Spyware, Viruses, & Security forum

General discussion

VIRUS ALERTS - May 4, 2007

Troj/WLDrop-A

Alert ID : FrSIRT/ALRT-2007-03056
Aliases : W32/Agent.CIP - Spy-Agent.bv.dr - Win32/Wigon.W - Trojan.Win32.Agent.ady
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/WLDrop-A is a Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojwldropa.html

Credits

Reported by Sophos

Discussion is locked
You are posting a reply to: VIRUS ALERTS - May 4, 2007
The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to our CNET Forums policies for details. All submitted content is subject to our Terms of Use.
Track this discussion and email me when there are updates

If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

You are reporting the following post: VIRUS ALERTS - May 4, 2007
This post has been flagged and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.
Sorry, there was a problem flagging this post. Please try again now or at a later time.
If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.
Collapse -
Troj/IRCBot-VT

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03055
Aliases : Backdoor.Win32.Rbot.sr - BKDR_IRCBOT.LG
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/IRCBot-VT is an IRC backdoor Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojircbotvt.html

Credits

Reported by Sophos

Collapse -
W32/Poebot-LH

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
W32/Poebot-LI

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03053
Aliases : W32/Sdbot.worm.gen.ax - destructiveprogramnamedW32/Trojan.ABLY - Backdoor.Win32.Rbot.age
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Poebot-LI is a worm with IRC backdoor functionality for the Windows platform. W32/Poebot-LI spreads - to computers vulnerable to common exploits, including: LSASS (MS04-011), SRVSVC (MS06-040), RPC-DCOM (MS04-012) and PNP (MS05-039) - to network shares The following patches for the operating system vulnerabilities exploited by the worm can be obtained from the Microsoft website: MS04-011 MS06-040 MS04-012 MS05-039.

References

http://www.sophos.com/virusinfo/analyses/w32poebotli.html

Credits

Reported by Sophos

Collapse -
W32/Poebot-LJ

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03052
Aliases : WORM_SDBOT.EEU - Backdoor.Win32.Rbot.cfo
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Poebot-LJ is an IRC worm with backdoor functionality which allows a remote intruder to gain access and control over the computer.

References

http://www.sophos.com/virusinfo/analyses/w32poebotlj.html

Credits

Reported by Sophos

Collapse -
Troj/Dloadr-AXX

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03051
Aliases : Win32/TrojanDownloader.Nurech.NAT
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/Dloadr-AXX is a downloader Trojan for the Windows platform. When run Troj/Dloadr-AXX also includes functionality to inject code into system processes.

References

http://www.sophos.com/virusinfo/analyses/trojdloadraxx.html

Credits

Reported by Sophos

Collapse -
Troj/Tibs-RM

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03050
Aliases : Win32/Nuwar.Genworm - W32/Generic.abq!worm - Email-Worm.Win32.Zhelatin.dp
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/Tibs-RM is a downloader Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojtibsrm.html

Credits

Reported by Sophos

Collapse -
W32/Rising-B

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03064
Aliases : Worm.Win32.Agent.az - WORM_AGENT.OQV - Win32/Agent.NEO
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Rising-B is a worm for the Windows platform. W32/Rising-B can spread to local drives, removable media and network shares.

References

http://www.sophos.com/virusinfo/analyses/w32risingb.html

Credits

Reported by Sophos

Collapse -
W32/Rbot-GOR

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03063
Aliases : Backdoor.Win32.Rbot.cfn
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Rbot-GOR is a worm with IRC backdoor functionality for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/w32rbotgor.html

Credits

Reported by Sophos

Collapse -
Troj/DwnLdr-GUA

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03062
Aliases : Trojan-Downloader.Win32.Small.bem - W32/Downloader.AURD
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/DwnLdr-GUA is a Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojdwnldrgua.html

Credits

Reported by Sophos

Collapse -
Troj/Bckdr-QIB

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
Troj/SpyAgen-Z

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03060
Aliases : Trojan-Spy.Win32.Banker.cot
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/SpyAgen-Z is an information stealing Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojspyagenz.html

Credits

Reported by Sophos

Collapse -
W32/Poebot-LK

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03059
Aliases : BKDR_VANBOT.AX
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Poebot-LK is an IRC worm with backdoor functionality which allows a remote intruder to gain access and control over the computer.

References

http://www.sophos.com/virusinfo/analyses/w32poebotlk.html

Credits

Reported by Sophos

Collapse -
Troj/SpamToo-AM

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
Troj/Mailspam-N

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
W32/Rbot-GOS

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03069
Aliases : WORM_RBOT.FAY
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Rbot-GOS is a worm with IRC backdoor functionality for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/w32rbotgos.html

Credits

Reported by Sophos

Collapse -
Troj/Dial-ED

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03068
Aliases : Trojan.Win32.Dialer.ay - TROJ_DIALER.HN
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/Dial-ED is a Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojdialed.html

Credits

Reported by Sophos

Collapse -
Troj/DwnLdr-GUB

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
Troj/Dloadr-AXY

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
Troj/Dropper-ON

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
Mal/Keylog-C

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03072
Aliases : PWS-Banker.dlltrojan
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Mal/Keylog-C is a keylogger DLL used by internet banking Trojans.

References

http://www.sophos.com/virusinfo/analyses/malkeylogc.html

Credits

Reported by Sophos

Collapse -
Troj/Banloa-BJF

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03071
Aliases : Trojan-Downloader.Win32.Delf.acc
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/Banloa-BJF is a Trojan for the Windows platform. Troj/Banloa-BJF includes functionality to - access the internet and communicate with a remote server via HTTP.

References

http://www.sophos.com/virusinfo/analyses/trojbanloabjf.html

Credits

Reported by Sophos

Collapse -
Infostealer.Bankcenter

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03070
Aliases : TSPY_BANKER.IFC
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04
Last Update : 2007-05-04


Description

Infostealer.Bankcenter is a Trojan horse that displays a fake Windows Security Center dialog box and attempts to steal personally identifiable information from the compromised computer.

References

http://www.symantec.com/enterprise/security_response/writeup.jsp?docid=2007-050410-1616-99

Credits

Reported by Symantec

Collapse -
W32/HLLP.Philis.kc

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03075
Aliases : N/A
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

This description is for a file infecting virus which searches for executable files on the infected machine to prepend its viral code. Apart from this, it also drops other malware, which inturn download password stealing trojans from various websites. The characteristics of this virus with regards to file names/folders created will differ depending on the way in which the attacker had configured it.

References

http://vil.nai.com/vil/content/v_142155.htm

Credits

Reported by McAfee

Collapse -
Troj/WLDrop-A

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03056
Aliases : W32/Agent.CIP - Spy-Agent.bv.dr - Win32/Wigon.W - Trojan.Win32.Agent.ady
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/WLDrop-A is a Trojan for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/trojwldropa.html

Credits

Reported by Sophos

Collapse -
Troj/SpyAgent-E

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03080
Aliases : Trojan-Dropper.Win32.Agent.bge - W32/Downloader2.BNE
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/SpyAgent-E is a dropper Trojan for the Windows platform. Troj/SpyAgent-E drops further malware detected as Troj/Pushu-B.

References

http://www.sophos.com/virusinfo/analyses/trojspyagente.html

Credits

Reported by Sophos

Collapse -
Troj/Agent-FOR

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
Troj/DwnLdr-GUC

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03078
Aliases : N/A
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

Troj/DwnLdr-GUC is a Trojan for Windows. Troj/DwnLdr-GUC contains functionality to communicate with a remote host using HTTP protocol, most probably in order to download additional components or an updated copy of itself.

References

http://www.sophos.com/virusinfo/analyses/trojdwnldrguc.html

Credits

Reported by Sophos

Collapse -
W32/Spybot-NT

In reply to: VIRUS ALERTS - May 4, 2007

Alert ID : FrSIRT/ALRT-2007-03083
Aliases : W32/Spybot.worm.gen.p - WORM_SPYBOT.ABP
Size : N/A
Rated as : Low Risk
Release Date : 2007-05-04


Description

W32/Spybot-NT is a worm with IRC backdoor functionality for the Windows platform.

References

http://www.sophos.com/virusinfo/analyses/w32spybotnt.html

Credits

Reported by Sophos

Collapse -
W32.Almanahe.C

In reply to: VIRUS ALERTS - May 4, 2007

Collapse -
W32.Almanahe.C!inf

In reply to: W32.Almanahe.C

Popular Forums

icon
Computer Newbies 10,686 discussions
icon
Computer Help 54,365 discussions
icon
Laptops 21,181 discussions
icon
Networking & Wireless 16,313 discussions
icon
Phones 17,137 discussions
icon
Security 31,287 discussions
icon
TVs & Home Theaters 22,101 discussions
icon
Windows 7 8,164 discussions
icon
Windows 10 2,657 discussions

GIVEAWAY

Enter to win* a free holiday tech gift!

CNET's giving five lucky winners the gift of their choice valued up to $250!