New Improved Windows Bagle Worm Win32.Glieder!
- 0
- Add a Comment
Not content to just do its normal wormly dirty work, a new variation on the infamous Bagle worm, Win32.Glieder, brings with it two companion Trojans, Win32.Fantibag and Win32.Mitglieder (literally, in German, “with Glieder”).
Said Chris Thomas, a security architect with Computer Associates, “We’ve seen blended threats before where a virus uses several methods to spread, but not like this.”‘
In fact, this version of Bagle is so different that it warranted a brand new name of its own, the “Glieder” designation.
Win32.Glieder starts out like any other worm - mass-emailing itself to everyone on its host’s address book list. But then the tagalong Trojan Win32.Fantibag disables the host computer’s antivirus software update mechanism, and second tagalong Trojan, Win32.Mitglieder, disables any firewalls and…
