-
Файл realfoto.exe.5D5BEF92 получен 2007.10.26 09:14:32 (CET)Антивирус Версия Обновление Результат
[B]AntiVir 7.6.0.27 2007.10.26 HEUR/Crypted
BitDefender 7.2 2007.10.26 DeepScan:Generic.Malware.Bdld!!.E1FB9853
CAT-QuickHeal 9.00 2007.10.25 (Suspicious) - DNAScan
DrWeb 4.44.0.09170 2007.10.26 Trojan.DownLoader.35934
eSafe 7.0.15.0 2007.10.22 -503605165
F-Secure 6.70.13030.0 2007.10.26 Harnig.gen1
Kaspersky 7.0.0.125 2007.10.26 Heur.Trojan.Generic
Microsoft 1.2908 2007.10.26 TrojanDownloader:Win32/Agent.WX
NOD32v2 2618 2007.10.26 probably a variant of Win32/TrojanDownloader.Small.DRU
Norman 5.80.02 2007.10.25 Harnig.gen1
Panda 9.0.0.4 2007.10.26 Suspicious file
Sophos 4.22.0 2007.10.26 Mal/Packer
Sunbelt 2.2.907.0 2007.10.26 VIPRE.Suspicious
Symantec 10 2007.10.26 Downloader
VirusBuster 4.3.26:9 2007.10.25 Packed/FSG
Webwasher-Gateway 6.6.1 2007.10.26 Heuristic.Crypted
[/B]
Дополнительная информация
File size: 1861 bytes
MD5: 058a27b34937771c98f88a3d7675197f
SHA1: b2829f3bb9d0d56b9f1315a65ce384a8b343188b
packers: FSG
packers: FSG
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
[size="1"][color="#666686"][B][I]Добавлено через 7 минут[/I][/B][/color][/size]
Файл index_2_.htm.7FFFAE33 получен 2007.10.26 09:28:47 (CET)Антивирус Версия Обновление Результат
[B]AntiVir 7.6.0.27 2007.10.26 HTML/Shellcode.Gen
Authentium 4.93.8 2007.10.25 JS/IESlice.B@dl
Avast 4.7.1074.0 2007.10.25 JS:IESlice
AVG 7.5.0.503 2007.10.25 JS/Downloader.Agent
BitDefender 7.2 2007.10.26 Trojan.Exploit.Js.Vmlfill.D
DrWeb 4.44.0.09170 2007.10.26 Trojan.DownLoader.35207
eSafe 7.0.15.0 2007.10.22 JS.Downld.Troj
Ewido 4.0 2007.10.25 Downloader.Agent.hq
F-Prot 4.3.2.48 2007.10.25 JS/IESlice.B@dl
F-Secure 6.70.13030.0 2007.10.26 JS/IESlice.B@dl
McAfee 5149 2007.10.25 JS/Exploit-BO.gen
Microsoft 1.2908 2007.10.26 TrojanDownloader:Win32/Small.gen!Z
Rising 19.46.40.00 2007.10.26 Trojan.DL.JS.Agent.lfo
Sophos 4.22.0 2007.10.26 Mal/JSShell-B
Symantec 10 2007.10.26 Downloader
TheHacker 6.2.9.107 2007.10.25 JS/IE.Exploit
VirusBuster 4.3.26:9 2007.10.25 JS.Psyme.DF
Webwasher-Gateway 6.6.1 2007.10.26 Script.Shellcode.Gen[/B]
Дополнительная информация
File size: 7278 bytes
MD5: d402f0fa9fc74dda7b1516ad3ab3fa23
SHA1: a776ccd157021738474c929d7f641416bbb3a80b
-
[code]Файл file.data получен 2007.10.26 12:28:16 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.26.0 2007.10.26 -
[B]AntiVir 7.6.0.27 2007.10.26 TR/Crypt.XPACK.Gen[/B]
Authentium 4.93.8 2007.10.25 -
Avast 4.7.1074.0 2007.10.25 -
AVG 7.5.0.503 2007.10.26 -
[B]BitDefender 7.2 2007.10.26 DeepScan:Generic.LdPinch1.94613D58
CAT-QuickHeal 9.00 2007.10.25 (Suspicious) - DNAScan[/B]
ClamAV 0.91.2 2007.10.26 -
[B]DrWeb 4.44.0.09170 2007.10.26 Trojan.PWS.LDPinch.1941
eSafe 7.0.15.0 2007.10.22 Suspicious File[/B]
eTrust-Vet 31.2.5241 2007.10.25 -
Ewido 4.0 2007.10.25 -
FileAdvisor 1 2007.10.26 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.25 -
F-Secure 6.70.13030.0 2007.10.26 -
[B]Ikarus T3.1.1.12 2007.10.26 Backdoor.Win32.Prorat.19.i
Kaspersky 7.0.0.125 2007.10.26 Heur.Trojan.Generic
McAfee 5149 2007.10.25 PWS-LDPinch
Microsoft 1.2908 2007.10.26 PWS:Win32/Ldpinch.gen[/B]
NOD32v2 2619 2007.10.26 -
Norman 5.80.02 2007.10.26 -
[B]Panda 9.0.0.4 2007.10.26 Suspicious file
Prevx1 V2 2007.10.26 Heuristic: Suspicious Self Modifying EXE[/B]
Rising 19.46.41.00 2007.10.26 -
[B]Sophos 4.22.0 2007.10.26 Mal/Basine-C
Sunbelt 2.2.907.0 2007.10.26 VIPRE.Suspicious[/B]
Symantec 10 2007.10.26 -
TheHacker 6.2.9.107 2007.10.25 -
VBA32 3.12.2.4 2007.10.26 -
VirusBuster 4.3.26:9 2007.10.25 -
[B]Webwasher-Gateway 6.6.1 2007.10.26 Trojan.Crypt.XPACK.Gen[/B]
Дополнительная информация
File size: 20480 bytes
MD5: 690d77cca6d20246e87803eafeb06bed
SHA1: d4eb6d05641b93aeaee52c834b7ef1f557afb677
packers: PecBundle, PECompact
Prevx info: http://fileinfo.prevx.com/fileinfo.asp?PX5=3252C4BF008177B550CA00CE98E8FC00ECFFB33E
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.[/code]
-
Файл nm_15_10_07_75_0.exe получен 2007.10.26 19:20:25 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.26.1 2007.10.26 -
AntiVir 7.6.0.30 2007.10.26 -
Authentium 4.93.8 2007.10.26 -
Avast 4.7.1074.0 2007.10.25 -
AVG 7.5.0.503 2007.10.26 -
[B]BitDefender 7.2 2007.10.26 BehavesLike:Win32.ExplorerHijack[/B]
CAT-QuickHeal 9.00 2007.10.26 -
ClamAV 0.91.2 2007.10.26 -
DrWeb 4.44.0.09170 2007.10.26 -
[B]eSafe 7.0.15.0 2007.10.22 suspicious Trojan/Worm[/B]
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.26 -
FileAdvisor 1 2007.10.26 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.25 -
F-Secure 6.70.13030.0 2007.10.26 -
Ikarus T3.1.1.12 2007.10.26 -
[B]Kaspersky 7.0.0.125 2007.10.26 Heur.Trojan.Generic[/B]
McAfee 5150 2007.10.26 -
Microsoft 1.2908 2007.10.26 -
NOD32v2 2619 2007.10.26 -
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.26 -
Prevx1 V2 2007.10.26 -
Rising 19.46.42.00 2007.10.26 -
[B]Sophos 4.22.0 2007.10.26 Mal/Behav-150[/B]
Sunbelt 2.2.907.0 2007.10.26 -
Symantec 10 2007.10.26 -
TheHacker 6.2.9.107 2007.10.25 -
VBA32 3.12.2.4 2007.10.26 -
VirusBuster 4.3.26:9 2007.10.26 -
Webwasher-Gateway 6.6.1 2007.10.26 -
Дополнительная информация
File size: 24064 bytes
MD5: c383ea5fb0ca6beb1d2a3f5bf13c5c79
SHA1: 7213a7a1ead53437e3eb1e69a755909889a9118d
packers: UPX
packers: UPX
packers: PE_Patch.UPX, UPX
Файл rasta.exe получен 2007.10.26 20:30:18 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.26.1 2007.10.26 -
[B]AntiVir 7.6.0.30 2007.10.26 TR/Dropper.Gen[/B]
Authentium 4.93.8 2007.10.26 -
Avast 4.7.1074.0 2007.10.25 -
AVG 7.5.0.503 2007.10.26 -
BitDefender 7.2 2007.10.26 -
CAT-QuickHeal 9.00 2007.10.26 -
ClamAV 0.91.2 2007.10.26 -
DrWeb 4.44.0.09170 2007.10.26 -
eSafe 7.0.15.0 2007.10.22 -
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.26 -
FileAdvisor 1 2007.10.26 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.26 -
F-Secure 6.70.13030.0 2007.10.26 -
Ikarus T3.1.1.12 2007.10.26 -
Kaspersky 7.0.0.125 2007.10.26 -
McAfee 5150 2007.10.26 -
[B]Microsoft 1.2908 2007.10.26 TrojanDropper:Win32/Cutwail.A[/B]
NOD32v2 2619 2007.10.26 -
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.26 -
Prevx1 V2 2007.10.26 -
Rising 19.46.42.00 2007.10.26 -
[B]Sophos 4.22.0 2007.10.26 Troj/Pushdo-Gen[/B]
Sunbelt 2.2.907.0 2007.10.26 -
Symantec 10 2007.10.26 -
TheHacker 6.2.9.107 2007.10.25 -
VBA32 3.12.2.4 2007.10.26 -
VirusBuster 4.3.26:9 2007.10.26 -
[B]Webwasher-Gateway 6.6.1 2007.10.26 Trojan.Dropper.Gen[/B]
Дополнительная информация
File size: 20992 bytes
MD5: 090ab214e9505df6e49f50e3294178c2
SHA1: 2ef710e630b9c7a1d4ff43fa7e3b32ea321acaca
Файл iesetup.exe получен 2007.10.26 20:48:15 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.27.0 2007.10.26 -
Authentium 4.93.8 2007.10.26 -
Avast 4.7.1074.0 2007.10.25 -
[B]AVG 7.5.0.503 2007.10.26 Adware Generic2.TTC[/B]
BitDefender 7.2 2007.10.26 -
CAT-QuickHeal 9.00 2007.10.26 -
ClamAV 0.91.2 2007.10.26 -
DrWeb 4.44.0.09170 2007.10.26 -
eSafe 7.0.15.0 2007.10.22 -
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.26 -
FileAdvisor 1 2007.10.26 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.26 -
F-Secure 6.70.13030.0 2007.10.26 -
Ikarus T3.1.1.12 2007.10.26 -
Kaspersky 7.0.0.125 2007.10.26 -
McAfee 5150 2007.10.26 -
Microsoft 1.2908 2007.10.26 -
NOD32v2 2619 2007.10.26 -
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.26 -
Prevx1 V2 2007.10.26 -
Rising 19.46.42.00 2007.10.26 -
Sophos 4.22.0 2007.10.26 -
Sunbelt 2.2.907.0 2007.10.26 -
Symantec 10 2007.10.26 -
TheHacker 6.2.9.107 2007.10.25 -
VBA32 3.12.2.4 2007.10.26 -
VirusBuster 4.3.26:9 2007.10.26 -
[B]Webwasher-Gateway 6.6.1 2007.10.26 Trojan.Drop.Agent.888[/B]
Дополнительная информация
File size: 360502 bytes
MD5: 6a9e88cde02f6d97331249ce6427d4a9
SHA1: e23ae6e5553065afc09fe9d2fe0f195ff75dce37
-
Файл avz00002.dta получен 2007.10.27 07:09:53 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.27.0 2007.10.26 -
[B]AntiVir 7.6.0.30 2007.10.26 TR/Crypt.XPACK.Gen [/B]
Authentium 4.93.8 2007.10.26 -
Avast 4.7.1074.0 2007.10.26 -
AVG 7.5.0.503 2007.10.26 -
BitDefender 7.2 2007.10.27 -
[B]CAT-QuickHeal 9.00 2007.10.26 (Suspicious) - DNAScan[/B]
ClamAV 0.91.2 2007.10.27 -
[B]DrWeb 4.44.0.09170 2007.10.26 Trojan.Spambot.2444 [/B]
[B]eSafe 7.0.15.0 2007.10.22 Suspicious File[/B]
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.26 -
FileAdvisor 1 2007.10.27 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.26 -
F-Secure 6.70.13030.0 2007.10.26 -
Ikarus T3.1.1.12 2007.10.27 -
Kaspersky 7.0.0.125 2007.10.27 -
McAfee 5150 2007.10.26 -
Microsoft 1.2908 2007.10.27 -
NOD32v2 2620 2007.10.27 -
Norman 5.80.02 2007.10.26 -
[B]Panda 9.0.0.4 2007.10.27 Suspicious file [/B]
Prevx1 V2 2007.10.27 -
Rising 19.46.42.00 2007.10.26 -
[B]Sophos 4.22.0 2007.10.27 Mal/Basine-C [/B]
Sunbelt 2.2.907.0 2007.10.27 -
Symantec 10 2007.10.27 -
TheHacker 6.2.9.107 2007.10.25 -
[B]VBA32 3.12.2.4 2007.10.26 Trojan.Spambot.2444[/B]
VirusBuster 4.3.26:9 2007.10.26 -
[B]Webwasher-Gateway 6.6.1 2007.10.27 Trojan.Crypt.XPACK.Gen[/B]
Дополнительная информация
File size: 34774 bytes
MD5: eaa7fd91e46a9be981f4ea10904dedf5
SHA1: fac2d79fac98bd44cdb9d4403f9c65197ceae29e
-
Файл mails.exe получен 2007.10.28 21:17:42 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.27.0 2007.10.26 -
AntiVir 7.6.0.30 2007.10.26 -
Authentium 4.93.8 2007.10.28 -
Avast 4.7.1074.0 2007.10.28 -
AVG 7.5.0.503 2007.10.28 -
BitDefender 7.2 2007.10.28 -
CAT-QuickHeal 9.00 2007.10.26 -
ClamAV 0.91.2 2007.10.28 -
[B]DrWeb 4.44.0.09170 2007.10.28 Trojan.Packed.147[/B]
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.28 -
FileAdvisor 1 2007.10.28 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.26 -
F-Secure 6.70.13030.0 2007.10.28 -
Ikarus T3.1.1.12 2007.10.28 -
[B]Kaspersky 7.0.0.125 2007.10.28 Trojan-Dropper.Win32.Small.bbs[/B]
McAfee 5150 2007.10.26 -
[B]Microsoft 1.2908 2007.10.28 Virus:Win32/Grum.G[/B]
[B]NOD32v2 2621 2007.10.28 probably unknown NewHeur_PE virus[/B]
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.28 -
Prevx1 V2 2007.10.28 -
Rising 19.46.61.00 2007.10.28 -
Sophos 4.23.0 2007.10.28 -
Sunbelt 2.2.907.0 2007.10.27 -
Symantec 10 2007.10.28 -
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.28 -
VirusBuster 4.3.26:9 2007.10.28 -
Webwasher-Gateway 6.6.1 2007.10.28 -
Файл 603-a.exe получен 2007.10.28 21:17:34 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.27.0 2007.10.26 -
AntiVir 7.6.0.30 2007.10.26 -
Authentium 4.93.8 2007.10.28 -
Avast 4.7.1074.0 2007.10.28 -
AVG 7.5.0.503 2007.10.28 -
[B]BitDefender 7.2 2007.10.28 Trojan.Proxy.Agent.AZP[/B]
CAT-QuickHeal 9.00 2007.10.26 -
ClamAV 0.91.2 2007.10.28 -
DrWeb 4.44.0.09170 2007.10.28 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.28 -
FileAdvisor 1 2007.10.28 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.26 -
F-Secure 6.70.13030.0 2007.10.28 -
[B]Ikarus T3.1.1.12 2007.10.28 Trojan.Win32.Agent.asu
Kaspersky 7.0.0.125 2007.10.28 Trojan-Dropper.Win32.Agent.ckh[/B]
McAfee 5150 2007.10.26 -
Microsoft 1.2908 2007.10.28 -
NOD32v2 2621 2007.10.28 -
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.28 -
Prevx1 V2 2007.10.28 -
Rising 19.46.61.00 2007.10.28 -
Sophos 4.23.0 2007.10.28 -
Sunbelt 2.2.907.0 2007.10.27 -
Symantec 10 2007.10.28 -
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.28 -
VirusBuster 4.3.26:9 2007.10.28 -
Webwasher-Gateway 6.6.1 2007.10.28 -
-
Файл u12_frk_abc123.exe получен 2007.10.28 22:48:33 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.27.0 2007.10.26 -
AntiVir 7.6.0.30 2007.10.28 -
Authentium 4.93.8 2007.10.28 -
Avast 4.7.1074.0 2007.10.28 -
AVG 7.5.0.503 2007.10.28 -
BitDefender 7.2 2007.10.28 -
CAT-QuickHeal 9.00 2007.10.26 -
ClamAV 0.91.2 2007.10.28 -
DrWeb 4.44.0.09170 2007.10.28 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5244 2007.10.26 -
Ewido 4.0 2007.10.28 -
FileAdvisor 1 2007.10.28 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.26 -
F-Secure 6.70.13030.0 2007.10.28 -
[B]Ikarus T3.1.1.12 2007.10.28 Trojan-Downloader.Win32.Small.evh[/B]
Kaspersky 7.0.0.125 2007.10.28 -
McAfee 5150 2007.10.26 -
Microsoft 1.2908 2007.10.28 -
[B]NOD32v2 2622 2007.10.28 a variant of Win32/TrojanProxy.Xorpix.BS[/B]
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.28 -
Prevx1 V2 2007.10.28 -
Rising 19.46.61.00 2007.10.28 -
Sophos 4.23.0 2007.10.28 -
Sunbelt 2.2.907.0 2007.10.27 -
[B]Symantec 10 2007.10.28 Backdoor.Eterok.C[/B]
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.28 -
VirusBuster 4.3.26:9 2007.10.28 -
Webwasher-Gateway 6.6.1 2007.10.28 -
Дополнительная информация
File size: 23040 bytes
MD5: 2c0157d1701d48c30fc10db4bcf8c9e3
SHA1: dcf27144f0bcf6b535c110ecb00c4aa25e184f7f
-
В винсоксе у юзера нашел.
File t0.dll received on 10.30.2007 07:01:57 (CET)
[B]Antivirus Version Last Update Result[/B]
AhnLab-V3 2007.10.30.0 2007.10.30 -
[B]AntiVir 7.6.0.30 2007.10.29 TR/Dldr.Agent.dda[/B]
Authentium 4.93.8 2007.10.29 -
[B]Avast 4.7.1074.0 2007.10.29 Win32:Agent-LOO
AVG 7.5.0.503 2007.10.29 Generic8.HES[/B]
[B]BitDefender 7.2 2007.10.30 Generic.Malware.Fdld.A516C50D[/B]
CAT-QuickHeal 9.00 2007.10.29 -
ClamAV 0.91.2 2007.10.30 -
[B]DrWeb 4.44.0.09170 2007.10.30 Trojan.DownLoader.35253[/B]
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5252 2007.10.30 -
Ewido 4.0 2007.10.29 -
FileAdvisor 1 2007.10.30 -
[B]Fortinet 3.11.0.0 2007.10.19 Heuri.E[/B]
F-Prot 4.3.2.48 2007.10.29 -
[B]F-Secure 6.70.13030.0 2007.10.30 Trojan.Win32.Agent.bvn
Ikarus T3.1.1.12 2007.10.30 Trojan-Downloader.Win32.Agent.but
Kaspersky 7.0.0.125 2007.10.30 Trojan.Win32.Agent.bvn[/B]
McAfee 5151 2007.10.29 -
[B]Microsoft 1.2908 2007.10.30 Trojan:Win32/Agent.ADA
NOD32v2 2626 2007.10.30 Win32/TrojanDownloader.Agent.NSB[/B]
Norman 5.80.02 2007.10.29 -
[B]Panda 9.0.0.4 2007.10.30 Suspicious file[/B]
Prevx1 V2 2007.10.30 -
[B]Rising 19.47.10.00 2007.10.30 Trojan.Win32.Agent.bvn
Sophos 4.23.0 2007.10.30 Mal/Heuri-E
Sunbelt 2.2.907.0 2007.10.29 Trojan.Win32/Agent.ADA[/B]
Symantec 10 2007.10.30 -
[B]TheHacker 6.2.9.110 2007.10.27 Trojan/Agent.bvn
VBA32 3.12.2.4 2007.10.28 Trojan.Win32.Agent.bvn[/B]
VirusBuster 4.3.26:9 2007.10.29 -
[B]Webwasher-Gateway 6.6.1 2007.10.29 Trojan.Dldr.Agent.dda[/B]
Additional information
File size: 30208 bytes
MD5: 0866b8b38b4b3b35cc4175161ca39f8f
SHA1: 3dfd5c6f2d232bc89a97feeb9ab2ab16cc1bb863
packers: UPX
packers: UPX
packers: UPX
packers: PE_Patch.UPX, UPX
[size="1"][color="#666686"][B][I]Добавлено через 3 минуты[/I][/B][/color][/size]
Мне кто-нибудь ответит, что у вас означает пункт "Pack/Crypt" вот в этой диаграмме?:
[url]http://virusinfo.info/attachment.php?attachmentid=19218&d=1191562708[/url]
-
File patch.exe received on 10.30.2007 07:52:49 (CET)
Current status: finished
Result: 19/31 (61.3%)
Compact
Print results Antivirus Version Last Update Result
AhnLab-V3 2007.10.30.0 2007.10.30 -
[B]AntiVir 7.6.0.30 2007.10.29 TR/PSW.OnlineGames.aci.113[/B]
Authentium 4.93.8 2007.10.29 -
Avast 4.7.1074.0 2007.10.29 -
AVG 7.5.0.503 2007.10.29 -
[B]BitDefender 7.2 2007.10.30 Trojan.Pws.Onlinegames.ACI
CAT-QuickHeal 9.00 2007.10.29 TrojanPSW.OnLineGames.es
ClamAV 0.91.2 2007.10.30 PUA.Packed.UPack-2[/B]
DrWeb 4.44.0.09170 2007.10.30 -
[B]eSafe 7.0.15.0 2007.10.28 Win32.OnLineGames.ac[/B]
eTrust-Vet 31.2.5253 2007.10.30 -
Ewido 4.0 2007.10.29 -
[B]FileAdvisor 1 2007.10.30 High threat detected[/B]
[B]Fortinet 3.11.0.0 2007.10.19 Patch.F!tr[/B]
F-Prot 4.3.2.48 2007.10.29 -
[B]F-Secure 6.70.13030.0 2007.10.30 Trojan-PSW.Win32.OnLineGames.aci[/B]
[B]Ikarus T3.1.1.12 2007.10.30 Trojan-Downloader.Win32.Zlob.and
Kaspersky 7.0.0.125 2007.10.30 Trojan-PSW.Win32.OnLineGames.aci
McAfee 5151 2007.10.29 New Malware.aj
Microsoft 1.2908 2007.10.30 HackTool:Win32/Patch.A[/B]
NOD32v2 2626 2007.10.30 -
[B]Norman 5.80.02 2007.10.29 W32/Suspicious_U.gen
Panda 9.0.0.4 2007.10.30 Trj/Lineage.BZE[/B]
Prevx1 V2 2007.10.30 -
Rising 19.47.10.00 2007.10.30 -
[B]Sophos 4.23.0 2007.10.30 Troj/Patch-F
Sunbelt 2.2.907.0 2007.10.29 VIPRE.Suspicious[/B]
Symantec 10 2007.10.30 -
[B]TheHacker 6.2.9.110 2007.10.27 Trojan/PSW.OnLineGames.aci
VBA32 3.12.2.4 2007.10.28 Trojan-PSW.Win32.OnLineGames.aci
VirusBuster 4.3.26:9 2007.10.29 Packed/Upack[/B]
Additional information
File size: 8120 bytes
MD5: 2d5b60d000d7792ec504127c6ee238ff
SHA1: 593335fa2eddcbd5d69a981dd17d896a289a4455
Bit9 info: [url]http://fileadvisor.bit9.com/services/extinfo.aspx?md5=2d5b60d000d7792ec504127c6ee238ff[/url]
packers: UPack
packers: PE_Patch
-
Файл setuprs1.rar получен 2007.10.31 02:42:40 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.31.0 2007.10.30 -
[B]AntiVir 7.6.0.30 2007.10.30 BDS/Hupigon.Gen[/B]
Authentium 4.93.8 2007.10.30 -
Avast 4.7.1074.0 2007.10.30 -
AVG 7.5.0.503 2007.10.30 -
BitDefender 7.2 2007.10.31 -
[B]CAT-QuickHeal 9.00 2007.10.30 (Suspicious) - DNAScan[/B]
ClamAV 0.91.2 2007.10.30 -
DrWeb 4.44.0.09170 2007.10.30 -
[B]eSafe 7.0.15.0 2007.10.28 suspicious Trojan/Worm[/B]
eTrust-Vet 31.2.5253 2007.10.30 -
Ewido 4.0 2007.10.30 -
FileAdvisor 1 2007.10.31 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.30 -
[B]F-Secure 6.70.13030.0 2007.10.31 W32/Delf.AECZ
Ikarus T3.1.1.12 2007.10.31 Backdoor.Win32.Hupigon.MY[/B]
Kaspersky 7.0.0.125 2007.10.31 -
[B]McAfee 5152 2007.10.30 Generic BackDoor[/B]
Microsoft 1.2908 2007.10.31 -
NOD32v2 2627 2007.10.30 -
Norman 5.80.02 2007.10.30 -
Panda 9.0.0.4 2007.10.30 -
Prevx1 V2 2007.10.31 -
Rising 19.47.12.00 2007.10.30 -
[B]Sophos 4.23.0 2007.10.30 Mal/Packer[/B]
Sunbelt 2.2.907.0 2007.10.31 -
Symantec 10 2007.10.31 -
[B]TheHacker 6.2.9.110 2007.10.27 W32/Behav-Heuristic-067[/B]
VBA32 3.12.2.4 2007.10.28 -
[B]VirusBuster 4.3.26:9 2007.10.30 Packed/NSPack
Webwasher-Gateway 6.6.1 2007.10.31 Trojan.Hupigon.Gen[/B]
Дополнительная информация
File size: 127648 bytes
MD5: ab66a9f07cfa012fb79e1543369a148e
SHA1: e4620b4eaf0af3d254b1ea5d96fde2d3a2b15adb
packers: NSPack, PE_Patch
packers: NSPack, NSPack
[size="1"][color="#666686"][B][I]Добавлено через 9 минут[/I][/B][/color][/size]
Файл mshost.exe получен 2007.10.31 02:58:57 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.31.0 2007.10.30 -
AntiVir 7.6.0.30 2007.10.30 -
Authentium 4.93.8 2007.10.30 -
Avast 4.7.1074.0 2007.10.30 -
AVG 7.5.0.503 2007.10.30 -
BitDefender 7.2 2007.10.31 -
CAT-QuickHeal 9.00 2007.10.30 -
ClamAV 0.91.2 2007.10.30 -
[B]DrWeb 4.44.0.09170 2007.10.30 Win32.HLLW.Autoruner.784
eSafe 7.0.15.0 2007.10.28 suspicious Trojan/Worm[/B]
eTrust-Vet 31.2.5253 2007.10.30 -
Ewido 4.0 2007.10.30 -
FileAdvisor 1 2007.10.31 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.30 -
[B]F-Secure 6.70.13030.0 2007.10.31 Virus.Win32.AutoRun.yy
Ikarus T3.1.1.12 2007.10.31 Virus.Win32.AutoRun.yy
Kaspersky 7.0.0.125 2007.10.31 Virus.Win32.AutoRun.yy[/B]
McAfee 5152 2007.10.30 -
Microsoft 1.2908 2007.10.31 -
NOD32v2 2627 2007.10.30 -
Norman 5.80.02 2007.10.30 -
[B]Panda 9.0.0.4 2007.10.30 Suspicious file
Prevx1 V2 2007.10.31 Heuristic: Suspicious File With Covert Attributes[/B]
Rising 19.47.12.00 2007.10.30 -
Sophos 4.23.0 2007.10.30 -
Sunbelt 2.2.907.0 2007.10.31 -
Symantec 10 2007.10.31 -
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.28 -
VirusBuster 4.3.26:9 2007.10.30 -
Webwasher-Gateway 6.6.1 2007.10.31 -
Дополнительная информация
File size: 192512 bytes
MD5: 4cc7c9d5bef15e7c62849cbceba6fe34
SHA1: f6e465264ef4e56aaafdb421e8a61e6522a1ad94
packers: UPX
packers: UPX
packers: PE_Patch.UPX, UPX
Prevx info: [url]http://fileinfo.prevx.com/fileinfo.asp?PX5=8739257F00048F9DF068025631F92A00B1C6F298[/url]
-
BitAccelerator- меняет md5, но не суть.
можно посмотреть какие из лабораторий не торопятся следить за изменениями.
[code]
Файл BitAccelerator.dta получен 2007.10.31 17:37:43 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.10.31.1 2007.10.31 -
AntiVir 7.6.0.30 2007.10.31 -
Authentium 4.93.8 2007.10.30 -
Avast 4.7.1074.0 2007.10.31 -
AVG 7.5.0.503 2007.10.31 -
[b]BitDefender 7.2 2007.10.31 Adware.BHO.WPW[/b]
CAT-QuickHeal 9.00 2007.10.31 -
[b]ClamAV 0.91.2 2007.10.31 Adware.BHO-50[/b]
DrWeb 4.44.0.09170 2007.10.31 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5256 2007.10.31 -
Ewido 4.0 2007.10.31 -
FileAdvisor 1 2007.10.31 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.30 -
F-Secure 6.70.13030.0 2007.10.31 -
[b]Ikarus T3.1.1.12 2007.10.31 Virus.Win32.AdWare
Kaspersky 7.0.0.125 2007.10.31 not-a-virus:AdWare.Win32.BHO.ic[/b]
McAfee 5152 2007.10.30 -
Microsoft 1.2908 2007.10.31 -
NOD32v2 2630 2007.10.31 -
Norman 5.80.02 2007.10.31 -
Panda 9.0.0.4 2007.10.31 -
Prevx1 V2 2007.10.31 -
Rising 19.47.21.00 2007.10.31 -
Sophos 4.23.0 2007.10.31 -
Sunbelt 2.2.907.0 2007.10.31 -
Symantec 10 2007.10.31 -
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.28 -
VirusBuster 4.3.26:9 2007.10.31 -
Webwasher-Gateway 6.0.1 2007.10.31 -
Дополнительная информация
File size: 394124 bytes
MD5: 97209ee33ade0ba71326964ef8210364
SHA1: e93c7ccf12bf8b091be0084c689772abc494a84b[/code]
-
AhnLab-V3 2007.11.1.0 2007.10.31 -
[B]AntiVir 7.6.0.30 2007.10.31 TR/PSW.LdPinch.dkt[/B]
Authentium 4.93.8 2007.10.31 -
Avast 4.7.1074.0 2007.10.31 -
[B]AVG 7.5.0.503 2007.10.31 Dropper.Delf.KM
BitDefender 7.2 2007.10.31 Trojan.Agent.AFLF
CAT-QuickHeal 9.00 2007.10.31 TrojanPSW.LdPinch.dkt
ClamAV 0.91.2 2007.10.31 Trojan.LdPinch-1029
[COLOR="Red"]DrWeb 4.44.0.09170 2007.10.31 Trojan.MulDrop.9120[/COLOR]
eSafe 7.0.15.0 2007.10.28 Win32.LdPinch.dkt[/B]
eTrust-Vet 31.2.5256 2007.10.31 -
Ewido 4.0 2007.10.31 -
FileAdvisor 1 2007.10.31 -
[B]Fortinet 3.11.0.0 2007.10.19 W32/LdPinch.DKT!tr.pws[/B]
F-Prot 4.3.2.48 2007.10.31 -
[B]F-Secure 6.70.13030.0 2007.10.31 Trojan-PSW.Win32.LdPinch.dkt
[COLOR="Red"]Ikarus T3.1.1.12 2007.10.31 Trojan.MulDrop.9120[/COLOR]
Kaspersky 7.0.0.125 2007.10.31 Trojan-PSW.Win32.LdPinch.dkt[/B]
McAfee 5152 2007.10.30 -
Microsoft 1.2908 2007.10.31 -
NOD32v2 2630 2007.10.31 -
Norman 5.80.02 2007.10.31 -
[B]Panda 9.0.0.4 2007.10.31 Trj/Ldpinch.WE[/B]
Prevx1 V2 2007.10.31 -
[B]Rising 19.47.21.00 2007.10.31 Trojan.PSW.Win32.LdPinch.dkt[/B]
Sophos 4.23.0 2007.10.31 -
Sunbelt 2.2.907.0 2007.10.31 -
Symantec 10 2007.10.31 -
[B]TheHacker 6.2.9.110 2007.10.27 Trojan/PSW.LdPinch.dkt[/B]
[B][COLOR="Red"]VBA32 3.12.2.4 2007.10.28 Trojan.MulDrop.9120
[/COLOR][/B]VirusBuster 4.3.26:9 2007.10.31 -
-
Очередная реинкарнация:
[QUOTE]Файл halloween.exe получен 2007.10.31 22:28:29 (CET)
AhnLab-V3 2007.11.1.0 2007.10.31 -
[B]AntiVir 7.6.0.30 2007.10.31 WORM/Zhelatin.Gen
Authentium 4.93.8 2007.10.31 W32/StormWorm.G[/B]
Avast 4.7.1074.0 2007.10.31 -
[B]AVG 7.5.0.503 2007.10.31 Downloader.Tibs
BitDefender 7.2 2007.10.31 Trojan.Peed.INN
CAT-QuickHeal 9.00 2007.10.31 (Suspicious) - DNAScan
ClamAV 0.91.2 2007.10.31 Trojan.Peed-44
DrWeb 4.44.0.09170 2007.10.31 Trojan.Packed.162
eSafe 7.0.15.0 2007.10.28 Suspicious File
eTrust-Vet 31.2.5256 2007.10.31 Win32/Sintun.AK[/B]
Ewido 4.0 2007.10.31 -
FileAdvisor 1 2007.10.31 -
Fortinet 3.11.0.0 2007.10.19 -
[B]F-Prot 4.3.2.48 2007.10.31 W32/StormWorm.G[/B]
F-Secure 6.70.13030.0 2007.10.31 -
Ikarus T3.1.1.12 2007.10.31 -
Kaspersky 7.0.0.125 2007.10.31 -
McAfee 5153 2007.10.31 -
[B]Microsoft 1.2908 2007.10.31 TrojanDropper:Win32/Nuwar.gen!avkill
NOD32v2 2630 2007.10.31 probably unknown NewHeur_PE virus
Norman 5.80.02 2007.10.31 Tibs.gen177[/B]
Panda 9.0.0.4 2007.10.31 -
Prevx1 V2 2007.10.31 -
Rising 19.47.21.00 2007.10.31 -
[B]Sophos 4.23.0 2007.10.31 Mal/Behav-146[/B]
Sunbelt 2.2.907.0 2007.10.31 -
[B]Symantec 10 2007.10.31 Trojan.Peacomm.B[/B]
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.31 -
VirusBuster 4.3.26:9 2007.10.31 -
[B]Webwasher-Gateway 6.6.1 2007.10.31 Worm.Zhelatin.Gen[/B]
Дополнительная информация
File size: 112346 bytes
MD5: 791d713d7795d7cb051774be76203207
SHA1: d7cdfbee6de020b68a7a2b7f68d1c4d7208b03fb[/QUOTE]
-
Вложений: 1
-
о как... тема 13760[CODE]File mssrv32.exe received on 11.02.2007 13:54:37 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.2.1 2007.11.02 -
[B]AntiVir 7.6.0.30 2007.11.02 TR/Dldr.Agent.ZAA[/B]
Authentium 4.93.8 2007.11.01 -
Avast 4.7.1074.0 2007.11.02 -
AVG 7.5.0.503 2007.11.02 -
[B]BitDefender 7.2 2007.11.02 Trojan.PWS.LDPinch.TDD[/B]
CAT-QuickHeal 9.00 2007.11.02 -
ClamAV 0.91.2 2007.11.02 -
[B]DrWeb 4.44.0.09170 2007.11.02 Trojan.Packed.194[/B]
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5262 2007.11.02 -
Ewido 4.0 2007.11.02 -
FileAdvisor 1 2007.11.02 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.02 -
F-Secure 6.70.13030.0 2007.11.02 -
[B]Ikarus T3.1.1.12 2007.11.02 Virus.Win32.Zapchast.DA[/B]
Kaspersky 7.0.0.125 2007.11.02 -
McAfee 5154 2007.11.01 -
Microsoft 1.2908 2007.11.02 -
[B]NOD32v2 2633 2007.11.02 Win32/PSW.LdPinch.NFO[/B]
Norman 5.80.02 2007.11.02 -
Panda 9.0.0.4 2007.11.02 -
[B]Prevx1 V2 2007.11.02 Malware.Gen[/B]
Rising 20.16.42.00 2007.11.02 -
[B]Sophos 4.23.0 2007.11.02 Mal/Dropper-T
Sunbelt 2.2.907.0 2007.10.31 Trojan.PWS.LDPinch.TDD[/B]
Symantec 10 2007.11.02 -
TheHacker 6.2.9.110 2007.10.27 -
[B]VBA32 3.12.2.4 2007.11.02 Trojan.Win32.PSW.LdPinch.NFO[/B]
VirusBuster 4.3.26:9 2007.11.01 -
Additional information
File size: 32768 bytes[/CODE]
-
Файл 2007-11-02.rar получен 2007.11.02 19:09:29 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 TR/Dldr.Stration.Gen
Avast 4.7.1074.0 2007.11.02 Win32:Warezov-CRS
AVG 7.5.0.503 2007.11.02 I-Worm/Stration.DJG
BitDefender 7.2 2007.11.02 Win32.Stration.Gen@mm
CAT-QuickHeal 9.00 2007.11.02 I-Worm.Warezov.ny
DrWeb 4.44.0.09170 2007.11.02 Win32.HLLM.Limar
eSafe 7.0.15.0 2007.10.28 Win32.Stration.DB
Ewido 4.0 2007.11.02 Worm.Warezov.zm
Fortinet 3.11.0.0 2007.10.19 PossibleThreat
F-Prot 4.4.2.54 2007.11.02 W32/Warezov.ABW
Ikarus T3.1.1.12 2007.11.02 Win32.Stration
McAfee 5155 2007.11.02 W32/Stration@MM
Microsoft 1.2908 2007.11.02 Trojan:Win32/Stration.gen!C
NOD32v2 2634 2007.11.02 Win32/Stration.ZM
Panda 9.0.0.4 2007.11.02 Generic Worm
Rising 20.16.42.00 2007.11.02 Worm.Mail.Win32.Warezov.no
Sophos 4.23.0 2007.11.02 W32/Strati-Gen
Sunbelt 2.2.907.0 2007.11.02 W32.Stration.DB@mm
Symantec 10 2007.11.02 W32.Stration.DB@mm
VBA32 3.12.2.4 2007.11.02 MalwareScope.Worm.Warezov.1[/B][/QUOTE]Дополнительная информация
File size: 381171 bytes
MD5: 2026564c39ddf422b71349f8b884c2e7
SHA1: b74dd2b0ffa6e2386bbf04356c5cd07370dba9d8
Sunbelt info: W32.Stration.DB@mm is a mass mailing worm that carries an infected attachment and spreads by sending a copy of itself to every email address in the victim's computer.
Файл _install.exe.7FFFFFC3 получен 2007.11.02 20:37:42 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 WORM/Zhelatin.Gen
Authentium 4.93.8 2007.11.02 W32/StormWorm.G
Avast 4.7.1074.0 2007.11.02 Win32:Tibs-BLT
AVG 7.5.0.503 2007.11.02 Downloader.Tibs.8.F
BitDefender 7.2 2007.11.02 Trojan.Peed.INN
CAT-QuickHeal 9.00 2007.11.02 (Suspicious) - DNAScan
ClamAV 0.91.2 2007.11.02 Trojan.Peed-44
DrWeb 4.44.0.09170 2007.11.02 Trojan.Packed.162
eSafe 7.0.15.0 2007.10.28 Suspicious File
eTrust-Vet 31.2.5262 2007.11.02 Win32/Sintun.AK
F-Prot 4.4.2.54 2007.11.02 W32/StormWorm.G
F-Secure 6.70.13030.0 2007.11.02 Packed.Win32.Tibs.dg
Ikarus T3.1.1.12 2007.11.02 Packed.Win32.Tibs.dg
Kaspersky 7.0.0.125 2007.11.02 Packed.Win32.Tibs.dg
McAfee 5155 2007.11.02 Tibs-Packed
Microsoft 1.2908 2007.11.02 Trojan:Win32/Tibs.EV
NOD32v2 2634 2007.11.02 Win32/Nuwar.Gen
Norman 5.80.02 2007.11.02 Tibs.gen177
Sophos 4.23.0 2007.11.02 Mal/Dorf-F
Symantec 10 2007.11.02 Trojan.Peacomm.B
Webwasher-Gateway 6.6.1 2007.11.02 Worm.Zhelatin.Gen[/B][/QUOTE]Дополнительная информация
File size: 113370 bytes
MD5: 14b25ba8a3e700f90eec3c0ab5a3ab49
SHA1: 57581352befdd5cc149b1744cca70bcf2eb5afc2
Файл 2007-11-02.rar получен 2007.11.02 20:49:46 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 ADSPY/NetAdware.AC.1
Avast 4.7.1074.0 2007.11.02 Win32:Zlob-AFG
AVG 7.5.0.503 2007.11.02 Downloader.Zlob.QSD
BitDefender 7.2 2007.11.02 Adware.NetAdware.AA
CAT-QuickHeal 9.00 2007.11.02 AdWare.Vapsup.kg (Not a Virus)
eSafe 7.0.15.0 2007.10.28 suspicious Trojan/Worm
Ikarus T3.1.1.12 2007.11.02 AdWare.NetAdware.E
NOD32v2 2634 2007.11.02 Win32/Adware.Agent.NHS
Panda 9.0.0.4 2007.11.02 Suspicious file
Prevx1 V2 2007.11.02 Heuristic: Suspicious File With Covert Attributes
Webwasher-Gateway 6.6.1 2007.11.02 Ad-Spyware.NetAdware.AC.1[/B][/QUOTE]Дополнительная информация
File size: 3510625 bytes
MD5: 4eb64cd05568968115dc795ee7541686
SHA1: 07e1fe2188fddb50fb5c90fe0af6c2fded282ab5
packers: UPX_LZMA
Prevx info: [url]http://fileinfo.prevx.com/fileinfo.asp?PX5=75896255007C45163C5B45DDD1D658000E174DB6[/url]
-
Файл IcqControl.dll получен 2007.11.03 11:20:52 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 HEUR/Crypted
AVG 7.5.0.503 2007.11.02 BackDoor.Hupigon2.KNN
eSafe 7.0.15.0 2007.10.28 Suspicious File
FileAdvisor 1 2007.11.03 High threat detected
Norman 5.80.02 2007.11.02 W32/Suspicious_N.gen
Sophos 4.23.0 2007.11.03 Mal/Packer
TheHacker 6.2.9.110 2007.10.27 W32/Behav-Heuristic-067
Webwasher-Gateway 6.6.1 2007.11.02 Heuristic.Crypted[/B][/QUOTE]Дополнительная информация
File size: 208384 bytes
MD5: f04f5b0359404bd3ac349a82465494e2
SHA1: a8916be5fd43f1d5e69df2cac38c0fcc7f628bf4
Bit9 info: [url]http://fileadvisor.bit9.com/services/extinfo.aspx?md5=f04f5b0359404bd3ac349a82465494e2[/url]
packers: NSPack, PE_Patch
packers: NSPack
[size="1"][color="#666686"][B][I]Добавлено через 13 минут[/I][/B][/color][/size]
Файл install_cr.exe получен 2007.11.03 11:28:51 (CET)
[QUOTE][B]Avast 4.7.1074.0 2007.11.03 Win32:Zlob-AFG
AVG 7.5.0.503 2007.11.02 Downloader.Zlob
BitDefender 7.2 2007.11.03 Adware.NetAdware.AE[/B][/QUOTE]Дополнительная информация
File size: 200131 bytes
MD5: 06ab52f74863c917f8402a06a2b51332
SHA1: 6278e5eb0aa4dc8543297ec4e5bb398e2e76ee95
[size="1"][color="#666686"][B][I]Добавлено через 46 минут[/I][/B][/color][/size]
Файл load.exe получен 2007.11.03 12:27:12 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 TR/Crypt.XPACK.Gen
AVG 7.5.0.503 2007.11.02 SHeur.XIC
CAT-QuickHeal 9.00 2007.11.02 (Suspicious) - DNAScan
ClamAV 0.91.2 2007.11.03 PUA.Packed.UPack-2
eSafe 7.0.15.0 2007.10.28 Suspicious File
F-Prot 4.4.2.54 2007.11.02 W32/Heuristic-162!Eldorado
F-Secure 6.70.13030.0 2007.11.02 Trojan-Dropper.Win32.Agent.clo
Ikarus T3.1.1.12 2007.11.03 Trojan-Downloader.Win32.Zlob.and
Kaspersky 7.0.0.125 2007.11.03 Trojan-Dropper.Win32.Agent.clo
McAfee 5155 2007.11.02 New Malware.aj
Norman 5.80.02 2007.11.02 W32/Zlob.ARTB
Panda 9.0.0.4 2007.11.03 Suspicious file
Sophos 4.23.0 2007.11.03 Mal/Packer
Sunbelt 2.2.907.0 2007.11.02 VIPRE.Suspicious
TheHacker 6.2.9.110 2007.10.27 W32/Behav-Heuristic-060
VirusBuster 4.3.26:9 2007.11.02 Packed/Upack
Webwasher-Gateway 6.6.1 2007.11.02 Trojan.Crypt.XPACK.Gen[/B][/QUOTE]Дополнительная информация
File size: 46088 bytes
MD5: 59f41d310b88d924d2a113b939697499
SHA1: a4bd83f6707df4e58aade38ea8717a6cae3854d8
packers: UPack
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
[size="1"][color="#666686"][B][I]Добавлено через 2 часа 48 минут[/I][/B][/color][/size]
Файл gping_205.exe получен 2007.11.03 15:18:31 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 DR/MicroJoiner.Gen
AVG 7.5.0.503 2007.11.03 Win32/PolyCrypt
CAT-QuickHeal 9.00 2007.11.03 TrojanPSW.LdPinch.eap
F-Secure 6.70.13030.0 2007.11.02 Trojan-PSW.Win32.LdPinch.eap
Ikarus T3.1.1.12 2007.11.03 Trojan-PWS.Win32.LdPinch.eap
Kaspersky 7.0.0.125 2007.11.03 Trojan-PSW.Win32.LdPinch.eap
Panda 9.0.0.4 2007.11.03 Suspicious file
Webwasher-Gateway 6.6.1 2007.11.02 Trojan.MicroJoiner.Gen[/B][/QUOTE]Дополнительная информация
File size: 1274368 bytes
MD5: 335ca696a5aa477cd8c87157cf40145c
SHA1: ed044a0c4a3a0b35b3068340eee930781dcf2aa8
-
[INDENT][INDENT][LEFT] Файл bin1.exe получен 2007.11.04 06:49:29 (CET)
Его firewall заблокировал .
AhnLab-V32007.11.3.02007.11.02-
[B]AntiVir7.6.0.302007.11.02 TR/Crypt.XPACK.Gen[/B]
Authentium4.93.82007.11.03-
Avast4.7.1074.02007.11.03-
[B]AVG7.5.0.5032007.11.03Win32/PolyCryp[/B]
tBitDefender7.22007.11.04-
[B]CAT-QuickHeal9.002007.11.03 TrojanPSW.LdPinch.eap[/B]
ClamAV0.91.22007.11.04-
DrWeb4.44.0.091702007.11.03-
[B]eSafe7.0.15.02007.10.28 SuspiciousFile[/B]
eTrust-Vet31.2.52642007.11.02-
Ewido4.02007.11.03-
FileAdvisor12007.11.04-
Fortinet3.11.0.02007.10.19-
F-Prot4.4.2.542007.11.03-
[B]F-Secure6.70.13030.02007.11.04 Trojan-PSW.Win32.LdPinch.eap
IkarusT3.1.1.122007.11.04 Trojan-PWS.Win32.LdPinch.eap
Kaspersky7.0.0.1252007.11.03 Trojan-PSW.Win32.LdPinch.eap[/B]
McAfee51552007.11.02-
Microsoft1.29082007.11.03-
NOD32v2 2336 2007.11.03-
Norman5.80.022007.11.02-
[B]Panda9.0.0.42007.11.03 Suspiciousfile[/B]
[B]Prevx1V22007.11.04 Malware.Gen[/B]
Rising20.16.60.002007.11.04-
[B]Sophos4.23.02007.11.04 Mal/Basine-C[/B]
[B]Sunbelt2.2.907.02007.11.02 VIPRE.Suspicious[/B]
Symantec102007.11.04-
TheHacker6.2.9.1102007.10.27-
VBA323.12.2.42007.11.03-
VirusBuster4.3.26:92007.11.03-
[B]Webwasher-Gateway6.6.12007.11.02 Trojan.Crypt.XPACK.Gen
[/B]Дополнительная информация File size: 55296 bytesMD5: 4958b414a1a16cd519c804ff2f5ca01cSHA1: c02bf69b3b7c7c463b87c47f445b749e55fc5f46[/LEFT][/INDENT][/INDENT]
-
Это [B]не[/B] ложное срабатывание, файл на самом деле является malware, которое заподозрил только один антивирус.
Файл 1.htm получен 2007.11.04 08:41:37 (CET)
[QUOTE][B]Webwasher-Gateway 6.6.1 2007.11.02 JavaScript.CodeUnfolding.gen!High (suspicious)[/B][/QUOTE]Дополнительная информация
File size: 2359 bytes
MD5: 3f438825635986942b14e5760bdaec3e
SHA1: d98b7554c75fb7bf43e394d32eab60e889486303
[size="1"][color="#666686"][B][I]Добавлено через 3 часа 36 минут[/I][/B][/color][/size]
Файл avz00008.dta получен 2007.11.04 12:35:35 (CET)
[QUOTE][B]AntiVir 7.6.0.30 2007.11.02 HEUR/Malware
Authentium 4.93.8 2007.11.03 Possibly a new variant of W32/new-malware!Maximus
eSafe 7.0.15.0 2007.10.28 suspicious Trojan/Worm
F-Prot 4.4.2.54 2007.11.03 W32/new-malware!Maximus
Ikarus T3.1.1.12 2007.11.04 Trojan-Spy.Win32.Agent.rb
Panda 9.0.0.4 2007.11.04 Suspicious file
Prevx1 V2 2007.11.04 Heuristic: Suspicious Browser Help Object
Sophos 4.23.0 2007.11.04 Troj/Dowdec-Gen
Sunbelt 2.2.907.0 2007.11.02 VIPRE.Suspicious
VBA32 3.12.2.4 2007.11.03 suspected of Downloader.Small.33
Webwasher-Gateway 6.6.1 2007.11.02 Heuristic.Malware[/B][/QUOTE]Дополнительная информация
File size: 12288 bytes
MD5: 89c1b7f8c76bc14d5ca6a6ba070372c2
SHA1: 3076d6e030a351194602c3cc7ad6dfe43644019a
packers: UPX
packers: UPX
Prevx info: [url]http://fileinfo.prevx.com/fileinfo.asp?PX5=C1B31436002A502F30C0000AAA5AD100B7568A70[/url]
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
-
Касперский добавит в следуещее обновление под именем : Backdoor.Win32.Kbot.ab
[code]Файл avz00002.dta получен 2007.11.05 22:43:59 (CET)
Антивирус Версия Обновление Результат
AhnLab-V3 2007.11.6.0 2007.11.05 -
[B]AntiVir 7.6.0.30 2007.11.05 TR/Crypt.XPACK.Gen[/B]
Authentium 4.93.8 2007.11.05 -
[B]Avast 4.7.1074.0 2007.11.05 Win32:Small-HZL
AVG 7.5.0.503 2007.11.05 Downloader.Obfuskated
BitDefender 7.2 2007.11.05 Trojan.AVKiller.AW
CAT-QuickHeal 9.00 2007.11.05 (Suspicious) - DNAScan[/B]
ClamAV 0.91.2 2007.11.05 -
[B]DrWeb 4.44.0.09170 2007.11.05 Trojan.MulDrop.8347
eSafe 7.0.15.0 2007.10.28 Suspicious File[/B]
eTrust-Vet 31.2.5264 2007.11.02 -
Ewido 4.0 2007.11.05 -
FileAdvisor 1 2007.11.05 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.05 -
F-Secure 6.70.13030.0 2007.11.05 -
Ikarus T3.1.1.12 2007.11.05 -
Kaspersky 7.0.0.125 2007.11.05 -
[B]McAfee 5156 2007.11.05 Tcad-Crypted
Microsoft 1.2908 2007.11.05 TrojanDownloader:Win32/Small.gen!AAM[/B]
NOD32v2 2639 2007.11.05 -
Norman 5.80.02 2007.11.05 -
[B]Panda 9.0.0.4 2007.11.05 Suspicious file[/B]
Prevx1 V2 2007.11.05 -
[B]Rising 20.17.01.00 2007.11.05 Trojan.DL.Win32.Small.fyn
Sophos 4.23.0 2007.11.05 Mal/Basine-C[/B]
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.05 -
TheHacker 6.2.9.116 2007.11.05 -
VBA32 3.12.2.4 2007.11.05 -
[B]VirusBuster 4.3.26:9 2007.11.05 Trojan.DR.Dirat.Gen
Webwasher-Gateway 6.0.1 2007.11.05 Trojan.Crypt.XPACK.Gen[/B]
Дополнительная информация
File size: 12788 bytes
MD5: 85f7cd6ffd231dce0d052884f6682d40
SHA1: 07fe747914cc7dfc0c9206055d33c65970c05295[/code]
-
t=13890
[CODE]File csrss.exe received on 11.06.2007 08:14:44 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.1 2007.11.06 -
[B]AntiVir 7.6.0.30 2007.11.05 HEUR/Crypted[/B]
Authentium 4.93.8 2007.11.05 -
Avast 4.7.1074.0 2007.11.05 -
AVG 7.5.0.503 2007.11.05 -
[B]BitDefender 7.2 2007.11.06 Trojan.PWS.LDPinch.TDD[/B]
CAT-QuickHeal 9.00 2007.11.05 -
ClamAV 0.91.2 2007.11.06 -
DrWeb 4.44.0.09170 2007.11.05 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5270 2007.11.05 -
Ewido 4.0 2007.11.05 -
FileAdvisor 1 2007.11.06 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.06 -
F-Secure 6.70.13030.0 2007.11.05 -
[B]Ikarus T3.1.1.12 2007.11.06 Virus.Win32.Zapchast.DA[/B]
Kaspersky 7.0.0.125 2007.11.06 -
McAfee 5156 2007.11.05 -
Microsoft 1.2908 2007.11.05 -
NOD32v2 2639 2007.11.06 -
Norman 5.80.02 2007.11.05 -
Panda 9.0.0.4 2007.11.06 -
Prevx1 V2 2007.11.06 -
Rising 20.17.02.00 2007.11.06 -
Sophos 4.23.0 2007.11.06 -
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.06 -
TheHacker 6.2.9.117 2007.11.06 -
VBA32 3.12.2.4 2007.11.06 -
VirusBuster 4.3.26:9 2007.11.05 -
[B]Webwasher-Gateway 6.0.1 2007.11.05 Heuristic.Crypted[/B]
Additional information
File size: 20992 bytes
MD5: 62d7900b0e5f56a06b818a7443b7edbb
SHA1: eb9cc8432d26e57d9b53ba1a9d623194040df0a9[/CODE]
[size="1"][color="#666686"][B][I]Добавлено через 5 часов 6 минут[/I][/B][/color][/size]
t=13896[QUOTE]File
syswin.exe ; msrpc.exe ; lsassv.exe ; AdobeGammaLoader.scr ; calc2.exe
received on 11.06.2007 13:16:58 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.1 2007.11.06 -
AntiVir 7.6.0.30 2007.11.05 -
Authentium 4.93.8 2007.11.05 -
Avast 4.7.1074.0 2007.11.05 -
AVG 7.5.0.503 2007.11.06 -
BitDefender 7.2 2007.11.06 -
CAT-QuickHeal 9.00 2007.11.05 -
ClamAV 0.91.2 2007.11.06 -
[B]DrWeb 4.44.0.09170 2007.11.06 Trojan.LydraSpy.origin[/B]
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5270 2007.11.05 -
Ewido 4.0 2007.11.06 -
FileAdvisor 1 2007.11.06 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.06 -
F-Secure 6.70.13030.0 2007.11.06 -
Ikarus T3.1.1.12 2007.11.06 -
[B]Kaspersky 7.0.0.125 2007.11.06 Heur.Trojan.Generic[/B]
McAfee 5156 2007.11.05 -
[B]Microsoft 1.3007 2007.11.06 TrojanSpy:Win32/Lydra.gen!B[/B]
NOD32v2 2640 2007.11.06 -
Norman 5.80.02 2007.11.06 -
[B]Panda 9.0.0.4 2007.11.06 Suspicious file[/B]
Prevx1 V2 2007.11.06 -
Rising 20.17.12.00 2007.11.06 -
Sophos 4.23.0 2007.11.06 -
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.06 -
TheHacker 6.2.9.117 2007.11.06 -
VBA32 3.12.2.4 2007.11.06 -
VirusBuster 4.3.26:9 2007.11.05 -
Webwasher-Gateway 6.0.1 2007.11.05 -
Additional information
File size: 468207 bytes
MD5: de9730919f23225ae5c49d2e56258264
SHA1: 92f0b3403063647e685c0de5777465665946412d[/QUOTE]
[size="1"][color="#666686"][B][I]Добавлено через 38 минут[/I][/B][/color][/size]
t=13895
[QUOTE]File bindmod.dll received on 11.06.2007 13:43:50 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.1 2007.11.06 -
[B]AntiVir 7.6.0.30 2007.11.05 TR/Zlob.Dll[/B]
Authentium 4.93.8 2007.11.05 -
[B]Avast 4.7.1074.0 2007.11.05 Win32:Agent-LTS
AVG 7.5.0.503 2007.11.06 Downloader.Zlob.QRV[/B]
BitDefender 7.2 2007.11.06 -
CAT-QuickHeal 9.00 2007.11.05 -
ClamAV 0.91.2 2007.11.06 -
DrWeb 4.44.0.09170 2007.11.06 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5270 2007.11.05 -
Ewido 4.0 2007.11.06 -
FileAdvisor 1 2007.11.06 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.06 -
F-Secure 6.70.13030.0 2007.11.06 -
[B]Ikarus T3.1.1.12 2007.11.06 not-a-virus:AdWare.Win32.Agent.bn[/B]
Kaspersky 7.0.0.125 2007.11.06 -
McAfee 5156 2007.11.05 -
Microsoft 1.3007 2007.11.06 -
NOD32v2 2640 2007.11.06 -
[B]Norman 5.80.02 2007.11.06 Agent.CUUF[/B]
Panda 9.0.0.4 2007.11.06 -
Prevx1 V2 2007.11.06 -
Rising 20.17.12.00 2007.11.06 -
Sophos 4.23.0 2007.11.06 -
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.06 -
TheHacker 6.2.9.117 2007.11.06 -
VBA32 3.12.2.4 2007.11.06 -
VirusBuster 4.3.26:9 2007.11.05 -
[B]Webwasher-Gateway 6.0.1 2007.11.05 Trojan.Zlob.Dll[/B]
Additional information
File size: 281088 bytes[/QUOTE]
[QUOTE]File advrepgpd.dll received on 11.06.2007 13:44:01 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.1 2007.11.06 -
[B]AntiVir 7.6.0.30 2007.11.05 TR/BHO.Agent.258048[/B]
Authentium 4.93.8 2007.11.05 -
Avast 4.7.1074.0 2007.11.05 -
[B]AVG 7.5.0.503 2007.11.06 Downloader.Zlob.QRY
BitDefender 7.2 2007.11.06 Adware.NetAdware.AB[/B]
CAT-QuickHeal 9.00 2007.11.05 -
ClamAV 0.91.2 2007.11.06 -
DrWeb 4.44.0.09170 2007.11.06 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5270 2007.11.05 -
Ewido 4.0 2007.11.06 -
FileAdvisor 1 2007.11.06 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.06 -
F-Secure 6.70.13030.0 2007.11.06 -
[B]Ikarus T3.1.1.12 2007.11.06 Generic.NetAdware[/B]
Kaspersky 7.0.0.125 2007.11.06 -
McAfee 5156 2007.11.05 -
Microsoft 1.3007 2007.11.06 -
[B]NOD32v2 2640 2007.11.06 a variant of Win32/Adware.Agent.NHO
Norman 5.80.02 2007.11.06 W32/Vapsup.AV[/B]
Panda 9.0.0.4 2007.11.06 -
Prevx1 V2 2007.11.06 -
Rising 20.17.12.00 2007.11.06 -
Sophos 4.23.0 2007.11.06 -
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.06 -
TheHacker 6.2.9.117 2007.11.06 -
VBA32 3.12.2.4 2007.11.06 -
VirusBuster 4.3.26:9 2007.11.05 -
[B]Webwasher-Gateway 6.0.1 2007.11.05 Trojan.BHO.Agent.258048[/B]
Additional information
File size: 258048 bytes[/QUOTE]
[QUOTE]File hupsrv.dll received on 11.06.2007 13:43:38 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.1 2007.11.06 -
[B]AntiVir 7.6.0.30 2007.11.05 ADSPY/VideoPlug.A.1[/B]
Authentium 4.93.8 2007.11.05 -
Avast 4.7.1074.0 2007.11.05 -
[B]AVG 7.5.0.503 2007.11.06 Downloader.Zlob.QRZ[/B]
BitDefender 7.2 2007.11.06 -
CAT-QuickHeal 9.00 2007.11.05 -
ClamAV 0.91.2 2007.11.06 -
DrWeb 4.44.0.09170 2007.11.06 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5270 2007.11.05 -
Ewido 4.0 2007.11.06 -
FileAdvisor 1 2007.11.06 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.4.2.54 2007.11.06 -
F-Secure 6.70.13030.0 2007.11.06 -
[B]Ikarus T3.1.1.12 2007.11.06 not-a-virus:AdWare.Win32.Agent.bn[/B]
Kaspersky 7.0.0.125 2007.11.06 -
McAfee 5156 2007.11.05 -
Microsoft 1.3007 2007.11.06 -
NOD32v2 2640 2007.11.06 -
[B]Norman 5.80.02 2007.11.06 Agent.CUUF[/B]
Panda 9.0.0.4 2007.11.06 -
Prevx1 V2 2007.11.06 -
Rising 20.17.12.00 2007.11.06 -
Sophos 4.23.0 2007.11.06 -
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.06 -
TheHacker 6.2.9.117 2007.11.06 -
VBA32 3.12.2.4 2007.11.06 -
VirusBuster 4.3.26:9 2007.11.05 -
[B]Webwasher-Gateway 6.0.1 2007.11.05 Ad-Spyware.VideoPlug.A.1[/B]
Additional information
File size: 269312 bytes[/QUOTE]
какой интересный денёк...
[size="1"][color="#666686"][B][I]Добавлено через 2 минуты[/I][/B][/color][/size]
t=13894 [[color=#CC0000]незачёт - Этот файл повреждён[/color].]
[QUOTE]File SYSDRV1.EXE received on 11.06.2007 13:54:09 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.1 2007.11.06 -
AntiVir 7.6.0.30 2007.11.05 -
Authentium 4.93.8 2007.11.05 -
[B]Avast 4.7.1074.0 2007.11.05 Win32:LdPinch-IG[/B]
AVG 7.5.0.503 2007.11.06 -
[B]BitDefender 7.2 2007.11.06 Trojan.Pws.Ldpinch.AJA
CAT-QuickHeal 9.00 2007.11.06 (Suspicious) - DNAScan[/B]
ClamAV 0.91.2 2007.11.06 -
DrWeb 4.44.0.09170 2007.11.06 -
[B]eSafe 7.0.15.0 2007.10.28 Suspicious File[/B]
eTrust-Vet 31.2.5270 2007.11.05 -
Ewido 4.0 2007.11.06 -
FileAdvisor 1 2007.11.06 -
[B]Fortinet 3.11.0.0 2007.10.19 Spy/Basine[/B]
F-Prot 4.4.2.54 2007.11.06 -
[B]F-Secure 6.70.13030.0 2007.11.06 LdPinch.JVR
Ikarus T3.1.1.12 2007.11.06 Trojan-PWS.Win32.LdPinch.bph[/B]
Kaspersky 7.0.0.125 2007.11.06 -
[B]McAfee 5156 2007.11.05 PWS-LDPinch[/B]
Microsoft 1.3007 2007.11.06 -
[B]NOD32v2 2640 2007.11.06 Win32/PSW.LdPinch.NEL
Norman 5.80.02 2007.11.06 LdPinch.JVR
Panda 9.0.0.4 2007.11.06 Trj/LdPinch.AJF[/B]
Prevx1 V2 2007.11.06 -
[B]Rising 20.17.12.00 2007.11.06 Trojan.PSW.Win32.LdPinch.buj
Sophos 4.23.0 2007.11.06 Mal/Basine-C
Sunbelt 2.2.907.0 2007.11.02 Trojan-PSW.Win32.Hooker.24.c
Symantec 10 2007.11.06 Infostealer[/B]
TheHacker 6.2.9.117 2007.11.06 -
[B]VBA32 3.12.2.4 2007.11.06 Trojan.Win32.PSW.LdPinch.NEL
VirusBuster 4.3.26:9 2007.11.05 Packed/FSG
Webwasher-Gateway 6.0.1 2007.11.05 Win32.Malware.gen#FSG (suspicious)[/B]
Additional information
File size: 24231 bytes
MD5: 4acb6bf2e065d7ed9ed048d134980f5b
SHA1: c37522ec0f9b29bee95bc3062a507d9dc6b4558a
packers: PE_Patch, FSG[/QUOTE]
Page generated in 0.00730 seconds with 10 queries