Netskope Threat Labs

Commonmagic

ATP Sandbox Adv. Heuristics

CommonMagic is a backdoor that Kaspersky researchers discovered in the area of the Russo-Ukrainian conflict, deployed alongside the PowerMagic loader in campaigns against Ukrainian and Belarusian organizations.

First seen
May 2023
Last seen
September 2026
Alert Name
Win32.Spyware.Commonmagic
Win32.Trojan.Commonmagic