New malware spam targets HR departments
A job-search related malware spam has been uncovered by the researchers of Websense Security Labs. The spam targets the inboxes of HR executives and infects their computers.
The spam asks the receiver to review a CV without mentioning anything about the position applied for. The spam also contains some attachments that are disguised as picture files. According to the researchers of Websense, over 230,000 samples have been found so far, and the number is increasing quickly.
The spam contains a ZIP file attached to it. Inside the ZIP file is an executable that contains the Oficla bot. This connects to a URL in the davidopolko.ru domain for its C&C functions. According to VirusTotal, a free virus and malware online scan service, over half of the AV vendors have detection for this attack.