Archive for the 'Clam' Category

0305 detected high infected files

59427.exe; uyupesiq.dll; jiffmt.dll; mediaacck.exe; netsi.exe; uyupesiq.dll; jiffmt.dll; izekegasudevibeb.dll; eputahefozujecaz.dll; is-nor64.exe; bill102.exe Win32.Trojan.VB.ENI 4.3.2010.; odbns.exe Win32.Trojan.Agent.MPM 4.3.2010.; wmisftl.exe; smvm232.exe; sikvnxhn.dll; 59.doc.exe; j-di_vr.exe; fd33.exe; cbd3c7.exe; vnkgsmjexjdnrofkuia.exe .; ujdwfwqiyhyfgaoq.exe; runver2.exe; regdllhelper.exe; oner2010.dll; nt32inf10.exe; nhdldrht.exe; iawmaqua.exe; hujeneje.dll; e569e6.exe; dirstems.exe; atnadm.exe; a6087d.exe; a14c40.exe; 5d7d74.exe; 31f52b.exe; 7dea53.exe; e840ee.exe; f385b0.exe; 6adaa8.exe; dc50cc.exe; dc50cc.exe; wx4d15e4.exe; wx48a701.exe; wx43410f.exe; nt32inf10.exe; e569e6.exe; xv447c65.exe; wx63af95.exe; tx8d2fec.exe;

0227 infected virus file as delsbc.exe etc

zpharaoh.exe; s1.exe; qw6t0mpm.exe; q1.exe; kernel.dll; 4tddfwq2.dll; pwldypob.sys; xyskjxwmmfcwoikawqqgc.exe; vumczliwulgyogguoge.exe; pjf.exe; kizokvrebrlcrihune.exe; byocxhcokzsiwmkwo.exe; awx.exe; asr64_ldm.exe; ahhwcru.exe; asr64_ldm.exe; pjf.exe; awx.exe; xyskjxwmmfcwoikawqqgc.exe; xyskjxwmmfcwoikawqqgc.exe; vumczliwulgyogguoge.exe; vumczliwulgyogguoge.exe; kizokvrebrlcrihune.exe; byocxhcokzsiwmkwo.exe; byocxhcokzsiwmkwo.exe; ahhwcru.exe; winjrbp.exe; wgicyd.exe; winjfqyo.exe; ommu.exe; pjf.exe; wintbnfdt.exe; ivykf.exe; awx.exe; gxo.exe; ximox.exe; winfselyo.exe; w8a67c3.exe; gtk21.tmp; ahhwcru.exe; adnubroi.exe; ek1.exe; winnthu.exe; bqyi.exe; bbq.exe; kcxow.exe; les welch.exe; 7tbfcy86.exe; sysquery.dll;

Win32.HLLW.Autoruner.6014

Threat Name: Win32.HLLW.Autoruner.6014
Spread Method:
Malware Installation
E-Mail
File Creation
Threat type:Win32.HLLW
Win32.HLLW.Autoruner.6014 first detected:2010-01-31
Virus file known is dll file written in Basic
File Size:608K Bytes.
Behavior:Copies own executable file
Level of Spread:1
Level of Threat:2
Reported Path:Unkonow path
MD5:mlhn3rnva5tk8oH0TTO5k6UDHqCSxV3h
SHA1..:775pRs712X16F7j2vupW6Awlp8kt2wQi1CW8s0EM

not-a-virus:AdWare.Win32.BadBar.f

Threat Name: not-a-virus:AdWare.Win32.BadBar.f
Spread Method:
Download From website
Threat type:not-a-virus:AdWare.Win32
not-a-virus:AdWare.Win32.BadBar.f first detected:2010-01-30
Virus file known is driver file *.sys written in C
File Size:570K Bytes.
Behavior:Unknow behavior
Level of Spread:6
Level of Threat:1
Reported Path:D:\Documents and Settings\[Users]\Local Settings\Temp\
MD5:A4L8×6A7Eaps0n830t4GGb0w1HP7dOFq
SHA1..:IUt22BcEl35uK52R37UoocJ1MpxC3wn6qDuP5J3m

New Threat file detected on 2010-01-22

vd1.exe; fdr.exe; mn1.exe; btm.exe; vd1.exe; monfde.exe; winufjvwj.exe; fdr.exe; fdq.exe; qbdj.exe; winargtud.exe; mn1.exe; winsqfr.exe; vregr.exe; jpbamc.exe; w322d08.exe; pdmggu.exe; wingmiqao.exe; witaja.exe; winoqcpfe.exe; winccwvr.exe; winrmgr.exe; ohtuew.exe; winacyph.exe; njxeb.exe; dfo.exe; 456out.com.exe; c .exe; yo.exe; 456out.com.exe; hvemuw1u.exe; srobot.exe; srobot.exe; srobot .exe; srobot .exe; srobot .exe; srob ot.exe; srobo t.exe; srobo t.exe; s robot.exe; srobot.exe; silkroad_manual-patch_downloader.exe; srobot.exe; srobot.exe; srobot.exe; srobot.exe; srobot.exe; [...]

wmpscfgs.exe

wmpscfgs.exe sample submitted on 2010-01-19 and identified as a threat.
Alias:
Threat File:wmpscfgs.exe
Submit time:2010-01-19
Excute time:4 min 17 sec
Level of Spread:1
Level of Threat:3
type:Win32:Small
Filesize:14358K Bytes
0K Bytes
1K Bytes
Files type
wmpscfgs.exe is Windows exe file.
MD5:D5O008eAh1sw2q041×5KjeE0IlTWgRIu

spuninst.exe

spuninst.exe
spuninst.exesample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:spuninst.exe
Sample Submission:2009-07-13
Processing time:3 min 24 sec
Threat type:Win32:Agent
Filesize:29K Bytes
Path:
E:\Winnt\System32\spuninst.exe
E:\Program Files\spuninst.exe

wil.exe

wil.exe
wil.exesample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:wil.exe
Sample Submission:2009-07-13
Processing time:10 min 20 sec
Threat type:Win32.Sality
Filesize:64K Bytes
Path:
C:\Documents and Settings\All Users\Application Data\wil.exe

gbiehcef.dll

gbiehcef.dll sample first submit on 2009-07-09 and considered unsafe.
Description:
Threat File:gbiehcef.dll
Sample Submission:2009-07-09
Processing time:5 min 24 sec
Threat type:Trojan.Downloader.Adload
Filesize:60K Bytes
Path:
E:\System Volume Information\ _restore…gbiehcef.dll
D:\Windows\System32\gbiehcef.dll
D:\Winnt\gbiehcef.dll

mkvknro.exee

mkvknro.exee sample first submit on 2009-07-08 and considered unsafe.
Description:
Threat File:mkvknro.exee
Sample Submission:2009-07-08
Processing time:6 min 41 sec
Threat type:Win32/Cryptor
Filesize:51K Bytes
Path:
C:\Documents and Settings\All Users\Application Data\mkvknro.exee
D:\Winnt\mkvknro.exee
E:\Documents and Settings\[UserName]\Local Settings\Temp\mkvknro.exee