Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

VIRUS ALERTS - January 11, 2006

Jan 10, 2006 10:28PM PST

Troj/Vixup-AF

Type
Trojan

Aliases
Trojan-Downloader.Win32.Tibs.bi

Troj/Vixup-AF is a Trojan for the Windows platform.

Troj/Vixup-AF includes functionalities to:

- download, install and run new software
- communicate information to a remote server

http://www.sophos.com/virusinfo/analyses/trojvixupaf.html

Discussion is locked

- Collapse -
Troj/HacDef-AL
Jan 10, 2006 10:30PM PST

Type
Trojan

Aliases
Backdoor.Win32.HacDef.084
BKDR_HACKDEF.F

Troj/HacDef-AL is a rootkit for the Windows platform.

Troj/HacDef-AL contains functionality to subvert the Windows API in order to hide or 'stealth' files, processes and registry entries from the user.

http://www.sophos.com/virusinfo/analyses/trojhacdefal.html

- Collapse -
Troj/QQRob-BM
Jan 10, 2006 10:33PM PST
- Collapse -
W32/Loosky-U
Jan 10, 2006 10:35PM PST
- Collapse -
Troj/DNSChan-AM
Jan 10, 2006 10:36PM PST
- Collapse -
Troj/LegMir-FA
Jan 10, 2006 10:39PM PST
- Collapse -
Troj/Dropper-DS
Jan 10, 2006 10:41PM PST

Type
Spyware Trojan

Aliases
Trojan-Spy.Win32.Delf.he

Troj/Dropper-DS is a password stealing Trojan for the Windows platform.

Troj/Dropper-DS has the functionalities to:

- communicate with a remote server
- monitor windows and record keystrokes
- steal passwords

http://www.sophos.com/virusinfo/analyses/trojdropperds.html

- Collapse -
Troj/Spywad-P
Jan 10, 2006 10:43PM PST
- Collapse -
Troj/Cheuko-C
Jan 10, 2006 10:45PM PST
- Collapse -
Troj/Small-LG
Jan 10, 2006 10:47PM PST
- Collapse -
W32/Rbot-BJW
Jan 10, 2006 11:49PM PST

Type
Spyware Worm

Aliases
Backdoor.Win32.Rbot.acl
W32/Sdbot.worm.gen.br
W32.Spybot.Worm
WORM_RBOT.CPH

W32/Rbot-BJW is a worm and IRC backdoor Trojan for the Windows platform.

W32/Rbot-BJW spreads:

- to other network computers infected with: Troj/Kuang, Troj/Sub7, Troj/NetDevil, W32/MyDoom, W32/Bagle and Troj/Optix
- to other network computers by exploiting common buffer overflow vulnerabilities, including: LSASS (MS04-011), RPC-DCOM (MS04-012), WKS (MS03-049) (CAN-2003-0812), WebDav (MS03-007), IIS5SSL (MS04-011) (CAN-2003-0719), UPNP (MS01-059), Veritas (CAN-2004-1172), Dameware (CAN-2003-1030) and ASN.1 (MS04-007)
- by copying itself to network shares protected by weak passwords

W32/Rbot-BJW runs continuously in the background, providing a backdoor server which allows a remote intruder to gain access and control over the computer via IRC channels.

http://www.sophos.com/virusinfo/analyses/w32rbotbjw.html

- Collapse -
Troj/BankDl-AI
Jan 10, 2006 11:50PM PST
- Collapse -
Troj/Hupigon-CF
Jan 10, 2006 11:53PM PST
- Collapse -
Troj/Vanti-K
Jan 10, 2006 11:54PM PST
- Collapse -
Troj/Stinx-L
Jan 10, 2006 11:56PM PST

Type
Trojan

Aliases
Backdoor.Ryknos

Troj/Stinx-L is a Trojan for the Windows platform.

Troj/Stinx-L runs continuously in the background, providing a backdoor server which allows a remote intruder to gain access and control over the computer.

http://www.sophos.com/virusinfo/analyses/trojstinxl.html

- Collapse -
Troj/PcClient-Y
Jan 10, 2006 11:58PM PST

Type
Spyware Trojan

Aliases
Backdoor.Win32.PcClient.dd
Backdoor.Win32.PcClient.cj
BackDoor-CKB
TROJ_CKB.A
BKDR_PCCLIENT.AX
BKDR_PCCLIENT.BA

Troj/PcClient-Y is a backdoor Trojan for the Windows platform that provides unauthorized remote access to the infected computer.

http://www.sophos.com/virusinfo/analyses/trojpcclienty.html

- Collapse -
Troj/Banload-IA
Jan 11, 2006 12:00AM PST
- Collapse -
Troj/Bifrose-DB
Jan 11, 2006 12:20AM PST

Type
Trojan

Aliases
Backdoor.Win32.Bifrose.dc
BackDoor-CEP

Troj/Bifrose-DB is a backdoor Trojan for the Windows platform that provides unauthorized remote access to the infected computer.

Troj/Bifrose-DB includes functionality to access the internet and communicate with a remote server via HTTP.

http://www.sophos.com/virusinfo/analyses/trojbifrosedb.html

- Collapse -
Troj/PcClien-N
Jan 11, 2006 12:22AM PST

Type
Spyware Trojan

Aliases
Backdoor.Win32.PcClient.dd
Backdoor.Win32.PcClient.dy
Trojan-Downloader.Win32.Small.boh
BackDoor-CKB
BKDR_PCCLIENT.BG
BKDR_PCCLIENT.BJ

Troj/PcClien-N is a backdoor Trojan for the Windows platform that provides unauthorized remote access to the infected computer.

Troj/PcClien-N includes functionality to access the internet and communicate with a remote server via HTTP.

http://www.sophos.com/virusinfo/analyses/trojpcclienn.html

- Collapse -
Troj/Spyjack-J
Jan 11, 2006 12:23AM PST
- Collapse -
Troj/Fusion-B
Jan 11, 2006 12:26AM PST

Type
Spyware Trojan

Aliases
Backdoor.Win32.Coldfuson.j

Troj/Fusion-B is a backdoor Trojan for the Windows platform.

Troj/Fusion-B can log keypresses and email the results to a remote attacker. The Trojan includes functionality to access the internet and communicate with a remote server via HTTP

http://www.sophos.com/virusinfo/analyses/trojfusionb.html

- Collapse -
Troj/Prorat-BA
Jan 11, 2006 12:28AM PST

Type
Trojan

Aliases
Backdoor.Win32.Prorat.f

Troj/Prorat-BA is a backdoor Trojan which allows a remote intruder to gain access and control over the computer.

Troj/Prorat-BA includes functionality to access the internet and communicate with a remote server via HTTP.

Troj/Prorat-BA will attempt to disable anti-virus and security-related software, including the Windows XP Internet Connection Firewall and System Restore service.

http://www.sophos.com/virusinfo/analyses/trojproratba.html

- Collapse -
Troj/FusDrop-A
Jan 11, 2006 12:30AM PST
- Collapse -
Troj/FeebDl-A
Jan 11, 2006 6:20AM PST
- Collapse -
Troj/Chindow-A
Jan 11, 2006 6:22AM PST
- Collapse -
Troj/MrcBdr-A
Jan 11, 2006 6:22AM PST
- Collapse -
Troj/Bckd-CRV
Jan 11, 2006 6:24AM PST
- Collapse -
Troj/Xbot-F
Jan 11, 2006 6:25AM PST

Type Spyware Trojan

Troj/Xbot-F is a multicomponent backdoor Trojan for the Windows platform that provides unauthorized remote access to the infected computer through an IRC channels.

Troj/Xbot-F includes functionality to download, install and run new software.

http://www.sophos.com/virusinfo/analyses/trojxbotf.html

- Collapse -
Troj/Lanxue-K
Jan 11, 2006 6:26AM PST

Type Trojan

Aliases Backdoor.Win32.Delf.adj
Generic Downloader.c

Troj/Lanxue-K is a backdoor Trojan for the Windows platform.

Troj/Lanxue-K also includes functionality to copy itself to network shares protected by weak passwords.

Troj/Lanxue-K includes functionality to access the internet and communicate with a remote server via HTTP.

http://www.sophos.com/virusinfo/analyses/trojlanxuek.html

- Collapse -
Troj/Agent-QY
Jan 11, 2006 6:27AM PST
- Collapse -
Troj/AdClick-BT
Jan 11, 2006 6:28AM PST