<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
<channel>
<title>FGCenter - Latest Threats</title>
<link>http://www.fortiguard.com/</link>
<language>en</language>
<copyright>Copyright 2010 Fortinet Inc. All Rights Reserved</copyright>
<pubDate>Thu, 02 Sep 2010 14:50:09 -0800</pubDate>
	<item>
		<title>W32/Sasfis.BLR!tr.dldr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>The following files exist:<br><br><ul><li>%System%\yise.ero</li><li>%System%\4.tmp</li></ul></li><br><li>It deletes itself from the current folder.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Sasfis.BLR!tr.dldr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Sasfis.BLR!tr.dldr</guid>
		<pubDate>Wed, 01 Sep 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Agent.EO!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>The following files exist:<br><br><ul><li>%SYSTEM%\yise.ero</li><li>%TEMP%\[Number].tmp</li></ul></li><br><li>It deletes itself from the current folder.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Agent.EO!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Agent.EO!tr</guid>
		<pubDate>Tue, 24 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Agent.YB!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>The following files exist:<br><br><ul><li>%SYSTEM%\yise.ero</li><li>%TEMP%\[Number].tmp</li></ul></li><br><li>It deletes itself from the current folder.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Agent.YB!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Agent.YB!tr</guid>
		<pubDate>Tue, 24 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Agent.ELI!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>The following files exist:<br><br><ul><li>%Application Data\%Piiz\mahi.exe</li><li>%Application Data\%Sodeir\fyyk.tmp</li><li>%Application Data\%Sodeir\fyyk.yhz</li></ul></li><br><li>It deletes itself from the current folder.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Agent.ELI!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Agent.ELI!tr</guid>
		<pubDate>Tue, 24 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Krypt.B!tr.dldr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>Visible symptoms vary.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Krypt.B!tr.dldr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Krypt.B!tr.dldr</guid>
		<pubDate>Tue, 24 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>JS/Agent.FNR!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>This malware tries to execute some Javascript codes from a remote location. There may be no visible symptoms.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=JS/Agent.FNR!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=JS/Agent.FNR!tr</guid>
		<pubDate>Mon, 23 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Katusha.MK!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>Visible symptoms vary.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Katusha.MK!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Katusha.MK!tr</guid>
		<pubDate>Mon, 23 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/FakeAV.TI!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>An interface for a fake antivirus application is displayed.</li><li>A copy of the malware may exist in an existing subfolder in the Program Files folder.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/FakeAV.TI!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/FakeAV.TI!tr</guid>
		<pubDate>Mon, 23 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Agent.AQLJ!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>Possible firewall alert that an executable program is attempting to connect to the Internet.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Agent.AQLJ!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Agent.AQLJ!tr</guid>
		<pubDate>Fri, 20 Aug 2010 00:00:00 -0800</pubDate>
	</item>
	<item>
		<title>W32/Zbot.MMV!tr (Trojan)</title>
		<description>
		<![CDATA[<b>Visible Symptoms</b><br /><br /><br><ul><li>The following files exist:<br><br><ul><li>%AppData%\[RANDOM_NAME]\[RANDOM_NAME].exe</li></ul><br>where:<br><br>&nbsp;&nbsp;%AppData% is a variable that refers to the directory that serves as a common repository for application-specific data.<br>&nbsp;&nbsp;{RANDOM_NAME} refers to the file name that had been generated by a random mechanism.</li><br><li>It deletes itself from the current folder.</li></ul><br>]]>
		</description>
		<link>http://www.fortiguardcenter.com/ve?vn=W32/Zbot.MMV!tr</link>
		<guid>http://www.fortiguardcenter.com/ve?vn=W32/Zbot.MMV!tr</guid>
		<pubDate>Thu, 19 Aug 2010 00:00:00 -0800</pubDate>
	</item>
</channel>
</rss>
