Archive for the 'McAfee' Category

2010-0301 infected viruses as following ubvbkxrx.exe

tr.exe; temp7789.exe; sshnas21.dll; puker.exe; bind1.exe; amcfjskmp.exe; alh.exe; alf.exe; advhelp.dll; tgt.exe; herss.exe; cvasds0.dll; am.exe; x.exe; x.exe; mspdb12.dll; pwtdqpob.sys; kfaoqfoc.sys; rzm.exe; pxryiaob.sys; pdfupd.exe; kxliiuob.sys; jinyehh.exe; winktkmg.exe; tlr.exe; winvrlgal.exe; winumbshr.exe; winafkui.exe; winacnew.exe; w9616d.exe; w19a29e4.exe; winpefwj.exe; winoqdppw.exe; rrehc.exe; im1.exe; wineqsq.exe; winqvgu.exe; winyimmje.exe; winctyoh.exe; w9b1cf.exe; rfwl.exe; beubfu.exe; winqxlut.exe; ycl.exe; winyrvk.exe; winlqjl.exe; iuucgk.exe; kzd.exe; akqp.exe;

2010-02-24 detected threat files and virus

2010-02-24 detected threat files and virus
yfq.exe; fwrdrpog.sys; uxwoapow.sys; agpyapod.sys; jbridgep.sys; awrcipod.sys; b9ba940fd4.sys; 43708123.exe; uxtdypoc.sys; gusbstoi.sys; kgtdapob.sys; fxtdapod.sys; afloikob.sys; awayipob.sys; awdoqpod.sys; nl6.exe; fcq.exe; jcrt.exe; abn.exe; 81918734.exe; 26319728.exe; 77626230.exe; zjfthwriuifxcrfx.exe; zjfthwriuifxcrfx.exe; uzqzisiubkc.exe; pbzpfwtmaqpjqhxrnx.exe; pbzpfwtmaqpjqhxrnx.exe; pbzpfwtmaqpjqhxrnx.exe; grodsiewjywpvlato.exe; grodsiewjywpvlato.exe; crsleyyulegdnhaxwjrla.exe; crsleyyulegdnhaxwjrla.exe; ncwrkvumwrlrregohy.exe; eslfxhfwfzsxwijqi.exe; eslfxhfwfzsxwijqi.exe; fgfsgf.exe; kfryyfoc.sys; ugriypow.sys; afpyqfow.sys; pwtyypow.sys; ufdyqpoc.sys; kfxyrkog.sys; w1r1b.exe; pvolsnap.sys; bfips.sys; pxriipoc.sys; uwlorkod.sys; kwayypog.sys; agxiykog.sys;

wwwpos32.exe

wwwpos32.exe sample submitted on 2010-02-15 and identified as a threat.
Alias:
Threat File:wwwpos32.exe
Submit time:2010-02-15
Excute time:8 min 52 sec
Level of Spread:6
Level of Threat:1
type:Trojan.Win32.Possador
Filesize:54K Bytes
4297K Bytes
28357K Bytes
Files type
wwwpos32.exe is Windows exe file.
MD5:7HSqrn0m544C46uR4yJ2385w21Ft1K4I

setuper.exe

setuper.exe sample submitted on 2010-02-15 and identified as a threat.
Alias:
Threat File:setuper.exe
Submit time:2010-02-15
Excute time:1 min 28 sec
Level of Spread:2
Level of Threat:1
type:Win32:Hupigon
Filesize:37K Bytes
Files type
setuper.exe is Windows exe file.
MD5:6Q118gCj278H61O2a6MlgG0KnvY3tK7N

Trojan-Dropper.Win32.Small.eer

Threat Name: Trojan-Dropper.Win32.Small.eer
Spread Method:
Download From website
Download From website
Registry Value Creation
Threat type:Trojan-Dropper.Win32
Trojan-Dropper.Win32.Small.eer first detected:2010-01-30
Virus file known is PE exe file written in C language
File Size:660K Bytes.
Behavior:Copies own executable file
Level of Spread:3
Level of Threat:1
Reported Path:E:\Program Files\
MD5:Bgiwpv2d8L10lB0IS88n2m87Oc7S0R4y
SHA1..:J2318121FtFK6J1qb807I7X7VkVB1aT2rPRGY2PM

Trojan-Dropper.Win32.StartPage.cr

Threat Name: Trojan-Dropper.Win32.StartPage.cr
Spread Method:
E-Mail
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:Trojan-Dropper.Win32
Trojan-Dropper.Win32.StartPage.cr first detected:2010-01-30
Virus file known is driver file *.sys written in C
File Size:638K Bytes.
Behavior:Save files to the Windows temporary directory %Temp%
Level of Spread:3
Level of Threat:4
Reported Path:C:\Program Files\
MD5:4eQ5DDXEaIEMQgLBnF8q331fBi478H63
SHA1..:O4yXlkgG3JmuyosjvnAyMLG4j6N1GPBKWN2Yt65o

20100125 Latest infected files

zqpkfdymnigsinwamxsbq.exe; zqpkfdymnigsinwamxsbq.exe; xmjcvrkwvokuilsueng.exe; wicsibrawmfmxxba.exe; kkuninst.exe; herss.exe; uiucu.exe; lcl.exe; herss.exe; xpl.exe; mswinsrv.exe; herss.exe; mformat.exe; xzpgiauqimgnvdptvxneg.exe; xzpgiauqimgnvdptvxneg.exe; xhh.exe; vvjyyogaqskpvblnnnb.exe; urcolynerqfhknut.exe; kjwkjypixyptydmnml.exe; fsh.exe; pv1.exe; winrcupkc.exe; wineasw.exe; winxhcx.exe; winqgfy.exe; winpabmvo.exe; winhaxys.exe; winemkke.exe; waam.exe; scqi.exe; jvoevo.exe; nhr.exe; winsvyg.exe; lcl.exe; xpl.exe; tmphh.exe; tmp2351.exe; mswinsrv.exe; 1-bwjidstkney9ouxn.exe; winltka.exe; winwfau.exe; lsqnfy.exe; windtcx.exe; hvef.exe; winxexbyn.exe; rjtf.exe; lofqfv.exe; hmuo.exe; fkkr.exe;

wmpscfgs.exe

wmpscfgs.exe sample submitted on 2010-01-19 and identified as a threat.
Alias:
Threat File:wmpscfgs.exe
Submit time:2010-01-19
Excute time:4 min 17 sec
Level of Spread:1
Level of Threat:3
type:Win32:Small
Filesize:14358K Bytes
0K Bytes
1K Bytes
Files type
wmpscfgs.exe is Windows exe file.
MD5:D5O008eAh1sw2q041×5KjeE0IlTWgRIu

bcont.exe

bcont.exe
bcont.exesample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:bcont.exe
Sample Submission:2009-07-13
Processing time:1 min 39 sec
Threat type:Win32.Sality
Filesize:69K Bytes
Path:
E:\Windows\bcont.exe
C:\Windows\System32\bcont.exe
c:\System Volume Information\ _restore…\bcont.exe

glaide32.sys

glaide32.sys
glaide32.syssample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:glaide32.sys
Sample Submission:2009-07-13
Processing time:10 min 24 sec
Threat type:Win32:AutoRun
Filesize:27K Bytes
Path:
C:\Windows\glaide32.sys
E:\Documents and Settings\[UserName]\Local Settings\Temp\glaide32.sys