Ok...This is it.
W32/Bagle worms typically harvest email addresses from various files on the system with extensions such as:
WAB, TXT, MSG, HTM, SHTM, STM, XML, DBX, MBX, MDX, EML, NCH, MMF, ODS, CFG, ASP, PHP, PL, WSH, ADB, TBB, SHT, XLS, OFT, UIN, CGI, MHT, DHTM, JSP.
W32/Bagle worms use their own internal SMTP engine to spread and can fake the address of the sender.
W32/Bagle worms may attempt to disable various security related products by removing their registry run entries.
I know it's not from me because my hubby is in my address book and he hasn't had it!
