From: Eileen Meade [email@example.com]So far, I have seen two different version of the Word document, both poorly detected   containing two different macros  . These attempt to download a binary from one of the following locations:
date: 27 January 2015 at 08:25
subject: inv.# 35261
Here is your invoice & Credit Card Receipt.
R. Kern Engineering & Mfg Corp.
Fax 909) 664-2116
This is saved as %TEMP%\sdfsdferfwe.exe. It has a VirusTotal detection rate of 3/57. Automated analysis tools are inconclusive   .