Click here

Articles by eSecurityPlanet.com Staff 

12/29: Mixor.Q Worm Drops Additional Malware

W32.Mixor.Q@mm is a mass-mailing worm that drops additional malware on to the compromised computer.

12/29: Radppan.I Virus Distributes Trojan Rizalof.RG

Radoppan.I is a virus that distributes copies of the Trojan Rizalof.RG.

12/29: Downloader-ARL Trojan Arrives in Email Attachment

Downloader-ARL is a Trojan that arrives as an email attachment called postcard.exe.

12/29: Agobot-AHT Worm Gives Remote Intruder Access

W32/Agobot-AHT is a worm with IRC backdoor functionality for the Windows platform.

12/29: Nuwar.AY Worm Uses Own SMTP Engine to Spread

Worm_Nuwar.AY propagates by attaching a copy of itself to email messages, which it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP).

12/29: Trojan.Cinmeng Displays Pop-Up Ads

Trojan.Cinmeng is a Trojan horse that displays pop-up advertisements.

12/29: FeebDL-AA a Downloader Trojan

Troj/FeebDl-AA is a downloader Trojan for the Windows platform.

12/29: Dref-U Virus Spreads Via Network Systems, Email

W32/Dref-U is a virus with mass-mailing capability for the Windows platform.

12/28: Mediasups Virus May Download Remote Files

W32.Mediasups is a virus that may download files and communicate to a remote server.

12/28: Slate-A Trojan Downloads More Malware

Troj/Slate-A is a Trojan for the Windows platform.

12/28: Rbot-FZO Worm Gives Remote Intruder Access

W32/Rbot-FZO is a worm for the Windows platform.

12/28: CWSMeup-D a Downloader Trojan

Troj/CWSMeup-D is a downloader Trojan for the Windows platform.

12/28: Rbot-FZQ Worm Exploits Flaws, Spreads to Weak Shares

W32/Rbot-FZQ is a network worm for the Windows platform.

12/27: Rungbu.C Virus Replaces Word Documents

W32.Rungbu.C is a virus that replaces Word Documents with a copy of the virus.

12/27: Ridnu.B Worm Copies Itself to Other Drives

W32.Ridnu.B is a worm that spreads by copying itself to other drives.

12/27: Fujacks!htm Detects Files Infected With Parasitic Virus

W32/Fujacks!htm is a detection for certain types of files infected with the parasitic W32/Fujacks virus.

12/27: Nujama Worm Spreads Via Mapped Drives

W32.Nujama is a worm that spreads through mapped drives.

12/27: Downloader-BAC an IE Browser Helper Object

Downloader-BAC is an Internet Explorer Browser Helper Object that silently downloads and executes code when Internet Explorer is launched.

12/27: Fujacks-A a Prepending Windows Virus

W32/Fujacks-A is a prepending virus for the Windows platform.

12/26: Trojan.Caiijing Displays Pop-Ups, Acts as Google Bar

Trojan.Caiijing is a Trojan horse that displays pop-up ads and masquerades as the Google tool bar.

12/26: Rbot-FZE Worm Exploits Buffer Flow Flaws

W32/Rbot-FZE is a worm with IRC backdoor functionality for the Windows platform.

12/26: StraDL-B Trojan Runs File From Remote Website

Troj/StraDl-B is a downloader Trojan for the Windows platform.

12/26: StraDL-C Trojan Downloads, Runs New Software

Troj/StraDl-C is a downloader Trojan for the Windows platform.

12/22: Troj/WowPWS-AN Steals Data

Troj/WowPWS-AN steals data.

12/22: Troj/Zlobns-AA Downloads Code

Troj/Zlobns-AA downloads code from the Internet.

12/21: Troj/DownLd-AAV Downloads from Internet

Troj/DownLd-AAV downloads from the Internet.

12/21: Troj/QQRob-ABT Steals Data

Troj/QQRob-ABT steals data.

12/21: W32/Mytob-IN Turns Off Anti-Virus

W32/Mytob-IN turns off anti-virus software.

12/21: W32.Koddro@mm Steals Financial Info

W32.Koddro@mm steals financial information.

12/21: W32.Tanexor.A Infects Storage Devices

W32.Tanexor.A infects storage devices.

12/20: W32/Allaple-B Scans for Open Ports

W32/Allaple-B Scans for open ports and weak passwords.

12/20: W32/Sohana-F Records Keystrokes

W32/Sohana-F Records Keystrokes

12/20: Troj/Dloadr-ARP Turns off Anti-Virus

Troj/Dloadr-ARP turns off anti-virus.

12/20: Bloodhound.Olexe Virus

Bloodhound.Olexe is a trojan horse that reports the presence of Microsoft Office files with an embedded executable file.

12/20: Trojan.Lydra Talks to Remote Server

Trojan.Lydra communicates with a remote server.

12/19: Troj/Horst-HF Installs in Registry

Troj/Horst-HF Installs itself in the Registry.

12/19: W32/HLLP.Philis.bq File Infecting Virus

W32/HLLP.Philis.bq is a file infecting virus that searches for executable files.

12/19: W32/Tilebot-HN Spreads Through Chat Programs

W32/Tilebot-HN spreads through chat programs and network shares.

12/19: W32/Tilebot-HN Spreads Through Chat Programs

W32/Tilebot-HN spreads through chat programs and network shares.

12/19: W32/Semail-A Uses Own Email Engine

W32/Semail-A sends itself to email addresses found on the infected computer.

12/19: Trojan.Coldung Trojan Downloads Other Threats

The Trojan.Coldung Trojan downloads other threats onto a computer.

12/19: W32.Bakain Exploits Weak Passwords

The W32.Bakain worm exploits weak passwords to copy itself throughout networks.

12/18: W32/Dref-Q is an Email Worn

W32/Dref-Q is a worm that spreads through email.

12/18: Troj/Bancos-AQR is a Spyware Trojan

Troj/Bancos-AQR is a spyware trojan for the Windows platform.

12/18: W32/Kebede-F is an Email Worm

W32/Kebede-F spreads by email.

12/18: W32.Stration.EL@mm Spreads by Email

W32.Stration.EL@mm is an email worm.

12/18: Trojan.Dowiex!inf is a Windows Trojan

Trojan.Dowiex!inf is a trojan for the Windows platform.

12/15: Clicker-EA Trojan is Registered as a COM and BHO

Troj/Clicker-EA is a Trojan for the Windows platform.

12/15: Strat.IB Trojan Marry Arrives as Spammed Attachment

Troj_Strat.IB is a Trojan that may arrive on a system as an attachment to a spammed email message by WORM_STRAT.GT.

12/15: Backdoor.Wualess.B Trojan Opens Back Door

Backdoor.Wualess.B is a Trojan horse that opens a back door on the compromised computer.

12/15: Stration.EL Worm Emails Itself to Other Computers

W32.Stration.EL@mm is a worm that spreads by emailing itself to other computers.

12/15: Murlo-Q Trojan Accesses Internet

For the second time this month, security vendor Sophos has issued an alert for Troj/Murlo-Q, a Trojan for the Windows platform.

12/15: Traxg-E Worm Copies Itself to Network Shares

W32/Traxg-E is a mass-mailing worm that also spreads by copying itself to network shares.

12/15: DNSBust-N Trojan Contacts Remote Server

For the second time in less than a month, security vendor Sophos has issued an alert for Troj/DNSBust-N, a Trojan for the Windows platform.

12/15: Zlob-OX Trojan Hits Windows

Troj/Zlob-OX is a Trojan for the Windows platform.

12/15: Sdbot-CWA Worm Gives Intruder Remote Access

W32/Sdbot-CWA is a worm with IRC backdoor functionality for the Windows platform.

12/15: Bagle-QX Worm Still Spreading Via Email in Zip File

For the second time this week, security vendor Sophos has issued an alert for W32/Bagle-QX, a worm for the Windows platform.

12/15: Brontok-AI a Mass-Mailing Worm

W32/Brontok-AI is a mass-mailing worm for the Windows platform.

12/15: MMThief-S Trojan Targets Windows

Troj/MMThief-S is a Trojan for the Windows platform.

12/14: Bagle-QY Worm Harvest Emails From Hard Disk

W32/Bagle-QY is an email worm that sends itself via its own SMTP engine to addresses harvested from your hard disk.

12/14: Pardona-D Virus Infects Exe Files, Modifies Others

W32/Pardona-D is a virus for the Windows platform.

12/14: Looked-BF a Windows Executable Virus and Worm

W32/Looked-BF is a Windows executable virus and network worm.

12/14: Banker-DNM an Internet Banking Trojan

Troj/Banker-DNM is an internet banking Trojan for the Windows platform.

12/14: Agent-DWM Trojan Tries to Circumvent Firewall

Troj/Agent-DWM is a Trojan for the Windows platform.

12/13: Clagge.AE Trojan Arrives as Spam Mail Attachment

Troj_Clagge.AE is a Trojan that may arrive on a system as a file attached to a spammed email message, dropped by other malware, or downloaded by an unsuspecting user when visiting malicious Web sites.

12/13: Trojan.Daum Redirects Internet Keyword Searches

Trojan.Daum is a Trojan Horse, which redirects Internet keyword searches through a remote server when visiting certain Web sites.

12/13: Trojan.Iesguide Logs Search Terms for Web Sites

Trojan.Iesguide is a Trojan horse that logs search terms for certain Web sites and sends them to a remote server.

12/13: Sagevo Worm Exploits Symantec Client Security

W32.Sagevo is a worm that spreads by exploiting the Symantec Client Security and Symantec AntiVirus Elevation of privilege (as described in Symantec Advisory SYM06-010) and lowers security settings.

12/16: NTRootK-BA Rootkit Sets IE Start Page

Troj/NTRootK-BA is a rootkit for the Windows platform that also sets the internet explorer start page.

12/13: Yautoit.N Worm Spreads Via Yahoo! IM

W32.Yautoit.N is a worm that spreads through Yahoo! Instant Messenger.

12/13: Trojan.Skintrim Downloads Other Risks

Trojan.Skintrim is a Trojan horse that downloads other risks onto the compromised computer.

12/13: Trojan.Mdropper.T Exploits Unpatched Word Flaw

Trojan.Mdropper.T is a Trojan horse that drops another threat on to the compromised computer by exploiting the unpatched Microsoft Word Unspecified Remote Code Execution Vulnerability (as described in Microsoft Security Bulletin 929433).

12/13: Bagle-QW Worm Contacts Remote Server

W32/Bagle-QW is a worm for the Windows platform.

12/13: Stration-CJ a Component of Stration Worm Family

W32/Stration-CJ is a component of the Stration family of worms for the Windows platform.

12/13: Bagle-QX Worm Spread Via Email in Zip File

W32/Bagle-QX is a worm for the Windows platform.

12/13: Tilebot-GA Worm and Backdoor Exploits Flaws

W32/Tilebot-GA is a worm and IRC backdoor for the Windows platform.

12/12: Trojan.Huanux Performs DDoS Attacks

Trojan.Huanux is a Trojan horse that can perform distributed denial of service attacks.

12/12: PH_Pbot.A PHP Script Arrives as File Download

PH_Pbot.A is Hypertext Preprocessor (PHP) script that is the Trend Micro detection for a PHP bot designed for Web servers.

12/12: Selfish Virus Infects Executable Files

W32.Selfish is a virus that infects executable files.

12/12: Wuke Worm Infects Exe Files, Drops Rootkit Component

W32/Wuke@MM is a worm capable of infecting .EXE files on a compromised system, appending malicious data to some web-based files, dropping a rootkit component and spreading to other hosts via the network.

12/12: Dref-S an Email Worm for Windows

W32/Dref-S is an email worm for the Windows platform.

12/12: FakeAle-AH Trojan Dismisses Genuine Security Alerts

Troj/FakeAle-AH is a Trojan for the Windows platform.

12/12: Starbot-E Trojan Lets Attacker Control Infected System

Troj/Starbot-E is an IRC backdoor Trojan for the Windows platform.

12/12: Goldun-EH Trojan Steals Data, Monitors Sessions

Troj/Goldun-EH is a Trojan for the Windows platform.

12/12: DwnLdr-FXO a Downloader Trojan for Windows

Troj/DwnLdr-FXO is a downloader Trojan for the Windows platform.

12/12: Vixup-BZ Trojan Downloads, Runs Other Executable Code

Troj/Vixup-BZ is a Trojan for the Windows platform.

12/11: JS_Wonka.AI is Malicious JavaScript

JS_Wonka.AI is malicious JavaScript that is usually embedded in HTML pages hosted in a Web site.

12/11: Infostealer.Aobys Trojan Drops Rootkit Component

Infostealer.Aobys is a Trojan horse that drops a rootkit component and may download remote files.

12/11: PWS-Agent.G a Password-Stealing Trojan

PWS-Agent.g is a password-stealing Trojan that was most recently installed by Exploit-MSWord.b via a 0-day Microsoft Word vulnerability.

12/11: Sharp-T a Windows Trojan

Troj/Sharp-T is a Trojan for the Windows platform.

12/11: Mofei-T Worm Spreads Via Weak Passwords

W32/Mofei-T is a network worm with backdoor functionality for the Windows platform.

12/11: SillyFDC-G a Floppy Disk and Network Worm

W32/SillyFDC-G is a floppy disk and network worm for the Windows platform.

12/11: Xorpix-H Trojan Dropped by Other Trojan

Troj/Xorpix-H is a Trojan for the Windows platform.

12/8: Mxfile.M Macro Virus Infects Word Documents

W97M.Mxfile.M is a macro virus that spreads by infecting Microsoft Word documents.

12/8: QQRob-ABQ Trojan Targets Windows

Troj/QQRob-ABQ is a Trojan for the Windows platform.

12/8: Bagle.MM Trojan May Arrive as Downloaded File

Troj_Bagle.MM is a Trojan that may arrive on a system as a file downloaded from the following URL: http://www.{BLOCKED}apisteriadaniel.com/999.gif

12/8: Windang.A Worm Spreads Through Removable Media

W32.Windang.A is a worm that spreads through removable media.

12/8: Trojan.Booha May Download Malicious Files

Trojan.Booha is a Trojan horse that downloads potentially malicious files on to the compromised computer.

12/8: Kelvir.LS Worm Spreads Via IM, Downloads Files

W32.Kelvir.LS is a worm that spreads through MSN Messenger, opens a back door, and downloads remote files.

12/8: LDPinc-AZE a Password-Stealing Trojan

Troj/LdPinc-AZE is a password-stealing Trojan for the Windows platform.