This particular attack was aimed primarily at both personnel belonging to Europe and Asia governments. Trend Micro said that the message was sent to 16 officials representing European countries alone. The topic of the email -and the attached document - would be of interest to these targets. In addition, the information stolen and where it was stolen from is very consistent with targeted attacks aimed at large organizations that use corporate mainstays like Internet Explorer and Outlook.
It?s worth noting, however, that Chinese media organizations were also targeted by this attack. The backdoor itself has also been detected in the wild ? but, interestingly, it has been most frequently seen in China and Taiwan, with a more limited presence in other Asian countries.
The vulnerability used in this attack is one that is commonly used by targeted attacks. High-profile campaigns like Safe and Taidoor have made use of this vulnerability; if anything it's a commonly targeted flaw in sophisticated campaigns.