Necurs Botnet back after Christmas break. Still delivering Globeimposter ransomware via fake documents.
After more than a 2 week break for the holidays, Necurs botnet has kicked back into gear tonight.The next in the never ending series of malware downloaders from the Necurs botnet is an email with the subject of Document No 21941954 ( random numbers) pretending to come from accounts at your own email address or company domain., delivering Globeimposter ransomware.
They use email addresses and subjects that will entice, persuade, scare or shock a recipient to read the email and open the attachment.
tayloredgroup.co.uk has not been hacked or had their email or other servers compromised. They are not sending the emails to you. They are just innocent victims in exactly the same way as every recipient of these emails.
To read the original article: