Virus Malware and Threat News for 20080527
Email-Worm:W32/VB.FW - Email-Worm:W32/VB.FW at F-Secure
Email-Worm:W32/VB.FW is a type of worm that uses e-mail as its spreading vector.
...
Downloader.Swif.C - Downloader.Swif.C at Norton Symantec
Downloader.Swif.C is a malicious file that exploits the Adobe Flash Player SWF File Unspecified Remote Code
Execution Vulnerability (BID 29386) in order to download more malware on to the compromised computer.
...
PWS-LegMir.gen.h.dll!1D1FCC20 - PWS-LegMir.gen.h.dll!1D1FCC20 at McAfee
File PropertyProperty ValueFile Nameaa9.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,147
bytesCRC321D1FCC20MD536f62182e460ca9d2bbeb8d60fc36262SHA18E8110314100340E030C268968D35E230EE5E430Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACGZAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.82DCF0A8ClamAV...
PWS-LegMir.gen.h.dll!2D4B7C01 - PWS-LegMir.gen.h.dll!2D4B7C01 at McAfee
File PropertyProperty ValueFile Nameaa8.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,231
bytesCRC322D4B7C01MD516eeaf2c3d29f4ab3fd059b6233404caSHA11055D469E286A1787D0B2A048394E73E90820990Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACHKAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.A4B8007AClamAV...
PWS-LegMir.gen.h.dll!C22B9688 - PWS-LegMir.gen.h.dll!C22B9688 at McAfee
File PropertyProperty ValueFile Nameaa7.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,057
bytesCRC32C22B9688MD52a50ca1507495ced1578a4a1edd36b82SHA1360DE424AEF92FAC2BB080C44E94173183B58323Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACODAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.CE26C5ABDr.Web...
PWS-LegMir.gen.h.dll!565A4326 - PWS-LegMir.gen.h.dll!565A4326 at McAfee
File PropertyProperty ValueFile Nameaa5.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,316
bytesCRC32565A4326MD5bcda8d20c2622a3591f3f7f3f16f9fe8SHA141A1A0D94037D517897691E148FD392FBA73C2A5Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACJRAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.CFDDAB94Dr.Web...
PWS-LegMir.gen.h.dll!B6D92AA8 - PWS-LegMir.gen.h.dll!B6D92AA8 at McAfee
File PropertyProperty ValueFile Nameaa4.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,009
bytesCRC32B6D92AA8MD533f0ab3fbb745b4a755669f5a63054f4SHA119BDE098ED8252604438062178B8A40667490253Other Common
Detection AliasesCompany NameDetection NameAviraTR/Spy.GenBitDefenderGeneric.Malware.SBdldg.6749C3AEDr.
WebTrojan.PWS.Gamania.origineS...
PWS-LegMir.gen.h.dll!E84C2CDE - PWS-LegMir.gen.h.dll!E84C2CDE at McAfee
File PropertyProperty ValueFile Nameaa2.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,531
bytesCRC32E84C2CDEMD5e3e1c43c242aec4638d5d445d960562bSHA1002049D81F4D0D649F862A8F75E1B73D30E40F9FOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACRPAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.9890C629Dr.Web...
PWS-LegMir.gen.h.dll!F5E9B6FF - PWS-LegMir.gen.h.dll!F5E9B6FF at McAfee
File PropertyProperty ValueFile Nameaa19.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength15,662
bytesCRC32F5E9B6FFMD538c8e3451250d7bc254ce4f0dc17a34aSHA10B2E7E82AE8B53AB103B4CC387A2B633054090F5Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ADQOAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.5ED7F07FClamA...
PWS-LegMir.gen.h.dll!2EA8E596 - PWS-LegMir.gen.h.dll!2EA8E596 at McAfee
File PropertyProperty ValueFile Nameaa18.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength15,123
bytesCRC322EA8E596MD58a18f0b9924c3463eeb252ed49309d2fSHA1958906F9E83562426B47C3483286F31BFA037BB1Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACOMAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.44584B85ClamA...
PWS-LegMir.gen.h.dll!BA7FD231 - PWS-LegMir.gen.h.dll!BA7FD231 at McAfee
File PropertyProperty ValueFile Nameaa16.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength15,914
bytesCRC32BA7FD231MD5c556395c5123bb82c940cd80bed5649cSHA1B0B892DBCA8A6934617E2638E1FE208C29B2B1EAOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACHCAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.6444C9D6Dr.We...
PWS-LegMir.gen.h.dll!091987FC - PWS-LegMir.gen.h.dll!091987FC at McAfee
File PropertyProperty ValueFile Nameaa15.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,383
bytesCRC32091987FCMD58ff4399dabfd571e67ae06de09a978eeSHA1063DFF490B4F8EC9A3E356AB762B288EF4CBF1A8Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACIFAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.E2725197ClamA...
PWS-LegMir.gen.h.dll!23D8366A - PWS-LegMir.gen.h.dll!23D8366A at McAfee
File PropertyProperty ValueFile Nameaa13.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,340
bytesCRC3223D8366AMD5f3ce426e4e48faec2a85c6b36b3bf5ccSHA104CBB1280CCC3E55281ACC2C05923FBAD63BA2EBOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACHBAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.BCA7C180ClamA...
PWS-LegMir.gen.h.dll!ABF17075 - PWS-LegMir.gen.h.dll!ABF17075 at McAfee
File PropertyProperty ValueFile Nameaa14.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength16,314
bytesCRC32ABF17075MD51bea38bfcc7644332fa7405415621a69SHA1C2DBD7C44D84FDCCB465DC1CEAE071AA563137BEOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)PSW.OnlineGames.AQVYAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.B8A4A2B...
PWS-LegMir.gen.h.dll!82FFB393 - PWS-LegMir.gen.h.dll!82FFB393 at McAfee
File PropertyProperty ValueFile Nameaa12.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength14,882
bytesCRC3282FFB393MD5141cd13799d46d3ec3788a030529843fSHA13EA4D457083F135EC02CCEDD54713DCB9D84B6AEOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACYWAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.14A80FCCClamA...
PWS-LegMir.gen.h.dll!009B9348 - PWS-LegMir.gen.h.dll!009B9348 at McAfee
File PropertyProperty ValueFile Nameaa17.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength14,895
bytesCRC32009B9348MD58d3c04ed933bf05b0f11f9c92e6f17faSHA12A2C158308260A7A2CCE5559F2A997C88BBD14BCOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACHAAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdld.2F6E95A7ClamAV...
PWS-LegMir.gen.h.dll!80EB96E2 - PWS-LegMir.gen.h.dll!80EB96E2 at McAfee
File PropertyProperty ValueFile Nameaa11.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength15,857
bytesCRC3280EB96E2MD50cfa742b7fbd70926c57d7e9c5b2e575SHA1CA1F11C14391D0CCF1400A69E5C945FE71044BA5Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ACHEAviraTR/Spy.GenBitDefenderGeneric.
Malware.SBdldg.F06FA26CClamA...
PWS-LegMir.gen.h.dll!D32CE04F - PWS-LegMir.gen.h.dll!D32CE04F at McAfee
File PropertyProperty ValueFile Nameaa1.exeMcAfee DetectionPWS-LegMir.gen.h.dllLength17,254
bytesCRC32D32CE04FMD5850f955507c4040667b9d78dc58527eaSHA1DC5AF3392515AF69C4FE30F530EAC63A72E70BBCOther Common
Detection AliasesCompany NameDetection NameAhnLabWin-Trojan/OnlineGameHack.17254.CAVG (GriSoft)Generic10.
ACOCAviraTR/Spy.GenBitDefend...
Generic PUP.x!5DD15E4F - Generic PUP.x!5DD15E4F at McAfee
This software is not a virus or a Trojan. It is detected as a "potentially unwanted program" (PUP). PUPs are
any piece of software that a reasonably security- or privacy-minded computer user may want to be informed of
and, in some cases, remove. PUPs are often made by a legitimate corporate entity for some beneficial purpose,
but th...
Generic PUP.x!67D2E998 - Generic PUP.x!67D2E998 at McAfee
This software is not a virus or a Trojan. It is detected as a "potentially unwanted program" (PUP). PUPs are
any piece of software that a reasonably security- or privacy-minded computer user may want to be informed of
and, in some cases, remove. PUPs are often made by a legitimate corporate entity for some beneficial purpose,
but th...
Generic.dx!2909BA88 - Generic.dx!2909BA88 at McAfee
File PropertyProperty ValueFile Name72.exeMcAfee DetectionGeneric.dxLength168,193
bytesCRC322909BA88MD519b58475a675afa793072ed77549ac17SHA1AAC419A567F3843147895843CB449FAE185634CDOther Common
Detection AliasesCompany NameDetection NameAvastWin32:Agent-GRW [Trj]AviraDR/Drop.Agent.qoa.
55BitDefenderTrojan.Generic.273620Dr.WebTrojan.Clic...
PWS-QQPass.dll!4276189D - PWS-QQPass.dll!4276189D at McAfee
File PropertyProperty ValueFile Name2.exeMcAfee DetectionPWS-QQPass.dllLength59,570
bytesCRC324276189DMD54db298a5701182443a0f7c642342a8baSHA1389A5539B53E30922C0474FE7E2DEF294CF1975AOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)Generic10.ADOEAviraTR/ATRAPS.GenBitDefenderDropped:
Generic.Malware.Fdldg.CA8527A3Clam...
TROJ_YABE.BB - TROJ_YABE.BB at Trend Micro
...
Troj/FakeVir-BH - Troj/FakeVir-BH at Sophos
Troj/FakeVir-BH pretends to scan the hard drive and will always find non-existant threats. It
pretends to clean up the threats once the user pays a license fee. Troj/FakeVir-BH
creates the following registry entries:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run ...
Troj/Noreger-A - Troj/Noreger-A at Sophos
Troj/Noreger-A is an automated tool used to register accounts on a popular social networking
website. ...
Troj/Agent-GZR - Troj/Agent-GZR at Sophos
Troj/Agent-GZR runs continuously in the background, providing a backdoor server which allows a
remote intruder to gain access and control over the computer via IRC channels. When
first run Troj/Agent-GZR copies itself to
<Root>\recycler\S-1-5-21-1482476501-1644491937-682003330-1013...
Troj/Agent-HAG - Troj/Agent-HAG at Sophos
Troj/Agent-HAG is a downloading Trojan for the Windows platform.
Troj/Agent-HAG copies itself to <System>\exp1orer.exe and creates the following registry entry to run
itself on system restart: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
exp1orer.exe ...
Troj/FakeVir-BG - Troj/FakeVir-BG at Sophos
Troj/FakeVir-BG is a Trojan for the Windows platform. Troj/FakeVir-BG
includes functionality to access the internet and communicate with a remote server via HTTP.
Troj/FakeVir-BG will periodically display fake virus alert messages to try and trick the user into
paying a fee b...
Troj/Mdrop-BSQ - Troj/Mdrop-BSQ at Sophos
Troj/Mdrop-BSQ is a Trojan for the Windows platform which installs other malware.
When first run, Troj/Mdrop-BSQ copies itself to <Temp>\tru<random character>.tmp and creates
the following files: <Temp>\rvruytx2.dll <Root>\autorun.inf
...
Mal/ExpJS-H - Mal/ExpJS-H at Sophos
Mal/ExpJS-H is a malicious web page intended to exploit client-side vulnerabililties in order to
download and execute other malicious content.
...
0 writebacks [05/28/2008 04:43]
[]
permanent link
|