The Botnet appears to use a new delivery method for compromising Windows systems after Microsoft disables VBA macros by default.
Source: Threadpost