Análisis realizado por Cedrick Ramos

We recently found a sample of a spam campaign that appears to use the mask of certain animal nutrtition companies. The email poses to be an invoice from Cargill and attempts to infect users with a document with malicious macro included. Upon investigation, the malware was identified and detected as W2KM_DRIDEX.FDAX. As of this writing, all elements of this spam campaign has been blocked.

Users are always advised to carefully check the emails they receive and refrain from opening those that they deem suspicious, especially when they come with file attachments.
 Fecha/hora de bloqueo del spam: 15 de diciembre de 2015 GMT-8
 TMASE
  • Motor TMASE: 8.0
  • Patrón TMASE: AS Pattern 2002