Email this page Print this page Give us your feedback
Panda Security » Enterprises » Security Information » Encyclopedia: virus, worms, adware ...

Encyclopedia

Panda Internet Security 2010

Panda Internet Security 2010

Full protectión for complete peace of mind on the Internet.

Bagle.D

 
Threat LevelModerate threatDamageHighDistributionNot widespread
Common name:Bagle.D
Technical name:W32/Bagle.D.worm
Threat level:Medium
Type:Worm
Effects:  

It creates a backdoor that opens TCP port 2745 and notifies its author that the affected computer is reachable through it. It stops functioning after March 14, 2004.

Affected platforms:

Windows 2003/XP/2000/NT/ME/98/95

Detection updated on:April 15, 2004
StatisticsNo
Yes, using TruPrevent Technologies
Repair utility: Panda QuickRemover

Brief Description 

    

Bagle.D is a worm that spreads via e-mail in a message with variable characteristics, and an attached file that has the same icon as an Excel spreadsheet.

Bagle.D contains a backdoor, which opens the TCP port 2745. It attempts to connect to several web pages that host a PHP script. By doing this, Bagle.D notifies its author that the affected computer can be accessed through the port mentioned above.

In addition, Bagle.D ends the processes belonging to several antivirus update applications.

This worm only runs if the system date is March 14, 2004 or previous. After this date, Bagle.D stops functioning.

Visible Symptoms 

    

Bagle.D is easy to recognize once it has affected the computer, as it opens Notepad the first time it is run.

In addition, it reaches the computer in an attached file that has the same icon as an Excel spreadsheet.

Last updated:  15/04/2004 

Virus News

Help other users against viruses and share this information. Cheers.

Enciclopedia de Virus y Antivirus - PANDA SECURITY - Compartelo/Favoritos

Over 13 million users in 190 countries and 31,901 cities affected by the Maripos...

Panda Security and Defence Intelligence Coordinate Massive Botnet Shutdown with ...

New FTLog.A worm spreads through Fotolog social networking website, reports Pand...

[+ News]