scam alert!
Fake Scanner Emails Infect Office Computers
April 10, 2013
Scammers are taking advantage of the standard emails sent by most office scanners. They have replicated the messages of famous printer brands but attach malware to the emails instead of documents.  

How the Scam Works:   


You are at work, and you receive a message from what you think is your office printer/scanner. It appears that someone sent you a copy of a scanned document.  The name doesn't ring a bell, but you open the attachment anyway.   


When you click on the file, you find that it isn't a scanned copy of the latest office report. It's really a link to a third-party website that will download a virus to your computer.  These viruses phish for personal and banking information on your machine. 


HP Malware scam
A sample email with malware attached. Image from Sophos' Naked Security blog. 


The settings in the email header have been faked, so the messages appear to come from an internal email address. However, with so many workplaces failing to set strong passwords, it is possible that your scanner was hacked.  


As always, variations of the scam exist. Most recently, scammers have disguised malware as emails from Hewlett-Packer and Xerox scanners. But scammers will hijack any famous manufacturer's name to lend credibility to their scam.


NOTE: Hewlett-Packard, IBM and Microsoft are BBB Accredited Businesses. Hewlett-Packard is also a BBB National Partner. 


How Do I Protect My Work Computer From Viruses: 

While your work computer is not your personal property, downloading a virus is great way to ruin your work day. Here are tips for protecting your office computer:
  • Create strong passwords. Don't leave the factory presets or use easy to crack passwords. See Microsoft's tips for creating strong passwords 
  • Don't believe what you see. Scammers can make emails appear to come from an account at your office. Just because it's an "" address does not mean it's safe.  
  • Be wary of unexpected emails that contain links or attachments. Do not click on the links or open the files.   
  • Beware of pop-ups. Some pop-ups are designed to look like they've originated from your computer. If you see a pop-up that looks like an anti-virus software but warns of a problem that needs to be fixed with an extreme level of urgency, it may be a scam. 
  • Keep anti-spyware, anti-virus and anti-spam software up to date.  Your office's IT department probably has your computer programmed to conduct regular scans and updates. Let these run as planned.   
For More Information


Check out Xerox's security alerts and subscribe to Hewlett Packard's email alerts to get security updates about their products.   


To find out more about scams, check out BBB Scam Stopper.

Western Union New Logo
This Scam Alert has been sponsored by Western Union.
report a scam
Like us on FacebookFollow us on TwitterView our profile on LinkedIn
Join Our Mailing List
Read our blog button