mwblog.org

MWBLOG.ORG


Virus Malware and Threat News for 20080528



Zinaps

- Zinaps at Norton Symantec

BehaviorZinaps is a misleading application that may give exaggerated reports of threats on the computer.
...

Spyware.Borzoi

- Spyware.Borzoi at Norton Symantec

BehaviorSpyware.Borzoi is a spyware program that records keystrokes and other information on the computer.
...

W32.Emsenush.A

- W32.Emsenush.A at Norton Symantec

W32.Emsenush.A is a worm that spreads through Windows instant messaging clients.
...

HTML_DLDR.BF

- HTML_DLDR.BF at Trend Micro

This HyperText Markup Language (HTML) may be hosted on a Web site and run when a user accesses the said Web
site. It may be downloaded unknowingly by a user when visiting malicious Web sites.When executed, it attempts
to access a certain Web site to download and execute file(s). Trend Micro detects the downloaded files as
SWF_DLOADE...

SWF_DLOADER.ZTS

- SWF_DLOADER.ZTS at Trend Micro

This malicious Shockwave Flash (.SWF) object arrives on a system as a downloaded file from remote sites by
JS_AGENT.AINS.It is a specially crafted .SWF file that exploits an unknown vulnerability in Adobe Flash Player.
Once the said vulnerability is successfully exploited, it then checks the Flash player version installed on
the aff...

SWF_DLOADER.YVN

- SWF_DLOADER.YVN at Trend Micro

...

SWF_DLOADER.YVM

- SWF_DLOADER.YVM at Trend Micro

This malicious Shockwave Flash (.SWF) object arrives on a system as attachment to email messages spammed by
another malware or a malicious user. It may also be installed manually by a user.When executed, it exploits
the following vulnerability:Integer Overflow in Adobe Flash Player Allows Remote Arbitrary Code ExecutionOnce
the sai...

JS_AGENT.AINS

- JS_AGENT.AINS at Trend Micro

This obfuscated JavaScript (JS) malware may be downloaded unknowingly by a user when visiting a certain
malicious Web site. It may also be hosted on a Web site and run when a user accesses the said site.When users
access the site where it is hosted, users are then directed to more sites where files that Trend Micro
detected as SWF_D...

Tixcet.A

- Tixcet.A at Panda

It deletes files with several extensions (.DOC, .MP3, .MOV, .ZIP, .JPG, among others) and replaces them with a
copy of itself, keeping the same name as the original files. It reaches the computer passing itself off as a
Word document in order to deceive users and spreads making copies of itself in all the system.
...

AdvancedXPFixer

- AdvancedXPFixer at Panda

It deceives users and warns them of unexisting threats in their computers. In order to eliminate them, they
are enticed to purchase a certain program. It can be downloaded from the website belonging to the company that
has developed it....

Troj/Mdrop-BSR

- Troj/Mdrop-BSR at Sophos

Troj/Mdrop-BSR drops a file detected as Troj/KeyLog-KB.
...

Troj/Proxy-IM

- Troj/Proxy-IM at Sophos

...

Troj/Pushu-Gen

- Troj/Pushu-Gen at Sophos

Troj/Pushu-Gen is a family of Trojans for the Windows platform. When
members of Troj/Pushu-Gen are installed one of the following files is usually created:
<Windows>\system32\drivers\ip6fw.sys <Windows>\system32\drivers\netdtect.sys
<Window...

W32/Spar-A

- W32/Spar-A at Sophos

W32/Spar-A is a P2P worm for the Windows platform. W32/Spar-A copies an RAR
archive of itself using over 300 filenames to a number of P2P folders, including those for the following
applications:   eMule   LimeWire
  eDonkey ...

Mal/EncPk-CC

- Mal/EncPk-CC at Sophos

Mal/EncPk-CC is a program which is packed with an encryption layer typically used by a family of
Trojans which display fake messages about threats found on the computer.
...

Mal/RKRustok-B

- Mal/RKRustok-B at Sophos

Mal/RKRustok-B is a member of the Rustok family of rootkits or is a file infected by the Rustok
family of rootkits.
...

Troj/Agent-GZX

- Troj/Agent-GZX at Sophos

Troj/Agent-GZX is a malware component that includes functionality to inject code into other
processes.
...

Troj/AutoInf-M

- Troj/AutoInf-M at Sophos

...

0 writebacks [05/29/2008 04:41] [] permanent link



July 2010
Sun Mon Tue Wed Thu Fri Sat
       

Rss version