TheAngel
W32.Beagle.B@mm is a mass-mailing worm that opens a backdoor on TCP port 8866. The worm uses its own SMTP engine for email propagation. It can also send the attacker the port on which the backdoor listens and a randomized ID number.

The email has the following characteristics:

From: <spoofed>
Subject: ID <random characters>... thanks
Attachment: <random characters>.exe

http://securityresponse.symantec.com/avcen...eagle.b@mm.html

and if u are infected
get this tool:
ftp://ftp.f-secure.com/anti-virus/tools/f-bagle.zip

found from here:
http://www.f-secure.com/v-descs/bagle_b.shtml
which has the follwing info about the worm:
F-Secure is upgrading Bagle.B worm to Level 1, as it keeps spreading rapidly. It arrives in email with random subject and attachment name with an EXE extension. The worm installs a backdoor that listens on port 8866.

Bagle.B worm has been programmed to stop spreading on February 25th.
BuzzDee
lets hope it can be exploitet like the mydoom worm tongue.gif biggrin.gif
sPiKie
If someone got the "virus" so I can infect my self, and test it.. Then I can make the same tool I made for the Mydoom virus, "what people like to call mydoom exploit:P" hehe, give me it !!!!
bambipower
QUOTE (sPiKie @ Feb 20 2004, 09:25 PM)
If someone got the "virus" so I can infect my self, and test it.. Then I can make the same tool I made for the Mydoom virus, "what people like to call mydoom exploit:P" hehe, give me it !!!!

lol i have a tip, just install Kazaa or something and i know you have the virus in a sec tongue.gif
equinox
lol only 4 days to get an exploit out, i dont think its gonna happen, would have been good if it didn't have a stop date sad.gif
Samkbc
I found out I had it, I guess my mom opened an attachement, I cleaned my system and its deleted but if you want I can get her to reinfect my comp tongue.gif it expires on the 14th
manu
Well, had downloaded one REMOVAL TOOL from NORTON.... Got fu**ked with it, It says that my computer is not infected... Damn it.. Well, it was affected and my FREE AV, AVG Antivirus has found it... Well, went to their site and downloaded AVG's removal tool and worked great.... What is happening at Norton... I had downloaded the correct removal tool, no doubt, but didnt work properly... So, guys dont believe AV or RT always...

Good luck
Manu biggrin.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.