Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

VIRUS ALERTS - January 3, 2006

Jan 2, 2006 11:53PM PST

Discussion is locked

- Collapse -
Troj/Small-IC
Jan 3, 2006 7:26AM PST
- Collapse -
Troj/Banload-JE
Jan 3, 2006 7:27AM PST
- Collapse -
Troj/Clicker-AZ
Jan 3, 2006 7:28AM PST
- Collapse -
Troj/Banload-HG
Jan 3, 2006 7:30AM PST
- Collapse -
Troj/Vixup-W
Jan 3, 2006 7:31AM PST
- Collapse -
Troj/Banload-HF
Jan 3, 2006 7:31AM PST
- Collapse -
Troj/Downldr-GX
Jan 3, 2006 7:33AM PST
- Collapse -
Troj/Banker-SW
Jan 3, 2006 7:34AM PST

Type Spyware Trojan

Aliases Trojan-Spy.Win32.Banker.anv
PWS-Banker.gen.ba

Troj/Banker-SW is a Trojan for the Windows platform which attempts to capture confidential information related to Internet Banking, such as usernames and logon passwords.
Troj/Banker-SW includes functionality to send notification messages to remote locations


http://www.sophos.com/virusinfo/analyses/trojbankersw.html

- Collapse -
W32/Rbot-BHZ
Jan 3, 2006 2:01PM PST

Type Spyware Worm

Aliases Backdoor.Win32.Rbot.alw

W32/Rbot-BHZ is a worm and IRC backdoor Trojan for the Windows platform.
W32/Rbot-BHZ spreads to other network computers by exploiting common buffer
overflow vulnerabilities, including: RPC-DCOM (MS04-012), PNP (MS05-039) and
ASN.1 (MS04-007).

http://www.sophos.com/virusinfo/analyses/w32rbotbhz.html

- Collapse -
Troj/DNSBust-F
Jan 3, 2006 2:02PM PST

Type Trojan

Troj/DNSBust-F attempts to modify DNS settings on the computer.
The Trojan modifies the file
%APPDATA%\Microsoft\Network\Connections\Pbk\rasphone.pbk by creating or
changing the entries for IpDnsAddress and IpDns2Address to point to
prespecified IP addresses. Troj/DNSBust-F then uses ipconfig.exe to flush the
DNS cache.

http://www.sophos.com/virusinfo/analyses/trojdnsbustf.html

- Collapse -
Troj/Dloadr-BFO
Jan 3, 2006 2:03PM PST
- Collapse -
Troj/Dloadr-BFP
Jan 3, 2006 2:04PM PST
- Collapse -
Troj/StartPa-KB
Jan 3, 2006 2:05PM PST

Type Trojan

Aliases StartPage-IH
Trojan.Win32.VB.sj

Troj/StartPa-KB is a Trojan for the Windows platform.
When first run Troj/StartPa-KB copies itself to <System>\Run9939.exe.
The Trojan modifies the start and search page settings for Internet Explorer.
Troj/StartPa-KB may also download and install additional files.

http://www.sophos.com/virusinfo/analyses/trojstartpakb.html

- Collapse -
Troj/VB-APC
Jan 3, 2006 2:06PM PST
- Collapse -
Troj/Bancos-BRV
Jan 3, 2006 2:07PM PST
- Collapse -
Troj/LegMir-DN
Jan 3, 2006 2:08PM PST
- Collapse -
Troj/Small-GP
Jan 3, 2006 2:08PM PST