W32/Kassbot-M is a worm with backdoor functionality for the Windows platform.
W32/Kassbot-M runs continuously in the background, providing a backdoor server which allows a remote intruder to gain access and control over the computer via IRC channels.
W32/Kassbot-M spreads to other network computers by exploiting the buffer overflow vulnerabilities: LSASS (MS04-011), RPC-DCOM (MS04-012), WKS (MS03-049) (CAN-2003-0812), PNP (MS05-039) and ASN.1 (MS04-007) and by copying itself to network shares protected by weak passwords and AOL Instant Messenger.
W32/Kassbot-M includes functionality to access the internet and communicate with a remote server via HTTP.
Troj/Clagger-K is a Trojan for the Windows platform.
Troj/Clagger-K may be attached to spam messages claiming to be sent from amazon.co.uk.
Troj/Clagger-K includes functionality to download, install and run new software.