Click here

Malware: Archive: October 2004 

10/29: Bagle-AS Worm Arrives Via Email

Win32/Bagle.AS is a worm that arrives via email or shared folders.

10/29: Beagle-AU Worm Hitting Hard & Fast

W32.Beagle.AU@mm is a mass-mailing worm that also spreads through file-sharing networks.

10/29: Beagle-AW Worm Opens Port 81

W32.Beagle.AW@mm is a mass-mailing worm that also spreads through file-sharing networks.

10/29: Beagle-AV a Mass-Mailing Worm

W32.Beagle.AV@mm is a mass-mailing worm that also spreads through file-sharing networks.

10/29: Bagle-AT Virus Sends Attachments

Security vendor Trend Micro has declared a MEDIUM risk virus alert to control the spread of Worm_Bagle.AT.

10/29: Bagle-BD Virus Harvests Addresses

W32/Bagle.bd@MM is a variant of the W32/Bagle virus.

10/29: Trojan.Disabler Kills Open Apps

Trojan.Disabler is a trojan program that closes open applications and may cause unsaved data to be lost.

10/29: Singu-B Allows Remote Access

Backdoor.Singu.B is a Trojan horse program that allows unauthorized remote access.

10/29: Bagle-BB Virus a 'Medium Threat'

W32/Bagle.bb@mm is a mass-mailing virus with a medium threat assessment by McAfee due to high prevalence.

10/29: Bagle-BC Raising a Ruckus

W32/Bagle.bc is a new variant of the Bagle virus.

10/29: Beagle@mm!CPL Detects Worms

W32.Beagle@mm!cpl is a generic detection for variants of W32.Beagle@mm that use Control Panel applets as droppers.

Another Bagle Variant Tears up the Internet

Yet another variant from the virulent Bagle family of worms is rampaging across the Internet.

ISPs Band Together Against Spam

UPDATED: AOL, EarthLink, Microsoft and Yahoo sue individuals who allegedly violate the Can-Spam law by sending millions of unwanted e-mails and IMs.

10/28: Backdoor.Futro a Server Program

Backdoor.Futro is a typical backdoor server program.

10/28: Bagz-F a Mass-Mailing Worm

W32.Bagz.F@mm is a mass-mailing worm that uses its own SMTP engine to send itself to email addresses gathered from the compromised system.

10/28: Forbot-BZ an IRC Trojan and Worm

W32/Forbot-BZ is a IRC backdoor Trojan and network worm for the Windows platform.

10/28: Randex-BRD Worm Targets Passwords

W32.Randex.BRD is a network-aware worm that spreads to network shares protected by weak passwords.

10/28: Gaobot-BOW Worm also a Trojan

W32.Gaobot.BOW is a network-aware worm that has backdoor capabilities and can be controlled through IRC channels.

10/28: Exploit-RealSkin Detects Zip Files

Exploit-RealSkin is a detection for ZIP files that have been modified exploit a vulnerability in a component of Real Player.

10/28: Gaobot-BOW is Network-Aware

W32.Gaobot.BOW is a network-aware worm that has backdoor capabilities and can be controlled through IRC channels.

10/28: Ranky-J Trojan Lets Attackers In

Backdoor.Ranky.J is a backdoor server program that allows a remote attacker to use the infected computer as a covert proxy.

10/28: Backdoor.Ranky-K a Server Program

Backdoor.Ranky.K is a backdoor server program that allows an infected computer to be used as a covert proxy.

10/28: Zafi-C an Email Worm

W32/Zafi.c@MM is an email worm that bears similarities to its predecessors, for example W32/Zafi.b@MM.

10/28: Erkez-C Worm Finds Addresses

W32.Erkez.C@mm is a mass-mailing worm that sends itself to email addresses it finds on the infected computer.

10/28: Agobot-NU a Worm and Backdoor

W32/Agobot-NU is a worm and backdoor for the Windows platform.

AntiOnline Spotlight: Corporations Oblivious to Spyware

Businesses are mounting a formidable defense against viruses, worms and spam. So why are they leaving a gaping hole open for spyware?

AOL To Give Away Anti-Virus Service

The ISP decides that paying for anti-virus protection will be a thing of the past.

10/27: Rbot-NY a Worm and Backdoor

W32/Rbot-NY is a network worm and IRC backdoor for the Windows platform.

10/27: Rbot-OB Worm Spreads Via Shares

W32/Rbot-OB is a network worm that attempts to spread via network shares.

10/27: Anpes Mass-Mailing Worm Uses Outlook

W32.Anpes@mm is a mass-mailing worm that uses Microsoft Outlook to send itself to email addresses gathered from the infected computer.

10/27: Bagz-E Worm Spreads Via Email

Some security vendors have issued an alert for Worm_Bagz.E, which, like earlier BAGZ variants, spreads via email using SMTP (Simple Mail Transfer Protocol).

10/27: Rbot-NV Worm has Trojan Abilities

W32/Rbot-NV is a worm with backdoor Trojan functionality.

10/27: Agobot-NS Worm also a Trojan

W32/Agobot-NS is a network worm that contains IRC backdoor Trojan functionality, allowing a remote user to access the infected computer.

10/27: Trojan.Ceegar Exploits IE Flaw

Trojan.Ceegar is a downloader Trojan horse program that exploits the Microsoft Internet Explorer HTML Help Control Local Zone Security Restriction Bypass Vulnerability.

10/27: Unix/Opener.worm Contains Shell Script

Unix/Opener.worm is a file containing a Unix type shell script.

10/27: Rbot-NZ Spreads Through OS Flaws

W32/Rbot-NZ is a network worm and IRC backdoor for the Windows platform.

10/26: Spydeleter Installs Spyware

Spydeleter is a spyware program that downloads and installs other spyware programs.

10/26: Rbot-NS a Network Worm and Trojan

W32/Rbot-NS is a network worm that contains IRC backdoor Trojan functionality, allowing unauthorized remote access to the infected computer.

10/26: Famus-B Worm Sends Email About Iraq

Panda Software has issued an alert for a new worm called Famus.B, which uses so-called social engineering techniques to spread to users' computers.

10/27: Famus-C Worm Sends Private Data

Famus.C is a worm that sends private data of the affected computer to its author.

10/26: Rbot-NT Worm Spreads to Remote Shares

W32/Rbot-NT is a member of the Rbot family of worms that attempt to spread to remote network shares with the backdoor functionality for the Windows platform.

10/26: Mydoom-AG a Mass-Mailing Worm

W32.Mydoom.AG@mm is a mass-mailing worm that uses its own SMTP engine to send itself to the email addresses that it finds on the infected computer.

10/26: Swash-A Worm Harvests Hard Disk

Worm_Swash.A is a memory resident worm that spreads via email through Simple Mail Transfer Protocol (SMTP), gathering target recipients from the local hard disk.

10/26: Sdbot-AE Trojan Opens Remote Access

Backdoor.Sdbot.AE is a backdoor Trojan horse program that spreads via network shares and allows a remote attacker to gain unauthorized access to a compromised system.

10/26: Netsky-AE Worm Uses Own Engine

W32.Netsky.AE@mm is a mass-mailing worm that uses its own SMTP engine to send itself to all email addresses it finds in the Windows Address Book on the infected system.

10/26: Rbot-NU Worm Allows Remote Access

W32/Rbot-NU is a worm that attempts to spread via remote network shares.

10/26: Vote-L Worm Drops File Into Folder

Worm_Vote.L is a memory resident worm that arrives and propagates via email.

10/25: Buchon-A a Mass-Mailing Worm

W32.Buchon.A@mm is a mass-mailing worm that uses its own SMTP engine to send itself to email addresses it finds on the infected computer.

10/25: Turon-B Worm Uses own Engine

Worm_Turon.B is a memory resident worm that arrives and propagates through email using its own SMTP engine. It is also able to propagate via network shares.

10/25: Forbot-BU a Network Worm and Trojan

W32/Forbot-BU is a network worm and IRC backdoor Trojan for the Windows platform.

10/25: SH/Renepo-A a Shell Script Worm

SH/Renepo-A is a shell script worm targeted at the Macintosh OS X platform.

10/25: Bagz-D a Mass-Mailing Worm

W32/Bagz-D is mass mailing network worm that also contains a backdoor which allows an intruder to download and install further components.

10/25: Forbot-BW a Network Worm

W32/Forbot-BW is a network worm with backdoor Trojan functionality.

10/25: Huayu Worm Exploits LSASS Flaw

W32.Huayu is a worm that spreads by exploiting the Microsoft Windows LSASS Buffer Overrun Vulnerability, described in Microsoft Security Bulletin MS04-011.

10/25: Rbot-NK Hides in Background

W32/Rbot-NK is a worm that attempts to spread to remote network shares.

Bush and Kerry Debate Technology

With days to go before the presidential election, both President Bush and Sen. Kerry square off over the tech industry. Which candidate would best bolster the struggling tech sector?

  • Candidates on Jobs, Spam, Security Questions

  • 10/22: Baba-A a Mass-Mailing Worm

    W32/Baba-A is a mass-mailing worm.

    10/22: Netsky-AH a Low-Risk Worm

    W32/Netsky.ah@MM worm is somewhat of a stripped down version compared to previous Netsky variants.

    10/22: Rbot-NJ Worm Has Trojan Functions

    W32/Rbot-NJ is a network worm that contains IRC backdoor Trojan functionality, allowing unauthorized remote access to the infected computer.

    Giving Network Demons the Boot

    Can corporate IT administrators learn a lesson from two colleges that stopped virus attacks in their tracks?

    10/22: Netsky-AE Worm Harvests Addresses

    Security vendors have issued an alert for W32/Netsky-AE, a mass-mailing worm of the Netsky family.

    10/22: Buchon Worm Mass Mails Itself

    W32/Buchon.gen@MM is a worm that is a new Netsky variant, but is not considered to be a member of the W32/Netsky family, according to McAfee.

    10/22: Netsky-AI Worm Spoofs Email Failure

    Netsky.AI is a worm without damaging effects that spreads via e-mail in a message with the subject 'Mail Delivery failure.'

    10/22: Emcommander Trojan Sent as EMF Image

    Backdoor.Emcommander is a Backdoor Trojan distributed as an EMF image file.

    10/22: JS/Scob-A a JavaScript Trojan

    JS/Scob-A is a JavaScript Trojan that is reported to be appended to HTML files on IIS machines.

    Sender ID For E-Mail Goes Wild

    A Canadian ISP plans to go live with Microsoft's e-mail authentication technology next week.

    10/21: Toraja-I an Office 97 Macro Virus

    OF97/Toraja-I is a macro virus for the Microsoft Office 97 platform.

    10/21: Rbot-NG Worm Spreads Remotely

    W32/Rbot-NG is a worm that attempts to spread to remote network shares.

    10/21: Bloodhound.Exploit-17 Detects Files

    Bloodhound.Exploit.17 is a heuristic detection for malformed Windows Metafile (WMF) and Enhanced Metafile (EMF) image files.

    10/21: Bagz-C Worm Uses SMTP Engine

    Worm_Bagz.C uses Simple Mail Transfer Protocol (SMTP) to mass-mail copies of itself.

    10/21: Trojan.Sens Monitors Corp. Network

    Trojan.Sens is a Trojan horse program that installs itself as a service and monitors network activity on the infected computer.

    10/21: Banker-EK an Info-Stealing Trojan

    Troj/Banker-EK is an information stealing Trojan.

    10/20: Spybot-FCD Worm Remotely Run

    W32.Spybot.FCD Is a worm that may be remotely controlled, via Internet Relay Chat (IRC) channels.

    10/20: Forbot-BR a Worm, IRC Trojan

    W32/Forbot-BR is a network worm and IRC backdoor Trojan for the Windows platform.

    10/20: Mydoom-AA Worm Spreads Via Email

    Worm_Mydoom.AA, like earlier Mydoom variants, mainly spreads via email.

    10/20: Bagz-E Worm Kills Antivirus Apps

    Bagz.E is a worm that ends processes belonging to antivirus programs and other security tools, among others.

    10/20: Bagz-D Worm Disables Security

    W32/Bagz.d@MM is a variant of W32/Bagz@MM and is similar to previous variants (for example W32/Bagz.b@MM ).

    10/20: Forbot-BQ a Networm Worm

    W32/Forbot-BQ is a network worm with backdoor Trojan functionality.

    10/20: Spybot-DF an IRC Backdoor Worm

    W32/Spybot-DF is an IRC backdoor worm.

    10/20: Watsoon-A a Polymorphic Trojan

    W32.Watsoon.A is a polymorphic Trojan that opens a backdoor on the compromised system.

    10/20: Backdoor.Roxe-B Trojan Exploits Flaw

    Backdoor.Roxe.B is a backdoor Trojan horse that exploits the Microsoft GDI+ Library JPEG Segment Length Integer Underflow vulnerability (described in the Microsoft Security Bulletin MS04-028).

    McAfee Wins 'Malicious Behavior' Patent

    Process during emulation process of software can detect malicious software behavior.

    10/19: Spybot-FBG Worm Launches DDoS

    W32.Spybot.FBG is a worm that may be remotely controlled via IRC channels.

    10/19: Darby-B Worm Spreads Via IRC

    W32.Darby.B is a worm that uses file-sharing networks, email, network file sharing, and Internet Relay Chat (IRC) to spread.

    19/19: Wootbot-BJ Worm Uses LSASS Flaw

    Worm_Wootbot-BJ takes advantage of the Windows LSASS vulnerability in order to propagate.

    10/19: Bacros Trojan Drops W97M.Bancros

    W32.Bacros is a Trojan horse that drops W97M.Bacros.

    10/19: Forbot-BP Worm Allows Remote Access

    W32/Forbot-BP is a network worm that attempts to spread via network shares.

    10/19: Forbot-BN Worm Has Trojan Functions

    W32/Forbot-BN is a network worm with backdoor Trojan functionality.

    10/19: Rbot-ND Worm is Backdoor for Windows

    W32/Rbot-ND is a worm and backdoor for the Windows platform.

    10/19: Mydoom-AE a Mass-Mailing Worm

    W32/Mydoom.ae@MM is a mass-mailing worm.

    10/19: Mydoom-AD Modifies HOSTS File

    Mydoom.AD is a worm that modifies the HOSTS file, in order to prevent the user from accessing several antivirus companies.

    10/19: Forbot-AR Spreads to Remote Shares

    W32/Forbot-AR is a worm that attempts to spread to remote network shares.

    10/18: Forbot-AZ Worm Allows Remote Access

    W32/Forbot-AZ is a worm that attempts to spread to remote network shares.

    10/18: Sluter-E a Trojan and a Worm

    W32/Sluter-E is an IRC backdoor Trojan and network worm for the Windows platform.

    10/18: Wort-B Worm Downloads EXE

    W32/Wort-B attempts to download an EXE file, and spreads using the LSASS flaw.

    10/18: Rbot-NA is a Network Worm

    W32/Rbot-NA is a network worm that contains IRC backdoor Trojan functionality.

    10/18: Forbot-BI a Trojan and Worm

    W32/Forbot-BI is an IRC backdoor Trojan and network worm for the Windows platform.

    10/18: Mydoom-AF a Mass-Mailing Worm

    W32.Mydoom.AF@mm is a mass-mailing worm that uses its own SMTP engine to send itself to the email addresses that it finds from an infected system.

    10/18: Narcs Worm Executes Spybot Worm

    W32.Narcs is a worm that spreads through IRC, IMesh, and KaZaA networks.

    10/18: Rbot-NC Worm Uses Backdoor

    Rbot-NC is a network worm that uses an IRC backdoor Trojan.

    10/18: Trax.B Worm Has Several Functions

    W32/Trax.B is a worm that bears multiple characteristics.

    Listening in on a Sit Down on Authentication

    eSecurityPlanet's Ray Everett-Church takes a look at the battle raging over authentication.

    Network Security's Blind Eye

    VPNs and homegrown applications are two areas where enterprises are dropping the ball. Learn what you can do to ensure that neither poses a threat to your business.

    10/15: Nits-A Worm Runs HTTP Proxy

    W32.Nits.A is a network-aware worm that runs a HTTP proxy on the infected computer.

    10/15: Hacarmy-E Trojan Allows Access

    Backdoor.Hacarmy.E is a backdoor server program that allows unauthorized remote access to an infected computer.

    10/15: Traxg-B Worm Spreads Via Outlook

    Some security vendors have issued alerts for W32/Traxg-B, a worm that attempts to spread using Microsoft Outlook.

    10/15: Lowtaper Trojan Allows Remote Control

    Backdoor.Lowtaper is a backdoor Trojan horse that allows remote command execution.

    10/15: Sophily Virus Infects .Exe Files

    W32.Sophily is a virus that infects files with .exe extensions.

    RIM Refutes BlackBerry Buffer Overflow Claim

    RIM gets security researcher to update their claims about previously identified issue.

    10/14: Netsky-AF Worm Steals Addresses

    Like earlier Netsky variants, Worm-Netsky-AF mainly propagates via email.

    10/14: Sdbot-QJ Worm Exploits Passwords

    W32/Sdbot-QJ is a worm that attempts to spread to remote network shares with weak passwords.

    10/14: Netsky-AG Worm a Low Risk

    Some security vendors have issued alerts for Netsky-AG, a worm without damaging effects that spreads via e-mail in a message with variable characteristics and through peer-to-peer (P2P) file sharing programs.

    10/14: Backdoor.Yiha a Trojan Horse

    Backdoor.Yiha is a backdoor Trojan horse that allows an attacker to download and upload files to an infected computer.

    10/14: Sdbot-QH Worm Hits Weak Passwords

    W32/Sdbot-QH is a network worm with backdoor functionality for the Windows 2000 and Windows XP platforms.

    10/14: Netsky-AD a Mass-Mailing Worm

    Some computer vendors are issuing alerts for W32.Netsky.AD@mm a mass-mailing worm that uses its own SMTP engine to send itself to the email addresses it finds on the infected computer.

    10/14: Darby.Gen Worm Attacks Anti-Virus

    Darby.gen is not a specific worm, but a generic detection for future variants of the Darby family.

    10/14: Bitter Worm Spreads By File Share

    W32.Bitter is a worm that may be able to propagate through file-share networks.

    10/13: Apribot-C an IRC Backdoor

    W32/Apribot-C is an IRC backdoor with spreading capability.

    10/13: Snoop-A Worm Spreads Via Email

    W32/Snoop-A is a worm for the Windows platform.

    10/13: Sdobt-QG Worm Targets Passwords

    W32/Sdbot-QG is a worm that attempts to spread via remote network shares.

    10/13: Trojan.Webus.C Opens Port

    Trojan.Webus.C is a Trojan horse that connects to an Internet Relay Chat (IRC) server and opens a backdoor on TCP port 10888 or 1080.

    10/13: Bloodhound.Exploit.15 Detects GRP

    Bloodhound.Exploit.15 is a heuristic detection for malformed GRP files that are potentially related to the Program Group Converter Vulnerability.

    10/13: Sdbot-QF Worm Has Backdoor

    W32/Sdbot-QF is a worm with backdoor functionality for the Windows platform that targets local network shares and allows a malicious user remote access to an infected computer.

    10/13: Bifrose a Trojan Horse

    Backdoor.Bifrose is a Trojan horse that uses a backdoor server to send information to a remote server.

    10/13: JPGTrojan-D Exploits JPEG Flaw

    JPGTrojan.D is a program that allows a hacker to create images in JPG format that attempt to exploit the vulnerability described in the Microsoft bulletin MS04-028, Buffer Overrun in JPEG processing.

    10/12: Forbot-BD Runs in Background

    W32/Forbot-BD is a network worm with backdoor Trojan functionality.

    10/12: Downloader-QU Trojan Executes File

    Downloader-QU is a Trojan that connects to a web site and downloads an html file, which is then executes.

    10/12: Fili-A Worm Drops Copies of Itself

    Worm_Fili.A propagates via peer-to-peer (P2P) applications by dropping copies of itself in default shared folders and using attractive file names in order to trick users into downloading it into their own systems.

    10/12: Forbot-AZ Worm Has Backdoor

    W32/Forbot-AZ is a worm that attempts to spread to remote network shares.

    10/12: Bagle-AC Worm Sends Fake Message

    W32/Bagle-AC is a member of the W32/Bagle family of email worms.

    10/12: Bagz-B Worm Hidden in Attachment

    Worm_Bagz.B is a memory-resident worm that arrives via email as an attachment.

    10/12: GregCenter a Prepending Virus

    W32/GregCenter is a Windows, 32bit, prepending virus.

    10/11: Noomy-A Worm Exploits Email, IRC

    Worm_Noomy.A is a mass-mailing worm that propagates via email and Internet Relay Chat (IRC).

    10/11: Sdbot-QE a Worm and Trojan

    W32/Sdbot-QE is a worm and backdoor for the Windows platform.

    10/11: JPGdown-C Trojan Hides in JPEG

    Expl_JPGdown.C is a Trojan that arrives as a JPEG file and exploits the JPEG vulnerability in Windows XP.

    10/11: JPGdown-B Trojan Exploits Flaw

    Expl_JPGDown.B is a variant of EXPL_JPGDOWN and arrives as a JPEG file that exploits the JPEG GDI vulnerability known to affect Windows XP.

    10/11: Forbot-BA Worm also a Trojan

    W32/Forbot-BA is a worm that attempts to spread to remote network shares.

    10/11: Funner Worm Spreads Via IM

    Several security vendors Monday issued alerts for W32/Funner.worm, a worm that is packed using ASPACK packer software and written in MSVB.

    10/11: Rbot-MI Worm Has Trojan Functions

    W32/Rbot-MI is a worm that attempts to spread to remote network shares.

    10/8: Trojan.AdRmove Deletes Files

    Trojan.AdRmove is a Trojan horse program that attempts to delete files and registry entries of known adware programs.

    10/8: Nemsi-A Virus Infects EXE Files

    Nemsi.A is a virus that infects EXE files using the prepending method.

    10/8: Pikis-B Worm Spreads in Attachments

    W32/Pikis-B is a worm that spreads by emailing itself is an attachment to addresses harvested from the infected computer.

    10/8: Sdbot-PZ a Network-Aware Worm

    W32/Sdbot-PZ is a backdoor Trojan and network aware worm that runs in the background as a service process and allows unauthorized remote access to the computer via IRC channels.

    House Toughens Spyware Penalties

    Legislation adds prison sentences to maximum $3 million civil penalties approved on Tuesday.

    10/7: Fili VB Worm Spreads Via Outlook

    W32.Fili@mm is a generic Visual Basic worm that propagates via Microsoft Outlook and through peer-to-peer file-sharing networks.

    10/7: Darby-G a Multi-Lingual Worm

    W32/Darby-G is a multi-lingual email, IRC and peer-to-peer worm.

    10/7: Rbot-LY a Worm and Backdoor Trojan

    W32/Rbot-LY is a network worm and backdoor Trojan for the Windows platform.

    10/7: Forbot-AY Worm Hits Remote Shares

    W32/Forbot-AY is a worm that attempts to spread to remote network shares.

    10/7: Bagz-A is a Mass-Mailing Worm

    Worm_Bagz.A is a memory-resident, mass-mailing worm that uses SMTP (Simple Mail Transfer Protocol) to propagate.

    10/7: Keylogger-Pro a Hacking Tool

    Keylogger-Pro is a hacking tool.

    Developer.com's Term of the Week: Spyware

    Security Watch: Online developer resource exposes this blight on corporate and home user computer security.

    Three Worms Run Top 20 Virus Report

    The Bagle, Netsky and MyDoom families of worms still are so powerful that they account for 16 out of the 20 viruses in one company's monthly report.

    10/6: Rbot-LT Worm Has Trojan Functions

    W32/Rbot-LT is a network worm that contains IRC backdoor Trojan functionality, allowing unauthorized remote access to the infected computer.

    CA Buys Netegrity in Web Security Play

    All cash deal is expected to fill security gaps within CA's eTrust product line.

    10/6: JPGTrojan-C Exploits JPEG Flaw

    JPGTrojan.C is a program that allows a person to create images in JPG format that exploit the vulnerability described in the Microsoft bulletin MS04-028, Buffer Overrun in JPEG processing.

    10/6: Webus-B Trojan Kills Security Apps

    Trojan.Webus.B is a Trojan horse program that kills antivirus services and launches Distributed Denial of Service (DDoS) attacks against a list of remote servers.

    10/6: Agobot-ZV a Network Worm, Trojan

    W32/Agobot-ZV is a network worm and backdoor Trojan for the Windows platform.

    10/6: W97M.Prece-A a Macro Virus

    W97M.Prece.A is a macro virus that modifies Microsoft Word configuration settings, deletes files, and infects Microsoft Word documents and the Normal.dot template.

    Spammers Hide Trojan in Opt-Out Link

    Spammers have come up with a new way to fool users into downloading malicious code that will turn their PC into an Open Proxy. They have hidden a Trojan in the opt-out link at the bottom of each spam.

    House Passes Anti-Spyware Bill

    Leadership plans to push for Senate approval later this week and send bill to President Bush.

    10/6: Bagz-B a Mass-Mailing Worm

    W32.Bagz.B@mm is a mass-mailing worm that uses its own SMTP engine to send itself to the email addresses gathered from an infected computer.

    10/5: Downloader.Lunii a Trojan Horse

    Downloader.Lunii is a Trojan horse program that attempts to download remote files, terminate adware products, and delete files.

    10/5: PWStealLdpinch-C Trojan Steals Info

    PWSteal.Ldpinch.C is a password stealing Trojan horse program that attempts to steal information from an infected computer and send it to a remote attacker.

    10/5: Forbot-AV a Network Worm, Trojan

    W32/Forbot-AV is a network worm and backdoor Trojan for the Windows platform.

    10/4: Korgo-Q Worm Hits Windows

    W32/Korgo-Q is a network worm for the Windows platform.

    10/4: Rbot-LD Worm Enables Access

    W32/Rbot-LD is a worm that attempts to spread to remote network shares and allows unauthorized remote access to the computer via IRC channels.

    10/4: Rtkit-B Trojan Allows Hacking

    Backdoor.Rtkit.B is a backdoor server program that allows a remote attacker to perform various actions on an infected computer.

    10/4: Bagz a Mass-Mailing Worm

    W32.Bagz@mm is a mass-mailing worm that uses its own SMTP engine to send itself to email addresses gathered from the infected computer.

    10/4: Sdbot-PV an IRC Backdoor Trojan

    W32/Sdbot-PV is an IRC backdoor that can spread via IPC shares protected by weak passwords.

    10/4: XM97/Crex-C an Excel Macro Virus

    XM97/Crex-C is an Excel Macro virus that will spread to any open workbooks after the viral macro is loaded.

    10/1: Forbot-AR Spreads to Remote Shares

    W32/Forbot-AR is a worm that attempts to spread to remote network shares.

    10/1: Spybot-EAS Remotely Controlled

    W32.Spybot.EAS is a worm that may be remotely controlled via IRC channels.

    10/1: PWSteal.Focosenha Trojan Steals Info

    PWSteal.Focosenha is a Trojan horse program that attempts to steal user names, passwords, and other information from the infected computer.

    10/1: Snoop-A a Windows Worm

    W32/Snoop-A is a worm for the Windows platform.