Last revised or Updated on: 16th March, 2016, 11:54 AMAn email written partly in English and partly in German supposedly from Buhler group with the subject of Bestellung 69376 [ random numbered] pretending to come from david.favella654@buhlergroup.com ( random numbers after david.favella ) with a zip attachment is another one from the current bot runs which downloads either Dridex banking Trojan or Locky ransomware They use email addresses and subjects that will entice a user to read the email and open the attachment. A very high proportion are being targeted at small and medium size businesses, with the hope of getting a better response than they do from consumers. Update: I am reliably informed this is Locky ransomware not Dridex banking Trojan The … Continue reading →