iTnews
  • Home
  • News
  • Technology
  • Security

New Bagle variant using .zip attachments

By Dan Kaplan on Jun 21, 2006 8:49PM

The ever-present Bagle worm again is making the rounds, this time spreading as an emailed .zip attachment encrypted with a password.

Sophos said in a statement Tuesday that it discovered a new version of the worm, which usually finds itself at or near the top of security firms’ list of leading viruses.

In the latest version, the Bagle variant spreads via email using a subject line randomly selected from a list of 118 different names programmed into its code, according to Sophos. Zip files are attached to the emails, and the worm is encrypted inside the files. The message body contains phrases such as "I love you" and a five-digit numerical password that recipients can use to unlock and download the bug.

Once activated, the worm disables security applications and downloads malicious code from one of 99 websites, based in foreign countries such as Poland, Russia and the Czech Republic, according to Sophos.

"The worm uses a randomly generated password for its email image and for the .zip file, in an attempt to evade email filters," said Graham Cluley, Sophos’ senior technology consultant. "Users would be wise to resist the temptation of opening unsolicited attachments, and ensure their anti-virus protection is kept up-to-date."

Finnish security vendor F-Secure said on its blog this week that it recently has received numerous reports of the worm.

"We usually receive new Bagle variants once or twice a week, but for the past week, we have received a new Bagle once per day," according to F-Secure.

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:
attachmentsbaglenewsecurityusingvariantzip

Partner Content

"We're seeing some good policy put in place, but that's the exception"
Partner Content "We're seeing some good policy put in place, but that's the exception"
Accenture and Google Cloud team up to create a loveable, Australian-first, renewable energy product
Promoted Content Accenture and Google Cloud team up to create a loveable, Australian-first, renewable energy product
Security: Understanding the fundamentals of governance, risk & compliance
Promoted Content Security: Understanding the fundamentals of governance, risk & compliance
Why Genworth Australia embraced low-code software development
Promoted Content Why Genworth Australia embraced low-code software development

Sponsored Whitepapers

Extracting the value of data using Unified Observability
Extracting the value of data using Unified Observability
Planning before the breach: You can’t protect what you can’t see
Planning before the breach: You can’t protect what you can’t see
Beyond FTP: Securing and Managing File Transfers
Beyond FTP: Securing and Managing File Transfers
NextGen Security Operations: A Roadmap for the Future
NextGen Security Operations: A Roadmap for the Future
Video: Watch Juniper talk about its Aston Martin partnership
Video: Watch Juniper talk about its Aston Martin partnership

Events

  • Micro Focus Information Management & Governance (IM&G) Forum 2022
  • CRN Channel Meets: CyberSecurity Live Event
  • IoT Insights: Secure By Design for manufacturing
  • Cyber Security for Government Summit
By Dan Kaplan
Jun 21 2006
8:49PM
0 Comments

Related Articles

  • Carnival fined US$5m for cyber security violations
  • Qld gov proposes mandatory data breach reporting for agencies
  • Critical Splunk bug propagates code execution
  • Researchers hacked Oracle servers to demo serious vulnerability
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Qantas calls time on IBM, Fujitsu in tech modernisation

Qantas calls time on IBM, Fujitsu in tech modernisation

Service NSW hits digital services goal two years early

Service NSW hits digital services goal two years early

SA Police ignores Adelaide council plea for facial recognition ban on CCTV

SA Police ignores Adelaide council plea for facial recognition ban on CCTV

NBN Co says TPG tie-up could help Telstra sidestep spectrum limits

NBN Co says TPG tie-up could help Telstra sidestep spectrum limits

Digital Nation

IBM global chief data officer on the rise of the number crunchers
IBM global chief data officer on the rise of the number crunchers
COVER STORY: Operationalising net zero through the power of IoT
COVER STORY: Operationalising net zero through the power of IoT
Integrity, ethics and board decisions in the digital age
Integrity, ethics and board decisions in the digital age
The security threat of quantum computing
The security threat of quantum computing
Crypto experts optimistic about future of Bitcoin: Block
Crypto experts optimistic about future of Bitcoin: Block
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.