[Fwd: Sophos Anti-Virus IDE alert: W32/Bagle-HTML]

Dustin Baer dustin.baer at IHS.COM
Fri Mar 19 15:01:31 GMT 2004

Sophos is finding these port 81 attacks in the actual email, now.  We
have caught our first.


-------- Original Message --------
Subject: Sophos Anti-Virus IDE alert: W32/Bagle-HTML
Date: Fri, 19 Mar 2004 14:22:44 +0000 (GMT)
From: Sophos Alert System <notification-return at lists.sophos.com>
To: notification at lists.sophos.com

Name: W32/Bagle-HTML
Aliases: HTML_BAGLE.Q1
Type: Win32 worm
Date: 19 March 2004

A virus identity (IDE) file which provides protection is
available now from the Sophos website, and will be incorporated
into the May 2004 (3.81) release of Sophos Anti-Virus.

Enterprise Manager and PureMessage customers will be
automatically protected at their next scheduled update.

Sophos has received several reports of this worm from the wild.

Information about W32/Bagle-HTML can be found at:

Download the IDE file from:

Download all the IDE files available for the current version of
Sophos Anti-Virus in a single compressed file. The file is
available in two formats:

Zip file:

Self-extracting file:

Read about how to use IDE files at

To unsubscribe, email: notification-unsubscribe at lists.sophos.com
For additional commands, email: notification-faq at lists.sophos.com

More information about the MailScanner mailing list