Archive for February, 2011

Trojan-PSW.Win32.QQPass.absx

Trojan-PSW.Win32.QQPass.absx
Threat Name: Trojan-PSW.Win32.QQPass.absx
Spread Method:
External Storage Device (USB Device etc.)
Connection to Specific Sites
Connection to Specific Sites
Threat type:Trojan-PSW.Win32
Trojan-PSW.Win32.QQPass.absx first detected:2011-02-28
Virus file known is PE EXE file written in Basic
File Size: 1.08 MB Bytes.
Behavior: Unknow behavior
Level of Spread:6
Level of Threat:4
Infecte Platform: WIN9X/ME/NT/2000/XP/2003/Vista/Win7
Virus File Path: C:\Program Files\Internet Explorer\le.exe
MD5:BaNMH5k6ODHqCLxO3Au75pKs71iQ1sFv
SHA1..:j2VupP6AwfI8dT2WJi1CQ8s0EM5yK0g16JddxxBb

Packed.Win32.PePatch.lx

Packed.Win32.PePatch.lx
Threat Name: Packed.Win32.PePatch.lx
Spread Method:
File Creation
Instant Message(MSN,Gtalk,QQ etc.)
External Storage Device (USB Device etc.)
Threat type:Packed.Win32
Packed.Win32.PePatch.lx first detected:2011-02-28
Virus file known is Unkown type
File Size:551K Bytes.
Behavior:Registry Modification
Level of Spread:1
Level of Threat:5
Reported Path:E:\Winnt\System32\
MD5:g2srnT58tJMvHqduOg0AU7qxB34W28K0
SHA1..:5Nb07vXF0ko1iy4cp5Iiv182jRVfQHmK8o331egh

Trojan.Win32.Pakes.PePatch.lx

Trojan.Win32.Pakes.PePatch.lx
Threat Name: Trojan.Win32.Pakes.PePatch.lx
Spread Method:
Hacked Website
Connection to Specific Sites
Threat type:Trojan.Win32
Trojan.Win32.Pakes.PePatch.lx first detected:2011-02-27
Virus file known is dll file written in C language, C:\Documents and Settings\Administrator\WNspack.exe
C:\Windows\system32\docpropi.dll
File Size:187K Bytes.
Behavior:Creates service in system
Level of Spread:1
Level of Threat:2
Reported Path:Unkonow path
MD5:6yq552X1O4m7Mr7qJ5bGHWP7FCw3DcKb
SHA1..:B26WYNGMwTn0tsCrR83opFxEnk1Sl3s3cP0xavou

20110227 Infected Trojan, Backdoor And Worm Virus Files

1118tcpwjdrive32.exe; 1109tcpwjdrive32.exe; 1102tcpwjdrive32.exe; 1070tcpwinfiles.exe; 1062tcpwinfiles.exe; 1059tcpggdrive32.exe; 1058tcpggdrive32.exe; 1057tcpwjdrive32.exe; 1057tcpggdrive32.exe; 1056tcpggdrive32.exe; 1055tcpcsrs.exe; 1055tcpciaiexpl.exe; 1054tcpggdrive32.exe; 1053tcpxanga.exe; 1052tcpwjdrive32.exe; 1052tcpiexplorel.exe; 1052tcpggdrive32.exe; 1051tcpggdrive32.exe; c0131.exe; ciaiexpl.exe; 1118tcpwjdrive32.exe; 1109tcpwjdrive32.exe; 1102tcpwjdrive32.exe; 1070tcpwinfiles.exe; 1062tcpwinfiles.exe; 1059tcpggdrive32.exe; 1058tcpggdrive32.exe; 1057tcpwjdrive32.exe; 1057tcpggdrive32.exe; 1056tcpggdrive32.exe; 1055tcpcsrs.exe; 1055tcpciaiexpl.exe; 1054tcpggdrive32.exe; 1053tcpxanga.exe; 1052tcpwjdrive32.exe; 1052tcpiexplorel.exe; 1052tcpggdrive32.exe; 1051tcpggdrive32.exe; tosvolregulator.exe; serv8.exe; scriptsyntax.dll.vbs; lhomaa.exe; good2_v154.exe; c508e.com; ydewya.exe; xdypoc.exe; wintqfeg.exe; wintfmujb.exe; winobcba.exe;

Latest Virus And Trojan Files Report On 20110226

widmoa.dll; uninstall.exe; withmoa.exe; editorsui.dll; qzcnemusic.exe; rsewzjqn.exe; msdbxi.dll; iasvcstb.dll; unins000.exe; kugoo.exe; isx.dll; kugoo.exe; encoder.exe; dbs.exe; coopen.scr; coopen.exe; unins000.exe; xpssvcswow.exe; xactengine2_3wow.exe; wups2wow.exe; wlanmsmwow.exe; nnjydomsika.exe; setup.exe; sysclasswow.exe; srcorewow.exe; blservice.exe; seclogonwow.exe; scardsvrwow.exe; regapiwow.exe; nvmccsswow.exe; nlslexicons0011wow.exe; nlsdata081awow.exe; nlsdata0416wow.exe; msonpmonwow.exe; msieftpwow.exe; mprddmwow.exe; kbdvntcwow.exe; eappgnuiwow.exe; compobjwow.exe; xpssvcswow.exe; wlanmsmwow.exe; vgawow.exe; seclogonwow.exe; nlslexicons0011wow.exe; msieftpwow.exe; kbdvntcwow.exe; eappgnuiwow.exe; compobjwow.exe; ipimasokup.dll;

xdx.exe

xdx.exe sample submitted on 2011-02-24 and identified as a threat.
Alias:
Threat File: xdx.exe
Submit time: 2011-02-24
Excute time: 6 min 46 sec
Level of Spread:4
Level of Threat:1
type:not-a-virus:AdWare
Filesize:95K Bytes
Files type
xdx.exe is Windows exe file.
MD5:BP2G5F2MWBDr360Xrg8w2VPdNLN302LI

vyre32.exe

vyre32.exe sample submitted on 2011-02-24 and identified as a threat.
Alias:
Threat File:vyre32.exe
Submit time:2011-02-24
Excute time:9 min 46 sec
Level of Spread:4
Level of Threat:6
type:Win32/Cryptor
Filesize:76K Bytes
Files type
vyre32.exe is Windows exe file.
MD5:7h2tsnU5XuJNwIreuOg0AV7r8C35W38L

o6jv.exe

o6jv.exesample submitted on 2011-02-24 and identified as a threat.
Alias:
Threat File: o6jv.exe
Submit time: 2011-02-24
Excute time: 4 min 57 sec
Level of Spread:1
Level of Threat:3
type:Trojan-Dropper.Win32.Kamboda
Filesize:61K Bytes
12494K Bytes
1K Bytes
Files type
o6jv.exe is Windows exe file.
MD5:8R8U0823b2VI86K1eaA7DgosBm13ht6g

Latest Worm, Trojan, Backdoor Virus Files Report on 20110224

NTLDR.DLL; YEAWL.EXE; wupdte002.com; WSZUGOBI.EXE; taskhosth.exe; svchostw7.exe; MAXTHON2.0.EXE; iscwam2h.cmd; IESAFER.EXE; hbnuh.exe; FSWAGZ.EXE; Explorars.exe; EKRNAPPDRV.SYS; COMMONFUNCDLL.DLL; WUDFHOST.EXE; Win32.BLASTER.WORM.EXE; MSICAB.EXE; MEMORYAC.EXE; KVTOOLS.EXE; titi.exe; svvchostw.exe; svchostw7.exe; svvchostw.exe; maxthon2.0.exe; hahagames.exe; games.exe; office.exe; kernel33.dll; rqq.exe; rqp.exe; rqo.exe; rqn.exe; rqm.exe; rql.exe; rqk.exe; rqj.exe; kernel33.dll; rqq.exe; rqp.exe; rqo.exe; rqn.exe; rqm.exe; rql.exe; rqk.exe; rqj.exe; ssmarque.scr; mmonster.exe; xxoc.exe; asetup.exe;

Trojan-Downloader.Win32.Agent.fvrk

Trojan-Downloader.Win32.Agent.fvrk virus file know as wg.exe. It’s a Trojan downloader and we advice you remove it ASAP.
Threat Name: Trojan-Downloader.Win32.Agent.fvrk
Spread Method:
Hacked Website
Download From website
Windows Vulnerability
Threat type:Trojan-Downloader.Win32
Trojan-Downloader.Win32.Agent.fvrk first detected: 2011-02-23
Virus file known is PE EXE file written in C++
File Size:134K Bytes.
Behavior:sends a request to IP address
Level of Spread:1
Level of Threat:5
Reported Path: C:\WINDOWS\Help\wg.exe
MD5:e1qPk6n7RGKtFobrLd88SsNv82lT27I8
SHA1..:4Lxx6S7DaiL0gw3am4GFT0v1HP6cNEjH7M2g0bEe