Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WORM_BAGLE.SS

BugsAlert Home > WORM_BAGLE.SS
 
 

This worm arrives as attachment to email messages spammed by another malware or a malicious user. It may be downloaded from remote sites by other malware. It may be dropped by other malware.

It drops copies of itself. It drops a file detected by Trend Micro as WORM_NUWAR.ACE.

It creates registry entries to enable its automatic execution at every system startup.

It creates registry key(s)/entry(ies).

It gathers target email addresses from files with certain file name extensions. It avoids sending email messages to addresses containing certain strings. It uses its own Simple Mail Transfer Protocol (SMTP) engine to send email messages with a copy of itself as attachment.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_BAGLE.SS

Learn more about WORM_BAGLE.SS
 
Tags: worm bagle.ss

Related Items

      BRIEFLY NATION - The Register-Guard

      MS08-033 ? Critical: Vulnerabilities in DirectX Could Allow Remote Code Execution (951698)

      Microsoft Security Advisory (956187): Increased Threat for DNS Spoofing Vulnerability

      FrSIRT - SuSE Security Update Fixes Multiple Code Execution Vulnerabilities

      FrSIRT - Gentoo Security Update Fixes WordNet Code Execution Vulnerabilities

      Linux Kernel "snd_seq_oss_synth_make_info()" Information Disclosure

      CVE-2007-6061 (audacity)

 

Pixel