The Botnet appears to use a new delivery method for compromising Windows systems after Microsoft disables VBA macros by default.
Source: threatpost.com – Read more

Critical Microsoft Telnet 0-Click Vulnerability Exposes Windows Credentials
A critical vulnerability in Microsoft Telnet Server allows remote attackers to bypass authentication entirely, gaining administrative access without credentials. Affecting legacy Windows systems (2000 through