ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

New varieties of Bagle should be toast

Matt Hines CNET News.com

Published: 28 Jan 2005 08:55 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Antivirus companies are reporting the spread of a new variant of the mass-mailing PC virus known as "Bagle".

The latest version of the malware, which some experts refer to as an email worm, is rearing its head worldwide. By Thursday morning, virus trackers in China, Japan, the United States and parts of Europe had reported instances of the threat.

Trend Micro said that the new offshoot, which it calls Bagle.AZ, is distributed as an email attachment that cloaks itself as a delivery notification or confirmation. It uses "spoofed" email addresses to appear to be from a known source, the antivirus software maker said.

The Tokyo-based company said it first discovered the virus on Thursday in Japan, well before the start of business hours in the United States. An almost identical version of the virus, dubbed Bagle.AY, also began appearing late on Wednesday, it said.

Upon infecting a computer, the Bagle variant harvests any available email addresses and inserts copies of itself into the PC's shared folders, Trend Micro said. It then uses the infected system to distribute itself to additional computers.

Some antivirus companies, including software maker Symantec, refer to Bagle threats as "Beagle" worms. For instance, Symantec is calling the latest variant of the virus as W32.Beagle.AZ@mm.

Since the threat appeared outside business hours in the United States, Trend Micro believes the virus was contained relatively quickly and should pose only a minor threat to the large corporations that it was likely aimed at. Corporate servers typically contain thousands of email addresses, making them an attractive target for email borne virus attacks.

Trend Micro has ranked the new virus as a medium-level threat.

"This version could escalate, but it doesn't look that way right now," said David Perry, global director of education at Trend Micro. "It's not being widely circulated at present, and viruses that hit during the work day in the US tend to do a lot more damage."

However, Perry highlighted the fact that the most dangerous time of the year for viruses, which typically stretches from March until May, is about to begin. He said the resurgence of Bagle, which has cooled down over the last few months, may be tied to the one-year anniversary of the threat's launch in 2004.

"I couldn't tell you why this timeframe is so popular for virus activity, but there's little doubt that we'll see some significant attempts over the next several months," Perry said.

Earlier this week, several antivirus companies detailed the emergence of a new variant of the MyDoom threat. However, that virus is being classified as a low risk at this time.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
46 out of 109 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

IT Manager

They also offer the right candidate the opportunity to travel as they have an office in the Far East & have a new office due to open soon in the ...

McAffee Anti-Virus Rollout Engineer (Field Based)

My West Midlands based client has a requirement for 2 Engineers to rollout McAfee Anti-Virus on to 600+ desktops at multiple sites throughout the ...

Huge international organisation - C++ Developer needed

In this great Visual C++ role you will have the chance to travel for 20% of the time around Europe and the United States and also be an integral part ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

1 comment

Trades Unions against ID Cards

The Trades Union Congress (TUC) has backed up airport workers protesting against ID cards, the Financial Times reports. In a letter to Home Secretary Jacqui Smith, the TUC said it... More

Post a comment