Click here

Malware: Archive: October 2005 

10/31: Loxbot-B Worm Uses AOL to Spread

W32.Loxbot.B is a network-aware worm with back door capabilities that can also spread using AOL Instant Messenger.

10/31: Agent-EU a Windows Trojan

Troj/Agent-EU is a Trojan for the Windows platform.

10/31: Bancban-HA an Internet Banking Trojan

Troj/Bancban-HA is an internet banking Trojan for the Windows platform.

10/31: Dagonit-A a Multi-Component Trojan

Troj/Dagonit-A is a multi-component backdoor Trojan for the Windows platform that allows unauthorized remote access through the randomly open TCP port.

10/31; Dloader-XQ Trojan Disables Software

Troj/Dloader-XQ is a Trojan for the Windows platform.

10/31: Opanki-AC Worm Spreads Via AOL

Worm_Opanki.AC spreads through network shares and AOL Instant Messenger (AIM).

10/31: Backdoor.Sedepex Trojan Lets Attacker In

Backdoor.Sedepex is a Trojan horse that opens a back door on the compromised computer allowing a remote attacker to have unauthorized access, and ends various security-related processes.

10/31: Mytob-KQ Worm Drops Copy of Itself

Upon execution, Worm_Mytob.KQ drops a copy of itself as INTERNET.EXE in the Windows system folder.

10/31: Backdoore.Breplibot-B Copies Itself

Upon execution, Bkdr_Breplibot.B drops a copy of itself as CSMSV.EXE in the Windows system folder.

10/31: Kix_Ixlam-A Virus Infects all .KIX Files

Kix_Ixlam.A is a virus that infects all .KIX files found in the current folder by appending its code to a target file.

10/31: Rbot-AUL a Worm and Backdoor Trojan

W32/Rbot-AUL is a worm and IRC backdoor Trojan for the Windows platform.

10/28: Rbot-CLC Worm Modifies System

The presence of msaconfigurez.exe in the Windows system folder indicates infection of Worm-Rbot-CLC.

10/28: Banker-GD a Password-Stealing Trojan

Banker-GD is a password-stealing Trojan for the Windows platform.

10/28: Rbot-ATQ Worm and Backdoor

W32/Rbot-ATQ is a worm and IRC backdoor Trojan for the Windows platform.

10/28: Rbot-ATT a Worm and a Trojan

W32/Rbot-ATT is a worm and IRC backdoor Trojan for the Windows platform.

10/28: Trojan.Goldun-G Steals Passwords

Trojan-Goldun-G is a Trojan horse program that steals passwords and bank account details and sends the information to a remote attacker.

10/28: Fanbot-H Worm Uses Own Engine

Worm-Fanbot-H propagates by sending a copy of itself as an attachment to email messages, which it sends to target recipients, using its own Simple Mail Transfer Protocol (SMTP) engine.

10/28: Squado-A a Downloader Trojan

Troj/Squado-A is a downloader Trojan for the Windows platform.

10/28: Randex-Y a Network Worm

W32/Randex-Y is a network worm with backdoor capabilities that allows a remote intruder to access and control the computer via IRC channels.

10/28: Accoona Hacking Tool adds Toolbar

Accoona is a hacking tool.

10/28: Rbot-CJN Worm Drops in Copies

Worm-Rbot-CJN spreads by dropping copies of itself in the default network shares.

Group Delivers The Meaning of 'Spyware'

With the definition set, the ASC sets out to find the apps that can be considered spyware.

10/27: Inor-V an HTML Script Trojan

Troj/Inor-V is an HTML script Trojan.

10/27: Backdoor.Bifrose-D Sends Information

Backdoor.Bifrose.D is a Trojan horse that opens a back door and sends information to a remote server.

10/27: Sdbot-FME Worm Links to Servers

Sdbot-FME is a worm that connects to several IRC servers in order to receive remote control commands, acting as a backdoor.

10/27: Rbot-ATL Worm and Backdoor Trojan

W32/Rbot-ATL is a worm and IRC backdoor Trojan for the Windows platform.

10/27: Sdbot-ZM Worm With Trojan Functions

W32/Sdbot-ZM is a network worm with backdoor Trojan functionality for the Windows platform.

10/27: Agobot-ADS a Worm & Backdoor

W32/Agobot-ADS is a network worm with backdoor Trojan functionality for the Windows platform.

10/27: Spam-YFakeAccount Makes HTML Page

Spam-YFakeAccount makes use of social engineering to create fake Yahoo accounts possibly to send spam mails from those accounts later.

10/27: Dloader-XF a Windows Trojan

Troj/Dloader-XF is a Trojan for the Windows platform.

10/26: Rontokbro-K Worm Causes Instability

W32-Rontokbro-K@mm is a mass-mailing worm that causes system instability.

10/26: Nometz-B Maro Infects Documents

W97M-Nometz-B is a macro virus that infects Microsoft Word documents and uploads Word documents to a remote domain.

10/26: Bkdr_Mosucker-AI Backdoor Drops File

Bkdr_Mosucker.AI is a memory-resident backdoor that drops the file named LSASS.EXE, which is also detected as BKDR_MOSUCKER.AI, into the Fonts folder.

10/26: Naiva-A a Macro Trojan

Naiva.A is a macro Trojan that reaches the computer in a Word document that, once opened, drops the Trojan detected as Ranky.FY.

10/26: Rbot-ATE Worm and Backdoor

W32/Rbot-ATE is a worm and IRC backdoor Trojan for the Windows platform.

10/26: Agobot-TW a Worm and Trojan

W32/Agobot-TW is a worm and backdoor Trojan for the Windows platform.

10/26: Keylog-AP a Keylogging Trojan

Troj/Keylog-AP is a keylogging Trojan for the Windows platform.

10/26: Chode-J Worm Has IRC Backdoor

W32/Chode-J is a worm with IRC backdoor Trojan functionality.

10/26: Backdoor.Bifrose-D Trojan Sends Info

Backdoor.Bifrose.D is a Trojan horse that opens a back door and sends information to a remote server.

SMBs Getting Hammered by New Threats

A new study shows small to medium businesses lack the expertise to battle phishing and spyware.

10/25: Mytob-BZ a Mass-Mail Worm

W32/Mytob-BZ is a mass-mailing worm and backdoor Trojan that can be controlled through the Internet Relay Chat (IRC) network.

10/25: SymbOS-Cabir-V Worm Hits Bluetooth

SymbOS-Cabir-V is a proof-of-concept worm that propagates through Bluetooth-enabled devices.

10/25: Rontokbro-J Worm Copies Itself

Worm_Rontokbro.J propagates by sending a copy of itself as an attachment to email messages.

10/25: Exedrop-E a Macro Virus

W97M_Exedrop.E is a macro virus that arrives on a system attached to a Microsoft Word document file.

10/25: IRCbot-AW a Backdoor Program

Bkdr_Ircbot.AW is a backdoor program that does not propagate on its own.

10/25: Rbot-APU a Worm and Trojan

W32/Rbot-APU is a worm and IRC backdoor Trojan for the Windows platform.

10/25: Lerma-A Worm May Overwrite Files

W32/Lerma-A is a worm for the Windows platform that can spread to other networked computers.

10/26: Mydoom-FP a Mass-Mailing Worm

W32.Mydoom.FP@mm is a mass-mailing worm that uses its own SMTP engine to spread by email.

10/25: Brontok-D an Email Worm

W32/Brontok-D is an email worm that sends itself to the addresses gathered from the infected computer by searching files with the following extensions:

ASP, CFM, CSV, DOC, EML, HTML, PHP, TXT, WAB

10/25: Tilebot-P a Worm and IRC Trojan

W32/Tilebot-P is a worm and IRC backdoor Trojan for the Windows platform.

10/25: Mydoom-FP Worm Uses Own Engine

W32-Mydoom-FP@mm is a mass-mailing worm that uses its own SMTP engine to spread by email.

10/25: Loosky-A a Mass-Mailing Worm

Several security vendors have issued alerts for W32/Loosky-A, a mass-mailing worm for the Windows platform.

10/25: Trojan.Finfanse Captures Screenshots

Trojan-Finfanse is a Trojan horse that attempts to capture screenshots of various online games and send them to a predetermined server.

10/25: Naiva-A a Macro Trojan

Naiva.A is a macro Trojan that reaches the computer in a Word document that, once opened, drops the Trojan detected as Ranky.FY.

10/25: Exedrop Trojan Drops, Executes File

W97M.Exedrop is a Trojan horse that drops and executes a file.

10/25: Rbot-ATD Worm Also an IRC Trojan

W32/Rbot-ATD is a worm and IRC backdoor Trojan for the Windows platform.

10/25: Trojan-Zlob-D Makes Encryption Key

Trojan.Zlob.D is a Trojan horse that creates an encryption key and can download and execute remote files.

10/24: Feutel-AD a Backdoor Trojan

Troj/Feutel-AD is a backdoor Trojan for the Windows platform.

10/24: Mocbot-A a Backdoor Program

Bcdr_Mocbot.A is a memory-resident backdoor program that takes advantage of a Microsoft Plug and Play vulnerability.

10/24: Rbot-ATC Worm Exploits Flaws

W32/Rbot-ATC spreads to other network computers by exploiting common buffer overflow vulnerabilities, including: LSASS (MS04-011), RPC-DCOM (MS04-012) and WKS (MS03-049) (CAN-2003-0812) and by copying itself to network shares protected by weak passwords.

10/24: Backdoor.Eparssa Trojan Opens Door

Backdoor.Eparssa is a Trojan horse that opens a back door on a compromised computer.

10/24: IRCBot-NT Trojan Links to Servers

IRCBot.NT is a backdoor that connects to several IRC servers in order to receive remote control commands.

10/24: Mytob-FC a Mass-Mailing Worm

W32/Mytob-FC is a mass-mailing worm and backdoor Trojan that can be controlled through the Internet Relay Chat (IRC) network.

Finding the Right Mix for Information Assurance

Columnist Penny Klein says there are three key areas to information assurance. If your company isn't focused on all three, you're not really secured.

10/24: Brontok-E Worm Copies Itself

W32/Brontok-E is a worm that spreads by copying itself to network shares and by emailing itself to addresses harvested from files stored locally.

10/24: Kelvir-CP Worm Sends Itself

Worm_Kelvir.CP propagates by sending copies of itself to all MSN and AIM Messenger contacts of an affected system's user.

10/24: Hanlo-B Trojan Contacts Server

Troj/Hanlo-B is a Trojan for the Windows platform.

10/24: PWSteal.Tarno-P Nabs Passwords

PWSteal.Tarno.P is a password-stealing Trojan horse that attempts to log information entered into Web forms.

10/21: Backdoor.Darkmoon-B a Keylogger Trojan

Backdoor.Darkmoon.B is a Trojan horse that opens a back door on a compromised computer and has keylogging capabilities.

10/21: Paymite-B a Start Page Trojan

Troj/Paymite-B is a Start Page Trojan.

10/21: Dloader-WO a Downloader Trojan

Troj/Dloader-WO is a downloader Trojan for the Windows platform.

10/21: Mitglie-CE a Backdoor Trojan

Troj/Mitglie-CE is a backdoor Trojan that allows a remote intruder to gain access and control over the computer.

10/21: Rbot-AST Worm has Backdoor

W32/Rbot-AST is a worm and backdoor Trojan for the Windows platform.

10/21: Goldun-B Worm in File Download

Worm-Goldun-B usually arrives on an affected system as a downloaded file of TROJ-DLOADER-AJQ.

10/21: Perda-G Trojan Lets Intruder In

Troj/Perda-G is a backdoor Trojan that allows a remote intruder to gain access and control over the computer.

10/21: WeatherBug a Hacking Tool App

WeatherBug is a program that installs the application called MyWay on the infected computer.

Gambling, Porn in Workplace Breed Spyware

Some security experts say 50 percent of spyware on corporate networks is caused by workers visiting pornographic and gambling sites while on the job. What should you do?

10/20: PWSteal.Tarno-O Grabs Passwords

PWSteal-Tarno-O is a password-stealing Trojan horse program that attempts to log information entered into Web forms.

10/20: Juny-B Trojan Encrypts Files

Like its predecessor, TROJ_JUNY.A, Trojan_Juny.B encrypts files of certain types, such as Microsoft Word documents, HTML files, text files, and ZIP files, so that they can no longer be opened or executed by an affected user.

10/20: Mytob-MD Worm Drops Copy

Upon execution, Worm-Mytob-MD drops a copy of itself as MSCDVVS.EXE in the Windows system folder.

10/20: Fanbot-F Displays Fake Message

Upon execution, Worm-Fanbot-F displays a fake error message to trick users into thinking that the file did not run on an affected system.

10/20: Worm_Combra-G Uses Own Engine

Worm_Combra.G propagates by sending an email message that contains a link, which it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine, causing heavy network traffic.

10/20: Spybot-YXX Worm Opens Door

W32.Spybot-YXX is a network-aware worm that opens a back door on the compromised computer.

10/20: Mytob-GR a Mass-Mailing Worm

W32/Mytob-gr@MM is a mass-mailing worm that combines W32/Mydoom@MM functionality with W32/Sdbot.worm functionality.

10/20: Rbot-ANK Worm Has Backdoor

W32/Rbot-ANK is a worm with backdoor functionality for the Windows platform.

10/20: Rbot-ASS a Worm and Trojan

W32/Rbot-ASS is a worm and IRC backdoor Trojan for the Windows platform.

10/20: Tompai-B a Backdoor Trojan

Troj/Tompai-B is a backdoor Trojan for the Windows platform.

10/20: Fanbot-Gen Detects Email Worms

W32/Fanbot-Gen detects members of the W32/Fanbot family of mass-mailing worms.

10/20: Squado-A a Downloader Trojan

Troj/Squado-A is a downloader Trojan for the Windows platform.

10/20: Botter-A Worm Uses Mail, IRC

W32.Botter.A@mm is a mass-mailing worm that also spreads through IRC.

Swift Mytob Worm is Back

Prolific worm rears its head once again

10/20: DNSChanger-A Trojan Copies Itself

DNSChanger-A is a Trojan that when run, (usually by user executing the file), the file would copy itself.

Email Security: How Much is Enough?

Corporate networks are under attack from email threats and viruses. To protect the network, we layer security, but how many layers are enough? How much is too little?

10/20: Yabe-B Trojan Spreads Via Email

Troj-Yabe.B is a memory-resident Trojan that propagates via email messages sent by a remote malicious user.

10/20: Rbot-ASV Worm also a Trojan

W32/Rbot-ASV is a worm and IRC backdoor Trojan for the Windows platform.

10/20: Sdbot-AEH Trojan Lets Intruder In

Troj/Sdbot-AEH is a backdoor Trojan that allows a remote intruder to gain access and control over the computer via IRC channels.

10/20: Trojan-Gamqowi Lowers Settings

Trojan-Gamqowi is a Trojan horse that opens a back door and lowers security settings on the compromised computer.

10/20: Fanbot-K Worm Runs in Background

W32/Fanbot-K is an email, network and P2P worm and IRC backdoor for the Windows platform.

10/19: Mytob-LZ Worm Uses Own Engine

Similar to other MYTOB variants, Worm-Mytob.LZ spreads copies of itself as an attachment to an email message that it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

10/19: Loxbot-A Worm Opens Back Door

W32-Loxbot-A is a worm that opens a back door and can receive commands from a remote attacker.

10/19: Rbot-ASI Worm, Backdoor Trojan

W32/Rbot-ASI is a worm and IRC backdoor Trojan for the Windows platform.

10/19: Brontok-A Worm Searches Files

W32/Brontok-A is an email worm that sends itself to addresses gathered from the infected computer by searching files with the following extensions: ASP, CFM, CSV, DOC, EML, HTML, PHP, TXT, WAB

10/19: AKeyLogger a Hacking Tool

AKeyLogger is a hacking tool.

10/19: Talandra-F a Backdoor Trojan

Troj/Taladra-F is a backdoor Trojan for the Windows platform.

10/19: Bagle-AP an Email Worm

W32/Bagle-AP is an email worm for the Windows platform.

10/19: Fanbot-E Shows Error Message

Upon execution, Worm-Fanbot-E displays an error message.

10/19: Drefir-F Worm Uses Email, IRC

Like earlier DREFIR variants, Worm-Drefir-F has the capability to spread via email and Internet Relay Chat (IRC).

10/19: Juny-A Trojan Drops Russian File

Troj_Juny.A is a Trojan that drops the file OHGDEV J B@L B CNQRH!.TXT, which roughly translates from Russian to English as PIZDETS TO YOU IN GUESTS!.TXT.

10/19: Mytob-MB Worm Drops Copy

Upon execution, Worm-Mytob-MB drops a copy of itself as TASKGMR.EXE in the Windows system folder.

10/18: Exploit-Ssploit Targets Flaw

Exploit-Ssploit is a generic detection for a proof-of-concept Trojan that exploits the COM Structured Storage Vulnerability ( MS05-12 ) affecting Microsoft Windows operating systems.

10/18: Fanbot-C Worm in an Attachment

Worm_Fanbot.C spreads copies of itself as an attachment to email messages that it sends to target recipients, using its own Simple Mail Transfer Protocol (SMTP) engine.

10/18: Mytob-FA a Mass-Mailing Worm

W32/Mytob-FA is a mass-mailing worm and backdoor Trojan that can be controlled through the Internet Relay Chat (IRC) network.

10/18: Mytob-LE Worm Lowers Security

W32.Mytob.LE@mm is a mass-mailing worm that opens a back door and lowers security settings on the compromised computer.

10/18: Bancban-AN a Data-Stealing Trojan

Troj/Bancban-AN is a data stealing Trojan that attempts to capture confidential information related to internet banking, such as usernames and logon passwords.

10/18: Rbot-ASF Worm also a Trojan

W32/Rbot-ASF is a worm and IRC backdoor Trojan for the Windows platform.

10/18: Rbot -ASH Worm has Backdoor

W32/Rbot-ASH is a network worm with backdoor Trojan functionality for the Windows platform.

10\/18: Sdbot-AEB Trojan Creates Files

W32/Sdbot-AEB is a worm and backdoor Trojan for the Windows platform.

10/18: Leebad-A Worm Copies Files

W32/Leebad-A is a worm for the Windows platform that copies files to the root folder of all functional drives, including network drives.

10/18: Codbot-AF Worm also a Trojan

W32/Codbot-AF is a worm and IRC backdoor Trojan for the Windows platform.

10/18: Agobot-TV Worm Lets Intruder In

W32/Agobot-TV is a worm and IRC backdoor Trojan for the Windows platform.

10/18: Sdbot-AEA Worm Creates Entries

W32/Sdbot-AEA is a worm and IRC backdoor Trojan for the Windows platform.

10/18: Mytob-LV Worm Uses Own Engine

Like other WORM_MYTOB variants, Worm_Mytob.LV spreads by attaching a copy of itself to an email message, which it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

10/18: Tilebot-AD Worm Copies Itself

W32/Tilebot-AD is a worm and IRC backdoor Trojan for the Windows platform.

10/17: GrayBird-X a Backdoor Trojan

Troj/GrayBird-X is a backdoor Trojan for the Windows platform.

10/17: Dloader-WF a Downloader Trojan

Troj/Dloader-WF is a downloader for the Windows platform.

10/17: Mytob-KU Worm Lowers Security

W32.Mytob.KU@mm is a mass-mailing worm that opens a back door and lowers security settings on the compromised computer.

10/17: Fanbot-H a P2P Worm and Trojan

W32/Fanbot-H is a mass-mailing and P2P worm and IRC backdoor Trojan for the Windows platform.

10/17: SVrAny-A a Hacking Tool

SvrAny.A is a hacking tool.

10/17: Dadobra-H Trojan Accesses Internet

Troj/Dadobra-H is a Trojan for the Windows platform.

10/17: Rbot-APJ Worm Has Trojan Functions

W32/Rbot-APJ is a network worm with backdoor Trojan functionality for the Windows platform.

10/17: Trojan-Ssploit-A Hidden in Other Virus

TROJ-SSPLOIT.A is a proof-of-concept Trojan that may arrive on a system as a component of other malware.

10/17: Mytob-EY a Worm and IRC Trojan

W32/Mytob-EY is a mass-mailing worm and IRC backdoor Trojan for the Windows platform.

10/17: Mytob-GH Worm Sends Emails

W32/Mytob-GH is a mass-mailing worm and IRC backdoor Trojan for the Windows platform.

10/17: Rbot-ARZ Worm and Backdoor

W32/Rbot-ARZ is a worm and IRC backdoor Trojan for the Windows platform.

10/17: Dabora-A Worm Arrives Via Email

Worm_Dabora.A is a memory-resident worm that arrives on an affected system via email.

10/17: Mytob-EZ a Mass-Mail Worm

W32/Mytob-EZ is a mass-mailing worm and IRC backdoor Trojan.

IRCbot Trojan Spoofing Skype

Researchers discover new malware variant that teases with a fake Skype app.

10/17: Rbot-ARM Worm and Trojan

W32/Rbot-ARY is a worm and IRC backdoor Trojan for the Windows platform.

10/14: Agobot-TS Worm Runs Silently

W32/Agobot-TS is a worm for the Windows platform.

10/14: Opanki-AD Worm Drops a Copy

Upon execution, Worm-Opanki.AD drops a copy of itself as LOCKX.EXE in the Windows system folder.

10/14: Mytob-LL Worm Has Own Engine

Worm-Mytob.LL propagates by sending a copy of itself as an attachment to email messages, which it sends to target recipients, using its own Simple Mail Transfer Protocol (SMTP) engine.

10/14: Mytob-KP Worm Lowers Security

W32.Mytob.KP@mm is a mass-mailing worm that opens a back door and lowers security settings on the compromised computer.

10/14: Agobot-AXJ Worm Uses Shares

Worm_Agobot.AXJ propagates via network shares.

10/14: Lebreat-A Worm Uses LSASS Flaw

W32/Lebreat-A is a worm with a backdoor component for the Windows platform.

10/14: Sober-L a Mass-Mailing Worm

W32/Sober-L is a mass-mailing worm for the Windows platform.

Red Hat Tests Security Skills

The Linux distributor launches a performance-based security cert for the OS.

10/14: Rbot-ARQ Worm also a Trojan

W32/Rbot-ARQ is a worm and IRC backdoor Trojan for the Windows platform.

10/14: Agent-EN Trojan Steals Information

Troj/Agent-EN is a Trojan for the Windows platform.

10/14: Mytob-EX a Mass-Mailing Worm

W32/Mytob-EX is a mass-mailing worm and IRC backdoor Trojan.

10/13: Rbot-ARH Worm and Trojan Lets Intruders In

W32/Rbot-ARH is a worm and IRC backdoor Trojan for the Windows platform.

10/13: Istbar-BT a Downloader Trojan

Troj/Istbar-BT is a downloader Trojan for the Windows platform.

10/13: Rbot-CLS Worm Dropped by Other Worm

Worm_Rbot.CLS arrives as a dropped file of another malware that Trend Micro detects as WORM_KELVIR.CL.

10/13: Kelvir-CL Worm Spreads Via IM

Some security vendors have issued alerts for Kelvir-CL worm, which spreads via the instant messaging application MSN Messenger.

10/13: Sdbot-ADY a Worm and Trojan

W32/Rbot-ARI is a worm and IRC backdoor Trojan for the Windows platform.

10/13: Small-QJ Trojan Contacts Remote Server

Troj/Small-QJ is a Trojan for the Windows platform.

10/13: Mytob-LJ Worm Uses Own Engine

Like other WORM_MYTOB variants, Worm_Mytob.LJ spreads by attaching a copy of itself to an email message that it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

10/12; Bibot-A Worm has Backdoor

W32/Bibot-A is a worm and IRC backdoor Trojan for the Windows platform.

10/12:: Rbot-ARD Worm attacks Windows

W32/Rbot-ARD is a worm and IRC backdoor Trojan for the Windows platform.

10/12; Spybot-DX a Worm and Trojan

W32/Spybot-DX is a worm and IRC backdoor Trojan for the Windows platform.

10/12: Fanbot-A Worm also a Trojan

W32/Fanbot-A is a worm and IRC backdoor Trojan for the Windows platform.

10/12: Stubbot-D Worm also a Trojan

W32/Stubbot-D is a worm and IRC backdoor Trojan for the Windows platform.

10/12: Alasrou-A Worm Nabs Addresses

W32/Alasrou-A is an email address harvesting worm for the Windows platform.

10/12: Rbot-AQW Worm also a Trojan

W32/Rbot-AQW is a network worm with backdoor Trojan for the Windows platform.

10/12: Mytob-DW Worm also an IRC Trojan

W32/Mytob-DW is a worm and IRC backdoor Trojan for the Windows platform.

10/12: Forbot-CI Trojan also a Worm

W32/Forbot-CI is an IRC backdoor Trojan and network worm for the Windows platform.

10/12: Lebreat-A Worm Has Backdoor

W32/Lebreat-A is a worm with a backdoor component for the Windows platform.

10/12: Rontokbro-C Worm Copies Itself

Worm_Rontokbro.C is a memory-resident worm that propagates by sending a copy of itself to email messages.

10/12: Mytob-KM a Mass-Mailing Worm

W32.Mytob.KM@mm is a mass-mailing worm that opens a back door and lowers security settings on the compromised computer.

10/12: Backdoor.Graybird-R a Hidden Trojan

Backdoor.Graybird.R is a Trojan horse that hides its presence on the compromised computer and downloads remote files.

10/12: Rbot-ARE Worm and Trojan Exploits Flaws

W32/Rbot-ARE is a worm and IRC backdoor Trojan for the Windows platform.

10/12: Mytob-LH Worm Uses Own Engine

Like other WORM_MYTOB variants, Worm_Mytob.LH spreads by attaching a copy of itself to an email message, which it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

10/12: Rontokbro-D Worm Drops Itself

Worm_Rontokbro.D is a memory-resident worm that drops several copies of itself into various folder locations on the affected system.

10/11: Rbot-AQQ Worm also a Trojan

W32/Rbot-AQQ is a worm and IRC backdoor Trojan for the Windows platform.

10/11: Trojan.DSBrick-A Targets Nintendo

Trojan.DSBrick.A is a Trojan horse that overwrites critical portions of memory on Nintendo DS devices, preventing the device from operating correctly.

10/11: Codbot-AD Worm also a Trojan

W32/Codbot-AD is a worm and IRC backdoor Trojan for the Windows platform.

10/11: Lyus-N a Downloader Trojan

Troj/Iyus-N is a downloader Trojan.

10/11: Backdoor.Nibu-O Runs Keylogger

Backdoor-Nibu-O is a Trojan horse that opens a back door on a compromised computer.

10/11: Zafi-F Worm Uses Own Engine

W32/Zafi.f@MM is a new variant of the Zafi worm.

10/11: Agobot-TR Worm also a Backdoor

W32/Agobot-TR is a worm and IRC backdoor Trojan for the Windows platform.

10/11: Trojan.DSBrick-B Targets Nintendo

Trojan.DSBrick.B is a Trojan horse that overwrites critical portions of memory on Nintendo DS devices, preventing the device from operating correctly.

Mobile Workers Cut Gaping Hole in Security

As a growing army of mobile workers hit the road with their trusty laptops, few of them are properly secured. And that could mean big trouble for the corporate network... and critical corporate data.

Microsoft Addresses Tardy Patch

The company releases three critical, four important and two moderate security bulletins, including one held from last month.

10/11: Brontok-A an Email Worm

W32/Brontok-A is an email worm that sends itself to addresses gathered from the infected computer.

10/11: Lecna-D a Backdoor Trojan

Troj/Lecna-D is a backdoor Trojan for the Windows platform.

10/11: Bkdr_Vipgsm-C a Backdoor Program

Bkdr_Vipgsm.C is a memory-resident backdoor program that may arrive on a system as a downloaded file of other malware, such as TROJ_AGENT.ABT.

10/10: Mirchack-A Trojan a Client Program

Troj/Mirchack-A is a copy of the mIRC32 client program that has been hacked to work in conjunction with an mIRC backdoor Trojan.

10/10: Erkez-G an Email, P2P Worm

For the second time in three days, a security vendor is issuing an alert for W32/Erkez-G, an email and peer-to-peer worm for the Windows platform.

10/10: Mytob-EV Worm also a Trojan

W32/Mytob-EV is a mass-mailing worm and IRC backdoor Trojan.

10/10: Kangaroo-B Monitors Windows

W32/Kangaroo-B is a worm for the Windows platform.

10/10: Agobot-TP Worm also a Backdoor

W32/Agobot-TP is a worm and IRC backdoor Trojan for the Windows platform.

10/10: Rbot-AOP Worm is a Backdoor

W32/Rbot-AOP is a network worm and IRC backdoor Trojan for the Windows platform.

10/10: Mytob-LF Worm Arrives as Attachment

Worm_Mytob.LF arrives as an attachment to certain email messages.

10/10: Rbot-AQM Worm also a Trojan

W32/Rbot-AQM is a worm and IRC backdoor Trojan for the Windows platform.

Microsoft to Patch 9 on Tuesday

Is XP SP3 in the wings?

10/10: Sdbot-ADV Worm also a Trojan

W32/Sdbot-ADV is a worm and IRC backdoor Trojan for the Windows platform.

10/10: Rbot-AQO Trojan Lets Hacker In

W32/Rbot-AQO is a worm and IRC backdoor Trojan for the Windows platform that allows a remote intruder to gain access and control over the computer.

10/10: Rbot-AQP Worm also a Trojan

W32/Rbot-AQP is a worm and IRC backdoor Trojan for the Windows platform.

10/7: Erkez-G a Mass-Mailing Worm

W32.Erkez.G@mm is a mass-mailing worm that sends itself to email addresses gathered from the compromised computer.

10/7: Beagle-CR Worm Uses Own Engine

W32.Beagle.CK@mm is a mass-mailing worm that uses its own SMTP engine to email copies of itself to addresses gathered from the compromised computer.

10/7: Downloader-FHO Drops Second Trojan

Downloader-FHO is a Trojan that downloads from a certain web page another Trojan detected as Rivarts.A to the affected computer.

10/7: Mytob-ES Worm Lets Intruder In

W32/Mytob-ES is a mass-mailing worm and IRC backdoor Trojan.

10/7: Trojan.Satiloler Steals Information

Trojan.Satiloler is a Trojan horse that attempts to steal user names, passwords, and other computer information.

10/7: Sisery-A Trojan a 'Nuisance' Program

Troj/Sisery-A is a Trojan for the Windows platform.

10/7: Rivarts-A Trojan Logs Keystrokes

Rivarts.A is a Trojan that logs the keystrokes entered by the user, blocks web addresses and stores the certificates used in the affected computer.

10/7: Sober-L a Mass-Mailing Worm

W32/Sober-L is a mass-mailing worm for the Windows platform.

10/7: Mytob-LA Worm Arrives as Attachment

Similar to other MYTOB variants, Worm_Mytob.LA spreads copies of itself as an attachment to an email message that it sends to target recipients using its own Simple Mail Transfer Protocol (SMTP) engine.

10/7: Agent-ABT Trojan Executes File

Troj_Agent.ABT is a Trojan that attempts to download and execute a file from a specific Web site before terminating itself.

10/7: Beagle-CL Worm Uses Own Engine

W32.Beagle.CL@mm is a mass-mailing worm with back door capabilities that uses its own SMTP engine to email copies of itself to addresses gathered from the compromised computer.

10/7: Tilebot-AA Worm Spreads to Shares

W32/Tilebot-AA is a worm that attempts to spread to remote network shares.

Vendors Team Up to Solve Virus Naming Confusion

A growing group of anti-virus companies are working together to tackle the confusion that grows out of the same malware getting different names from different vendors.

Targeted Virus Attacks Replace Sweeping Assaults

Massive virus attacks that clobber the Internet are giving way to pin-pointed assaults that quietly go after specific companies and agencies.