Archive for the 'Pctools' Category

20100326 latest infected virues files

AEXMETRICCHARTAX.DLL ALOHA.EXE ANEMCOM.EXE ARPWRMSG.EXE ASMMATRIX216I.DLL ATCLIUN.EXE ATMRDR.SYS AUTOCAMRES.DLL AVAST.EXE AVGIDSWATCHER.EXE AXISGMAIN.DLL AYK307.DLL BAEL.DLL BANNED_BBS_VIDEO[1].EXE BL.MAGNET.CIRCDATA.NET.DLL BPRBASE.DLL BUILDALOT3.EXE CAMSOPCSERVERSETTING.EXE CATPRSBACKGROUNDINTERFACES.DLL CATPRSREP.DLL CATSMARTEAMINTEGRATION.DLL CCINSERT.EXE CCLICW.DLL CDSAFE.EXE CERCPAN.DLL CERCVGI.DLL CFGPLANO.DLL CLASSWIZARD.EXE CLIP4.EXE COCONUTQUEEN.EXE CPIO.DLL CV07.DLL CV09.DLL CV14.DLL DAPIEENGINE.DLL DESIGNSENSORSRES.DLL DESPLANO.DLL DIBBASE.DLL DLECCOMS.EXE DOTNETNUKE.MODULES.USERSONLINE.DLL DOWNLOAD[n].EXE DRBPLG.EXE DRMSSO.DLL DSI_TS_TCPIP.EXE DSLIBRARY.DLL DVD2DVD.DLL EAZYPAPERDOT.DLL ECMACCOUNTING.EXE ELMWIN.DLL ERRORLOG.EXE EZCAPT.EXE FF_LIBDTS.DLL FILEIESCNSST.DLL FISHDOMH2OHIDDENODYSSEY.DLL FIXMFS.DLL [...]

latest viruses files on 20100320

isteal.exe; cccccc2.exe; 1your_exe.exe; Fss.exe; tmp1293.exe; winwtncq.exe; vlx.exe; winyywbjg.exe; 079.exe; diskperfxp.exe; winnunh.exe; installe1r.exe.exe; winuiui.exe; lbgt.exe; imimmg.exe; winvbnuku.exe; winlssuxm.exe; osyhd.exe; fkdtu.exe; winhfhs.exe; jrh.exe; winnnlep.exe; dspneatsqdymsazbapkvb.exe; dcjrs.exe; Setup.exe; censtat.exe; notepad.exe; files.exe; spoolvsis.exe; skip-snoxd.dll; mdply3d.exe; zztoy.exe; yfpuwle.exe; ydgcwcu.exe; vupwsaw.exe; syaxqx.exe; lgokzd.exe; kpsoiogefu.exe; inpmfmecd.exe; bielixb.exe; loader.exe; kwduu.exe; frmwrk32.exe; msseces.exe; sysquery.dll; kwab.dll; swrcxaneom.exe;

latest threat files report on 20100315

caele.exe; vwwixjz.exe; qvodsetupplus33.exe; qvodsetupplus3.exe; 3.exe; spolxsis.exe; msinits.exe; frqr.exe; f28.dll; ctfmon_qd.exe; 6_ldry3no.exe; 5_odbnsy.exe; 5_odbns.exe; 000057f0.sys; 000057bc.sys; nwiz.exe; r c c.exe; g6qvt2ci.exe; wlex9653.exe; oyfzkh08.exe; fg10tclo.exe; ugriipoc.sys; fwldipoc.sys; fwrirpob.sys; pxdiypow.sys; pxtdqpoc.sys; uwlcraoc.sys; pgtdrpow.sys; fftdapod.sys; uwrcqaow.sys; f150540 .exe; uwlyypog.sys; ob0.exe; h8srtmainqt.dll; h8srtkrl32mainweq.dll; csrss.exe; xvassdf.exe; sioco.exe; asr64_ldm.exe; xvassdf.exe; CU345d.exe; mshmail.exe; guq7k2pj.exe; kxtdapob.sys; afloqpow.sys; fwloqfow.sys; kwloapoc.sys; c28e54603c.sys; afudos.exe;

Trojan-Downloader.Java.OpenStream.af

Threat Name: Trojan-Downloader.Java.OpenStream.af, Trojan-Downloader.Java.OpenStream.af was found in C:\Users\XX\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37\4076ba25-6fad8488 on 2/25/2010 12:21:08
It report C:\Windows\System32\drivers\L0phtPkt.sys as the virus file, but it may not the fact.
Spread Method:
Malware Installation
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:Trojan-Downloader.Java
Trojan-Downloader.Java.OpenStream.af first detected:2010-02-27
Virus file known is PE EXE file written in Basic
File Size:438K Bytes.
Behavior:Creat files in Documents and Settings\[Users]\Local Settings\Temp\
Level of Spread:4
Level of Threat:5
Reported Path:D:\Windows\System32\
MD5:e30acQjPawXFx1F0uC46sibHq5IWo4vL
SHA1..:4SD33yrx21YN21nD1KU00q3o8Vqe8U1TNbLJ4202

0218 detected virus files

df2.exe; herss.exe; vwtmidwppfwbozgyzwplg.exe; vwtmidwppfwbozgyzwplg.exe; tsneyrizxladoxcsrmd.exe; blx.exe; lcx.exe; internurbjugs.exe; herss.exe; rnd.exe; hwr.exe; b.exe; tkx.exe; svchost.com; dc3yh.exe; 63352625.exe; 54407020.exe; 200.exe; jnnpkn.exe; herss.exe; 39.tmp; lxh8g.exe; nvvfnnv.exe; inh.exe; vwwixjz.exe; msinits.exe; fwqlsftav.exe; ohj.exe; ohh.exe; nriom.exe; winwkpirv.exe; winqowhqa.exe; kodnyp.exe; df2.exe; winlxfm.exe; winyxub.exe; winremgmj.exe; w2af7d1.exe; w1342ea7.exe; krqqn.exe; vgnqw.exe; blx.exe; kanf.exe; lcx.exe; wincceo.exe; touqfo.exe; w939a2.exe; pgyg.exe; winflemxk.exe;

Win32.FraudPack.azjh

Threat Name: Win32.FraudPack.azjh
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:Win32.FraudPack
Win32.FraudPack.azjh first detected:2010-02-17
Virus file known is driver file *.sys written in C
File Size:579K Bytes.
Behavior:Unknow behavior
Level of Spread:6
Level of Threat:2
Reported Path:D:\Program Files\
MD5:A4L8y6B7Eapt1n830u4HGb0w1IQ7dOFr
SHA1..:IUt22CcEm36uK52R37Uoo1J1MqyC4wn6qD7PPK3m

frmwrk32.exe

frmwrk32.exe
frmwrk32.exesample first submit on 2009-07-13 and considered unsafe.
Description:
Threat File:frmwrk32.exe
Sample Submission:2009-07-13
Processing time:7 min 27 sec
Threat type:Win32:Vitro
Filesize:33K Bytes
Path:
C:\Windows\System\frmwrk32.exe

lmkgwrym.exe

lmkgwrym.exe sample first submit on 2009-07-09 and considered unsafe.
Description:
Threat File:lmkgwrym.exe
Sample Submission:2009-07-09
Processing time:7 min 37 sec
Threat type:WORM/Allaple.Gen
Filesize:5K Bytes
Path:
D:\Program Files\lmkgwrym.exe
E:\Winnt\System32\lmkgwrym.exe
C:\System Volume Information\lmkgwrym.exe

is-mumgq.exe

is-mumgq.exe sample first submit on 2009-07-08 and considered unsafe.
Description:
Threat File:is-mumgq.exe
Sample Submission:2009-07-08
Processing time:5 min 32 sec
Threat type:Win32/Cryptor
Filesize:51K Bytes
Path:
E:\Windows\is-mumgq.exe

pcwr.exe

pcwr.exe sample first submit on 2009-06-28 and considered unsafe.
Description:
Threat File:pcwr.exe
Sample Submission:2009-06-28
Processing time:1 min 18 sec
Threat type:WORM/Allaple.Gen
Filesize:7897K Bytes
Path:
E:\System Volume Information\ pcwr.exe
E:\Windows\pcwr.exe
E:\Documents and Settings\[UserName]\Local Settings\Temp\pcwr.exe