The data pipe has spread via malware, which is often downloaded and installed from fraudulent download links.
Google also claims that 130 accounts tied to the botnet have been deleted.
Googles Threat Analysis Group has alsocreated a listof associated domains to watch out for.

Jeff Hardi / Unsplash

Caroline Purser / Getty Images