Researchers from Proofpoint have detected a campaign of millions of messages directed at organizations in the US and UK. The campaign employs a straightforward voice message lure with a LNK attachment an unusual but not unheard of method of malware delivery. Double-clicking the attachment calls cmd.exe to run a series of shell commands. The dynamically generated script file downloads and executes the Dridex botnet #220 binary from this URL: hxxp://laurance-primeurs[.]fr/345/wrw.”]
Source: https://informationsecuritybuzz.com/articles/uk-and-us-companies-are-hit-by-mass-phishing-campaign/

