The Bagle-A Worm spreads via infected email attachments. It is a mass-mailing worm and a trojan downloader. Bagle-A will not execute if the system date is later than 27th of January 2004.
REMOVAL INSTRUCTIONS:
- Run REGEDIT and delete the values:
- "frun"=dword:00000001
in registry key:
[HKEY_USERS\{current_user_ID}\Software\Windows98]
- "d3dupdate.exe"
in registry key:
[HKEY_USERS\{curent_user_id}\Software\Microsoft\Windows\CurrentVersion\Run]
- Run Vbuster.Exe and use it to delete all occurances of the worm