W32/Bagle.g@MM

Discussion in 'malware problems & news' started by Marianna, Feb 29, 2004.

Thread Status:
Not open for further replies.
  1. Marianna

    Marianna Spyware Fighter

    Joined:
    Apr 23, 2002
    Posts:
    1,215
    Location:
    B.C. Canada
    Virus Information
    Discovery Date: 02/29/2004
    Origin: Unknown
    Length: Varies
    Type: Virus
    SubType: E-mail worm

    This variant of W32/Bagle functions almost identically to the .F variant. There are two differences:

    The executable has been repackaged
    One of the processes the virus attempts to terminate has been altered
    OUTPOST.EXE -> OUTPOS1T.EXE
    Like its predecessors, this worm checks the system date. If it is the 25th March 2005 or later, the worm simply exits and does not propagate.

    For all remaining details see the W32/Bagle.f@MM description

    http://vil.nai.com/vil/content/v_101063.htm
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.