The Mother Board

Motherboards.org forums. Free tech support, motherboard ID, and more.
It is currently Tue Oct 16, 2018 4:58 am

All times are UTC - 8 hours




Post new topic Reply to topic  [ 3 posts ] 
Author Message
PostPosted: Wed Mar 02, 2005 1:13 am 
Offline
Black Belt 5th Degree
Black Belt 5th Degree

Joined: Mon Jul 14, 2003 12:38 pm
Posts: 8640
Location: Midlands UK
Quote:
Three more Bagle variants on the loose
By Steve Ranger


Three newly discovered variants of the Bagle virus are running wild on the internet, security experts warned today.

IT security company F-Secure said that Bagle BB, BD and BE are spreading fast. The firm's senior security consultant Patrik Runald added that there is a "strong possibility" that the same person is behind all three.

Bagle BB was spammed out in email overnight to as many as 100,000 people. F-Secure has issued a 'level two' alert about Bagle BB, which is a Trojan downloader.

This variant does not send emails from infected machines, but drops files like 'winshost.exe' and 'wiwshost.exe' and attempts to disable a range of antivirus and security tools.

"Any Trojan which turns off your antivirus or firewall can open you up to further attack, even by very old viruses," said Graham Cluley, senior technology consultant at Sophos.

"My advice is keep your antivirus automatically updated and always be suspicious of unsolicited email attachments."

Bagle BB also overwrites the host file with entries to prevent access to a number of antivirus websites, and tries to download an executable named 'zo2.jpg' from dozens of different download sites.

"As usual, most of these download sites do not contain such a file now, but at a later date they will contain different spam proxies or backdoors," warned F-Secure.

The Bagle BD variant works in a similar way, while the BE variant spreads in a more traditional way by email, said Runald.

But rather than harvesting email addresses from the infected machine to spread further, this variant accesses a web server on the internet. Bagle BD also tries to install a backdoor into infected machines.


_________________
"Only two thing are infinite, the universe and human stupidity,and Im not sure about the former." Albert Einstein (1879 - 1955)


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Wed Mar 02, 2005 8:10 am 
Offline
Black Belt 5th Degree
Black Belt 5th Degree

Joined: Mon Sep 13, 2004 3:22 pm
Posts: 9258
Location: 33258
8O

_________________
[url=http://www.motherboards.org/folding/index.html] Lend a hand and help with the folding project. Come join our 33258 team!

Image
[/url]


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Wed Mar 02, 2005 8:27 am 
I love bagles
Image


Top
  
Reply with quote  
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 3 posts ] 

All times are UTC - 8 hours


Who is online

Users browsing this forum: AhrefsBot [Bot] and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group