ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

New varieties of Bagle should be toast

Matt Hines CNET News.com

Published: 28 Jan 2005 08:55 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Antivirus companies are reporting the spread of a new variant of the mass-mailing PC virus known as "Bagle".

The latest version of the malware, which some experts refer to as an email worm, is rearing its head worldwide. By Thursday morning, virus trackers in China, Japan, the United States and parts of Europe had reported instances of the threat.

Trend Micro said that the new offshoot, which it calls Bagle.AZ, is distributed as an email attachment that cloaks itself as a delivery notification or confirmation. It uses "spoofed" email addresses to appear to be from a known source, the antivirus software maker said.

The Tokyo-based company said it first discovered the virus on Thursday in Japan, well before the start of business hours in the United States. An almost identical version of the virus, dubbed Bagle.AY, also began appearing late on Wednesday, it said.

Upon infecting a computer, the Bagle variant harvests any available email addresses and inserts copies of itself into the PC's shared folders, Trend Micro said. It then uses the infected system to distribute itself to additional computers.

Some antivirus companies, including software maker Symantec, refer to Bagle threats as "Beagle" worms. For instance, Symantec is calling the latest variant of the virus as W32.Beagle.AZ@mm.

Since the threat appeared outside business hours in the United States, Trend Micro believes the virus was contained relatively quickly and should pose only a minor threat to the large corporations that it was likely aimed at. Corporate servers typically contain thousands of email addresses, making them an attractive target for email borne virus attacks.

Trend Micro has ranked the new virus as a medium-level threat.

"This version could escalate, but it doesn't look that way right now," said David Perry, global director of education at Trend Micro. "It's not being widely circulated at present, and viruses that hit during the work day in the US tend to do a lot more damage."

However, Perry highlighted the fact that the most dangerous time of the year for viruses, which typically stretches from March until May, is about to begin. He said the resurgence of Bagle, which has cooled down over the last few months, may be tied to the one-year anniversary of the threat's launch in 2004.

"I couldn't tell you why this timeframe is so popular for virus activity, but there's little doubt that we'll see some significant attempts over the next several months," Perry said.

Earlier this week, several antivirus companies detailed the emergence of a new variant of the MyDoom threat. However, that virus is being classified as a low risk at this time.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
46 out of 109 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

McAffee Anti-Virus Rollout Engineer (Field Based)

My West Midlands based client has a requirement for 2 Engineers to rollout McAfee Anti-Virus on to 600+ desktops at multiple sites throughout the ...

McAffee Anti Virus Rollout Engineer CRB Cleared

The role will require the following - - Experienced in field support - Windows 2000 / XP / Vista - Anti - Virus experience For an immediate telephone ...

Huge international organisation - C++ Developer needed

In this great Visual C++ role you will have the chance to travel for 20% of the time around Europe and the United States and also be an integral part ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment