953 entries found.
Displaying page 38
of 48.
Worm:Win32/Sober.Z@mm
Updated on Nov 23, 2005
Win32/Sober.Z@mm is a mass-mailing worm that targets computers running Microsoft Windows. The worm sends a zipped copy of itself as an attachment to e-mail addresses that it finds on the infected computer. The worm runs when a user opens the attachment in the e-mail message.
This worm was assigned CME ID CME-681.
December 16, 2005 Update: Win32/Sober.Z@mm is programmed to download and run malicious files from certain Web domains beginning on January 6, 2006, midnight UTC/GMT . Beginning approximately every two weeks thereafter, the worm is set to begin downloading and running malicious files from additional sites on the same Web domains.
Alert level:
severe
Worm:Win32/Cissi.A
Updated on May 04, 2006
Win32/Cissi.A is a network worm with a backdoor component. The worm can spread through remote shares by trying weak account name and password combinations. The backdoor component connects to an IRC server, allowing it to accept and execute remote queries and commands. Win32/Cissi.A also gathers e-mail addresses from the infected computer, but cannot send a copy of itself to those addresses due to a bug in the worm's code.
Alert level:
severe
Worm:Win32/Sober.Z@mm!CME681
Updated on Nov 27, 2006
Win32/Sober.Z@mm is a mass-mailing worm that targets computers running Microsoft Windows. The worm sends a zipped copy of itself as an attachment to e-mail addresses that it finds on the infected computer. The worm runs when a user opens the attachment in the e-mail message.
This worm was assigned CME ID CME-681.
December 16, 2005 Update: Win32/Sober.Z@mm is programmed to download and run malicious files from certain Web domains beginning on January 6, 2006, midnight UTC/GMT . Beginning approximately every two weeks thereafter, the worm is set to begin downloading and running malicious files from additional sites on the same Web domains.
Alert level:
severe
PWS:Win32/Bzub.gen
Updated on Mar 08, 2007
PWS:Win32/Bzub.gen is a generic detection for the installer of a malicious web Browser Helper Object (BHO) or a DLL that may monitor typed logon credentials for accessed websites.
Alert level:
severe
Worm:Win32/Alcan.I
Updated on May 10, 2007
Worm:Win32/Alcan.I is a network worm that spreads by copying itself to shares related to peer-to-peer file sharing networks. Worm:Win32/Alcan.I tries to block access to commonly used system utilities and continually hides its folders in an attempt to avoid detection.
Alert level:
severe
TrojanDownloader:Win32/Renos.gen!A
Updated on May 30, 2007
TrojanDownloader:Win32/Renos.gen!A simulates a computer spyware scan, generating erroneous alerts and prompting the user to purchase the product in order to remove the alleged detections.
Alert level:
severe
Backdoor:Win32/Rbot!9665
Updated on Jul 02, 2007
Backdoor:Win32/Rbot!9665 is a backdoor Trojan that connects to an IRC server to receive commands from remote attackers. Commands could include instructions to spread to other computers via open network shares or by exploit of a security vulnerability, or to launch a denial of service (DoS) attack against specified targets.
Backdoor:Win32/Rbot!9665 may be detected as Backdoor:Win32/Rbot.DD.
Alert level:
severe
Backdoor:Win32/PcClient.Z
Updated on Aug 30, 2007
Backdoor:Win32/PcClient.Z is a backdoor trojan with several components including a keylogger, backdoor, and a rootkit. It is usually disguised as or packaged with legitimate applications.
Alert level:
severe
Spammer:Win32/Nuwar.D
Updated on Sep 12, 2007
Spammer:Win32/Nuwar.D is a component of the Win32/Nuwar Trojan family, and is used to relay e-mails. E-mail messages are sent in various formats, commonly containing a hyperlink to a remote Web site hosting Win32/Nuwar Trojan files.
Alert level:
severe
PWS:Win32/Lineage.AO.dll
Updated on Jun 10, 2005
PWS:Win32/Lineage.AO.dll is a Trojan that targets certain versions of Microsoft Windows. This Trojan is dropped by PWS:Win32/Lineage.AO. It captures certain passwords and saves them to a file.
Alert level:
severe
Backdoor:Win32/Zonebac.gen!B
Updated on Nov 14, 2007
Backdoor:Win32/Zonebac.gen!B is a family of Backdoors that modify Internet security settings and can be instructed to perform additional actions by a remote host.
Alert level:
severe
Win32/Ganda.567.ldr
Updated on Jul 10, 2005
This software threat is detected by the Microsoft antivirus engine. Technical details are not currently available for this threat.
Alert level:
severe
Win32/Stration.X@mm
Updated on Dec 08, 2006
Win32/Stration.X@mm is a mass-mailing email worm that sends itself to addresses obtained from a wide range of file types found on the infected system. The e-mail message composed by the worm may masquerade as a failure message or as a scanning tool. Win32/Stration.X@mm also acts as a Trojan downloader, attempting to download a file from a remote website. The downloaded file is typically another variant of the Win32/Stration family.
Alert level:
severe