Lovgate and Bagle viruses
Lovgate and Bagle viruses
R E L A T E D   C O N T E N T
ADVERTISEMENT

Bagle and Lovgate variants pose new threat

Security experts increase risk assessment as latest worms begin to spread

Robert Jaques, vnunet.com 06 Jul 2004
ADVERTISEMENT

Security experts have increased the risk assessment on two new virus variants: W32/Bagle.ad@MM and W32/Lovgate.ad@MM.

McAfee's Avert antivirus division raised the risk assessment to medium on both of the recently found viruses as they begin to spread.

The latest Bagle mutant, W32/Bagle.ad@MM, also known as Bagle.ad, is a mass-mailing worm that is packed using the UPX executable packer and comes in the form of a password-protected Zip file, with the password included in the message body as plain text or within an image.

McAfee has received "numerous reports" of the virus being spotted or infecting users, with most of the reports arriving from Japan, Australia, Germany and the UK.

Avert also warned on the W32/Lovgate.ad@MM infection, a worm that spreads via vulnerable systems on the web or local area network as well as email, sending itself to addresses found on the victim's machine in the form of a .zip archive or as a .pif or .scr file. It can also exploit the MS03-026 Windows vulnerability.

The security firm said that it first saw the Lovgate variant yesterday but has already received more than 100 samples of infections, both from real customer submissions and virus-generated mail from customers in Japan, Europe and the US.

More information from Avert on the Bagle and Lovgate worms can be found here.

See also:

Bagle.bb joins war of the wormsMass-mailing worm spreading fast  29 Oct 2004
Bagle.aq alertExperts increase risk assessment on Bagle.aq as worm spreads rapidly  10 Aug 2004
Lovgate worm now 'medium' riskRisk assessment upgraded to medium for internet worm variant discovered yesterday  20 May 2004
SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004
Take cover - here comes another MyDoom/Netsky/Bagle variant ...  17 Mar 2004
virusNovel form of transmission makes recipients more likely to open it  25 Feb 2003

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Greythorn IT
Leading Mobile Network vendore is currently seeking a Process consultant for a positions based either in the Middle east or Africa. We are looking for around 10 years experience with at least 5 years business ... more >
| Greythorn IT
Tier 1 Network solutions provider is currently seeking an experienced Telecommunications sales manager to work in their Abu Dhabi office. There is a brilliant benefits package as well as an attractive salary available for the ... more >
| Greythorn IT
Leading network solutions provider in Egypt is currently seeking and experienced Egyptian Network Operation /Supervision Engineer. There are competitive packages and attractive benefits package on offer for the right candidate. You will be responsible to ... more >
| Greythorn IT
A leading network Solutions vendor is currently seeking an Egyptian national to act as a Service Assurance manager out of their Egyptian office. Ideally we are looking for someone with Vendor based experience however other ... more >
More job opportunities