heroui logo

Spam: Sendersrv.com with financial communications and unsubscribe language

Sublime Rules

View Source
Summary
This detection rule identifies potentially abusive financial solicitation emails originating from the sendersrv.com infrastructure. It focuses on messages that include unsubscribe language and reference topics associated with financial communications. The rule utilizes multiple detection methods, including header analysis to check for the sender's domain, content analysis to search for unsubscribe phrases, and natural language understanding (NLU) to classify the topics within the email body. Specifically, it requires that the email is from the sendersrv.com domain, contains the word 'unsubscribe', and touches on financial topics with a confidence rating higher than low. This compound detection approach helps mitigate the risk posed by spam emails that may lead to phishing attacks or other financial fraud activities.
Categories
  • Web
  • Cloud
  • Identity Management
  • Mobile
  • Other
Data Sources
  • User Account
  • Web Credential
  • Network Traffic
  • Process
Created: 2026-02-25