Archive for the ‘Trojan’ Category

[29 Mar 2009 | 2 Comments | ]

Backdoor.Win32.Haxdoor.gu is a backdoor trojan with remote administration and spreads via the Internet using infected messages. Backdoor.Win32.Haxdoor.gu is packed to prevent antivirus programs from detecting it. On some occasions, this detection was used as a misleading techniques by a rogue security program as shown in the image below.

[26 Mar 2009 | 4 Comments | ]

Trojan.Win32.Genome is a trojan that will spread via instant messaging software and has another payload of downloading and executing a variants of W32.Spybot.Worm on compromised computer.

[22 Mar 2009 | 7 Comments | ]

Win32/Agent.ODG is a trojan that creates a backdoor ports on infected computer allowing a remote attacker to gain full access on compromised computer. Win32/Agent.ODG will also gather sensitive information such as user name and passwords. It can also download and execute additional malware on computer without users knowledge.

[21 Mar 2009 | 2 Comments | ]

Dropper.Rozena is a generic detection to identify malicious files that will attempt to drop and install a copy of rogue program on infected computers. Once the rogueware is installed, Dropper.Rozena will pop-up warning messages to get the attention of computer users.

[5 Mar 2009 | 3 Comments | ]

HEUR.Trojan.Win32.Invader is a heuristic detection for trojan that can modify various system files and add itself on Windows registry so that  the worm will run each time Windows is started. Aliases: – Risk Level: Low File Size: Varies Affected System: Windows

[5 Mar 2009 | 11 Comments | ]

A fake codec called WinCoDecPro is misleading computer users to download the said program by displaying alerts on computer. One of which is a pop-up with message “Fatal Error! The media system on your computer is corrupt. Update your video codec immediately to resolve this issue.”

[28 Feb 2009 | 67 Comments | ]

Recently, Win32.BackDoor-DNM keeps on appearing on computers as a threat detected on a Security Center Alert that will popup from a Windows taskbar. Users will be warned about the risk of having this trojan that can record keystrokes and take screenshots of computer. With these scenario, be informed that Win32.BackDoor-DNM is not the one infecting your computer but a rogue program that is waiting to be downloaded after enabling a protection from this pop-up messages. Aliases: – Risk Level: Medium File Size: Varies Affected System: [...]

[27 Feb 2009 | 3 Comments | ]

Trojan Cognac is a malicious file that can download and install multiple copy of rogue program on infected computer. Trojan Cognac can come embed with third party applications that can be downloaded free from file sharing networks.