Archive for the 'F-Secure' Category

Infected threat files on 20100226

7__68.exe; 703.exe; 715.exe; 725.exe; 729.exe; 730.exe; 731l1.exe; 732.exe; pdhqmmkhmi.dll; _voidlbudijoghu.sys; mylife.exe; cabxd.dll; zmd0l.dll; tesourar.exe; dan1252609492.exe; uh8zqxi_gkdaovbt.dll; gsuzwej.dll; _qbotviycv.exe; fibewoze.dll; guegae.exe; membus.sys; pc6202.exe; wgh.exe; wpv881254042811.exe; wpv311253178221.exe; eh42392.dll; ow35615.dll; ih1.exe; ftr.exe; 4dw4r3tsbwkolgop.sys; 4dw4r3oxqvlhpnwt.sys; cgx.exe; qsjqaij.exe; xp-85858c9a.exe; uwkbsftav.exe; hkehsftav.exe; xp-53092866.exe; 1dcm34_x8_aj5_.dll; pcz_gn8a0coff-.dll; b-o8-yg9.dll; 2d-qw_lfc59i_.dll; 74338934.exe; 20126920.exe; 621ab4.exe; vetarisa.dll; 9d4c1e.exe; fcdlkjzq.exe; cidrive32.exe; dpcaum.exe;

rjvjlsvw.exe

rjvjlsvw.exe sample submitted on 2010-02-23 and identified as a threat.
Alias:
Threat File:rjvjlsvw.exe
Submit time:2010-02-23
Excute time:5 min 39 sec
Level of Spread:1
Level of Threat:1
type:Trojan.Win32.Agent.cqur 14:29
Filesize:57K Bytes
Files type
rjvjlsvw.exe is Windows exe file.
MD5:72FG1OBeBc6ChJgAN8vxMFLvs62s8bxq

dskcolenh.exe

dskcolenh.exe sample submitted on 2010-02-15 and identified as a threat.
Alias:
Threat File:dskcolenh.exe
Submit time:2010-02-15
Excute time:10 min 55 sec
Level of Spread:1
Level of Threat:5
type:Win32.Virtob.Gen
Filesize:3409K Bytes
Files type
dskcolenh.exe is Windows exe file.
MD5:1824b2WIA6L2f0A7DhpsCn132t6gGb0d

Win32.HLLW.Autoruner.6014

Threat Name: Win32.HLLW.Autoruner.6014
Spread Method:
Malware Installation
E-Mail
File Creation
Threat type:Win32.HLLW
Win32.HLLW.Autoruner.6014 first detected:2010-01-31
Virus file known is dll file written in Basic
File Size:608K Bytes.
Behavior:Copies own executable file
Level of Spread:1
Level of Threat:2
Reported Path:Unkonow path
MD5:mlhn3rnva5tk8oH0TTO5k6UDHqCSxV3h
SHA1..:775pRs712X16F7j2vupW6Awlp8kt2wQi1CW8s0EM

iastor.sys

Threat Name: iastor.sys
Spread Method:
External Storage Device (USB Device etc.)
Threat type:iastor
iastor.sys first detected:2010-01-31
Virus file known is driver file *.sys written in C
File Size:547K Bytes.
Behavior:Add program s process
Level of Spread:6
Level of Threat:1
Reported Path:Unkonow path
MD5:843xxsY7Dyor0m73atlFFA0v1GO6cNEp
SHA1..:HTS220bDl25tJ51Q276nnbI1LowB3vm6pCtO4J3l

Trojan-Downloader.Win32.BHO.pcb

Threat Name: Trojan-Downloader.Win32.BHO.pcb
Spread Method:
Windows Vulnerability
Connection to Specific Sites
Threat type:Trojan-Downloader.Win32
Trojan-Downloader.Win32.BHO.pcb first detected:2010-01-30
Virus file known is dll file written in C language
File Size:385K Bytes.
Behavior:Unknow behavior
Level of Spread:5
Level of Threat:5
Reported Path:C:\Program Files\
MD5:32CP2G5F2mWCDs46BYsh8xHWPeOMN313
SHA1..:LIjxJoXnHufDF0MADAbpAgIfX4wuvLEKtq62R8yv

Trojan-Dropper.Win32.Agent.bjzk

Threat Name: Trojan-Dropper.Win32.Agent.bjzk
Spread Method:
Malware Installation
Download From website
Windows Vulnerability
Threat type:Trojan-Dropper.Win32
Trojan-Dropper.Win32.Agent.bjzk first detected:2010-01-25
Virus file known is PE EXE file written in Basic
File Size:93K Bytes.
Behavior:Unknow behavior
Level of Spread:1
Level of Threat:6
Reported Path:C:\Windows\System32\
MD5:lB0IS88o2n87Od7T1S4yK2328121FtFK
SHA1..:7jDqb807I7XVWlVC1aT2rPRGA2PMn0NsUrL83HIX

Trojan-Dropper.Win32.Agent.bkao

Threat Name: Trojan-Dropper.Win32.Agent.bkao
Spread Method:
Hacked Website
Threat type:Trojan-Dropper.Win32
Trojan-Dropper.Win32.Agent.bkao first detected:2010-01-25
Virus file known is javascript file
File Size:310K Bytes.
Behavior:Copies own executable file
Level of Spread:1
Level of Threat:2
Reported Path:D:\Winnt\System32\
MD5:lXwKJE4hoL01N8IUL2Xr64mIP6bf5ap0
SHA1..:tg1SrmM58tCGvAQdTHf0YN7qxB34V28D0oGbauUX

sr882388.exe

sr882388.exe sample submitted on 2010-01-19 and identified as a threat.
Alias:
Threat File:sr882388.exe
Submit time:2010-01-19
Excute time:10 min 41 sec
Level of Spread:5
Level of Threat:2
type:BackDoor.PcClient
Filesize:77K Bytes
0K Bytes
1K Bytes
Files type
sr882388.exe is Windows exe file.
MD5:PMguNL7kKrcHI8Q7GDx4EdLcu3tQSOHN

2010-1-17 detected threat files

wdzzwd.dll; Xh4.exe; Xh3.exe; Xh2.exe; Xh1.exe; XhZ.exe; Xh0.exe; dws.exe.exe; cleansweep.exe; cleansweep.exe; elementzx.dll; syslog.exe; wfh.exe; herss.exe; c.exe; implayok.exe; wpnqy.exe; winrquvsy.exe; winvcacxs.exe; winskhggg.exe; winqhwxg.exe; c.exe; pxje.exe; winjyaq.exe; wfh.exe; otowf.exe; sidebar.exe; 456out.com.exe; c.exe; b.exe; a.exe; zf3syjt2.exe; d7pomuh4.exe; pxtdrpog.sys; uwldqpog.sys; kwldrfoc.sys; kgaoafoc.sys; axtdypog.sys; kfldqpoc.sys; uxxiqaoc.sys; winhlp64.exe; cls_pack.exe; cls _pack.exe; c.exe; pgddypod.sys; herss.exe; uxtdapob.sys; twunk_32x.exe; ize.exe;