A zip attachment contains a img with an exe: the malware. The other, a pdf downloading a zip with an exe: the same malware. The data is exfiltrated via SMTP.
Cybercrime, Vjw0rm goes back to hiding in an email on beauty products

Vjw0rm goes back to hiding in an email on beauty products. The “$38,570 detailed Invoice Payment” email rar attachment contains a js file: the malware
Vjw0rm goes back to hiding inside an email about beauty products.
The “$38,570 detailed Invoice Payment” rar attachment contains a js file: the malware. Vjw0rm (aka Vengeance Justice Worm) is a modular worm/RAT hybrid that has three primary capabilities: Information Stealing, Denial of service (DOS), and Self Propagation. In the latter case it copies itself throughout the operating system and startup folder and can spread via removable devices such as USB ones.