foto.zip carries Worm_Bagle.AI

By Derek Sooman on September 1, 2004, 1:18 PM
There's been a recently spate of e-mails sent around, with the subject line of "foto" and carrying a file called foto.zip, which of course is malicious code. Its a zip file containing an HTML file, which when opened will drop downloader component on the victim's machine, which then attempts to connect to one of many web sites to download the worm portion. This new viruses has been named Worm_Bagle.AI. The web sites that carry the propagation code have fortunately been replete with problems, which have prevented infection from reaching the heights it could have. The virus is also known as Bagle.AV [Panda], Download.Ject.D [Symantec], W32/Bagle.dll.dr [McAfee], Troj/BagleDl-A [Sophos]. More on this here.

Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...
Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.