Prevent Online Threats

Archive for May, 2007

Trojan-Downloader.Win32.VB.be

Thursday, May 24th, 2007

This Trojan will download other programs from the Internet and launch them on the victim machine without the user’s knowledge or consent. It is a Windows PE EXE file. The file is 24 576 bytes in size. This Trojan is written in Visual Basic.

Trojan-Downloader.Win32.Apher.b

Thursday, May 24th, 2007

This Trojan is used to generate other Trojan programs.
This worm is a Windows PE EXE file. The file is 224,768 bytes in size. It is packed using UPX. The unpacked file is approximately 451KB in size. It is written in Delphi.

Virus.Linux.Alaeda

Thursday, May 24th, 2007

Alaeda is a non-resident virus. It infects systems running Linux, and is written in Assembler. It infects ELF format files in the current directory.

When infecting, the virus modifies the entry point of the original file, passing control to the infection routine. It modified the file’s ELF header….

VirTool.MSWord.MPPN2

Thursday, May 24th, 2007

This program is an MS Word document (a DOC file). It is 82,432 bytes in size. It is written in MSWord’s macro language.

Trojan-Dropper.VBS.Asylum

Thursday, May 24th, 2007

This Trojan is designed to install other Trojan programs to the victim machine without the knowledge or consent of the user. It is written in Visual Basic Script. The file is 10 796 bytes in size.

Trojan-PSW.Win32.Gip.108

Wednesday, May 23rd, 2007

This Trojan program is used to configure Trojans which are designed to steal user passwords. The Trojan itself is a Windows PE EXE file. The file is 43,520 bytes in size. It is written in C++.

Trojan-Dropper.VBS.Bomgen.n

Wednesday, May 23rd, 2007

This Trojan installs other malicious programs to the victim machine without the knowledge or consent of the user. It is written in Visual Basic Script. The file is approximately 10KB in size.

Email-Worm.Win32.Warezov.nv

Wednesday, May 23rd, 2007

This worm is a Windows PE EXE file. It is 40,960 bytes in size.

Installation

When launched, the worm creates the following files:

%System%\dnsamqut.dll
%System%\sdhccard.dll

The worm modifies the following system registry key value:

[HKLM\SOFTWARE\Microsoft\Windows…

Trojan-Dropper.Win32.Agent.bgn

Monday, May 21st, 2007

This Trojan installs other programs to the victim machine without the knowledge or consent of the user. It is a Windows PE EXE file. The file is 6,536 bytes in size.

Trojan-Downloader.VBS.Psyme.gr

Monday, May 21st, 2007

This Trojan downloads other programs via the Internet to the victim machine without the user’s knowledge or consent. The Trojan components vary in size from 2 to 5KB. It is written in Visual Basic Script (VBS).

Trojan-PSW.Win32.LdPinch.azw

Friday, May 18th, 2007

This Trojan is designed to steal confidential information (user passwords). It is designed to steal a range of confidential information.

It is a Windows PE EXE file. It is 24,384 bytes in size. It is packed using MEW. The unpacked file is approximately 340KB in size. It is written in Assembler.

Trojan-PSW.Win32.LdPinch.byc

Thursday, May 17th, 2007

This Trojan is designed to steal user passwords.

It is a Windows PE EXE file. The file is 43 377 bytes in size. It is written in Assembler.

Backdoor.Win32.VanBot.az

Thursday, May 17th, 2007

This Trojan provides a remote malicious user to perform operations on the victim machine. It is managed via IRC. It is a Windows PE EXE file. The file is 214,016 bytes in size.

Installation

When launched, the backdoor copies its executable file to the Windows system directory:…

Trojan-Spy.HTML.Bankfraud.ry

Thursday, May 17th, 2007

This Trojan uses spoofing technology. It is a fake HTML page. It is designed to steal confidential information from Guaranty Bond clients.

The Trojan arrives in the guise of an important email from Guaranty Bond:

The email contains a link which exploits the Frame Spoof vulnerability in Internet…

Trojan.Win32.KillFiles.lm

Thursday, May 17th, 2007

This Trojan has a malicious payload. It is a Windows PE EXE file. The file is 368 128 bytes in size. байт. It is not packed in any way. It is written in Borland Delphi.


Spyware Removal Spyware Protection Tools