Archive for March, 2011
Trojan-PSW.Win32.QQPass.acig
Threat Name: Trojan-PSW.Win32.QQPass.acig
Spread Method:
USB Disk
Connection to Specific Sites
Threat type:Trojan-PSW.Win32
Trojan-PSW.Win32.QQPass.acig first detected:2011-03-30
Virus file known is PE EXE file written in C++
File Size:148K Bytes.
Behavior:Creates service in system
Level of Spread:6
Level of Threat:1
Reported Path:Unkonow path
MD5:A28VXMFLvS7Bt8BxRX3noEWDmk1Sk3s2
SHA1..:iOAegUnt1b7J00j8yGQ78mfl76Mb6R053wI22dv0
March 30th, 2011 | Posted in Kaspersky | No Comments
2gqWV0.com; system.exe; nww.exe; AFK-2-4.exe; systmcore.dll; win54.exe; runapi45.exe; keygen.exe; administrator8; administrator7; administratorlog.dat; administrator3sqlite3.dll; runapi45.exe; aighfrshdgf.exe; netlogo.dll; lwodhsf.dll; vrmhntja.exe; kv3rs79jfq.exe; 9s1ozvg.exe; 3ezpqlb.exe; 926.exe; 916.exe; 902.exe; 899.exe; 880.exe; 861637.exe; 8219.exe; 798.exe; 77849.exe; 603.exe; 570.exe; 566.exe; 534.exe; 500.exe; 447.exe; 4307.exe; 403.exe; 325.exe; 258.exe; 178.exe; 095.exe; 059.exe; 02980.exe; drg.exe; army.exe; sep.exe; tan.exe; may.exe; nintend.exe;
March 30th, 2011 | Posted in AVG, F-Secure, Microsoft | No Comments
fisnmn.exe; cbclient.exe; nww.exe; calyp.exe; winnt7.exe; winnt6.exe; winnt5.exe; winnt4.exe; winnt3.exe; winnt2.exe; drg.exe; army.exe; sep.exe; tan.exe; may.exe; bck.exe; nintend.exe; drg.exe; zpharaoh.exe; zerx.exe; drago.exe; afslf7ikont.exe; googledownload.exe; 2456_crypted_chronic.exe; fwjhhverypq.exe; pffescp.exe; zzbrenkerw.exe; elev.exe; ydik.exe; xiobu.exe; aqga.exe; naruc.exe; igin.exe; imomx.exe; yniqb.exe; xiobu.exe; xeqi.exe; demuy.exe; xeqi.exe; lepu.exe; naruc.exe; igin.exe; demuy.exe; uguze.exe; xeqi.exe; okatf.exe; zizuy.exe; yzhuv.exe; evis.exe;
March 28th, 2011 | Posted in BitDefender, F-Prot6, McAfee | No Comments
ungzpw.dll; tx4ole13.ocx; tslabelsh.dll; ssnetmon.dll; ssce5532.dll; sqlacsel.dll; sorcrc32.dll; slyyzmgz.dll; reghero.exe; otacqzu.dll; mtrtf2.ocx; msxmlrz.dll; msifpctl.exe; mscal.ocx; msafd32.exe; luxandblink.dll; lgncon32.dll; lfss80resnt.dll; kbdjpn8.dll; jre116.exe; jgar500.dll; jddac.dll; jdboot.exe; iubjlfqt.dll; ipaddrshostname.dll; inv16.dll; ikzefrfi.dll; ie8eula0.dll; hyvlmw.exe; henrysafeusb.dll; h7oh0q.dll; gpeditt.dll; gload3b.dll; foetck58k.exe; fldrvw90.ocx; eow6rl.dll; ekmfrxfdtx.exe; eedff515bb.sys; dllinsce32.dll; dlcxih.exe; dgjasr46w.exe; ctregapp.dll; crbeik.dll; cpyidimg.dll; cnmvs4q.dll; cnhmca6.dll; cnc610o.dll; cdougdqz.dll; ccdcmbwux64.dll; catsrvps32.exe;
March 25th, 2011 | Posted in CA, F-Prot6, Kaspersky | 1 Comment
Trojan-PSW.Win32.QQPass.accd
Threat Name: Trojan-PSW.Win32.QQPass.accd
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
External Storage Device (USB Device etc.)
Download From website
Threat type:Trojan-PSW.Win32
Trojan-PSW.Win32.QQPass.accd first detected:2011-03-23
Virus file known is PE EXE file written in Dephi
File Size:517K Bytes.
Behavior:Can be injected/attached to the legitimate Windows process such as explorer.exe or other
Level of Spread:6
Level of Threat:4
Create Following Files:
C:\Documents and Settings\Administrator\Local Settings\Temp\E_N4\krnln.fnr
C:\Documents and Settings\Administrator\Local Settings\Temp\E_N4\iext.fnr
C:\Documents and [...]
March 23rd, 2011 | Posted in Kaspersky | No Comments
fb_spam_ab4.exe; version 7.51; wsynalib.exe; winxps.exe; winxpfirewall.exe; winupda.exe; winssearch.exe; winsscore.dll; winetworks.exe; windowezsearchcfg.exe; windowezsearch.dll; whitesmoke_tools.exe; wedo0fat11.dll; wedo0fat.exe; txtpreview.dll; tmphost.exe; tfcilgkt20.dll; tfcilgkt11.dll; tcodeclitesetup2.exe; tcodeclite.exe; sysqgv32.exe; svlkanager.exe; svdmoos.exe; sisbkupx.exe; shsetup.exe; sexygirl.exe; serv8.exe; restorpoint.exe; rerf32.dll; recyclexbi.exe; ranback.dll; questbrwsearch.exe; questbrwsearch.dll; plustab_pt39.exe; osbwbarupd.exe; odbcrgwiz.dll; ocsoss.dll; newdnswatch.exe; natservers.dll; msnlives.exe; mpp2g.exe; monicon.exe; microsoftupdat.exe; me0xxw0p.exe; mdosc.exe; jahcii.exe; iniexport.dll; iminstaller.exe; htmlexport.dll; ggwwef9752.exe;
March 19th, 2011 | Posted in AVG, Symantec, TrendMicro | 1 Comment
Trojan-Dropper.Win32.StartPage.dud
Threat Name: Trojan-Dropper.Win32.StartPage.dud
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
Download From website
Threat type:Trojan-Dropper.Win32
Trojan-Dropper.Win32.StartPage.dud first detected:2011-03-18
Virus file known is PE EXE file written in Basic
File Size: 137 KB .
Behavior:Creat files in Documents and Settings\[Users]\Local Settings\Temp\
Level of Spread:1
Level of Threat:2
Reported Path:Unkonow path
MD5:5wo45d70L3kr3p6O25yDF746DAuiByIx
SHA1..:Y2pUW41KtRl0RqApP72ln1UBli16J2qgaN8vxTMs
March 18th, 2011 | Posted in Kaspersky | No Comments
ysyjq1bs.exe; xv.exe; xs6kpr0.exe; x0r.exe; wins.exe; winmgmt.exe; wcgswa.exe; w9hw8.exe; vsps.exe; drg.exe; ohfiqd.exe; xdx.exe; msrdllp.exe; msakdllp.exe; d32.dll; 9922912.exe; 9904915.exe; 946.exe; 9413.exe; 8706.exe; 86031.exe; 744.exe; 7253.exe; 63457.exe; 610.exe; 5600.exe; 558.exe; 494.exe; 3931.exe; 379192.exe; 3707665.exe; 264077.exe; 2086180.exe; 1386.exe; 0849430.exe; 08177.exe; 0136151.exe; 0.9572844311196732.exe; 0.7763030796237895.exe; winlogon.exe; services.exe; lsass.exe; br14577on.exe; winlogon.exe; services.exe; lsass.exe; br4743on.exe; fswagz.exe;
March 18th, 2011 | Posted in AVG, CA, NOD32 | No Comments
AdWare.Win32.Bibibey.a
Threat Name: AdWare.Win32.Bibibey.a
Spread Method:
File Creation
Threat type:AdWare.Win32
AdWare.Win32.Bibibey.a first detected:2011-03-16
Virus file known is Unkown type
File Size:210K Bytes.
Behavior:Copies files to the Windows system directory
Level of Spread:1
Level of Threat:2
Reported Path: D:\Windows\
MD5:D5O007dYG1sv1q041w5JjeE02kSWgRHt
SHA1..:LXw3JE1hoL68N63U48Wr61mIP6bf5yp7tG8SRMM5
March 16th, 2011 | Posted in DrWeb, F-Secure | No Comments
tb.dll is a trojan file and it’s not safe file for your computer.
tb.dll sample submitted on 2011-03-12 and identified as a threat.
Alias:
Threat File:tb.dll
Submit time:2011-03-12
Excute time:8 min 36 sec
Level of Spread:4
Level of Threat:5
type:TR/Crypt.XPACK
Filesize:9K Bytes
Files type
tb.dll is a A dynamic-link library,which acts as a shared library of functions.
MD5:1Q276nmbI1LowB3ul6oCtN4I3l4580r7
March 12th, 2011 | Posted in Avast, Symantec, TrendMicro | No Comments