This new variant has the same functionalities as the .c variant. It uses different file names to write to the local machine. The file size is different.
This is a mass-mailing worm with the following characteristics:
contains its own SMTP engine to construct outgoing messages
harvests email addresses from the victim machine
the From: address of messages is spoofed
contains a remote access component (notification is sent to hacker)
there is also a w32/beagle.c and a beagle.e




Reply With Quote