Researchers from Trend Micro have come across an interesting cybercriminal operation that uses malicious control panel (CPL) files in order to infect devices with malware.
The attack starts with a spam email that usually appears to be related to financial matters. These bogus notifications carry an RTF document.
When the document is opened, victims are presented with a thumbnail and a piece of text that instructs them to double-click on the image in order to make it l…