Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

W32/Bagle.g@MM

Feb 29, 2004 10:38AM PST

Virus Information
Discovery Date: 02/29/2004
Origin: Unknown
Length: Varies
Type: Virus
SubType: E-mail worm

This variant of W32/Bagle functions almost identically to the .F variant. There are two differences:

The executable has been repackaged
One of the processes the virus attempts to terminate has been altered
OUTPOST.EXE -> OUTPOS1T.EXE
Like its predecessors, this worm checks the system date. If it is the 25th March 2005 or later, the worm simply exits and does not propagate.

For all remaining details see the W32/Bagle.f@MM description
http://vil.nai.com/vil/content/v_101063.htm

Discussion is locked