Windows utility developer IObit was hacked over the weekend to distribute the strange DeroHE ransomware to its forum members. Ransomware may use this information to decrypt files if a ransom is paid. IObit forum members began receiving emails claiming to be from IObit stating that they are entitled to a free 1-year license to their software as a special perk of being a forum member. The email includes a ‘GET IT NOW’ link that redirects to hxxps://forums.iobit.com/promo.html. Users installed the ransomware thinking it was a legitimate promotion.
Source: https://www.bleepingcomputer.com/news/security/iobit-forums-hacked-to-spread-ransomware-to-its-members/