mwblog.org

MWBLOG.ORG


Virus Malware and Threat News for 20080628



Trojan.Ushedix!inf

- Trojan.Ushedix!inf at Norton Symantec

Trojan.Ushedix!inf is a detection for the %System%user32.dll file infected by Trojan.Ushedix.
...

Trojan.Ushedix

- Trojan.Ushedix at Norton Symantec

Trojan.Ushedix is a Trojan horse that replaces system files and infects the user32.dll file in order to
download potentially malicious files.
...

W32/Nuwar@MM!D14224A0

- W32/Nuwar@MM!D14224A0 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32D14224A0MD5020A10AFBFD3ED7E524E3A667344ADE7SHA1901EB9DCEC0AB5D1C71B54ABCEEA029F2DC0EBC4Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!8641B1EA

- W32/Nuwar@MM!8641B1EA at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC328641B1EAMD56B17B30033A34881264D7C9093C6F91CSHA16C8A616E384818735B3675E7AE5A647AF0A2C61BOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!D3B643F6

- W32/Nuwar@MM!D3B643F6 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32D3B643F6MD530404ACB7FCDF48D04990B26D0FDC87ESHA16C6E3915284926DFC06C0377F9D6562165C739B5Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!548A7EB1

- W32/Nuwar@MM!548A7EB1 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32548A7EB1MD5854809E64AB9D0F8D480F93E782EC41BSHA1CA386F2E8C76F341BF9C9A5AFB2D7F6658BAEC96Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!43193B21

- W32/Nuwar@MM!43193B21 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3243193B21MD50D944B49BDD5EEDFB9AE0CC1B161C313SHA1BC69ECD25785AF9BD1385AEE04359AEB4E92AAFFOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!C40ABEA6

- W32/Nuwar@MM!C40ABEA6 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32C40ABEA6MD53BB831946F247040D3EAB7051577850BSHA13440B1870115ED651FC9BB82FB70263231EEAA4EOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!D4315465

- W32/Nuwar@MM!D4315465 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32D4315465MD51C9AB82E70693DAE9FF532BF6723251BSHA1C2AEACD1EC2F6249A2952316DCC15B8F8B60F61EOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!F8692ECC

- W32/Nuwar@MM!F8692ECC at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32F8692ECCMD5CD70D209A1FED61BEAFA8486F4C75065SHA1EB12BF7491F9A439662AA48FC8A765A1908B10AFOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!21A16D0D

- W32/Nuwar@MM!21A16D0D at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3221A16D0DMD5D7FEC645C9CAA36427C2A972F5F2ADA5SHA118E081C1F600A38F13CBDC86BCF72071D68EEA35Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!63C45B97

- W32/Nuwar@MM!63C45B97 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3263C45B97MD5E8A7BC6B8D0EE3748C99B79DB2B07D0DSHA1935890B83DE37651980E81BE3735C37D7D6717D9Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!9FA7CE9E

- W32/Nuwar@MM!9FA7CE9E at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC329FA7CE9EMD5E24401C57AC3BB085590DB69EFAA4C15SHA1B49B89502D6D3AE62DA185D6A5EFE18DA219C44EOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!7237CC67

- W32/Nuwar@MM!7237CC67 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC327237CC67MD5E75E9A4A2E0E10AB6CC76F5F49975C17SHA1FFBA34FBC06EE63844090E4007EF640C8F5A50D8Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!4A2794E4

- W32/Nuwar@MM!4A2794E4 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC324A2794E4MD55e7f6ba51cdf28ec0f536fe7b317bf02SHA1D2B83B4DD03BD24371447BB4D3DAD45D2C412D13Avert®
Labs has observed the following system activities:ActivityRisk LevelModifies Memory of Other
ProcessesHighEnumerates running ProcessesMediumCr...

W32/Nuwar@MM!3E046C0B

- W32/Nuwar@MM!3E046C0B at McAfee

...

W32/Nuwar@MM!892CBDDA

- W32/Nuwar@MM!892CBDDA at McAfee

...

W32/Nuwar@MM!28CFF091

- W32/Nuwar@MM!28CFF091 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3228CFF091MD59B834B318CBA71840D9633D02B430E8ESHA1170D92EDB1F3D910222D10166FC79E1E5AB94046Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!ABC97A09

- W32/Nuwar@MM!ABC97A09 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32ABC97A09MD5A7D136851217E48921FDF4A9C7C72E72SHA1D4188B6097EC1265361AB1CBC8E583D87F8F825AOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!C3E3B059

- W32/Nuwar@MM!C3E3B059 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32C3E3B059MD5427D00CABAAAC84D7621167C4EC602E4SHA105C5E70648AAB9504314BC281A477737FEB78F8DOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!E6976D7A

- W32/Nuwar@MM!E6976D7A at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32E6976D7AMD512F4F976941243F768C8914D200510E1SHA1C0BCF06941B464DA5FD6415F5032720EEB3A21FEOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vfhMicrosoftbackdoor:win32/nuwar.
gen!dAvert® Labs has observ...

W32/Nuwar@MM!60DA54AB

- W32/Nuwar@MM!60DA54AB at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3260DA54ABMD5AAB1BC9E59F4CF2C513F5710940396ECSHA17A9C96EEC2E44D294D63BC74AD4DEBBAF85F5A47Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!F1746B74

- W32/Nuwar@MM!F1746B74 at McAfee

File PropertyProperty ValueFile Namemssecu~1.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32F1746B74MD5F769A9FD3C0C976EEE5B3B387066831FSHA15F31DBD4DC01AE00D6A9E9C75D9C5ADE436312ABOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vdyMicrosoftbackdoor:win32/nuwar.
gen!dAvert® Labs has ob...

W32/Nuwar@MM!23772DD7

- W32/Nuwar@MM!23772DD7 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3223772DD7MD576E2649D0D4F314308BD38BA86D15CFASHA1239F338D5EAC7B4E129314BC83F67EC604FE20B3Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vdeMicrosoftbackdoor:win32/nuwar.
gen!dAvert® Labs has obs...

W32/Nuwar@MM!FAD64090

- W32/Nuwar@MM!FAD64090 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32FAD64090MD5A30C48FAD71946B5151EBEF5F8217E8BSHA11090A0771EA34CCA6F002840CA4DE6B95668A418Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!F44C00EE

- W32/Nuwar@MM!F44C00EE at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32F44C00EEMD59F4DF8D3ECE24170122198E67DBA7BF9SHA1269826AAE2E4F5F1E569D8BD9C4288263ADAC7F0Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vdqMicrosoftbackdoor:win32/nuwar.
gen!dAvert® Labs has obs...

W32/Nuwar@MM!2426DFC8

- W32/Nuwar@MM!2426DFC8 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC322426DFC8MD5DCC46B1D1D1E8D8CDC499507CF4CA585SHA1BA07F52D9E11FE0C33A55B608A1A5EC1FB2EBC82Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vdzMicrosoftbackdoor:win32/nuwar.
gen!dAvert® Labs has observ...

W32/Nuwar@MM!D012F2C3

- W32/Nuwar@MM!D012F2C3 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32D012F2C3MD5896A5DC7C9EFE1FE41D93B81F5093541SHA1C2101DDE468271ED474E2225CDBE36900204B63COther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vcnMicrosoftbackdoor:win32/nuwar.
gen!dTrend MicroTROJ_CNTR.IYAv...

W32/Nuwar@MM!B82AAB94

- W32/Nuwar@MM!B82AAB94 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32B82AAB94MD57E7DC03833D71CD807668A03E620A64BSHA14DF6BED18532BA730A1FD8579848E848D6A9D50COther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)downloader.generic7.vcgMicrosoftbackdoor:win32/nuwar.
gen!dAvert® Labs has obs...

W32/Nuwar@MM!83257376

- W32/Nuwar@MM!83257376 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3283257376MD5ABFC66845020D058FCA6F188758A9974SHA109A5CA56640A3E1E20A100BF9F1549B4BBA20EBCOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!871760F6

- W32/Nuwar@MM!871760F6 at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32871760F6MD542DC1002761CCAB341788AD8FFE837C3SHA1B66863EF32B688BDB4AD05970E27E38BE986852FOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dNormanw32/dloader.hwpcTrend
MicroTROJ_CNTR.ISAvert® Lab...

Troj/Bancos-BED

- Troj/Bancos-BED at Sophos

Troj/Bancos-BED is a Trojan that steals banking information.
...

Troj/Agent-HDT

- Troj/Agent-HDT at Sophos

...

Troj/Agent-HDR

- Troj/Agent-HDR at Sophos

...

Troj/Dloadr-BNH

- Troj/Dloadr-BNH at Sophos

...

Troj/Repl-B

- Troj/Repl-B at Sophos

...

Troj/Zlob-ALR

- Troj/Zlob-ALR at Sophos

Troj/Zlob-ALR creates the registry value
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run
some...

Troj/Zlobun-Gen

- Troj/Zlobun-Gen at Sophos

Troj/Zlobun-Gen is a family of Trojans for the Windows platform.Members of Troj/Zlobun-Gen usually claim to be
uninstallers for other applications, though may not remove all of the files and registry entries associated
with those applications.Members of Troj/Zlobun-Gen are typically seen in conjunction with other Zlob Trojans.
...

0 writebacks [06/29/2008 04:44] [] permanent link



July 2010
Sun Mon Tue Wed Thu Fri Sat
       

Rss version