I submitted a copy to both McAfee and TrendMicro; McAfee already detects it
as W32/Bagle.aq

http://isc.sans.org/

Each copy I received had no subject line, and one word in the visible body
text, "price".

The virus was in a zip file, called price_new.zip and contained an HTML file
called price.html which contained hostile jscript to run the hidden
executable, price.exe 

McAfee detects the HTML file as JS/IllWill and the executable as
W32/Bagle.dll.dr but only the very latest .DAT file.

Andrew 8)
---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.JunkMail mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail".  The archives can be found
at http://www.mail-archive.com.

Reply via email to