O
ovi
Guest
March 1, 2005, 3:43 AM (GMT - 08:00), TrendLabs has declared a Medium Risk Virus Alert to control the spread
of WORM_BAGLE.BE. TrendLabs has received numerous infection reports indicating that this malware is spreading in
New Zealand and Australia.
Initial analysis shows that this worm drops a copy of itself as WINDLHHL.EXE in the Windows system folder upon
execution. It then mass-mails copies of TROJ_BAGLE.BE, which is resposible for downloading WORM_BAGLE.BE. The email that it sends out has the following
details:
Subject: <blank>
Message Body: price
Attachment: <.ZIP copy of the TROJ_BAGLE.BE
TrendLabs will be releasing the following EPS deliverables:
TMCM Outbreak Prevention Policy 153
Official Pattern Release 2.456.00
Damage Cleanup Template 544
of WORM_BAGLE.BE. TrendLabs has received numerous infection reports indicating that this malware is spreading in
New Zealand and Australia.
Initial analysis shows that this worm drops a copy of itself as WINDLHHL.EXE in the Windows system folder upon
execution. It then mass-mails copies of TROJ_BAGLE.BE, which is resposible for downloading WORM_BAGLE.BE. The email that it sends out has the following
details:
Subject: <blank>
Message Body: price
Attachment: <.ZIP copy of the TROJ_BAGLE.BE
TrendLabs will be releasing the following EPS deliverables:
TMCM Outbreak Prevention Policy 153
Official Pattern Release 2.456.00
Damage Cleanup Template 544