Archive for the 'Clam' Category

not-a-virus:AdWare.Win32.BadBar.f

Threat Name: not-a-virus:AdWare.Win32.BadBar.f
Spread Method:
Download From website
Threat type:not-a-virus:AdWare.Win32
not-a-virus:AdWare.Win32.BadBar.f first detected:2010-01-30
Virus file known is driver file *.sys written in C
File Size:570K Bytes.
Behavior:Unknow behavior
Level of Spread:6
Level of Threat:1
Reported Path:D:\Documents and Settings\[Users]\Local Settings\Temp\
MD5:A4L8×6A7Eaps0n830t4GGb0w1HP7dOFq
SHA1..:IUt22BcEl35uK52R37UoocJ1MpxC3wn6qDuP5J3m

New Threat file detected on 2010-01-22

vd1.exe; fdr.exe; mn1.exe; btm.exe; vd1.exe; monfde.exe; winufjvwj.exe; fdr.exe; fdq.exe; qbdj.exe; winargtud.exe; mn1.exe; winsqfr.exe; vregr.exe; jpbamc.exe; w322d08.exe; pdmggu.exe; wingmiqao.exe; witaja.exe; winoqcpfe.exe; winccwvr.exe; winrmgr.exe; ohtuew.exe; winacyph.exe; njxeb.exe; dfo.exe; 456out.com.exe; c .exe; yo.exe; 456out.com.exe; hvemuw1u.exe; srobot.exe; srobot.exe; srobot .exe; srobot .exe; srobot .exe; srob ot.exe; srobo t.exe; srobo t.exe; s robot.exe; srobot.exe; silkroad_manual-patch_downloader.exe; srobot.exe; srobot.exe; srobot.exe; srobot.exe; srobot.exe; [...]

wmpscfgs.exe

wmpscfgs.exe sample submitted on 2010-01-19 and identified as a threat.
Alias:
Threat File:wmpscfgs.exe
Submit time:2010-01-19
Excute time:4 min 17 sec
Level of Spread:1
Level of Threat:3
type:Win32:Small
Filesize:14358K Bytes
0K Bytes
1K Bytes
Files type
wmpscfgs.exe is Windows exe file.
MD5:D5O008eAh1sw2q041×5KjeE0IlTWgRIu

spuninst.exe

spuninst.exe
spuninst.exesample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:spuninst.exe
Sample Submission:2009-07-13
Processing time:3 min 24 sec
Threat type:Win32:Agent
Filesize:29K Bytes
Path:
E:\Winnt\System32\spuninst.exe
E:\Program Files\spuninst.exe

wil.exe

wil.exe
wil.exesample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:wil.exe
Sample Submission:2009-07-13
Processing time:10 min 20 sec
Threat type:Win32.Sality
Filesize:64K Bytes
Path:
C:\Documents and Settings\All Users\Application Data\wil.exe

gbiehcef.dll

gbiehcef.dll sample first submit on 2009-07-09 and considered unsafe.
Description:
Threat File:gbiehcef.dll
Sample Submission:2009-07-09
Processing time:5 min 24 sec
Threat type:Trojan.Downloader.Adload
Filesize:60K Bytes
Path:
E:\System Volume Information\ _restore…gbiehcef.dll
D:\Windows\System32\gbiehcef.dll
D:\Winnt\gbiehcef.dll

mkvknro.exee

mkvknro.exee sample first submit on 2009-07-08 and considered unsafe.
Description:
Threat File:mkvknro.exee
Sample Submission:2009-07-08
Processing time:6 min 41 sec
Threat type:Win32/Cryptor
Filesize:51K Bytes
Path:
C:\Documents and Settings\All Users\Application Data\mkvknro.exee
D:\Winnt\mkvknro.exee
E:\Documents and Settings\[UserName]\Local Settings\Temp\mkvknro.exee

winmpbase.exe

winmpbase.exe sample first submit on 2009-07-08 and considered unsafe.
Description:
Threat File:winmpbase.exe
Sample Submission:2009-07-08
Processing time:5 min 23 sec
Threat type:Adware.Trymedia
Filesize:59K Bytes
Path:
D:\Windows\winmpbase.exe
E:\Windows\System32\winmpbase.exe
C:\Windows\winmpbase.exe

vpoeh.dll

vpoeh.dll sample first submit on 2009-07-06 and considered unsafe.
Description:
Threat File:vpoeh.dll
Sample Submission:2009-07-06
Processing time:6 min 53 sec
Threat type:Win32.Virtob.Gen
Filesize:61K Bytes
Path:
C:\System Volume Information\vpoeh.dll
D:\Documents and Settings\[UserName]\Local Settings\Temp\vpoeh.dll
E:\System Volume Information\ _restore…vpoeh.dll

win2a78.dll

win2a78.dll sample first submit on 2009-07-06 and considered unsafe.
Description:
Threat File:win2a78.dll
Sample Submission:2009-07-06
Processing time:1 min 46 sec
Threat type:Downloader.VB
Filesize:47K Bytes
Path:
C:\Documents and Settings\All Users\Application Data\win2a78.dll
C:\Documents and Settings\All Users\Application Data\win2a78.dll