Bagle BM mutant strikes
Bagle BM mutant strikes

Fourth Bagle variant spotted today

Security firm predicts new wave of virus attacks

Written by Steve Ranger

Yet another version of the Bagle virus has been spotted in the wild, bringing the number of variants discovered today to four and prompting security experts to warn that this could mark the start of a serious wave of virus attacks.

Grisoft, makers of the popular AVG Anti-Virus products, confirmed that its labs had detected Bagle.BM, joining other variants BB, BD and BE reported earlier today.

Bagle.BM is a 34KB Windows executable file. It is attached to messages which come with an empty subject line. The body contains the words 'new price' or just 'price'.

When a user opens the attachment it activates the worm, which copies itself to the Windows system directory and registers this file in the system registry.

Bagle.BM also terminates processes designed to protect the machine and the local network. This leaves the infected PC vulnerable to further attacks by malicious code, Grisoft warned.

"The Bagle BM variant is one of several new strains seen by our labs this morning," said Michael Foreman, partner at AVG UK.

"With several months since the last major outbreak, it looks like we may be entering a new period of increased virus activity.

"We are seeing an increase in the amount of malware sent by spammers. It has become the preferred method for expanding their network of infected machines used to deliver spam messages."

Tags:

Further reading

Virus authors form unholy alliance

Bagle, Zafi and Netsky coders thought to be working together   More...

Bagle.dldr Trojan runs riot

Security firm ups risk assessment as virus onslaught gathers pace   More...

Zafi-D and Netsky top virus charts

But Bagle and Sober will be the ones to watch   More...

Three more Bagle variants on the loose

Latest mutations disable antivirus and security tools   More...

Related articles

No love lost as Valentine worms spread

Security firms warn of new malware targeting the gullible   More...

Spammers announce World War III

Latest scam offers 'video' of US troops invading Iran   More...

Cyber-criminals move with the times

Adware giving way to more serious threats   More...

Storm malware still blowing strong

One year on and no sign of fading away   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

22 Jul 2008

3.22 MBSat-nav crashes, open source security and female gamers More...

21 Jul 2008

3.12 MBGlobal internet reach, online spending and the space race More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Security

Major DNS flaw revealed

Experts sound alarms over early disclosure   More...

Nintendo DS

Dodgy Chinese Nintendo chargers recalled

Experience could shock some users   More...

Advertisement

Houses of Parliament

Official 'spying' requests top 500,000

Information includes web records and itemised phone bills   More...

Hacking

Small firms naïve about security

SMBs remain prone to attack, says study   More...

Advertisement