|
Subscribe
to Virus Alert |
W32/Bagle.F Worm
W32/Bagle.F is a mass mailing memory resident worm. The worm infects Windows systems and spreads through email. The worm contains its own SMTP engine to construct outgoing messages using a spoofed return address to several email addresses gathered from the infected system. The subject and body of the infected mail will be random. It carries an infected attachment with random filename with any one of the following extensions; .exe The attached file has a similar icon as a Windows folder This worm spreads by dropping infected files in folders that have the text string 'shar' in their file names. Upon execution, the worm drops the following files in the Windows system folder: go54o.exe The worm also alters the windows registry at the following location to load itself during next startup; HKEY_USERS\SOFTWARE\Microsoft\Windows\CurrentVersion\Run The worm creates the mutex, imain_mutex to ensure that only one instance of the worm is running in memory. This worm first appeared on 29th February,
2004. This Worm is also known as WORM_BAGLE.F,
W32/Bagle.f@MM, Bagle.F. Protector Plus for your operating system |
Proland Software is the developer of Protector Plus range of antivirus software packages. Protector Plus is available for Windows Vista, Windows 95/98/Me, Windows XP, Windows NT/2000/2003 servers and workstations, MS-Exchange 2000/2003, MS-DOS and NetWare servers.
![]() |
Protector Plus range of antivirus products
offer on-line virus detection and removal. All the packages have the ability
to detect and isolate all types of viruses, trojans, worms and other types
of malware. Protector Plus antivirus software can detect and remove W32/Bagle.F
worm reliably.
These products are updated on a continuous basis and the latest upgrades
for all the platforms are made available for downloading from this site.
|
You can download the 30 day evaluation
copy of the
antivirus software free of cost for these platforms:
![]()
![]()
![]()
![]()
![]()
![]()
![]()
Copyright ©
2007 Proland Sofrware. All rights reserved.