<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Hero &#187; Backdoor</title>
	<atom:link href="http://sechero.com/tag/backdoor/feed/" rel="self" type="application/rss+xml" />
	<link>http://sechero.com</link>
	<description>If it's about security, you heard it here first</description>
	<lastBuildDate>Mon, 12 Jul 2010 23:27:38 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Asante FM2008 10/100 Ethernet switch backdoor login</title>
		<link>http://sechero.com/asante-fm2008-10100-ethernet-switch-backdoor-login/</link>
		<comments>http://sechero.com/asante-fm2008-10100-ethernet-switch-backdoor-login/#comments</comments>
		<pubDate>Sat, 25 Jul 2009 05:55:53 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Bugtraq]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20901</guid>
		<description><![CDATA[Bugtraq: Re: Asante FM2008 10/100 Ethernet switch backdoor login Re: Asante FM2008 10/100 Ethernet switch backdoor login URL: http://www.securityfocus.com/archive/1/505230]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/505230">Bugtraq: Re: Asante FM2008 10/100 Ethernet switch backdoor login</a></h1>
<p>Re: Asante FM2008 10/100 Ethernet switch backdoor login
<p>URL: <a href="http://www.securityfocus.com/archive/1/505230">http://www.securityfocus.com/archive/1/505230</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/asante-fm2008-10100-ethernet-switch-backdoor-login/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>increased Backdoor.Coreflood infections</title>
		<link>http://sechero.com/increased-backdoorcoreflood-infections/</link>
		<comments>http://sechero.com/increased-backdoorcoreflood-infections/#comments</comments>
		<pubDate>Fri, 29 May 2009 15:58:23 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[increased Backdoor.Coreflood infections Posted by auto319326_at_hushmail.com on May 29 Is anyone else seeing an increasing in Backdoor.Coreflood infections on their network? I have not yet been able to pinpoint the infection vector. Has anyone seen coreflood being dropped by a specific set of web pages? Cheers, Tim URL: http://seclists.org/incidents/2009/May/0001.html]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://seclists.org/incidents/2009/May/0001.html">increased Backdoor.Coreflood infections</a></h1>
</p>
<p>Posted by auto319326_at_hushmail.com on May 29
</p>
<p>
<p> Is anyone else seeing an increasing in Backdoor.Coreflood  <br /> infections on their network? I have not yet been able to pinpoint  <br /> the infection vector. Has anyone seen  coreflood being dropped by a  <br /> specific set of web pages? <br /> 
<p>Cheers,  <br /> Tim <br /> 
<p>URL: <a href="http://seclists.org/incidents/2009/May/0001.html">http://seclists.org/incidents/2009/May/0001.html</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/increased-backdoorcoreflood-infections/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>A lesson in FUD</title>
		<link>http://sechero.com/a-lesson-in-fud/</link>
		<comments>http://sechero.com/a-lesson-in-fud/#comments</comments>
		<pubDate>Wed, 27 May 2009 00:07:47 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[PHP]]></category>

		<guid isPermaLink="false">http://sechero.com/a-lesson-in-fud/</guid>
		<description><![CDATA[Mydoom: A lesson in FUD Fear, uncertainty and doubt can have very real effects on security, especially when uninformed &#8216;experts&#8217; are too quick to jump to conclusions. Mydoom was an example. In the last week of January 2004, a new worm was discovered squirming its way across the Internet. Security researchers quickly realized this was [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=31460">Mydoom: A lesson in FUD</a></h1>
</p>
<p>Fear, uncertainty and doubt can have very real effects on security, especially when uninformed &#8216;experts&#8217; are too quick to jump to conclusions. Mydoom was an example.  In the last week of January 2004, a new worm was discovered squirming its way across the Internet.</p>
<p>Security researchers quickly realized this was the fastest-spreading e-mail worm yet, eclipsing even the promiscuous Sobig worm. Craig Schmugar of McAfee saw a line of code containing the text &#8220;mydom&#8221;, and said of his decision to call it Mydoom: It was evident early on that this would be very big. I thought having &#8220;doom&#8221; in the name would be appropriate.</p>
<p>The original Mydoom worm carried two payloads:</p>
<p>- A distributed denial-of-service (DoS) time bomb, set to go off on the first of February that year &#8211; A remote access backdoor that allowed an infected MS Windows computer to be controlled without its user&#8217;s knowledge
<p>URL: <a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=31460">http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=31460</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/a-lesson-in-fud/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor in com_rsgallery2 gallery extension for joomla</title>
		<link>http://sechero.com/backdoor-in-com_rsgallery2-gallery-extension-for-joomla/</link>
		<comments>http://sechero.com/backdoor-in-com_rsgallery2-gallery-extension-for-joomla/#comments</comments>
		<pubDate>Tue, 26 May 2009 16:45:04 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Bugtraq]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Bugtraq: Backdoor in com_rsgallery2 gallery extension for joomla Backdoor in com_rsgallery2 gallery extension for joomla URL: http://www.securityfocus.com/archive/1/503824]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.securityfocus.com/archive/1/503824">Bugtraq: Backdoor in com_rsgallery2 gallery extension for joomla</a></h1>
</p>
<p>Backdoor in com_rsgallery2 gallery extension for joomla
<p>URL: <a href="http://www.securityfocus.com/archive/1/503824">http://www.securityfocus.com/archive/1/503824</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoor-in-com_rsgallery2-gallery-extension-for-joomla/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor in com_rsgallery2 gallery extension for joomla</title>
		<link>http://sechero.com/backdoor-in-com_rsgallery2-gallery-extension-for-joomla-2/</link>
		<comments>http://sechero.com/backdoor-in-com_rsgallery2-gallery-extension-for-joomla-2/#comments</comments>
		<pubDate>Tue, 26 May 2009 16:00:01 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[ASCII]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Backdoor in com_rsgallery2 gallery extension for joomla &#60;!&#8211; Envelope-to: email@address Delivery-date: Tue, 26 May 2009 16:58:59 +0100 Received: from outgoing.securityfocus.com ([205.206.231.26] helo=outgoing2.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1M8z3L-0002Ld-Ef for email@address; Tue, 26 May 2009 16:58:59 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing2.securityfocus.com (Postfix) with QMQP id 0676F143742; Tue, 26 May 2009 09:55:15 [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://lists.rootsecure.net/?p=view&amp;l=bugtraq&amp;m=86295">Backdoor in com_rsgallery2 gallery extension for joomla</a></h1>
</p>
<p>&lt;!&#8211; Envelope-to: email@address Delivery-date: Tue, 26 May 2009 16:58:59 +0100 Received: from <a href="http://outgoing.securityfocus.com" title="http://outgoing.securityfocus.com" target="_blank">outgoing.securityfocus.com</a> ([205.206.231.26] helo=outgoing2.securityfocus.com) 	by <a href="http://lt.network5.net" title="http://lt.network5.net" target="_blank">lt.network5.net</a> with esmtp (Exim 4.43) 	id 1M8z3L-0002Ld-Ef 	for email@address; Tue, 26 May 2009 16:58:59 +0100 Received: from <a href="http://lists2.securityfocus.com" title="http://lists2.securityfocus.com" target="_blank">lists2.securityfocus.com</a> (<a href="http://lists2.securityfocus.com" title="http://lists2.securityfocus.com" target="_blank">lists2.securityfocus.com</a> [205.206.231.20]) 	by <a href="http://outgoing2.securityfocus.com" title="http://outgoing2.securityfocus.com" target="_blank">outgoing2.securityfocus.com</a> (Postfix) with QMQP 	id 0676F143742; Tue, 26 May 2009 09:55:15 -0600 (MDT) Mailing-List: contact <a href="mailto:bugtraq-help@securityfocus.com;" title="mailto:bugtraq-help@securityfocus.com;">bugtraq-help@securityfocus.com;</a> run by ezmlm Precedence: bulk List-Id: &lt;bugtraq.list-id.securityfocus.com&gt; List-Post: &lt;mailto:bugtraq@securityfocus.com&gt; List-Help: &lt;mailto:bugtraq-help@securityfocus.com&gt; List-Unsubscribe: &lt;mailto:bugtraq-unsubscribe@securityfocus.com&gt; List-Subscribe: &lt;mailto:bugtraq-subscribe@securityfocus.com&gt; Delivered-To: mailing list <a href="mailto:bugtraq@securityfocus.com" title="mailto:bugtraq@securityfocus.com">bugtraq@securityfocus.com</a> Delivered-To: moderator for <a href="mailto:bugtraq@securityfocus.com" title="mailto:bugtraq@securityfocus.com">bugtraq@securityfocus.com</a> Received: (qmail 20495 invoked from network); 26 May 2009 06:03:34 -0000 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;         d=gmail.com; s=gamma;         h=domainkey-signature:received:received:from:to:subject:date          :user-agent:mime-version:content-type:content-transfer-encoding          :content-disposition:message-id;         bh=MB1mx9CQQuOY66iO10m6OSm8RpcN7hzm4chypF1iqaQ=;         b=szq0ATS2nMDoJRaMY3wCQJSl/85ukP7SrMSEEA39v17z6ZIKfaVFhn/Vovsh0xPgVg          CLrHyhdG+8/vwSrtV4PDNWX9L/3YmMR9PdRBcGFQGaeFarknizRbwnfodiEZYfU6pHJv          jlrh7wSu7WVLsjh2iCD8olkaEMRhImp81uCZg= DomainKey-Signature: a=rsa-sha1; c=nofws;         d=gmail.com; s=gamma;         h=from:to:subject:date:user-agent:mime-version:content-type          :content-transfer-encoding:content-disposition:message-id;         b=n438N3ZnZLskV3v0hK0T6jzyRgpqntHuwd8WfOvx/huQqW6xwcPlAhHI5e7WSt/sfJ          TpS+dy8IFUgBRxhgMqKtYpjGSkf8myOHcUKgyWzCW06453ZYgciKc4lXc58hINUn45dl          poe0LZrOxKaz7JRP9KaqlmoI3cxGgUrhbq9Fw= User-Agent: KMail/1.9.10 MIME-Version: 1.0 Content-Type: text/plain;   charset=&quot;us-ascii&quot; Content-Transfer-Encoding: 7bit Content-Disposition: inline Message-Id: &lt;200905260803.32323.jvnkrk@gmail.com&gt; X-IMAPbase: 1176125385 9186 Status: O X-UID: 9186 Content-Length: 2498 X-Keywords:                                                                                                    </p>
<p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoor-in-com_rsgallery2-gallery-extension-for-joomla-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hackers use PDFs to take over PCs</title>
		<link>http://sechero.com/hackers-use-pdfs-to-take-over-pcs/</link>
		<comments>http://sechero.com/hackers-use-pdfs-to-take-over-pcs/#comments</comments>
		<pubDate>Thu, 23 Apr 2009 05:27:29 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[Virus]]></category>

		<guid isPermaLink="false">http://sechero.com/hackers-use-pdfs-to-take-over-pcs/</guid>
		<description><![CDATA[Hackers use PDFs to take over PCs Want to be more secure online? Stop using Adobe Acrobat reader to open PDF documents in your browser. That&#8217;s what F-Secure virus hunter Mikko Hypponen, the closest thing to a rock star holding court at the RSA security conference, is advocating. Ditching Adobe Acrobat Reader will greatly reduce [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=30993">Hackers use PDFs to take over PCs</a></h1>
</p>
<p>Want to be more secure online? Stop using Adobe Acrobat reader to open PDF documents in your browser. That&#8217;s what F-Secure virus hunter Mikko Hypponen, the closest thing to a rock star holding court at the RSA security conference, is advocating.</p>
<p>Ditching Adobe Acrobat Reader will greatly reduce your chances of getting your PC infected by a drive-by download, says the pony-tailed Hypponen, who was recently profiled in Vanity Fair. &#8220;That&#8217;s my advice,&#8221; says Hypponen, &#8220;I don&#8217;t expect a Christmas card from Adobe.&#8221;</p>
<p>The bad guys are increasingly using security flaws in Adobe Acrobat Reader browser plugins to open a backdoor to your hard drive. These instructions get implanted when you visit a tainted website. The next time you use Adobe Reader, a very tiny poisoned PDF from the bad guys also opens and installs the backdoor that may allow them to take over your computer.
<p>URL: <a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=30993">http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=30993</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/hackers-use-pdfs-to-take-over-pcs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>.NET Framework Rootkits</title>
		<link>http://sechero.com/net-framework-rootkits/</link>
		<comments>http://sechero.com/net-framework-rootkits/#comments</comments>
		<pubDate>Tue, 07 Apr 2009 13:34:57 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Disclosure]]></category>

		<guid isPermaLink="false">http://sechero.com/net-framework-rootkits/</guid>
		<description><![CDATA[.NET Framework Rootkits Posted by Erez Metula on Apr 7 Hello, Attached are the presentation + whitepaper I&#8217;m going to talk about at BlackHat conference next week in Amsterdam, titled &#34;.NET Framework Rootkits &#8211; Backdoors inside Your Framework&#34;. The main threats of Framework level rootkits are &#160;* Hidden malware &#160;*&#8230; URL: http://seclists.org/fulldisclosure/2009/Apr/0062.html]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://seclists.org/fulldisclosure/2009/Apr/0062.html">.NET Framework Rootkits</a></h1>
</p>
<p>Posted by Erez Metula on Apr 7
</p>
<p>
<p> Hello, <br /> Attached are the presentation + whitepaper I&#8217;m going to talk about at BlackHat conference next week in Amsterdam, titled &quot;.NET Framework Rootkits &#8211; Backdoors inside Your Framework&quot;. <br /> 
<p>The main threats of Framework level rootkits are <br /> 
<p>&nbsp;*   Hidden malware <br /> &nbsp;*&#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Apr/0062.html">http://seclists.org/fulldisclosure/2009/Apr/0062.html</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/net-framework-rootkits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor:WinNT/Rustock.E</title>
		<link>http://sechero.com/backdoorwinntrustocke/</link>
		<comments>http://sechero.com/backdoorwinntrustocke/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 23:46:44 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>

		<guid isPermaLink="false">http://sechero.com/backdoorwinntrustocke/</guid>
		<description><![CDATA[Backdoor:WinNT/Rustock.E URL: http://www.threatexpert.com/report.aspx?md5=45fe4ece57819a9f33797d84c216f08e]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=45fe4ece57819a9f33797d84c216f08e">Backdoor:WinNT/Rustock.E</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=45fe4ece57819a9f33797d84c216f08e">http://www.threatexpert.com/report.aspx?md5=45fe4ece57819a9f33797d84c216f08e</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoorwinntrustocke/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor.Win32.Omega.a</title>
		<link>http://sechero.com/backdoorwin32omegaa/</link>
		<comments>http://sechero.com/backdoorwin32omegaa/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 22:56:08 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false">http://sechero.com/backdoorwin32omegaa/</guid>
		<description><![CDATA[Backdoor.Win32.Omega.a URL: http://www.threatexpert.com/report.aspx?md5=7dfe5309bd64643fe88006ae48c01b4a]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=7dfe5309bd64643fe88006ae48c01b4a">Backdoor.Win32.Omega.a</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=7dfe5309bd64643fe88006ae48c01b4a">http://www.threatexpert.com/report.aspx?md5=7dfe5309bd64643fe88006ae48c01b4a</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoorwin32omegaa/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor.Bifrose, Trojan-Dropper.Win32.Agent.fdl, Virus.Win32.Bifrose</title>
		<link>http://sechero.com/backdoorbifrose-trojan-dropperwin32agentfdl-viruswin32bifrose/</link>
		<comments>http://sechero.com/backdoorbifrose-trojan-dropperwin32agentfdl-viruswin32bifrose/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 22:51:26 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false">http://sechero.com/backdoorbifrose-trojan-dropperwin32agentfdl-viruswin32bifrose/</guid>
		<description><![CDATA[Backdoor.Bifrose, Trojan-Dropper.Win32.Agent.fdl, Virus.Win32.Bifrose URL: http://www.threatexpert.com/report.aspx?md5=e1af8da76e6c2ee16312a06935e61d8f]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=e1af8da76e6c2ee16312a06935e61d8f">Backdoor.Bifrose, Trojan-Dropper.Win32.Agent.fdl, Virus.Win32.Bifrose</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=e1af8da76e6c2ee16312a06935e61d8f">http://www.threatexpert.com/report.aspx?md5=e1af8da76e6c2ee16312a06935e61d8f</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoorbifrose-trojan-dropperwin32agentfdl-viruswin32bifrose/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor:Win32/Bifrose.EY, VirTool.Win32.CeeInject, Win-Trojan/Bifrose.48559..</title>
		<link>http://sechero.com/backdoorwin32bifroseey-virtoolwin32ceeinject-win-trojanbifrose48559/</link>
		<comments>http://sechero.com/backdoorwin32bifroseey-virtoolwin32ceeinject-win-trojanbifrose48559/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 21:32:42 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false">http://sechero.com/backdoorwin32bifroseey-virtoolwin32ceeinject-win-trojanbifrose48559/</guid>
		<description><![CDATA[Backdoor:Win32/Bifrose.EY, VirTool.Win32.CeeInject, Win-Trojan/Bifrose.48559.. URL: http://www.threatexpert.com/report.aspx?md5=855c3213639a19dd30bf9297e866a47b]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=855c3213639a19dd30bf9297e866a47b">Backdoor:Win32/Bifrose.EY, VirTool.Win32.CeeInject, Win-Trojan/Bifrose.48559..</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=855c3213639a19dd30bf9297e866a47b">http://www.threatexpert.com/report.aspx?md5=855c3213639a19dd30bf9297e866a47b</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoorwin32bifroseey-virtoolwin32ceeinject-win-trojanbifrose48559/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backdoor.Win32.Bifrose.aqws, VirTool:Win32/Vbinder.P, VirTool.Win32.Vbinder..</title>
		<link>http://sechero.com/backdoorwin32bifroseaqws-virtoolwin32vbinderp-virtoolwin32vbinder/</link>
		<comments>http://sechero.com/backdoorwin32bifroseaqws-virtoolwin32vbinderp-virtoolwin32vbinder/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 19:39:46 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false">http://sechero.com/backdoorwin32bifroseaqws-virtoolwin32vbinderp-virtoolwin32vbinder/</guid>
		<description><![CDATA[Backdoor.Win32.Bifrose.aqws, VirTool:Win32/Vbinder.P, VirTool.Win32.Vbinder.. URL: http://www.threatexpert.com/report.aspx?md5=1ecb7c9e122b7df7420f93fd2a568162]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=1ecb7c9e122b7df7420f93fd2a568162">Backdoor.Win32.Bifrose.aqws, VirTool:Win32/Vbinder.P, VirTool.Win32.Vbinder..</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=1ecb7c9e122b7df7420f93fd2a568162">http://www.threatexpert.com/report.aspx?md5=1ecb7c9e122b7df7420f93fd2a568162</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/backdoorwin32bifroseaqws-virtoolwin32vbinderp-virtoolwin32vbinder/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Trojan.Win32.FlyStudio.hr, Backdoor.Win32.FlyAgent</title>
		<link>http://sechero.com/trojanwin32flystudiohr-backdoorwin32flyagent/</link>
		<comments>http://sechero.com/trojanwin32flystudiohr-backdoorwin32flyagent/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 16:33:16 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false">http://sechero.com/trojanwin32flystudiohr-backdoorwin32flyagent/</guid>
		<description><![CDATA[Trojan.Win32.FlyStudio.hr, Backdoor.Win32.FlyAgent URL: http://www.threatexpert.com/report.aspx?md5=f0e6d57fccc99ca2c029b1c3023bed3a]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=f0e6d57fccc99ca2c029b1c3023bed3a">Trojan.Win32.FlyStudio.hr, Backdoor.Win32.FlyAgent</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=f0e6d57fccc99ca2c029b1c3023bed3a">http://www.threatexpert.com/report.aspx?md5=f0e6d57fccc99ca2c029b1c3023bed3a</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/trojanwin32flystudiohr-backdoorwin32flyagent/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Trojan.Win32.Agent.buuk, Trojan-Dropper, Worm.Pinit, Backdoor.Agent!sd6..</title>
		<link>http://sechero.com/trojanwin32agentbuuk-trojan-dropper-wormpinit-backdooragentsd6/</link>
		<comments>http://sechero.com/trojanwin32agentbuuk-trojan-dropper-wormpinit-backdooragentsd6/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 16:19:54 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false">http://sechero.com/trojanwin32agentbuuk-trojan-dropper-wormpinit-backdooragentsd6/</guid>
		<description><![CDATA[Trojan.Win32.Agent.buuk, Trojan-Dropper, Worm.Pinit, Backdoor.Agent!sd6.. URL: http://www.threatexpert.com/report.aspx?md5=dd48b71a112600d5de276f8d7c0cfb44]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=dd48b71a112600d5de276f8d7c0cfb44">Trojan.Win32.Agent.buuk, Trojan-Dropper, Worm.Pinit, Backdoor.Agent!sd6..</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=dd48b71a112600d5de276f8d7c0cfb44">http://www.threatexpert.com/report.aspx?md5=dd48b71a112600d5de276f8d7c0cfb44</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/trojanwin32agentbuuk-trojan-dropper-wormpinit-backdooragentsd6/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Trojan-Dropper.Vb, Backdoor.ProRAT.K, Trojan.TDss, Packed.Generic.202..</title>
		<link>http://sechero.com/trojan-droppervb-backdoorproratk-trojantdss-packedgeneric202/</link>
		<comments>http://sechero.com/trojan-droppervb-backdoorproratk-trojantdss-packedgeneric202/#comments</comments>
		<pubDate>Tue, 24 Mar 2009 16:10:46 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Backdoor]]></category>
		<category><![CDATA[Packed]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://sechero.com/trojan-droppervb-backdoorproratk-trojantdss-packedgeneric202/</guid>
		<description><![CDATA[Trojan-Dropper.Vb, Backdoor.ProRAT.K, Trojan.TDss, Packed.Generic.202.. URL: http://www.threatexpert.com/report.aspx?md5=7fa61f8b1ed99c1699c431790b990d36]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.threatexpert.com/report.aspx?md5=7fa61f8b1ed99c1699c431790b990d36">Trojan-Dropper.Vb, Backdoor.ProRAT.K, Trojan.TDss, Packed.Generic.202..</a></h1>
</p>
<p>
<p>URL: <a href="http://www.threatexpert.com/report.aspx?md5=7fa61f8b1ed99c1699c431790b990d36">http://www.threatexpert.com/report.aspx?md5=7fa61f8b1ed99c1699c431790b990d36</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/trojan-droppervb-backdoorproratk-trojantdss-packedgeneric202/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

