Click here

Articles by eSecurityPlanet.com Staff 

8/31: Dasher.G Worm Exploits Windows Server Flaw

W32.Dasher.G is a network-aware worm that exploits the Microsoft Windows Server Service Remote Buffer Overflow Vulnerability (as described in Microsoft Security Bulletin MS06-040) and downloads a remote file.

8/31: Dowdec.C Trojan Sends Trick Email

Troj_Dowdec.C is a Trojan that may be downloaded from the Internet.

8/31: DwnLdr-FFO a Downloader Trojan

Troj/DwnLdr-FFO is a downloader Trojan for the Windows platform.

8/31: Bustoy Worm Copies File to Removable Disks

W32.Bustoy is a worm that copies itself and a .ini file to removable disks.

8/31: Blackurs Macro Virus Disables Security Settings

W97M.Blackurs is a macro virus that infects documents and disables the macro security settings of Microsoft Word.

8/31: PWS-Goldun Trojan Arrives as Fake Email

PWS-Goldun is a Trojan that arrives in an email claiming to be a tracking order for an iPod that was ordered online.

8/31: Bancos-AUP a Password-Stealing Trojan

Troj/Bancos-AUP is a password-stealing Trojan aimed at customers of Brazilian banks.

8/31: Looked-L Virus Targets Windows

W32/Looked-L is a virus for the Windows platform.

8/30: Mdropper.P Trojan Drops Other Threat

Trojan.Mdropper.P is a Trojan horse that drops another threat on the compromised computer.

8/30: Smdldr-n Trojan May Download, Execute Code

Troj/SmDldr-N is a downloading Trojan for the Windows platform.

8/30: Haxdoor.IL Backdoor Gives Malicious User Access

Bkdr_Haxdoor.IL is a backdoor that arrives on a system either downloaded from the Internet or dropped by other malware programs.

8/30: Gobrena.V Trojan Executes Malicious File

Trend Micro has received reports about Troj_Gobrena.V being spammed in the wild.

8/30: Mdropper.AZ Trojan Arrives in Spammed Email

Trend Micro has received reports about Troj_Mdropper.AZ being in the wild.

8/30: Mdropper.BP Trojan Arrives as Downloaded File

Trend Micro has received reports about Troj_Mdropper.BP being in the wild.

8/30: Stration!gen a Generic Detection for Worm Family

W32.Stration!gen is a generic detection that detects variants of W32.Stration family of mass-mailing worms.

8/30: Womble-B Worm Sends Itself as Attachment

W32/Womble-B is a mass-mailing worm for the Windows platform.

8/30: Tilebot-GM Worm also a Backdoor Trojan

W32/Tilebot-GM is a worm and IRC backdoor Trojan for the Windows platform.

8/30: GWGhost-BH Trojan Targets Windows

Troj/GWGhost-BH is a Trojan for the Windows platform.

8/30: Dloadr-YT a Downloading Trojan

Troj/Dloadr-YT is a downloading Trojan for the Windows platform.

8/30: SmDldr-L Trojan May Download, Execute Code

Troj/SmDldr-L is a downloader Trojan for the Windows platform.

8/29: Clagge.B Trojan Downloads Other Trojan

Clagge.B is a Trojan that downloads Trj/Banker.CZI from a certain website to the affected computer.

8/29: Zapchas-CE an mIRC-Based Backdoor Trojan

Troj/Zapchas-CE is a mIRC-based backdoor Trojan.

8/29: Sdbot-COL Worm and Trojan Targets Weak Passwords

W32/Sdbot-COL is a worm and IRC backdoor Trojan for the Windows platform.

8/29: Dowdec.B Trojan May be Downloaded, Dropped

Troj_Dowdec.B is a Trojan that may be downloaded from the Internet.

8/29: Stration.BH Worm Spreads by Using Own Engine

Worm_Stration.BH propagates by attaching copies of itself to email messages that it sends to target addresses, using its own Simple Mail Transfer Protocol (SMTP) engine.

8/29: Woredbot Worm Has Backdoor Capabilities

W32.Woredbot is a network-aware worm with back door capabilities.

8/29: Agentdoc.D Trojan Logs Keystrokes

Trojan.Agentdoc.D is a Trojan horse that logs keystrokes and has rootkit functionality.

8/29: Schoeberl.C Trojan Lowers Security Settings

Trojan.Schoeberl.C is a Trojan horse that lowers security settings so that a further threat can be downloaded onto the compromised computer.

8/29: ZCodec Adware Program Pretends to be Video Codec

ZCodec is an adware program that passes itself off as a video codec.

8/29: Vanebot-G Worm Exploits Flaws

W32/Vanebot-G is a worm for the Windows platform.

8/29: MLI a Backdoor Trojan

Troj/Bckdr-MLI is a backdoor Trojan for the Windows platform.

8/29: Torpig-BH Trojan Targets Windows

Troj/Torpig-BH is a Trojan for the Windows platform.

8/29: Banker-DIX an Internet Banking Trojan

Troj/Banker-DIX is an internet banking Trojan for the Windows Platform.

8/29: Clagger-AB a Downloader Trojan

Troj/Clagger-AB is a downloader Trojan for the Windows platform.

8/28: Tilebot-GL Worm Exploits Multiple Flaws

W32/Tilebot-GL is a worm for the Windows platform.

8/28: Tilebot-GK Worm Targets Weak Passwords

W32/Tilebot-GK is a worm for the Windows platform.

8/28: Vanebot-F Trojan Spreads Multiple Ways

W32/Vanebot-F is a Trojan for the Windows platform.

8/29: Womble.A Worm Exploits Remote Flaw

W32.Womble.A@mm is a network aware worm that exploits a remote vulnerability and downloads another threat.

8/28: Stration.C Worm Gathers Email Addresses

W32.Stration.C@mm is a mass-mailing worm that gathers email addresses from the compromised computer.

8/28: Stration Worm Uses Own SMTP Engine

W32/Stration@MM is a mass mailing worm that uses its own SMTP engine to send itself to the email addresses that it harvests on the infected computer.

8/28: WowPWS-O a Password-Stealing Trojan

Troj/WowPWS-O is a password-stealing Trojan for the Windows platform.

8/28: Rbot-FLL Worm and Trojan Exploits Flaws

W32/Rbot-FLL is a worm and IRC backdoor Trojan for the Windows platform.

8/28: Stration-G Worm Arrives as Email Attachment

W32/Stration-G is a mass-mailing worm for the Windows platform.

8/28: Stration-I a Mass-Mailing Worm and Trojan

W32/Stration-I is a mass-mailing worm and backdoor Trojan for the Windows platform.

8/25: Mdropper.O Trojan Exploits Word Flaw

Trojan.Mdropper.O is a Trojan horse that may exploit an unverified vulernability affecting Microsoft Word to drop an executable file.

8/25: Bancos-AUN a Password-Stealing Trojan

Troj/Bancos-AUN is a password stealing Trojan for the Windows platform.

8/25: Stration.F Worm Spreads Via Email Attachment

Worm_Stration.F is a memory-resident worm that may propagate by sending a copy of itself as an attachment to email messages, which it sends to target addresses obtained from the Windows Address Book (WAB).

8/25: Feebs-BE a Mass-Mailing, Network Worm

W32/Feebs-BE is a mass-mailing and network worm for the Windows platform.

8/25: Vanebot-C Worm Exploits Buffer Overflow Flaws

W32/Vanebot-C is a worm for the Windows platform.

8/25: Alcra-E Worm May Arrive as Media Player File

W32/Alcra-E is a worm for the Windows platform which may arrive disguised as a Windows Media Player file.

8/25: Smoodo-B Trojan Targets Windows

Troj/Smoodo-B is a Trojan for the Windows platform.

8/24: Trojan.Linkoptimizer Uses Stealthing Techniques

Trojan.Linkoptimizer is a detection for a family of Trojan horse programs that use stealthing techniques to hide their presence.

8/24: Clagger-E Trojan Executes PayPal Scam

Trend Micro has received reports of a PayPal scam by Troj_Clagger.E.

8/24: Rungbu Virus Replaces Word Files

W32.Rungbu is a virus that replaces Word document files with a copy of the virus.

8/24: Backdoor.Lassrv.B Trojan Has Infostealing Abilities

Backdoor.Lassrv.B is a Trojan horse with infostealing abilities that opens a back door on the compromised computer.

8/24: BackDoor-DJD Trojan Give Intruder Access

BackDoor-DJD is a Trojan that provides remote access capabilities to an attacker; allowing them to control an infected system over the internet.

8/24: Spybot-Agent.bg Trojan Captures Information

Spybot-Agent.bg is a Trojan designed to capture information from the victim machine and send them to the remote site.

8/24: Rbot-FRT Worm and Backdoor Exploits Flaws

W32/Rbot-FKT is a worm and backdoor for the Windows platform.

8/24: Stration-E a Mass-Mailing Worm and Trojan

W32/Stration-E is a mass-mailing worm and backdoor Trojan for the Windows platform.

8/24: Loot-BF Trojan Used to Send Spam Emails

Troj/Loot-BF is a Trojan for the Windows platform.

8/24: DwnLdr-FDT Trojan Installs, Runs New Software

Troj/DwnLdr-FDT is a Trojan for the Windows platform.

8/23: Randex.AM Worm Spreads Via Networks

Worm_Randex.AM propagates via networks by dropping copies of itself in shared folders.

8/23: Sdbot-BAY Worm and Trojan Contacts Server

W32/Sdbot-BAY is a worm and IRC backdoor Trojan for the Windows platform.

8/23: Eliles.A Worm Ends AntiVirus Processes

Eliles.A is a worm that ends processes belonging to several antivirus programs.

8/23: Small.CML Trojan Arrives as Attachment

Troj_Small.CML is a Trojan that arrives as an attachment to spammed email messages.

8/23: Rahack.H Worm Spreads Via Radmin Software

W32.Rahack.H is a polymorphic worm that spreads to computers running Radmin software by exploiting weak passwords to connect to the Radmin server.

8/23: Downloader.KCC Trojan Drops Other Trojan

Downloader.KCC is a Trojan that downloads Trj/Spyforms.A to the affected computer from a certain website.

8/23: Downloader-AYB Installed by PP Document

Downloader-AYB serves as a downloading/ updating component for other malicious files.

8/23: Rbot-FKQ Worm and Trojan Targets Weak Shares

W32/Rbot-FKQ is a worm and IRC backdoor Trojan for the Windows platform.

8/23: Flecsip-K a Backdoor Windows Trojan

Troj/Flecsip-K is a backdoor Trojan for the Windows platform.

8/23: Dloadr-AMA a Downloader Windows Trojan

Troj/DLoadr-AMA is a downloader Trojan for the Windows platform.

8/23: Rbot-FKR Worm and Trojan Exploits Flaws

W32/Rbot-FKR is a worm and IRC backdoor Trojan for the Windows platform.

8/22: Elisea.A Worm Ends Antivirus Processes

Elisea.A is a worm that ends processes belonging to several antivirus programs.

8/22: Rbot-FKM Worm and Trojan Gives Intruder Access

W32/Rbot-FKM is a worm and IRC backdoor Trojan for the Windows platform.

8/22: Kassbot-V Worm and Trojan Exploits Flaws

W32/Kassbot-V is a worm and IRC backdoor Trojan for the Windows platform.

8/22: Branban-C an IM Worm Targeting Windows

W32/Braban-C is an Instant Messaging worm for the Windows platform.

8/22: Cosiam-L Trojan Gives Intruder Remote Access

Troj/Cosiam-L is a backdoor Trojan that allows a remote intruder to gain access and control over the computer.

8/22: Spybot.AKKC Worm Performs DDoS Attacks

W32.Spybot.AKKC is a network-aware worm that opens a back door on the compromised computer and may perform denial of service attacks on third parties.

8/22: Small-COA a Windows Downloader Trojan

Troj/Small-COA is a downloader Trojan for the Windows platform.

8/22: Stration-D Worm and Trojan Mails Itself

W32/Stration-D is a mass-mailing worm and backdoor Trojan for the Windows platform.

8/22: Opnis-C a Windows Trojan

Troj/Opnis-C is a Trojan for the Windows platform.

8/22: Zlob-RF Trojan Targets Windows

Troj/Zlob-RF is a Trojan for the Windows platform.

8/21: Banload.BBE Trojan May Arrive as Spam Mail

Troj_Banload.BBE is a Trojan that may arrive on a system as a file attached to a spammed email message, or downloaded by an unsuspecting user when visiting malicious Web sites.

8/21: Sdbot-DTO Worm and Trojan Exploits Flaws

W32/Sdbot-DTO is a worm and backdoor Trojan for the Windows platform.

8/21: Zapchas-BX Backdoor Trojan Continues to Flourish

For the third time this month, security vendor Sophos has issued an alert for Troj/Zapchas-BX, an mIRC-based backdoor Trojan for the Windows platform.

8/21: Small.CPM Trojan Connects to URL

Troj_Small.CPM is a Trojan that may be downloaded from the Internet.

8/21: Small.CPN Trojan Arrives as Attachment, Download

Troj_Small.CPN is a Trojan that arrives as a file downloaded from the Internet by an unsuspecting user when visiting malicious Web sites.

8/21: Small.CJV Trojan May Be Downloaded, Dropped

Troj_Small.CJV is a Trojan that may be downloaded from the Internet. It may also be dropped by another malware.

8/21: Bakloma Trojan Steals Information

Trojan.Bakloma is a Trojan horse that steals information from the compromised computer.

8/21: Vanebot-A Worm and Trojan Exploits Flaws

W32/Vanebot-A is a worm and IRC backdoor Trojan for the Windows platform.

8/21: Cosiam-K Trojan Targets Windows

Troj/Cosiam-K is a Trojan for the Windows platform.

8/21: Stration-B Worm and Backdoor Arrives as Attachment

Some security vendors have issued alerts for W32/Stration-B, a mass-mailing worm and backdoor Trojan for the Windows platform.

8/21: Keylog-HD Trojan Contacts Remote Server

Troj/Keylog-HD is a Trojan for the Windows platform.

8/18: Exploit-OLEModule Exploits VB Flaw

Exploit-OleModule is a generic detection for threats attempting to exploit a vulnerability in Visual Basic for Applications (VBA).

8/18: Rbot-EWD Worm and Trojan Exploits Flaws

W32/Rbot-EWD is a network worm and backdoor Trojan for the Windows platform.

8/18: Zlobec-Gen a Family of Windows Trojans

Troj/Zlobec-Gen is a family of Trojans for the Windows platform.

8/18: DNSBust-N Trojan Contacts Remote Server

Troj/DNSBust-N is a Trojan for the Windows platform.

8/18: Worm_Stration.A Sends Itself as Email Attachment

For the second time this month, Trend Micro is reporting receiving reports about Worm_Stration.A propagating in the wild.

8/18: Looked-I a Windows Executable Virus and Worm

W32/Looked-I is a Windows executable virus and network worm.

8/18: Zlob-CN Trojan Changes IE Search Settings

Troj/Zlob-CN is a Trojan for the Windows platform.