The Web    Google
3/1: Bagle-BE Worm a 'Medium Risk Alert'

3/1: Bagle-BE Worm a 'Medium Risk Alert'
March 1, 2005

Security vendor Trend Micro has declared a medium risk alert to control the spread of Worm_Bagle.BE, which is spreading in New Zealand and Australia. This Bagle variant propagates by mass-mailing copies of its Trojan component, which Trend Micro detects as Troj_Bagle.BE. This Trojan in turn attempts to download a copy of this worm from several Web sites.

The email message it sends out contains the following details:


Message body: (any of the following)

  • price
  • new price

    Attachment: (any of the following)


    Note that the attached file is a .ZIP copy of Troj.Bagle.BE. It contains a file named DOC_01.EXE.

    Users are advised not to open, and possibly delete emails resembling the email described.

    Technical details can be found at Trend Micro page.

  • Microsoft Patches 'Critical' ASN.1 Vulnerability
  • Cisco Fixes a Pair of IOS Vulnerabilities
  • Interest In Intrusion Detection Boosts Security Spending
  • 9/9: Trojan.Riler Installs Itself As LSP
  • 4/22: Kelvir-R Trojan Hits IM Contacts
  • Deceptive Duo Hacker Changes Plea
  • 12/8: Rbot-RJ Worm Spreads to Shares
  • Secure Your Network Against Viruses, Spam
  • 5/6: Bakaver.A Infects Portable Drives
  • 9/22: Rbot-KJ Worm Has Backdoor
  • 1/3: Sdbot-SW Worm Hits Remote Shares
  • Computer security background information