Computer virus
Bagle now has more than 30,000 distinct variants
R E L A T E D   C O N T E N T
Jargon Buster

ADVERTISEMENT

Bagle still the malware boss

Three years on and email worm still going strong

Clement James, vnunet.com 09 Mar 2007
ADVERTISEMENT

Veteran malware Bagle continues to defeat most antivirus solutions almost three years on by using a cleverly devised distribution method, security experts warned this week.

The email worm has begun to use key offensive strategies to maximise propagation and slip under the radar of traditional antivirus defences, according to a report from security firm Commtouch.

Bagle, also known as Beagle, is one of the longest running examples of email-borne malware.

The worm has seen continued success from its high distribution intensity, releasing thousands of infected email messages a day to ensure a wide distribution of the malware across the internet.

Bagle also has a vast number of variants. Over 30,000 distinct variants were detected during the report period. 

As each variant, or group of variants, requires a different signature, it is virtually impossible for antivirus engines to keep up with this rapid-fire pace.

Moreover, each variant is distributed in very small quantities or instances. Since an antivirus vendor must be aware of a malware sample in order to analyse it, distribution in low numbers often enables Bagle to "fly below the radar" of traditional antivirus engines.

"The recent burst of 30,000 new distinct variants shows that Bagle has adopted the server-side polymorphic form and is sending intense waves of variants," said Haggai Carmon, vice president of products at Commtouch.

"Most email malware, including Bagle, has adopted this technique to penetrate traditional antivirus solutions by exploiting their signature time lag."


All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C#, GUI Developer – Fixed Income – Investment Bank. My client is seeking a strong C# ASP.Net developer to join their Fixed Income area and operate within one of the top tier investment banks in ... more >
| Computer People
Technical Project Manager / SDLC West London, £75k - (Software Development, SDLC), RUP Serious opportunity for hands on Technical Project Manager to join a leading blue chip organisation based in an easily accessible area of ... more >
| Computer People
C# Developer - Nottingham 4 Month Contract Market Rates I have an exciting opportunity for a C# ASP.NETDeveloper working for an established client within Computer People. Working from their offices in Nottingham you’ll be providing ... more >
| JAM Recruitment
Job Ref: AS/20356/TAX Package: c£60,000.00 + Bonus + Benefits Location: Middlesex Job type: International Assignment / Global Mobility / Expatriate Tax Manager Position type: Permanent Hours: Full-time Contact name: Andy Shaw Contact Company: JAM Mobility ... more >
More job opportunities