Got two spams this morning which obviously contained malicious attachments. Look like they're being sent to ELNK addresses using an alphabetical list, possibly harvested from a dictionary attack to find active personal websites.
The attachment looks like: [random number]transact_store.zip
I'm not sure what it's supposed to do. It scans clean at Virustotal.
I had a look at it with a hex reader and from what I saw and my limited knowledge of code, it might be a file encrypter of some sort.
My guess is it's similar to this threat:
I'm sending it to Microsoft. Maybe they'll figure it out.