Decoy: fake order from a Taiwanese company. The xls attachment, if opened, contacts a link and redirects the victim to a malicious site, which downloads the malware.
CheckPoint cybersecurity experts: The malware hits large companies, but asks "little" ransom. It appears to be developed from scratch. It’s detected by a single Virus Total engine.
The project, created by cybersecurity expert Luca Mella, has already found that the phenomenon is transversal. It affects big and small companies. Even in sectors not at "cyber risk".
Bleeping Computer cyber security experts: The cybercrime gang specifies excluded targets, but the others are hit by a tailored malware and the threat to post stolen data online.
Agari cyber security experts: The group targets only senior executives at Fortune 500 or Global 2000 companies. It has stolen million dollars from firms in 46 countries.
Symantec cyber security experts spotted a ransomware campaign which exploits legitimate tools and both malware to earn big profits from large-multinational companies.