|
Virus Database
|
Virus Database
Trojan.Java.Agent.I Trojan.Java.Agent.I is a trojan-dropper written in Java. On execution, the malware drops and runs an executable file.
Trojan.Iframe.BMY Trojan.Iframe.BMY (and the similar Trojan.JS.Iframe.CVT and Trojan.Iframe.BZW detections) identify webpages that contain a suspicious hidden iframe appended to the end of their HTML code.
Trojan-Dropper:OSX/Revir.D Trojan-Dropper:OSX/Revir.D silently drops other malicious programs onto the machine; on execution, Revir.D opens a decoy file to distract the user from the program's malicious activities.
Backdoor:OSX/Imuler.B Backdoor:OSX/Imuler.B contacts a remote server for instructions; it may then steal files or capture a screenshot of the infected computer system, which is later forwarded to the remote server.
Exploit:W32/CVE-2011-3402.A Exploit:W32/CVE-2011-3402.A is a Generic Detection that identifies malicious files which exploit a known vulnerability various Windows operating system versions.
Exploit:Java/Majava.B Exploit:Java/Majava.B identifies malicious files that exploit vulnerabilities in the Java Runtime Environment (JRE).
Exploit:W32/CVE-2010-0188.C Summary
Exploit:W32/CVE-2010-0188.C identifies malicious PDF files downloaded by the Blackhole exploit kit that exploit a known vulnerability.
Exploit:Java/CVE-2012-5076.B Exploit:Java/CVE-2012-5076.B is a Generic Detection that identifies Java exploits.
Exploit:Java/Majava.A Exploit:Java/Majava.A is a Generic Detection that identifies Java exploits.
Exploit:W32/CVE-2010-0188.B Exploit:W32/CVE-2010-0188.B identifies malicious PDF files downloaded by the Blackhole exploit kit that exploit a known vulnerability.
Exploit:Java/CVE-2012-4681.H Exploit:Java/CVE-2012-4681.H identifies malicious Java Archive (JAR) files that exploit a known vulnerability.
Trojan-Spy:W32/FinSpy.A Trojan-Spy:W32/FinSpy.A is a component of a commercial surveillance product that monitors user activity.
Flame Flame is a sophisticated information-gathering program used in targeted cyber-attacks against organizations and nation states in the Middle East.
Trojan:W32/Patched Windows components that have been 'patched' by a malicious application, usually to facilitate the malware's operations. The affected component and the purpose of the patching may vary depending on the malware in question.
Rootkit:W32/ZAccess Rootkit:W32/ZAccess constantly displays advertisements on the infected machine and may silently contact remote servers to retrieve additionaly advertising information.
Backdoor:OSX/MacKontrol.A Backdoor:OSX/MacKontrol.A connects to a remote server to receive further instructions, without the knowledge or permission from the user.
Backdoor:OSX/Sapbap.A Backdoor:OSX/Sabpab.A connects to a remote server to receive further instructions, without the knowledge or permission from the user.
Backdoor:OSX/Olyx.C Backdoor:OSX/Olyx.C connects to a remote server to receive further instructions, without the knowledge or permission from the user.
Backdoor:OSX/Olyx.B Backdoor:OSX/Olyx.B connects to a remote server to receive further instructions, without the knowledge or permission from the user.
Trojan:W32/Ransomcrypt Trojan:W32/Ransomcrypt is ransomware that encrypts files on the affected computer and demands payment in order to provide a password decrypting the affected files.
Trojan:W32/Reveton Trojan:W32/Reveton is a Ransomware application. It fraudulently claims to be from a legitimate law enforcement authority and prevents users from accessing their infected machine, demanding that a 'fine' must be paid to restore normal access.
Trojan-Downloader:OSX/Flashback.K Trojan-Downloader:OSX/Flashback.K connects to a remote site to download its payload; on successful infection, the malware modifies targeted webpages displayed in the web browser.
Backdoor:W32/Binanen.A A dropper Trojan that contains malicious or potentially unwanted software, which it 'drops' and installs on the affected system.
Trojan-Downloader:OSX/Flashback.I Trojan-Downloader:OSX/Flashback.I connects to a remote site to download its payload; on successful infection, the malware redirects web traffic.
Trojan-Dropper:OSX/Revir.C Trojan-Dropper:OSX/Revir.C silently drops other malicious programs onto the machine; on execution, Revir.C displays a titillating image to distract the user from the program's malicious activities.
Exploit:Java/Blackhole Exploit:Java/Blackhole identifies a Java class module used as part of an exploit kit known as Blackhole.
Application:W32/InstallCore InstallCore is an advertising module that displayed targeted advertising material.
Rootkit:W32/ZAccess Rootkit:W32/ZAccess constantly displays advertisements on the infected machine and may silently contact remote servers to retrieve additional advertising information.
Backdoor:OSX/DevilRobber.A Backdoor:OSX/DevilRobber.A silently installs applications related to Bitcoin-mining; it may also harvest data from the infected machine and listen for additional commands from a remote user.
Backdoor:OSX/Tsunami.A Backdoor:OSX/Tsunami.A is a distributed denial-of-service (DDoS) flooder that is also capable of downloading files and executing shell commands in an infected system.
Trojan-Downloader:OSX/Flashback.C Trojan-Downloader:OSX/Flashback.C poses as a Flash Player installer and connects to a remote host to obtain further installation files and configuration.
Trojan-Downloader:OSX/Flashback.B Trojan-Downloader:OSX/Flashback.B poses as a Flash Player installer, and connects to a remote host to obtain further installation configuration and files.
Trojan-Dropper:OSX/Revir.B Trojan-Dropper:OSX/Revir.B drops and executes a backdoor program onto the system, while camouflaging its activity by opening a JPG file to distract the user.
Monitoring-Tool:Android/SimChecker.A Monitoring-Tool:Android/SimChecker.A collects geolocation and other device information, and sends out this information via SMS messages and e-mails.
Trojan-Downloader:OSX/Flashback.A Trojan-Downloader:OSX/Flashback.A poses as a Flash Player installer, and connects to a remote host to obtain further installation configuration and files.
Backdoor:OSX/Imuler.A Backdoor:OSX/Imuler.A contacts a remote server for instructions; it may then steal files or capture a screenshot of the infected computer system, which is then forwarded to the remote server.
Trojan-Dropper:OSX/Revir.A Trojan-Dropper:OSX/Revir.A drops a downloader component that downloads a backdoor program onto the system, while camouflaging its activity by opening a PDF file to distract the user.
Worm:W32/Morto.A Worm:W32/Morto.A propagates through Remote Desktop Services on Windows servers by brute-forcing the login credentials of the server.
Trojan:Android/GinMaster.A Trojan:Android/GinMaster.A steals confidential information from the device and sends it to a remote website.
Trojan:W32/Yakes Trojan:W32/Yakes variants attempt to connect to and download files from remote servers.
Trojan:Android/DroidKungFu.C Trojan:Android/DroidKungFu.C forwards confidential details to a remote server.
Trojan:Android/AutoSPSubscribe.A Trojan:Android/AutoSPSubscribe.A is a malicious app that targets Android users in China, and is distributed through unofficial markets.
Trojan:BASH/QHost.WB Trojan:BASH/QHost.WB hijacks web traffic by modifying the hosts.
Trojan:Android/YZHCSMS.A Trojan:Android/YZHCSMS.A sends SMS/MMS messages to premium rate numbers, potentially incurring unexpected/unwanted usage charges.
Monitoring-Tool:Android/SpyBubble.A Monitoring-Tool:Android/SpyBubble.A is a commercially available tracking tool.
Trojan:Android/BaseBridge.A Trojan:Android/BaseBridge.A forwards confidential details to a remote server.
Spyware:Android/Flexispy.K Spyware:Android/Flexispy.K is a commercially available monitoring program.
Rogue:OSX/FakeMacDef.A Dishonest antivirus software which tricks users into buying or installing it, usually by infecting a user's computer, or by pretending the computer is infected.
Trojan:W32/Murofet.A This trojan attempts to download a file (presumably malicious) from a randomly generated domain.
Virus:W32/Ramnit.N A program that secretly and maliciously integrates itself into program or data files. It spreads by integrating itself into more files each time the host program is run.
All Virus Updates
|
| |
|
|