Computer Virus News
| Trojan-Downloader.Win32.Agent.dlyf
This Trojan downloads other malicious programs from the Internet and launches them for execution without the user's knowledge. It is a Windows dynamic library (PE EXE file). It is 53 248 bytes in...
www.securelist.com |
2/2/12 4:01 PM
Trojan.Win32.VB.aeke
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 352 256 bytes in size. It is written in Visual Basic.
Installation
When launching,...
www.securelist.com |
2/2/12 3:51 PM
Trojan.Win32.Smardf.mlt
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 142 848 bytes in size. It is written in Delphi.
www.securelist.com |
2/2/12 3:10 PM
Trojan.Java.Payphish.a
When the infected page is opened, Java class code starts to run, which leads to the following actions:
The following file is created and launched:
Ñ:\Windows\pay.reg
This causes a change in...
www.securelist.com |
2/1/12 11:17 AM
Backdoor.Win32.Delf.ugd
This Trojan provides a malicious user with remote access to the infected computer. It is a Windows application (PE EXE file). It is 365 568 bytes in size. It is written in Delphi.
Installation
Once...
www.securelist.com |
2/1/12 11:03 AM
Trojan-Downloader.Win32.Genome.atab
Once launched, the Trojan decrypts its body and then downloads files from the following URL addresses:
http://195.***.144.79/psyim_dfgjkeqw.exe
http://195.***.144.79/setup.exe
http:...
www.securelist.com |
2/1/12 10:39 AM
Exploit.JS.Pdfka.dna
This exploit program uses vulnerabilities in Adobe Reader and Acrobat to execute itself on the user's computer. It is a PDF document containing XML Forms Architecture and Java Script. It is 26,393...
www.securelist.com |
1/26/12 4:15 PM
Trojan-Downloader.Win32.Genome.asvq
This Trojan downloads other malicious programs from the Internet and launches them for execution without the user's knowledge. It is a Windows application (PE EXE file). It is 21 504 bytes in size....
www.securelist.com |
1/26/12 1:41 PM
Trojan-Downloader.Win32.Genome.asut
This Trojan downloads other malicious programs from the Internet and launches them for execution without the user's knowledge. It is a Windows application (PE EXE file). It is 21 504 bytes in size....
www.securelist.com |
1/26/12 12:54 PM
Trojan.Win32.Slefdel.fpk
The Trojan creates a file named "Deleteme.bat" in its working directory and launches it for execution:
%WorkDir%\Deleteme.bat
The launched file deletes the Trojan's original body and deletes...
www.securelist.com |
1/26/12 12:42 PM
Trojan.Win32.Sasfis.rer
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 18 944 bytes in size. It is written in C++.
www.securelist.com |
1/25/12 3:55 PM
Trojan.Win32.Sasfis.ole
Once launched, the Trojan decrypts and extracts the following file from its body to the current user's temporary directory:
%Temp%.tmp
where is a random set of numbers and...
www.securelist.com |
1/25/12 3:46 PM
Trojan.Win32.Qhost.nhn
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 16 384 bytes in size. It is written in C++.
www.securelist.com |
1/25/12 3:37 PM
Trojan-SMS.J2ME.Agent.s
Òðîÿíñêàÿ ïðîãðàììà, ïîðàæàþùàÿ...
www.securelist.com |
1/24/12 1:51 PM
Trojan.Win32.Qhost.mxb
The Trojan creates a copy of the original "hosts" file under the following name:
C:\h.tmp
The Trojan writes the following string in the file created:
85.***.206.115 u070***010u.com
It replaces the...
www.securelist.com |
1/24/12 10:40 AM
Trojan.Win32.Agent.fadd
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 49 162 bytes in size. It is written in Delphi.
Installation
Once launched, the...
www.securelist.com |
1/24/12 10:31 AM
Trojan.Win32.Agent.ezqu
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 48 650 bytes in size. It is written in Delphi.
Installation
Once launched, the...
www.securelist.com |
1/24/12 10:20 AM
Trojan.Win32.Agent.ezqk
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 47 114 bytes in size. It is written in Delphi.
Installation
Once launched, the...
www.securelist.com |
1/23/12 2:18 PM
Trojan.Win32.Agent.ezqg
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE EXE file). It is 49 162 bytes in size. It is written in Delphi.
Installation
Once launched, the...
www.securelist.com |
1/23/12 2:11 PM
Trojan.Win32.Agent.dfab
Once launched, the Trojan decrypts and extracts the following file from its body to the current user's temporary directory:
%Temp%.tmp
where is a random set of numbers and...
www.securelist.com |
1/23/12 12:33 PM
Trojan.Win32.Agent.daec
This Trojan delivers a malicious payload to the user's computer. It is a Windows application (PE DLL file). It is 27 136 bytes in size. It is written in C++.
Installation
The Trojan copies its body...
www.securelist.com |
1/20/12 2:14 PM
Exploit.HTML.CVE-2010-1885.ad
This exploit program uses vulnerability in Microsoft Windows Help and Support Center to execute itself on the user's computer. It is an HTML document containing Java Script scenarios. It is 11 723...
www.securelist.com |
1/20/12 2:04 PM
Backdoor.Win32.Bredavi.he
This malicious program provides a malicious user with remote access to the infected computer. It is a Windows application (PE DLL file). It is 25 600 bytes in size. It is written in...
www.securelist.com |
1/20/12 1:58 PM
Backdoor.Win32.Bredavi.anx
If Microsoft Office is installed on the user's computer, the Trojan sets the security level to low by registering the following values in the system registry key:...
www.securelist.com |
1/19/12 2:10 PM
Trojan-Spy.Win32.SPSniffer.a
This malicious program is designed to steal confidential data from users. It is a Windows PE EXE file. It is 53248 bytes in size. It is written in Visual Basic.
www.securelist.com |
1/19/12 1:58 PM
Trojan-Dropper.Win32.Sality.r
This Trojan is designed to install and launch other programs on the victim machine without the knowledge or consent of the user. The program itself is a Windows PE DLL file. It is 76800 bytes in...
www.securelist.com |
1/19/12 1:49 PM
Trojan-Downloader.WMA.GetCodec.s
The Trojan exploits the ability of Windows Media to integrate the scenario command "URLAndExit" into the video stream. This allows the default browser to be launched during playback with a subsequent...
www.securelist.com |
1/18/12 4:11 PM
Trojan-GameThief.Win32.Magania.cnkt
This Trojan is one of a family of Trojans that steal passwords from users' online gaming accounts. It is a Windows PE EXE file. It is 115016 bytes in size. It is written in C++.
Installation
After...
www.securelist.com |
1/18/12 3:39 PM
Packed.Win32.Black.d
This sample does not have a malicious payload. It is an installation file of the program E-Drill Master Folder Encryption. It is 1 772 451 bytes in size. It is packed using PE Patch and...
www.securelist.com |
1/18/12 11:02 AM
Worm.Win32.VBNA.iby
This worm propagates by creating copies of itself on local disks and write-accessible removable disks. It is a Windows application (PE EXE file). It is 45056 bytes in size. It is written in Visual...
www.securelist.com |
1/17/12 1:16 PM
Worm.Win32.Agent.abe
This worm carries out destructive activity on the victim machine. It is a Windows PE-EXE file. It is 480308 bytes in size. It is written in C++.
www.securelist.com |
1/17/12 1:04 PM
Trojan.JS.Agent.bmx
This program has a malicious payload. The program is a Java Script scenario. It is 3,467 bytes in size.
www.securelist.com |
1/17/12 12:01 PM
Trojan-SMS.J2ME.Small.ac
This Trojan infects mobile phones that run Java (J2ME). The MIDlet sends SMS messages unauthorized by the user to premium rate numbers. It is a Java class contained in a JAR archive. It is 4856 bytes...
www.securelist.com |
12/28/11 1:36 PM
Trojan-SMS.J2ME.RedBrowser.an
The malware's functionality is implemented in the form of four Java classes contained in the files:
FW.class (2664 bytes; it is the main MIDlet class)
M.class (9178 bytes; detected by Kaspersky...
www.securelist.com |
12/28/11 12:08 PM
Trojan-SMS.J2ME.Konov.aa
This Trojan infects mobile phones that run Java (J2ME). The MIDlet sends SMS messages unauthorized by the user to premium rate numbers. It is a JAR archive that contains a malicious Java class. It is...
www.securelist.com |
12/28/11 11:24 AM
Trojan-Downloader.Win32.Genome.ccpo
This Trojan downloads files from the Internet and launches them without the user's knowledge. It is a Windows application (PE EXE file). It is 3072 bytes in size. It is written in C++.
www.securelist.com |
12/26/11 12:09 PM
Hoax.Win32.ArchSMS.pin
This malicious program demands a ransom in exchange for the content of an encrypted archive, which users believe contains a file that they need. It is a Windows application (PE EXE file). It is 1 212...
www.securelist.com |
12/26/11 11:30 AM
Hoax.HTML.FakeAntivirus.y
This is a hoax program that imitates an antivirus application. It is an HTML page containing Java Script scripts. It is 186 181 bytes in size.
www.securelist.com |
12/26/11 10:11 AM
Trojan-Downloader.Win32.Small.laa
This program is a Trojan. It is a Windows application (PE EXE file). It is 11 017 bytes in size. It is written in C++.
MD5: 916aafb828c3dc048920befb6b0091ce
SHA1:...
www.securelist.com |
12/23/11 6:00 PM
Trojan-Downloader.Win32.Genome.rw
This Trojan downloads files from the Internet and launches them without the user's knowledge. It is a Windows Dynamic Link Library (PE DLL file). It is 3875 bytes in size. It is packed using UPack....
www.securelist.com |
12/23/11 5:48 PM
Trojan-Downloader.Win32.Genome.cfbv
This Trojan program is injected into the address space of the process "explorer.exe" using a malicious program which is detected by Kaspersky Anti-Virus as Trojan-Downloader.Win32.Small.laa.
When...
www.securelist.com |
12/23/11 3:52 PM
Trojan-Downloader.Java.Agent.ke
This Trojan downloads files from the Internet and launches them without the user's knowledge. It is a Java applet (JAR file). It is 2768 bytes in size.
MD5: 73f6bde4503f2dda2b04468d112fc609
SHA1:...
www.securelist.com |
12/23/11 3:18 PM
Trojan-Downloader.Java.Agent.jx
This Trojan downloads files from the Internet and launches them without the user's knowledge. It is a Java applet (jar file). It is 3171 bytes in size.
MD5: 616edde4e5fcfbfe205fe8a7134f6677
SHA1:...
www.securelist.com |
12/23/11 3:01 PM
Trojan.Win32.VB.uzo
This worm provides a malicious user with remote access to an infected machine. It is a Windows application (PE EXE file). It is 94 208 bytes in size. It is written in Visual Basic.
Installation
Once...
www.securelist.com |
12/23/11 11:50 AM
Trojan.Win32.Agent.cyzi
This Trojan downloads files from the Internet and launches them without the user's knowledge. It is a Windows application (PE EXE file). It is 13 824 bytes in size. It is packed using UPX. The...
www.securelist.com |
12/23/11 10:22 AM
Trojan.JS.Agent.brx
This program is a Trojan. It is an HTML page containing Java Script scripts. It is 8054 bytes in size.
MD5: 224480080f2673f7843b82593643f8d6
SHA1: a7bc0bda6d13365c6e8701029dfdc43c6110c34c
www.securelist.com |
12/22/11 3:48 PM
|