ZeroHour
Kaspersky Securelistpublished ()ingested @Securelist

An increase in the Bagle activity

highMalwareimportance 42

Indicators of compromiseAll →

TypeIndicatorContext
md535bdca59203212a44de95369238e4e5081fc51d9b4d5d81311f1bde – Trojan-Downloader.Win32.Small.cgx 35bdca59203212a44de95369238e4e50 – Email-Worm.Win32.Bagle.fg Latest Webinars Reports Kaspers
md5ce61b0e6d81fc51d9b4d5d81311f1bdegle activity during the next hours. MD5s for these two are: ce61b0e6d81fc51d9b4d5d81311f1bde – Trojan-Downloader.Win32.Small.cgx 35bdca59203212a44de9536
Full article152 words · extracted from securelist.com · click to collapse

Publications

Publications

25 Jan 2006

minute read

We’ve just released detection for Trojan-Downloader.Win32.Small.cgx and Email-Worm.Win32.Bagle.fg. Samples of these have just appeared on a number of websites which most likely indicates upcoming Bagle activity during the next hours.

MD5s for these two are:

ce61b0e6d81fc51d9b4d5d81311f1bde – Trojan-Downloader.Win32.Small.cgx
35bdca59203212a44de95369238e4e50 – Email-Worm.Win32.Bagle.fg

Latest Webinars
Reports

Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.

Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.

Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.

Text extracted automatically; images, tables and formatting may be missing. Original: https://securelist.com/an-increase-in-the-bagle-activity/30120/