Screenshot4

I recently engaged in an investigation involving two new Carbanak campaigns targeting the hospitality sector. In each campaign a malicious Word or RTF document was sent to specific employees, claiming the sender had trouble with the online ordering system, or was filing a lawsuit because a member of his group got sick after dining at one of the organization’s restaurants.

https://www.trustwave.com/Resources/SpiderLabs-Blog/Carbanak-Continues-To-Evolve–Quietly-Creeping-into-Remote-Hosts/