Archive for the 'Kaspersky' Category
Trojan.Win32.Scar.dpmx is a trojan to steal the QQ acount.
Threat Name: Trojan.Win32.Scar.dpmx
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:Trojan.Win32
Trojan.Win32.Scar.dpmx first detected:2011-08-01
Virus file known is PE EXE file written in Java
File Size:595K Bytes.
Behavior:Copies files to the Windows system directory
Level of Spread:6
Level of Threat:2
Reported Path:
C:\windows\system\SVCH0ST.exe
C:\windows\system\HJonny.bat
MD5:B4M0y7BWEbqt1o830u4HHc082IQ7ePGr
SHA1..:JVu22Cdfm36vL52S37Upp1K2NqyD4xn6rE7QPK3n
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\AutoKill = “C:\windows\system\SVCH0ST.exe”
July 31st, 2011 | Posted in Kaspersky, McAfee | No Comments
Trojan.Acad.Dwgun.e is a trojan as cad virus. Trojan.Acad.Dwgun.e commonly spread by Flash drive.
Threat Name: Trojan.Acad.Dwgun.e
Spread Method:
Malware Installation
Threat type:Trojan.Acad
Trojan.Acad.Dwgun.e first detected:2011-08-01
Virus file known is driver file *.sys written in C++
File Size:383K Bytes.
Behavior:Delete the original virus file
Level of Spread:2
Level of Threat:2
Reported Path:D:\Windows\
MD5:0gw3amlGFT0v1HP6cNEjH7M2g0bDehpt
SHA1..:Jo1Q2u7hGcI1LIQU3OfriCuO5JjFm580l7NSQ1C5
July 31st, 2011 | Posted in Clam, Kaspersky | No Comments
Exploit.HTML.CVE-2011-1255.a
Threat Name: Exploit.HTML.CVE-2011-1255.a
Spread Method:
External Storage Device (USB Device etc.)
Threat type:Exploit.HTML
Exploit.HTML.CVE-2011-1255.a first detected:2011-08-01
Virus file known is Unkown type
File Size:446K Bytes.
Behavior:Copies own executable file
Level of Spread:5
Level of Threat:3
Reported Path: D:\System Volume Information\
MD5:0n54OD57vS4aK3386×2FGt2L4JDqb805
SHA1..:358VweWC1bUbsQ62A2PNo7Ns7rL6dHJXQ8Hex4Fd
July 31st, 2011 | Posted in Ikarus, Kaspersky | No Comments
Trojan.Win32.Hosts2.gen
Threat Name: Trojan.Win32.Hosts2.gen
Spread Method:
File Creation
Hacked Website
Malware Installation
Threat type:Trojan.Win32
Trojan.Win32.Hosts2.gen first detected:2011-08-01
Virus file known is dll file written in Basic
File Size:462K Bytes.
Behavior:Save files to the Windows temporary directory %Temp%
Level of Spread:3
Level of Threat:1
Reported Path:C:\Documents and Settings\[Users]\Local Settings\Temp\
MD5:4L8y6A7Eapt0n830u4GGb0w1HP7dOFqI
SHA1..:Ut22CcEm35uK52R37UoocJ1MpxC4wn6qD7P5K3m4
July 31st, 2011 | Posted in Kaspersky, NOD32 | No Comments
WINDOWSECURITY.EXE; ssleay32.dll; QtGui4.dll; QtCore4.dll; msvcr71.dll; libeay32.dll; DUBrute.exe; qtdekzbyv.exe; NativeEventEnum.dll; yeawl.exe; wgc.exe; swvaidqegy.exe; rff.exe; social.exe; quick.exe; messenger.exe; doriva.exe; cow.exe; cccd.exe; aaaaaaaa.exe; msvbvm50.dll; mamita.exe; imgparser4.exe; hsbc.exe; ftppost2.exe; fc2blog2.exe; computer.exe; cgminer.exe; bosco_en.exe; blo1.exe; aviso.exe; hsbc.exe; 12adede1.exe; 0898c5dd.exe; xfy.exe; ql2c7wk.exe; pcxaxp.exe; iw9uf2wf.exe; prohard.exe; slave.exe; slave.dat; non_gui_class.dll; nofullscreen.dll; master.exe; install.exe; gui_class.dll; syscron.exe; hahahahaha.exe; unins000.exe;
July 31st, 2011 | Posted in CA, Kaspersky | No Comments
rjsduf.exe; rising.exe; rfq.exe; recove~1.exe; ravwm.exe; ravwl.exe; rav.exe; q4o3bqug.exe; pffnza.exe; ofig.exe; no3uq.exe; nivz.exe; me.exe; mced.exe; maaad.exe; lsass.exe; lq2r.exe; l.exe; kaug.exe; jdmgtjjs.exe; isearch.exe; ipx32d56.exe; iexp10re.exe; svcmm32.exe; svcmm32.exe; i3j.exe; hn.exe; herss.exe; hbinst.exe; h.exe; gqln.exe; gip2.exe; fw1d.exe; fmgjh.exe; explorei.exe; ei.exe; e7bibe.exe; drago.exe; djebmm350.exe; dj.exe; cvasds9.dll; cvasds8.dll; cvasds7.dll; cvasds6.dll; cvasds5.dll; cvasds4.dll; cvasds3.dll; cvasds2.dll; cvasds1.dll;
July 26th, 2011 | Posted in CA, Kaspersky, Pctools | No Comments
msxslt3.exe; gnwvuen.dll; maneger.exe; 24fc2ae3644.exe; xp555.exe; boot555.exe; winzip.exe; pard.exe; mydgds.exe; nfacap.exe; nfacap.exe; jinund.exe; zeiaiz.exe; tmmgmz.exe; drxcxf.exe; dwm.exe; tlpmpf.exe; ooyi.exe; lsass.exe; kbrero.exe; fcdsdx.exe; ezfgfk.exe; system.exe; netprotocol.exe; system.exe; netprotocol.exe; windebug32.exe; 22cc6c32.exe; system.exe; netprotocol.exe; bylolp.exe; 0.9557600764489652 .exe; 0.5443266219055672 .dll; system.exe; netprotocol.exe; system.exe; netprotocol.exe; drg.exe; fk.exe; sep.exe; tan.exe; may.exe; nintend.exe; zip password recovery.exe; zion.exe; yahoo mail hack.exe; yahoo hack.exe; xp [...]
July 21st, 2011 | Posted in AVG, Kaspersky, NOD32 | 1 Comment
Trojan-Downloader.Win32.VB.ajfn is a trojan the virus file know as D:\tmp.reg
C:\RECYCLER\1.exe. Threat Name: Trojan-Downloader.Win32.VB.ajfn
Spread Method:
USB Disk
Windows Vulnerability
Download From website
Threat type:Trojan-Downloader.Win32
Trojan-Downloader.Win32.VB.ajfn first detected:2011-06-24
Virus file known is dll file written in C++
File Size:216K Bytes.
Behavior:sends a request to IP address
Level of Spread:3
Level of Threat:1
Reported Path: C:\Documents and Settings\[Users]\Local Settings\Temp\
D:\tmp.reg
C:\RECYCLER\1.exe
MD5:4L8y6B7Eapt0n830u4GGb0w1HP7dOFqI
SHA1..:Ut22CcEm35uK52R37Uoo1J1MpxC4wn6qD7P5K3m4
June 23rd, 2011 | Posted in Kaspersky | No Comments
winwords.exe; winsanta.exe; winb.exe; subidor.exe; msn.exe; kids.exe; facek.exe; windoctorx.exe; to print.exe; taskwbs.exe; grades.exe; document 1.exe; case study.exe; algonic.exe; twloadi0c.dll; timesync.exe; rundll32.exe; quarue.exe; timesync.exe; trol2.exe; sat_secured.exe; pinbol.exe; oem.exe; eclpcg16.exe; cmdb.exe; winst.exe; toikf.exe; papi.exe; driverupdate.exe; cmjngw.exe; jcxaxj.exe; huibfoii.exe; toikf.exe; defender.exe; cmjngw.exe; cleanddm.exe; cleanddm.dll; 1051tcpwinlog.exe; 1050tcpwinlog.exe; winwords.exe; winsanta.exe; winb.exe; subidor.exe; msn.exe; kids.exe; facek.exe; windoctorx.exe; to print.exe; taskwbs.exe;
June 19th, 2011 | Posted in DrWeb, Kaspersky, McAfee | No Comments
ircbsbot.exe; systemdrea.dll; cbzvl.exe; trrabs.exe; taobet.exe; msncss.exe; winppknly.exe; tb.exe; task.exe; b3y0nd.exe; yxttd.exe; lssas.exe; ff6w8e.exe; zizuy.exe; ctfmot.exe; 7c9cr2a.exe; setup39986816.exe; setup3304259712.exe; setup3272247168.exe; setup1310122624.exe; fgloypob.sys; pse_350_enu.exe; 30793464.exe; 23125776.exe; 30793464.exe; 23125776.exe; 30793464.exe; 23125776.exe; 5sxk9b2g3o.exe; setup39986816.exe; setup3304259712.exe; setup3272247168.exe; setup1310122624.exe; fgloypob.sys; 30793464.exe; 23125776.exe; Realhost.exe; ayRmyfbCTPl.exe; MSI.exe Win32.IRCBot.AIK; kxldypow.sys; zflojcqf.exe; update_581c.exe; kxldypow.sys; zflojcqf.exe; qebabq.exe; 22icln8n.exe; ufloikow.sys; pw2o9i05_wait.exe; uxtdypob.sys;
June 11th, 2011 | Posted in CA, Kaspersky | No Comments