A new variant of the bagle worm has been propagated over the last few days
which works around common antivirus scanners.
The Bagle.bb uses a different version of a packer, to shrink the size of the
virus signature hence fooling antivirus programs.
The Bagle variants arrive in e-mail messages with forged source addresses and
vague subjects such as 'Re:Hello', 'Re: Thank you!' and 'Re: Hi'. Common
attachment names include 'Price' and 'Joke'.
Once downloaded Bagle begins a mass-mailing process harvesting all your contact
email addresses and emailing them using its own SMTP engine.
Protection
In order to protect yourself from the worm undertake the following steps:
- Update your antivirus software with the latest virus defintions
- Do not download attachments on emails with suspicous attchments or from
unknown sources
Removal
- If you think you may already have been infected with Bagle.bb download Mcafees
Stinger tool to detect and remove it. In order to run the Stinger you must click
here and
save or run the file to begin scanning your computer. Once downloaded click on
Scan Now to begin scanning.