mwblog.org

MWBLOG.ORG


Virus Malware and Threat News for 20090928



Troj/Renos-DW

- Troj/Renos-DW at Sophos

...

Troj/Agent-LGT

- Troj/Agent-LGT at Sophos

Troj/Agent-LGT is a Trojan for the Windows platform. When run
Troj/Agent-LGT pretends to download Windows XP Ultimate Edition. The following registry
entries are set:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Settings\UltimateServices ...

Troj/VB-EIK

- Troj/VB-EIK at Sophos

...

Troj/Agent-LGR

- Troj/Agent-LGR at Sophos

...

Troj/Agent-LGS

- Troj/Agent-LGS at Sophos

...

Troj/Expdshow-C

- Troj/Expdshow-C at Sophos

...

Troj/TDSS-BB

- Troj/TDSS-BB at Sophos

...

Mal/Nupylos-A

- Mal/Nupylos-A at Sophos

Mal/Nupylos-A is a malicious executable, usually containing rootkit functionality, and typically
dropping the file <System>\nup.sys and installing it as a service.
...

Troj/BadPPT-A

- Troj/BadPPT-A at Sophos

...

Trojan-Downloader:W32/Fakerean.gen!A

- Trojan-Downloader:W32/Fakerean.gen!A at F-Secure

...

Trojan:W32/Patched

- Trojan:W32/Patched at F-Secure

...

Exploit:JS/Pdfka.TI

- Exploit:JS/Pdfka.TI at F-Secure

...

Downloader.Kuaiput

- Downloader.Kuaiput at Norton Symantec

Downloader.Kuaiput is a detection for a Windows shortcut file that downloads a potentially malicious file
using FTP and executes it.
...

Packed.Generic.254

- Packed.Generic.254 at Norton Symantec

Packed.Generic.254 is a heuristic detection for files that may have been obfuscated or encrypted in order to
conceal them from antivirus software.
...

W32.SillyFDC.BCX

- W32.SillyFDC.BCX at Norton Symantec

W32.SillyFDC.BCX is a worm that spreads by copying itself to removable and mapped drives.
...

Troj/BHO-NU

- Troj/BHO-NU at Sophos

...

Troj/Dldr-BU

- Troj/Dldr-BU at Sophos

...

Troj/Dldr-BV

- Troj/Dldr-BV at Sophos

...

Troj/ExpJS-J

- Troj/ExpJS-J at Sophos

Troj/ExpJS-J is a malicious JavaScript embedded in web pages that attempts to exploit client
vulnerabilities in order to download and install other malware.
...

Troj/FakeAV-ADO

- Troj/FakeAV-ADO at Sophos

...

Troj/FakeAV-ADP

- Troj/FakeAV-ADP at Sophos

...

Troj/MDrop-CGH

- Troj/MDrop-CGH at Sophos

...

Troj/Zbot-IC

- Troj/Zbot-IC at Sophos

...

W32/AutoRun-AOA

- W32/AutoRun-AOA at Sophos

W32/AutoRun-AOA is a worm for the Windows platform. When run
W32/AutoRun-AOA copies itself to <System>\system3_.exe <Windows>\system3_.
exe and creates the file <System>\autorun.ini - detected as
W32/AutoRun-AOA ...

W32/Bckdr-QYU

- W32/Bckdr-QYU at Sophos

...

Trojan-Downloader:W32/Bredolab

- Trojan-Downloader:W32/Bredolab at F-Secure

...

Trojan:W32/DelfInject.gen!H

- Trojan:W32/DelfInject.gen!H at F-Secure

...

Troj/Agent-LHK

- Troj/Agent-LHK at Sophos

...

Troj/Agent-LHL

- Troj/Agent-LHL at Sophos

...

Troj/Agent-LHN

- Troj/Agent-LHN at Sophos

...

Troj/FakeAV-ADS

- Troj/FakeAV-ADS at Sophos

...

Troj/Tiotua-BS

- Troj/Tiotua-BS at Sophos

...

W32/Agent-LHM

- W32/Agent-LHM at Sophos

W32/Agent-LHM is a worm for the Windows platform. W32/Agent-LHM includes
functionality to access the internet and communicate with a remote server via HTTP.
...

Mal/Inject-S

- Mal/Inject-S at Sophos

...

Troj/Agent-JHX

- Troj/Agent-JHX at Sophos

...

Troj/Agent-LHJ

- Troj/Agent-LHJ at Sophos

...

0 writebacks [09/29/2009 22:13] [] permanent link



July 2010
Sun Mon Tue Wed Thu Fri Sat
       

Rss version