Click here

Articles by eSecurityPlanet.com Staff 

Authorization and Single Sign-on Products

Products for networks, portals, Web sites, databases, applications, etc.

11/30: Bckdr-PQP a Backdoor Trojan

Troj/Bckdr-PQP is a backdoor Trojan for the Windows platform.

11/30: Clagge.AA Trojan Drops Non-Malicious File

Troj_Clagge.AA is a Trojan that may arrive on a system as an attachment to a spammed email message.

11/30: Strat.HA Trojan Arrives as Email Attachment

Troj_Strat.HA is a Trojan that arrives on a system as an attachment to an email message mass-mailed by WORM_STRAT.GT.

11/30: tnegA.A Backdoor Prevents Users from Accessing Sites

tnegA.A is a backdoor that attempts to connect to a certain server, in order to gain remote access to the affected computer and take action that compromises user confidentiality.

11/30: Sohana-B Worm Spreads Via IM Clients

W32/Sohana-B is a worm for the Windows platform.

11/30: Newurg-A Worm Contacts Remote Server

W32/Newurg-A is a worm for the Windows platform.

11/30: Stratio-CF Worm Creates File in Windows Folder

W32/Stratio-CF is a worm for the Windows platform.

11/30: StartP-BDA Trojan Downloads, Runs New Software

For at least the second time this month, security vendor Sophos has issued an alert for Troj/StartP-BDA, a Trojan for the Windows platform.

Application-level Security Products

A list of vendors, along with URLs and brief product descriptions.

11/30: Paproxy-D Trojan Contacts Remote Server

Troj/Paproxy-D is a Trojan for the Windows platform.

11/30: Dref-Q a Mass-Mailing Worm

W32/Dref-Q is a mass-mailing worm for the Windows platform.

11/30: Dloadr-AQS a Downloader Trojan

Troj/Dloadr-AQS is a downloader Trojan for the Windows platform.

Security Service Providers

Assessments, penetration testing, consulting, incident response, managed VPNs and more.

Resources

Security sites, newsletters and assorted resources.

11/29: Nuwar.PO Worm Uses Own Engine to Send Mail

Worm_Nuwar.PO spreads copies of itself as an attachment to an email message, which it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

11/29: IrcBot.AIV Worm Receives Remote Control Commands

IrcBot.AIV is a worm that connects to several IRC servers in order to receive remote control commands, acting as a backdoor.

11/29: Rjump-H Worm Copies Itself to Mapped Drives

W32/RJump-H is a worm for the Windows platform.

11/29: Looked.BK Virus Spreads by Infecting Exe Files

W32.Looked.BK is a virus that spreads by infecting executable files.

11/29: Fujacks.A Worm Uses Weak Passwords to Spread

W32.Fujacks.A is a worm that spreads through network shares protected by weak passwords.

11/29: Mytob-IF Worm and Trojan Receives Remote Commands

W32/Mytob-IF is a worm and IRC backdoor Trojan for the Windows platform.

11/29: Looked-BA Virus Infects Exe Files

W32/Looked-BA is a virus.

11/29: Zlob-WT a Downloader Trojan

Troj/Zlob-WT is a downloader Trojan for the Windows platform.

11/28: Clagger-AN a Downloading Trojan

For the second time this month, security vendor Sophos has issued an alert for Troj/Clagger-AN, a downloading Trojan for the Windows platform.

11/28: Stration-CD a Mass-Mailing Worm

W32/Stration-CD is a mass-mailing worm for the Windows platform.

11/28: Spybot.ACYR Worm Spreads Via mIRC

W32.Spybot.ACYR is a worm that spreads through mIRC and to network shares protected by weak passwords.

11/28: Banker.FLO Trojan Monitors Internet Traffic

Banker.FLO is a Trojan that monitors Internet traffic generated when the user accesses web pages related to certain online banking entities: Banco do Brasil, Bradesco, Itau and Santander Banespa.

11/28: Stration-AJ Worm Downloads, Runs Software

For at least the second time this month, security vendor Sophos has issued an alert for W32/Stration-AJ, a worm for the Windows platform.

11/28: Spake-A Trojan Contacts Remote Server

Troj/Spake-A is a Trojan for the Windows platform.

11/28: Agent-DSF Trojan Contacts Remote Server

Troj/Agent-DSF is a Trojan for the Windows platform.

11/28: Dloadr-AQN Trojan Downloads, Runs New Software

Troj/Dloadr-AQN is a Trojan for the Windows platform.

11/28: Zlob-WQ Trojan Contacts Remote Server

Troj/Zlob-WQ is a Trojan for the Windows platform.

11/27: Strat.GT Trojan Arrives as Email Attachment

Troj_Strat.GT is a Trojan that arrives as an attachment to email messages mass-mailed by the malware detected by Trend Micro as WORM_STRAT.GT.

11/27: Strat.GT Worm Mass-Mails Copies of Trojan

Worm_Strat.GT propagates by mass-mailing copies of TROJ_STRAT.GT to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

11/27: Nebuler-N Trojan Targets Windows

Troj/Nebuler-N is a Trojan for the Windows platform.

11/27: Rbot-FWY Worm Exploits Buffer Overflow Flaws

W32/Rbot-FWY is a worm for the Windows platform that includes IRC Backdoor functionality.

11/27: NtRootK-AX Trojan Installs Two Drivers

Troj/NtRootK-AX is a backdoor Trojan with rootkit functionality.

11/22: Strat.GN Part of Infectious Trojan-Worm Partnership

Troj_Strat.GN is part of a Trojan-worm partnership that creates a vicious infection cycle.

11/22: Looked-A a Windows Executable Virus and Worm

W32/Looked-A is a Windows executable virus and network worm.

11/22: Looked-AY Virus and Worm Spreads to Network Systems

W32/Looked-AY is a virus and worm for the Windows platform.

11/22: Dloadr-AQK a Downloading Trojan

Troj/Dloadr-AQK is a downloading Trojan for the Windows platform.

11/21: Banload.BHP Trojan May Arrive as Spam Attachment

Troj_Banload.BHP is a Trojan that may arrive on a system as a file attached to a spammed email message, dropped by other malware, or downloaded by an unsuspecting user when visiting malicious Web sites.

11/21: Vixup-BZ Trojan Targets Windows

Troj/Vixup-BZ is a Trojan for the Windows platform.

11/22: QQRob-ABA Trojan Targets Windows

Troj/QQRob-ABA is a Trojan for the Windows platform.

11/21: Pardona.A Worm Gathers Email Addresses

W32.Pardona.A@mm is a mass-mailing worm that gathers email addresses from the compromised computer.

11/21: Backdoor.Singu.C Trojan Opens Back Door

Backdoor.Singu.C is a Trojan horse that opens a back door on the compromised computer.

11/21: Banker.FJI Trojan Displays Fake Login Screens

Banker.FJI is a Trojan that displays fake login screens when the user accesses the online banking entities Banco do Brasil, Brad. Juridico, Bradesco, CEF, GERENCIADOR or Itau.

11/21: Clagger-AK Trojan Downloads, Runs New Software

Troj/Clagger-AK is a Trojan for the Windows platform.

11/21: Pardona-B Virus Continues Wreaking Havoc on Files

For the second time this month, security vendor Sophos has issued an alert for W32/Pardona-B, a virus for the Windows platform.

11/21: Looked-AX Virus Gives Intruder Remote Access

W32/Looked-AX is a virus that can also spread via network shares.

11/21: Stration-AJ Worm Downloads, Runs New Software

W32/Stration-AJ is a worm for the Windows platform.

1/20: HLLP.Philis.Br a File-Infecting Virus

W32/HLLP.Philis.br is a file infecting virus.

11/20: Strat.GG Trojan Creates Vicious Infection Cycle

Troj_Strat.GG Trojan is part of a Trojan-worm partnership that creates a vicious infection cycle.

11/20: Strat.GG Worm Uses Other Malware to Spread

Worm_Strat.GG is a worm that attains its full propagation potential by employing another malware, specifically TROJ_STRAT.GG.

11/20: Mixor.I Worm Disables Security Programs

W32.Mixor.I@mm is a mass-mailing worm that also disables security related programs.

11/20: Stration.EC Worm Downloads Files from Internet

W32.Stration.EC@mm is a mass-mailing worm that attempts to download files from the Internet.

11/20: Rbot-FWM Worm has IRC Backdoor Functions

W32/Rbot-FWM is a worm with IRC backdoor functionality for the Windows platform.

11/20: VB-CRJ Trojan Targets Windows

Troj/VB-CRJ is a Trojan for the Windows platform.

Intrusion Detection Vendors

For protection against known and unknown threats.

11/17: USBAgent Virus Copies Itself to Floppys, Flash Drives

W32/USBAgent is a virus that copies itself into floppy drives and flash drives.

11/17: Realor.A Worm Targets Real Media Player Files

Worm_Realor.A employs a unique way of affecting systems.

11/17: Sality.V!inf Detects Files Infected by Sality.V Virus

W32.Sality.V!inf is a detection for files that are infected by the W32.Sality.V virus.

11/17: Sality.V Virus Infects Executable Files to Spread

W32.Sality.V is a virus that spreads by infecting executable files.

11/17: Trojan.Realor Infects RealMedia .Rmvb Files

Trojan.Realor is a Trojan horse that spreads by infecting RealMedia .rmvb files.

11/17: Pagipef Virus Infects .Exe Files, Copies Itself

W32.Pagipef is a virus that infects .exe files and copies itself to remote drives and removable drives.

11/17: Bloodhound.KillAV Detects Malicious Software

Bloodhound.KillAV is a heuristic detection for malicious software that attempts to end security-related processes.

11/17: Spybot.ALRD Worm Opens Back Door

W32.Spybot.ALRD is a network-aware worm that opens a back door on the compromised computer.

11/17: Pardona-B Virus Infects .Exe Files, Modifies Others

W32/Pardona-B is a virus for the Windows platform.

11/17: BatKill-A Trojan Targets Windows

Troj/BatKill-A is a Trojan for the Windows platform.

11/17: Zlob-NW a Downloader Trojan

Troj/Zlob-NW is a downloader Trojan for the Windows platform.

11/17: Tilebot-HN Worm Exploits Flaws

W32/Tilebot-HN is a worm for the Windows platform.

11/17: Backdr-C Trojan Gives Intruder Remote Access

Troj/Backdr-C is a backdoor Trojan for the Windows platform.

11/17: DwnLdr-FVG a Downloader Trojan

Troj/DwnLdr-FVG is a downloader Trojan for the Windows platform.

11/17: Silly-E Worm Spreads to Other Network Systems

W32/Silly-E is a worm for the Windows platform.

11/16: QQPass-AKL a Password-Stealing Trojan

Troj/QQPass-AKL is a password stealing Trojan for the Windows platform.

11/16: Lineag-AEG Trojan Still in the Wild

For the second time this month, security vendor Sophos has issued an alert for Troj/Lineag-AEG, a Trojan for the Windows platform.

11/16: Popwin Trojan Displays Ads on Compromised System

Trojan.Popwin is a Trojan horse that opens a back door and displays advertisements on the compromised computer.

11/16: Looked-AV Virus Gives Intruder Remote Access

W32/Looked-AV is a virus that can also spread via network shares.

11/15: Kibik.Dr Virus Overwrites Explorer.exe, Injects Files

W32/Kibik.dr is a virus that overwrites explorer.exe, injects a DLL file into system processes and stays memory resident.

11/15: Semail.B Worm Arrives as Email Attachment

Worm_Semail.B arrives on a system as an attachment to an email message.

11/15: Yabi.AI Trojan May be Downloaded, Dropped, Spammed

Trend Micro has received reports of Troj_Yabi.AI Trojan being in the wild.

11/15: Sevensaw Trojan Drops Filter, Logs Strokes

Trojan.Sevensaw is a Trojan horse that drops a keyboard filter driver to log keystrokes and sends the stolen information to the author.

11/15: Wantok Worm Copies Itself, Displays Message

W32.Wantok is a worm that copies itself to all local drives on the compromised computer and displays a message when executed.

11/15: USBAgent Virus Copies Itself Onto Drives

W32/USBAgent is a virus that copies itself into floppy drives and flash drives.

11/15: Proxy-EU Trojan Lets Attacker Route Traffic

Troj/Proxy-EU is a Trojan for the Windows platform.

11/15: WinSpy-L Trojan Contacts Remote Server

Troj/WinSpy-L is a Trojan for the Windows platform.

11/15: Mona-B an Instant Messenger and Email Worm

W32/Mona-B is an instant messenger and email worm for the Windows platform.

11/14: Backdoor.Bias Trojan Downloads Other Risks

Backdoor.Bias is a Trojan horse that downloads other risks onto the compromised computer.

11/14: Fujacks.A Worm Uses Weak Passwords to Spread

W32.Fujacks.A is a worm that spreads through network shares protected by weak passwords.

11/14: Abul 64-Bit Windows Virus Compresses Files

W64.Abul is a 64-bit Windows virus that compresses infected files so that the file size is not increased.

11/14: Clagger-AJ Trojan Contacts Remote Server

Troj/Clagger-AJ is a Trojan for the Windows platform.

11/14: Tellsky Worm Spreads Via Mapped Drives

W32.Tellsky is a worm that spreads through mapped drives.

11/14: Madangel.B Virus Infects Local Drives, Network Shares

W32/Madangel.b is a parasitic file infector and network virus that searches local drives and network shares for executable files and infects them with the exception of windows system files.

11/14: Lewor.A a Parasitic File Infector

W32/Lewor.a is a parasitic file infector that can spread over USB storage devices, network drives, shared folders and QQ instant messenging.

11/14: Realor Worm Inserts Malicious Hyperlink on System

W32/Realor.worm scans the infected machine for existing RealMedia (*.rmvb) files and insert a malicious external hyperlink.

11/14: Pardona-A Virus Infects .Exe Files, Modifies Others

W32/Pardona-A is a virus for the Windows platform.

11/14: Sniffer-M Trojan Monitors Network Traffic

Troj/Sniffer-M is a Trojan for the Windows platform.

11/14: Tilebot-HX Worm Exploits Flaws

W32/Tilebot-HX is a worm for the Windows platform.

11/14: DelSpy-E Trojan May Inject Code Into Processes

For at least the second time this month, security vendor Sophos has issued an alert for Troj/DelSpy-E, a Trojan for the Windows platform.

11/14: Bancos-API Trojan Targets Windows

Troj/Bancos-API is a Trojan for the Windows platform.