Harry
March 1st, 2005, 13:05
Malware type: Worm
Aliases: No Alias Found
In the wild: Yes
Destructive: No
Language: English
Platform: Windows 98, ME, NT, 2000, XP
Encrypted: No
Characteristics: Propagates via E-mail
Overall risk rating: Medium
Reported infections: Low
Damage potential: High
Distribution potential: High
Malware type: Worm
Aliases: No Alias Found
In the wild: Yes
Destructive: No
Language: English
Platform: Windows 98, ME, NT, 2000, XP
Encrypted: No
Characteristics: Propagates via E-mail
Overall risk rating: Medium
Reported infections: Low
Damage potential: High
Distribution potential: High
Description:
As of March 1, 2005 3:43 AM (Pacific Standard Time, GMT -8:00), Trend Labs has declared a Medium Risk Alert to control the spread of this new BAGLE variant that is spreading in New Zealand and Australia.
It propagates by mass-mailing copies of its Trojan component, which Trend Micro detects as TROJ_BAGLE.BE. This Trojan, in turn attempts to download a copy of this worm from several Web sites.
It gathers target recipients from the contacts found in the Windows Address Book.
It also attempts to download the file EML.EXE into the Windows folder from the following URL:
* http:// I WILL NOT PUT THAT LINK IN HERE !!!
This file contains a list of recipients intended for it to send email to.
It attempts to download the file every 100 milliseconds until it succeeds. The contents of this URL, or the email addresses contained in the downloaded file may change at any given time.
UPDATE YOUR VIRUS-PROGRAM
Aliases: No Alias Found
In the wild: Yes
Destructive: No
Language: English
Platform: Windows 98, ME, NT, 2000, XP
Encrypted: No
Characteristics: Propagates via E-mail
Overall risk rating: Medium
Reported infections: Low
Damage potential: High
Distribution potential: High
Malware type: Worm
Aliases: No Alias Found
In the wild: Yes
Destructive: No
Language: English
Platform: Windows 98, ME, NT, 2000, XP
Encrypted: No
Characteristics: Propagates via E-mail
Overall risk rating: Medium
Reported infections: Low
Damage potential: High
Distribution potential: High
Description:
As of March 1, 2005 3:43 AM (Pacific Standard Time, GMT -8:00), Trend Labs has declared a Medium Risk Alert to control the spread of this new BAGLE variant that is spreading in New Zealand and Australia.
It propagates by mass-mailing copies of its Trojan component, which Trend Micro detects as TROJ_BAGLE.BE. This Trojan, in turn attempts to download a copy of this worm from several Web sites.
It gathers target recipients from the contacts found in the Windows Address Book.
It also attempts to download the file EML.EXE into the Windows folder from the following URL:
* http:// I WILL NOT PUT THAT LINK IN HERE !!!
This file contains a list of recipients intended for it to send email to.
It attempts to download the file every 100 milliseconds until it succeeds. The contents of this URL, or the email addresses contained in the downloaded file may change at any given time.
UPDATE YOUR VIRUS-PROGRAM