AVERT Low-Profiled Threat Notice: BackDoor-AXJ.gen

From: Andrew Z Carpenter [MVP:Windows:Security] (azc_at_cirencester.ac.uk)
Date: 06/28/04


Date: Mon, 28 Jun 2004 13:32:21 +0100

Notice
This is a Low-Profiled Threat Notice for BackDoor-AXJ.gen.

Justification
BackDoor-AXJ.gen has been deemed Low-Profiled due to Media Attention at
http://www.heise.de/security/news/meldung/48589 and
http://www.uscert.gov/current/current_activity.html#iis5.
BackDoor-AXJ.gen is referred to as Remote Access Trojan in one of the articles.

Read About It
Information about BackDoor-AXJ.gen is located on VIL at:
http://vil.nai.com/vil/content/v_100488.htm

Detection
This new variant of BackDoor-AXJ.gen was first discovered on 06/24/2004 and
detection will be added to the 4370 dat files (Release Date: 06/30/2004).
Though we consider this a low threat, AVERT has posted an extra.dat as part of the
above description for your convenience.

If you suspect you have BackDoor-AXJ.gen, please submit a sample to
http://www.webimmune.net.

Risk Assessment Definition
For further information on the Risk Assessment and AVERT Recommended Actions
please see:
http://www.networkassociates.com/us/security/resources/risk_assessment.htm

Best Regards,

McAfee AVERT - Anti Virus and Vulnerability Research, Analysis, and
Solutions visit us at www.avertlabs.com

-- 
AZC
MVP 


Relevant Pages

  • AVERT Low-Profiled Threat Notice: PWS-WebMoney.gen Trojan
    ... This is a Low-Profiled Threat Notice for PWS-WebMoney.gen trojan. ... PWS-WebMoney.gen was first discovered on 06/29/2004 and detection will ... For further information on the Risk Assessment and AVERT Recommended ...
    (microsoft.public.security.virus)
  • AVERT Threat Notice: W32/Nachi.worm.b UPDATE
    ... This is a Low-Profiled Threat Notice update for W32/Nachi.worm.b ... W32/Nachi.worm.b was first discovered on 02/11/2004 and detection was available from the ... Though we consider this a low threat, AVERT has posted an extra.dat as part of the above ... For further information on the Risk Assessment and AVERT Recommended Actions please see: ...
    (microsoft.public.scripting.virus.discussion)
  • AVERT Threat Notice: W32/Nachi.worm.b UPDATE
    ... This is a Low-Profiled Threat Notice update for W32/Nachi.worm.b ... W32/Nachi.worm.b was first discovered on 02/11/2004 and detection was available from the ... Though we consider this a low threat, AVERT has posted an extra.dat as part of the above ... For further information on the Risk Assessment and AVERT Recommended Actions please see: ...
    (microsoft.public.security.virus)
  • AVERT Low-Profiled Threat Notice: W32/Buchon.gen@MM
    ... This is a Low-Profiled Threat Notice for W32/Buchon.gen@MM. ... W32/Buchon.gen@MM was first discovered on 10/21/2004 and detection will be added to the 4401 ... Though we consider this a low threat, AVERT has posted an extra.dat as part of the above ... For further information on the Risk Assessment and AVERT Recommended Actions please see: ...
    (microsoft.public.security.virus)
  • AVERT Low-Profiled Threat Notice: PERL/Santy.worm
    ... This is a Low-Profiled Threat Notice for PERL/Santy.worm. ... PERL/Santy.worm was first discovered on 12/21/2004 and detection will be added to the 4416 ... Though we consider this a low threat, AVERT has posted an extra.dat as part of the above ... For further information on the Risk Assessment and AVERT Recommended Actions please see: ...
    (microsoft.public.security.virus)