Cisco Blog >Threat Research

Threat Research

[Attachment]

This post was written by Jaeson Schultz.

Introduction

Over the past five years the Necurs botnet has established itself as the largest purveyor of spam worldwide. Necurs is responsible for emailing massive amounts of banking malware, ransomware, dating spam, pump-n-dump stock scams, work from home schemes, and even cryptocurrency wallet credential phishing. Necurs sends so much spam that at times Necurs' spam campaigns can make up more than 90% of the spam seen by Cisco Talos in one day.

To conduct a deeper analysis of Necurs, Talos extracted 32 distinct spam campaigns sent by Necurs between August 2017 and November 2017. The result was a collection of over 2.1 million spam messages, sent from almost 1.2 million distinct sending IP addresses in over 200 countries and territories.

Read More

Tags:

Cisco Systems Inc. published this content on 18 January 2018 and is solely responsible for the information contained herein.
Distributed by Public, unedited and unaltered, on 18 January 2018 16:54:08 UTC.

Original documenthttps://blogs.cisco.com/security/talos/the-many-tentacles-of-the-necurs-botnet

Public permalinkhttp://www.publicnow.com/view/269755574CFC9852AF8BC116C90FE6EC8F4BE02A