The new Trojan BagleDl-U is spreading fast
A new trojan appears to have infected millions of e-mails globally over the past two days. This Trojan, called BagleDl-U, also has the ability to disable security tools running on the computer.
SophosLabs experts say that this BagleDl-U is infected in the form of a spam without a title, the content has only two words as' new price 'but the attachment has many names like' 09_price .zip ',' price_new.zip 'or' price2.zip '.
These attached zip files all contain BagleDl-U trojans.If the naive user double-clicks on the zip files, then BagleDl-U trojan will jump into the computer and change the registry immediately, and try to disable the operation of all the security tools on the computer. .In addition, it silently creates a backdoor to facilitate remote attackers to hijack the computer.
Graham Cluley, Sophos's senior technical advisor, said that the trojan is quite dangerous when its operation is quite positive, using spam technology to spread.All infected computers are at high risk of being compromised or damaged.
Sophos recommends that all computer users upgrade immediately to any security tools available in the computer to prevent this dangerous trojan's attack.
THIEN TRANG (According to Sophos)
You should read it
- Trojan-Downloader_Win32_Agent.nmi
- What is Trojan Dropper?
- The Zeus Trojan continues to plague the United States
- How to remove OSDSoft Trojan DBUpdater.exe Miner
- Description of template Trojan-PSW.Win32.Qbot.mk
- Again Trojan appeared to attack Mac OS
- Appeared Trojans spy on businesses
- Add new Trojan for ransom
May be interested
- Carefully stolen information with Trojan - How to disable Trojanyou are using the internet with a password only you know, but somehow you are still using someone else's account. you suspect your mailbox has been previewed by other people even though you did not go to a public internet service to get it, so you cannot reveal your login information. if so, it is very likely that your computer has been installed or infected with trojan.
- Trojan-Downloader_Win32_Agent.nmithe trojan downloads another program through the internet and launches it on the victim's computer without the user's knowledge or permission.
- The intense revival of Briz Trojansecurity firm panda software has just warned of the emergence of a new variant of the trojan horse. trojans briz is a trojan specializing in stealing passwords and online bank account details of users.
- How trojan pretends to be a PDF file using the RLO . methodyou cannot guarantee that a file is really an image, video, pdf or text file just by looking at the file extension. on windows, an attacker can execute a pdf file as if it were an exe file.
- A trojan appearance ... 'talking'hackers have just launched a 'talking' trojan that can give users a sarcastic voice when it successfully infects their pc.
- Warning about a new phishing trojan linesecurity experts have discovered a new trojan using a different communication procedure than other types of malware to send data to avoid detection.
- Be careful with Trojans hiding the security vendora new trojan program is rapidly spreading on the internet, in the name of a reputable security firm's email, just at the time of the 'thousand-thread hanging'.
- Yusufali-A - trojan against 'black web'experts at sophoslabs lab - a virus and spam analytics research center of sophos security company - have just announced a new type of trojan capable of preventing access to all sites.
- LokiBot - bank trojan on Android turns into ransomware when you try to delete itsecurity agents have discovered a new bank trojan on android called lokibot that turns into extortion code and locks the phone when the user tries to delete its admin rights.
- Description of template Trojan-PSW.Win32.Qbot.mkclassified as trojan-psw - for the purpose of stealing personal information, accounts include user login and password access on the infected computer. psw is an acronym for password stealing ware