Discovered: February 29, 2004
Updated: March 1, 2004 4:55:42 PM
Systems Affected: Windows 98, Windows 95, Windows XP, Windows Me, Windows NT, Windows 2000
W32.Beagle.G@mm is a persistent mass-mailing worm that sends itself to all email addresses it gathers from certain files on the compromised system. The worm also opens a backdoor on the system that listens on TCP port 2745. It includes its own SMTP engine in the form of a DLL injected into the address space of explorer.exe. The worm also sends identification information to remote servers, presumably under the control of the author. It is almost identical in functionality to W32.Beagle.F@mm.
Protection
-
Initial Rapid Release version pending
-
Latest Rapid Release version pending
-
Initial Daily Certified version pending
-
Latest Daily Certified version pending
-
Initial Weekly Certified release date pending
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.