Monday, September 17, 2007

9/17: Googbot Worm Exploits Certain Flaws

*********************************************************************

___________________________ Sponsors ________________________________

Digital Rights Strategies 2007
_____________________________________________________________________

*********************************************************************
http://esecurityplanet.com/
Monday, September 17, 2007

eSecurityPlanet is part of the Earthweb network

All newsletters are sent from the domain "internet.com." Please use this domain name (not
the entire "from" address, which varies) when configuring e-mail or spam filter rules, if
you use them.

*********************************************************************

*********************************************************************
TRENDS
*********************************************************************

1. 9/17: Googbot Worm Exploits Certain Flaws
W32.Googbot@mm is a mass-mailing worm that also spreads by exploiting certain
vulnerabilities.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,d096,5lrq,7s9g,a3ap

------------------------------------------------------------
2. 9/17: Sdbot.Fel Worm Spreads Via MSN Messenger
Worm_Sdbot.Fel is downloaded from remote sites by other malware.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,izhf,b6ro,7s9g,a3ap

------------------------------------------------------------
3. 9/17: Rbot-GTF a Windows Worm
W32/Rbot-GTF is a worm for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,4hef,dffh,7s9g,a3ap

------------------------------------------------------------
4. 9/17: Rbot-GTG Worm Has IRC Backdoor Functions
W32/Rbot-GTG is a worm with IRC backdoor functionality for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,9527,e4sy,7s9g,a3ap

------------------------------------------------------------
5. 9/17: SillyFDC-AW Worm Hits Windows
W32/SillyFDC-AW is a worm for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,3qp,eopz,7s9g,a3ap

------------------------------------------------------------
6. 9/14: Mimbot.B Worm Spreads Via MSN IM
W32.Mimbot.B is a worm that spreads through MSN instant messaging applications.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,cetn,4a2c,7s9g,a3ap

------------------------------------------------------------
7. 9/14: VBS.Runauto.B Worm Copies Itself to Drives
VBS.Runauto.B is a worm that spreads by copying itself to all drives except floppy
drives.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,k0c8,8xle,7s9g,a3ap

------------------------------------------------------------
8. 9/14: Banker-EIS Trojan Steals Confidential Bank Information
Troj/Banker-EIS is a Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,ckad,jud1,7s9g,a3ap

------------------------------------------------------------
9. 9/14: Deledsig.A Virus Infects Executables Files
W32.Deledsig.A is a virus that infects executable files and changes the size of design
pictures (.mc9 .mc8 .prt .pfm and .igs) to 0 bytes.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,5oal,85xa,7s9g,a3ap

------------------------------------------------------------
10. 9/14: Beagle.GM Trojan Downloads, Executes Malicious Files
W32.Beagle.GM is a Trojan horse that downloads and executes malicious remote files.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,6kz0,hcke,7s9g,a3ap

------------------------------------------------------------
11. 9/14: Nobond-B a Downloader Trojan
Troj/Nobond-B is a downloader Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,dszd,glc0,7s9g,a3ap

------------------------------------------------------------
12. 9/14: YBHO-A a Password-Stealing Trojan
Troj/YBHO-A is a password-stealing Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,92t4,lqz,7s9g,a3ap

------------------------------------------------------------
13. 9/13: Infostealer.Banbot Trojan Downloads Files, Steals Info
Infostealer.Banbot is a Trojan horse that downloads files from remote locations and
steals sensitive information from the compromised computer.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,18qi,jxwe,7s9g,a3ap

------------------------------------------------------------
14. 9/13: Trojan.Downexec!inf Detects Files Infected With Code
Trojan.Downexex!inf is a detection for files that have been infected with code that
downloads and executes remote files.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,78je,j1kp,7s9g,a3ap

------------------------------------------------------------
15. 9/13: Psyme-FB Trojan a Web Page That Exploits ADODB Flaw in IE
Troj/Psyme-FB is a web page that exploits the ADODB stream object vulnerability in
Microsoft Internet Explorer to download a remote file to the local computer.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,esrz,73x9,7s9g,a3ap

------------------------------------------------------------
16. 9/13: Blastclan.B Worm Copies Itself to Shares
W32.Blastclan.B is a worm that spreads by copying itself to network shares.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,kig1,comu,7s9g,a3ap

------------------------------------------------------------
17. 9/13: Verbegon Trojan Writes MP3 File to Media Player
Verbegon is a Trojan has an icon visually similar to that of the default media player
shell registration for an mp3 file extension.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,erz4,7exr,7s9g,a3ap

------------------------------------------------------------
18. 9/13: Fake-Alert-R Trojan Shows Fake Warning Message
Similar to other malwares of this family, FakeAlert-R Trojan shows a fake warning
message, alarming the users that their machine is infected or at risk.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,b949,38mg,7s9g,a3ap

------------------------------------------------------------
19. 9/13: Desdie-A Trojan Hits Windows
Troj/Desdie-A is a Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,m31s,800d,7s9g,a3ap

------------------------------------------------------------
20. 9/13: Troj/Agent-GCJ a Windows Trojan
Troj/Agent-GCJ is a Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,blxr,a3th,7s9g,a3ap

------------------------------------------------------------
21. 9/12: Agent.AAWD Worm Drops Copy of Itself, Overwrites HOSTS File
Worm_Agent.AAWD may arrive as a file downloaded from a link attachment to email
messages.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,6g8e,6n9u,7s9g,a3ap

------------------------------------------------------------
22. 9/12: Killaut.A Worm Copies Itself to Drives, Disables Processes
W32.Killaut.A is a worm that copies itself to local and removable drives.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,bot8,4ayz,7s9g,a3ap

------------------------------------------------------------
23. 9/12: CoreNet Trojan Contacts, Watches Certain Websites
CoreNet is a Trojan that will contact certain websites.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,bgrn,d54b,7s9g,a3ap

------------------------------------------------------------
24. 9/12: Rbot-GTC a Network Worm
W32/Rbot-GTC is a network worm for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,5a5z,fz56,7s9g,a3ap

------------------------------------------------------------
25. 9/12: DNSChan-LZ Trojan Targets Windows
Troj/DNSChan-LZ is a Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,agve,8e7j,7s9g,a3ap

------------------------------------------------------------
26. 9/12: HTML_Dloader.TAA a Malicious HTML File
HTML_Dloader.TAA is a malicious HTML file that may be downloaded from remote sites by
other malware.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,lgl0,9aij,7s9g,a3ap

------------------------------------------------------------
27. 9/12: Dloader.MLP Trojan May be Downloaded or Dropped
Troj_Dloader.MLP is a Trojan that may be downloaded from remote sites by other malware.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,5p6f,88o7,7s9g,a3ap

------------------------------------------------------------
28. 9/12: Hoba.A Trojan Drops .DLL File to Download Malicious Script
Troj_Hoba.A is a Trojan that is downloaded from a compromised Web site by another malware
detected by Trend Micro as TROJ_DLOADER.MLP.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,gi71,45su,7s9g,a3ap

------------------------------------------------------------
29. 9/12: Fujacks.BZ Virus Infects HTML, ASP FIles
W32.Fujacks.BZ is a virus that infects HTML and ASP files and adds IFRAME that links to
malicious sites.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,2r2w,rws,7s9g,a3ap

------------------------------------------------------------
30. 9/12: Neeris Worm Spreads Via MSN IM
W32.Neeris is a worm that spreads through MSN instant messaging applications.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,26n1,kzyd,7s9g,a3ap

------------------------------------------------------------
31. 9/12: Pushdo-B a Windows Trojan
Troj/Pushdo-B is a Trojan for the Windows platform.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,bx5a,1dlg,7s9g,a3ap

------------------------------------------------------------
32. 9/12: Spy-Agent.cj Trojan Monitors, Steals User Keyboard Strokes
Spy-Agent.cj is a Trojan that monitors and steals user keyboard strokes as well as Window
content and sends it back to its owner.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,l296,7ctc,7s9g,a3ap

------------------------------------------------------------

*********************************************************************

/-------------------------------------------------------------------

Digital Rights Strategies 2007 - September 17, 2007, New York City -
The Premier Digital Rights Business & Technology Solutions Conference -
You can't afford to miss this comprehensive event on digital rights business
and technology issues - a "must-attend" for those involved in content security
in consumer media distribution.
http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,12ga,2mh6,7s9g,a3ap

--------------------------------------------------------------adv.-/

*********************************************************************
PRODUCTS AND SERVICES
*********************************************************************


*********************************************************************
VIEWS
*********************************************************************

1. Updating our Thinking on Software Updates
eSecurityPlanet columnist Ken van Wyk looks at the issue of software updates --
particularly the lack there of for mobile devices.

http://nl.internet.com/ct.html?rtr=on&s=1,3gqk,1,ll7n,mfcu,7s9g,a3ap

------------------------------------------------------------


*********************************************************************
Earthweb.com's Family of Online Services for IT Insiders
*********************************************************************

IT MANAGEMENT
http://itmanagement.earthweb.com/
HARDWARE & SYSTEMS
http://hardware.earthweb.com/
NETWORKING & COMMUNICATIONS
http://networking.earthweb.com/
WEB DEVELOPMENT
http://webdeveloper.earthweb.com/
SOFTWARE DEVELOPMENT
http://softwaredev.earthweb.com/

Get the latest technical tips, tools, and resources via Earthweb's
extensive collection of free e-mail newsletters!

*********************************************************************

You are subscribed to the eSecurity Planet newsletter as peopleblog1.666news@blogger.com. To unsubscribe from eSecurity Planet please go to:

http://member.internet.com/unsubscribe.php?type=NL&uid=58ad472f31&rid=1768

To unsubscribe via postal mail, please contact us at:

Jupitermedia Corp.
Attn: Newsletter Subscription Dept.
475 Park Avenue South
New York, NY 10016

Please include the email address which you have been contacted with.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

This email is powered by EmailLabs (http://www.emaillabs.com)
Contact us for a FREE demo

No comments: