mwblog.org

MWBLOG.ORG




0 writebacks [10/14/2009 23:10] [] permanent link





0 writebacks [10/13/2009 23:05] [] permanent link





0 writebacks [10/12/2009 23:06] [] permanent link





0 writebacks [10/11/2009 22:31] [] permanent link



Virus Malware and Threat News for 20091009



Trojan.Pandex!gen1

- Trojan.Pandex!gen1 at Norton Symantec

Trojan.Pandex!gen1 is a generic heuristic detection for files that have characteristics considered distinctive
to Trojan.Pandex....

Trojan.Zbot!gen1

- Trojan.Zbot!gen1 at Norton Symantec

Trojan.Zbot!gen1 is a heuristic detection for files that may have been obfuscated or encrypted in order to
conceal themselves from antivirus software. This detection is used to detect threats from the ZeusBot family,
including Infostealer.Banker.C.
...

W32.SillyFDC.BDC

- W32.SillyFDC.BDC at Norton Symantec

W32.SillyFDC.BDC is a worm that spreads by copying itself to removable and shared drives. It also modifies the
hosts file to redirect network traffic.
...

Mal/Behav-354

- Mal/Behav-354 at Sophos

...

Mal/EncPk-KS

- Mal/EncPk-KS at Sophos

...

Troj/Agent-LJP

- Troj/Agent-LJP at Sophos

...

Troj/Agent-LJQ

- Troj/Agent-LJQ at Sophos

...

Troj/Agent-LJR

- Troj/Agent-LJR at Sophos

...

Troj/Renos-DX

- Troj/Renos-DX at Sophos

...

Troj/VBInject-J

- Troj/VBInject-J at Sophos

...

Troj/Zbot-IR

- Troj/Zbot-IR at Sophos

...

AL/Bursted-Fam

- AL/Bursted-Fam at Sophos

AL/Bursted-Fam is a family of AutoCAD LISP (AutoLISP) virus. If an infected file is received as ACAD.LSP and
an AutoCAD Drawing is loaded from the samefolder the virus becomes resident within AutoCAD.AL/Bursted-Fam
edits the existing global ACAD.LSP or creates one to load itself at AutoCAD startup from another LSP file in
the same fo...

Worm:W32/Tater.C

- Worm:W32/Tater.C at F-Secure

...

SecurityTool

- SecurityTool at Norton Symantec

BehaviorSecurityTool is a misleading application that may give exaggerated reports of threats on the computer.
...

Packed.Generic.257

- Packed.Generic.257 at Norton Symantec

Packed.Generic.257 is a heuristic detection for files that may have been obfuscated or encrypted in order to
conceal them from antivirus software.
...

Mal/EncPk-KX

- Mal/EncPk-KX at Sophos

Mal/EncPk-KX is a malicious packed executable file, often in the Koobface family of malware.
...

Troj/Dldr-BY

- Troj/Dldr-BY at Sophos

Troj/Dldr-BY is a Trojan for the Windows platform. Troj/Dldr-BY includes
functionality to: - run automatically - create files in the
<WINDOWS>\system32 folder - access the internet and communicate with a remote server via HTTP
...

Troj/PWS-BEM

- Troj/PWS-BEM at Sophos

...

Troj/SWFDlr-Q

- Troj/SWFDlr-Q at Sophos

Troj/SWFDlr-Q is a malicious Flash file that attempts to download and execute a malicious
executable.
...

W32/AutoIt-GN

- W32/AutoIt-GN at Sophos

...

Troj/Agent-LKB

- Troj/Agent-LKB at Sophos

...

Troj/Agent-LKC

- Troj/Agent-LKC at Sophos

...

Troj/Agent-LKD

- Troj/Agent-LKD at Sophos

...

Troj/Dialer-HD

- Troj/Dialer-HD at Sophos

...

Troj/Agent-LKG

- Troj/Agent-LKG at Sophos

Troj/Agent-LKG is a Trojan for the Windows platform.
...

Troj/Hiloti-H

- Troj/Hiloti-H at Sophos

...

Troj/Zbot-IS

- Troj/Zbot-IS at Sophos

Troj/Zbot-IS is a Trojan for the Windows platform. Troj/Zbot-IS includes
functionality to: - run automatically - copy itself to the
<WINDOWS>\system32 folder - create files in the <WINDOWS>\system32 folder
When Troj/Zbo...

Troj/Zbot-IT

- Troj/Zbot-IT at Sophos

...

Troj/FakeAV-AFE

- Troj/FakeAV-AFE at Sophos

Troj/FakeAV-AFE is a Trojan for the Windows platform. Troj/FakeAV-AFE
includes functionality to:  - perform actions that may cause a system to crash
 - copy itself to the <WINDOWS>\system32 directory  - create files in the
<WINDOW...

Troj/PCClien-NI

- Troj/PCClien-NI at Sophos

...

Troj/PDFJs-DT

- Troj/PDFJs-DT at Sophos

...

Troj/PWS-BEN

- Troj/PWS-BEN at Sophos

Troj/PWS-BEN is an information stealing Trojan for the Windows platform.
When run Troj/PWS-BEN will attempt to harvest information from the infected computer and send the information
to a remote location via HTTP.
...

Mal/ZipMal-D

- Mal/ZipMal-D at Sophos

Mal/ZipMal-D is a family of malicious zip files, usually seen in spam.
...

Troj/Agent-LKF

- Troj/Agent-LKF at Sophos

...

0 writebacks [10/10/2009 23:16] [] permanent link





0 writebacks [10/09/2009 23:44] [] permanent link





0 writebacks [10/08/2009 22:33] [] permanent link





0 writebacks [10/07/2009 22:29] [] permanent link





0 writebacks [10/06/2009 22:57] [] permanent link





0 writebacks [10/05/2009 23:08] [] permanent link





0 writebacks [10/04/2009 22:30] [] permanent link



Virus Malware and Threat News for 20091002



Exploit:JS/Pidief

- Exploit:JS/Pidief at F-Secure

...

Trojan.Bredolab!gen2

- Trojan.Bredolab!gen2 at Norton Symantec

Trojan.Bredolab!gen2 is a heuristic detection for files of the Trojan.Bredolab family that may have been
obfuscated or encrypted in order to conceal themselves from antivirus software.
...

Trojan.Kissderfrom

- Trojan.Kissderfrom at Norton Symantec

Trojan.Kissderfrom is a Trojan horse that attempts to steal information from the compromised computer.
...

Mal/Varcat-A

- Mal/Varcat-A at Sophos

...

Troj/Agobot-AJE

- Troj/Agobot-AJE at Sophos

...

Troj/Bckdr-QZB

- Troj/Bckdr-QZB at Sophos

...

Troj/Bckdr-QZC

- Troj/Bckdr-QZC at Sophos

...

Troj/Bckdr-QZD

- Troj/Bckdr-QZD at Sophos

...

Troj/Bckdr-QZE

- Troj/Bckdr-QZE at Sophos

...

Troj/BredoZp-I

- Troj/BredoZp-I at Sophos

...

Troj/FTPScan-A

- Troj/FTPScan-A at Sophos

...

Troj/Iframe-DA

- Troj/Iframe-DA at Sophos

...

Troj/Patched-C

- Troj/Patched-C at Sophos

...

W32.SillyFDC.BCZ

- W32.SillyFDC.BCZ at Norton Symantec

W32.SillyFDC.BCZ is a worm that spreads by copying itself to removable and network drives. It also attempts to
download files and alters certain system settings.
...

Mal/Ambler-B

- Mal/Ambler-B at Sophos

...

Mal/Bckdr-D

- Mal/Bckdr-D at Sophos

...

Mal/EncPk-KW

- Mal/EncPk-KW at Sophos

...

Troj/Agent-KRQ

- Troj/Agent-KRQ at Sophos

...

Troj/Agent-LIK

- Troj/Agent-LIK at Sophos

...

Troj/Agent-LIN

- Troj/Agent-LIN at Sophos

...

Troj/Bckdr-QZF

- Troj/Bckdr-QZF at Sophos

...

Troj/Bckdr-QZG

- Troj/Bckdr-QZG at Sophos

...

Troj/Boaxxe-M

- Troj/Boaxxe-M at Sophos

...

Troj/Delf-FDK

- Troj/Delf-FDK at Sophos

...

Troj/Autoit-GK

- Troj/Autoit-GK at Sophos

...

Troj/Autoit-GL

- Troj/Autoit-GL at Sophos

...

Troj/Dloadr-CUW

- Troj/Dloadr-CUW at Sophos

...

Troj/FakeAV-AEH

- Troj/FakeAV-AEH at Sophos

...

Troj/KeyGen-DB

- Troj/KeyGen-DB at Sophos

...

W32/AutoRun-ASK

- W32/AutoRun-ASK at Sophos

...

Mal/Qbot-B

- Mal/Qbot-B at Sophos

...

Troj/Agent-LIR

- Troj/Agent-LIR at Sophos

...

Troj/Bckdr-QZI

- Troj/Bckdr-QZI at Sophos

...

Troj/Dloadr-CUV

- Troj/Dloadr-CUV at Sophos

...

0 writebacks [10/03/2009 22:15] [] permanent link



Virus Malware and Threat News for 20091001



MailPassView

- MailPassView at Norton Symantec

BehaviorMailPassView is a Security Assessment Tool that reveals email account details on the computer.
...

VBS.Invadesys.B

- VBS.Invadesys.B at Norton Symantec

VBS.Invadesys.B is a worm that spreads by copying itself to all drives on the compromised computer.
...

W32.Pilleuz

- W32.Pilleuz at Norton Symantec

W32.Pilleuz is a worm that spreads through file-sharing programs, Microsoft instant messaging clients and
removable drives. It also opens a back door on the compromised computer.
...

Packed.Generic.255

- Packed.Generic.255 at Norton Symantec

Packed.Generic.255 is a heuristic detection for files that may have been obfuscated or encrypted in order to
conceal them from antivirus software.
...

W32.SillyFDC.BCY

- W32.SillyFDC.BCY at Norton Symantec

W32.SillyFDC.BCY is a worm that spreads by copying itself to removable and network drives.
...

Troj/Agent-LHZ

- Troj/Agent-LHZ at Sophos

...

Troj/Bckdr-QYY

- Troj/Bckdr-QYY at Sophos

...

Troj/Bckdr-QYZ

- Troj/Bckdr-QYZ at Sophos

...

Troj/Dialer-HC

- Troj/Dialer-HC at Sophos

...

Troj/FakeAle-QN

- Troj/FakeAle-QN at Sophos

...

Troj/PWS-BEL

- Troj/PWS-BEL at Sophos

...

Troj/VB-EIO

- Troj/VB-EIO at Sophos

...

Troj/VB-EIP

- Troj/VB-EIP at Sophos

...

Troj/VB-EIQ

- Troj/VB-EIQ at Sophos

...

W32/Autorun-ASC

- W32/Autorun-ASC at Sophos

...

Exploit:JS/Pidief

- Exploit:JS/Pidief at F-Secure

...

Trojan.Bredolab!gen2

- Trojan.Bredolab!gen2 at Norton Symantec

Trojan.Bredolab!gen2 is a heuristic detection for files of the Trojan.Bredolab family that may have been
obfuscated or encrypted in order to conceal themselves from antivirus software.
...

Trojan.Kissderfrom

- Trojan.Kissderfrom at Norton Symantec

Trojan.Kissderfrom is a Trojan horse that attempts to steal information from the compromised computer.
...

Mal/Varcat-A

- Mal/Varcat-A at Sophos

...

Troj/Agobot-AJE

- Troj/Agobot-AJE at Sophos

...

Troj/Bckdr-QZB

- Troj/Bckdr-QZB at Sophos

...

Troj/Bckdr-QZC

- Troj/Bckdr-QZC at Sophos

...

Troj/Bckdr-QZD

- Troj/Bckdr-QZD at Sophos

...

Troj/Bckdr-QZE

- Troj/Bckdr-QZE at Sophos

...

Troj/BredoZp-I

- Troj/BredoZp-I at Sophos

...

Troj/FTPScan-A

- Troj/FTPScan-A at Sophos

...

Troj/Iframe-DA

- Troj/Iframe-DA at Sophos

...

Troj/Patched-C

- Troj/Patched-C at Sophos

...

W32.SillyFDC.BCZ

- W32.SillyFDC.BCZ at Norton Symantec

W32.SillyFDC.BCZ is a worm that spreads by copying itself to removable and network drives. It also attempts to
download files and alters certain system settings.
...

Mal/Ambler-B

- Mal/Ambler-B at Sophos

...

Mal/Bckdr-D

- Mal/Bckdr-D at Sophos

...

Mal/EncPk-KW

- Mal/EncPk-KW at Sophos

...

Troj/Agent-KRQ

- Troj/Agent-KRQ at Sophos

...

Troj/Agent-LIK

- Troj/Agent-LIK at Sophos

...

Troj/Agent-LIN

- Troj/Agent-LIN at Sophos

...

Troj/Bckdr-QZF

- Troj/Bckdr-QZF at Sophos

...

Troj/Bckdr-QZG

- Troj/Bckdr-QZG at Sophos

...

Troj/Boaxxe-M

- Troj/Boaxxe-M at Sophos

...

Troj/Delf-FDK

- Troj/Delf-FDK at Sophos

...

0 writebacks [10/02/2009 22:14] [] permanent link



Virus Malware and Threat News for 20090930



Trojan-Downloader:W32/Bredolab

- Trojan-Downloader:W32/Bredolab at F-Secure

...

Trojan:W32/DelfInject.gen!H

- Trojan:W32/DelfInject.gen!H at F-Secure

...

Troj/Agent-LHK

- Troj/Agent-LHK at Sophos

...

Troj/Agent-LHL

- Troj/Agent-LHL at Sophos

...

Troj/Agent-LHN

- Troj/Agent-LHN at Sophos

...

Troj/FakeAV-ADS

- Troj/FakeAV-ADS at Sophos

...

Troj/Tiotua-BS

- Troj/Tiotua-BS at Sophos

...

W32/Agent-LHM

- W32/Agent-LHM at Sophos

W32/Agent-LHM is a worm for the Windows platform. W32/Agent-LHM includes
functionality to access the internet and communicate with a remote server via HTTP.
...

Mal/Inject-S

- Mal/Inject-S at Sophos

...

Troj/Agent-JHX

- Troj/Agent-JHX at Sophos

...

Troj/Agent-LHJ

- Troj/Agent-LHJ at Sophos

...

MailPassView

- MailPassView at Norton Symantec

BehaviorMailPassView is a Security Assessment Tool that reveals email account details on the computer.
...

VBS.Invadesys.B

- VBS.Invadesys.B at Norton Symantec

VBS.Invadesys.B is a worm that spreads by copying itself to all drives on the compromised computer.
...

W32.Pilleuz

- W32.Pilleuz at Norton Symantec

W32.Pilleuz is a worm that spreads through file-sharing programs, Microsoft instant messaging clients and
removable drives. It also opens a back door on the compromised computer.
...

Packed.Generic.255

- Packed.Generic.255 at Norton Symantec

Packed.Generic.255 is a heuristic detection for files that may have been obfuscated or encrypted in order to
conceal them from antivirus software.
...

W32.SillyFDC.BCY

- W32.SillyFDC.BCY at Norton Symantec

W32.SillyFDC.BCY is a worm that spreads by copying itself to removable and network drives.
...

Troj/Agent-LHZ

- Troj/Agent-LHZ at Sophos

...

Troj/Bckdr-QYY

- Troj/Bckdr-QYY at Sophos

...

Troj/Bckdr-QYZ

- Troj/Bckdr-QYZ at Sophos

...

Troj/Dialer-HC

- Troj/Dialer-HC at Sophos

...

Troj/FakeAle-QN

- Troj/FakeAle-QN at Sophos

...

Troj/PWS-BEL

- Troj/PWS-BEL at Sophos

...

Troj/VB-EIO

- Troj/VB-EIO at Sophos

...

Troj/VB-EIP

- Troj/VB-EIP at Sophos

...

Troj/VB-EIQ

- Troj/VB-EIQ at Sophos

...

W32/Autorun-ASC

- W32/Autorun-ASC at Sophos

...

Exploit:JS/Pidief

- Exploit:JS/Pidief at F-Secure

...

Trojan.Bredolab!gen2

- Trojan.Bredolab!gen2 at Norton Symantec

Trojan.Bredolab!gen2 is a heuristic detection for files of the Trojan.Bredolab family that may have been
obfuscated or encrypted in order to conceal themselves from antivirus software.
...

Trojan.Kissderfrom

- Trojan.Kissderfrom at Norton Symantec

Trojan.Kissderfrom is a Trojan horse that attempts to steal information from the compromised computer.
...

Mal/Varcat-A

- Mal/Varcat-A at Sophos

...

Troj/Agobot-AJE

- Troj/Agobot-AJE at Sophos

...

Troj/Bckdr-QZB

- Troj/Bckdr-QZB at Sophos

...

Troj/Bckdr-QZC

- Troj/Bckdr-QZC at Sophos

...

Troj/Bckdr-QZD

- Troj/Bckdr-QZD at Sophos

...

Troj/Bckdr-QZE

- Troj/Bckdr-QZE at Sophos

...

Troj/BredoZp-I

- Troj/BredoZp-I at Sophos

...

Troj/FTPScan-A

- Troj/FTPScan-A at Sophos

...

Troj/Iframe-DA

- Troj/Iframe-DA at Sophos

...

Troj/Patched-C

- Troj/Patched-C at Sophos

...

0 writebacks [10/01/2009 22:15] [] permanent link



March 2010
Sun Mon Tue Wed Thu Fri Sat
 
     

Rss version