Archive for the 'BitDefender' Category

ccl9ke.exe

What is ccl9ke.exe and how to remove ccl9ke.exe?
ccl9ke.exe sample submitted on 2010-06-04 and identified as a threat.
Alias:
Threat File:ccl9ke.exe
Submit time:2010-06-04
Excute time:2 min 12 sec
Level of Spread:5
Level of Threat:6
type:Win32:Rootkit
Filesize:32K Bytes
Files type
ccl9ke.exe is Windows exe file.
MD5:77r1576RG6W8V5dNLN0703Ijx3oQMGte

2010-0604 Latest Detected Virus Files

myexe.exe; uwobicit.dll; urewatonu.dll; simk2b8e.exe; rdl.exe; q2nbmjixwz.dll; swvexl.dll; odocoqafar.dll; ejeyaticuhaya.dll; qcavmritssd.exe; kxddapoc.sys; axpyikoc.sys; awwoipow.sys; pwtdqpob.sys; zq45ljbe.exe; z2o0vacxvu.dll; win16.exe; fxtdipog.sys; kxnciuoc.sys; zq0.exe; pxtdypow.sys; uxldrpob.sys; kxtdapod.sys; kxrdypog.sys; 7b2ftx6c.exe; 0715i32.exe; 0712i32.exe; 4jrhzqbl.exe; fxtdipog.sys; kxnciuoc.sys; zq0.exe; wr.exe; pxtdypow.sys; uxldrpob.sys; kxtdapod.sys; uwtyapod.sys; pwlcqpod.sys; kxrdypog.sys; zq0.exe; wertwg.exe; vwgzkuojm.exe; uwldypow.sys; so.exe; cmg.exe; wertwg.exe; vwgzkuojm.exe; uwldypow.sys; so.exe; cmg.exe;

slmvsrv.exe

The article is about slmvsrv.exe virus file. It’s a threat file as the samples we received.
slmvsrv.exe sample submitted on 2010-06-03 and identified as a threat.
Alias:
Threat File:slmvsrv.exe
Submit time:2010-06-03
Excute time:3 min 12 sec
Level of Spread:6
Level of Threat:3
type:DR/Delphi
Filesize:65K Bytes
Files type
slmvsrv.exe is Windows exe file.
MD5:D5O007dYG1rv1q041w5JieE02kSWfQHt

Exploit.JS.Agent.bab

Exploit.JS.Agent.bab
Threat Name: Exploit.JS.Agent.bab
Spread Method:
E-Mail
Threat type:Exploit.JS
Exploit.JS.Agent.bab first detected:2010-06-03
Virus file known is dll file written in C++
File Size:539K Bytes.
Behavior:Add program s process
Level of Spread:6
Level of Threat:1
Reported Path:Unkonow path
MD5:843xwrY7Cynr0m72yskFEA0v1GO6bNDp
SHA1..:HTS220aDk25sJ41Q276nmbI1LowB3ul6pCtO4I3l

2010-0603 Newest Infected Viruses Report

AdWare.Win32.Agent.bn, AdWare.Win32.RON, AdWare.Win32.BHO, Adware.Win32.RooGoo
, Adware.Win32.BitAccelerator, AdWare.Win32.SaveNow.au, AdWare.Win32.CashFiesta, Adware.Win32.SmartBrowser, 007Spy.Keylogger, AdWare.Win32.Cinmus, dWare.Win32.SponLink
ABetterInternet, AdWare.Win32.CommonName, AdWare.Win32.SuperJuan

Latest Viruses Name List Report on 20100602

CasOnline, Trojan.Downloader , Cryptic, Trojan.FakeAlert, 3721 Chinese Keywords (CNSMin), Dropper.Bravix, Trojan.Inject.WX, Adware.Cinmus, Email-Worm.Win32.VB.ca, Trojan.JS.Frepla.a (v), Ardamax Keylogger, Fat-Obfuscated, Trojan.Malware

kernel64xp.dll

Do you know what is kernel64xp.dll file and how to remove kernel64xp.dll virus?
kernel64xp.dll sample submitted on 2010-06-02 and identified as a threat.
Alias:
Threat File:kernel64xp.dll
Submit time:2010-06-02
Excute time:9 min 43 sec
Level of Spread:4
Level of Threat:6
type:AntivirusXPPro
Filesize:71K Bytes
236K Bytes
Files type
kernel64xp.dll is a A dynamic-link library,which acts as a shared library of functions.
MD5:5d0pPk6m7QGKsEoaRLd886rNu82kT17H

2010-06-02 Latest Infected Virus Files List

2010-06-02 Latest Infected Virus Files List
otl.exe; gotomypc_438.exe; gotomypc_428.exe; launis.exe; gaoada.exe; ekxvj.exe; 4.exe; pwloapob.sys; fxlyrpob.sys; pwlcypog.sys; pxtdapob.sys; uxtdypow.sys; datx.exe; ase23do.exe; 7b2ftx6c.exe; 3dsimeddemo.exe; csdgxpqg.exe; vjd9.exe; lic.exe; cej39.exe; wavffc.exe; svcgoost.exe; mscdexnt.exe; hjsr0.exe; exploree.exe; ccl9ke.exe; awdiyfob.sys; pwtcapoc.sys; kxeirfoc.sys; 55265528.exe; mbrfix64.exe; nclexp.dll; ahigucor.dll; ztl.exe; dsmgerae.dll; azedumokabadebi.dll; ahigucor.dll; ewdmaudn.sys; bfastfao.sys; wtork.exe; kkalf.exe; horj.exe; ewqrsgn.exe; duehpow.exe; gpupdatea.exe; wwwzuc32.exe; gouvouwape.exe; gociquo.exe; d8fc75e1.exe;

2010 June 01 Tuesday Released Newest Viruses

Adware.Bdsearch, Trojan.Win32.Agent, Trojan.Win32.Swizzor
Adware.Win32.Adssite.Toolbar, Trojan.Win32.Alemod, Trojan.Win32.SysInvade
AntivirusSoft.FakeSpypro, Trojan.Win32.Alureon, Trojan.Win32.TDSS
Backdoor.Win32.Agent, Trojan.Win32.Autoit, Trojan.Win32.Vundo
Backdoor.Win32.EggDrop, Trojan.Win32.Damaged_SFX, Trojan.Win32.Wintrim
Backdoor.Win32.Hupigon, Trojan.Win32.Delf, Trojan.Win32.Zbot.21
Backdoor.Win32.Kbot.29, Trojan.Win32.Delf.phk.59, Trojan.Win322
Backdoor.Win32.Poison.28, Trojan.Win32.Downloader, Trojan.WinNT.Alureon
Backdoor.Win32.Turkojan, Trojan.Win32.Dursg, Trojan-Banker.Win32.Banker
Backdoor.Win32.Zegost, Trojan.Win32.Fraudpack, Trojan-Downloader.Win32.Banload
BAT.DelTreeY, Trojan.Win32.FraudPack.41, Trojan-Downloader.Win32.Cutwail
Casino Software, Trojan.Win32.Generic, Trojan-Downloader.Win32.Genome
Corrupt Cinmus, Trojan.Win32.IRCBot, Trojan-Downloader.Win32.Lipler.43
Cryptic, Trojan.Win32.Koblu, Trojan-Downloader.Win32.Napod
HideProcess, Trojan.Win32.Koutodoor, Trojan-Downloader.Win32.Renos
Hiloti, Trojan.Win32.LdPinch, Trojan-Downloader.Win32.Sinowal
Infostealer.Bancos, Trojan.Win32.LoudMo, Trojan-Dropper.Win32.Agent
MSIL.TrojanDropper.Agent, Trojan.Win32.Namsys, [...]

2010-06-01 Latest Infected Files Report

kxddapoc.sys; axpyikoc.sys; awwoipow.sys; pwtdqpob.sys; zq45ljbe.exe; z2o0vacxvu.dll; win16.exe; stotka.exe; r3fhr.exe; questservice.exe; regsvr.exe; regsvr.exe; svchost.exe; regsvr.exe; tuvslllb.dll; rsrtd12.exe; nodqq4.dll; nodqq3.dll; ngatvi.dll; ms29f.exe; mfskln02.exe; lwtwfl.exe; imiyus.exe; imbot.exe; encdec32.dll; dxplayer_setup_21.exe; duser32.dll; cnclb.dll; browser_update.exe; 1thes92p.exe; yw6mmv0.exe; samu.exe; powreautoset.exe; winfo.exe; msiexec9.exe; msiexec8.exe; msiexec7.exe; msiexec6.exe; msiexec5.exe; msiexec2.exe; msiexec1.exe; volim.exe; fs6lkyf.exe; 83754.exe; 18489.exe; setup2.exe; fin.exe; winxhiag.exe; winuktinn.exe;