Skip to main content
  1. Home
  2. Computing
  3. News

FBI to ‘remove’ this nasty malware that’s affected 2.5 million PCs

Add as a preferred source on Google
An individual surrounded by several computers typing on a laptop.
Digital Trends

A malware originating from China has now been contained after the FBI gained a court order to have the harmful code deleted from thousands of Windows PCs.

The agency has successfully put an end to the reign of the PlugX malware in the U.S., which has affected over 2.5 million devices globally by infiltrating infected USB drives, PCMag noted.

Recommended Videos

Working with the FBI, the Justice Department has confirmed that it has been granted court sanction to remove the malware from nearly 4,260 computers and networks in the U.S. as of Tuesday. With the resolution announced, the FBI is set to notify owners of infected machines via their internet service providers.

This is just one instance of federal departments getting control of a serious cybersecurity risk. However, its resolution notes the importance of ongoing cybersecurity research. The Justice Department detailed that the actors behind the attack are a private group of Chinese state-sponsored hackers called “Mustang Panda” that developed a unique version of PlugX malware for the ongoing mission.

PlugX first surfaced in 2008 when it was used as a backdoor vulnerability for bad actors to secretly control Windows machines. By 2020, the malware had been updated to allow it to infiltrate USB drives as well as connected PCs. This is described as a “wormable” malware that can transfer between computers via infected peripherals.

French cybersecurity vendor Sekoia observed that Mustang Panda eventually lacked the resources to support the number of machines it had infected with the PlugX malware and ultimately abandoned the project.

Similarly, antivirus provider Sophos observed several PlugX infections originating from a single IP address source. In September 2023,  collaborating with Sekoia, the cybersecurity vendor paid just $7 to gain access to the IP address and the infected machines. Further research uncovered a self-delete command within the PlugX code.

In July 2024, law enforcement in France allowed the self-deleting mechanism to be used to remedy the infected machines. Since then, 22 other countries have also followed suit.

While it is not clear how the U.S. entities plan to remove the malware from domestic PCs, the FBI testified in an affidavit that it has tested this self-delete command, confirming that it only removes the malware and does not affect any other device functions or transfer any other unwarranted code.

Fionna Agomuoh
Fionna Agomuoh is a Computing Writer at Digital Trends. She covers a range of topics in the computing space, including…
Gemini will now take notes for you in Google Meet for you, if you the minimum $20 AI tax
Yet another Google subscription just dropped for Gemini
Google Meet Take Notes for me Gemini

Google has just released a useful Gemini feature, which you can try if you are a paying member of course. The company is now bringing "Take notes for me" for Gemini, which will be available in Google Meet for Google AI Pro and Google AI Ultra subscribers, along with eligible Workspace business customers.

For personal users, the feature starts with Google AI Pro, which costs $19.99 per month in the US. In other words, Gemini can now take your Google Meet notes, provided you pay the minimum AI tax.

Read more
After iPad Pro and MacBook Pro, the iMac could be the next in line for an OLED screen upgrade
iMac with M4

The iPhone got an OLED panel in 2017, while the iPad Pro followed in 2024. Even the MacBook Pro is expected to follow later this year or early next year. But what about the iMac?

According to TrendForce, the iMac could get an OLED upgrade. There's no timeline yet, but the direction is clear. Apple wants to replace its current display technologies with OLED, raising the bar for color quality for both regular users and professionals.

Read more
This $1,299 gaming PC wants to be a Steam Machine without waiting for Valve
Valve’s Steam Machine dream is already real in MetaPC's new prebuilt
MetaPC's Steamroller is a new Steam Machine rival

Valve’s Steam Machine may be the face of SteamOS, but the platform isn't exclusive to it. A big announcement after Steam Machine's unveiling was that SteamOS would be arriving on systems outside of the new hybrid console. Now, MetaPCs is one of the first to take advantage of this by opening the preorders for the Steamroller, a new prebuilt gaming desktop that ships with SteamOS installed by default.

Though Steamroller is not trying to be a tiny console-like cube. It is a normal desktop PC with standard parts and a real upgrade path. The system costs $1,299 and is listed with a preorder date of July 3, 2026.

Read more