The sender appears to be an employee of Guangzhou Jintao Ceramic Co.

Sep 19, 2013 11:47 GMT  ·  By

The name of China-based Guangzhou Jintao Ceramic Co. Ltd, a manufacturer of ceramic products, is currently being used in a malware spam campaign.

MX Lab researchers have spotted malicious emails titled “Purchase Order,” which purport to come from one Jane Wang.

“Confirm the payment Slip which was made to the account written on the Invoice with the sum of 30,000 usd for 30%. Guangzhou Jintao Ceramic Co.,Ltd,” the emails read.

The fake notifications appear to come from Guangzhou Jintao Ceramic, but in reality they have nothing to do with the company. Instead, they carry a link that points to a malicious file hosted on a hacked website. The malware is a variant of ZeuS, the notorious Trojan designed to steal banking information.

If you come across such emails, ignore them. Opening the link, especially from a company computer, could have a devastating impact, since the malware could ultimately allow cybercriminals to gain access to corporate bank accounts.