You're in: Panda Security > Home Users > security-info > about-malware > encyclopedia > overview
Active Scan. Scan your PC free
Panda Security Product Line 2012

Virus Encyclopedia

Welcome to the Virus Encyclopedia of Panda Security.

Encyclopedia GetVirusCard True 0

Briz.I

 
Threat LevelModerate threatDamageHighDistributionNot widespread
Common name:Briz.I
Technical name:Trj/Briz.I
Threat level:Low
Type:Trojan
Effects:  

It obtains confidential data from the affected computer, prevents users from accesing websites belonging to certain antivirus companies, and uses the computer as a gateway in order to connect to third-parties' services over the Internet.

Affected platforms:

Windows 2003/XP/2000/NT/ME/98

First detected on:May 30, 2006
Detection updated on:May 30, 2006
StatisticsNo

Brief Description 

    

Briz.I is a password stealer type Trojan that consists of several components that are consecutively downloaded from the Internet. Such components carry out the following actions:

  • Stop and disable the services Windows Security Center and Internet Connection Sharing (Windows XP firewall).
  • Obtain information from the computer, such as IP address, name, geographic area, etc.
  • Prevent users and installed programs from accessing certain websites, which belong to several antivirus companies.
  • Capture the data entered in websites containing forms accessed through Internet Explorer. This way, it obtains passwords for email accounts, banking entities and other online services.
  • Harvest paswords and other data stored in Protected Storage, as well as the email clients Outlook, Eudora and The Bat.
  • Use the affected computer as a gateway, in order to connect to third-parties' Telnet, SMTP, FTP and HTTP services anonimously.
  • Execute commands and download files from the hard disk of the affected computer.

Briz.I does not spread automatically using its own means. It needs an attacking user's intervention in order to reach the affected computer. The means of transmission used include, among others, floppy disks, CD-ROMs, email messages with attached files, Internet downloads, FTP, IRC channels, peer-to-peer (P2P) file sharing networks, etc.

Visible Symptoms 

    

Briz.I is difficult to recognize, as it does not display any messages or warnings that indicate it has reached the computer.