Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

VIRUS ALERTS - December 23, 2005

Dec 22, 2005 7:58PM PST

Discussion is locked

- Collapse -
Troj/Dloadr-AAV
Dec 23, 2005 6:16AM PST
- Collapse -
Troj/BagleDl-AL
Dec 23, 2005 6:17AM PST
- Collapse -
Troj/Banker-HZ
Dec 23, 2005 6:18AM PST

Type Spyware Trojan

Aliases Trojan-Spy.Win32.Banker.ahy

Troj/Banker-HZ is a Trojan for the Windows platform.
The Trojan monitors Internet Explorer sessions and attempts to steal credentials entered into login forms on certain financial websites. Collected information is sent to a remote attacker via email or FTP.


http://www.sophos.com/virusinfo/analyses/trojbankerhz.html

- Collapse -
Troj/Lineage-BO
Dec 23, 2005 6:19AM PST
- Collapse -
Troj/Pujebot-A
Dec 23, 2005 6:20AM PST
- Collapse -
Troj/Lineage-OR
Dec 23, 2005 6:21AM PST
- Collapse -
W32/Rbot-AZC
Dec 23, 2005 6:22AM PST

Type Worm

Aliases Backdoor.Win32.IRCBot.je

W32/Rbot-AZC is a worm and IRC backdoor Trojan for the Windows platform.
W32/Rbot-AZC runs continuously in the background, providing a backdoor server
which allows a remote intruder to gain access and control over the computer via
IRC channels.

http://www.sophos.com/virusinfo/analyses/w32rbotazc.html

- Collapse -
Troj/Lineage-BN
Dec 23, 2005 6:23AM PST

Type Spyware Trojan

Aliases Trojan-PSW.Win32.Lineage.lp
TSPY_LINEAGE.LC

Troj/Lineage-BN is a password stealing Trojan for the Windows platform that
attempts to steal passwords associated with the game called "Lineage".
Troj/Lineage-BN includes functionality to access the internet and communicate
with a remote server via HTTP.

http://www.sophos.com/virusinfo/analyses/trojlineagebn.html

- Collapse -
W32/Loosky-C
Dec 23, 2005 6:24AM PST

Type Spyware Worm

Aliases Email-Worm.Win32.Locksky.f
W32.Looksky.A@mm
WORM_LOCKSKY.A

W32/Loosky-C is a multi-component email worm with Trojan functionality for the
Windows platform.
W32/Loosky-C acts as a proxy, rerouting information through the infected
computer.
W32/Loosky-C has a backdoor component that can send information about the
infected computer to a remote user, modify and run files on the infected
computer as well as download and execute files if instructed to do so.
W32/Loosky-C attempts to send itself to email addresses harvested from the
infected computer. Emails sent have the following characteristics:
Subject line:
Oh my god! Can't believe this
Message text:
Guess what happened!
I joined this amazing dat.ing portal and met 6 girls in my city in half a day!
I got laid 4 times this week, and now I don't know how to explain you but
there's no way I can handle all these chicks who love to have fun !
I never imagined there'd be so many hot/cool chicks in my area willing to
just meet up and have fun.
Buddy, I highly recommed this, log on, it's no charge! Get a cool nickname
and start dating.
This is the right time
Attachment name:
homebiz_2.exe

http://www.sophos.com/virusinfo/analyses/w32looskyc.html

- Collapse -
Troj/BagleDl-BA
Dec 23, 2005 7:01AM PST
- Collapse -
Troj/BagleDl-BB
Dec 23, 2005 7:02AM PST
- Collapse -
Troj/BagleDl-BC
Dec 23, 2005 7:02AM PST
- Collapse -
Troj/BagleDl-BD
Dec 23, 2005 7:03AM PST