The Web    www.100share.com    Google
 
Bagle Attack Picking up Speed
 

Bagle Attack Picking up Speed
March 2, 2005
The wave of Bagle worms that started slamming the Internet Monday night is picking up speed, according to one email security company.

Postini Inc., based in Redwood City, Calif., reports that its analysts are seeing 5 times the amount of Bagle traffic in the past 24 hours. The actual number of Bagle worms detected is up from approximately 60,000 to 325,000 instances per day.

The Trojan BagleDl-L appears to have been deliberately spammed out to email addresses around the world, according to analysts at Sophos, Inc., an anti-virus and anti-spam company with U.S. headquarters in Lynnfield, Mass. Most of the email samples seen so far include a ZIP attachment which, if opened, tries to connect to one of a number of Websites in order to download more malicious code.

So far, none of these Websites appeared to contain anything malicious.

The malware also goes after security software on the infected computers.

BagleDl-L tries to stop various security applications, such as anti-virus and firewall software. It renames files belonging to security applications, so they can no longer load. It also blocks access to a range of security-related Websites by changing the Windows HOSTS file.

''Any Trojan horse which turns off your anti-virus or firewall can open you up to further attack, even by very old viruses,'' says Graham Cluley, senior technology consultant for Sophos. ''My advice is to keep your anti-virus automatically updated and always be suspicious of unsolicited email attachments.''


 
  • 10/12: Forbot-BD Runs in Background
  • How Long Must You Wait for an Anti-Virus Fix?
  • 2/23: Anicmoo-B a Downloader Trojan
  • VeriSign Strengthens Secured Seal
  • Security Policies - Not Yet As Common As You'd Think
  • 2/14: Dopbot-A Worm A Acts as IRC Bot
  • 7/19: Rbot-DX Spreads to Remote Shares
  • PHP Zaps Security Leaks
  • Network Intelligence Upgrades Security Alert Manager
  • House Renews Anti-Spyware Push
  • 4/5: Bdoor-ZAT Trojan Opens Backdoor
  • Discussion on Security Camera