ESET Ireland warns that the nasty Nemucod malware is back as the malicious payload of a fake BT bill. It all starts with an email, appearing to come from BT with the subject New BT Online Bill The malware would immediately install a malware that ESET detects as JS/TrojanDownloader.CYJ. This malware doesnt do much direct damage itself, but it starts downloading other, more serious malware, which includes ad-clickers and ransomware.”]
Source: https://informationsecuritybuzz.com/news/fake-bt-bill-carries-ransomware-delivering-trojan/