Troj/Dloader-VS is a downloader Trojan for the Windows platform.
Troj/Dloader-VS will attempt to download and execute code without notifying the user.
W32/Agobot-TP is a worm and IRC backdoor Trojan for the Windows platform.
W32/Agobot-TP spreads to other network computers by exploiting common buffer
overflow vulnerabilities, including: PNP (MS05-039) and ASN.1 (MS04-007) and
by copying itself to network shares protected by weak passwords.
W32/Agobot-TP runs continuously in the background, providing a backdoor server
which allows a remote intruder to gain access and control over the computer via
W32/Agobot-TP includes functionality to:
- setup a SOCKS4 server
- add/remove net shares on the infected computer
- access the internet and communicate with a remote server via HTTP
- perform port scanning
- carry out DDoS attacks
The following patches for the operating system vulnerabilities exploited by
W32/Agobot-TP can be obtained from the Microsoft website: