Necurs Botnet Distributing Large Amounts SPAM Emails Containing Locky Ransomware
Threat Intelligence monitoring has identified that the Necurs botnet has been distributing large amounts of SPAM emails containing Locky Ransomware.
This content has been archived
This article no longer conforms to NHS Digital's standards for cyber alerts, and may contain outdated or inaccurate information. Use of this information contained in this page is at your own risk
Summary
Threat Intelligence monitoring has identified that the Necurs botnet has been distributing large amounts of SPAM emails containing Locky Ransomware.
Affected platforms
The following platforms are known to be affected:
Threat details
Malicious spam email have been witnessed with the following subject lines:
- PDF-N*
- Document-N*
- Copy-N*
Necurs is a large botnet that is known to distribute various types of malware, including; banking trojans and ransomware.
Remediation steps
| Type | Step |
|---|---|
|
Last edited: 15 December 2021 9:44 am