06 Mar 2006 | By Kristopher | Posted under Worms | No Comments »

W32.Bagle.gen is a mass-mailing worm that may automatically connect to various web sites and sends your computer’s information to them. W32.Bagle.gen may also download Block_list.txt from the sites it visits and drop this file under your system folder. When W32.Bagle.gen installs Block_list.txt, this may disable your Windows Firewall if you have an Winxp-Sp2 machine. W32.Bagle.gen spreads itself as an email attachment that uses common first names as the file’s name. The name of the attachment infected with W32.Bagle.gen may be:

Edmund.zip
Elizabeth.zip
Fraunces.zip
Grace.zip
Henrie.zip
Jeames.zip

Keep reading »