent out these days leverages malicious links, this means operators are getting higher clickthroughs and infections when compared to the classic technique of attaching files to emails.

“While the reason for the continued dominance of URLs may be due to a range of factors, it is likely that most end users have been conditioned to be suspicious of attachments in unsolicited email,” Proofpoint said.

“URLs, on the other hand, are increasingly common in business email as we regularly receive notifications of shared files and collaboration updates via email as organizations move to the cloud,” it added.

Proofpoint’s findings should have repercussions across the entire cyber-security market. Companies which provide anti-phishing training should be the ones taking notes and adapting courses accordingly; focusing on preparing employees for this recent trend.

And employee training helps.

A previous Proofpoint report found that 99% of all email-based cyberattacks require human interaction, namely that the target open files, click on links, or carry out some other sort of action. With a little training, employees can be taught to recognize and avoid falling victims to these attacks.

Other findings from the Proofpoint Q2 2019 Threat Report, published earlier this month, include:

  • 57% of all malspam uses domain spoofing.
  • Botnet-based malware was the most popular malware payload sent via malspam campaigns, accounting for 37% of all emails.
  • Botnet malware was followed by banking trojans (23%), infostealers (16%), malware loaders (8%), remote access trojans (6%), and backdoor trojans (5%).
  • As in recent quarters, ransomware was virtually absent in Q2.
  • Ursnif accounted for 80% of all banking trojan payloads sent via email. It was followed by URLZone, The Trick, and Dridex.
  • The ranking for infostealer had Pony in front, followed by AZORult, Loki Bot, and Formbook.


Image: Proofpoint
About the author

E-Crypto News was developed to assist all cryptocurrency investors in developing profitable cryptocurrency portfolios through the provision of timely and much-needed information. Investments in cryptocurrency require a level of detail, sensitivity, and accuracy that isn’t required in any other market and as such, we’ve developed our databases to help fill in information gaps.

Related Posts

E-Crypto News Executive Interviews

Crypto Scams

Beanstalk Farms Loses $80M In A Massive DeFi Governance Flash-Loan Hack
Beanstalk Farms Loses $80M In A Massive DeFi Governance Flash-Loan Hack
April 23, 2022
Joon Pak Head of Crypto at Prove talks to Us about Crypto Fraud And More
April 11, 2022
Mintable CEO Zach Burks Talks to Us about the Opensea Stolen NFTs and Their Recovery
March 21, 2022
Crypto Crime
Crypto Crime Surges To Record Highs As Thieves Follow Market Buzz – Chainalysis 2022 Report
February 24, 2022
Bots Circumvent 2FA Login At Coinbase And Other Crypto Exchanges In 2022
Bots Have Circumvented 2FA Logins At Coinbase And Other Crypto Exchanges In 2022
February 17, 2022

Automated trading with HaasBot Crypto Trading Bots

Blockchain/Cryptocurrency Questions and Answers

Roundtable Interview-What is the Effect of The Russia-Ukraine War on Cryptocurrency Prices?
March 4, 2022
How Does Bitcoin Casino Work + 2021 Beginner’s Guide
November 8, 2021
How to Buy and Sell Cryptocurrency
November 8, 2021
What Are Bitcoin Futures And How Will They Work In 2022?
November 4, 2021
The Unconventional Guide to Ethereum
October 28, 2021

CryptoCurrencyUSDChange 1hChange 24hChange 7d
Bitcoin29,440 0.49 % 0.68 % 2.32 %
Ethereum1,832.3 1.43 % 6.23 % 4.33 %
Tether1.001 0.11 % 0.13 % 0.08 %
USD Coin0.9989 0.16 % 0.08 % 0.04 %
BNB309.49 1.02 % 5.21 % 7.37 %
XRP0.3931 0.52 % 3.01 % 3.28 %
Binance USD1.003 0.05 % 0.64 % 0.14 %
Cardano0.9566 0.22 % 0.68 % 6.96 %
Solana44.24 0.76 % 8.50 % 11.09 %
Dogecoin0.07880 0.46 % 5.22 % 6.17 %

Bitcoin (BTC) $ 29,494.00
Ethereum (ETH) $ 1,835.58
Tether (USDT) $ 0.999868
USD Coin (USDC) $ 1.00
BNB (BNB) $ 309.93
XRP (XRP) $ 0.393264
Binance USD (BUSD) $ 1.00
Cardano (ADA) $ 0.484078
Solana (SOL) $ 44.19
Dogecoin (DOGE) $ 0.078687