On TechRepublic: 10 dying IT skills
BNET Business Network:
BNET
TechRepublic
ZDNet

By Matt Hines
Posted on ZDNet News: Jan 27, 2005 7:15:00 PM

Antivirus companies are reporting the spread of a new variant of the mass-mailing PC virus known as "Bagle."

The latest version of the malicious software, which some experts refer to as an e-mail worm, is rearing its head worldwide. By Thursday morning, virus trackers in China, Japan, the United States and parts of Europe had reported instances of the threat.

Trend Micro said that the new offshoot, which it calls Bagle.AZ, is distributed as an e-mail attachment that cloaks itself as a delivery notification or confirmation. It uses "spoofed" e-mail addresses to appear to be from a known source, the antivirus software maker said.

The Tokyo-based company said it first discovered the virus on Thursday in Japan, well before the start of business hours in the United States. An almost identical version of the virus, dubbed Bagle.AY, also began appearing late on Wednesday, it said.

Upon infecting a computer, the Bagle variant harvests any available e-mail addresses and inserts copies of itself into the PC's shared folders, Trend Micro said. It then uses the infected system to distribute itself to additional computers.

Some antivirus companies, including software maker Symantec, refer to Bagle threats as "Beagle" worms. For instance, Symantec is calling the latest variant of the virus as W32.Beagle.AZ@mm.

Since the threat appeared outside business hours in the United States, Trend Micro believes the virus was contained relatively quickly and should pose only a minor threat to the large corporations that it was likely aimed at. Corporate servers typically contain thousands of e-mail addresses, making them an attractive target for e-mail borne virus attacks.

Trend Micro has ranked the new virus as a medium-level threat.

"This version could escalate, but it doesn't look that way right now," said David Perry, global director of education at Trend Micro. "It's not being widely circulated at present, and viruses that hit during the work day in the U.S. tend to do a lot more damage."

However, Perry highlighted the fact that the most dangerous time of the year for viruses, which typically stretches from March until May, is about to begin. He said the resurgence of Bagle, which has cooled down over the last few months, may be tied to the one-year anniversary of the threat's launch in 2004.

"I couldn't tell you why this timeframe is so popular for virus activity, but there's little doubt that we'll see some significant attempts over the next several months," Perry said.

Earlier this week, several antivirus companies detailed the emergence of a new variant of the MyDoom threat. However, that virus is being classified as a low risk at this time.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 25 Talkback(s)
Great info!
Thanks for info. More people need to get those facts, and put an end to the M$ mythology that M$ cirulates.
But, I wonder if sonme minds are penetrable. I know a person who has been runnin... (Read the rest)
Posted by: sbarringer@... Posted on: 02/14/05 You are currently: a Guest | | Terms of Use
Extra! Extra!!!!  Yagotta B. Kidding | 01/27/05
no ****  linuxoverwindows | 01/27/05
Think Before You Click  TreeWalker | 01/27/05
Yup  IT Scion | 01/27/05
Stop making excuses  Bill R | 01/27/05
What is the technical flaw that Bagle uses?  NonZealot | 01/27/05
Ok Stop making conclusions.  IT Scion | 01/27/05
It needs a bit more than that.  Joel R | 01/28/05
100 Times Less than Windoz!  sbarringer@... | 02/14/05
Hmmm. Looks like Apple will have to ramp up Mac Mini  Laff | 01/27/05
Not new to say linux beats win32  saphil@... | 01/27/05
It's not about who is on top. It's about how much on top.  MacGeek2121 | 01/27/05
Windows is NOT the #1 OS!  Joel R | 01/28/05
Great info!  sbarringer@... | 02/14/05
They're already 4 weeks backed up and getting further behind.  MacGeek2121 | 01/27/05
Viruses and antiviruses  tqmiso@... | 01/27/05
Its sad how easy this is to prevent  NonZealot | 01/27/05
here here  htotten | 01/27/05
Sadder to see  IT Scion | 01/27/05
However an average consumer wants their computer  Laff | 01/28/05
That's just not true.  Joel R | 01/28/05
Seems to me  M.Fridholm | 01/27/05
Will Technology ever catch up?  keyesdw | 01/28/05
You lead into the age old debate of  IT Scion | 01/28/05
VIRUS WRITERS and MALWARE  ZORRO00 | 01/29/05

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here