OneCare labels Gmail a virus

Posted by   Virus Bulletin on   Nov 13, 2006

Rival webmail system flagged infected by Microsoft AV.

A number of users of Microsoft's anti-virus product Windows Live OneCare have reported being warned of a virus infection when trying to check their email on Google's Gmail webmail service. The warnings seem to coincide with installation of the recently released, updated web browser Internet Explorer 7.

Numerous posts on both OneCare and Gmail forums have reported sightings of the warning over the weekend, which appears to occur only after upgrading to the new web browser. The infection is labelled 'Bat/BWG.A', but little further information is available from either Google or Microsoft regarding the cause of the issue. One Gmail user was apparently instructed to delete all his archived mail by a OneCare support technician, while others have been advised to clear their web caches, to little effect. Many have suggested a false positive from the Microsoft product, while others have assumed the detection is an attempt to block access to rival services.

Some forum postings can be viewed at Microsoft's OneCare help centre or at the Gmail problem forum. Very little information on the Bat/BWG.A virus is available at Microsoft's threat centre, here, although a similarly named email worm is described by Trend Micro, here.

Posted on 13 November 2006 by Virus Bulletin




Latest posts:

VBSpam tests to be executed under the AMTSO framework

VB is excited to announce that, starting from the Q3 test, all VBSpam tests of email security products will be executed under the AMTSO framework.

In memoriam: Prof. Ross Anderson

We were very sorry to learn of the passing of Professor Ross Anderson a few days ago.

In memoriam: Dr Alan Solomon

We were very sorry to learn of the passing of industry pioneer Dr Alan Solomon earlier this week.

New paper: Nexus Android banking botnet – compromising C&C panels and dissecting mobile AppInjects

In a new paper, researchers Aditya K Sood and Rohit Bansal provide details of a security vulnerability in the Nexus Android botnet C&C panel that was exploited in order to gather threat intelligence, and present a model of mobile AppInjects.

New paper: Collector-stealer: a Russian origin credential and information extractor

In a new paper, F5 researchers Aditya K Sood and Rohit Chaturvedi present a 360 analysis of Collector-stealer, a Russian-origin credential and information extractor.

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.