Yet another variant of the Bagle virus, this time with a twist.

ZIP files are a well-known way of getting past the "executable" stripped on firewalls. Bagle.I appears to take this one step further by randomly encrypting the ZIP file to thwart perimeter scanners, making it much harder to create a virus signature.

In addition, it does the usual stuff, backdooring port 2745, harvesting email addresses etc.

http://www3.ca.com/virusinfo/virus.aspx?ID=38462