mwblog.org

MWBLOG.ORG


Virus Malware and Threat News for 20080629



W32/Nuwar@MM!F6D2E5FF

- W32/Nuwar@MM!F6D2E5FF at McAfee

File PropertyProperty ValueFile Namemylove.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32F6D2E5FFMD55379948A761570BF86AD4D4387AA3F8ASHA1D9374E4FC3B545CF0C087EB11F516714A3F79E9AOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the follo...

W32/Nuwar@MM!80CE7E98

- W32/Nuwar@MM!80CE7E98 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3280CE7E98MD5CA4855CDF33B75D75F46040440F1D314SHA1D1D76A073DC68EF8B0F6761BB5BF18EB2C4CF2D5Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!DB3BDFD5

- W32/Nuwar@MM!DB3BDFD5 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32DB3BDFD5MD5D29C12B99C58C7E725B8A3934844E1B0SHA1A0EF41D9E1FAC0DD0E23567C4335D1F805811537Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the followi...

W32/Nuwar@MM!C27F380A

- W32/Nuwar@MM!C27F380A at McAfee

File PropertyProperty ValueFile Namewinner.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32C27F380AMD5CDDFB15AE1927EA87285C48ADDA01515SHA1F97DBB8D38F03443794A019706A4F99915D3E641Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the follo...

W32/Nuwar@MM!E8834DE0

- W32/Nuwar@MM!E8834DE0 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32E8834DE0MD5BEAA6E30402069C5F494F07DEF0DBD36SHA1362887B6073CE392D2577D948328C5C5C5B4CA47Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the followi...

PWS-OnlineGames.as!C2ED50FC

- PWS-OnlineGames.as!C2ED50FC at McAfee

File PropertyProperty ValueFile Namemax4.exeMcAfee DetectionPWS-OnlineGames.asLength19,191
bytesCRC32C2ED50FCMD505E00202B69C5E639F5D0267565CFCE3SHA1C272FA296E97E671C886AE811346BE3132ACD4E3Other Common
Detection AliasesCompany NameDetection NameNormanw32/suspicious_u.genSophosMal/PackerSymantecInfostealer.
GampassTrend MicroTSPY_ONLINE...

PWS-OnlineGames.as!D69F40D4

- PWS-OnlineGames.as!D69F40D4 at McAfee

File PropertyProperty ValueFile Namemax13.exeMcAfee DetectionPWS-OnlineGames.asLength19,795
bytesCRC32D69F40D4MD511B340F2286DE93680F65B2EBBB88DD7SHA1E27F7C539383B55427834839B1523FDBD81332CAOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)psw.onlinegames.avmpNormanw32/suspicious_u.
genSophosMal/PackerTrend MicroTROJ...

PWS-OnlineGames.p!1980E2E8

- PWS-OnlineGames.p!1980E2E8 at McAfee

File PropertyProperty ValueFile Namemax28.exeMcAfee DetectionPWS-OnlineGames.pLength25,808
bytesCRC321980E2E8MD5ABC386140AFEF41E61EBB6944A2E4401SHA1442E01010AD6E8B0B507AA2AF3D86B26FB24F564Other Common
Detection AliasesCompany NameDetection NameNormanw32/suspicious_u.genSymantecInfostealer.GampassTrend
MicroCryp_UpackAvert® Labs ha...

PWS-OnlineGames.p!8F1C2153

- PWS-OnlineGames.p!8F1C2153 at McAfee

File PropertyProperty ValueFile Namemax30.exeMcAfee DetectionPWS-OnlineGames.pLength28,168
bytesCRC328F1C2153MD51D97A22475E5B5D6B228DCA37A00C312SHA10DFCCA94CAB7D705ED90B9EADE2CC44028B451C8Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)psw.onlinegames.apuhNormanw32/suspicious_u.
genSymantecInfostealer.GampassTrend...

PWS-OnlineGames.as!8E513A62

- PWS-OnlineGames.as!8E513A62 at McAfee

File PropertyProperty ValueFile Namemax6.exeMcAfee DetectionPWS-OnlineGames.asLength19,511
bytesCRC328E513A62MD523C0BC9684072AF1640773887E65D50CSHA1B1B19208C0E3FF9EF72103BF75F591EC1D9ED719Other Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)psw.onlinegames.avhnNormanw32/suspicious_u.
genSophosMal/PackerSymantecInfostea...

PWS-OnlineGames.as!5B95CF5F

- PWS-OnlineGames.as!5B95CF5F at McAfee

File PropertyProperty ValueFile Namemax16.exeMcAfee DetectionPWS-OnlineGames.asLength19,587
bytesCRC325B95CF5FMD549C91BF213979A13C4D79589FFDC81F5SHA12781FA525F3C570196BE70F77F5AF7EE27D87422Other Common
Detection AliasesCompany NameDetection NameNormanw32/suspicious_u.genSophosMal/PackerSymantecInfostealer.
GampassTrend MicroTSPY_ONLIN...

PWS-OnlineGames.as!74EF8986

- PWS-OnlineGames.as!74EF8986 at McAfee

File PropertyProperty ValueFile Namemax17.exeMcAfee DetectionPWS-OnlineGames.asLength19,927
bytesCRC3274EF8986MD550D35D2DC5EC2F349078B02A533BCF94SHA16C2A3EC958BD1B969BC75C31DD7270F557CEC74EOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)psw.onlinegames.avhyNormanw32/suspicious_u.
genSophosMal/PackerSymantecInfoste...

W32/Nuwar@MM!CD11D741

- W32/Nuwar@MM!CD11D741 at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32CD11D741MD5885C6E21EE47DFB212A8AD8EFE89157ASHA19F8B0880F6325755FD3A6D0C90ECE4C7F24D1D20Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

W32/Nuwar@MM!361166DB

- W32/Nuwar@MM!361166DB at McAfee

File PropertyProperty ValueFile Namewinner.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32361166DBMD57A20A772254910B6EF8A2E18D151FFD6SHA15B5AB962DA227666B9F4E17A81B7788A2EE4BED0Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the follo...

W32/Nuwar@MM!55B91863

- W32/Nuwar@MM!55B91863 at McAfee

File PropertyProperty ValueFile Namewinner.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3255B91863MD5B7360832402ACBB8E5EA874962BD9CD0SHA1046F59EE40AA5A23328F03CF3092285EE72AF6CBOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the follo...

W32/Nuwar@MM!79567B4D

- W32/Nuwar@MM!79567B4D at McAfee

File PropertyProperty ValueFile Nameback.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC3279567B4DMD5477E43B619A938E81337F3F72087D968SHA1217D489AA5BA7761B6F5041821577537FCEC199DOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activities:A...

BackDoor-AWQ.b!29C78ABB

- BackDoor-AWQ.b!29C78ABB at McAfee

File PropertyProperty ValueFile Name53bbac~1.exeMcAfee DetectionBackDoor-AWQ.bLength1,452,558
bytesCRC3229C78ABBMD553BBAC968875B4C86B8E9514E358B366SHA129B563FCBF9EF7E50C8BF9B2CE6389A711A6731AOther Common
Detection AliasesCompany NameDetection NameAVG (GriSoft)dropper.generic.uqkMicrosofttrojandropper:
win32/delfdru.gen!aNormanw32/hupi...

W32/Nuwar@MM!D327633F

- W32/Nuwar@MM!D327633F at McAfee

File PropertyProperty ValueFile Namebeijing.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32D327633FMD5105183E36A198A608B00BC8ED43118EDSHA12719FDF0C0D491F6C421ECE0F4FFE02B7D11A260Other Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dAvert® Labs has observed the
following system activitie...

W32/Nuwar@MM!849C1414

- W32/Nuwar@MM!849C1414 at McAfee

File PropertyProperty ValueFile Namewinner.exeMcAfee DetectionW32/Nuwar@MMLength119,296
bytesCRC32849C1414MD5283636A7069DA2C88A2F62917F99EC8DSHA1E885C4D5C9F5ACF0FA3B795F67C56DF3F035413BOther Common
Detection AliasesCompany NameDetection NameMicrosoftbackdoor:win32/nuwar.gen!dSymantecTrojan.PeacommAvert®
Labs has observed the follo...

Troj/FakeAle-CR

- Troj/FakeAle-CR at Sophos

Troj/FakeAle-CR copies itself to the <Windows> folder using random names.
Troj/FakeAle-CR drops the files <System>\spywarewarning.mht
<System>\spywarewarning2.mht These two files can be safely deleted.
Troj/FakeAle...

W32/Looked-EI

- W32/Looked-EI at Sophos

W32/Looked-EI infects executable files on the computer. It also attempts to copy itself to network
shares. W32/Looked-EI drops the files <Windows>\dll.dll - detected as
W32/Looked-W. <Windows>\rundl132.exe - detected as W32/Looked-EI
<Windows>\logo1...

Troj/FakeVir-CJ

- Troj/FakeVir-CJ at Sophos

...

Troj/Startp-BJ

- Troj/Startp-BJ at Sophos

Troj/Startp-BJ is a start page Trojan for the Windows platform. When run
Troj/Startp-BJ changes settings for Microsoft Internet Explorer by setting the following two registry values:
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search Local Page http:
//www2....

Troj/Swizzor-NX

- Troj/Swizzor-NX at Sophos

Troj/Swizzor-NX is an adware Trojan for the Windows platform.
Troj/Swizzor-NX is installed by adware supported freeware or shareware applications.
The installer for the potentially unwanted application (PUA) NetPumper is known to install Troj/Swizzor-NX to:
...

W32/Autorun-EZ

- W32/Autorun-EZ at Sophos

W32/Autorun-EZ is a worm for the Windows platform. When W32/Autorun-EZ is
installed the following files are created: <Temp>\68468.bat
<Temp>\es vbb 24-3-08.bat 68468.bat is also detected as W32/Autorun-EZ, and es
vbb 24-3-08.bat ...

Troj/Banloa-FL

- Troj/Banloa-FL at Sophos

Troj/Banloa-FL is a downloader Trojan for the Windows platform. When run
Troj/Banloa-FL attempts to download files from a remote location to the location:
<Windows>\windowssys.exe - detected as Mal/BanSpy-F. The following registry entry
is set: ...

0 writebacks [06/30/2008 04:51] [] permanent link



July 2010
Sun Mon Tue Wed Thu Fri Sat
       

Rss version