MX Lab, http://www.mxlab.eu, started to intercept a new malware distribution campaign by email with the subject “Emailing: P5261326.JPG”.
This email is send from the spoofed addressees and has the following body:
The message is ready to be sent with the following file or link attachments:
Note: To protect against computer viruses, e-mail programs may prevent sending or receiving certain types of file attachments. Check your e-mail security settings to determine how attachments are handled.
The attached file P5261326.JPG contains the folder P9479021. Inside this folder the file P9479021.exe is present.
Note that the filenames and subject name, the number part, can vary with each email.