More Bagles…
Full article202 words · extracted from securelist.com · click to collapse
During the last six hours or so we’ve seen another flurry of Bagle variants.
The first variant of the day was detected as Email-Worm.Win32.Bagle.cx while we are up to Bagle.dc right now.
And an urgent update for Bagle.de is already on its way, talk about a busy day.
We have a moderate alert on Bagle.cy out and contrary to the spam run of almost a week ago, all these samples dó work on NT platforms.
Again the word “price” is popular with these Bagles, so keep a look out for it.
Latest Webinars
Reports
Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.
Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.
Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.
Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.
Text extracted automatically; images, tables and formatting may be missing. Original: https://securelist.com/more-bagles/30061/