malware Type: virus
Discovered: 2006-08-24
Added: 2006-08-28
Threat ID: 148019 |
trojan.PWS.Fulbiz disables the Windows Security Center notification
options. This virus turns off the Windows firewall. The trojan harvests personal data and transmits it to remote computers. |
Risk Description:
Ease of Removing Trojan.PWS.Fulbiz
Uses running processes
Creates new registry entries with consistent data
Consistently named
Consistent file contents
Privacy Risks/Security Changes of Trojan.PWS.Fulbiz
Mimics legitimate file names
Disables security software
Disables Windows Security Center notification options
Disables Windows Firewall
Harvests personal data
Transmits personal data to remote computers
Damage/Intrusion/Annoyance of Trojan.PWS.Fulbiz
Displays error messages due to buggy code
Autoruns at startup without an option to be disabled
Creates new files
Propagation/Saturation of Trojan.PWS.Fulbiz
Infects from a link in an email |
alias(s) of Trojan.PWS.Fulbiz
TR/Spy.Reox.B
Win32:Trojano-3436
PSW.Generic.QBZ
Trojan.Spy.Reox.B
Logger.Reox.b
Reox!tr.pws
IM-worm.Win32.Sumom.C
Trojan-Spy.Win32.Reox.b
PWS-Reox
a variant of Win32/Spy.Agent.EW
W32/Suspicious_M.gen
Trj/Reox.C
Infostealer.Reoxtan
Trojan.Spy.Win32.Reox.0CB6
Trojan.PWS.Reox.B |
Further details about Trojan.PWS.Fulbiz may be available at our Malware Research Center
|