BleepingComputer.com: new trojan out and about

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

new trojan out and about

#1 User is offline   Piney 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 119
  • Joined: 11-June 05
  • Location:Alaska

Posted 21 September 2005 - 02:38 AM

Seems it was discovered Sept. 20, and I got one already!
(looking for the arrow pointing at my head!)


It is called Trojan.Tooso.Q by Symantec. Info on it here: http://securityresponse.symantec.com/avcen...an.tooso.q.html

Seems it loves to delete registry entries/subkeys for:

Quote

HKEY_LOCAL_MACHINE\SOFTWARE\Symantec
HKEY_LOCAL_MACHINE\SOFTWARE\McAfee
HKEY_LOCAL_MACHINE\SOFTWARE\KasperskyLab
HKEY_LOCAL_MACHINE\SOFTWARE\Agnitum
HKEY_LOCAL_MACHINE\SOFTWARE\Panda Software
HKEY_LOCAL_MACHINE\SOFTWARE\Zone Labs

This one has definitely targeted the security items of a computer.
Piney

Infected? Report it! <<<Click


Posted Image

#2 User is offline   quietman7 

  • Bleepin' Janitor
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Global Moderator
  • Posts: 25,514
  • Joined: 09-July 05
  • Gender:Male
  • Location:Virginia, USA

Posted 21 September 2005 - 09:04 AM

Quote

Hacker Spams Huge Quantities Of Trojans, Again
For the second day in a row, an unknown attacker Tuesday spammed major quantities of a new Bagle-esque Trojan horse that turns off virtually every known security program and blocks access to security sites on the Internet.

Several variants of the BagleDI-U Trojan -- dubbed Bagle.cd by McAfee, and  Bagle.da by Trend Micro -- have been spammed since Monday...

securitypipeline.com

For more info:
http://www.trendmicro.com/vinfo/virusencyc...e=TROJ_BAGLE.DA
http://www.trendmicro.com/vinfo/virusencyc...=JAVA_BYTEVER.A
Microsoft MVP - Consumer Security 2007-2012 Posted Image
Member of UNITE, Unified Network of Instructors and Trusted Eliminators

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users