Virus Encyclopedia

Welcome to the Virus Encyclopedia of Panda Security.

Agent.BTZ

Threat LevelLow threat
DamageHigh
DistributionNot widespread

At a glance

Common name:Agent.BTZ
Technical name:Trj/Agent.BTZ
Threat level:Low
Type:Trojan
Effects: It allows to get into the affected computer. It spreads , across the Internet.
Affected platforms:

Windows 2003/XP/2000/NT/ME/98/95

First detected on:April 8, 2006
Detection updated on:April 8, 2006
StatisticsNo
Proactive protection:
Yes, using TruPrevent Technologies

Brief Description

Agent.BTZ is a Trojan, which although seemingly inoffensive, can actually carry out attacks and intrusions.

Agent.BTZ uses the following propagation or distribution methods:

  • Exploiting vulnerabilities with the intervention of the user: exploiting vulnerabilities in file formats or applications. To exploit them successfully it needs the intervention of the user: opening files, viewing malicious web pages, reading emails, etc.
  • Via Internet, exploiting remote vulnerabilities: attacking random IP addresses, in which it tries to insert a copy of itself by exploiting one or more vulnerabilities.

Tech details

Effects

Agent.BTZ allows hackers to get into and carry out dangerous actions in affected computers, such as capturing screenshots, stealing personal data, etc.

Means of transmission


Propagation through the exploits of remote vulnerabilities:

Agent.BTZ carries out the following process:

  • It spreads by attacking IP addresses obtained at random or from the network to which the infected computer belongs.
  • It tries to access the IP addresses under attack by exploiting an existing vulnerability or through an open port.
  • If it does this, it downloads a copy of itself onto the vulnerable computer.

Further Details

Agent.BTZ has the following additional characteristics:

  • It is written in the programming language Assembler x86-32 bit.
  • It is 323223 bytes in size.

Solution

See solution