Archive for June, 2010

Trojan.Win32.Pirmidrop.h

Threat Name: Trojan.Win32.Pirmidrop.h
Spread Method:
Hacked Website
Threat type:Trojan.Win32
Trojan.Win32.Pirmidrop.h first detected:2010-06-30
Virus file known is driver file *.sys written in C++
File Size:365K Bytes.
Behavior:sends a request to IP address
Level of Spread:3
Level of Threat:4
Reported Path: c:\windows\temp\159118.exe
MD5:mYxLLG4i5M0GOAKVN2Ys64nJq7cg5br1
SHA1..:uh2TtoO6YuDHwCReVIh0BO7r8C35X30F1pHcbwwY

rasman.dll

Now is the description of the file as rasman.dll and tell you what is rasman.dll and how to remove rasman.dll. rasman.dll sample submitted on 2010-06-30 and identified as a threat.
Alias:
Threat File:rasman.dll
Submit time:2010-06-30
Excute time:7 min 33 sec
Level of Spread:2
Level of Threat:5
type:Trojan.Win32.Possador
Filesize:54K Bytes
Files type
rasman.dll is a A dynamic-link library,which acts as a shared library of functions.
MD5:7h2tsoU5XuKNwIreuOh0BV7r8C35X30L

20100630 Latest Infected Viruses Files on general

mzjgwm.exe; msvcr80.dll; gdwfpcd32.sys; ddohigh.exe; _ise10c.exe; _isdc3a.exe; _isc217.exe; _isa6b.exe; _is958a.exe; _is6c59.exe; _is5fec.exe; _is432a.exe; _is34a6.exe; _is2829.exe; _is166d.exe; winhhlxx.exe; tmp2.exe; connect32.dll; winrfsok.exe; shosts.exe; herss.exe; dsoqq.exe; 99033961.exe; 691695123.exe; 1643406782.exe; shd.exe; c.exe; b.exe; xcv.exe; xcs.exe; c2e.exe; yuns32.exe; yudald.bat; xunxianqq.dll; xtnsht.exe; xp2007.dat; xcisvxl.com; wrjcmwbu.exe; usbmonjx2.dll; ujgyjdnb.exe; uipcafn.exe; tmpms45.exe; systhosts.exe; sysdat32.exe; syntax.exe; svchostow.dll; svcchost32.exe; srryxss.exe; rnmsmbs.exe;

2010-06-29 Newest Infected Files Report

youxime.exe; winvnc.exe; tb.exe; 1057udptb.exe; eyruu.exe; zbwvnbljls.exe; win32.exe; jdc.exe; sessionlauncher.exe; kxliqpob.sys; bb.exe; xqq.exe; xqp.exe; sound32.dll; trhg65.exe; da.exe; 15wp3wyh.exe; ury.exe; sstqrp.dll; kwlcapob.sys; gebbyw.dll; cmdlimig.dll; 60325cahp25ca0.exe; jvdfmmutssd.exe; xtr.exe; pfsetup8.exe; 50giplg8.exe; kwryrpod.sys; atr1.exe; tmtk2gjm.exe; ugkoyuod.sys; olin.exe; ultowyc4.exe; qz0equdx.exe; js7ca1dd.exe; ejectcd.exe; _isf160.exe; _is9ab9.exe; _is956b.exe; _is69c9.exe; _is4bbf.exe; sshnas21.dll; hijackthis204.exe; fe.exe; otl.exe; joeba.exe; fe.exe; edg31f.exe; pvxinst832.exe;

guenee.exe

The article describle the guenee.exe virus file in detail. After reading the guenee.exe post, you may have the full idea of guenee.exe virus, know what is guenee.exe file and how to remove guenee.exe.
guenee.exe sample submitted on 2010-06-28 and identified as a threat.
Alias:
Threat File:guenee.exe
Submit time:2010-06-28
Excute time:8 min 40 sec
Level of Spread:3
Level of Threat:6
type:Trojan.Win32.TDSS
Filesize:8783K Bytes
Files type
guenee.exe is [...]

Latest Detected Malware Files on 20100628

w2b129c.exe; kmnjj.exe; cmxwj.exe; ysd.exe; winphre.exe; winfkbn.exe; svchost.com; start.exe; itn.exe; wkhap.exe; windmokta.exe; n9.exe; mnr.exe; kjkjll.exe; winyhvpf.exe; wincdbfm.exe; lbl.exe; comrepl.exe; hchcib.exe; lh1.exe; lh0.exe; hbdn.exe; amd.exe; aw1.exe; ycx.exe; 269156238wsy.dll; rtkbtmnt.exe; herss.exe; dsoqq.exe; cvasds0.dll; ubirg.exe; herss.exe; dsoqq.exe; cvasds0.dll; kjx.exe; 1.tmp.exe; tx1.exe; cvasds0.dll; dsoqq1.dll; 09lf.exe; jmg.exe; cbgame.dll; autmgr32.exe; autmgr32.exe; uwobicit.dll; urewatonu.dll; simk2b8e.exe; rdl.exe; q2nbmjixwz.dll;

plx.exe

Do you know the plx.exe virus and how to remove plx.exe file? Now here tell you the full description of plx.exe file. plx.exe sample submitted on 2010-06-27 and identified as a threat.
Alias:
Threat File: plx.exe
Submit time: 2010-06-27
Excute time:5 min 21 sec
Level of Spread:1
Level of Threat:4
type:Win32:Vitro
Filesize:33K Bytes
Files type
plx.exe is Windows exe file.
MD5:B5N007CXFbqu1p830v4Ihc182JR7ePGs

fjof.sto

Here tell you about fjof.sto virus and how to remove fjof.sto. You will find what is fjof.sto and the full describtion of fjof.sto file. fjof.sto sample submitted on 2010-06-26 and identified as a threat.
Alias:
Threat File:fjof.sto
Submit time:2010-06-26
Excute time:7 min 34 sec
Level of Spread:3
Level of Threat:5
type: not-a-virus:FraudTool.Win32.XpPoliceAntivirus
Filesize:56K Bytes
Files type
Unknow file type.
MD5:lXwKJF4hoL01N8IUL2Xr64mIP6bf5aq0

2010-06-26 Latest Infected Virus Files

mghkoqds.exe; taskcore.exe; svctask.exe; nteagle.exe; mvurest.exe; browseaviruntime.dll; bldjad.exe; 5031e3b8.exe; ew1.exe; ew1 .exe; ojulejariv.dll; ilapilap.dll; lpbvlxktssd.exe; d544th7b.exe; gf302yvm.exe; pxtdapow.sys; kwdoapoc.sys; pxtdapow.sys; kgdoypob.sys; 65044239.exe; 50giplg8.exe; c.exe; b.exe; xcv.exe; xcs.exe; ycx.exe; 269156238wsy.dll; 09lf.exe; herss.exe; dsoqq.exe; cvasds0.dll; ubirg.exe; herss.exe; dsoqq.exe; cvasds0.dll; kjx.exe; 1.tmp.exe; tx1.exe; SM345d.exe; svchosts.exe; kwwalpgr.sys; pwtdapoc.sys; utx.exe; mcupdate_1277390027.exe; pxtdqpod.sys; xg03mhgo.exe; nu0×1i5.exe; wkd.exe; wkb.exe;

Backdoor.win32.sinowal.cx

Backdoor.win32.sinowal.cx
Threat Name: Backdoor.win32.sinowal.cx
Spread Method:
External Storage Device (USB Device etc.)
Threat type:Backdoor.win32
Backdoor.win32.sinowal.cx first detected:2010-06-25
Virus file known is Script file written in jsp
File Size:283K Bytes.
Behavior:File Creation
Level of Spread:2
Level of Threat:4
Reported Path: C:\Winnt\System32\
MD5:G6R118gCj278I61P2a6MlgH1KnvA3tk8
SHA1..:NBa4MH2k6OW0qU4×50Au72oKs71iQ0sXvj0UUPP6