A newly identified ValleyRAT campaign is targeting organizations in India by abusing a legitimately signed Windows application to launch malware while disguising the attack as an official tax notice.