Archive for July, 2011
Trojan.Win32.Scar.dpmx is a trojan to steal the QQ acount.
Threat Name: Trojan.Win32.Scar.dpmx
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:Trojan.Win32
Trojan.Win32.Scar.dpmx first detected:2011-08-01
Virus file known is PE EXE file written in Java
File Size:595K Bytes.
Behavior:Copies files to the Windows system directory
Level of Spread:6
Level of Threat:2
Reported Path:
C:\windows\system\SVCH0ST.exe
C:\windows\system\HJonny.bat
MD5:B4M0y7BWEbqt1o830u4HHc082IQ7ePGr
SHA1..:JVu22Cdfm36vL52S37Upp1K2NqyD4xn6rE7QPK3n
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\AutoKill = “C:\windows\system\SVCH0ST.exe”
July 31st, 2011 | Posted in Kaspersky, McAfee | No Comments
Trojan.Acad.Dwgun.e is a trojan as cad virus. Trojan.Acad.Dwgun.e commonly spread by Flash drive.
Threat Name: Trojan.Acad.Dwgun.e
Spread Method:
Malware Installation
Threat type:Trojan.Acad
Trojan.Acad.Dwgun.e first detected:2011-08-01
Virus file known is driver file *.sys written in C++
File Size:383K Bytes.
Behavior:Delete the original virus file
Level of Spread:2
Level of Threat:2
Reported Path:D:\Windows\
MD5:0gw3amlGFT0v1HP6cNEjH7M2g0bDehpt
SHA1..:Jo1Q2u7hGcI1LIQU3OfriCuO5JjFm580l7NSQ1C5
July 31st, 2011 | Posted in Clam, Kaspersky | No Comments
Exploit.HTML.CVE-2011-1255.a
Threat Name: Exploit.HTML.CVE-2011-1255.a
Spread Method:
External Storage Device (USB Device etc.)
Threat type:Exploit.HTML
Exploit.HTML.CVE-2011-1255.a first detected:2011-08-01
Virus file known is Unkown type
File Size:446K Bytes.
Behavior:Copies own executable file
Level of Spread:5
Level of Threat:3
Reported Path: D:\System Volume Information\
MD5:0n54OD57vS4aK3386×2FGt2L4JDqb805
SHA1..:358VweWC1bUbsQ62A2PNo7Ns7rL6dHJXQ8Hex4Fd
July 31st, 2011 | Posted in Ikarus, Kaspersky | No Comments
Trojan.Win32.Hosts2.gen
Threat Name: Trojan.Win32.Hosts2.gen
Spread Method:
File Creation
Hacked Website
Malware Installation
Threat type:Trojan.Win32
Trojan.Win32.Hosts2.gen first detected:2011-08-01
Virus file known is dll file written in Basic
File Size:462K Bytes.
Behavior:Save files to the Windows temporary directory %Temp%
Level of Spread:3
Level of Threat:1
Reported Path:C:\Documents and Settings\[Users]\Local Settings\Temp\
MD5:4L8y6A7Eapt0n830u4GGb0w1HP7dOFqI
SHA1..:Ut22CcEm35uK52R37UoocJ1MpxC4wn6qD7P5K3m4
July 31st, 2011 | Posted in Kaspersky, NOD32 | No Comments
WINDOWSECURITY.EXE; ssleay32.dll; QtGui4.dll; QtCore4.dll; msvcr71.dll; libeay32.dll; DUBrute.exe; qtdekzbyv.exe; NativeEventEnum.dll; yeawl.exe; wgc.exe; swvaidqegy.exe; rff.exe; social.exe; quick.exe; messenger.exe; doriva.exe; cow.exe; cccd.exe; aaaaaaaa.exe; msvbvm50.dll; mamita.exe; imgparser4.exe; hsbc.exe; ftppost2.exe; fc2blog2.exe; computer.exe; cgminer.exe; bosco_en.exe; blo1.exe; aviso.exe; hsbc.exe; 12adede1.exe; 0898c5dd.exe; xfy.exe; ql2c7wk.exe; pcxaxp.exe; iw9uf2wf.exe; prohard.exe; slave.exe; slave.dat; non_gui_class.dll; nofullscreen.dll; master.exe; install.exe; gui_class.dll; syscron.exe; hahahahaha.exe; unins000.exe;
July 31st, 2011 | Posted in CA, Kaspersky | No Comments
rjsduf.exe; rising.exe; rfq.exe; recove~1.exe; ravwm.exe; ravwl.exe; rav.exe; q4o3bqug.exe; pffnza.exe; ofig.exe; no3uq.exe; nivz.exe; me.exe; mced.exe; maaad.exe; lsass.exe; lq2r.exe; l.exe; kaug.exe; jdmgtjjs.exe; isearch.exe; ipx32d56.exe; iexp10re.exe; svcmm32.exe; svcmm32.exe; i3j.exe; hn.exe; herss.exe; hbinst.exe; h.exe; gqln.exe; gip2.exe; fw1d.exe; fmgjh.exe; explorei.exe; ei.exe; e7bibe.exe; drago.exe; djebmm350.exe; dj.exe; cvasds9.dll; cvasds8.dll; cvasds7.dll; cvasds6.dll; cvasds5.dll; cvasds4.dll; cvasds3.dll; cvasds2.dll; cvasds1.dll;
July 26th, 2011 | Posted in CA, Kaspersky, Pctools | No Comments
msxslt3.exe; gnwvuen.dll; maneger.exe; 24fc2ae3644.exe; xp555.exe; boot555.exe; winzip.exe; pard.exe; mydgds.exe; nfacap.exe; nfacap.exe; jinund.exe; zeiaiz.exe; tmmgmz.exe; drxcxf.exe; dwm.exe; tlpmpf.exe; ooyi.exe; lsass.exe; kbrero.exe; fcdsdx.exe; ezfgfk.exe; system.exe; netprotocol.exe; system.exe; netprotocol.exe; windebug32.exe; 22cc6c32.exe; system.exe; netprotocol.exe; bylolp.exe; 0.9557600764489652 .exe; 0.5443266219055672 .dll; system.exe; netprotocol.exe; system.exe; netprotocol.exe; drg.exe; fk.exe; sep.exe; tan.exe; may.exe; nintend.exe; zip password recovery.exe; zion.exe; yahoo mail hack.exe; yahoo hack.exe; xp [...]
July 21st, 2011 | Posted in AVG, Kaspersky, NOD32 | 1 Comment
Latest Virus And Trojan Files Report On 20110713: worm.exe; winupdate.exe; army.exe; systaov.exe; sysrqnr.exe; syslbsr.exe; sysineb.exe; sysexlo.exe; syseitd.exe; sysbzgy.exe; sysbiix.exe; sysamgv.exe; sep.exe; sempalong.exe; nintend.exe; drg.exe; zpharaoh.exe; zerx.exe; drago.exe; winlogon.exe; monnid32.exe; isqsys32.exe; ngjer.exe; xeqi.exe; yurvmwqo8n.exe; naruc.exe; xeqi.exe; winssys.exe; winlogon.exe; windefence32.exe; scvhost.exe; win32runtime.exe; webdev.exe; zpskon_1282235035.exe; zpskon_1282224224.exe; yakarjme.exe; xxe.exe; xxd.exe; xxc.exe; xxb.exe; xxa.exe; xvsfym.exe; wnddsl.exe; wljrkxt.exe; vista_sp1.exe; shell32.dll; ughau.exe; [...]
July 13th, 2011 | Posted in AVG, Ikarus, NOD32, Norman | 1 Comment
winlive.exe; drg.exe; fk.exe; army.exe; sep.exe; tan.exe; may.exe; nintend.exe; iefeatures.exe; drg.exe; systemcritical.exe; sistem.exe; wntlgns.exe; msupdate.exe; maswtjoy.exe; game.exe; uninstall.exe; yzhuv.exe; xytoq.exe; fyiqm.exe; elev.exe; addec.exe; ybxaxy.exe; windefence32.exe; scvhost.exe; webdev.exe; esgoe.exe; updchecker.exe; xfgnp.exe; wnddsl.exe; windowsgenuine.exe; svchost.exe; tponscr.exe; sshnas.dll; spyfly1.exe; securitycenter.exe; samfly.exe; rising.exe; maaad.exe; kb5246794328.exe; hn.exe; herss.exe; gqln.exe; explore.exe; drago.exe; cvasds9.dll; cvasds8.dll; cvasds7.dll; cvasds6.dll;
July 8th, 2011 | Posted in AVG, Ikarus, NOD32 | No Comments
r66v.exe samples we received was detected as a Trojan. You should remove this asap.
r66v.exe sample submitted on 2011-07-05 and identified as a threat.
Alias:
Threat File:r66v.exe
Submit time:2011-07-05
Excute time:10 min 50 sec
Level of Spread:4
Level of Threat:1
type:Win32.Runouce.B
Filesize:83K Bytes
0K Bytes
1K Bytes
Files type
r66v.exe is Windows exe file.
MD5:843xwsY7Cyor0m73yslFFA0v1GO6cNEp
July 5th, 2011 | Posted in CA, F-Prot6, Ikarus | No Comments