Just when you think there aren't any more about.
#GeekSquad #BestBuy

Who needs a tiny piece of chocolate when you can unwrap daily doses of LEGO, Pokémon, or Funko Pop? Engadget's 2025 advent calendar guide is out, turning holiday countdowns into a full-blown geek fest. Is this peak consumerism or pure joy? Discuss!

#TechLife #HolidaySeason #GeekSquad #TechTrends #Advent
Link: https://www.engadget.com/our-favorite-2025-advent-calendars-you-can-still-get-now-top-picks-from-lego-pokemon-funko-pop-and-more-120042964.html?src=rss

Our favorite 2025 advent calendars you can still get now: Top picks from Lego, Pokémon, Funko Pop and more

Make the countdown to the holidays even more exciting with these advent calendars.

Engadget
Just brought this back to memory from many years ago in a previous role.
https://youtu.be/2Yn4Q2AOa3c?si=-7mqAcH5WcUv9v9t
#GeekSquad #Geek #BestBuy #Tech
Geek Squad JetPack Commercial

YouTube

Did #BestBuy decide to call their tech support team the #GeekSquad to avoid #customers coming in and, when asked by the host about what they needs, going into immediate Donald “Ogre” Gibb mode. #NERDS!!!!

#friday #fridayfeeling

Sunday project: 💻 🔋🛠 📀💿 Removed swollen original battery, replaced with new one, upgraded & maxed out the RAM on my criminally underused 2010 MacBook Pro.

#GeekSquad #DIY #Apple #MacBook #Repair #Upgrade #Laptop

New sample relating to this activity described - file attachment
Name: Daily Check status order---###Geek Squad###2024APR##.txt
File Magic: text/plain
SHA-256: 330a0f5609c1922888772bc72bc4ececf5e6fca236a68e6783129706af0bdc06

Uploaded to:
https://www.filescan.io/uploads/662c1bcb14ba3ce8289b35fe/reports/3083959a-01fa-4b25-82b0-5de7c9ba2c09/overview
https://www.virustotal.com/gui/file/330a0f5609c1922888772bc72bc4ececf5e6fca236a68e6783129706af0bdc06/

With todays number (833) 944-1376

message source: 209.85.220.41:
Routing details for 209.85.220.41
Cached whois for 209.85.220.41 : [email protected]

#spammers #scammers #malicious #suspectfiles
#malware #triage #ioc #_ioc #infosec #informationSecurity #IncidentResponce #IR
#spam #infosec #infomantionSecurity #virustotal #ABUSE #emailabuse #paypal #paypuke #geeksquad #filescan #vt #virustotal

Filescan.IO - Next-Gen Malware Analysis Platform

Submit malware for analysis on this next-gen malware assessment platform. Filescan GmbH develops and licenses technology to fight malware with a focus on Indicator-of-Compromise (IOC) extraction at scale.

Most recent email #SRC:
Tracking message source: 209.85.220.65:
#Routing details for 209.85.220.65
Cached #whois for 209.85.220.65 : #network-#abuse@#google.com

File #attachment:
Name: You can view and pay your invoice online at #### TXN ID - 35BY54NY6U.txt
FileMagicDescription: #ASCII text, with CRLF line terminators
Size: 820.00 B
#MD5: 3623bff3a27884ccad53958452b3b386
#SHA-1: 1d7f7cbea8d82de0ae5beab1272401213e39a8e1
#SHA-256: f5c231e6710d06d91bda4fe4509900b085a4e8d344df609fe63f2d9c440be24a

https://www.filescan.io/uploads/662975773137a4e0f3bf50ad/reports/7c3eb0d0-aef6-497d-8fec-9f0692b66bbc/overview

https://www.virustotal.com/gui/file/f5c231e6710d06d91bda4fe4509900b085a4e8d344df609fe63f2d9c440be24a/detection/f-f5c231e6710d06d91bda4fe4509900b085a4e8d344df609fe63f2d9c440be24a-1713993073

#spammers #scammers #malicious #suspectfiles
#malware #triage #ioc #_ioc #infosec #informationSecurity #IncidentResponce #IR
#spam #infosec #infomantionSecurity #virustotal #ABUSE #emailabuse #paypal #paypuke #geeksquad #filescan #vt #virustotal

2/2

Filescan.IO - Next-Gen Malware Analysis Platform

Submit malware for analysis on this next-gen malware assessment platform. Filescan GmbH develops and licenses technology to fight malware with a focus on Indicator-of-Compromise (IOC) extraction at scale.

There is an ongoing, intermittent campaign since late March/early April 2024. The MO observed so far:
- Multiple recipients are in the TO field
- No subject line, no body content
- Attachment is TXT file, with filename regarding urgency to pay an invoice/renew software
- subject is is typically #GeekSquad, also looping in #PayPal. Also seen# McAfee
- All email #SRC has been from #GMail
- All have #866 number "for assistance". This sample is using (866) 316-0606

All have been reported to abuse@google & their abuse web form, activity continues.

#spammers #scammers #malicious #suspectfiles
#malware #triage #ioc #_ioc #infosec #informationSecurity #IncidentResponce #IR
#spam #infosec #infomantionSecurity #virustotal

1/2

Triggered by the boost of @dobbie003 on my stable atomic KDE, i have to add (before the worrying starts) that the other side of my spectrum is a Gentoo install, with the wm dk on top of it. Dk started out as a part of ArchLabs, much more a great community than 'just' an Arch derivative. The distro is gone, but most of us are still with that group, still a great bunch of varying geeks. And no, we don't all use Arch btw. Love them ❤️

#geeksquad #archlabsforever #dk

The other bogus #attachment is a #fakeInvoice from #geeksquad

the #fraudster call center numbers are:
844-799-3440
719-297-8098

#MD5
073d0627ecd901979b2f7daca3812ccb
#SHA-1
91279035cd7c98e900cb61ed7c2567701d9d1e41
#SHA-256
70c263efabeb149c9d9d91c4d2f21162ad5f9537eb59cfa0b922780465dcc7c1

Bill5252067237.pdf

https://www.virustotal.com/gui/file/70c263efabeb149c9d9d91c4d2f21162ad5f9537eb59cfa0b922780465dcc7c1/detection

https://www.filescan.io/uploads/661f0200c5dabc22b200d489/reports/ca8370b2-4fbd-4ddb-8182-659606d54368/overview

The #SRC #IP of the email was 72.11.157.148 an #openproxy at (of course) #quadranet

#spammers #scammers #malicious #suspectfiles
#malware #triage
#spam #infosec #infomantionSecurity #virustotal

VirusTotal

VirusTotal