logo

FBI deletes Chinese PlugX malware from thousands of US computers

ID: c9da68c1-2ee0-5067-99f6-6ec639bc7d78

STIX ID: report--c9da68c1-2ee0-5067-99f6-6ec639bc7d78

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2025-01-14

Date Updated: 2026-03-27

Author: Sergiu Gatlan

...
...

The U.S. Department of Justice and FBI conducted a court-authorized operation that deleted the PlugX remote-access trojan from approximately 4,258 U.S. computers as part of an international takedown with French law enforcement and cybersecurity firm Sekoia; the report details PlugX's wormable USB spread, persistence (registry autorun), espionage use by Mustang Panda against governments, companies and dissidents globally, and sinkholing of a C2 server (45.142.166.112).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.