-
Файл ruts.exe получен 2009.12.11 18:02:18 (UTC)
Текущий статус: закончено
Результат: 35/41 (85.37%)
[quote]
[B]a-squared 4.5.0.43 2009.12.11 Trojan.Win32.Alureon!IK[/B]
AhnLab-V3 5.0.0.2 2009.12.11 -
[B]AntiVir 7.9.1.108 2009.12.11 TR/Vundo.Gen
Antiy-AVL 2.0.3.7 2009.12.11 Packed/Win32.Tdss.gen
Authentium 5.2.0.5 2009.12.02 W32/Alureon.EVV
Avast 4.8.1351.0 2009.12.11 Win32:Alureon-BT
AVG 8.5.0.427 2009.12.11 Rootkit-Agent.DZ
BitDefender 7.2 2009.12.11 Rootkit.30395
CAT-QuickHeal 10.00 2009.12.11 Trojan.TDSS.z[/B]
ClamAV 0.94.1 2009.12.11 -
[B]Comodo 3207 2009.12.11 TrojWare.Win32.Trojan.Agent.Gen
DrWeb 5.0.0.12182 2009.12.11 BackDoor.Tdss.1482
eSafe 7.0.17.0 2009.12.10 Win32.VirToolObfusca[/B]
eTrust-Vet 35.1.7170 2009.12.11 -
[B]F-Prot 4.5.1.85 2009.12.10 W32/Alureon.EVV
F-Secure 9.0.15370.0 2009.12.11 Rootkit.30395[/B]
Fortinet 4.0.14.0 2009.12.11 -
G[B]Data 19 2009.12.11 Rootkit.30395
Ikarus T3.1.1.74.0 2009.12.11 Trojan.Win32.Alureon
Jiangmin 13.0.900 2009.12.11 Packed.Tdss.acuh
K7AntiVirus 7.10.918 2009.12.11 Packed.Win32.TDSS.z
Kaspersky 7.0.0.125 2009.12.11 Packed.Win32.TDSS.z
McAfee 5829 2009.12.11 DNSChanger!cf
McAfee+Artemis 5829 2009.12.11 DNSChanger!cf
McAfee-GW-Edition 6.8.5 2009.12.11 Heuristic.BehavesLike.Win32.Suspicious.H
Microsoft 1.5302 2009.12.11 Trojan:Win32/Alureon.gen!U
NOD32 4679 2009.12.11 Win32/Olmarik.RE[/B]
Norman 6.04.03 2009.12.11 -
[B]nProtect 2009.1.8.0 2009.12.11 Trojan/W32.TDSS.13824.D
Panda 10.0.2.2 2009.12.11 Trj/CI.A
PCTools 7.0.3.5 2009.12.11 Trojan-PSW.Banker
Prevx 3.0 2009.12.11 Medium Risk Malware[/B]
Rising 22.25.04.07 2009.12.11 -
[B]Sophos 4.48.0 2009.12.11 Mal/Generic-A
Sunbelt 3.2.1858.2 2009.12.11 Trojan.Win32.Tdss.aalc (v)
Symantec 1.4.4.12 2009.12.11 Infostealer.Banker.C
TheHacker 6.5.0.2.090 2009.12.10 Trojan/TDSS.z
TrendMicro 9.100.0.1001 2009.12.11 BKDR_TDSS.SMP
VBA32 3.12.12.0 2009.12.10 BScope.Trojan-Dropper.Agent.6221017
ViRobot 2009.12.11.2083 2009.12.11 Trojan.Win32.Tdss.12288
VirusBuster 5.0.21.0 2009.12.11 Trojan.Vundo.UKN[/B]
[/quote]
[url]http://www.virustotal.com/ru/analisis/1c22120a55074c5306d791f2568993cf7770e0c5e23ea5e39e485d576c89f920-1260554538[/url]
-
Файл install_flash_player.exe получен 2009.12.31 16:25:06 (UTC)
Текущий статус: закончено
Результат: 7/40 (17.50%)
[QUOTE]
Антивирус Версия Обновление Результат
a-squared 4.5.0.43 2009.12.31 -
AhnLab-V3 5.0.0.2 2009.12.31 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2009.12.31 -
Avast 4.8.1351.0 2009.12.31 -
AVG 8.5.0.430 2009.12.31 -
[B]BitDefender 7.2 2009.12.31 Gen:Trojan.Heur.Hype.uqW@aygZUhcc
CAT-QuickHeal 10.00 2009.12.31 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2009.12.31 -
Comodo 3428 2009.12.31 -
DrWeb 5.0.1.12222 2009.12.31 -
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7208 2009.12.31 -
F-Prot 4.5.1.85 2009.12.31 -
[B]F-Secure 9.0.15370.0 2009.12.31 Gen:Trojan.Heur.Hype.uqW@aygZUhcc[/B]
Fortinet 4.0.14.0 2009.12.31 -
[B]GData 19 2009.12.31 Gen:Trojan.Heur.Hype.uqW@aygZUhcc[/B]
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2009.12.31 -
K7AntiVirus 7.10.935 2009.12.31 -
Kaspersky 7.0.0.125 2009.12.31 -
McAfee 5848 2009.12.31 -
McAfee+Artemis 5848 2009.12.31 -
[B]McAfee-GW-Edition 6.8.5 2009.12.31 Heuristic.LooksLike.Win32.Dropper.C
Microsoft 1.5302 2009.12.31 TrojanDropper:Win32/Procesemes.gen!A
NOD32 4732 2009.12.31 a variant of Win32/LockScreen.FE[/B]
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
Panda 10.0.2.2 2009.12.31 -
PCTools 7.0.3.5 2009.12.31 -
Prevx 3.0 2009.12.31 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2009.12.31 -
Sunbelt 3.2.1858.2 2009.12.31 -
TheHacker 6.5.0.3.123 2009.12.31 -
TrendMicro 9.120.0.1004 2009.12.31 -
VBA32 3.12.12.1 2009.12.31 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2009.12.31 -
File size: 340992 bytes
MD5 : 57ac0446852e795b5a8e939c2b3f5dee
SHA1 : 14050ca0a6ca6fa3c17d8b0dee66eb7441f0f38d
SHA256: 617f8c7566d443d3c8ff1d7c507b99b4f43f3c6f38025663914fc5a2d9d91745
PEInfo: PE Structure information[/QUOTE]
[size="1"][color="#666686"][B][I]Добавлено через 2 часа 9 минут[/I][/B][/color][/size]
Файл beograd_1_.exe получен 2010.01.02 19:04:37 (UTC)
Результат: 7/40 (17.5%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.02 -
Avast 4.8.1351.0 2010.01.02 -
AVG 8.5.0.430 2010.01.02 -
BitDefender 7.2 2010.01.02 -
[B]CAT-QuickHeal 10.00 2010.01.02 Worm.Rimecud.A
ClamAV 0.94.1 2010.01.01 Trojan.Agent-131959[/B]
Comodo 3449 2010.01.02 -
[B]DrWeb 5.0.1.12222 2010.01.02 Trojan.Packed.688[/B]
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.02 -
F-Secure 9.0.15370.0 2010.01.02 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.02 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.02 -
McAfee 5849 2010.01.02 -
McAfee+Artemis 5849 2010.01.02 -
McAfee-GW-Edition 6.8.5 2010.01.01 -
[B]Microsoft 1.5302 2010.01.02 TrojanDownloader:Win32/Harnig.gen!J[/B]
NOD32 4738 2010.01.02 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
[B]Panda 10.0.2.2 2010.01.02 Generic Malware[/B]
PCTools 7.0.3.5 2010.01.02 -
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.02 -
[B]Sunbelt 3.2.1858.2 2010.01.02 Worm.Win32.Rimecud.a (v)[/B]
TheHacker 6.5.0.3.125 2010.01.02 -
TrendMicro 9.120.0.1004 2010.01.02 -
[B]VBA32 3.12.12.1 2010.01.01 Trojan.Agent.059[/B]
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.02 -
Дополнительная информация
File size: 24064 bytes
MD5...: 39122136b3edf05ed476b08128321587
SHA1..: 660dcde63111a3b4a5d378d13603f8a47e664c35
SHA256: 32c7b09b1f5a46866faac93e76eaa6ef3f1dcb1d8ea9b4c172ba3a407f065090[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/32c7b09b1f5a46866faac93e76eaa6ef3f1dcb1d8ea9b4c172ba3a407f065090-1262459077[/url]
Файл kuiC.tmp получен 2010.01.02 19:09:39 (UTC)
Результат: 5/40 (12.5%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.02 -
Avast 4.8.1351.0 2010.01.02 -
[B]AVG 8.5.0.430 2010.01.02 SHeur2.CDPY[/B]
BitDefender 7.2 2010.01.02 -
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.01 -
[B]Comodo 3449 2010.01.02 Heur.Suspicious
DrWeb 5.0.1.12222 2010.01.02 Trojan.Winlock.591[/B]
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.02 -
F-Secure 9.0.15370.0 2010.01.02 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.02 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.02 -
McAfee 5849 2010.01.02 -
McAfee+Artemis 5849 2010.01.02 -
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.BehavesLike.Win32.Suspicious.I[/B]
Microsoft 1.5302 2010.01.02 -
[B]NOD32 4738 2010.01.02 a variant of Win32/LockScreen.FG[/B]
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
Panda 10.0.2.2 2010.01.02 -
PCTools 7.0.3.5 2010.01.02 -
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.02 -
Sunbelt 3.2.1858.2 2010.01.02 -
TheHacker 6.5.0.3.125 2010.01.02 -
TrendMicro 9.120.0.1004 2010.01.02 -
VBA32 3.12.12.1 2010.01.01 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.02 -
Дополнительная информация
File size: 337920 bytes
MD5...: e2def1d7b1b73a0bce7b745af505d4c1
SHA1..: 12d623720273a13e0b0a3ce27664a7323b9c894d
SHA256: a76c886766b92e3b96505cd49b97fc3babed63694b38fc8a82a93e8b0dfc903a[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/a76c886766b92e3b96505cd49b97fc3babed63694b38fc8a82a93e8b0dfc903a-1262459379[/url]
-
Файл feedback.php получен 2010.01.02 19:26:37 (UTC)
Результат: 9/40 (22.50%)
[QUOTE][B]a-squared 4.5.0.46 2010.01.02 Trojan.Win32.Agent2!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.02 -
Avast 4.8.1351.0 2010.01.02 -
AVG 8.5.0.430 2010.01.02 -
BitDefender 7.2 2010.01.02 -
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.01 -
[B]Comodo 3449 2010.01.02 Heur.Suspicious[/B]
DrWeb 5.0.1.12222 2010.01.02 -
eSafe 7.0.17.0 2009.12.31 -
[B]eTrust-Vet 35.1.7210 2010.01.01 Win32/Koobface.B!generic[/B]
F-Prot 4.5.1.85 2010.01.02 -
F-Secure 9.0.15370.0 2010.01.02 -
[B]Fortinet 4.0.14.0 2010.01.02 W32/Agent2.CMUE!tr[/B]
GData 19 2010.01.02 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
[B]Kaspersky 7.0.0.125 2010.01.02 Trojan.Win32.Agent2.cmue[/B]
McAfee 5849 2010.01.02 -
[B]McAfee+Artemis 5849 2010.01.02 Artemis!A5E6CFF9235F[/B]
McAfee-GW-Edition 6.8.5 2010.01.01 -
Microsoft 1.5302 2010.01.02 -
NOD32 4738 2010.01.02 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
[B]Panda 10.0.2.2 2010.01.02 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.02 -
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.02 -
[B]Sunbelt 3.2.1858.2 2010.01.02 Trojan.Win32.Generic!SB.0[/B]
TheHacker 6.5.0.3.125 2010.01.02 -
[B]TrendMicro 9.120.0.1004 2010.01.02 WORM_PKOOBF.SMC[/B]
VBA32 3.12.12.1 2010.01.01 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.02 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/ac6499b30fa31ee5be7c0af2914bdb84832517b24eaee6d31350650a7f798b7f-1262460397[/url]
Файл XXX_Video_095747.exe получен 2010.01.02 19:32:04 (UTC)
Результат: 23/40 (57.50%)
[QUOTE]a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
[B]AntiVir 7.9.1.122 2009.12.31 TR/Dropper.Gen[/B]
Antiy-AVL 2.0.3.7 2009.12.31 -
[B]Authentium 5.2.0.5 2010.01.02 W32/FakeAlert.BI.gen!Eldorado[/B]
Avast 4.8.1351.0 2010.01.02 -
[B]AVG 8.5.0.430 2010.01.02 Downloader.Zlob.AQMZ[/B]
[B]BitDefender 7.2 2010.01.02 Trojan.Generic.IS.105645[/B]
[B]CAT-QuickHeal 10.00 2010.01.02 Trojan.Shutdowner.ecc[/B]
ClamAV 0.94.1 2010.01.01 -
Comodo 3449 2010.01.02 -
DrWeb 5.0.1.12222 2010.01.02 -
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
[B]F-Prot 4.5.1.85 2010.01.02 W32/FakeAlert.BI.gen!Eldorado[/B]
F-Secure 9.0.15370.0 2010.01.02 -
[B]Fortinet 4.0.14.0 2010.01.02 W32/FraudPack.AJKI!tr[/B]
[B]GData 19 2010.01.02 Trojan.Generic.IS.105645[/B]
[B]Ikarus T3.1.1.79.0 2009.12.31 Trojan.Win32.FakeAV[/B]
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
[B]Kaspersky 7.0.0.125 2010.01.02 Trojan-Downloader.Win32.NSIS.av[/B]
[B]McAfee 5849 2010.01.02 Generic FakeAlert!dh[/B]
[B]McAfee+Artemis 5849 2010.01.02 Artemis!E807C00D9B70[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Trojan.Dropper.Gen[/B]
Microsoft 1.5302 2010.01.02 -
[B]NOD32 4738 2010.01.02 probably a variant of Win32/Adware.PrivacyCenter.AB[/B]
[B]Norman 6.04.03 2009.12.31 W32/FakeAV.P!genr[/B]
nProtect 2009.1.8.0 2009.12.31 -
[B]Panda 10.0.2.2 2010.01.02 Trj/CI.A[/B]
[B]PCTools 7.0.3.5 2010.01.02 RogueAntiSpyware.Generic[/B]
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
[B]Sophos 4.49.0 2010.01.02 Mal/FakeAV-AA[/B]
[B]Sunbelt 3.2.1858.2 2010.01.02 Trojan.Win32.Generic!BT[/B]
[B]TheHacker 6.5.0.3.125 2010.01.02 Trojan/Shutdowner.ecc[/B]
[B]TrendMicro 9.120.0.1004 2010.01.02 Mal_FakeAV-12[/B]
[B]VBA32 3.12.12.1 2010.01.01 Trojan.Win32.Shutdowner.ecc[/B]
ViRobot 2009.12.31.2118 2009.12.31 -
[B]VirusBuster 5.0.21.0 2010.01.02 Trojan.FraudPack.SRL[/B][/QUOTE]
[url]http://www.virustotal.com/ru/analisis/441c91cfce44511f0a7be3ce3d181b78aa24944e6ccab0b7dac736d3fcf6cdbb-1262460724[/url]
-
File podaroknewyear.exe received on 2010.01.02 17:31:07 (UTC)
Result: 4/40 (10%)
[QUOTE]a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.02 -
Avast 4.8.1351.0 2010.01.02 -
AVG 8.5.0.430 2010.01.02 -
BitDefender 7.2 2010.01.02 -
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.01 -
[B]Comodo 3449 2010.01.02 Heur.Suspicious[/B]
DrWeb 5.0.1.12222 2010.01.02 -
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.02 -
F-Secure 9.0.15370.0 2010.01.02 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.02 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
[B]Kaspersky 7.0.0.125 2010.01.02 Trojan.Win32.VkHost.lh[/B]
McAfee 5849 2010.01.02 -
McAfee+Artemis 5849 2010.01.02 -
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Trojan.VKHost.LH[/B]
Microsoft 1.5302 2010.01.02 -
NOD32 4738 2010.01.02 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
[B]Panda 10.0.2.2 2010.01.02 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.02 -
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.02 -
Sunbelt 3.2.1858.2 2010.01.01 -
TheHacker 6.5.0.3.125 2010.01.02 -
TrendMicro 9.120.0.1004 2010.01.02 -
VBA32 3.12.12.1 2010.01.01 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.01 - [/QUOTE]
[url]http://www.virustotal.com/analisis/9b901b0318071e8be0705b3d6073201d38d1208f3939802cc6379eb994e9df6e-1262453467[/url]
-
Блокировщики с смс продолжают рулить.
Тянется отсюда: h__p://bestporn-video.com/xxx/download5/21/install_flash_player.exe
Итог:
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.02 -
Avast 4.8.1351.0 2010.01.02 -
AVG 8.5.0.430 2010.01.02 -
BitDefender 7.2 2010.01.02 Gen:Trojan.Heur.Hype.xqW@a0j@XOic
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.01 -
Comodo 3448 2010.01.02 -
DrWeb 5.0.1.12222 2010.01.02 -
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.02 -
F-Secure 9.0.15370.0 2010.01.02 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.02 Gen:Trojan.Heur.Hype.xqW@a0j@XOic
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.02 -
McAfee 5849 2010.01.02 -
McAfee+Artemis 5849 2010.01.02 -
McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.BehavesLike.Win32.Dropper.C
Microsoft 1.5302 2010.01.02 TrojanDropper:Win32/Procesemes.gen!A
NOD32 4737 2010.01.02 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
Panda 10.0.2.2 2010.01.02 -
PCTools 7.0.3.5 2010.01.02 -
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.02 -
Sunbelt 3.2.1858.2 2010.01.01 -
TheHacker 6.5.0.3.125 2010.01.02 -
TrendMicro 9.120.0.1004 2010.01.02 -
VBA32 3.12.12.1 2010.01.01 suspected of Win32.Trojan-Downloader
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.01 -[/QUOTE]
-
Очередной порнобанер, самоудалился на следующий день, а эта dll осталась в каталоге TEMP пользователя.
Файл toaw.dll получен 2010.01.03 04:10:51 (UTC)
Текущий статус: закончено
Результат: 5/40 (12.50%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.03 -
Avast 4.8.1351.0 2010.01.02 -
AVG 8.5.0.430 2010.01.02 -
BitDefender 7.2 2010.01.03 -
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.01 -
Comodo 3452 2010.01.03 -
DrWeb 5.0.1.12222 2010.01.03 -
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.03 -
F-Secure 9.0.15370.0 2010.01.02 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.03 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
[B]Kaspersky 7.0.0.125 2010.01.03 Trojan-Ransom.Win32.PinkBlocker.bf[/B]
McAfee 5849 2010.01.02 -
McAfee+Artemis 5849 2010.01.02 -
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.LooksLike.Trojan.Ransom.SMSer.Q[/B]
Microsoft 1.5302 2010.01.03 -
[B]NOD32 4738 2010.01.02 Win32/LockScreen.FI[/B]
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
[B]Panda 10.0.2.2 2010.01.02 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.03 -
Prevx 3.0 2010.01.03 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.03 -
Sunbelt 3.2.1858.2 2010.01.02 -
[B]TheHacker 6.5.0.3.129 2010.01.03 Trojan/PinkBlocker.bb[/B]
TrendMicro 9.120.0.1004 2010.01.03 -
VBA32 3.12.12.1 2010.01.01 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.02 -[/QUOTE]
Дополнительная информация
File size: 463872 bytes
MD5 : e56d412a3ff7c83ec7f37f67dfa92d6c
SHA1 : 1dbc452c6b5ee883e41d91392f6f23b17953727b
SHA256: 9fc3e1335514beb7a09c712af99e6b1e03424eb6f787837c00329d8a9c7d8750
PEInfo: PE Structure information
-
[QUOTE=gjf;550826]Блокировщики с смс продолжают рулить.
Тянется отсюда: h__p://bestporn-video.com/xxx/download5/21/install_flash_player.exe
Итог:[/QUOTE]
ага, теперь [B]свежая версия[/B].. :)
install_flash_player.exe
File size: 388608 bytes
MD5 : 904668de0386c27b188ae71e1be141cf
мой файлик (отчет чуть выше) был вытянут 31.12 тоже по этой ссылке :)
install_flash_player.exe
File size: 340992 bytes
MD5 : 57ac0446852e795b5a8e939c2b3f5dee
после установки появляется такой файл, цепляющийся к userinit:
[QUOTE] Файл kui1.tmp получен 2010.01.02 21:27:10 (UTC)
Результат: [COLOR=red]2[/COLOR]/40 (5%)
a-squared 4.5.0.46 2010.01.02 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.02 -
Avast 4.8.1351.0 2010.01.02 -
AVG 8.5.0.430 2010.01.02 -
BitDefender 7.2 2010.01.02 -
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.01 -
Comodo 3449 2010.01.02 -
DrWeb 5.0.1.12222 2010.01.02 -
eSafe 7.0.17.0 2009.12.31 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.02 -
F-Secure 9.0.15370.0 2010.01.02 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.02 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.02 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.02 -
McAfee 5849 2010.01.02 -
McAfee+Artemis 5849 2010.01.02 -
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.BehavesLike.Win32.Suspicious.I[/B]
Microsoft 1.5302 2010.01.02 -
NOD32 4738 2010.01.02 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2009.12.31 -
Panda 10.0.2.2 2010.01.02 -
PCTools 7.0.3.5 2010.01.02 -
Prevx 3.0 2010.01.02 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.02 -
Sunbelt 3.2.1858.2 2010.01.02 -
TheHacker 6.5.0.3.125 2010.01.02 -
TrendMicro 9.120.0.1004 2010.01.02 -
[B]VBA32 3.12.12.1 2010.01.01 suspected of Win32.Trojan-Downloader[/B]
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.02 -[/QUOTE]
кстати, забавное лицензионное соглашение у этого "вируса", вылазящее при установке:
[QUOTE]Oплaтa пpoизвoдитcя пyтeм oтпpaвки двyx cмc cooбщeний нa нoмep 5155. Cтoимocть oднoгo cмc cooбщeния нa нoмep 5155 cocтoвляeт oт 30 дo 50 гpн., тoчнyю cтoимocть мoжнo yзнaть y oпepaтopa. Teкcт для oтпpaвки пepвoгo cмc cooбщeния yкaзaн в yвeдoмлeнии. Teкcт для oтпpaвки втopoгo cмc cooбщeния бyдeт yкaзaн в oтвeтнoм cмc
cooбщeнии к пepвoмy cмc cooбщeнию.
Пoльзoвaтeль пoдтвepждaeт cвoe бeзoгoвopoчнoe coглacиe co вceми ycлoвиями, излoжeнными в нacтoящeм Пoльзoвaтeльcкoм coглaшeни c мoмeнтa нaжaтия кнoпки "Пpинимaю". .
B cлyчae ecли кaчecтвo oкaзывaeмoй Baм ycлyги Bac нe ycтpaивaeт, Bы мoжeтe oткaзaтьcя oт нee пo тeлeфoнy 0 800 501 371.[/QUOTE]
[size="1"][color="#666686"][B][I]Добавлено через 8 часов 45 минут[/I][/B][/color][/size]
и опять новая модификация
Файл install_flash_player3.exe получен 2010.01.03 17:41:38 (UTC)
Результат: 7/39 (17.95%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.03 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.03 -
Avast 4.8.1351.0 2010.01.03 -
AVG 8.5.0.430 2010.01.03 -
[B]BitDefender 7.2 2010.01.03 Gen:Trojan.Heur.Hype.vqW@aWitPOkc
CAT-QuickHeal 10.00 2010.01.02 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.03 -
Comodo 3457 2010.01.03 -
DrWeb 5.0.1.12222 2010.01.03 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.03 -
[B]F-Secure 9.0.15370.0 2010.01.03 Gen:Trojan.Heur.Hype.vqW@aWitPOkc[/B]
Fortinet 4.0.14.0 2010.01.02 -
[B]GData 19 2010.01.03 Gen:Trojan.Heur.Hype.vqW@aWitPOkc[/B]
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.03 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.03 -
McAfee 5850 2010.01.03 -
McAfee+Artemis 5850 2010.01.03 -
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.LooksLike.Win32.Dropper.C
Microsoft 1.5302 2010.01.03 TrojanDropper:Win32/Procesemes.gen!A[/B]
NOD32 4740 2010.01.03 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2010.01.03 -
Panda 10.0.2.2 2010.01.03 -
PCTools 7.0.3.5 2010.01.03 -
Prevx 3.0 2010.01.03 -
Rising 22.28.03.04 2009.12.31 -
Sophos 4.49.0 2010.01.03 -
Sunbelt 3.2.1858.2 2010.01.03 -
TheHacker 6.5.0.3.129 2010.01.03 -
TrendMicro 9.120.0.1004 2010.01.03 -
[B]VBA32 3.12.12.1 2010.01.01 suspected of Win32.Trojan-Downloader[/B]
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.03 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/d58e1e5e2613f7a4e017a95665efcf54cf00538ec3bfbe58fa3280523a62f74b-1262540498[/url]
-
Файл crack.45155.exe получен 2010.01.03 18:07:46 (UTC)
Результат: 4/39 (10.26%)
[QUOTE]a-squared 4.5.0.46 2010.01.03 -
AhnLab-V3 5.0.0.2 2010.01.02 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.03 -
Avast 4.8.1351.0 2010.01.03 -
AVG 8.5.0.430 2010.01.03 -
BitDefender 7.2 2010.01.03 -
[B]CAT-QuickHeal 10.00 2010.01.02 Win32.Packed.Krap.ag.5[/B]
ClamAV 0.94.1 2010.01.03 -
Comodo 3457 2010.01.03 -
DrWeb 5.0.1.12222 2010.01.03 -
eSafe 7.0.17.0 2010.01.03 -
[B]eTrust-Vet 35.1.7210 2010.01.01 Win32/Warduncrypt!packed[/B]
F-Prot 4.5.1.85 2010.01.03 -
F-Secure 9.0.15370.0 2010.01.03 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.03 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.03 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.03 -
McAfee+Artemis 5850 2010.01.03 -
McAfee-GW-Edition 6.8.5 2010.01.01 -
Microsoft 1.5302 2010.01.03 -
[B]NOD32 4740 2010.01.03 a variant of Win32/Kryptik.BJX[/B]
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2010.01.03 -
Panda 10.0.2.2 2010.01.03 -
PCTools 7.0.3.5 2010.01.03 -
Prevx 3.0 2010.01.03 -
Rising 22.28.03.04 2009.12.31 -
[B]Sophos 4.49.0 2010.01.03 Mal/Krap-H[/B]
Sunbelt 3.2.1858.2 2010.01.03 -
TheHacker 6.5.0.3.129 2010.01.03 -
TrendMicro 9.120.0.1004 2010.01.03 -
VBA32 3.12.12.1 2010.01.01 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.03 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/fc527d29798c28ad698da48c22c214a812f3a7d605ec5aa3dcb206b442fe298f-1262542066[/url]
Файл install.exe получен 2010.01.03 18:11:21 (UTC)
Результат: 9/40 (22.50%)
[QUOTE]a-squared 4.5.0.46 2010.01.03 -
AhnLab-V3 5.0.0.2 2010.01.02 -
[B]AntiVir 7.9.1.122 2009.12.31 Worm/Koobface.bpy[/B]
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.03 -
Avast 4.8.1351.0 2010.01.03 -
AVG 8.5.0.430 2010.01.03 -
BitDefender 7.2 2010.01.03 -
CAT-QuickHeal 10.00 2010.01.02 -
ClamAV 0.94.1 2010.01.03 -
[B]Comodo 3457 2010.01.03 ApplicUnsaf.Win32.FraudTool.ST.~CRS[/B]
DrWeb 5.0.1.12222 2010.01.03 -
eSafe 7.0.17.0 2010.01.03 -
[B]eTrust-Vet 35.1.7210 2010.01.01 Win32/Fraud!packed[/B]
F-Prot 4.5.1.85 2010.01.03 -
F-Secure 9.0.15370.0 2010.01.03 -
Fortinet 4.0.14.0 2010.01.02 -
GData 19 2010.01.03 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.03 -
K7AntiVirus 7.10.936 2010.01.02 -
Kaspersky 7.0.0.125 2010.01.03 -
[B]McAfee 5850 2010.01.03 FakeAlert-KW[/B]
[B]McAfee+Artemis 5850 2010.01.03 FakeAlert-KW[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.LooksLike.Worm.Koobface.H[/B]
Microsoft 1.5302 2010.01.03 -
NOD32 4740 2010.01.03 -
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2010.01.03 -
Panda 10.0.2.2 2010.01.03 -
[B]PCTools 7.0.3.5 2010.01.03 RogueAntiSpyware.SecurityTool[/B]
Prevx 3.0 2010.01.03 -
[B]Rising 22.28.03.04 2009.12.31 Packer.Win32.Agent.bb[/B]
Sophos 4.49.0 2010.01.03 -
[B]Sunbelt 3.2.1858.2 2010.01.03 Trojan.Win32.Winwebsec.Gen (v)[/B]
TheHacker 6.5.0.3.129 2010.01.03 -
TrendMicro 9.120.0.1004 2010.01.03 -
VBA32 3.12.12.1 2010.01.01 -
ViRobot 2009.12.31.2118 2009.12.31 -
VirusBuster 5.0.21.0 2010.01.03 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/38f53f4eafc6a0ffd7abe8060b3a8135f9ed6e2e0b60c0800a60c687d2bd2c01-1262542281[/url]
[size="1"][color="#666686"][B][I]Добавлено через 1 час 30 минут[/I][/B][/color][/size]
Файл photo7.scr получен 2010.01.03 19:21:58 (UTC)
Результат: 21/39 (53.85%)
[QUOTE][B]a-squared 4.5.0.46 2010.01.03 Trojan-Dropper.Win32.Smser!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.02 -
[B]AntiVir 7.9.1.122 2009.12.31 TR/Drop.SMSer.HS[/B]
Antiy-AVL 2.0.3.7 2009.12.31 -
Authentium 5.2.0.5 2010.01.03 -
Avast 4.8.1351.0 2010.01.03 -
[B]AVG 8.5.0.430 2010.01.03 SHeur2.CAQK[/B]
BitDefender 7.2 2010.01.03 -
[B]CAT-QuickHeal 10.00 2010.01.02 Worm.Rimecud.A[/B]
ClamAV 0.94.1 2010.01.03 -
[B]Comodo 3457 2010.01.03 TrojWare.Win32.PSW.LdPinch.Gen[/B]
[B]DrWeb 5.0.1.12222 2010.01.03 Trojan.Packed.688[/B]
eSafe 7.0.17.0 2010.01.03 -
eTrust-Vet 35.1.7210 2010.01.01 -
F-Prot 4.5.1.85 2010.01.03 -
[B]Fortinet 4.0.14.0 2010.01.02 W32/SMSer.HS!tr[/B]
GData 19 2010.01.03 -
[B]Ikarus T3.1.1.79.0 2009.12.31 Trojan-Dropper.Win32.Smser[/B]
[B]Jiangmin 13.0.900 2010.01.03 TrojanDropper.Smser.da[/B]
[B]K7AntiVirus 7.10.936 2010.01.02 Trojan-Dropper.Win32.Smser.hs[/B]
[B]Kaspersky 7.0.0.125 2010.01.03 Trojan-Dropper.Win32.Smser.hs[/B]
McAfee 5850 2010.01.03 -
[B]McAfee+Artemis 5850 2010.01.03 Artemis!D8C0041D7545[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.01 Heuristic.LooksLike.Win32.Suspicious.H!85[/B]
[B]Microsoft 1.5302 2010.01.03 Backdoor:Win32/Bifrose.DN[/B]
[B]NOD32 4740 2010.01.03 Win32/TrojanDropper.Agent.OML[/B]
Norman 6.04.03 2009.12.31 -
nProtect 2009.1.8.0 2010.01.03 -
[B]Panda 10.0.2.2 2010.01.03 Bck/Hupigon.AZG[/B]
PCTools 7.0.3.5 2010.01.03 -
Prevx 3.0 2010.01.03 -
[B]Rising 22.28.03.04 2009.12.31 Trojan.Win32.Generic.51F44879[/B]
[B]Sophos 4.49.0 2010.01.03 Mal/EncPk-MX[/B]
[B]Sunbelt 3.2.1858.2 2010.01.03 Worm.Win32.Rimecud.a (v)[/B]
TheHacker 6.5.0.3.129 2010.01.03 -
TrendMicro 9.120.0.1004 2010.01.03 -
[B]VBA32 3.12.12.1 2010.01.01 Trojan-Dropper.Win32.Smser.hs[/B]
ViRobot 2009.12.31.2118 2009.12.31 -
[B]VirusBuster 5.0.21.0 2010.01.03 Trojan.DR.Smser.TG[/QUOTE][/B]
[url]http://www.virustotal.com/ru/analisis/1c42d2d26eddc327630263e7908bff09cf6474d25ad070d95ae8b3ad4c307da3-1262546518[/url]
Первый раз я проверил этот файл 26.12.2009 результат был чтото 16 из 39, создан файл 21.12.2009, нынче, через 8 дней - 21 из 39. Отличная оперативность!
Вот и доверяй после такого антивирусам.
-
File [B]plugin.exe[/B] received on 2010.01.05 03:32:34 (UTC)
[QUOTE]Antivirus Version Last Update Result
[B]a-squared 4.5.0.46 2010.01.05 Trojan-Downloader.Win32.Piker!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.04 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2010.01.04 -
Authentium 5.2.0.5 2010.01.05 -
Avast 4.8.1351.0 2010.01.04 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.05 -
[B]CAT-QuickHeal 10.00 2010.01.04 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.05 -
Comodo 3469 2010.01.05 -
DrWeb 5.0.1.12222 2010.01.05 -
eSafe 7.0.17.0 2010.01.04 -
eTrust-Vet 35.1.7215 2010.01.04 -
F-Prot 4.5.1.85 2010.01.04 -
[B]F-Secure 9.0.15370.0 2010.01.05 Suspicious:W32/Malware!Gemini[/B]
Fortinet 4.0.14.0 2010.01.05 -
GData 19 2010.01.05 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.04 -
K7AntiVirus 7.10.937 2010.01.04 -
[B]Kaspersky 7.0.0.125 2010.01.05 Trojan-Downloader.Win32.Piker.bcm[/B]
McAfee 5851 2010.01.04 -
[B]McAfee+Artemis 5851 2010.01.04 Artemis!9E9758B22DB1
McAfee-GW-Edition 6.8.5 2010.01.05 Heuristic.LooksLike.Ad-Spyware.Adware.I[/B]
Microsoft 1.5302 2010.01.05 -
NOD32 4743 2010.01.04 -
[B]Norman 6.04.03 2010.01.04 W32/Obfuscated.EA[/B]
nProtect 2009.1.8.0 2010.01.04 -
Panda 10.0.2.2 2010.01.04 -
PCTools 7.0.3.5 2010.01.05 -
Prevx 3.0 2010.01.05 -
Rising 22.29.01.01 2010.01.05 -
Sophos 4.49.0 2010.01.05 -
[B]Sunbelt 3.2.1858.2 2010.01.05 Trojan.Win32.Bredolab.Gen.1 (v)
Symantec 20091.2.0.41 2010.01.05 Suspicious.Graybird.1[/B]
TheHacker 6.5.0.3.131 2010.01.04 -
TrendMicro 9.120.0.1004 2010.01.04 -
VBA32 3.12.12.1 2010.01.04 -
ViRobot 2010.1.4.2120 2010.01.04 -
VirusBuster 5.0.21.0 2010.01.04 -[/QUOTE]
Additional information
File size: 347648 bytes
MD5...: 9e9758b22db1a1c7412118347ddf490c
SHA1..: 521f671d5f1f073f92a2bef4bbac1c773c3a12b4
SHA256: a92cba05f2ed70b68da74a8197bffaa33e1ff822962075dcf173dcb6cfd97788
ssdeep: 6144:VGSaZRLVBdJavy68uDeGfM19ogji1qHaLnksjV+tfTOISkyHWj1q:9URLaq
uNU1TicHbsjV0LOFm
PEiD..: -
PEInfo: PE Structure information
Файл [B]Install_Flash-Player_build2x16.ex[/B] получен 2010.01.05 04:51:31 (UTC)
Результат: 3/41 (7.32%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.05 -
AhnLab-V3 5.0.0.2 2010.01.04 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2010.01.04 -
Authentium 5.2.0.5 2010.01.05 -
Avast 4.8.1351.0 2010.01.04 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.05 -
CAT-QuickHeal 10.00 2010.01.05 -
ClamAV 0.94.1 2010.01.05 -
Comodo 3469 2010.01.05 -
DrWeb 5.0.1.12222 2010.01.05 -
eSafe 7.0.17.0 2010.01.04 -
eTrust-Vet 35.1.7215 2010.01.04 -
F-Prot 4.5.1.85 2010.01.04 -
F-Secure 9.0.15370.0 2010.01.05 -
Fortinet 4.0.14.0 2010.01.05 -
GData 19 2010.01.05 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.04 -
K7AntiVirus 7.10.937 2010.01.04 -
[B]Kaspersky 7.0.0.125 2010.01.05 Trojan-Ransom.Win32.PinkBlocker.bu[/B]
McAfee 5851 2010.01.04 -
McAfee+Artemis 5851 2010.01.04 -
McAfee-GW-Edition 6.8.5 2010.01.05 -
Microsoft 1.5302 2010.01.05 -
[B]NOD32 4743 2010.01.04 Win32/LockScreen.FO[/B]
Norman 6.04.03 2010.01.04 -
nProtect 2009.1.8.0 2010.01.04 -
[B]Panda 10.0.2.2 2010.01.04 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.05 -
Prevx 3.0 2010.01.05 -
Rising 22.29.01.01 2010.01.05 -
Sophos 4.49.0 2010.01.05 -
Sunbelt 3.2.1858.2 2010.01.05 -
Symantec 20091.2.0.41 2010.01.05 -
TheHacker 6.5.0.3.131 2010.01.04 -
TrendMicro 9.120.0.1004 2010.01.05 -
VBA32 3.12.12.1 2010.01.05 -
ViRobot 2010.1.5.2121 2010.01.05 -
VirusBuster 5.0.21.0 2010.01.04 -[/QUOTE]
Дополнительная информация
File size: 168448 bytes
MD5...: cb093544c597c59a7cd393e846125a47
SHA1..: 03be6f3041388822d6a34065e112852df2fbae82
SHA256: 01ed7aff223586987769ea4182641982ac6e72c0d51910e3edb15b2207d14274
ssdeep: 3072:uKoUyyqywcdvy6PuoQ922oKFt2JKsKMAiumH+UsO1eHC45:MUU4vvPu2Xst
WCmyO1Q
PEiD..: -
Файл [B]avz00001.dta[/B] получен 2010.01.05 04:59:40 (UTC)
Результат: 2/41 (4.88%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.05 -
AhnLab-V3 5.0.0.2 2010.01.04 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2010.01.04 -
Authentium 5.2.0.5 2010.01.05 -
Avast 4.8.1351.0 2010.01.04 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.05 -
CAT-QuickHeal 10.00 2010.01.05 -
ClamAV 0.94.1 2010.01.05 -
Comodo 3469 2010.01.05 -
DrWeb 5.0.1.12222 2010.01.05 -
eSafe 7.0.17.0 2010.01.04 -
eTrust-Vet 35.1.7215 2010.01.04 -
F-Prot 4.5.1.85 2010.01.04 -
F-Secure 9.0.15370.0 2010.01.05 -
Fortinet 4.0.14.0 2010.01.05 -
GData 19 2010.01.05 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.04 -
K7AntiVirus 7.10.937 2010.01.04 -
Kaspersky 7.0.0.125 2010.01.05 -
McAfee 5851 2010.01.04 -
McAfee+Artemis 5851 2010.01.04 -
[B]McAfee-GW-Edition 6.8.5 2010.01.05 Heuristic.BehavesLike.Win32.Suspicious.H[/B]
Microsoft 1.5302 2010.01.05 -
[B]NOD32 4743 2010.01.04 Win32/LockScreen.FO[/B]
Norman 6.04.03 2010.01.04 -
nProtect 2009.1.8.0 2010.01.04 -
Panda 10.0.2.2 2010.01.04 -
PCTools 7.0.3.5 2010.01.05 -
Prevx 3.0 2010.01.05 -
Rising 22.29.01.01 2010.01.05 -
Sophos 4.49.0 2010.01.05 -
Sunbelt 3.2.1858.2 2010.01.05 -
Symantec 20091.2.0.41 2010.01.05 -
TheHacker 6.5.0.3.132 2010.01.05 -
TrendMicro 9.120.0.1004 2010.01.05 -
VBA32 3.12.12.1 2010.01.05 -
ViRobot 2010.1.5.2121 2010.01.05 -
VirusBuster 5.0.21.0 2010.01.04 -[/QUOTE]
Дополнительная информация
File size: 46080 bytes
MD5...: 79abb8fc6a0e78fc72d0b6bc1abdceab
SHA1..: 3ab4b77bd93bf5aa718c21ea7113c8c1af82f881
SHA256: 41b39b35160266c36eda08b6d7816da1d90760730c371ecbe86718e65a785f93
ssdeep: 768:wpuiG6ygePWzsxThzNj7LioD6fPPH6l1vA952Af:wsyQvzNnim6fPYG522
PEiD..: -
PEInfo: PE Structure information
Файл[B] avz00002.dta[/B] получен 2010.01.05 05:04:48 (UTC)
Результат: 6/41 (14.64%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.46 2010.01.05 -
AhnLab-V3 5.0.0.2 2010.01.04 -
AntiVir 7.9.1.122 2009.12.31 -
Antiy-AVL 2.0.3.7 2010.01.04 -
Authentium 5.2.0.5 2010.01.05 -
Avast 4.8.1351.0 2010.01.04 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.05 -
[B]CAT-QuickHeal 10.00 2010.01.05 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.05 -
Comodo 3469 2010.01.05 -
[B]DrWeb 5.0.1.12222 2010.01.05 Trojan.Packed.613[/B]
eSafe 7.0.17.0 2010.01.04 -
eTrust-Vet 35.1.7215 2010.01.04 -
F-Prot 4.5.1.85 2010.01.04 -
F-Secure 9.0.15370.0 2010.01.05 -
Fortinet 4.0.14.0 2010.01.05 -
GData 19 2010.01.05 -
Ikarus T3.1.1.79.0 2009.12.31 -
Jiangmin 13.0.900 2010.01.04 -
K7AntiVirus 7.10.937 2010.01.04 -
[B]Kaspersky 7.0.0.125 2010.01.05 Backdoor.Win32.Buterat.dh[/B]
McAfee 5851 2010.01.04 -
McAfee+Artemis 5851 2010.01.04 -
[B]McAfee-GW-Edition 6.8.5 2010.01.05 Heuristic.LooksLike.Win32.Suspicious.H[/B]
Microsoft 1.5302 2010.01.05 -
NOD32 4743 2010.01.04 -
Norman 6.04.03 2010.01.04 -
nProtect 2009.1.8.0 2010.01.04 -
[B]Panda 10.0.2.2 2010.01.04 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.05 -
Prevx 3.0 2010.01.05 -
Rising 22.29.01.01 2010.01.05 -
Sophos 4.49.0 2010.01.05 -
[B]Sunbelt 3.2.1858.2 2010.01.05 Trojan-Spy.Win32.Zbot.gen (v)[/B]
Symantec 20091.2.0.41 2010.01.05 -
TheHacker 6.5.0.3.132 2010.01.05 -
TrendMicro 9.120.0.1004 2010.01.05 -
VBA32 3.12.12.1 2010.01.05 -
ViRobot 2010.1.5.2121 2010.01.05 -
VirusBuster 5.0.21.0 2010.01.04 -[/QUOTE]
Дополнительная информация
File size: 62464 bytes
MD5...: d035ea0eb41a14d238a7fa7dda134023
SHA1..: 5b361ecacef1ac5f893a4cd3c282adf96e72946b
SHA256: e7296b188437bfb85db823908aacfad8bbeab935c6c7dea52d431b07733e05d9
ssdeep: 768:tjSpg+WrAGap3aUV2lXi9frAvL+hoYSau396+AXbBpq97altWmCr8LqVC:op
g4GknlMvL2u30+AXbBpq92DWmC4Ok
-
Файл das86C.tmp получен 2009.12.21 11:08:50 (UTC)
Текущий статус: закончено
Результат: [COLOR=red]8[/COLOR]/41 (19.51%)
[QUOTE]a-squared 4.5.0.43 2009.12.21 -
AhnLab-V3 5.0.0.2 2009.12.21 -
AntiVir 7.9.1.114 2009.12.21 -
Antiy-AVL 2.0.3.7 2009.12.18 -
Authentium 5.2.0.5 2009.12.02 -
Avast 4.8.1351.0 2009.12.20 -
[B]AVG 8.5.0.427 2009.12.20 SHeur2.CAHH[/B]
BitDefender 7.2 2009.12.21 -
CAT-QuickHeal 10.00 2009.12.21 -
ClamAV 0.94.1 2009.12.21 -
[B]Comodo 3318 2009.12.21 Heur.Suspicious[/B]
DrWeb 5.0.0.12182 2009.12.21 -
eSafe 7.0.17.0 2009.12.20 -
eTrust-Vet 35.1.7187 2009.12.21 -
F-Prot 4.5.1.85 2009.12.20 -
F-Secure 9.0.15370.0 2009.12.21 -
Fortinet 4.0.14.0 2009.12.20 -
GData 19 2009.12.21 -
Ikarus T3.1.1.79.0 2009.12.21 -
Jiangmin 13.0.900 2009.12.21 -
K7AntiVirus 7.10.923 2009.12.17 -
[B]Kaspersky 7.0.0.125 2009.12.21 Trojan-Ransom.Win32.PogBlock.nq[/B]
McAfee 5838 2009.12.20 -
McAfee+Artemis 5838 2009.12.20 -
[B]McAfee-GW-Edition 6.8.5 2009.12.21 Heuristic.BehavesLike.Win32.Suspicious.I[/B]
Microsoft 1.5302 2009.12.21 -
[B]NOD32 4705 2009.12.21 a variant of Win32/LockScreen.DU[/B]
[B]Norman 6.04.03 2009.12.21 W32/Malware[/B]
nProtect 2009.1.8.0 2009.12.21 -
[B]Panda 10.0.2.2 2009.12.15 Suspicious file[/B]
PCTools 7.0.3.5 2009.12.21 -
Prevx 3.0 2009.12.21 -
Rising 22.27.00.04 2009.12.21 -
Sophos 4.49.0 2009.12.21 -
[B]Sunbelt 3.2.1858.2 2009.12.20 Trojan.Win32.Obfuscated.Gen (v)[/B]
Symantec 1.4.4.12 2009.12.21 -
TheHacker 6.5.0.3.101 2009.12.21 -
TrendMicro 9.120.0.1004 2009.12.21 -
VBA32 3.12.12.0 2009.12.19 -
ViRobot 2009.12.21.2099 2009.12.21 -
VirusBuster 5.0.21.0 2009.12.20 -[/QUOTE]Дополнительная информация
File size: 331776 bytes
MD5 : 9143813ebbd0db4a12e6d4ae413fcfd7
SHA1 : 73e4283e9bba882c2a3057e156786cdd22b6f8d7
SHA256: cd8c30a0c50c3a565df5a82bf3dc2c7f5efcd3cce0a88354c43d1c2c1bc65164
-
Файл install.exe получен 2010.01.07 19:45:02 (UTC)
Результат: 14/41 (34.15%)
[QUOTE][B]a-squared 4.5.0.48 2010.01.07 Trojan.Win32.FakeAV!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.07 -
AntiVir 7.9.1.130 2010.01.07 -
Antiy-AVL 2.0.3.7 2010.01.06 -
Authentium 5.2.0.5 2010.01.07 -
Avast 4.8.1351.0 2010.01.07 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.07 -
CAT-QuickHeal 10.00 2010.01.07 -
ClamAV 0.94.1 2010.01.07 -
[B]Comodo 3502 2010.01.07 ApplicUnsaf.Win32.FraudTool.ST.~CRS[/B]
DrWeb 5.0.1.12222 2010.01.07 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7223 2010.01.07 -
F-Prot 4.5.1.85 2010.01.07 -
F-Secure 9.0.15370.0 2010.01.07 -
Fortinet 4.0.14.0 2010.01.07 -
GData 19 2010.01.07 -
[B]Ikarus T3.1.1.80.0 2010.01.07 Trojan.Win32.FakeAV[/B]
Jiangmin 13.0.900 2010.01.07 -
K7AntiVirus 7.10.941 2010.01.07 -
[B]Kaspersky 7.0.0.125 2010.01.07 Packed.Win32.Krap.ai
McAfee 5854 2010.01.07 FakeAlert-KW[/B]
[B]McAfee+Artemis 5854 2010.01.07 FakeAlert-KW[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.07 Heuristic.LooksLike.Worm.Koobface.H[/B]
[B]Microsoft 1.5302 2010.01.07 Trojan:Win32/Winwebsec[/B]
[B]NOD32 4751 2010.01.07 a variant of Win32/Kryptik.BRD[/B]
Norman 6.04.03 2010.01.07 -
nProtect 2009.1.8.0 2010.01.07 -
[B]Panda 10.0.2.2 2010.01.07 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.07 -
Prevx 3.0 2010.01.07 -
[B]Rising 22.29.03.04 2010.01.07 Packer.Win32.Agent.bb[/B]
Sophos 4.49.0 2010.01.07 -
[B]Sunbelt 3.2.1858.2 2010.01.07 Trojan.Win32.Winwebsec.Gen (v)[/B]
[B]Symantec 20091.2.0.41 2010.01.07 Trojan.FakeAV!gen13[/B]
TheHacker 6.5.0.3.138 2010.01.07 -
TrendMicro 9.120.0.1004 2010.01.07 -
[B]VBA32 3.12.12.1 2010.01.06 BScope.Trojan.Waledac[/B]
ViRobot 2010.1.7.2126 2010.01.07 -
VirusBuster 5.0.21.0 2010.01.07 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/498fe79afb0baed53e198168b1e29c63a609925829700b7e2a712094d0f65448-1262893502[/url]
Файл setup.exe получен 2010.01.07 19:49:57 (UTC)
Результат: 10/41 (24.39%)
[QUOTE]a-squared 4.5.0.48 2010.01.07 -
AhnLab-V3 5.0.0.2 2010.01.07 -
AntiVir 7.9.1.130 2010.01.07 -
Antiy-AVL 2.0.3.7 2010.01.06 -
Authentium 5.2.0.5 2010.01.07 -
Avast 4.8.1351.0 2010.01.07 -
AVG 8.5.0.430 2010.01.04 -
[B]BitDefender 7.2 2010.01.07 Gen:Trojan.Heur.wm0@HScH1xkk[/B]
[B]CAT-QuickHeal 10.00 2010.01.07 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.07 -
Comodo 3502 2010.01.07 -
DrWeb 5.0.1.12222 2010.01.07 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7223 2010.01.07 -
F-Prot 4.5.1.85 2010.01.07 -
[B]F-Secure 9.0.15370.0 2010.01.07 Gen:Trojan.Heur.wm0@HScH1xkk[/B]
Fortinet 4.0.14.0 2010.01.07 -
[B]GData 19 2010.01.07 Gen:Trojan.Heur.wm0@HScH1xkk[/B]
Ikarus T3.1.1.80.0 2010.01.07 -
Jiangmin 13.0.900 2010.01.07 -
K7AntiVirus 7.10.941 2010.01.07 -
Kaspersky 7.0.0.125 2010.01.07 -
[B]McAfee 5854 2010.01.07 FakeAlert-JM[/B]
[B]McAfee+Artemis 5854 2010.01.07 FakeAlert-JM[/B]
McAfee-GW-Edition 6.8.5 2010.01.07 -
[B]Microsoft 1.5302 2010.01.07 Trojan:Win32/FakeSmoke[/B]
NOD32 4751 2010.01.07 -
Norman 6.04.03 2010.01.07 -
nProtect 2009.1.8.0 2010.01.07 -
Panda 10.0.2.2 2010.01.07 Trj/CI.A
PCTools 7.0.3.5 2010.01.07 -
[B]Prevx 3.0 2010.01.07 Medium Risk Malware[/B]
Rising 22.29.03.04 2010.01.07 -
[B]Sophos 4.49.0 2010.01.07 Sus/UnkPack-C[/B]
Sunbelt 3.2.1858.2 2010.01.07 -
Symantec 20091.2.0.41 2010.01.07 -
TheHacker 6.5.0.3.138 2010.01.07 -
TrendMicro 9.120.0.1004 2010.01.07 -
VBA32 3.12.12.1 2010.01.06 -
ViRobot 2010.1.7.2126 2010.01.07 -
VirusBuster 5.0.21.0 2010.01.07 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/8d6054550fc711e277f370793d486faa45fd199fa676eb9b826639b25ae18a99-1262893797[/url]
-
File foto.jar received on 2010.01.07 21:44:59 (UTC)
Result: 7/41 (17.08%)
[QUOTE]a-squared 4.5.0.48 2010.01.07 -
AhnLab-V3 5.0.0.2 2010.01.07 -
AntiVir 7.9.1.130 2010.01.07 -
[B]Antiy-AVL 2.0.3.7 2010.01.06 Trojan/J2ME.Jifake[/B]
Authentium 5.2.0.5 2010.01.07 -
Avast 4.8.1351.0 2010.01.07 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.07 -
CAT-QuickHeal 10.00 2010.01.07 -
ClamAV 0.94.1 2010.01.07 -
[B]Comodo 3504 2010.01.07 TrojWare.J2ME.SMS.Jifake.g[/B]
[B]DrWeb 5.0.1.12222 2010.01.07 Java.SMSSend.117[/B]
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7223 2010.01.07 -
F-Prot 4.5.1.85 2010.01.07 -
F-Secure 9.0.15370.0 2010.01.07 -
Fortinet 4.0.14.0 2010.01.07 -
GData 19 2010.01.07 -
[B]Ikarus T3.1.1.80.0 2010.01.07 Trojan-SMS[/B]
Jiangmin 13.0.900 2010.01.07 -
K7AntiVirus 7.10.941 2010.01.07 -
[B]Kaspersky 7.0.0.125 2010.01.07 Trojan-SMS.J2ME.Jifake.g[/B]
McAfee 5854 2010.01.07 -
McAfee+Artemis 5854 2010.01.07 -
McAfee-GW-Edition 6.8.5 2010.01.07 -
Microsoft 1.5302 2010.01.07 -
[B]NOD32 4752 2010.01.07 J2ME/TrojanSMS.Jifake.G[/B]
Norman 6.04.03 2010.01.07 -
nProtect 2009.1.8.0 2010.01.07 -
Panda 10.0.2.2 2010.01.07 -
PCTools 7.0.3.5 2010.01.07 -
Prevx 3.0 2010.01.07 -
Rising 22.29.03.04 2010.01.07 -
Sophos 4.49.0 2010.01.07 -
Sunbelt 3.2.1858.2 2010.01.07 -
Symantec 20091.2.0.41 2010.01.07 -
TheHacker 6.5.0.3.138 2010.01.07 -
TrendMicro 9.120.0.1004 2010.01.07 -
[B]VBA32 3.12.12.1 2010.01.06 Trojan-SMS.J2ME.Jifake.g[/B]
ViRobot 2010.1.7.2126 2010.01.07 -
VirusBuster 5.0.21.0 2010.01.07 - [/QUOTE]
[url]http://www.virustotal.com/analisis/b7c497446dd261ac13ee2b3016252ea875239f89c742e0e177577103512f5803-1262900699[/url]
-
File [B]Foto14526.exe[/B] received on 2010.01.08 14:55:59 (UTC)
Result: [COLOR="Red"][B]9[/B][/COLOR]/41 (21.96%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
a-squared 4.5.0.48 2010.01.08 -
[B]AhnLab-V3 5.0.0.2 2010.01.08 [B]Win-Trojan/Agent.609280.G[/B][/B]
AntiVir 7.9.1.130 2010.01.08 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.08 -
Avast 4.8.1351.0 2010.01.07 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.08 -
CAT-QuickHeal 10.00 2010.01.08 -
ClamAV 0.94.1 2010.01.08 -
[B]Comodo 3513 2010.01.08 [B]Heur.Suspicious[/B][/B]
[B]DrWeb 5.0.1.12222 2010.01.08 [B]Trojan.Packed.688[/B][/B]
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7225 2010.01.08 -
F-Prot 4.5.1.85 2010.01.07 -
F-Secure 9.0.15370.0 2010.01.08 -
[B]Fortinet 4.0.14.0 2010.01.08 [B]W32/Agent.DEUH!tr[/B][/B]
GData 19 2010.01.08 -
Ikarus T3.1.1.80.0 2010.01.08 -
Jiangmin 13.0.900 2010.01.08 -
K7AntiVirus 7.10.942 2010.01.08 -
[B]Kaspersky 7.0.0.125 2010.01.08 [B]Trojan.Win32.Agent.deuh[/B][/B]
McAfee 5854 2010.01.07 -
[B]McAfee+Artemis 5854 2010.01.07 [B]Artemis!2A5D7DAA0C33[/B][/B]
McAfee-GW-Edition 6.8.5 2010.01.08 -
Microsoft 1.5302 2010.01.08 -
NOD32 4754 2010.01.08 -
Norman 6.04.03 2010.01.07 -
nProtect 2009.1.8.0 2010.01.08 -
Panda 10.0.2.2 2010.01.08 -
PCTools 7.0.3.5 2010.01.08 -
Prevx 3.0 2010.01.08 -
Rising 22.29.04.04 2010.01.08 -
Sophos 4.49.0 2010.01.08 -
[B]Sunbelt 3.2.1858.2 2010.01.08 [B]Trojan.Win32.Generic!BT[/B][/B]
Symantec 20091.2.0.41 2010.01.08 -
[B]TheHacker 6.5.0.3.140 2010.01.08 [B]Trojan/Agent.deuh[/B][/B]
TrendMicro 9.120.0.1004 2010.01.08 -
[B]VBA32 3.12.12.1 2010.01.06 [B]Malware-Cryptor.Win32.Inject.gen[/B][/B]
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -[/QUOTE]
Additional information
File size: 609280 bytes
MD5...: 2a5d7daa0c333b9cb2cfbee7633b312c
SHA1..: a4a804235b57a3f368299785bc06c9d9a0092356
SHA256: d72261fc8ca20623062ab84c961290a3fdd6eae2f33f387ad5e48a3648f957de
[url]http://www.virustotal.com/analisis/d72261fc8ca20623062ab84c961290a3fdd6eae2f33f387ad5e48a3648f957de-1262962559[/url]
File [B]install_flash_player._exe[/B] received on 2010.01.08 15:03:21 (UTC)
Result: [COLOR="Red"][B]19[/B][/COLOR]/41 (46.35%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
[B]a-squared 4.5.0.48 2010.01.08 [B]Trojan-Dropper.Win32.Smser!IK[/B][/B]
AhnLab-V3 5.0.0.2 2010.01.08 -
[B]AntiVir 7.9.1.130 2010.01.08 [B]TR/Drop.SMSer.IH.2[/B][/B]
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.08 -
Avast 4.8.1351.0 2010.01.07 -
AVG 8.5.0.430 2010.01.04 -
[B]BitDefender 7.2 2010.01.08 [B]Gen:Trojan.Heur.Hype.wqW@ams7QWjc[/B][/B]
[B]CAT-QuickHeal 10.00 2010.01.08 [B]TrojanDropper.Smser.ih[/B][/B]
ClamAV 0.94.1 2010.01.08 -
[B]Comodo 3513 2010.01.08 [B]UnclassifiedMalware[/B][/B]
[B]DrWeb 5.0.1.12222 2010.01.08 [B]Trojan.MulDrop.57561[/B][/B]
[B]eSafe 7.0.17.0 2010.01.07 [B]Win32.GenHeur.Hype.W[/B][/B]
eTrust-Vet 35.2.7225 2010.01.08 -
F-Prot 4.5.1.85 2010.01.07 -
[B]F-Secure 9.0.15370.0 2010.01.08 [B]Gen:Trojan.Heur.Hype.wqW@ams7QWjc[/B][/B]
Fortinet 4.0.14.0 2010.01.08 -
[B]GData 19 2010.01.08 [B]Gen:Trojan.Heur.Hype.wqW@ams7QWjc[/B][/B]
[B]Ikarus T3.1.1.80.0 2010.01.08 [B]Trojan-Dropper.Win32.Smser[/B][/B]
Jiangmin 13.0.900 2010.01.08 -
[B]K7AntiVirus 7.10.942 2010.01.08 [B]Trojan-Dropper.Win32.Smser.ih[/B][/B]
[B]Kaspersky 7.0.0.125 2010.01.08 [B]Trojan-Dropper.Win32.Smser.ih[/B][/B]
McAfee 5854 2010.01.07 -
[B]McAfee+Artemis 5854 2010.01.07 [B]Artemis!DAA854458100[/B][/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.08 [B]Heuristic.LooksLike.Win32.Dropper.C[/B][/B]
[B]Microsoft 1.5302 2010.01.08 [B]TrojanDropper:Win32/Procesemes.gen!A[/B][/B]
[B]NOD32 4754 2010.01.08 [B]a variant of Win32/LockScreen.FX[/B][/B]
Norman 6.04.03 2010.01.07 -
nProtect 2009.1.8.0 2010.01.08 -
[B]Panda 10.0.2.2 2010.01.08 [B]Suspicious file[/B][/B]
PCTools 7.0.3.5 2010.01.08 -
Prevx 3.0 2010.01.08 -
Rising 22.29.04.04 2010.01.08 -
Sophos 4.49.0 2010.01.08 -
Sunbelt 3.2.1858.2 2010.01.08 -
[B]Symantec 20091.2.0.41 2010.01.08 [B]Trojan Horse[/B][/B]
TheHacker 6.5.0.3.140 2010.01.08 -
TrendMicro 9.120.0.1004 2010.01.08 -
[B]VBA32 3.12.12.1 2010.01.06 [B]suspected of Win32.Trojan-Downloader[/B][/B]
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -[/QUOTE]
Additional information
File size: 361984 bytes
MD5...: daa85445810005853e21e577eed31135
SHA1..: a7e4ab7b73a0275a37518296474bff6c21439a84
SHA256: baab2c184e5558232e0c7b150c83e26977f4596b028265c0ababefafd9a84d85
[url]http://www.virustotal.com/analisis/baab2c184e5558232e0c7b150c83e26977f4596b028265c0ababefafd9a84d85-1262963001[/url]
-
Однозначный смс-вымогатель под видом флешплеера. К с ожалению, из-за упаковки проигрывают все:
[QUOTE]Antivirus Version Last Update Result
a-squared 4.5.0.48 2010.01.09 -
AhnLab-V3 5.0.0.2 2010.01.09 -
AntiVir 7.9.1.130 2010.01.08 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.09 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.09 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
Comodo 3514 2010.01.08 -
DrWeb 5.0.1.12222 2010.01.09 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.08 -
F-Secure 9.0.15370.0 2010.01.09 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.09 -
Ikarus T3.1.1.80.0 2010.01.09 -
Jiangmin 13.0.900 2010.01.09 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.09 -
McAfee 5856 2010.01.09 -
McAfee+Artemis 5856 2010.01.09 -
McAfee-GW-Edition 6.8.5 2010.01.09 Trojan.Crypt.ZPACK.Gen
Microsoft 1.5302 2010.01.09 -
NOD32 4756 2010.01.09 -
Norman 6.04.03 2010.01.09 -
nProtect 2009.1.8.0 2010.01.09 -
Panda 10.0.2.2 2010.01.09 -
PCTools 7.0.3.5 2010.01.09 -
Prevx 3.0 2010.01.09 -
Rising 22.29.05.04 2010.01.09 -
Sophos 4.49.0 2010.01.09 -
Sunbelt 3.2.1858.2 2010.01.09 -
Symantec 20091.2.0.41 2010.01.09 -
TheHacker 6.5.0.3.143 2010.01.09 -
TrendMicro 9.120.0.1004 2010.01.09 PAK_Generic.001
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.08 -[/QUOTE]
-
File [B]plugin.exe[/B] received on 2010.01.10 15:31:56 (UTC)
Result: [B][COLOR="Red"]5[/COLOR][/B]/41 (12.2%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
a-squared 4.5.0.48 2010.01.10 -
AhnLab-V3 5.0.0.2 2010.01.10 -
AntiVir 7.9.1.134 2010.01.10 -
Antiy-AVL 2.0.3.7 2010.01.08 -
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.10 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.10 -
[B]CAT-QuickHeal 10.00 2010.01.09 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.09 -
Comodo 3534 2010.01.10 -
DrWeb 5.0.1.12222 2010.01.10 -
eSafe 7.0.17.0 2010.01.10 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.09 -
[B]F-Secure 9.0.15370.0 2010.01.10 Suspicious:W32/Riskware!Online[/B]
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.10 -
Ikarus T3.1.1.80.0 2010.01.10 -
Jiangmin 13.0.900 2010.01.10 -
K7AntiVirus 7.10.943 2010.01.09 -
[B]Kaspersky 7.0.0.125 2010.01.10 Trojan-Downloader.Win32.Piker.blj[/B]
McAfee 5856 2010.01.09 -
McAfee+Artemis 5856 2010.01.09 -
McAfee-GW-Edition 6.8.5 2010.01.10 -
Microsoft 1.5302 2010.01.10 -
NOD32 4758 2010.01.10 -
Norman 6.04.03 2010.01.10 -
nProtect 2009.1.8.0 2010.01.10 -
Panda 10.0.2.2 2010.01.10 -
PCTools 7.0.3.5 2010.01.10 -
[B]Prevx 3.0 2010.01.10 Medium Risk Malware Downloader[/B]
Rising 22.29.06.04 2010.01.10 -
Sophos 4.49.0 2010.01.10 -
[B]Sunbelt 3.2.1858.2 2010.01.09 Trojan.Win32.Bredolab.Gen.1 (v)[/B]
Symantec 20091.2.0.41 2010.01.10 -
TheHacker 6.5.0.3.145 2010.01.10 -
TrendMicro 9.120.0.1004 2010.01.10 -
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.10 -[/QUOTE]
Additional information
File size: 312832 bytes
MD5...: 0a931b7fa20753364c2a5fed08eecbfc
SHA1..: 28838d59122df1035ccb87c2fe07001c25838b9a
SHA256: 3cc31eeb2d044a7e9cc4f02cb7d8e1ce158f286004886f5fcc45655f2c99e536
[url]http://www.virustotal.com/analisis/3cc31eeb2d044a7e9cc4f02cb7d8e1ce158f286004886f5fcc45655f2c99e536-1263137516[/url]
File [B]1.exe[/B] received on 2010.01.10 15:34:08 (UTC)
Result: [B][COLOR="Red"]25[/COLOR][/B]/41 (60.98%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
[B]a-squared 4.5.0.48 2010.01.10 Trojan-Dropper.Delf!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.10 -
[B]AntiVir 7.9.1.134 2010.01.10 TR/Crypt.U.Gen[/B]
Antiy-AVL 2.0.3.7 2010.01.08 -
[B]Authentium 5.2.0.5 2010.01.09 W32/DelfDldr.B.gen!Eldorado[/B]
Avast 4.8.1351.0 2010.01.10 -
[B]AVG 8.5.0.430 2010.01.04 Downloader.Rozena
BitDefender 7.2 2010.01.10 Gen:Trojan.Heur.PT.amW@biuVRYdc
CAT-QuickHeal 10.00 2010.01.09 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.09 -
[B]Comodo 3534 2010.01.10 Heur.Packed.Unknown
DrWeb 5.0.1.12222 2010.01.10 DLOADER.Trojan
eSafe 7.0.17.0 2010.01.10 Win32.TRCrypt.U[/B]
eTrust-Vet 35.2.7226 2010.01.08 -
[B]F-Prot 4.5.1.85 2010.01.09 W32/DelfDldr.B.gen!Eldorado
F-Secure 9.0.15370.0 2010.01.10 Gen:Trojan.Heur.PT.amW@biuVRYdc[/B]
Fortinet 4.0.14.0 2010.01.09 -
[B]GData 19 2010.01.10 Gen:Trojan.Heur.PT.amW@biuVRYdc
Ikarus T3.1.1.80.0 2010.01.10 Trojan-Dropper.Delf[/B]
Jiangmin 13.0.900 2010.01.10 -
K7AntiVirus 7.10.943 2010.01.09 -
[B]Kaspersky 7.0.0.125 2010.01.10 Heur.Downloader[/B]
McAfee 5856 2010.01.09 -
[B]McAfee+Artemis 5856 2010.01.09 Artemis!26E236190315[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.10 Heuristic.LooksLike.Win32.Suspicious.H
Microsoft 1.5302 2010.01.10 TrojanDownloader:Win32/Agent.IR
NOD32 4758 2010.01.10 probably unknown NewHeur_PE
Norman 6.04.03 2010.01.10 W32/Downloader[/B]
nProtect 2009.1.8.0 2010.01.10 -
Panda 10.0.2.2 2010.01.10 -
PCTools 7.0.3.5 2010.01.10 -
Prevx 3.0 2010.01.10 -
[B]Rising 22.29.06.04 2010.01.10 Trojan.DL.Win32.Downloader.GEN
Sophos 4.49.0 2010.01.10 Mal/DelpDldr-B
Sunbelt 3.2.1858.2 2010.01.09 BehavesLike.Win32.Malware (v)
Symantec 20091.2.0.41 2010.01.10 Suspicious.DLoader[/B]
TheHacker 6.5.0.3.145 2010.01.10 -
[B]TrendMicro 9.120.0.1004 2010.01.10 Mal_DLDER
VBA32 3.12.12.1 2010.01.09 suspected of Win32.Trojan.Downloader ([url]http://.[/url]..)[/B]
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.10 -[/QUOTE]
Additional information
File size: 11840 bytes
MD5...: 26e236190315ceea4da14efc1cef8b33
SHA1..: 3f42582364479d865e5c60600f10ab6b845204a0
SHA256: 31760bc2b3002661a691054085b511a8d6a8ca4293c182ea85d2b9572b9d79f3
[url]http://www.virustotal.com/analisis/31760bc2b3002661a691054085b511a8d6a8ca4293c182ea85d2b9572b9d79f3-1263137648[/url]
File [B]hosts.exe[/B] received on 2010.01.10 15:36:48 (UTC)
Result: [B][COLOR="Red"]8[/COLOR][/B]/41 (19.52%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
[B]a-squared 4.5.0.48 2010.01.10 Trojan-Dropper.Delf!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.10 -
AntiVir 7.9.1.134 2010.01.10 -
Antiy-AVL 2.0.3.7 2010.01.08 -
[B]Authentium 5.2.0.5 2010.01.09 W32/Blocker-based!Maximus[/B]
Avast 4.8.1351.0 2010.01.10 -
AVG 8.5.0.430 2010.01.04 -
BitDefender 7.2 2010.01.10 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
Comodo 3534 2010.01.10 -
DrWeb 5.0.1.12222 2010.01.10 -
eSafe 7.0.17.0 2010.01.10 -
eTrust-Vet 35.2.7226 2010.01.08 -
[B]F-Prot 4.5.1.85 2010.01.09 W32/Blocker-based!Maximus[/B]
F-Secure 9.0.15370.0 2010.01.10 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.10 -
[B]Ikarus T3.1.1.80.0 2010.01.10 Trojan-Dropper.Delf[/B]
Jiangmin 13.0.900 2010.01.10 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.10 -
McAfee 5856 2010.01.09 -
[B]McAfee+Artemis 5856 2010.01.09 Artemis!B0D03E5E9A8F[/B]
McAfee-GW-Edition 6.8.5 2010.01.10 -
Microsoft 1.5302 2010.01.10 -
NOD32 4758 2010.01.10 -
[B]Norman 6.04.03 2010.01.10 W32/Malware[/B]
nProtect 2009.1.8.0 2010.01.10 -
Panda 10.0.2.2 2010.01.10 -
PCTools 7.0.3.5 2010.01.10 -
Prevx 3.0 2010.01.10 -
Rising 22.29.06.04 2010.01.10 -
[B]Sophos 4.49.0 2010.01.10 Mal/Generic-A
Sunbelt 3.2.1858.2 2010.01.09 BehavesLike.Win32.Malware (v)[/B]
Symantec 20091.2.0.41 2010.01.10 -
TheHacker 6.5.0.3.145 2010.01.10 -
TrendMicro 9.120.0.1004 2010.01.10 -
VBA32 3.12.12.1 2010.01.09 -
ViRobot 2010.1.8.2128 2010.01.08 -
VirusBuster 5.0.21.0 2010.01.10 -[/QUOTE]
Additional information
File size: 88576 bytes
MD5...: b0d03e5e9a8f3234e898d589a70c0a0b
SHA1..: 4a75bc8a0a2f22f53845a97b257f05a788e5f723
SHA256: bfcdec87d542bb7546d7e6fd1433ffd6441702612e75bd32c5139b5fd547ddcb
[url]http://www.virustotal.com/analisis/bfcdec87d542bb7546d7e6fd1433ffd6441702612e75bd32c5139b5fd547ddcb-1263137808[/url]
-
Файл __________________.zip получен 2010.01.11 13:24:23 (UTC)
Текущий статус: закончено
Результат: 21/40 (52.5%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.48 2010.01.11 -
AhnLab-V3 5.0.0.2 2010.01.10 -
AntiVir 7.9.1.134 2010.01.11 -
Antiy-AVL 2.0.3.7 2010.01.11 -
Authentium 5.2.0.5 2010.01.10 -
Avast 4.8.1351.0 2010.01.10 AutoIt:Balero-A2
AVG 9.0.0.725 2010.01.11 -
BitDefender 7.2 2010.01.11 Gen:Trojan.Heur.AutoIT.2q3@bafcimiO
CAT-QuickHeal 10.00 2010.01.11 Win32.Packed.Klone.bj.4
ClamAV 0.94.1 2010.01.11 PUA.Script.Packed-3
Comodo 3545 2010.01.11 -
DrWeb 5.0.1.12222 2010.01.11 -
eSafe 7.0.17.0 2010.01.10 -
eTrust-Vet 35.2.7229 2010.01.11 -
F-Prot 4.5.1.85 2010.01.10 -
F-Secure 9.0.15370.0 2010.01.11 Gen:Trojan.Heur.AutoIT.2q3@bafcimiO
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.11 Gen:Trojan.Heur.AutoIT.2q3@bafcimiO
Ikarus T3.1.1.80.0 2010.01.11 Worm.Autoit
Jiangmin 13.0.900 2010.01.11 TrojanDownloader.Zlob.xcl
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.11 Worm.Win32.AutoIt.tc
McAfee 5857 2010.01.10 W32/Autorun.worm.zf.gen
McAfee+Artemis 5857 2010.01.10 W32/Autorun.worm.zf.gen
McAfee-GW-Edition 6.8.5 2010.01.11 -
Microsoft 1.5302 2010.01.11 Worm:AutoIt/Renocide.gen!C
NOD32 4760 2010.01.11 Win32/Packed.Autoit.Gen
Norman 6.04.03 2010.01.10 BAT/Autorun.IXD
nProtect 2009.1.8.0 2010.01.11 -
Panda 10.0.2.2 2010.01.10 W32/Harakit.D.worm
PCTools 7.0.3.5 2010.01.11 HeurEngine.Malautoit
Rising 22.30.00.05 2010.01.11 -
Sophos 4.49.0 2010.01.11 -
Sunbelt 3.2.1858.2 2010.01.10 Trojan.Win32.AutoIt.gen.1 (v)
Symantec 20091.2.0.41 2010.01.11 Bloodhound.Malautoit.2
TheHacker 6.5.0.3.146 2010.01.11 -
TrendMicro 9.120.0.1004 2010.01.11 Mal_OtorunG
VBA32 3.12.12.1 2010.01.11 Trojan.Autoit.F
ViRobot 2010.1.11.2130 2010.01.11 -
VirusBuster 5.0.21.0 2010.01.10 Trojan.Autoit.Gen!Pac[/QUOTE]
ополнительная информация
File size: 732403 bytes
MD5...: 717b41c22961137a0e2b297c3bde68ac
SHA1..: b43c0e47ae5582f3d6599019cc6f8f42b2a1ae8f
SHA256: 667a20a00790bd253de53569081900193f0f34aa5080f0835eb69358cda1347b
ssdeep: 12288:XaLI0m2crdwq8SzXzV4llsw5cEWcfOmzNIxPpBxa3uPaTswlTujvq/GS0C
otKdEZ:acyszV4zs352NIdpa3Cu/TKuGeotKKZ
[url]http://www.virustotal.com/ru/analisis/667a20a00790bd253de53569081900193f0f34aa5080f0835eb69358cda1347b-1263216263[/url]
-
Файл flash-HQ-plugin.exe получен 2010.01.11 19:36:41 (UTC)
Результат: 2/41 (4.88%)
[QUOTE]a-squared 4.5.0.48 2010.01.11 -
AhnLab-V3 5.0.0.2 2010.01.11 -
AntiVir 7.9.1.134 2010.01.11 -
Antiy-AVL 2.0.3.7 2010.01.11 -
Authentium 5.2.0.5 2010.01.10 -
Avast 4.8.1351.0 2010.01.11 -
AVG 9.0.0.725 2010.01.11 -
BitDefender 7.2 2010.01.11 -
CAT-QuickHeal 10.00 2010.01.11 -
ClamAV 0.94.1 2010.01.11 -
Comodo 3547 2010.01.11 -
DrWeb 5.0.1.12222 2010.01.11 -
eSafe 7.0.17.0 2010.01.11 -
eTrust-Vet 35.2.7229 2010.01.11 -
F-Prot 4.5.1.85 2010.01.10 -
F-Secure 9.0.15370.0 2010.01.11 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.11 -
Ikarus T3.1.1.80.0 2010.01.11 -
Jiangmin 13.0.900 2010.01.11 -
K7AntiVirus 7.10.944 2010.01.11 -
Kaspersky 7.0.0.125 2010.01.11 -
McAfee 5858 2010.01.11 -
McAfee+Artemis 5858 2010.01.11 -
McAfee-GW-Edition 6.8.5 2010.01.11 -
[B]Microsoft 1.5302 2010.01.11 TrojanDownloader:Win32/FakeSmoke[/B]
NOD32 4762 2010.01.11 -
Norman 6.04.03 2010.01.11 -
nProtect 2009.1.8.0 2010.01.11 -
Panda 10.0.2.2 2010.01.11 -
PCTools 7.0.3.5 2010.01.11 -
Prevx 3.0 2010.01.11 -
Rising 22.30.00.05 2010.01.11 -
Sophos 4.49.0 2010.01.11 -
[B]Sunbelt 3.2.1858.2 2010.01.11 Rogues.Win32.FakeSmoke[/B]
Symantec 20091.2.0.41 2010.01.11 -
TheHacker 6.5.0.3.146 2010.01.11 -
TrendMicro 9.120.0.1004 2010.01.11 -
VBA32 3.12.12.1 2010.01.11 -
ViRobot 2010.1.11.2130 2010.01.11 -
VirusBuster 5.0.21.0 2010.01.11 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/8d0ba4b1c264c77a23873579f825e02de04d9c10b544a676d104c4f3d2cc090b-1263238601[/url]
-
Файл happy.jar получен 2010.01.13 07:40:18 (UTC)
Результат: 7/41 (17.07%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.48 2010.01.13 -
AhnLab-V3 5.0.0.2 2010.01.12 -
[B]AntiVir 7.9.1.134 2010.01.12 JAVA/SMS.J2ME.M
Antiy-AVL 2.0.3.7 2010.01.12 Trojan/J2ME.Small[/B]
Authentium 5.2.0.5 2010.01.12 -
Avast 4.8.1351.0 2010.01.12 -
AVG 9.0.0.725 2010.01.12 -
BitDefender 7.2 2010.01.13 -
CAT-QuickHeal 10.00 2010.01.13 -
ClamAV 0.94.1 2010.01.13 -
[B]Comodo 3565 2010.01.13 TrojWare.J2ME.SMS.Small.m
DrWeb 5.0.1.12222 2010.01.13 Java.SMSSend.132[/B]
eSafe 7.0.17.0 2010.01.12 -
eTrust-Vet 35.2.7234 2010.01.13 -
F-Prot 4.5.1.85 2010.01.12 -
F-Secure 9.0.15370.0 2010.01.13 -
Fortinet 4.0.14.0 2010.01.13 -
GData 19 2010.01.13 -
[B]Ikarus T3.1.1.80.0 2010.01.13 Trojan-SMS[/B]
Jiangmin 13.0.900 2010.01.13 -
K7AntiVirus 7.10.944 2010.01.11 -
[B]Kaspersky 7.0.0.125 2010.01.13 Trojan-SMS.J2ME.Small.m[/B]
McAfee 5859 2010.01.12 -
McAfee+Artemis 5859 2010.01.12 -
[B]McAfee-GW-Edition 6.8.5 2010.01.13 Java.SMS.J2ME.M[/B]
Microsoft 1.5302 2010.01.13 -
NOD32 4765 2010.01.12 -
Norman 6.04.03 2010.01.12 -
nProtect 2009.1.8.0 2010.01.13 -
Panda 10.0.2.2 2010.01.12 -
PCTools 7.0.3.5 2010.01.13 -
Prevx 3.0 2010.01.13 -
Rising 22.30.02.01 2010.01.13 -
Sophos 4.49.0 2010.01.13 -
Sunbelt 3.2.1858.2 2010.01.13 -
Symantec 20091.2.0.41 2010.01.13 -
TheHacker 6.5.0.3.148 2010.01.13 -
TrendMicro 9.120.0.1004 2010.01.13 -
VBA32 3.12.12.1 2010.01.13 -
ViRobot 2010.1.13.2133 2010.01.13 -
VirusBuster 5.0.21.0 2010.01.12 -[/QUOTE]
Дополнительная информация
File size: 29840 bytes
MD5 : 301a056faf31880ddf6bd9eb46543667
[url]http://www.virustotal.com/ru/analisis/2b33bc5eeb189ee828007d95735ae267a1ef5c6dae9f43b40c1b216d4ce2ceb0-1263368418[/url]
-
Файл 1262956944.exe получен 2010.01.12 17:47:53 (UTC)
Текущий статус: закончено
Результат: 21/40 (52.50%)
[QUOTE]Антивирус Версия Обновление Результат
[B]a-squared 4.5.0.48 2010.01.12 Trojan.Win32.Tdss!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.12 -
[B]AntiVir 7.9.1.134 2010.01.12 TR/TDss.avgk
Antiy-AVL 2.0.3.7 2010.01.12 Trojan/Win32.Tdss.gen[/B]
Authentium 5.2.0.5 2010.01.12 -
Avast 4.8.1351.0 2010.01.11 -
AVG 9.0.0.725 2010.01.12 -
[B]BitDefender 7.2 2010.01.12 Trojan.Tdss.AAI[/B]
CAT-QuickHeal 10.00 2010.01.12 -
ClamAV 0.94.1 2010.01.12 -
[B]Comodo 3558 2010.01.12 TrojWare.Win32.Trojan.Agent.Gen
DrWeb 5.0.1.12222 2010.01.12 BackDoor.Tdss.1050[/B]
eTrust-Vet 35.2.7232 2010.01.12 -
F-Prot 4.5.1.85 2010.01.12 -
[B]F-Secure 9.0.15370.0 2010.01.12 Trojan:W32/TDSS.ED
Fortinet 4.0.14.0 2010.01.12 W32/Tdss.AVJ!tr
GData 19 2010.01.12 Trojan.Tdss.AAI
Ikarus T3.1.1.80.0 2010.01.12 Trojan.Win32.Tdss[/B]
Jiangmin 13.0.900 2010.01.12 -
K7AntiVirus 7.10.944 2010.01.11 -
[B]Kaspersky 7.0.0.125 2010.01.12 Trojan.Win32.Tdss.avgk
McAfee 5859 2010.01.12 DNSChanger.at
McAfee+Artemis 5859 2010.01.12 DNSChanger.at[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.12 Heuristic.LooksLike.Trojan.PCK.Tdss.A[/B]
[B]Microsoft 1.5302 2010.01.12 Trojan:Win32/Alureon.CT
NOD32 4765 2010.01.12 Win32/Olmarik.SO[/B]
Norman 6.04.03 2010.01.12 -
nProtect 2009.1.8.0 2010.01.12 -
[B]Panda 10.0.2.2 2010.01.12 Trj/CI.A
PCTools 7.0.3.5 2010.01.12 HeurEngine.MaliciousPacker[/B]
Prevx 3.0 2010.01.12 -
Rising 22.30.01.03 2010.01.12 -
[B]Sophos 4.49.0 2010.01.12 Mal/Generic-A[/B]
Sunbelt 3.2.1858.2 2010.01.12 -
[B]Symantec 20091.2.0.41 2010.01.12 Packed.Generic.277
TheHacker 6.5.0.3.148 2010.01.12 Trojan/Tdss.avgk[/B]
TrendMicro 9.120.0.1004 2010.01.12 -
VBA32 3.12.12.1 2010.01.12 -
ViRobot 2010.1.12.2132 2010.01.12 -
VirusBuster 5.0.21.0 2010.01.12 -[/QUOTE]
Дополнительная информация
File size: 62464 bytes
MD5 : 8b71395026f24da8f86c7eb8ae272b10
SHA1 : fe611ed3644549bb4618e0259a5e57cafa067712
SHA256: 336e1823ae6bf7a8f36a687ac27ae111616fcff8064c5c3ffc0892813ad57eca
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x1000
timedatestamp.....: 0x4B485D49 (Sat Jan 9 11:41:13 2010)
machinetype.......: 0x14C (Intel I386)
[url]http://www.virustotal.com/ru/analisis/336e1823ae6bf7a8f36a687ac27ae111616fcff8064c5c3ffc0892813ad57eca-1263318473[/url]
-
Файл MediaCodec.exe получен 2010.01.13 09:19:06 (UTC)
Текущий статус: закончено
Результат: 5/41 (12.20%)
[QUOTE]Печать результатов Печать результатов
Антивирус Версия Обновление Результат
a-squared 4.5.0.48 2010.01.13 -
AhnLab-V3 5.0.0.2 2010.01.12 -
[B]AntiVir 7.9.1.134 2010.01.12 TR/Dropper.Gen[/B]
Antiy-AVL 2.0.3.7 2010.01.12 -
Authentium 5.2.0.5 2010.01.12 -
Avast 4.8.1351.0 2010.01.12 -
AVG 9.0.0.725 2010.01.12 -
BitDefender 7.2 2010.01.13 -
CAT-QuickHeal 10.00 2010.01.13 -
ClamAV 0.94.1 2010.01.13 -
Comodo 3566 2010.01.13 -
DrWeb 5.0.1.12222 2010.01.13 -
eSafe 7.0.17.0 2010.01.12 -
eTrust-Vet 35.2.7234 2010.01.13 -
F-Prot 4.5.1.85 2010.01.12 -
F-Secure 9.0.15370.0 2010.01.13 -
Fortinet 4.0.14.0 2010.01.13 -
GData 19 2010.01.13 -
Ikarus T3.1.1.80.0 2010.01.13 -
Jiangmin 13.0.900 2010.01.13 -
K7AntiVirus 7.10.944 2010.01.11 -
Kaspersky 7.0.0.125 2010.01.13 -
McAfee 5859 2010.01.12 -
[B]McAfee+Artemis 5859 2010.01.12 Artemis!7197FCCFD642
McAfee-GW-Edition 6.8.5 2010.01.13 Trojan.Dropper.Gen
Microsoft 1.5302 2010.01.13 VirTool:Win32/VBInject.gen!BP[/B]
NOD32 4765 2010.01.12 -
Norman 6.04.03 2010.01.12 -
nProtect 2009.1.8.0 2010.01.13 -
[B]Panda 10.0.2.2 2010.01.12 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.13 -
Prevx 3.0 2010.01.13 -
Rising 22.30.02.04 2010.01.13 -
Sophos 4.49.0 2010.01.13 -
Sunbelt 3.2.1858.2 2010.01.13 -
Symantec 20091.2.0.41 2010.01.13 -
TheHacker 6.5.0.3.148 2010.01.13 -
TrendMicro 9.120.0.1004 2010.01.13 -
VBA32 3.12.12.1 2010.01.13 -
ViRobot 2010.1.13.2134 2010.01.13 -
VirusBuster 5.0.21.0 2010.01.12 -[/QUOTE]
Дополнительная информация
File size: 249856 bytes
MD5 : 7197fccfd64217c2ec4d54f7dc429b85
[url]http://www.virustotal.com/ru/analisis/f5e9791e31dbf1940e9fdc8e6a747f09bff820db0d9df79d9e8f8f2419f05475-1263374346[/url]
это был порнобанерок :)
[URL=http://10pix.ru/view/2681/647061/][IMG]http://10pix.ru/img1/2681/647061.th.jpg[/IMG][/URL]
-
Пришел вконтакт. Скорей всего баннер или блочит винду
Файл foto.fee получен 2010.01.13 15:37:04 (UTC)
Текущий статус: закончено
Результат: 5/41 (12.2%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.48 2010.01.13 -
AhnLab-V3 5.0.0.2 2010.01.13 -
AntiVir 7.9.1.134 2010.01.13 -
[B]Antiy-AVL 2.0.3.7 2010.01.12 Trojan/Win32.Scar.gen
Authentium 5.2.0.5 2010.01.12 W32/Backdoor2.EWEM[/B]
Avast 4.8.1351.0 2010.01.13 -
AVG 9.0.0.725 2010.01.13 -
BitDefender 7.2 2010.01.13 -
CAT-QuickHeal 10.00 2010.01.13 -
ClamAV 0.94.1 2010.01.13 -
Comodo 3569 2010.01.13 -
DrWeb 5.0.1.12222 2010.01.13 -
eSafe 7.0.17.0 2010.01.13 -
eTrust-Vet 35.2.7234 2010.01.13 -
[B]F-Prot 4.5.1.85 2010.01.12 W32/Backdoor2.EWEM[/B]
F-Secure 9.0.15370.0 2010.01.13 -
Fortinet 4.0.14.0 2010.01.13 -
GData 19 2010.01.13 -
Ikarus T3.1.1.80.0 2010.01.13 -
Jiangmin 13.0.900 2010.01.13 -
K7AntiVirus 7.10.946 2010.01.13 -
Kaspersky 7.0.0.125 2010.01.13 -
McAfee 5859 2010.01.12 -
McAfee+Artemis 5859 2010.01.12 -
[B]McAfee-GW-Edition 6.8.5 2010.01.13 Heuristic.BehavesLike.Win32.Dropper.H
Microsoft 1.5302 2010.01.13 Trojan:Win32/Qhost.BT[/B]
NOD32 4767 2010.01.13 -
Norman 6.04.03 2010.01.13 -
nProtect 2009.1.8.0 2010.01.13 -
Panda 10.0.2.2 2010.01.12 -
PCTools 7.0.3.5 2010.01.13 -
Prevx 3.0 2010.01.13 -
Rising 22.30.02.06 2010.01.13 -
Sophos 4.49.0 2010.01.13 -
Sunbelt 3.2.1858.2 2010.01.13 -
Symantec 20091.2.0.41 2010.01.13 -
TheHacker 6.5.0.3.148 2010.01.13 -
TrendMicro 9.120.0.1004 2010.01.13 -
VBA32 3.12.12.1 2010.01.13 -
ViRobot 2010.1.13.2134 2010.01.13 -
VirusBuster 5.0.21.0 2010.01.13 -[/QUOTE]
Дополнительная информация
File size: 133632 bytes
MD5...: e1a5510b49b742a61fa441f042d30d92
SHA1..: dfea2b1c60cb2e94b7869ba84dfd82cd9f8099a9
SHA256: 981206c81914f231252f4987dce445a5727cab4ddcdddfb980c21a3f08092e92
ssdeep: 1536:tQWLoQRXkE2jMq3GulH+WEI89HZGZzvh/4Tp8GMG0jCsCITUkaX+S9W:tt9
PIMTkH+95GZd4TeGMG0jCf+VUW
PEiD..: -
PEInfo: PE Structure information
[url]http://www.virustotal.com/ru/analisis/981206c81914f231252f4987dce445a5727cab4ddcdddfb980c21a3f08092e92-1263397024[/url]
-
Шпионская программа
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.50 2010.01.15 -
AhnLab-V3 5.0.0.2 2010.01.15 -
AntiVir 7.9.1.142 2010.01.15 -
Antiy-AVL 2.0.3.7 2010.01.12 -
Authentium 5.2.0.5 2010.01.15 -
Avast 4.8.1351.0 2010.01.15 -
AVG 9.0.0.730 2010.01.15 -
BitDefender 7.2 2010.01.15 -
[B]CAT-QuickHeal 10.00 2010.01.15 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.15 -
Comodo 3594 2010.01.15 -
DrWeb 5.0.1.12222 2010.01.15 -
eSafe 7.0.17.0 2010.01.14 -
eTrust-Vet 35.2.7239 2010.01.15 -
F-Prot 4.5.1.85 2010.01.15 -
F-Secure 9.0.15370.0 2010.01.15 -
Fortinet 4.0.14.0 2010.01.15 -
GData 19 2010.01.15 -
Ikarus T3.1.1.80.0 2010.01.15 -
Jiangmin 13.0.900 2010.01.15 -
K7AntiVirus 7.10.948 2010.01.15 -
[COLOR="Red"]Kaspersky 7.0.0.125 2010.01.15 -[/COLOR]
McAfee 5861 2010.01.14 -
McAfee+Artemis 5862 2010.01.15 -
McAfee-GW-Edition 6.8.5 2010.01.15 -
Microsoft 1.5302 2010.01.15 -
NOD32 4775 2010.01.15 -
Norman 6.04.03 2010.01.14 -
nProtect 2009.1.8.0 2010.01.15 -
Panda 10.0.2.2 2010.01.15 -
PCTools 7.0.3.5 2010.01.15 -
Prevx 3.0 2010.01.15 -
Rising 22.30.04.04 2010.01.15 -
Sophos 4.49.0 2010.01.15 -
Sunbelt 3.2.1858.2 2010.01.15 -
Symantec 20091.2.0.41 2010.01.15 -
TheHacker 6.5.0.4.152 2010.01.15 -
TrendMicro 9.120.0.1004 2010.01.15 -
VBA32 3.12.12.1 2010.01.15 -
ViRobot 2010.1.15.2138 2010.01.15 -
VirusBuster 5.0.21.0 2010.01.15 -
Дополнительная информация
File size: 682496 bytes
MD5...: 3563906d5e23246258bc69eeb64a7b76
SHA1..: f96fc0cccbd66aa5e6cd9247a70621cc30fd034b
SHA256: ffae3836c005f45ecf30306ff3a5697bd9409230afa657b12727c255f8e35dbc
ssdeep: 12288:EG6gwigmgoh86WBzo4GLY192cUeGl+5jUqLgc769k5S:ELg9gG32z24oLq
LgK6W4
PEiD..: -[/QUOTE]
:mad:
-
Файл setup17.exe получен 2010.01.16 15:47:06 (UTC)
Результат: 1/41 (2.44%)
[QUOTE]a-squared 4.5.0.50 2010.01.16 -
AhnLab-V3 5.0.0.2 2010.01.16 -
AntiVir 7.9.1.142 2010.01.16 -
Antiy-AVL 2.0.3.7 2010.01.12 -
Authentium 5.2.0.5 2010.01.16 -
Avast 4.8.1351.0 2010.01.16 -
AVG 9.0.0.730 2010.01.16 -
BitDefender 7.2 2010.01.16 -
CAT-QuickHeal 10.00 2010.01.16 -
ClamAV 0.94.1 2010.01.16 -
Comodo 3604 2010.01.16 -
DrWeb 5.0.1.12222 2010.01.16 -
eSafe 7.0.17.0 2010.01.14 -
eTrust-Vet 35.2.7240 2010.01.15 -
F-Prot 4.5.1.85 2010.01.15 -
F-Secure 9.0.15370.0 2010.01.16 -
Fortinet 4.0.14.0 2010.01.16 -
GData 19 2010.01.16 -
Ikarus T3.1.1.80.0 2010.01.16 -
Jiangmin 13.0.900 2010.01.16 -
K7AntiVirus 7.10.949 2010.01.16 -
Kaspersky 7.0.0.125 2010.01.16 -
McAfee 5862 2010.01.15 -
McAfee+Artemis 5862 2010.01.15 -
McAfee-GW-Edition 6.8.5 2010.01.16 -
[B]Microsoft 1.5302 2010.01.16 TrojanDropper:Win32/Secap.A[/B]
NOD32 4777 2010.01.16 -
Norman 6.04.03 2010.01.16 -
nProtect 2009.1.8.0 2010.01.16 -
Panda 10.0.2.2 2010.01.16 -
PCTools 7.0.3.5 2010.01.16 -
Prevx 3.0 2010.01.16 -
Rising 22.30.05.03 2010.01.16 -
Sophos 4.49.0 2010.01.16 -
Sunbelt 3.2.1858.2 2010.01.16 -
Symantec 20091.2.0.41 2010.01.16 -
TheHacker 6.5.0.4.153 2010.01.16 -
TrendMicro 9.120.0.1004 2010.01.16 -
VBA32 3.12.12.1 2010.01.15 -
ViRobot 2010.1.16.2140 2010.01.16 -
VirusBuster 5.0.21.0 2010.01.16 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/1096966aa2c210872a1c57cc1ae18d7d3d7a7f562122d44a0862706e71158e08-1263656826[/url]
-
File [B]myfoto.exe[/B] received on 2010.01.16 20:19:29 (UTC)
Result: [B][COLOR="Red"]19[/COLOR][/B]/41 (46.35%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
a-squared 4.5.0.50 2010.01.16 -
AhnLab-V3 5.0.0.2 2010.01.16 -
[B]AntiVir 7.9.1.142 2010.01.16 TR/Crypt.CFI.Gen[/B]
Antiy-AVL 2.0.3.7 2010.01.12 -
[B]Authentium 5.2.0.5 2010.01.16 W32/Trojan-Gypikon-based.DM2!Maximus[/B]
Avast 4.8.1351.0 2010.01.16 -
AVG 9.0.0.730 2010.01.16 -
[B]BitDefender 7.2 2010.01.16 Gen:Trojan.Heur.eu0@rDGKq!ic
CAT-QuickHeal 10.00 2010.01.16 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.16 -
[B]Comodo 3605 2010.01.16 Heur.Packed.Unknown[/B]
DrWeb 5.0.1.12222 2010.01.16 -
eSafe 7.0.17.0 2010.01.14 -
eTrust-Vet 35.2.7240 2010.01.15 -
[B]F-Prot 4.5.1.85 2010.01.16 W32/Trojan-Gypikon-based.DM2!Maximus
F-Secure 9.0.15370.0 2010.01.16 Gen:Trojan.Heur.eu0@rDGKq!ic[/B]
Fortinet 4.0.14.0 2010.01.16 -
[B]GData 19 2010.01.16 Gen:Trojan.Heur.eu0@rDGKq!ic[/B]
Ikarus T3.1.1.80.0 2010.01.16 -
Jiangmin 13.0.900 2010.01.16 -
K7AntiVirus 7.10.949 2010.01.16 -
Kaspersky 7.0.0.125 2010.01.16 -
[B]McAfee 5863 2010.01.16 New Malware.ag
McAfee+Artemis 5863 2010.01.16 Artemis!2BA7EF2E3485
McAfee-GW-Edition 6.8.5 2010.01.16 Heuristic.LooksLike.Win32.Suspicious.B[/B]
Microsoft 1.5302 2010.01.16 -
[B]NOD32 4778 2010.01.16 a variant of Win32/Kryptik.LR
Norman 6.04.03 2010.01.16 W32/Obfuscated.A!genr[/B]
nProtect 2009.1.8.0 2010.01.16 -
[B]Panda 10.0.2.2 2010.01.16 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.16 -
Prevx 3.0 2010.01.16 -
[B]Rising 22.30.05.03 2010.01.16 Packer.Win32.UnkPacker.a
Sophos 4.49.0 2010.01.16 Mal/EncPk-MX[/B]
Sunbelt 3.2.1858.2 2010.01.16 -
[B]Symantec 20091.2.0.41 2010.01.16 Suspicious.MH690.A[/B]
TheHacker 6.5.0.5.153 2010.01.16 -
[B]TrendMicro 9.120.0.1004 2010.01.16 Mal_Banker
VBA32 3.12.12.1 2010.01.15 Malware-Cryptor.Win32.General.3[/B]
ViRobot 2010.1.16.2140 2010.01.16 -
VirusBuster 5.0.21.0 2010.01.16 -[/QUOTE]
Additional information
File size: [B]77824[/B] bytes
MD5...: 2ba7ef2e3485a5ec9fb1b96ff8e42cc8
SHA1..: b7f6f5110da48efb6bd8f33848ba650da361ee84
SHA256: d21679c5b9ff4555cc276c3a856792d17ccf8393a1e24283fa20f5a4f7f2f64d
[url]http://www.virustotal.com/analisis/d21679c5b9ff4555cc276c3a856792d17ccf8393a1e24283fa20f5a4f7f2f64d-1263673169[/url]
File [B]install_flash_player.exe[/B] received on 2010.01.16 20:21:07 (UTC)
Result: [COLOR="Red"][B]2[/B][/COLOR]/41 (4.88%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
a-squared 4.5.0.50 2010.01.16 -
AhnLab-V3 5.0.0.2 2010.01.16 -
AntiVir 7.9.1.142 2010.01.16 -
Antiy-AVL 2.0.3.7 2010.01.12 -
Authentium 5.2.0.5 2010.01.16 -
Avast 4.8.1351.0 2010.01.16 -
AVG 9.0.0.730 2010.01.16 -
BitDefender 7.2 2010.01.16 -
CAT-QuickHeal 10.00 2010.01.16 -
ClamAV 0.94.1 2010.01.16 -
Comodo 3605 2010.01.16 -
DrWeb 5.0.1.12222 2010.01.16 -
eSafe 7.0.17.0 2010.01.14 -
eTrust-Vet 35.2.7240 2010.01.15 -
F-Prot 4.5.1.85 2010.01.16 -
F-Secure 9.0.15370.0 2010.01.16 -
Fortinet 4.0.14.0 2010.01.16 -
GData 19 2010.01.16 -
Ikarus T3.1.1.80.0 2010.01.16 -
Jiangmin 13.0.900 2010.01.16 -
[B]K7AntiVirus 7.10.949 2010.01.16 Trojan.Win32.Malware.1[/B]
Kaspersky 7.0.0.125 2010.01.16 -
McAfee 5863 2010.01.16 -
McAfee+Artemis 5863 2010.01.16 -
McAfee-GW-Edition 6.8.5 2010.01.16 -
Microsoft 1.5302 2010.01.16 -
NOD32 4778 2010.01.16 -
Norman 6.04.03 2010.01.16 -
nProtect 2009.1.8.0 2010.01.16 -
Panda 10.0.2.2 2010.01.16 -
PCTools 7.0.3.5 2010.01.16 -
Prevx 3.0 2010.01.16 -
Rising 22.30.05.03 2010.01.16 -
Sophos 4.49.0 2010.01.16 -
Sunbelt 3.2.1858.2 2010.01.16 -
Symantec 20091.2.0.41 2010.01.16 -
[B]TheHacker 6.5.0.5.153 2010.01.16 Trojan/Dropper.Js.any[/B]
TrendMicro 9.120.0.1004 2010.01.16 -
VBA32 3.12.12.1 2010.01.15 -
ViRobot 2010.1.16.2140 2010.01.16 -
VirusBuster 5.0.21.0 2010.01.16 -[/QUOTE]
Additional information
File size: [B]446125[/B] bytes
MD5...: c530a9067a4a8c589c9dd479f2f8c528
SHA1..: 9997c1563c4783b303a48161218d941fe3d5e962
SHA256: 159888bb4d73f5c5532f66af1a52f718fb8905ba248838cff961a04421a1dcdf
[url]http://www.virustotal.com/analisis/159888bb4d73f5c5532f66af1a52f718fb8905ba248838cff961a04421a1dcdf-1263673267[/url]
File [B]FreeVKGifts.exe[/B] received on 2010.01.16 20:24:43 (UTC)
Result: [B][COLOR="Red"]13[/COLOR][/B]/39 (33.34%)
[QUOTE][U]Antivirus Version Last Update Result[/U]
[B]a-squared 4.5.0.50 2010.01.16 Worm.Win32.SillyShareCopy!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.16 -
AntiVir 7.9.1.142 2010.01.16 -
Antiy-AVL 2.0.3.7 2010.01.12 -
Authentium 5.2.0.5 2010.01.16 -
Avast 4.8.1351.0 2010.01.16 -
AVG 9.0.0.730 2010.01.16 -
[B]BitDefender 7.2 2010.01.16 Gen:Trojan.Heur.TP.ku0@b8tBuvhc
CAT-QuickHeal 10.00 2010.01.16 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.16 -
[B]Comodo 3605 2010.01.16 Heur.Packed.Unknown[/B]
DrWeb 5.0.1.12222 2010.01.16 -
eTrust-Vet 35.2.7240 2010.01.15 -
F-Prot 4.5.1.85 2010.01.16 -
[B]F-Secure 9.0.15370.0 2010.01.16 Gen:Trojan.Heur.TP.ku0@b8tBuvhc[/B]
Fortinet 4.0.14.0 2010.01.16 -
[B]GData 19 2010.01.16 Gen:Trojan.Heur.TP.ku0@b8tBuvhc
Ikarus T3.1.1.80.0 2010.01.16 Worm.Win32.SillyShareCopy[/B]
Jiangmin 13.0.900 2010.01.16 -
K7AntiVirus 7.10.949 2010.01.16 -
Kaspersky 7.0.0.125 2010.01.16 -
McAfee 5863 2010.01.16 -
[B]McAfee+Artemis 5863 2010.01.16 Artemis!0795313F75FD[/B]
[B]McAfee-GW-Edition 6.8.5 2010.01.16 Heuristic.LooksLike.Worm.SillyShareCopy.H
Microsoft 1.5302 2010.01.16 Worm:Win32/SillyShareCopy.gen[/B]
NOD32 4778 2010.01.16 -
Norman 6.04.03 2010.01.16 -
nProtect 2009.1.8.0 2010.01.16 -
[B]Panda 10.0.2.2 2010.01.16 Trj/CI.A[/B]
PCTools 7.0.3.5 2010.01.16 -
Prevx 3.0 2010.01.16 -
Rising 22.30.05.03 2010.01.16 -
[B]Sophos 4.49.0 2010.01.16 Mal/EncPk-MZ
Sunbelt 3.2.1858.2 2010.01.16 Trojan.Win32.Bredolab.Gen.1 (v)[/B]
Symantec 20091.2.0.41 2010.01.16 -
TheHacker 6.5.0.5.153 2010.01.16 -
TrendMicro 9.120.0.1004 2010.01.16 -
ViRobot 2010.1.16.2140 2010.01.16 -
VirusBuster 5.0.21.0 2010.01.16 -[/QUOTE]
Additional information
File size: [B]171008[/B] bytes
MD5...: 0795313f75fdf8d27f0cc89ff2ea7a9a
SHA1..: 176951066cf76c95ae2ae40544bd9f124a9ad8a2
SHA256: 9108953fed28cf3f7bb6d768fa5c9a4aaabe434f95f558399456d1fe3ce07a8e
[url]http://www.virustotal.com/analisis/9108953fed28cf3f7bb6d768fa5c9a4aaabe434f95f558399456d1fe3ce07a8e-1263673483[/url]
-
Файл [B]plugin.exe[/B] получен 2010.01.16 22:34:24 (UTC)
Результат: [COLOR="Red"][B]9[/B][/COLOR]/41 (21.96%)
[QUOTE]Антивирус Версия Обновление Результат
[B]a-squared 4.5.0.50 2010.01.16 Trojan.Win32.LockScreen!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.16 -
AntiVir 7.9.1.142 2010.01.16 -
Antiy-AVL 2.0.3.7 2010.01.12 -
Authentium 5.2.0.5 2010.01.16 -
Avast 4.8.1351.0 2010.01.16 -
AVG 9.0.0.730 2010.01.16 -
BitDefender 7.2 2010.01.16 -
[B]CAT-QuickHeal 10.00 2010.01.16 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.16 -
Comodo 3605 2010.01.16 -
DrWeb 5.0.1.12222 2010.01.16 -
eSafe 7.0.17.0 2010.01.14 -
eTrust-Vet 35.2.7240 2010.01.15 -
F-Prot 4.5.1.85 2010.01.16 -
[B]F-Secure 9.0.15370.0 2010.01.16 Suspicious:W32/Riskware!Online[/B]
Fortinet 4.0.14.0 2010.01.16 -
GData 19 2010.01.16 -
[B]Ikarus T3.1.1.80.0 2010.01.16 Trojan.Win32.LockScreen[/B]
Jiangmin 13.0.900 2010.01.16 -
K7AntiVirus 7.10.949 2010.01.16 -
Kaspersky 7.0.0.125 2010.01.16 -
McAfee 5863 2010.01.16 -
[B]McAfee+Artemis 5863 2010.01.16 Artemis!5C6416F819BF[/B]
McAfee-GW-Edition 6.8.5 2010.01.16 -
[B]Microsoft 1.5302 2010.01.16 Trojan:Win32/LockScreen.gen!A[/B]
NOD32 4778 2010.01.16 -
Norman 6.04.03 2010.01.16 -
nProtect 2009.1.8.0 2010.01.16 -
[B]Panda 10.0.2.2 2010.01.16 Trj/CI.A[/B]
PCTools 7.0.3.5 2010.01.16 -
Prevx 3.0 2010.01.16 -
Rising 22.30.05.03 2010.01.16 -
[B]Sophos 4.49.0 2010.01.16 Mal/EncPk-MZ
Sunbelt 3.2.1858.2 2010.01.16 Trojan.Win32.Bredolab.Gen.1 (v)[/B]
Symantec 20091.2.0.41 2010.01.16 -
TheHacker 6.5.0.5.153 2010.01.16 -
TrendMicro 9.120.0.1004 2010.01.16 -
VBA32 3.12.12.1 2010.01.15 -
ViRobot 2010.1.16.2140 2010.01.16 -
VirusBuster 5.0.21.0 2010.01.16 -
Дополнительная информация
File size: 424448 bytes
MD5...: 5c6416f819bfbca2f1862691a03f68be[/QUOTE]
смс-вымогатель на номер 2474
[URL=http://www.10pix.ru/img1/2487/679061.jpg][IMG]http://www.10pix.ru/img1/2487/679061.th.jpg[/IMG][/URL]
ЗЫ.
я смотрю генератора ответного кода под него нет: у каспера - нет вообще, а предложенные коды дрвеба не срабатывают! :unsure:
-
Файл basic.js получен 2010.01.17 17:06:26 (UTC)
Результат: 6/41 (14.64%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.50 2010.01.17 -
AhnLab-V3 5.0.0.2 2010.01.16 -
AntiVir 7.9.1.142 2010.01.17 -
Antiy-AVL 2.0.3.7 2010.01.12 -
[B]Authentium 5.2.0.5 2010.01.16 JS/Redir.AH[/B]
Avast 4.8.1351.0 2010.01.17 -
AVG 9.0.0.730 2010.01.17 -
BitDefender 7.2 2010.01.17 -
CAT-QuickHeal 10.00 2010.01.16 -
ClamAV 0.94.1 2010.01.17 -
Comodo 3615 2010.01.17 -
DrWeb 5.0.1.12222 2010.01.17 -
eSafe 7.0.17.0 2010.01.17 -
[B]eTrust-Vet 35.2.7240 2010.01.15 HTML/MalScr.A
F-Prot 4.5.1.85 2010.01.16 JS/Redir.AH[/B]
F-Secure 9.0.15370.0 2010.01.17 -
Fortinet 4.0.14.0 2010.01.16 -
GData 19 2010.01.17 -
Ikarus T3.1.1.80.0 2010.01.17 -
Jiangmin 13.0.900 2010.01.17 -
K7AntiVirus 7.10.949 2010.01.16 -
[B]Kaspersky 7.0.0.125 2010.01.17 Trojan-Downloader.JS.Agent.exe[/B]
McAfee 5864 2010.01.17 -
McAfee+Artemis 5864 2010.01.17 -
McAfee-GW-Edition 6.8.5 2010.01.17 -
Microsoft 1.5302 2010.01.17 -
[B]NOD32 4780 2010.01.17 JS/TrojanDownloader.Agent.NRN[/B]
Norman 6.04.03 2010.01.17 -
nProtect 2009.1.8.0 2010.01.17 -
Panda 10.0.2.2 2010.01.17 -
PCTools 7.0.3.5 2010.01.17 -
Prevx 3.0 2010.01.17 -
Rising 22.30.06.04 2010.01.17 -
[B]Sophos 4.49.0 2010.01.17 Troj/JSRedir-AQ[/B]
Sunbelt 3.2.1858.2 2010.01.16 -
Symantec 20091.2.0.41 2010.01.17 -
TheHacker 6.5.0.6.154 2010.01.17 -
TrendMicro 9.120.0.1004 2010.01.17 -
VBA32 3.12.12.1 2010.01.17 -
ViRobot 2010.1.16.2140 2010.01.16 -
VirusBuster 5.0.21.0 2010.01.17 -[/QUOTE]
Дополнительная информация
File size: 1871 bytes
MD5...: c67ce2bc6f6d053d93901127af3d4da1
SHA1..: e8b05beb701f1e8b4ae5e930cee9a94e8a489b90
SHA256: d6821b63aea40e4c04d3649e1598cf2bb87ee15b78e4be931fe7740cabb69f3f
ssdeep: 48:ctOvHK3hCBr7yTgzsHsRqk/o7wWRmZT40:DBr+TgGcrWe40<BR>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<BR>-
sigcheck:<BR>publisher....: n/a<BR>copyright....: n/a<BR>product......: n/a<BR>description..: n/a<BR>original name: n/a<BR>internal name: n/a<BR>file version.: n/a<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
pdfid.: -
trid..: Unknown!
-
Файло шлётся ссылкой по асе...
[QUOTE]Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.18 IM-Worm.Win32.QiMiral!IK
AhnLab-V3 5.0.0.2 2010.01.18 -
AntiVir 7.9.1.142 2010.01.18 -
Antiy-AVL 2.0.3.7 2010.01.18 -
Authentium 5.2.0.5 2010.01.18 -
Avast 4.8.1351.0 2010.01.18 -
AVG 9.0.0.730 2010.01.18 -
BitDefender 7.2 2010.01.18 -
CAT-QuickHeal 10.00 2010.01.18 -
ClamAV 0.94.1 2010.01.18 -
Comodo 3628 2010.01.18 -
DrWeb 5.0.1.12222 2010.01.18 Win32.HLLW.Piggy
eSafe 7.0.17.0 2010.01.18 -
eTrust-Vet 35.2.7244 2010.01.18 -
F-Prot 4.5.1.85 2010.01.18 -
F-Secure 9.0.15370.0 2010.01.18 -
Fortinet 4.0.14.0 2010.01.18 -
GData 19 2010.01.18 -
Ikarus T3.1.1.80.0 2010.01.18 IM-Worm.Win32.QiMiral
Jiangmin 13.0.900 2010.01.18 -
K7AntiVirus 7.10.950 2010.01.18 -
Kaspersky 7.0.0.125 2010.01.18 IM-Worm.Win32.QiMiral.x
McAfee 5865 2010.01.18 -
McAfee+Artemis 5865 2010.01.18 Artemis!D39CDCDBAFB3
McAfee-GW-Edition 6.8.5 2010.01.18 -
Microsoft 1.5302 2010.01.18 -
NOD32 4784 2010.01.18 Win32/QiMiral.AA
Norman 6.04.03 2010.01.18 -
nProtect 2009.1.8.0 2010.01.18 -
Panda 10.0.2.2 2010.01.18 Trj/CI.A
PCTools 7.0.3.5 2010.01.18 -
Prevx 3.0 2010.01.18 High Risk Cloaked Malware
Rising 22.31.00.04 2010.01.18 Trojan.Spy.Banbra.pug
Sophos 4.49.0 2010.01.18 -
Sunbelt 3.2.1858.2 2010.01.17 -
Symantec 20091.2.0.41 2010.01.18 -
TheHacker 6.5.0.6.155 2010.01.18 -
TrendMicro 9.120.0.1004 2010.01.18 -
VBA32 3.12.12.1 2010.01.17 -
ViRobot 2010.1.18.2142 2010.01.18 -
VirusBuster 5.0.21.0 2010.01.18 Worm.QiMiral.L[/QUOTE]
[url]http://www.virustotal.com/analisis/b78656f82e1b6c978c2b877da8aa5e36faa236d6d7df3e214399424fde655709-1263848626[/url]
-
File kui2.tmp-e2fa922b-d21d-b211-9028- received on 2010.01.19 09:25:22 (UTC)
[CODE]Antivirus Version Last Update Result
[B]a-squared 4.5.0.50 2010.01.19 Trojan-Ransom!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.19 -
[B]AntiVir 7.9.1.142 2010.01.18 TR/Ransom.PogBlock.RI[/B]
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.19 -
Avast 4.8.1351.0 2010.01.18 -
[B]AVG 9.0.0.730 2010.01.18 Generic16.AECB
BitDefender 7.2 2010.01.19 Trojan.Generic.2990194[/B]
CAT-QuickHeal 10.00 2010.01.19 -
ClamAV 0.94.1 2010.01.19 -
Comodo 3634 2010.01.19 -
[B]DrWeb 5.0.1.12222 2010.01.19 Trojan.Winlock.591[/B]
eSafe 7.0.17.0 2010.01.18 -
eTrust-Vet 35.2.7244 2010.01.18 -
F-Prot 4.5.1.85 2010.01.18 -
[B]F-Secure 9.0.15370.0 2010.01.19 Trojan.Generic.2990194
Fortinet 4.0.14.0 2010.01.19 W32/PogBlock.RI!tr
GData 19 2010.01.19 Trojan.Generic.2990194
Ikarus T3.1.1.80.0 2010.01.19 Trojan-Ransom[/B]
Jiangmin 13.0.900 2010.01.19 -
K7AntiVirus 7.10.950 2010.01.18 -
[B]Kaspersky 7.0.0.125 2010.01.19 Trojan-Ransom.Win32.PogBlock.ri[/B]
McAfee 5865 2010.01.18 -
McAfee+Artemis 5865 2010.01.18 -
[B]McAfee-GW-Edition 6.8.5 2010.01.19 Heuristic.BehavesLike.Win32.Suspicious.I
Microsoft 1.5302 2010.01.19 Trojan:Win32/Ransom.U
NOD32 4784 2010.01.18 a variant of Win32/LockScreen.FY[/B]
Norman 6.04.03 2010.01.18 -
nProtect 2009.1.8.0 2010.01.18 -
[B]Panda 10.0.2.2 2010.01.18 Trj/CI.A
PCTools 7.0.3.5 2010.01.19 Trojan.Generic[/B]
Prevx 3.0 2010.01.19 -
Rising 22.31.01.04 2010.01.19 -
Sophos 4.49.0 2010.01.19 -
Sunbelt 3.2.1858.2 2010.01.19 -
[B]Symantec 20091.2.0.41 2010.01.19 Trojan Horse[/B]
TheHacker 6.5.0.6.156 2010.01.19 -
[B]TrendMicro 9.120.0.1004 2010.01.19 TROJ_RANSOM.GY[/B]
VBA32 3.12.12.1 2010.01.19 -
ViRobot 2010.1.19.2144 2010.01.19 -
VirusBuster 5.0.21.0 2010.01.18 -
Additional information
File size: 366080 bytes
MD5...: 11906989071a01c79fdaeeab2a87d41b
SHA1..: caa3fbb7933331620984983218d760c37cba6bbd
SHA256: 5820dfe90f6601acfe4e6767a7b1e5a20d8a9a4a67b1e2d554969020f17038da
ssdeep: 6144:nTR2p3PBkpEPmuxDADcozUn4uYH4hA6+b7TBLl7XAOsJebmPdSTte:TR2ZB<BR>CEPbkAwRuYYhA6+PTtl7X6eb+<BR>
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x21b53<BR>timedatestamp.....: 0x4b41ffb3 (Mon Jan 04 14:48:19 2010)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 4 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x3d525 0x3d600 6.71 1b3e7d296599a3767a9165e51388c650<BR>.rdata 0x3f000 0xd38e 0xd400 6.50 2602468a94aad5f9136f75c02d4300e0<BR>.data 0x4d000 0x10864 0xe600 7.77 482214080c1cfc2d304b041eff66a15c<BR>.rsrc 0x5e000 0x10 0x200 0.00 bf619eac0cdf3f68d496ea9344137e8b<BR><BR>( 7 imports ) <BR>> KERNEL32.dll: GetLongPathNameW, SetFileApisToANSI, SystemTimeToFileTime, SetFileValidData, GetSystemTime, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, FindClose, MoveFileExW, GetCompressedFileSizeW, UnmapViewOfFile, SetFileShortNameW, FindNextFileW, GetFileAttributesExW, GetBinaryTypeW, GetShortPathNameW, GetFileSize, CreateFileA, CreateHardLinkW, GetModuleFileNameA, FlushFileBuffers, SetFilePointer, GetFileSizeEx, GetFileType, MoveFileW, SetEndOfFile, CancelIo, SetFilePointerEx, TerminateProcess, Sleep, CreateFileMappingW, GetQueuedCompletionStatus, PostQueuedCompletionStatus, FindFirstFileW, MoveFileWithProgressW, MapViewOfFile, FlushViewOfFile, GetProcAddress, LoadLibraryA, GetFileTime, GetTempFileNameW, CopyFileW, UnlockFileEx, GetFileInformationByHandle, GetFullPathNameW, WinExec, DeleteFileW, SearchPathA, GetShortPathNameA, DeleteFileA, GetFileAttributesW, GetSystemDirectoryW, WideCharToMultiByte, ReadFileScatter, SetFileAttributesW, ExitProcess, OpenFileMappingW, UnlockFile, MultiByteToWideChar, GetLastError, CreateMutexW, GetModuleHandleA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetLocaleInfoA, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, GetSystemTimeAsFileTime, WriteFileEx, ReadFile, SetFileApisToOEM, GetModuleHandleW, GetModuleFileNameW, LockFile, WriteFileGather, ReadFileEx, SetFileTime, AreFileApisANSI, GetTickCount, CreateIoCompletionPort, SearchPathW, FindFirstFileExW, CloseHandle, WriteFile, CopyFileExW, CreateFileW, GetTempPathW, LockFileEx, ReplaceFileW, MapViewOfFileEx, GetCurrentProcessId, QueryPerformanceCounter, GetCommandLineW, GetCommandLineA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, SetHandleCount, GetConsoleMode, GetConsoleCP, HeapSize, HeapAlloc, HeapFree, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RaiseException, RtlUnwind, ExitThread, ResumeThread, CreateThread, GetVersionExA, GetProcessHeap, GetStartupInfoW, VirtualFree, VirtualAlloc, HeapReAlloc, HeapDestroy, HeapCreate, GetStdHandle, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, SetLastError, GetCurrentThreadId, InterlockedDecrement, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage<BR>> USER32.dll: GetClientRect, GetWindowDC, ReleaseDC, GetDesktopWindow, GetWindowRect, CreateWindowExW, DrawTextW, SetTimer, LoadCursorW, ShowWindow, UpdateWindow, GetDC, GetMessageW, TranslateMessage, DispatchMessageW, UnregisterClassW, DefWindowProcW, KillTimer, PostQuitMessage, BeginPaint, EndPaint<BR>> GDI32.dll: SetBkMode, SetTextColor, CreateCompatibleBitmap, CreateCompatibleDC, BitBlt, GetDIBits, DeleteDC, CreatePen, SelectObject, CreateSolidBrush, Rectangle, DeleteObject, SetDIBitsToDevice, CreateFontW<BR>> ADVAPI32.dll: RegQueryValueExW, RegOpenKeyExW, RegSetValueExW, RegCloseKey, SetFileSecurityW, RegCreateKeyExW<BR>> SHELL32.dll: SHGetFolderPathA<BR>> RPCRT4.dll: UuidCreate, RpcStringFreeW, UuidToStringW<BR>> WININET.dll: InternetReadFile, HttpSendRequestW, HttpOpenRequestW, InternetConnectW, InternetOpenW, InternetCrackUrlW, InternetCloseHandle<BR><BR>( 0 exports ) <BR>
RDS...: NSRL Reference Data Set<BR>-
sigcheck:<BR>publisher....: n/a<BR>copyright....: n/a<BR>product......: n/a<BR>description..: n/a<BR>original name: n/a<BR>internal name: n/a<BR>file version.: n/a<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
trid..: Win32 Executable MS Visual C++ (generic) (65.2%)<BR>Win32 Executable Generic (14.7%)<BR>Win32 Dynamic Link Library (generic) (13.1%)<BR>Generic Win/DOS Executable (3.4%)<BR>DOS Executable Generic (3.4%)
pdfid.: -
[/CODE]
-
Файл [B]Install_Digital-Access_v.9251.exe[/B] получен 2010.01.19 17:58:48 (UTC)
Результат: [B][COLOR="Red"]2[/COLOR][/B]/41 (4.88%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.50 2010.01.19 -
AhnLab-V3 5.0.0.2 2010.01.19 -
AntiVir 7.9.1.142 2010.01.19 -
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.19 -
Avast 4.8.1351.0 2010.01.19 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.19 -
[B]CAT-QuickHeal 10.00 2010.01.19 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.19 -
Comodo 3638 2010.01.19 -
DrWeb 5.0.1.12222 2010.01.19 -
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7245 2010.01.19 -
F-Prot 4.5.1.85 2010.01.18 -
F-Secure 9.0.15370.0 2010.01.19 -
Fortinet 4.0.14.0 2010.01.19 -
GData 19 2010.01.19 -
Ikarus T3.1.1.80.0 2010.01.19 -
Jiangmin 13.0.900 2010.01.19 -
K7AntiVirus 7.10.950 2010.01.18 -
Kaspersky 7.0.0.125 2010.01.19 -
McAfee 5865 2010.01.18 -
McAfee+Artemis 5865 2010.01.18 -
McAfee-GW-Edition 6.8.5 2010.01.19 -
Microsoft 1.5302 2010.01.19 -
[B]NOD32 4786 2010.01.19 a variant of Win32/Kryptik.BCA[/B]
Norman 6.04.03 2010.01.19 -
nProtect 2009.1.8.0 2010.01.19 -
Panda 10.0.2.2 2010.01.19 -
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.19 -
Rising 22.31.01.04 2010.01.19 -
Sophos 4.49.0 2010.01.19 -
Sunbelt 3.2.1858.2 2010.01.19 -
Symantec 20091.2.0.41 2010.01.19 -
TheHacker 6.5.0.6.156 2010.01.19 -
TrendMicro 9.120.0.1004 2010.01.19 -
VBA32 3.12.12.1 2010.01.19 -
ViRobot 2010.1.19.2144 2010.01.19 -
VirusBuster 5.0.21.0 2010.01.19 -
Дополнительная информация
File size: 154120 bytes
MD5...: f0742ca9615a5dea190491d61a416fc0[/QUOTE]
-
File Piggy.zip received on 2010.01.19 20:02:52 (UTC)
[code]
Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.19 -
AhnLab-V3 5.0.0.2 2010.01.19 -
AntiVir 7.9.1.142 2010.01.19 Worm/QiMiral.Y
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.19 -
Avast 4.8.1351.0 2010.01.19 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.19 -
CAT-QuickHeal 10.00 2010.01.19 -
ClamAV 0.94.1 2010.01.19 -
Comodo 3638 2010.01.19 -
DrWeb 5.0.1.12222 2010.01.19 Win32.HLLW.Piggy
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7246 2010.01.19 -
F-Prot 4.5.1.85 2010.01.18 -
F-Secure 9.0.15370.0 2010.01.19 -
Fortinet 4.0.14.0 2010.01.19 -
GData 19 2010.01.19 -
Ikarus T3.1.1.80.0 2010.01.19 IM-Worm.Win32.QiMiral
Jiangmin 13.0.900 2010.01.19 -
K7AntiVirus 7.10.950 2010.01.18 -
Kaspersky 7.0.0.125 2010.01.19 IM-Worm.Win32.QiMiral.y
McAfee 5866 2010.01.19 -
McAfee+Artemis 5866 2010.01.19 Artemis!1ED597E4D6A8
McAfee-GW-Edition 6.8.5 2010.01.19 Worm.QiMiral.Y
Microsoft 1.5302 2010.01.19 Trojan:Win32/Qimiral.A
NOD32 4787 2010.01.19 a variant of Win32/QiMiral.AA
Norman 6.04.03 2010.01.19 -
nProtect 2009.1.8.0 2010.01.19 -
Panda 10.0.2.2 2010.01.19 Trj/CI.A
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.19 High Risk Cloaked Malware
Rising 22.31.01.04 2010.01.19 Trojan.Spy.Banbra.pug
Sophos 4.49.0 2010.01.19 -
Sunbelt 3.2.1858.2 2010.01.19 -
Symantec 20091.2.0.41 2010.01.19 -
TheHacker 6.5.0.6.156 2010.01.19 -
TrendMicro 9.120.0.1004 2010.01.19 -
VBA32 3.12.12.1 2010.01.19 -
ViRobot 2010.1.19.2144 2010.01.19 -
VirusBuster 5.0.21.0 2010.01.19 -
[/code]
Additional information
File size: 547054 bytes
MD5 : 72751c42070eb0567ba0baae232034f1
SHA1 : 7187059987cfc888a805522fbc850fda7fbb2100
SHA256: ef77549f34d17ce3feaf9891d9023ab26553e1e52b64479feda7ccbc6bd3322d
TrID : File type identification<BR>ZIP compressed archive (100.0%)
ssdeep: 12288:pCxiq7wng735LcN7ayF4Qmr7FWTfUN8XNY/P:pCXw25LcUe4Qmr7FWbUIY/P
Prevx Info: <A href="http://info.prevx.com/aboutprogramtext.asp?PX5=C319B6BC001521C79EF8171251FB330065334CE2" target="_blank">http://info.prevx.com/aboutprogramtext.asp?PX5=C319B6BC001521C79EF8171251FB330065334CE2</A>
PEiD : -
RDS : NSRL Reference Data Set<BR>-
[url]http://www.virustotal.com/analisis/ef77549f34d17ce3feaf9891d9023ab26553e1e52b64479feda7ccbc6bd3322d-1263931372[/url]
[size="1"][color="#666686"][B][I]Добавлено через 10 часов 13 минут[/I][/B][/color][/size]
File Piggy.zip received on 2010.01.20 06:51:47 (UTC)
[code]
Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.20 -
AhnLab-V3 5.0.0.2 2010.01.19 -
AntiVir 7.9.1.142 2010.01.19 -
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.20 -
Avast 4.8.1351.0 2010.01.19 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.20 -
CAT-QuickHeal 10.00 2010.01.20 -
ClamAV 0.94.1 2010.01.20 -
Comodo 3642 2010.01.20 -
[B]DrWeb 5.0.1.12222 2010.01.20 Win32.HLLW.Piggy[/B]
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7247 2010.01.20 -
F-Prot 4.5.1.85 2010.01.19 -
F-Secure 9.0.15370.0 2010.01.20 -
Fortinet 4.0.14.0 2010.01.20 -
GData 19 2010.01.20 -
Ikarus T3.1.1.80.0 2010.01.20 -
Jiangmin 13.0.900 2010.01.20 -
K7AntiVirus 7.10.950 2010.01.18 -
[B]Kaspersky 7.0.0.125 2010.01.20 IM-Worm.Win32.QiMiral.ab[/B]
McAfee 5866 2010.01.19 -
McAfee+Artemis 5866 2010.01.19 -
McAfee-GW-Edition 6.8.5 2010.01.20 -
[B]Microsoft 1.5302 2010.01.20 Trojan:Win32/Qimiral.A
NOD32 4788 2010.01.20 a variant of Win32/QiMiral.AA[/B]
Norman 6.04.03 2010.01.19 -
nProtect 2009.1.8.0 2010.01.20 -
[B]Panda 10.0.2.2 2010.01.19 Suspicious file[/B]
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.20 -
[B]Rising 22.31.02.03 2010.01.20 Trojan.Spy.Banbra.pug[/B]
Sophos 4.49.0 2010.01.20 -
Sunbelt 3.2.1858.2 2010.01.20 -
Symantec 20091.2.0.41 2010.01.20 -
TheHacker 6.5.0.6.156 2010.01.20 -
TrendMicro 9.120.0.1004 2010.01.20 -
VBA32 3.12.12.1 2010.01.20 -
ViRobot 2010.1.20.2145 2010.01.20 -
VirusBuster 5.0.21.0 2010.01.19 -
[/code]
Additional information
File size: 546704 bytes
MD5...: 6f827e286b6f9b6fa33b2972f108fbfc
SHA1..: 3a33b77e9b8c69e32a12d9311a832ab4be8f9301
SHA256: 26d6c9af1845eccf0be5ff615fc9267cbe2685fdd0cbda05f839cdb546cea6ef
ssdeep: 12288:hrzD3LCUk3tsNTMZ+ATht75ceglKFJuvE0ErLNWstHMW:dn3GswUA72K7u<BR>vE0IWstMW<BR>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<BR>-
sigcheck:<BR>publisher....: n/a<BR>copyright....: n/a<BR>product......: n/a<BR>description..: n/a<BR>original name: n/a<BR>internal name: n/a<BR>file version.: n/a<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
pdfid.: -
trid..: ZIP compressed archive (100.0%)
[url]http://www.virustotal.com/analisis/26d6c9af1845eccf0be5ff615fc9267cbe2685fdd0cbda05f839cdb546cea6ef-1263970307[/url]
[size="1"][color="#666686"][B][I]Добавлено через 5 минут[/I][/B][/color][/size]
File Piggy.zip received on 2010.01.20 06:57:58 (UTC)
[code]
Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.20 -
AhnLab-V3 5.0.0.2 2010.01.19 -
AntiVir 7.9.1.142 2010.01.19 -
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.20 -
Avast 4.8.1351.0 2010.01.19 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.20 -
CAT-QuickHeal 10.00 2010.01.20 -
ClamAV 0.94.1 2010.01.20 -
Comodo 3642 2010.01.20 -
[B]DrWeb 5.0.1.12222 2010.01.20 Win32.HLLW.Piggy[/B]
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7247 2010.01.20 -
F-Prot 4.5.1.85 2010.01.19 -
F-Secure 9.0.15370.0 2010.01.20 -
Fortinet 4.0.14.0 2010.01.20 -
GData 19 2010.01.20 -
[B]Ikarus T3.1.1.80.0 2010.01.20 IM-Worm.Win32.QiMiral[/B]
Jiangmin 13.0.900 2010.01.20 -
K7AntiVirus 7.10.950 2010.01.18 -
Kaspersky 7.0.0.125 2010.01.20 -
McAfee 5866 2010.01.19 -
[B]McAfee+Artemis 5866 2010.01.19 Artemis!48C08A532382[/B]
McAfee-GW-Edition 6.8.5 2010.01.20 -
[B]Microsoft 1.5302 2010.01.20 Trojan:Win32/Qimiral.A
NOD32 4788 2010.01.20 a variant of Win32/QiMiral.AA[/B]
Norman 6.04.03 2010.01.19 -
nProtect 2009.1.8.0 2010.01.20 -
[B]Panda 10.0.2.2 2010.01.19 Trj/CI.A[/B]
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.20 -
[B]Rising 22.31.02.03 2010.01.20 Trojan.Spy.Banbra.pug[/B]
[B]Sophos 4.49.0 2010.01.20 Mal/Generic-A[/B]
Sunbelt 3.2.1858.2 2010.01.20 -
Symantec 20091.2.0.41 2010.01.20 -
TheHacker 6.5.0.6.156 2010.01.20 -
TrendMicro 9.120.0.1004 2010.01.20 -
[B]VBA32 3.12.12.1 2010.01.20 IM-Worm.Win32.QiMiral[/B]
ViRobot 2010.1.20.2145 2010.01.20 -
VirusBuster 5.0.21.0 2010.01.19 -
[/CODE]
Additional information
File size: 547111 bytes
MD5...: 5941c29888979fd37b5b7adcf5803289
SHA1..: b4d440cc0d6945d8454f4d683b55deb5bc07034d
SHA256: fbe6391ef24f8797e644fc7bab5ecd96721bef44fae854b1e155a0c271545fdd
ssdeep: 12288:zosHUpv457v8gNFnMdbcdZRIgUIgN63JNgLFVzZaGmFNFuO:zos2QbJNld<BR>ZNJN8FV8luO<BR>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<BR>-
pdfid.: -
trid..: ZIP compressed archive (100.0%)
[url]http://www.virustotal.com/analisis/fbe6391ef24f8797e644fc7bab5ecd96721bef44fae854b1e155a0c271545fdd-1263970678[/url]
[size="1"][color="#666686"][B][I]Добавлено через 11 минут[/I][/B][/color][/size]
File Piggy.zip received on 2010.01.20 07:08:29 (UTC)
[code]Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.20 -
AhnLab-V3 5.0.0.2 2010.01.19 -
AntiVir 7.9.1.142 2010.01.19 -
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.20 -
Avast 4.8.1351.0 2010.01.19 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.20 -
CAT-QuickHeal 10.00 2010.01.20 -
ClamAV 0.94.1 2010.01.20 -
Comodo 3643 2010.01.20 -
[B]DrWeb 5.0.1.12222 2010.01.20 Win32.HLLW.Piggy[/B]
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7247 2010.01.20 -
F-Prot 4.5.1.85 2010.01.19 -
F-Secure 9.0.15370.0 2010.01.20 -
Fortinet 4.0.14.0 2010.01.20 -
GData 19 2010.01.20 -
[B]Ikarus T3.1.1.80.0 2010.01.20 IM-Worm.Win32.QiMiral[/B]
Jiangmin 13.0.900 2010.01.20 -
K7AntiVirus 7.10.950 2010.01.18 -
[B]Kaspersky 7.0.0.125 2010.01.20 IM-Worm.Win32.QiMiral.ac[/B]
McAfee 5866 2010.01.19 -
[B]McAfee+Artemis 5866 2010.01.19 Artemis!2B330CB5C999[/B]
McAfee-GW-Edition 6.8.5 2010.01.20 -
[B]Microsoft 1.5302 2010.01.20 Trojan:Win32/Qimiral.A
NOD32 4788 2010.01.20 a variant of Win32/QiMiral.AA[/B]
Norman 6.04.03 2010.01.19 -
nProtect 2009.1.8.0 2010.01.20 -
[B]Panda 10.0.2.2 2010.01.19 Trj/CI.A[/B]
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.20 -
[B]Rising 22.31.02.03 2010.01.20 Trojan.Spy.Banbra.pug[/B]
Sophos 4.49.0 2010.01.20 -
Sunbelt 3.2.1858.2 2010.01.20 -
Symantec 20091.2.0.41 2010.01.20 -
TheHacker 6.5.0.6.156 2010.01.20 -
TrendMicro 9.120.0.1004 2010.01.20 -
VBA32 3.12.12.1 2010.01.20 -
ViRobot 2010.1.20.2145 2010.01.20 -
VirusBuster 5.0.21.0 2010.01.19 -[/code]
Additional information
File size: 547544 bytes
MD5...: 7017cb717f216c054ba29b3fd6543297
SHA1..: 557c8a7fedda92ef6e5e95fd318753cf0d6e7727
SHA256: 91246861b0ef45171fd864e94ed2fc828d10e9e2bb6aba0059c3c981a855af12
ssdeep: 12288:oxHFQJlSSVRUNCWASny5Z5kH2u5v4oQ2EgBEGq/ymPdosD08ExQi2:oxHF
[url]http://www.virustotal.com/analisis/91246861b0ef45171fd864e94ed2fc828d10e9e2bb6aba0059c3c981a855af12-1263971309[/url]
-
Файл [B]000038.jpg.jar[/B] получен 2010.01.20 07:06:19 (UTC)
Результат: [B][COLOR="Red"]8[/COLOR][/B]/41 (19.52%)
[QUOTE]Антивирус Версия Обновление Результат
a-squared 4.5.0.50 2010.01.20 -
AhnLab-V3 5.0.0.2 2010.01.19 -
[B]AntiVir 7.9.1.142 2010.01.19 JAVA/SMS.J2ME.M
Antiy-AVL 2.0.3.7 2010.01.19 Trojan/J2ME.Small[/B]
Authentium 5.2.0.5 2010.01.20 -
Avast 4.8.1351.0 2010.01.19 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.20 -
CAT-QuickHeal 10.00 2010.01.20 -
[B]ClamAV 0.94.1 2010.01.20 Trojan.SMS-3
Comodo 3643 2010.01.20 TrojWare.J2ME.SMS.Small.m
DrWeb 5.0.1.12222 2010.01.20 Java.SMSSend.132[/B]
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7247 2010.01.20 -
F-Prot 4.5.1.85 2010.01.19 -
F-Secure 9.0.15370.0 2010.01.20 -
Fortinet 4.0.14.0 2010.01.20 -
GData 19 2010.01.20 -
[B]Ikarus T3.1.1.80.0 2010.01.20 Trojan-SMS[/B]
Jiangmin 13.0.900 2010.01.20 -
K7AntiVirus 7.10.950 2010.01.18 -
[B]Kaspersky 7.0.0.125 2010.01.20 Trojan-SMS.J2ME.Small.m[/B]
McAfee 5866 2010.01.19 -
McAfee+Artemis 5866 2010.01.19 -
[B]McAfee-GW-Edition 6.8.5 2010.01.20 Java.SMS.J2ME.M[/B]
Microsoft 1.5302 2010.01.20 -
NOD32 4788 2010.01.20 -
Norman 6.04.03 2010.01.19 -
nProtect 2009.1.8.0 2010.01.20 -
Panda 10.0.2.2 2010.01.19 -
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.20 -
Rising 22.31.02.03 2010.01.20 -
Sophos 4.49.0 2010.01.20 -
Sunbelt 3.2.1858.2 2010.01.20 -
Symantec 20091.2.0.41 2010.01.20 -
TheHacker 6.5.0.6.156 2010.01.20 -
TrendMicro 9.120.0.1004 2010.01.20 -
VBA32 3.12.12.1 2010.01.20 -
ViRobot 2010.1.20.2145 2010.01.20 -
VirusBuster 5.0.21.0 2010.01.19 -[/QUOTE]
Дополнительная информация
File size: 29849 bytes
MD5...: ba64b80b77b14576c3c0844e68ff7238
[url]http://www.virustotal.com/ru/analisis/b6835be56a5f9818265e1335b5f8e50c31813ea4551f17ae2f3f4bc3508ac880-1263971179[/url]
-
File game.jar received on 2010.01.20 14:57:20 (UTC)
Result: 7/41 (17.08%)
[QUOTE]a-squared 4.5.0.50 2010.01.20 -
AhnLab-V3 5.0.0.2 2010.01.19 -
AntiVir 7.9.1.142 2010.01.20 -
[B]Antiy-AVL 2.0.3.7 2010.01.20 Trojan/J2ME.Jifake[/B]
Authentium 5.2.0.5 2010.01.20 -
Avast 4.8.1351.0 2010.01.20 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.20 -
CAT-QuickHeal 10.00 2010.01.20 -
ClamAV 0.94.1 2010.01.20 -
[B]Comodo 3647 2010.01.20 TrojWare.J2ME.SMS.Jifake.g[/B]
[B]DrWeb 5.0.1.12222 2010.01.20 Java.SMSSend.117[/B]
eSafe 7.0.17.0 2010.01.19 -
eTrust-Vet 35.2.7247 2010.01.20 -
F-Prot 4.5.1.85 2010.01.19 -
F-Secure 9.0.15370.0 2010.01.20 -
Fortinet 4.0.14.0 2010.01.20 -
GData 19 2010.01.20 -
[B]Ikarus T3.1.1.80.0 2010.01.20 Win32.SuspectCrc[/B]
Jiangmin 13.0.900 2010.01.20 -
K7AntiVirus 7.10.950 2010.01.18 -
[B]Kaspersky 7.0.0.125 2010.01.20 Trojan-SMS.J2ME.Jifake.g[/B]
McAfee 5866 2010.01.19 -
McAfee+Artemis 5866 2010.01.19 -
McAfee-GW-Edition 6.8.5 2010.01.20 -
Microsoft 1.5302 2010.01.20 -
[B]NOD32 4789 2010.01.20 J2ME/TrojanSMS.Jifake.G[/B]
Norman 6.04.03 2010.01.20 -
nProtect 2009.1.8.0 2010.01.20 -
Panda 10.0.2.2 2010.01.19 -
PCTools 7.0.3.5 2010.01.19 -
Prevx 3.0 2010.01.20 -
Rising 22.31.02.04 2010.01.20 -
Sophos 4.49.0 2010.01.20 -
Sunbelt 3.2.1858.2 2010.01.20 -
Symantec 20091.2.0.41 2010.01.20 -
TheHacker 6.5.0.7.157 2010.01.20 -
TrendMicro 9.120.0.1004 2010.01.20 -
[B]VBA32 3.12.12.1 2010.01.20 Trojan-SMS.J2ME.Jifake.g[/B]
ViRobot 2010.1.20.2146 2010.01.20 -
VirusBuster 5.0.21.0 2010.01.20 -[/QUOTE]
[url]http://www.virustotal.com/analisis/a4570feadce03d7d13f486529c560eb07097bd7d494e9c875a6d26b8aabffa8a-1263999440[/url]
-
Файл es_chemgan.EXE получен 2010.01.20 21:14:06 (UTC)
Результат: 9/41 (21.96%)
[QUOTE][B]a-squared 4.5.0.50 2010.01.20 Backdoor.Win32.Bifrose.caqd!A2 [/B]
AhnLab-V3 5.0.0.2 2010.01.20 -
AntiVir 7.9.1.146 2010.01.20 -
Antiy-AVL 2.0.3.7 2010.01.20 -
[B]Authentium 5.2.0.5 2010.01.20 W32/Joke.OA [/B]
Avast 4.8.1351.0 2010.01.20 -
AVG 9.0.0.730 2010.01.19 -
BitDefender 7.2 2010.01.20 -
CAT-QuickHeal 10.00 2010.01.20 -
[B]ClamAV 0.94.1 2010.01.20 Trojan.Downloader-20749
Comodo 3650 2010.01.20 TrojWare.Win32.Trojan.Chifrax.~A [/B]
DrWeb 5.0.1.12222 2010.01.20 -
eSafe 7.0.17.0 2010.01.20 -
eTrust-Vet 35.2.7249 2010.01.20 -
[B]F-Prot 4.5.1.85 2010.01.20 W32/Joke.OA [/B]
F-Secure 9.0.15370.0 2010.01.20 -
[B]Fortinet 4.0.14.0 2010.01.20 Joke/ScreenRoses [/B]
GData 19 2010.01.20 -
Ikarus T3.1.1.80.0 2010.01.20 -
Jiangmin 13.0.900 2010.01.20 -
K7AntiVirus 7.10.951 2010.01.20 -
Kaspersky 7.0.0.125 2010.01.20 -
McAfee 5867 2010.01.20 -
McAfee+Artemis 5867 2010.01.20 -
[B]McAfee-GW-Edition 6.8.5 2010.01.20 Heuristic.LooksLike.Win32.Suspicious.S!85 [/B]
Microsoft 1.5302 2010.01.20 -
NOD32 4791 2010.01.20 -
Norman 6.04.03 2010.01.20 -
[B]nProtect 2009.1.8.0 2010.01.20 Trojan/W32.Agent.914944.H[/B]
Panda 10.0.2.2 2010.01.20 -
PCTools 7.0.3.5 2010.01.19 -
[B]Prevx 3.0 2010.01.20 High Risk Worm [/B]
Rising 22.31.02.04 2010.01.20 -
Sophos 4.50.0 2010.01.20 -
Sunbelt 3.2.1858.2 2010.01.20 -
Symantec 20091.2.0.41 2010.01.20 -
TheHacker 6.5.0.7.157 2010.01.20 -
TrendMicro 9.120.0.1004 2010.01.20 -
VBA32 3.12.12.1 2010.01.20 -
ViRobot 2010.1.20.2146 2010.01.20 -
VirusBuster 5.0.21.0 2010.01.20 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/4358cb356073525d29b46eccc1c675cd97552c71396c2da8843f73a35ebb7dd6-1264022046[/url]
Файл mh.exe получен 2010.01.19 09:03:40 (UTC)
Результат: 21/41 (51.22%)
[QUOTE][B]a-squared 4.5.0.50 2010.01.19 PWS.Win32!IK [/B]
AhnLab-V3 5.0.0.2 2010.01.19 -
[B]AntiVir 7.9.1.142 2010.01.18 TR/Spy.118784.64 [/B]
Antiy-AVL 2.0.3.7 2010.01.19 -
Authentium 5.2.0.5 2010.01.19 -
Avast 4.8.1351.0 2010.01.18 -
[B]AVG 9.0.0.730 2010.01.18 Worm/Generic_c.AHU
BitDefender 7.2 2010.01.19 Gen:Trojan.Heur.Nsanti.hyWbeKQ0ZH [/B]
CAT-QuickHeal 10.00 2010.01.19 -
[B]ClamAV 0.94.1 2010.01.19 PUA.Packed.ASPack212[/B]
Comodo 3634 2010.01.19 -
[B]DrWeb 5.0.1.12222 2010.01.19 Trojan.Packed.732 [/B]
eSafe 7.0.17.0 2010.01.18 -
eTrust-Vet 35.2.7244 2010.01.18 -
F-Prot 4.5.1.85 2010.01.18 -
[B]F-Secure 9.0.15370.0 2010.01.19 Gen:Trojan.Heur.Nsanti.hyWbeKQ0ZH [/B]
Fortinet 4.0.14.0 2010.01.19 -
[B]GData 19 2010.01.19 Gen:Trojan.Heur.Nsanti.hyWbeKQ0ZH
Ikarus T3.1.1.80.0 2010.01.19 PWS.Win32 [/B]
Jiangmin 13.0.900 2010.01.19 -
K7AntiVirus 7.10.950 2010.01.18 -
Kaspersky 7.0.0.125 2010.01.19 -
[B]McAfee 5865 2010.01.18 PWS-Gamania.b!a
McAfee+Artemis 5865 2010.01.18 PWS-Gamania.b!a
McAfee-GW-Edition 6.8.5 2010.01.19 Heuristic.LooksLike.Win32.Suspicious.H
Microsoft 1.5302 2010.01.19 PWS:Win32/Frethog.gen!H
NOD32 4784 2010.01.18 Win32/AutoRun.PSW.OnlineGames.AP[/B]
Norman 6.04.03 2010.01.18 -
nProtect 2009.1.8.0 2010.01.18 -
[B]Panda 10.0.2.2 2010.01.18 Generic Trojan [/B]
PCTools 7.0.3.5 2010.01.19 -
[B]Prevx 3.0 2010.01.19 Medium Risk Malware
Rising 22.31.01.04 2010.01.19 Trojan.Win32.Generic.51F78EB8
Sophos 4.49.0 2010.01.19 Mal/Generic-A
Sunbelt 3.2.1858.2 2010.01.19 Worm.Win32.AutoRun
Symantec 20091.2.0.41 2010.01.19 W32.Gammima.AG [/B]
TheHacker 6.5.0.6.156 2010.01.19 -
[B]TrendMicro 9.120.0.1004 2010.01.19 PAK_Generic.001 [/B]
VBA32 3.12.12.1 2010.01.19 -
ViRobot 2010.1.19.2144 2010.01.19 -
VirusBuster 5.0.21.0 2010.01.18 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/aca5d0214c6cad6bc2bdf00f4cff60ef36354f964a06491f8c62e599eb28f247-1263891820[/url]
Файл scrnrdr.exe получен 2010.01.09 08:10:21 (UTC)
Результат: 15/41 (36.59%)
[QUOTE]a-squared 4.5.0.48 2010.01.09 -
AhnLab-V3 5.0.0.2 2010.01.09 -
AntiVir 7.9.1.130 2010.01.08 -
[B]Antiy-AVL 2.0.3.7 2010.01.08 Trojan/Win32.Agent2.gen [/B]
Authentium 5.2.0.5 2010.01.09 -
Avast 4.8.1351.0 2010.01.08 -
[B]AVG 8.5.0.430 2010.01.04 Agent.AXNF [/B]
BitDefender 7.2 2010.01.09 -
CAT-QuickHeal 10.00 2010.01.09 -
ClamAV 0.94.1 2010.01.09 -
[B]Comodo 3514 2010.01.08 TrojWare.Win32.Agent2.cdb [/B]
DrWeb 5.0.1.12222 2010.01.09 -
eSafe 7.0.17.0 2010.01.07 -
eTrust-Vet 35.2.7226 2010.01.08 -
F-Prot 4.5.1.85 2010.01.08 -
F-Secure 9.0.15370.0 2010.01.09 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.09 -
Ikarus T3.1.1.80.0 2010.01.09 -
[B]Jiangmin 13.0.900 2010.01.09 Trojan/Agenta.cv
K7AntiVirus 7.10.942 2010.01.08 Trojan.Win32.Agent2 [/B]
Kaspersky 7.0.0.125 2010.01.09 -
[B]McAfee 5855 2010.01.08 Generic.dx
McAfee+Artemis 5855 2010.01.08 Generic.dx [/B]
McAfee-GW-Edition 6.8.5 2010.01.09 -
Microsoft 1.5302 2010.01.09 -
NOD32 4755 2010.01.08 -
[B]Norman 6.04.03 2010.01.08 W32/Agent.LJVA
nProtect 2009.1.8.0 2010.01.09 Trojan/W32.Agent2.20480.AJ
Panda 10.0.2.2 2010.01.08 Trj/Zlob.KH[/B]
PCTools 7.0.3.5 2010.01.09 -
[B]Prevx 3.0 2010.01.09 High Risk Worm [/B]
Rising 22.29.05.04 2010.01.09 -
Sophos 4.49.0 2010.01.09 -
[B]Sunbelt 3.2.1858.2 2010.01.09 Trojan.Win32.Generic!BT [/B]
Symantec 20091.2.0.41 2010.01.09 -
[B]TheHacker 6.5.0.3.143 2010.01.09 Trojan/Agent2.cdb
TrendMicro 9.120.0.1004 2010.01.09 TROJ_ZLOB.FML [/B]
VBA32 3.12.12.1 2010.01.09 -
[B]ViRobot 2010.1.8.2128 2010.01.08 Spyware.Agent.20480.V[/B]
VirusBuster 5.0.21.0 2010.01.08 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/af5a31c3bbfb71d48ba22d1a18819a624b239f79e61d326a41fd868aa57bc288-1263024621[/url]
-
Файл [B]clips01505.scr[/B] получен 2010.01.21 17:17:05 (UTC)
Результат: [B][COLOR="Red"]9[/COLOR][/B]/41 (21.95%)
[QUOTE]Антивирус Версия Обновление Результат
[B]a-squared 4.5.0.50 2010.01.21 Gen.Trojan!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.21 -
[B]AntiVir 7.9.1.146 2010.01.21 TR/Dropper.Gen[/B]
Antiy-AVL 2.0.3.7 2010.01.21 -
Authentium 5.2.0.5 2010.01.21 -
Avast 4.8.1351.0 2010.01.21 -
AVG 9.0.0.730 2010.01.21 -
[B]BitDefender 7.2 2010.01.21 Gen:Trojan.Heur.mq0@s9!axieOu[/B]
CAT-QuickHeal 10.00 2010.01.21 -
ClamAV 0.94.1 2010.01.21 -
Comodo 3659 2010.01.21 -
[B]DrWeb 5.0.1.12222 2010.01.21 Trojan.PWS.LDPinch.1941[/B]
eSafe 7.0.17.0 2010.01.20 -
eTrust-Vet 35.2.7250 2010.01.21 -
F-Prot None 2010.01.20 -
[B]F-Secure 9.0.15370.0 2010.01.21 Gen:Trojan.Heur.mq0@s9!axieOu[/B]
Fortinet 4.0.14.0 2010.01.21 -
[B]GData 19 2010.01.21 Gen:Trojan.Heur.mq0@s9!axieOu[/B]
Ikarus T3.1.1.80.0 2010.01.21 -
Jiangmin 13.0.900 2010.01.21 -
K7AntiVirus 7.10.951 2010.01.20 -
Kaspersky 7.0.0.125 2010.01.21 -
McAfee 5867 2010.01.20 -
[B]McAfee+Artemis 5867 2010.01.20 Artemis!E48B9FF1A99B[/B]
McAfee-GW-Edition 6.8.5 2010.01.21 [B]Heuristic.LooksLike.Win32.Suspicious.L!80[/B]
Microsoft 1.5302 2010.01.21 -
NOD32 4791 2010.01.20 -
[B]Norman 6.04.03 2010.01.20 W32/Obfuscated.N2!genr[/B]
nProtect 2009.1.8.0 2010.01.21 -
Panda 10.0.2.2 2010.01.21 -
PCTools 7.0.3.5 2010.01.21 -
Prevx 3.0 2010.01.21 -
Rising 22.31.03.04 2010.01.21 -
Sophos 4.50.0 2010.01.21 -
Sunbelt 3.2.1858.2 2010.01.21 -
Symantec 20091.2.0.41 2010.01.21 -
TheHacker 6.5.0.8.157 2010.01.21 -
TrendMicro 9.120.0.1004 2010.01.21 -
VBA32 3.12.12.1 2010.01.20 -
ViRobot 2010.1.21.2148 2010.01.21 -
VirusBuster 5.0.21.0 2010.01.20 -
Дополнительная информация
File size: 196608 bytes
MD5 : e48b9ff1a99b89db5e3ba25b080a73b9[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/6d6332a2a0a0299d8787b62565aae50f76b5bd76537f0f3ca14249785cf5678b-1264094225[/url]
-
File asd3.tmp received on 2010.01.21 19:58:48 (UTC)
Current status: Loading ... finished
Result: 5/41 (12.2%)
[QUOTE]Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.21 -
AhnLab-V3 5.0.0.2 2010.01.21 -
AntiVir 7.9.1.146 2010.01.21 -
Antiy-AVL 2.0.3.7 2010.01.21 -
Authentium 5.2.0.5 2010.01.21 -
Avast 4.8.1351.0 2010.01.21 -
AVG 9.0.0.730 2010.01.21 -
BitDefender 7.2 2010.01.21 -
[B]CAT-QuickHeal 10.00 2010.01.21 (Suspicious) - DNAScan[/B]
ClamAV 0.94.1 2010.01.21 -
Comodo 3660 2010.01.21 -
DrWeb 5.0.1.12222 2010.01.21 -
eSafe 7.0.17.0 2010.01.21 -
eTrust-Vet 35.2.7250 2010.01.21 -
F-Prot 4.5.1.85 2010.01.20 -
F-Secure 9.0.15370.0 2010.01.21 -
Fortinet 4.0.14.0 2010.01.21 -
GData 19 2010.01.21 -
Ikarus T3.1.1.80.0 2010.01.21 -
Jiangmin 13.0.900 2010.01.21 -
K7AntiVirus 7.10.951 2010.01.20 -
Kaspersky 7.0.0.125 2010.01.21 -
McAfee 5868 2010.01.21 -
McAfee+Artemis 5868 2010.01.21 -
McAfee-GW-Edition 6.8.5 2010.01.21 -
[B]Microsoft 1.5302 2010.01.21 VirTool:Win32/Obfuscator.FI
NOD32 4794 2010.01.21 a variant of Win32/Kryptik.BXJ[/B]
Norman 6.04.03 2010.01.21 -
nProtect 2009.1.8.0 2010.01.21 -
Panda 10.0.2.2 2010.01.21 -
PCTools 7.0.3.5 2010.01.21 -
[B]Prevx 3.0 2010.01.21 Medium Risk Malware[/B]
Rising 22.31.03.04 2010.01.21 -
[B]Sophos 4.50.0 2010.01.21 Mal/FakeAV-AX[/B]
Sunbelt 3.2.1858.2 2010.01.21 -
Symantec 20091.2.0.41 2010.01.21 -
TheHacker 6.5.0.9.158 2010.01.21 -
TrendMicro 9.120.0.1004 2010.01.21 -
VBA32 3.12.12.1 2010.01.20 -
ViRobot 2010.1.21.2148 2010.01.21 -
VirusBuster 5.0.21.0 2010.01.20 -[/QUOTE]
[url]http://www.virustotal.com/analisis/b34b841c93b2a024a7041c4a4ab3b0be9ab7c416f306ff993252885eecc255cb-1264103928[/url]
Печальна ситуация с пакованными вымогателями :(
-
File foto.jar received on 2010.01.21 21:57:56 (UTC)
Result: 8/41 (19.52%)
[QUOTE]a-squared 4.5.0.50 2010.01.21 -
AhnLab-V3 5.0.0.2 2010.01.21 -
[B]AntiVir 7.9.1.146 2010.01.21 JAVA/SMS.J2ME.M[/B]
[B]Antiy-AVL 2.0.3.7 2010.01.21 Trojan/J2ME.Small[/B]
Authentium 5.2.0.5 2010.01.21 -
Avast 4.8.1351.0 2010.01.21 -
AVG 9.0.0.730 2010.01.21 -
BitDefender 7.2 2010.01.21 -
CAT-QuickHeal 10.00 2010.01.21 -
[B]ClamAV 0.94.1 2010.01.21 Trojan.SMS-3[/B]
[B]Comodo 3662 2010.01.21 TrojWare.J2ME.SMS.Small.m[/B]
[B]DrWeb 5.0.1.12222 2010.01.21 Java.SMSSend.132[/B]
eSafe 7.0.17.0 2010.01.21 -
eTrust-Vet 35.2.7251 2010.01.21 -
F-Prot 4.5.1.85 2010.01.21 -
F-Secure 9.0.15370.0 2010.01.21 -
Fortinet 4.0.14.0 2010.01.21 -
GData 19 2010.01.21 -
[B]Ikarus T3.1.1.80.0 2010.01.21 Trojan.Sms.J2me[/B]
Jiangmin 13.0.900 2010.01.21 -
K7AntiVirus 7.10.951 2010.01.20 -
[B]Kaspersky 7.0.0.125 2010.01.21 Trojan-SMS.J2ME.Small.m[/B]
McAfee 5868 2010.01.21 -
McAfee+Artemis 5868 2010.01.21 -
[B]McAfee-GW-Edition 6.8.5 2010.01.21 Java.SMS.J2ME.M[/B]
Microsoft 1.5302 2010.01.21 -
NOD32 4794 2010.01.21 -
Norman 6.04.03 2010.01.21 -
nProtect 2009.1.8.0 2010.01.21 -
Panda 10.0.2.2 2010.01.21 -
PCTools 7.0.3.5 2010.01.21 -
Prevx 3.0 2010.01.21 -
Rising 22.31.03.04 2010.01.21 -
Sophos 4.50.0 2010.01.21 -
Sunbelt 3.2.1858.2 2010.01.21 -
Symantec 20091.2.0.41 2010.01.21 -
TheHacker 6.5.0.9.158 2010.01.21 -
TrendMicro 9.120.0.1004 2010.01.21 -
VBA32 3.12.12.1 2010.01.21 -
ViRobot 2010.1.21.2149 2010.01.21 -
VirusBuster 5.0.21.0 2010.01.21 -[/QUOTE]
[url]http://www.virustotal.com/analisis/3e7ee40675925f10c219d424eda305eb65b1b338357661722c412b8aa6a509d0-1264111076[/url]
-
[QUOTE]Файл [B]9cU3MR6.exe[/B] получен 2010.01.23 12:17:21 (UTC)
Результат: [B][COLOR="Red"]6[/COLOR][/B]/41 (14.64%)
Антивирус Версия Обновление Результат
a-squared 4.5.0.50 2010.01.23 -
AhnLab-V3 5.0.0.2 2010.01.23 -
AntiVir 7.9.1.146 2010.01.22 -
Antiy-AVL 2.0.3.7 2010.01.22 -
Authentium 5.2.0.5 2010.01.23 -
Avast 4.8.1351.0 2010.01.22 -
[B]AVG 9.0.0.730 2010.01.23 SHeur2.CHHG[/B]
BitDefender 7.2 2010.01.23 -
[B]CAT-QuickHeal 10.00 2010.01.22 Win32.PE.Packed.Win32.Krap.af.4[/B]
ClamAV 0.94.1 2010.01.22 -
[B]Comodo 3681 2010.01.23 TrojWare.Win32.Trojan.Agent.Gen[/B]
DrWeb 5.0.1.12222 2010.01.23 -
eSafe 7.0.17.0 2010.01.21 -
eTrust-Vet 35.2.7255 2010.01.22 -
F-Prot 4.5.1.85 2010.01.22 -
F-Secure 9.0.15370.0 2010.01.23 -
Fortinet 4.0.14.0 2010.01.23 -
GData 19 2010.01.23 -
Ikarus T3.1.1.80.0 2010.01.23 -
Jiangmin 13.0.900 2010.01.23 -
K7AntiVirus 7.10.952 2010.01.22 -
Kaspersky 7.0.0.125 2010.01.23 -
McAfee 5869 2010.01.22 -
McAfee+Artemis 5869 2010.01.22 -
McAfee-GW-Edition 6.8.5 2010.01.23 -
Microsoft 1.5405 2010.01.23 -
[B]NOD32 4799 2010.01.23 a variant of Win32/Kryptik.BXD[/B]
Norman 6.04.03 2010.01.23 -
nProtect 2009.1.8.0 2010.01.23 -
Panda 10.0.2.2 2010.01.22 -
PCTools 7.0.3.5 2010.01.23 -
Prevx 3.0 2010.01.23 -
Rising 22.31.04.04 2010.01.22 -
Sophos 4.50.0 2010.01.23 -
Sunbelt 3.2.1858.2 2010.01.23 -
[B]Symantec 20091.2.0.41 2010.01.23 Suspicious.Cloud
TheHacker 6.5.0.9.160 2010.01.23 Trojan/Kryptik.bxd[/B]
TrendMicro 9.120.0.1004 2010.01.23 -
VBA32 3.12.12.1 2010.01.21 -
ViRobot 2010.1.22.2151 2010.01.22 -
VirusBuster 5.0.21.0 2010.01.22 -
Дополнительная информация
File size: 77312 bytes
MD5...: 9dfb52f4c1f4c7818d72b0f8ef25bc29[/QUOTE]
это был один из трех файлов вируса, который кроме основного функционала меняет роуты и hosts чтобы заблокировать сайты антивирусников и даже вирусинфо.инфо :)
-
Файл VK-Presents.exe получен 2010.01.24 10:37:46 (UTC)
Текущий статус: закончено
Результат: 21/41 (51.22%)
[QUOTE]Антивирус Версия Обновление Результат
[B]a-squared 4.5.0.50 2010.01.24 Trojan.Win32.Scar!IK[/B]
AhnLab-V3 5.0.0.2 2010.01.23 -
[B]AntiVir 7.9.1.146 2010.01.22 TR/Scar.bdyc
Antiy-AVL 2.0.3.7 2010.01.22 Trojan/Win32.Scar.gen[/B]
Authentium 5.2.0.5 2010.01.23 -
Avast 4.8.1351.0 2010.01.23 -
[B]AVG 9.0.0.730 2010.01.24 unknown virus Win32/DH.AA54534F48
BitDefender 7.2 2010.01.24 Trojan.Generic.IS.423258[/B]
CAT-QuickHeal 10.00 2010.01.22 -
ClamAV 0.94.1 2010.01.22 -
[B]Comodo 3690 2010.01.24 Heur.Suspicious[/B]
DrWeb 5.0.1.12222 2010.01.24 -
eSafe 7.0.17.0 2010.01.21 -
eTrust-Vet 35.2.7255 2010.01.22 -
F-Prot 4.5.1.85 2010.01.23 -
[B]F-Secure 9.0.15370.0 2010.01.24 Trojan.Generic.IS.423258
Fortinet 4.0.14.0 2010.01.24 W32/Scar.BDYC!tr
GData 19 2010.01.24 Trojan.Generic.IS.423258
Ikarus T3.1.1.80.0 2010.01.24 Trojan.Win32.Scar
Jiangmin 13.0.900 2010.01.24 Trojan/Scar.mwk
K7AntiVirus 7.10.952 2010.01.22 Trojan.Win32.Scar.bdyc
Kaspersky 7.0.0.125 2010.01.24 Trojan.Win32.Scar.bdyc[/B]
McAfee 5870 2010.01.23 -
[B]McAfee+Artemis 5870 2010.01.23 Artemis!2817B3A42999
McAfee-GW-Edition 6.8.5 2010.01.24 Heuristic.LooksLike.Win32.Trojan.I[/B]
Microsoft 1.5405 2010.01.24 -
[B]NOD32 4800 2010.01.23 a variant of Win32/Qhost.NRA
Norman 6.04.03 2010.01.24 W32/Malware.KZGE[/B]
nProtect 2009.1.8.0 2010.01.24 -
[B]Panda 10.0.2.2 2010.01.23 Trj/Downloader.MDW
PCTools 7.0.3.5 2010.01.24 Trojan.Generic
Prevx 3.0 2010.01.24 High Risk Fraudulent Security Program[/B]
Rising 22.31.06.04 2010.01.24 -
Sophos 4.50.0 2010.01.24 -
Sunbelt 3.2.1858.2 2010.01.23 -
[B]Symantec 20091.2.0.41 2010.01.24 Trojan Horse[/B]
TheHacker 6.5.0.9.160 2010.01.24 -
TrendMicro 9.120.0.1004 2010.01.24 -
VBA32 3.12.12.1 2010.01.23 -
ViRobot 2010.1.23.2152 2010.01.23 -
VirusBuster 5.0.21.0 2010.01.23 -[/QUOTE]
Дополнительная информация
File size: 311808 bytes
MD5...: 2817b3a429999d984b0b97f1ae10c650
SHA1..: 05bfcb2f4d2c2587eaab9ff2ebc62a16bbf26cea
SHA256: 5c61ce0a66ec1b44229d050aecae51efd4647fa6d0b8a32cfa7ff51285544357
ssdeep: 6144:D+CiGeq5y3NBqaAKrqm4c9t2KSGkWg2iwjyIooo888888888888W8888888
8888V:D+C2BdVAKrAc9t2g9A888888888888WO
PEiD..: -
PEInfo: PE Structure information
[url]http://www.virustotal.com/ru/analisis/5c61ce0a66ec1b44229d050aecae51efd4647fa6d0b8a32cfa7ff51285544357-1264329466[/url]
-
Подозрительный файл
[QUOTE]a-squared 4.5.0.50 2010.01.25 -
AhnLab-V3 5.0.0.2 2010.01.23 -
AntiVir 7.9.1.150 2010.01.25 -
Antiy-AVL 2.0.3.7 2010.01.22 -
Authentium 5.2.0.5 2010.01.25 -
Avast 4.8.1351.0 2010.01.25 -
AVG 9.0.0.730 2010.01.25 -
BitDefender 7.2 2010.01.25 -
CAT-QuickHeal 10.00 2010.01.25 -
ClamAV 0.94.1 2010.01.25 -
Comodo 3705 2010.01.25 -
DrWeb 5.0.1.12222 2010.01.25 -
eSafe 7.0.17.0 2010.01.25 -
eTrust-Vet 35.2.7258 2010.01.25 -
F-Prot 4.5.1.85 2010.01.25 -
F-Secure 9.0.15370.0 2010.01.25 -
Fortinet 4.0.14.0 2010.01.25 -
GData 19 2010.01.25 -
Ikarus T3.1.1.80.0 2010.01.25 -
Jiangmin 13.0.900 2010.01.24 -
K7AntiVirus 7.10.952 2010.01.22 -
Kaspersky 7.0.0.125 2010.01.25 -
McAfee 5871 2010.01.24 -
McAfee+Artemis 5871 2010.01.24 -
McAfee-GW-Edition 6.8.5 2010.01.25 -
Microsoft 1.5405 2010.01.25 -
NOD32 4804 2010.01.25 -
Norman 6.04.03 2010.01.25 -
nProtect 2009.1.8.0 2010.01.25 -
Panda 10.0.2.2 2010.01.24 -
PCTools 7.0.3.5 2010.01.25 -
Prevx 3.0 2010.01.25 -
Rising 22.32.00.04 2010.01.25 -
Sophos 4.50.0 2010.01.25 -
Sunbelt 3.2.1858.2 2010.01.24 -
Symantec 20091.2.0.41 2010.01.25 -
[B]TheHacker 6.5.0.9.162 2010.01.25 Trojan/Spy.IamBigBrother.100[/B]
TrendMicro 9.120.0.1004 2010.01.25 -
VBA32 3.12.12.1 2010.01.23 -
ViRobot 2010.1.25.2154 2010.01.25 -
VirusBuster 5.0.21.0 2010.01.25 -[/QUOTE]
[url]http://www.virustotal.com/ru/analisis/cd49c24886ea4a98778f54fe4ee99f8cfe8d3e80e49f24af84d13d4f131d1c1c-1264430622[/url]
-
File kijiu.exe received on 2010.01.28 03:25:05 (UTC)
[QUOTE]Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.01.28 -
AhnLab-V3 5.0.0.2 2010.01.27 -
AntiVir 7.9.1.154 2010.01.27 -
Antiy-AVL 2.0.3.7 2010.01.27 -
[B]Authentium 5.2.0.5 2010.01.28 W32/Damaged_File.B.gen!Eldorado[/B]
Avast 4.8.1351.0 2010.01.28 -
AVG 9.0.0.730 2010.01.27 -
BitDefender 7.2 2010.01.28 -
CAT-QuickHeal 10.00 2010.01.28 -
ClamAV 0.94.1 2010.01.27 -
Comodo 3732 2010.01.28 -
DrWeb 5.0.1.12222 2010.01.27 -
eSafe 7.0.17.0 2010.01.27 -
eTrust-Vet 35.2.7264 2010.01.27 -
[B]F-Prot 4.5.1.85 2010.01.27 W32/Damaged_File.B.gen!Eldorado[/B]
F-Secure 9.0.15370.0 2010.01.27 -
Fortinet 4.0.14.0 2010.01.27 -
GData 19 2010.01.28 -
Ikarus T3.1.1.80.0 2010.01.28 -
Jiangmin 13.0.900 2010.01.27 -
K7AntiVirus 7.10.957 2010.01.26 -
[B]McAfee 5874 2010.01.27 potentially unwanted program Corrupt-EP
McAfee+Artemis 5874 2010.01.27 potentially unwanted program Corrupt-EP
[/B]McAfee-GW-Edition 6.8.5 2010.01.27 -
Microsoft 1.5406 2010.01.28 -
NOD32 4811 2010.01.27 -
Norman 6.04.03 2010.01.27 -
nProtect 2009.1.8.0 2010.01.27 -
Panda 10.0.2.2 2010.01.27 -
PCTools 7.0.3.5 2010.01.28 -
Prevx 3.0 2010.01.28 -
Rising 22.32.03.01 2010.01.28 -
Sophos 4.50.0 2010.01.28 -
Sunbelt 3.2.1858.2 2010.01.28 -
Symantec 20091.2.0.41 2010.01.28 -
[B]TheHacker 6.5.0.9.167 2010.01.28 W32/Behav-Heuristic-CorruptFile-EP[/B]
TrendMicro 9.120.0.1004 2010.01.28 -
VBA32 3.12.12.1 2010.01.27 -
ViRobot 2010.1.27.2158 2010.01.27 -
VirusBuster 5.0.21.0 2010.01.27 -
[/QUOTE]
Additional information
File size: 4096 bytes
MD5...: f0395e1cde2d138eac75e890a408ff88
SHA1..: 1ac3efe0456d59d369622dd536094c8c0ec0e00e
SHA256: 07ed951ea4f714dfa8d6ea0b07c6d897f6e69ef12dc849d6474b8b0c1f8ffbfc
ssdeep: 48:a18V8MBaCEF9OoYVm54Mqh+xsi8Vc6vFL6icA5RqjzJvVF3gy8wH5jBijUdzx<BR>I1H:D8MBIF9GLMqh+G/VVSjtfwY5liaxI1uI<BR>
PEiD..: -
Page generated in 0.00829 seconds with 10 queries