Fichier 76123_6733901_loader.exe reçu le 2008.06.01 18:49:20 (CET) Situation actuelle: terminé Résultat: 1/31 (3.23%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.05.30 - AntiVir 7.8.0.26 2008.06.01 - Authentium 5.1.0.4 2008.06.01 - Avast 4.8.1195.0 2008.05.31 - AVG 7.5.0.516 2008.05.31 - BitDefender 7.2 2008.06.01 - CAT-QuickHeal 9.50 2008.05.31 - ClamAV 0.92.1 2008.06.01 - DrWeb 4.44.0.09170 2008.06.01 - eSafe 7.0.15.0 2008.06.01 - eTrust-Vet 31.4.5837 2008.05.30 - Ewido 4.0 2008.06.01 - F-Prot 4.4.4.56 2008.06.01 - F-Secure 6.70.13260.0 2008.06.01 - Fortinet 3.14.0.0 2008.06.01 - GData 2.0.7306.1023 2008.06.01 - Ikarus T3.1.1.26.0 2008.06.01 - Kaspersky 7.0.0.125 2008.06.01 - McAfee 5307 2008.05.30 - Microsoft 1.3520 2008.06.01 PWS:Win32/Zbot.gen!A NOD32v2 3150 2008.06.01 - Norman 5.80.02 2008.05.30 - Panda 9.0.0.4 2008.06.01 - Prevx1 V2 2008.06.01 - Rising 20.46.62.00 2008.06.01 - Sophos 4.29.0 2008.06.01 - Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.06.01 - VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.05.31 - Webwasher-Gateway 6.6.2 2008.06.01 - Information additionnelle File size: 54784 bytes MD5...: cd125bff1654ce60ba26d937ebe1d3e4 SHA1..: 3245da678bbdc3221f3b3ae5df2728a99c1d2d97 Fichier 76123_6735454_575857.exe reçu le 2008.06.01 18:49:54 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 15/31 (48.39%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.05.30 - AntiVir 7.8.0.26 2008.06.01 TR/Crypt.CFI.Gen Authentium 5.1.0.4 2008.06.01 W32/Tibs.K.gen!Eldorado Avast 4.8.1195.0 2008.05.31 - AVG 7.5.0.516 2008.05.31 - BitDefender 7.2 2008.06.01 - CAT-QuickHeal 9.50 2008.05.31 (Suspicious) - DNAScan ClamAV 0.92.1 2008.06.01 PUA.Packed.UPack-2 DrWeb 4.44.0.09170 2008.06.01 - eSafe 7.0.15.0 2008.06.01 Suspicious File eTrust-Vet 31.4.5837 2008.05.30 - Ewido 4.0 2008.06.01 - F-Prot 4.4.4.56 2008.06.01 W32/Tibs.K.gen!Eldorado F-Secure 6.70.13260.0 2008.06.01 W32/Suspicious_U.gen Fortinet 3.14.0.0 2008.06.01 - GData 2.0.7306.1023 2008.06.01 - Ikarus T3.1.1.26.0 2008.06.01 Trojan-Downloader.Win32.Zlob.and Kaspersky 7.0.0.125 2008.06.01 - McAfee 5307 2008.05.30 New Malware.aj Microsoft 1.3520 2008.06.01 - NOD32v2 3150 2008.06.01 - Norman 5.80.02 2008.05.30 W32/Suspicious_U.gen Panda 9.0.0.4 2008.06.01 Suspicious file Prevx1 V2 2008.06.01 - Rising 20.46.62.00 2008.06.01 - Sophos 4.29.0 2008.06.01 Mal/EncPk-CO Sunbelt 3.0.1139.1 2008.05.29 VIPRE.Suspicious Symantec 10 2008.06.01 - VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.05.31 Packed/Upack Webwasher-Gateway 6.6.2 2008.06.01 Trojan.Crypt.CFI.Gen Information additionnelle File size: 114992 bytes MD5...: c32694ed714efe06f917a2964c563cb8 SHA1..: 642752bba77851b2325df816b2f126f5a3ed3d70 Fichier load.php reçu le 2008.06.02 09:09:09 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/32 (34.38%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.02 - AntiVir 7.8.0.26 2008.06.02 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.01 - Avast 4.8.1195.0 2008.06.01 - AVG 7.5.0.516 2008.06.01 Pakes BitDefender 7.2 2008.06.02 Trojan.Spy.Wsnpoem.CH CAT-QuickHeal 9.50 2008.05.31 - ClamAV 0.92.1 2008.06.02 - DrWeb 4.44.0.09170 2008.06.02 - eSafe 7.0.15.0 2008.06.01 Suspicious File eTrust-Vet 31.4.5837 2008.05.30 - Ewido 4.0 2008.06.01 - F-Prot 4.4.4.56 2008.06.01 W32/Zbot.G.gen!Eldorado F-Secure 6.70.13260.0 2008.06.02 Trojan-Spy.Win32.Zbot.cdr Fortinet 3.14.0.0 2008.06.02 - GData 2.0.7306.1023 2008.06.02 Trojan-Spy.Win32.Zbot.cdr Ikarus T3.1.1.26.0 2008.06.02 - Kaspersky 7.0.0.125 2008.06.02 Trojan-Spy.Win32.Zbot.cdr McAfee 5307 2008.05.30 Spy-Agent.bw.gen.e Microsoft 1.3520 2008.06.02 PWS:Win32/Zbot.gen!E NOD32v2 3150 2008.06.01 - Norman 5.80.02 2008.05.30 - Panda 9.0.0.4 2008.06.01 - Prevx1 V2 2008.06.02 - Rising 20.47.00.00 2008.06.02 - Sophos 4.29.0 2008.06.02 - Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.06.02 - TheHacker 6.2.92.331 2008.06.02 - VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.06.01 - Webwasher-Gateway 6.6.2 2008.06.02 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 50688 bytes MD5...: 6b97a840d18382caed5833c630398e24 SHA1..: 7a4a310d7c5c7ef38565a6264a08341149f56684 Fichier load.php.2 reçu le 2008.06.02 09:25:49 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/32 (28.13%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.02 - AntiVir 7.8.0.26 2008.06.02 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.01 - Avast 4.8.1195.0 2008.06.01 - AVG 7.5.0.516 2008.06.01 - BitDefender 7.2 2008.06.02 - CAT-QuickHeal 9.50 2008.05.31 - ClamAV 0.92.1 2008.06.02 - DrWeb 4.44.0.09170 2008.06.02 - eSafe 7.0.15.0 2008.06.01 - eTrust-Vet 31.4.5837 2008.05.30 - Ewido 4.0 2008.06.01 - F-Prot 4.4.4.56 2008.06.01 - F-Secure 6.70.13260.0 2008.06.02 Trojan-Downloader.Win32.Small.wnj Fortinet 3.14.0.0 2008.06.02 - GData 2.0.7306.1023 2008.06.02 Trojan-Downloader.Win32.Small.wnj Ikarus T3.1.1.26.0 2008.06.02 - Kaspersky 7.0.0.125 2008.06.02 Trojan-Downloader.Win32.Small.wnj McAfee 5307 2008.05.30 - Microsoft 1.3520 2008.06.02 Virus:Win32/Grum.G NOD32v2 3150 2008.06.01 - Norman 5.80.02 2008.05.30 - Panda 9.0.0.4 2008.06.01 - Prevx1 V2 2008.06.02 Cloaked Malware Rising 20.47.00.00 2008.06.02 - Sophos 4.29.0 2008.06.02 Sus/Behav-239 Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.06.02 Packed.Generic.57 TheHacker 6.2.92.331 2008.06.02 - VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.06.01 - Webwasher-Gateway 6.6.2 2008.06.02 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 16384 bytes MD5...: 2d70d7a4301b125108139b21dbd08f0a SHA1..: 6d7e5e8c09fce65306b8bf915558491a966ed5f3 Fichier counter.exe reçu le 2008.05.30 04:48:31 (CET) Situation actuelle: terminé Résultat: 14/32 (43.75%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.29.0 2008.05.29 - AntiVir 7.8.0.24 2008.05.29 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.05.29 W32/Trojan2.XTU Avast 4.8.1195.0 2008.05.29 - AVG 7.5.0.516 2008.05.29 BackDoor.Agent.PTW BitDefender 7.2 2008.05.30 - CAT-QuickHeal 9.50 2008.05.29 - ClamAV 0.92.1 2008.05.29 - DrWeb 4.44.0.09170 2008.05.29 Trojan.Packed.411 eSafe 7.0.15.0 2008.05.29 Suspicious File eTrust-Vet 31.4.5834 2008.05.29 - Ewido 4.0 2008.05.29 Backdoor.Agent.dbz F-Prot 4.4.4.56 2008.05.29 W32/Trojan2.XTU F-Secure 6.70.13260.0 2008.05.30 Backdoor.Win32.Agent.gjs Fortinet 3.14.0.0 2008.05.29 - GData 2.0.7306.1023 2008.05.30 Backdoor.Win32.Agent.gjs Ikarus T3.1.1.26.0 2008.05.30 Backdoor.Win32.Agent.gjs Kaspersky 7.0.0.125 2008.05.30 Backdoor.Win32.Agent.gjs McAfee 5306 2008.05.29 - Microsoft 1.3520 2008.05.30 - NOD32v2 3145 2008.05.29 - Norman 5.80.02 2008.05.29 W32/Agent.FUXB Panda 9.0.0.4 2008.05.29 - Prevx1 V2 2008.05.30 - Rising 20.46.32.00 2008.05.29 - Sophos 4.29.0 2008.05.30 Mal/Emogen-Y Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.05.30 - TheHacker 6.2.92.325 2008.05.30 - VBA32 3.12.6.6 2008.05.30 - VirusBuster 4.3.26:9 2008.05.29 - Webwasher-Gateway 6.6.2 2008.05.29 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 45568 bytes MD5...: 6983ebfde63fbcdc24e6afd966faaa1a SHA1..: 42c5867c36351a5311f477e7f21a058dcbb9802e Fichier lll.exe reçu le 2008.06.01 21:03:16 (CET) Situation actuelle: terminé Résultat: 11/31 (35.48%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.05.30 - AntiVir 7.8.0.26 2008.06.01 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.01 - Avast 4.8.1195.0 2008.05.31 - AVG 7.5.0.516 2008.06.01 SHeur.BNFG BitDefender 7.2 2008.06.01 - CAT-QuickHeal 9.50 2008.05.31 - ClamAV 0.92.1 2008.06.01 - DrWeb 4.44.0.09170 2008.06.01 Trojan.Spambot.3202 eSafe 7.0.15.0 2008.06.01 Win32.Small.ps eTrust-Vet 31.4.5837 2008.05.30 - Ewido 4.0 2008.06.01 - F-Prot 4.4.4.56 2008.06.01 - F-Secure 6.70.13260.0 2008.06.01 Trojan-Proxy.Win32.Small.ps Fortinet 3.14.0.0 2008.06.01 - GData 2.0.7306.1023 2008.06.01 Trojan-Proxy.Win32.Small.ps Ikarus T3.1.1.26.0 2008.06.01 - Kaspersky 7.0.0.125 2008.06.01 Trojan-Proxy.Win32.Small.ps McAfee 5307 2008.05.30 - Microsoft 1.3520 2008.06.01 - NOD32v2 3150 2008.06.01 - Norman 5.80.02 2008.05.30 - Panda 9.0.0.4 2008.06.01 - Prevx1 V2 2008.06.01 Cloaked Malware Rising 20.46.62.00 2008.06.01 - Sophos 4.29.0 2008.06.01 Sus/Behav-239 Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.06.01 Packed.Generic.57 VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.06.01 - Webwasher-Gateway 6.6.2 2008.06.01 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 48128 bytes MD5...: 54405d4423679eb60f55dc72fc4612c4 SHA1..: ba8204a879dd321fac2eeb37cf29a625efe23f9b Fichier gqp42w.exe reçu le 2008.06.02 18:01:16 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 8/32 (25%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.02 - AntiVir 7.8.0.26 2008.06.02 SPR/Dldr.WinFixer.FS.1 Authentium 5.1.0.4 2008.06.01 W32/Tibs.K.gen!Eldorado Avast 4.8.1195.0 2008.06.02 - AVG 7.5.0.516 2008.06.02 - BitDefender 7.2 2008.06.02 - CAT-QuickHeal 9.50 2008.06.02 Downloader.WinFixer.fs (Not a Virus) ClamAV 0.92.1 2008.06.02 - DrWeb 4.44.0.09170 2008.06.02 - eSafe 7.0.15.0 2008.06.02 Suspicious File eTrust-Vet 31.4.5842 2008.06.02 - Ewido 4.0 2008.06.02 - F-Prot 4.4.4.56 2008.06.01 W32/Tibs.K.gen!Eldorado F-Secure 6.70.13260.0 2008.06.02 - Fortinet 3.14.0.0 2008.06.02 - GData 2.0.7306.1023 2008.06.02 - Ikarus T3.1.1.26.0 2008.06.02 - Kaspersky 7.0.0.125 2008.06.02 not-a-virus:Downloader.Win32.WinFixer.fs McAfee 5307 2008.05.30 - Microsoft 1.3520 2008.06.02 - NOD32v2 3152 2008.06.02 - Norman 5.80.02 2008.06.02 - Panda 9.0.0.4 2008.06.02 - Prevx1 V2 2008.06.02 Cloaked Malware Rising 20.47.02.00 2008.06.02 - Sophos 4.29.0 2008.06.02 - Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.06.02 - TheHacker 6.2.92.331 2008.06.02 - VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.06.02 - Webwasher-Gateway 6.6.2 2008.06.02 Riskware.Dldr.WinFixer.FS.1 Information additionnelle File size: 101376 bytes MD5...: c7eab685d71d5981d565d1d1ca9589e8 SHA1..: 66c3480095cc3e07f3a43c26d1c754e52d6e7a19 Fichier 2167guwfwemx.exe reçu le 2008.06.02 23:09:18 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 8/32 (25%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.02 - AntiVir 7.8.0.26 2008.06.02 TR/Dropper.Gen Authentium 5.1.0.4 2008.06.02 - Avast 4.8.1195.0 2008.06.02 - AVG 7.5.0.516 2008.06.02 Rootkit-Agent.C BitDefender 7.2 2008.06.02 Dropped:Trojan.Spy.BZub.NHY CAT-QuickHeal 9.50 2008.06.02 - ClamAV 0.92.1 2008.06.02 - DrWeb 4.44.0.09170 2008.06.02 - eSafe 7.0.15.0 2008.06.02 suspicious Trojan/Worm eTrust-Vet 31.4.5842 2008.06.02 - Ewido 4.0 2008.06.02 - F-Prot 4.4.4.56 2008.06.02 - F-Secure 6.70.13260.0 2008.06.02 - Fortinet 3.14.0.0 2008.06.02 - GData 2.0.7306.1023 2008.06.02 - Ikarus T3.1.1.26.0 2008.06.02 Trojan-Spy.BZub.NHN Kaspersky 7.0.0.125 2008.06.02 - McAfee 5308 2008.06.02 - Microsoft 1.3520 2008.06.02 TrojanDropper:Win32/Boaxxe.D NOD32v2 3152 2008.06.02 - Norman 5.80.02 2008.06.02 - Panda 9.0.0.4 2008.06.02 - Prevx1 V2 2008.06.02 - Rising 20.47.02.00 2008.06.02 - Sophos 4.29.0 2008.06.02 Mal/Dropper-AC Sunbelt 3.0.1139.1 2008.05.29 - Symantec 10 2008.06.02 - TheHacker 6.2.92.331 2008.06.02 - VBA32 3.12.6.6 2008.06.01 - VirusBuster 4.3.26:9 2008.06.02 - Webwasher-Gateway 6.6.2 2008.06.02 Trojan.Dropper.Gen Information additionnelle File size: 111616 bytes MD5...: 7bc74453399a1d79b1b849f693d42559 SHA1..: b3e5f4dd55bdcc541ef354d7d23e1354dee9b93d Fichier n4334534_videostream_youtube.com_ reçu le 2008.06.04 09:19:54 (CET) Situation actuelle: terminé Résultat: 9/32 (28.12%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.03 - AntiVir 7.8.0.26 2008.06.04 TR/VB.dcz Authentium 5.1.0.4 2008.06.04 - Avast 4.8.1195.0 2008.06.04 - AVG 7.5.0.516 2008.06.04 - BitDefender 7.2 2008.06.04 - CAT-QuickHeal 9.50 2008.06.03 - ClamAV 0.92.1 2008.06.04 - DrWeb 4.44.0.09170 2008.06.03 - eSafe 7.0.15.0 2008.06.03 - eTrust-Vet 31.4.5845 2008.06.03 - Ewido 4.0 2008.06.03 - F-Prot 4.4.4.56 2008.06.02 - F-Secure 6.70.13260.0 2008.06.04 Trojan.Win32.VB.dcz Fortinet 3.14.0.0 2008.06.04 - GData 2.0.7306.1023 2008.06.04 Trojan.Win32.VB.dcz Ikarus T3.1.1.26.0 2008.06.04 VirTool.Win32.VBInject.C Kaspersky 7.0.0.125 2008.06.04 Trojan.Win32.VB.dcz McAfee 5309 2008.06.03 - Microsoft 1.3604 2008.06.04 VirTool:Win32/VBInject.gen!C NOD32v2 3156 2008.06.03 - Norman 5.80.02 2008.06.03 - Panda 9.0.0.4 2008.06.04 Suspicious file Prevx1 V2 2008.06.04 - Rising 20.47.20.00 2008.06.04 - Sophos 4.29.0 2008.06.04 - Sunbelt 3.0.1144.1 2008.06.04 - Symantec 10 2008.06.04 - TheHacker 6.2.92.333 2008.06.03 Trojan/Qhost.z VBA32 3.12.6.7 2008.06.03 - VirusBuster 4.3.26:9 2008.06.03 - Webwasher-Gateway 6.6.2 2008.06.04 Trojan.VB.dcz Information additionnelle File size: 138721 bytes MD5...: f400d939e94e5abb3e218f42ed561b7e SHA1..: e3d037e600ebd82cb3dfdfd5089849b03eeb8c71 Fichier bbbb.exe reçu le 2008.06.05 09:13:51 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 3/32 (9.38%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.05 - AntiVir 7.8.0.26 2008.06.05 - Authentium 5.1.0.4 2008.06.04 - Avast 4.8.1195.0 2008.06.05 - AVG 7.5.0.516 2008.06.04 - BitDefender 7.2 2008.06.05 - CAT-QuickHeal 9.50 2008.06.04 - ClamAV 0.92.1 2008.06.04 - DrWeb 4.44.0.09170 2008.06.05 - eSafe 7.0.15.0 2008.06.04 - eTrust-Vet 31.6.5849 2008.06.05 - Ewido 4.0 2008.06.04 - F-Prot 4.4.4.56 2008.06.04 - F-Secure 6.70.13260.0 2008.06.05 - Fortinet 3.14.0.0 2008.06.05 - GData 2.0.7306.1023 2008.06.05 - Ikarus T3.1.1.26.0 2008.06.05 VirTool.Win32.VBInject.C Kaspersky 7.0.0.125 2008.06.05 - McAfee 5310 2008.06.04 - Microsoft 1.3604 2008.06.05 VirTool:Win32/VBInject.gen!C NOD32v2 3159 2008.06.05 a variant of Win32/Injector.AU Norman 5.80.02 2008.06.04 - Panda 9.0.0.4 2008.06.05 - Prevx1 V2 2008.06.05 - Rising 20.47.22.00 2008.06.04 - Sophos 4.30.0 2008.06.05 - Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.05 - TheHacker 6.2.92.335 2008.06.05 - VBA32 3.12.6.7 2008.06.04 - VirusBuster 4.3.26:9 2008.06.04 - Webwasher-Gateway 6.6.2 2008.06.05 - Information additionnelle File size: 53252 bytes MD5...: 7b15de35dda89a108904fe23343c528d SHA1..: 911aab4af5e988207d851ec878ab8239a012db3a Fichier load.php.5 reçu le 2008.06.05 09:27:02 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 5/32 (15.63%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.05 - AntiVir 7.8.0.26 2008.06.05 HEUR/Malware Authentium 5.1.0.4 2008.06.04 - Avast 4.8.1195.0 2008.06.05 - AVG 7.5.0.516 2008.06.04 - BitDefender 7.2 2008.06.05 - CAT-QuickHeal 9.50 2008.06.04 (Suspicious) - DNAScan ClamAV 0.92.1 2008.06.04 - DrWeb 4.44.0.09170 2008.06.05 - eSafe 7.0.15.0 2008.06.04 Suspicious File eTrust-Vet 31.6.5849 2008.06.05 - Ewido 4.0 2008.06.04 - F-Prot 4.4.4.56 2008.06.04 - F-Secure 6.70.13260.0 2008.06.05 - Fortinet 3.14.0.0 2008.06.05 - GData 2.0.7306.1023 2008.06.05 - Ikarus T3.1.1.26.0 2008.06.05 - Kaspersky 7.0.0.125 2008.06.05 - McAfee 5310 2008.06.04 - Microsoft 1.3604 2008.06.05 Trojan:Win32/Tibs.GK NOD32v2 3159 2008.06.05 - Norman 5.80.02 2008.06.04 - Panda 9.0.0.4 2008.06.05 - Prevx1 V2 2008.06.05 - Rising 20.47.22.00 2008.06.04 - Sophos 4.30.0 2008.06.05 - Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.05 - TheHacker 6.2.92.335 2008.06.05 - VBA32 3.12.6.7 2008.06.04 - VirusBuster 4.3.26:9 2008.06.04 - Webwasher-Gateway 6.6.2 2008.06.05 Heuristic.Malware Information additionnelle File size: 101376 bytes MD5...: 53649c6e94e0228fbc27b5b415c7255a SHA1..: 8e0b93af780dd28c032e61c021e3789c61f133e0 Fichier load.php_id_8159 reçu le 2008.06.05 09:29:24 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/32 (28.13%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.05 - AntiVir 7.8.0.26 2008.06.05 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.04 - Avast 4.8.1195.0 2008.06.05 - AVG 7.5.0.516 2008.06.04 - BitDefender 7.2 2008.06.05 - CAT-QuickHeal 9.50 2008.06.04 (Suspicious) - DNAScan ClamAV 0.92.1 2008.06.04 - DrWeb 4.44.0.09170 2008.06.05 - eSafe 7.0.15.0 2008.06.04 Suspicious File eTrust-Vet 31.6.5849 2008.06.05 - Ewido 4.0 2008.06.04 - F-Prot 4.4.4.56 2008.06.04 - F-Secure 6.70.13260.0 2008.06.05 Trojan-Dropper.Win32.Agent.sjc Fortinet 3.14.0.0 2008.06.05 - GData 2.0.7306.1023 2008.06.05 - Ikarus T3.1.1.26.0 2008.06.05 - Kaspersky 7.0.0.125 2008.06.05 Trojan-Dropper.Win32.Agent.sjc McAfee 5310 2008.06.04 - Microsoft 1.3604 2008.06.05 Trojan:Win32/Chksyn.gen!A NOD32v2 3159 2008.06.05 - Norman 5.80.02 2008.06.04 - Panda 9.0.0.4 2008.06.05 - Prevx1 V2 2008.06.05 - Rising 20.47.22.00 2008.06.04 - Sophos 4.30.0 2008.06.05 Mal/Generic-A Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.05 Infostealer.Ldpinch.C TheHacker 6.2.92.335 2008.06.05 - VBA32 3.12.6.7 2008.06.04 - VirusBuster 4.3.26:9 2008.06.04 - Webwasher-Gateway 6.6.2 2008.06.05 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 31916 bytes MD5...: 33e19a9033511b8137ad1a422927f569 SHA1..: cc8420269d17c0e492a0f9debf8e8ba34e048aff File 76127_5086461_WebSoftCodecDrivern received on 06.05.2008 14:14:58 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 8/31 (25.81%) Antivirus Version Last Update Result AhnLab-V3 2008.5.30.1 2008.06.05 - AntiVir 7.8.0.26 2008.06.05 - Authentium 5.1.0.4 2008.06.04 - Avast 4.8.1195.0 2008.06.05 Win32:Vapsup-CS AVG 7.5.0.516 2008.06.05 Downloader.Zlob BitDefender 7.2 2008.06.05 - CAT-QuickHeal 9.50 2008.06.04 - ClamAV 0.92.1 2008.06.05 Trojan.Dropper-4103 DrWeb 4.44.0.09170 2008.06.05 - eSafe 7.0.15.0 2008.06.04 - eTrust-Vet 31.6.5850 2008.06.05 - Ewido 4.0 2008.06.05 - F-Prot 4.4.4.56 2008.06.05 - F-Secure 6.70.13260.0 2008.06.05 - Fortinet 3.14.0.0 2008.06.05 Adware/Vapsup.0408 GData 2.0.7306.1023 2008.06.05 - Ikarus T3.1.1.26.0 2008.06.05 - Kaspersky 7.0.0.125 2008.06.05 - McAfee 5310 2008.06.04 - Microsoft 1.3604 2008.06.05 TrojanDownloader:Win32/Zlob.IC NOD32v2 3160 2008.06.05 - Norman 5.80.02 2008.06.04 - Panda 9.0.0.4 2008.06.05 - Prevx1 V2 2008.06.05 - Rising 20.47.32.00 2008.06.05 Trojan.DL.Win32.Zlob.gbo Sophos 4.30.0 2008.06.05 Vapsup Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.05 - TheHacker 6.2.92.335 2008.06.05 Adware/Vapsup.bgq VirusBuster 4.3.26:9 2008.06.04 - Webwasher-Gateway 6.6.2 2008.06.05 - Additional information File size: 282464 bytes MD5...: 3dc160bbfd33a7aeedbc600dc8713e0a SHA1..: 2512b6a9eaccba02690f839bf1e0c3d262308f8d Fichier is155815.exe reçu le 2008.06.10 14:26:35 (CET) Situation actuelle: terminé Résultat: 10/32 (31.25%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.5.30.1 2008.06.10 - AntiVir 7.8.0.55 2008.06.10 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.09 W32/Sinowal-based!Maximus Avast 4.8.1195.0 2008.06.10 - AVG 7.5.0.516 2008.06.10 - BitDefender 7.2 2008.06.10 - CAT-QuickHeal 9.50 2008.06.09 (Suspicious) - DNAScan ClamAV 0.92.1 2008.06.10 - DrWeb 4.44.0.09170 2008.06.10 Trojan.Virtumod.based.11 eSafe 7.0.15.0 2008.06.09 Suspicious File eTrust-Vet 31.6.5862 2008.06.10 - Ewido 4.0 2008.06.10 - F-Prot 4.4.4.56 2008.06.09 W32/Sinowal-based!Maximus F-Secure 6.70.13260.0 2008.06.10 Trojan.Win32.Monder.gen Fortinet 3.14.0.0 2008.06.10 - GData 2.0.7306.1023 2008.06.10 Trojan.Win32.Monder.gen Ikarus T3.1.1.26.0 2008.06.10 - Kaspersky 7.0.0.125 2008.06.10 Trojan.Win32.Monder.gen McAfee 5313 2008.06.09 - Microsoft None 2008.06.10 - NOD32v2 3172 2008.06.10 - Norman 5.80.02 2008.06.09 - Panda 9.0.0.4 2008.06.09 - Prevx1 V2 2008.06.10 - Rising 20.48.12.00 2008.06.10 - Sophos 4.30.0 2008.06.10 - Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.10 - TheHacker 6.2.92.341 2008.06.10 - VBA32 3.12.6.7 2008.06.09 - VirusBuster 4.3.26:9 2008.06.09 - Webwasher-Gateway 6.6.2 2008.06.10 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 45056 bytes MD5...: 87eba7d70d613446506e23c8d2557ce1 SHA1..: a509b420be085fbcf4aee26655f99dcff9b336d7 Fichier IMG00045.jpeg-www.quickuploading. reçu le 2008.05.28 19:27:45 (CET) Situation actuelle: terminé Résultat: 20/32 (62.50%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 - - - AntiVir - - DR/Delphi.Gen Authentium - - - Avast - - - AVG - - BackDoor.Ircbot.EGP BitDefender - - Trojan.Crypt.Delf.R CAT-QuickHeal - - Backdoor.IRCBot.day ClamAV - - Trojan.Delf-5287 DrWeb - - - eSafe - - - eTrust-Vet - - - Ewido - - - F-Prot - - - F-Secure - - Backdoor.Win32.IRCBot.day Fortinet - - W32/IRCBot.DAY!tr.bdr GData - - Backdoor.Win32.IRCBot.day Ikarus - - Generic.Sdbot Kaspersky - - Backdoor.Win32.IRCBot.day McAfee - - W32/Sdbot.worm.gen.cc Microsoft - - Worm:Win32/Pushbot.DJ NOD32v2 - - probably a variant of Win32/Injector.AK Norman - - - Panda - - Bck/IRCBot.CAE Prevx1 - - Worm Rising - - Trojan.Win32.Delf.ykq Sophos - - Mal/Generic-A Sunbelt - - - Symantec - - - TheHacker - - Backdoor/IRCBot.day VBA32 - - Backdoor.Win32.IRCBot.day VirusBuster - - - Webwasher-Gateway - - Trojan.Dropper.Delphi.Gen Information additionnelle MD5: ee1205e2a9cf6a71ca990841201c9ae4 SHA1: e666bbf9c0813d3017912a7babbee361e2a2c755 Fichier load.php.9 reçu le 2008.06.11 10:02:16 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 7/32 (21.88%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.11.0 2008.06.10 - AntiVir 7.8.0.55 2008.06.11 WORM/Zhelatin.Gen Authentium 5.1.0.4 2008.06.11 - Avast 4.8.1195.0 2008.06.11 - AVG 7.5.0.516 2008.06.10 - BitDefender 7.2 2008.06.11 - CAT-QuickHeal 9.50 2008.06.10 (Suspicious) - DNAScan ClamAV None 2008.06.11 - DrWeb 4.44.0.09170 2008.06.11 Trojan.Okuks.based eSafe 7.0.15.0 2008.06.10 Suspicious File eTrust-Vet 31.6.5864 2008.06.10 - Ewido 4.0 2008.06.10 - F-Prot 4.4.4.56 2008.06.10 - F-Secure 6.70.13260.0 2008.06.11 Suspicious:W32/Malware!Gemini Fortinet 3.14.0.0 2008.06.10 - GData 2.0.7306.1023 2008.06.11 - Ikarus T3.1.1.26.0 2008.06.11 - Kaspersky 7.0.0.125 2008.06.11 - McAfee 5314 2008.06.10 - Microsoft 1.3604 2008.06.11 - NOD32v2 3175 2008.06.11 - Norman 5.80.02 2008.06.10 - Panda 9.0.0.4 2008.06.10 Suspicious file Prevx1 V2 2008.06.11 - Rising 20.48.12.00 2008.06.10 - Sophos 4.30.0 2008.06.11 - Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.11 - TheHacker 6.2.92.342 2008.06.11 - VBA32 3.12.6.7 2008.06.10 - VirusBuster 4.3.26:9 2008.06.10 - Webwasher-Gateway 6.6.2 2008.06.11 Worm.Zhelatin.Gen Information additionnelle File size: 20384 bytes MD5...: 909212844d9fb8dc997d55bb46a69349 SHA1..: 7cbd3b5ef5c194f2490f6af1baad5e1d58472b17 Fichier is155932.exe reçu le 2008.06.11 15:46:26 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 10/32 (31.25%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.11.0 2008.06.11 - AntiVir 7.8.0.55 2008.06.11 - Authentium 5.1.0.4 2008.06.11 W32/Sinowal-based!Maximus Avast 4.8.1195.0 2008.06.11 - AVG 7.5.0.516 2008.06.11 - BitDefender 7.2 2008.06.11 - CAT-QuickHeal 9.50 2008.06.10 (Suspicious) - DNAScan ClamAV 0.92.1 2008.06.11 - DrWeb 4.44.0.09170 2008.06.11 - eSafe 7.0.15.0 2008.06.11 Suspicious File eTrust-Vet 31.6.5865 2008.06.11 - Ewido 4.0 2008.06.11 - F-Prot 4.4.4.56 2008.06.10 W32/Sinowal-based!Maximus F-Secure 6.70.13260.0 2008.06.11 Trojan.Win32.Monder.gen Fortinet 3.14.0.0 2008.06.10 - GData 2.0.7306.1023 2008.06.11 Trojan.Win32.Monder.gen Ikarus T3.1.1.26.0 2008.06.11 - Kaspersky 7.0.0.125 2008.06.11 Trojan.Win32.Monder.gen McAfee 5314 2008.06.10 - Microsoft 1.3604 2008.06.11 Trojan:Win32/Vundo.gen!H NOD32v2 3177 2008.06.11 - Norman 5.80.02 2008.06.11 - Panda 9.0.0.4 2008.06.10 Suspicious file Prevx1 V2 2008.06.11 - Rising 20.48.22.00 2008.06.11 - Sophos 4.30.0 2008.06.11 - Sunbelt 3.0.1145.1 2008.06.05 - Symantec 10 2008.06.11 - TheHacker 6.2.92.342 2008.06.11 - VBA32 3.12.6.7 2008.06.10 - VirusBuster 4.3.26:9 2008.06.11 - Webwasher-Gateway 6.6.2 2008.06.11 Win32.Malware.gen!80 (suspicious) Information additionnelle File size: 45056 bytes MD5...: f6a3f205e9b9ee3126ff8a1e03cbb1a1 SHA1..: 74a965ba4f20268127d66ef3490ab0570ef5f7a3 Fichier virusmsn.com reçu le 2008.06.12 16:13:38 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/32 (28.13%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.11.0 2008.06.12 - AntiVir 7.8.0.55 2008.06.12 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.12 - Avast 4.8.1195.0 2008.06.12 Win32:IRCBot-CRQ AVG 7.5.0.516 2008.06.12 - BitDefender 7.2 2008.06.12 - CAT-QuickHeal 9.50 2008.06.11 - ClamAV 0.92.1 2008.06.12 - DrWeb 4.44.0.09170 2008.06.12 - eSafe 7.0.15.0 2008.06.12 Suspicious File eTrust-Vet 31.6.5868 2008.06.12 - Ewido 4.0 2008.06.12 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.12 - Fortinet 3.14.0.0 2008.06.12 - GData 2.0.7306.1023 2008.06.12 - Ikarus T3.1.1.26.0 2008.06.12 - Kaspersky 7.0.0.125 2008.06.12 - McAfee 5315 2008.06.11 - Microsoft 1.3604 2008.06.12 - NOD32v2 3181 2008.06.12 probably a variant of Win32/IRCBot.AAL Norman 5.80.02 2008.06.12 - Panda 9.0.0.4 2008.06.11 Suspicious file Prevx1 V2 2008.06.12 Malicious Software Rising 20.48.32.00 2008.06.12 - Sophos 4.30.0 2008.06.12 Mal/TibsPak Sunbelt 3.0.1145.1 2008.06.05 VIPRE.Suspicious Symantec 10 2008.06.12 - TheHacker 6.2.92.344 2008.06.12 - VBA32 3.12.6.7 2008.06.12 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.12 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 43675 bytes MD5...: be4da6075123a1115b61517b60924db1 SHA1..: bb287cce35eb55010b3d9764e2f573c88ed7a31b Fichier image.php.3 reçu le 2008.06.16 10:26:00 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/33 (27.28%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 TR/Agent.36517 Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 - BitDefender 7.2 2008.06.16 DeepScan:Generic.Malware.SI!Bdld.0B2520DB CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Backdoor.Win32.SdBot.epv Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Backdoor.Win32.SdBot.epv Ikarus T3.1.1.26.0 2008.06.16 BehavesLike.Win32.ProcessHijack Kaspersky 7.0.0.125 2008.06.16 Backdoor.Win32.SdBot.epv McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 - NOD32v2 3189 2008.06.16 - Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 Suspicious file Prevx1 V2 2008.06.16 Worm Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Trojan.Agent.36517 Information additionnelle File size: 36517 bytes MD5...: ec1d30571fe6d9d62816a304d6f0d34b SHA1..: 64b35288de755a9554934a75d7275994392e296c Fichier funkymonkey.com reçu le 2008.06.16 10:24:43 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/33 (33.34%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 TR/Agent.36586.1 Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 Agent.WRH BitDefender 7.2 2008.06.16 DeepScan:Generic.Malware.SI!Bdld.3CB3BA98 CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Backdoor.Win32.SdBot.epw Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Backdoor.Win32.SdBot.epw Ikarus T3.1.1.26.0 2008.06.16 BehavesLike.Win32.ProcessHijack Kaspersky 7.0.0.125 2008.06.16 Backdoor.Win32.SdBot.epw McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 - NOD32v2 3189 2008.06.16 Win32/Injector.AZ Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 Suspicious file Prevx1 V2 2008.06.16 Malicious Software Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Trojan.Agent.36586.1 Information additionnelle File size: 36586 bytes MD5...: 7629da5fca368c9d17cf0e9985e1413d SHA1..: 9547e8ec7eb74d37ccf164256687cff718e688de Fichier myspace.php.4 reçu le 2008.06.16 10:23:52 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/33 (27.28%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 Worm/SdBot.32847 Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 - BitDefender 7.2 2008.06.16 DeepScan:Generic.Malware.SI!Bdld.EF9D1537 CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Backdoor.Win32.SdBot.epv Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Backdoor.Win32.SdBot.epv Ikarus T3.1.1.26.0 2008.06.16 BehavesLike.Win32.ProcessHijack Kaspersky 7.0.0.125 2008.06.16 Backdoor.Win32.SdBot.epv McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 - NOD32v2 3189 2008.06.16 - Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 Suspicious file Prevx1 V2 2008.06.16 Worm Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Worm.SdBot.32847 Information additionnelle File size: 36089 bytes MD5...: 191443d79d20e8c606f1dc0bb2b47b27 SHA1..: e6e702fb53ae6bc8db625b9bc16f19c7a63579f4 Fichier dailypic.com reçu le 2008.06.16 10:23:37 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/33 (33.34%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 TR/Agent.eqs.2 Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 Agent.WRH BitDefender 7.2 2008.06.16 DeepScan:Generic.Malware.SI!Bdld.2E7825ED CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Worm.Win32.AutoRun.ecm Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Worm.Win32.AutoRun.ecm Ikarus T3.1.1.26.0 2008.06.16 BehavesLike.Win32.ProcessHijack Kaspersky 7.0.0.125 2008.06.16 Worm.Win32.AutoRun.ecm McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 - NOD32v2 3189 2008.06.16 Win32/Injector.AZ Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 Suspicious file Prevx1 V2 2008.06.16 Malicious Software Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Trojan.Agent.eqs.2 Information additionnelle File size: 36586 bytes MD5...: 2076be704ae129ff50855dd0cae92361 SHA1..: 79733e72b11ebc6ed9d26c8cc1361ff864276c6b Fichier hiho.com reçu le 2008.06.16 10:22:16 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/33 (33.34%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 TR/Agent.eqs.1 Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 Agent.WRH BitDefender 7.2 2008.06.16 DeepScan:Generic.Malware.SI!Bdld.A0E31883 CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Backdoor.Win32.SdBot.epw Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Backdoor.Win32.SdBot.epw Ikarus T3.1.1.26.0 2008.06.16 BehavesLike.Win32.ProcessHijack Kaspersky 7.0.0.125 2008.06.16 Backdoor.Win32.SdBot.epw McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 - NOD32v2 3189 2008.06.16 Win32/Injector.AZ Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 Suspicious file Prevx1 V2 2008.06.16 Malicious Software Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Trojan.Agent.eqs.1 Information additionnelle File size: 36554 bytes MD5...: c05dfe9d4f8197a871144e6edd55f88f SHA1..: f9c1418d87bec519b993891b35aa78d158d3e12b Fichier a.exe reçu le 2008.06.16 10:42:00 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 8/33 (24.25%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 Worm/SdBot.102265 Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 - BitDefender 7.2 2008.06.16 DeepScan:Generic.Sdbot.E95775C7 CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Backdoor.Win32.SdBot.epu Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Backdoor.Win32.SdBot.epu Ikarus T3.1.1.26.0 2008.06.16 BehavesLike.Win32.ProcessHijack Kaspersky 7.0.0.125 2008.06.16 Backdoor.Win32.SdBot.epu McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 - NOD32v2 3189 2008.06.16 - Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 Suspicious file Prevx1 V2 2008.06.16 - Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Worm.SdBot.102265 Information additionnelle File size: 102265 bytes MD5...: 4af58ff1c8bf6efc231680728072931d SHA1..: 7591930471ef2641527cd925ab1cbe618ecd01b7 Fichier videostream.php.1 reçu le 2008.06.16 10:48:09 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 8/33 (24.25%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.13.1 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 - Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.15 - AVG 7.5.0.516 2008.06.15 Dropper.Delf.BBI BitDefender 7.2 2008.06.16 Backdoor.IRCBot.ACAJ CAT-QuickHeal 9.50 2008.06.14 - ClamAV 0.92.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 - eSafe 7.0.15.0 2008.06.15 - eTrust-Vet 31.6.5873 2008.06.14 - Ewido 4.0 2008.06.15 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Worm.Win32.AutoRun.edc Fortinet 3.14.0.0 2008.06.15 - GData 2.0.7306.1023 2008.06.16 Worm.Win32.AutoRun.edc Ikarus T3.1.1.26.0 2008.06.16 - Kaspersky 7.0.0.125 2008.06.16 Worm.Win32.AutoRun.edc McAfee 5317 2008.06.13 - Microsoft 1.3604 2008.06.16 Worm:Win32/Autorun.CE NOD32v2 3189 2008.06.16 Win32/AutoRun.PQ Norman 5.80.02 2008.06.13 - Panda 9.0.0.4 2008.06.15 - Prevx1 V2 2008.06.16 Cloaked Malware Rising 20.49.00.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.14 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 - Information additionnelle File size: 42496 bytes MD5...: 32418a8b024b06f01b8dc8c2c4a12e78 SHA1..: c4a93ad6f2574d6c41c8ac7aaf60d84f15ad530a Fichier lphcrdtj0ee9a.exe reçu le 2008.06.16 23:03:27 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 10/33 (30.31%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.17.0 2008.06.16 - AntiVir 7.8.0.55 2008.06.16 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.16 - Avast 4.8.1195.0 2008.06.16 - AVG 7.5.0.516 2008.06.16 - BitDefender 7.2 2008.06.16 - CAT-QuickHeal 9.50 2008.06.16 (Suspicious) - DNAScan ClamAV 0.93.1 2008.06.16 - DrWeb 4.44.0.09170 2008.06.16 Trojan.Fakealert.767 eSafe 7.0.15.0 2008.06.16 Suspicious File eTrust-Vet 31.6.5878 2008.06.16 - Ewido 4.0 2008.06.16 - F-Prot 4.4.4.56 2008.06.12 - F-Secure 6.70.13260.0 2008.06.16 Trojan.Win32.Agent.rqr Fortinet 3.14.0.0 2008.06.16 - GData 2.0.7306.1023 2008.06.16 Trojan.Win32.Agent.rqr Ikarus T3.1.1.26.0 2008.06.16 Win32.SuspectCrc Kaspersky 7.0.0.125 2008.06.16 Trojan.Win32.Agent.rqr McAfee 5318 2008.06.16 - Microsoft 1.3604 2008.06.16 - NOD32v2 3191 2008.06.16 - Norman 5.80.02 2008.06.16 - Panda 9.0.0.4 2008.06.16 - Prevx1 V2 2008.06.16 Cloaked Malware Rising 20.49.02.00 2008.06.16 - Sophos 4.30.0 2008.06.16 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.16 - TheHacker 6.2.92.351 2008.06.16 - TrendMicro 8.700.0.1004 2008.06.16 - VBA32 3.12.6.7 2008.06.16 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.16 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 109056 bytes MD5...: 6b1a3dbca75b146d04273141ae5f5655 SHA1..: 4e3b1ed3550ab98f60e5b76db9ebd4ecc6ebbe97 Fichier Windows_Media_Player_Flash_Codec_ reçu le 2008.06.22 23:36:21 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/33 (33.34%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.22.0 2008.06.22 - AntiVir 7.8.0.59 2008.06.22 TR/Drop.SBP Authentium 5.1.0.4 2008.06.21 - Avast 4.8.1195.0 2008.06.21 - AVG 7.5.0.516 2008.06.22 Downloader.Zlob.XNM BitDefender 7.2 2008.06.22 Trojan.Dropper.SBP CAT-QuickHeal 9.50 2008.06.20 - ClamAV 0.93.1 2008.06.22 - DrWeb 4.44.0.09170 2008.06.22 - eSafe 7.0.15.0 2008.06.22 Suspicious File eTrust-Vet 31.6.5892 2008.06.21 - Ewido 4.0 2008.06.22 - F-Prot 4.4.4.56 2008.06.21 - F-Secure 7.60.13501.0 2008.06.20 W32/Malware Fortinet 3.14.0.0 2008.06.22 - GData 2.0.7306.1023 2008.06.22 - Ikarus T3.1.1.26.0 2008.06.22 BehavesLike.Trojan.WinlogonHook Kaspersky 7.0.0.125 2008.06.22 - McAfee 5322 2008.06.20 - Microsoft 1.3604 2008.06.22 - NOD32v2 3207 2008.06.22 Win32/TrojanDownloader.Small.OCY Norman 5.80.02 2008.06.20 W32/Malware Panda 9.0.0.4 2008.06.22 - Prevx1 V2 2008.06.22 - Rising 20.49.62.00 2008.06.22 - Sophos 4.30.0 2008.06.22 - Sunbelt 3.0.1153.1 2008.06.15 Trojan.Win32.Dialer.qn (v) Symantec 10 2008.06.22 - TheHacker 6.2.92.358 2008.06.21 - TrendMicro 8.700.0.1004 2008.06.20 - VBA32 3.12.6.7 2008.06.22 Win32.TrojanDownloader.Small.OCY VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.22 Trojan.Drop.SBP Information additionnelle File size: 50520 bytes MD5...: 3cd98f6304a610fd3713ff67ee118842 SHA1..: 0153fe9b70b8af50540b8158185f3a66a1e99422 Fichier qr8ngtq.GIF reçu le 2008.06.23 00:07:03 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 5/33 (15.16%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.22.0 2008.06.22 - AntiVir 7.8.0.59 2008.06.22 TR/Dropper.Gen Authentium 5.1.0.4 2008.06.21 - Avast 4.8.1195.0 2008.06.22 - AVG 7.5.0.516 2008.06.22 - BitDefender 7.2 2008.06.22 - CAT-QuickHeal 9.50 2008.06.20 (Suspicious) - DNAScan ClamAV 0.93.1 2008.06.22 - DrWeb 4.44.0.09170 2008.06.22 - eSafe 7.0.15.0 2008.06.22 - eTrust-Vet 31.6.5892 2008.06.21 - Ewido 4.0 2008.06.22 - F-Prot 4.4.4.56 2008.06.21 - F-Secure 7.60.13501.0 2008.06.20 - Fortinet 3.14.0.0 2008.06.22 - GData 2.0.7306.1023 2008.06.22 - Ikarus T3.1.1.26.0 2008.06.22 Trojan-Dropper Kaspersky 7.0.0.125 2008.06.22 - McAfee 5322 2008.06.20 - Microsoft 1.3604 2008.06.22 - NOD32v2 3207 2008.06.22 - Norman 5.80.02 2008.06.20 - Panda 9.0.0.4 2008.06.22 - Prevx1 V2 2008.06.23 Malicious Software Rising 20.49.62.00 2008.06.22 - Sophos 4.30.0 2008.06.22 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.22 - TheHacker 6.2.92.358 2008.06.21 - TrendMicro 8.700.0.1004 2008.06.20 - VBA32 3.12.6.7 2008.06.22 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.22 Trojan.Dropper.Gen Information additionnelle File size: 235520 bytes MD5...: 7bc65b6f340b4a00a6b499b20654903f SHA1..: da9fe06d1361fa333f97064dc02cfb9ad6a87a48 File 76145_3994685_image_134453.jpg-ww received on 06.23.2008 11:14:36 (CET) Current status: finished Result: 7/33 (21.21%) Compact Compact Print results Print results Antivirus Version Last Update Result AhnLab-V3 2008.6.22.0 2008.06.23 - AntiVir 7.8.0.59 2008.06.23 Worm/IrcBot.39673 Authentium 5.1.0.4 2008.06.21 - Avast 4.8.1195.0 2008.06.23 - AVG 7.5.0.516 2008.06.22 - BitDefender 7.2 2008.06.23 - CAT-QuickHeal 9.50 2008.06.20 - ClamAV 0.93.1 2008.06.23 - DrWeb 4.44.0.09170 2008.06.23 - eSafe 7.0.15.0 2008.06.23 - eTrust-Vet 31.6.5897 2008.06.23 - Ewido 4.0 2008.06.22 - F-Prot 4.4.4.56 2008.06.21 - F-Secure 7.60.13501.0 2008.06.20 - Fortinet 3.14.0.0 2008.06.23 - GData 2.0.7306.1023 2008.06.23 Backdoor.Win32.IRCBot.dsf Ikarus T3.1.1.26.0 2008.06.23 VirTool.Win32.Injector.b Kaspersky 7.0.0.125 2008.06.23 Backdoor.Win32.IRCBot.dsf McAfee 5322 2008.06.20 - Microsoft 1.3604 2008.06.23 VirTool:Win32/Injector.gen!B NOD32v2 3207 2008.06.22 - Norman 5.80.02 2008.06.20 - Panda 9.0.0.4 2008.06.22 - Prevx1 V2 2008.06.23 Worm Rising 20.50.01.00 2008.06.23 - Sophos 4.30.0 2008.06.23 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.23 - TheHacker 6.2.92.358 2008.06.21 - TrendMicro 8.700.0.1004 2008.06.23 - VBA32 3.12.6.7 2008.06.22 - VirusBuster 4.3.26:9 2008.06.12 - Webwasher-Gateway 6.6.2 2008.06.23 Worm.IrcBot.39673 Additional information File size: 39673 bytes MD5...: ce05a5e33fb4b3dfaea082b03ae3d2dd SHA1..: b5cff3cfc841ef01361a180f4d6ca8ff426780f5 Fichier m.jpg.1 reçu le 2008.06.24 10:21:57 (CET) Situation actuelle: terminé Résultat: 4/33 (12.12%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.24.0 2008.06.24 - AntiVir 7.8.0.59 2008.06.23 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.06.24 - Avast 4.8.1195.0 2008.06.23 - AVG 7.5.0.516 2008.06.24 - BitDefender 7.2 2008.06.24 - CAT-QuickHeal 9.50 2008.06.23 - ClamAV 0.93.1 2008.06.24 - DrWeb 4.44.0.09170 2008.06.24 - eSafe 7.0.15.0 2008.06.23 - eTrust-Vet 31.6.5900 2008.06.24 - Ewido 4.0 2008.06.23 - F-Prot 4.4.4.56 2008.06.23 - F-Secure 7.60.13501.0 2008.06.20 Suspicious:W32/Malware!Gemini Fortinet 3.14.0.0 2008.06.24 - GData 2.0.7306.1023 2008.06.24 - Ikarus T3.1.1.26.0 2008.06.24 - Kaspersky 7.0.0.125 2008.06.24 - McAfee 5323 2008.06.23 - Microsoft None 2008.06.24 - NOD32v2 3211 2008.06.24 - Norman 5.80.02 2008.06.23 - Panda 9.0.0.4 2008.06.23 Suspicious file Prevx1 V2 2008.06.24 - Rising 20.50.10.00 2008.06.24 - Sophos 4.30.0 2008.06.24 - Sunbelt 3.0.1153.1 2008.06.15 - Symantec 10 2008.06.24 - TheHacker 6.2.92.359 2008.06.24 - TrendMicro 8.700.0.1004 2008.06.24 - VBA32 3.12.6.8 2008.06.23 - VirusBuster 4.5.11.0 2008.06.23 - Webwasher-Gateway 6.6.2 2008.06.24 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 20622 bytes MD5...: 4531d35b9fe1bca6498b3c00092cbb8e SHA1..: b80583331c5b034b3f8aa3ec9cea6f85a4757b0f Fichier winxtx32.rom reçu le 2008.06.27 11:40:44 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/33 (27.28%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.27.1 2008.06.27 - AntiVir 7.8.0.59 2008.06.27 TR/PSW.LdPinch.SH Authentium 5.1.0.4 2008.06.27 - Avast 4.8.1195.0 2008.06.26 - AVG 7.5.0.516 2008.06.26 - BitDefender 7.2 2008.06.27 Trojan.Mezzia.DP CAT-QuickHeal 9.50 2008.06.26 - ClamAV 0.93.1 2008.06.27 - DrWeb 4.44.0.09170 2008.06.27 - eSafe 7.0.17.0 2008.06.26 - eTrust-Vet 31.6.5911 2008.06.27 - Ewido 4.0 2008.06.26 - F-Prot 4.4.4.56 2008.06.27 - F-Secure 7.60.13501.0 2008.06.26 - Fortinet 3.14.0.0 2008.06.27 - GData 2.0.7306.1023 2008.06.27 Trojan.Win32.Obfuscated.dea Ikarus T3.1.1.26.0 2008.06.27 Trojan-PWS.LDPinch.SH Kaspersky 7.0.0.125 2008.06.27 Trojan.Win32.Obfuscated.dea McAfee 5326 2008.06.26 - Microsoft 1.3704 2008.06.27 PWS:Win32/Ldpinch.UR NOD32v2 3223 2008.06.27 - Norman 5.80.02 2008.06.26 - Panda 9.0.0.4 2008.06.26 - Prevx1 V2 2008.06.27 Fraudulent Security Program Rising 20.50.41.00 2008.06.27 - Sophos 4.30.0 2008.06.27 Troj/Addler-Fam Sunbelt 3.0.1176.1 2008.06.26 - Symantec 10 2008.06.27 - TheHacker 6.2.96.362 2008.06.27 - TrendMicro 8.700.0.1004 2008.06.27 - VBA32 3.12.6.8 2008.06.27 - VirusBuster 4.5.11.0 2008.06.23 - Webwasher-Gateway 6.6.2 2008.06.27 Trojan.PSW.LdPinch.SH Information additionnelle File size: 33280 bytes MD5...: 6c760c32849ed821b4e749b07e5f36ec SHA1..: a72670725831ec0ccafd1834bbfc19db661ba893 Fichier image10.php reçu le 2008.06.28 12:50:39 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 13/33 (39.4%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.6.27.1 2008.06.27 - AntiVir 7.8.0.59 2008.06.27 Worm/IrcBot.59782 Authentium 5.1.0.4 2008.06.27 - Avast 4.8.1195.0 2008.06.27 - AVG 7.5.0.516 2008.06.28 IRC/BackDoor.SdBot4.CII BitDefender 7.2 2008.06.28 Backdoor.IRCBot.ACEV CAT-QuickHeal 9.50 2008.06.28 - ClamAV 0.93.1 2008.06.28 Trojan.Buzus-693 DrWeb 4.44.0.09170 2008.06.28 - eSafe 7.0.17.0 2008.06.26 - eTrust-Vet 31.6.5911 2008.06.27 - Ewido 4.0 2008.06.27 - F-Prot 4.4.4.56 2008.06.27 - F-Secure 7.60.13501.0 2008.06.26 - Fortinet 3.14.0.0 2008.06.28 - GData 2.0.7306.1023 2008.06.28 Trojan.Win32.Buzus.jsz Ikarus T3.1.1.26.0 2008.06.28 VirTool.Win32.DelfInject.AL Kaspersky 7.0.0.125 2008.06.28 Trojan.Win32.Buzus.jsz McAfee 5327 2008.06.27 - Microsoft 1.3704 2008.06.28 VirTool:Win32/DelfInject.gen!AL NOD32v2 3224 2008.06.27 IRC/SdBot Norman 5.80.02 2008.06.27 - Panda 9.0.0.4 2008.06.28 - Prevx1 V2 2008.06.28 System Back Door Rising 20.50.52.00 2008.06.28 - Sophos 4.30.0 2008.06.28 W32/Autorun-FU Sunbelt 3.0.1176.1 2008.06.26 - Symantec 10 2008.06.28 - TheHacker 6.2.96.362 2008.06.27 - TrendMicro 8.700.0.1004 2008.06.27 - VBA32 3.12.6.8 2008.06.28 Trojan.Win32.Buzus.jhz VirusBuster 4.5.11.0 2008.06.23 - Webwasher-Gateway 6.6.2 2008.06.28 Worm.IrcBot.59782 Information additionnelle File size: 59782 bytes MD5...: 302aef6b3c46e31e9a06799dbb897093 SHA1..: ae0394059ff5ec3faf51d18c0e90af24a5e747c1 Complete scanning result of "crypr.exe", processed in VirusTotal at 06/30/2008 14:26:16 (CET). [ file data ] * name..: crypr.exe * size..: 81920 * md5...: 15ec72bc7fa84190944d2b4bd0992cd2 * sha1..: 15984919255fd64e96a8ad62a5de513b4c9c3315 * peid..: - [ scan result ] AhnLab-V3 2008.6.27.1/20080630 found nothing AntiVir 7.8.0.59/20080630 found [TR/Buzus.kfb.10] Authentium 5.1.0.4/20080629 found nothing Avast 4.8.1195.0/20080628 found nothing AVG 7.5.0.516/20080630 found [BackDoor.Generic9.AXOI] BitDefender 7.2/20080630 found [Trojan.Dropper.VB.1] CAT-QuickHeal 9.50/20080628 found nothing ClamAV 0.93.1/20080630 found nothing DrWeb 4.44.0.09170/20080630 found nothing eSafe 7.0.17.0/20080629 found nothing eTrust-Vet 31.6.5914/20080630 found nothing Ewido 4.0/20080627 found nothing F-Prot 4.4.4.56/20080629 found nothing F-Secure 7.60.13501.0/20080626 found nothing Fortinet 3.14.0.0/20080630 found nothing GData 2.0.7306.1023/20080630 found [Trojan.Win32.Buzus.kfb] Ikarus T3.1.1.26.0/20080630 found [Trojan-Dropper.Vb.1] Kaspersky 7.0.0.125/20080630 found [Trojan.Win32.Buzus.kfb] McAfee 5327/20080627 found nothing Microsoft 1.3704/20080630 found nothing NOD32v2 3226/20080630 found nothing Norman 5.80.02/20080627 found nothing Panda 9.0.0.4/20080629 found [Suspicious file] Prevx1 V2/20080630 found [Suspicious] Rising 20.51.02.00/20080630 found nothing Sophos 4.30.0/20080630 found nothing Sunbelt 3.0.1176.1/20080626 found nothing Symantec 10/20080630 found nothing TheHacker 6.2.96.364/20080628 found nothing TrendMicro 8.700.0.1004/20080630 found nothing VBA32 3.12.6.8/20080630 found nothing VirusBuster 4.5.11.0/20080630 found nothing Webwasher-Gateway 6.6.2/20080630 found [Trojan.Buzus.kfb.10] [ notes ] Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=BCBD10C30017E329403F01D39DBEC000A9F7B04E Complete scanning result of "Photo_13308.jpg-www.hotmail.com", processed in VirusTotal at 06/30/2008 14:43:15 (CET). [ file data ] * name..: Photo_13308.jpg-www.hotmail.com * size..: 139522 * md5...: edd92d9e9200e7d6c0215a705e45e294 * sha1..: f2cd9ab9e6f4ceb1883c06eb8499afc0cd432f6b * peid..: EXE Shield v0.1b - v0.3b, v0.3 -> SMoKE [ scan result ] AhnLab-V3 2008.6.27.1/20080630 found nothing AntiVir 7.8.0.59/20080630 found [Worm/SdBot.139522] Authentium 5.1.0.4/20080629 found nothing Avast 4.8.1195.0/20080628 found [Win32:IRCBot-AND] AVG 7.5.0.516/20080630 found nothing BitDefender 7.2/20080630 found nothing CAT-QuickHeal 9.50/20080628 found nothing ClamAV 0.93.1/20080630 found nothing DrWeb 4.44.0.09170/20080630 found nothing eSafe 7.0.17.0/20080629 found [Suspicious File] eTrust-Vet 31.6.5914/20080630 found nothing Ewido 4.0/20080627 found nothing F-Prot 4.4.4.56/20080629 found nothing F-Secure 7.60.13501.0/20080626 found nothing Fortinet 3.14.0.0/20080630 found nothing GData 2.0.7306.1023/20080630 found [Backdoor.Win32.SdBot.esy] Ikarus T3.1.1.26.0/20080630 found [Virus.Win32.IRCBot.AND] Kaspersky 7.0.0.125/20080630 found [Backdoor.Win32.SdBot.esy] McAfee 5327/20080627 found nothing Microsoft 1.3704/20080630 found [Worm:Win32/Neeris.O] NOD32v2 3226/20080630 found [IRC/SdBot] Norman 5.80.02/20080627 found nothing Panda 9.0.0.4/20080629 found nothing Prevx1 V2/20080630 found nothing Rising 20.51.02.00/20080630 found nothing Sophos 4.30.0/20080630 found [Mal/Packer] Sunbelt 3.0.1176.1/20080626 found nothing Symantec 10/20080630 found [W32.Spybot.Worm] TheHacker 6.2.96.364/20080628 found nothing TrendMicro 8.700.0.1004/20080630 found nothing VBA32 3.12.6.8/20080630 found [Backdoor.Win32.SdBot.esy] VirusBuster 4.5.11.0/20080630 found nothing Webwasher-Gateway 6.6.2/20080630 found [Worm.SdBot.139522] [ notes ] packers (Avast): RLPack Complete scanning result of "eSp1.exe", processed in VirusTotal at 07/01/2008 10:00:28 (CET). [ file data ] * name: eSp1.exe * size: 42496 * md5.: a68edba3068eaccd5259662358d1b45e * sha1: faf1a7bec504d99d4acd6a6eb6357a131c86e753 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.1.0/20080701 found nothing AntiVir 7.8.0.59/20080701 found [Worm/Autorun.ehf] Authentium 5.1.0.4/20080701 found nothing Avast 4.8.1195.0/20080630 found nothing AVG 7.5.0.516/20080630 found [Worm/Generic.IJY] BitDefender 7.2/20080701 found [Trojan.Agent.AIZX] CAT-QuickHeal 9.50/20080630 found nothing ClamAV 0.93.1/20080701 found nothing DrWeb 4.44.0.09170/20080701 found [Trojan.Inject.3581] eSafe 7.0.17.0/20080629 found nothing eTrust-Vet 31.6.5916/20080701 found nothing Ewido 4.0/20080627 found nothing F-Prot 4.4.4.56/20080701 found nothing F-Secure 7.60.13501.0/20080626 found nothing Fortinet 3.14.0.0/20080701 found [PossibleThreat] GData 2.0.7306.1023/20080701 found [Worm.Win32.AutoRun.ehf] Ikarus T3.1.1.26/20080701 found [Worm.Win32.AutoRun.ehf] Kaspersky 7.0.0.125/20080701 found [Worm.Win32.AutoRun.ehf] McAfee 5328/20080630 found nothing Microsoft 1.3704/20080701 found [VirTool:Win32/Injector.gen!D] NOD32v2 3230/20080701 found [Win32/AutoRun.RB] Norman 5.80.02/20080630 found nothing Panda 9.0.0.4/20080701 found nothing Prevx1 V2/20080701 found nothing Rising 20.51.11.00/20080701 found nothing Sophos 4.30.0/20080701 found nothing Sunbelt 3.1.1509.1/20080701 found nothing Symantec 10/20080701 found nothing TheHacker 6.2.96.365/20080701 found nothing TrendMicro 8.700.0.1004/20080701 found nothing VBA32 3.12.6.8/20080630 found nothing VirusBuster 4.5.11.0/20080630 found nothing Webwasher-Gateway 6.6.2/20080701 found [Worm.Autorun.ehf] Complete scanning result of "euSp2.exe", processed in VirusTotal at 07/01/2008 10:00:28 (CET). [ file data ] * name: euSp2.exe * size: 42496 * md5.: 5f9103e4685d74e51bf22d7acd705445 * sha1: f194d2ef3dc750def679e13950f19569e300304c * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.1.0/20080701 found nothing AntiVir 7.8.0.59/20080701 found [BDS/Xili.42496] Authentium 5.1.0.4/20080701 found nothing Avast 4.8.1195.0/20080630 found nothing AVG 7.5.0.516/20080630 found [Worm/Generic.IJY] BitDefender 7.2/20080701 found [Trojan.Agent.AIZX] CAT-QuickHeal 9.50/20080630 found nothing ClamAV 0.93.1/20080701 found nothing DrWeb 4.44.0.09170/20080701 found [Trojan.Inject.3581] eSafe 7.0.17.0/20080629 found nothing eTrust-Vet 31.6.5916/20080701 found nothing Ewido 4.0/20080627 found nothing F-Prot 4.4.4.56/20080701 found nothing F-Secure 7.60.13501.0/20080626 found nothing Fortinet 3.14.0.0/20080701 found [PossibleThreat] GData 2.0.7306.1023/20080701 found [Worm.Win32.AutoRun.ehf] Ikarus T3.1.1.26/20080701 found [Trojan.Agent.AIZX] Kaspersky 7.0.0.125/20080701 found [Worm.Win32.AutoRun.ehf] McAfee 5328/20080630 found nothing Microsoft 1.3704/20080701 found [VirTool:Win32/Injector.gen!D] NOD32v2 3230/20080701 found [Win32/AutoRun.RB] Norman 5.80.02/20080630 found nothing Panda 9.0.0.4/20080701 found nothing Prevx1 V2/20080701 found [Worm] Rising 20.51.11.00/20080701 found nothing Sophos 4.30.0/20080701 found nothing Sunbelt 3.1.1509.1/20080701 found nothing Symantec 10/20080701 found [Trojan.Vundo] TheHacker 6.2.96.365/20080701 found nothing TrendMicro 8.700.0.1004/20080701 found nothing VBA32 3.12.6.8/20080630 found nothing VirusBuster 4.5.11.0/20080630 found nothing Webwasher-Gateway 6.6.2/20080701 found [Trojan.Backdoor.Xili.42496] Fichier sd.exe reçu le 2008.07.02 10:15:00 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 14/33 (42.43%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.2.0 2008.07.01 Win32/IRCBot.worm.variant AntiVir 7.8.0.59 2008.07.02 - Authentium 5.1.0.4 2008.07.01 W32/Trojan2.ZKM Avast 4.8.1195.0 2008.07.01 - AVG 7.5.0.516 2008.07.01 Generic9.BACL BitDefender 7.2 2008.07.02 Trojan.Inject.FW CAT-QuickHeal 9.50 2008.06.30 Trojan.Buzus.aei ClamAV 0.93.1 2008.07.02 Trojan.Agent-16201 DrWeb 4.44.0.09170 2008.07.02 BackDoor.IRC.Sdbot.origin eSafe 7.0.17.0 2008.07.01 - eTrust-Vet 31.6.5919 2008.07.02 - Ewido 4.0 2008.07.01 - F-Prot 4.4.4.56 2008.07.01 W32/Trojan2.ZKM F-Secure 7.60.13501.0 2008.07.01 - Fortinet 3.14.0.0 2008.07.02 - GData 2.0.7306.1023 2008.07.01 - Ikarus T3.1.1.26.0 2008.07.02 Trojan.Win32.Buzus.brw Kaspersky 7.0.0.125 2008.07.02 - McAfee 5329 2008.07.01 - Microsoft None 2008.07.02 - NOD32v2 3234 2008.07.02 a variant of Win32/Injector.U Norman 5.80.02 2008.07.01 - Panda 9.0.0.4 2008.07.01 Suspicious file Prevx1 V2 2008.07.02 - Rising 20.51.21.00 2008.07.02 - Sophos 4.30.0 2008.07.02 Mal/Behav-154 Sunbelt 3.1.1509.1 2008.07.01 - Symantec 10 2008.07.02 - TheHacker 6.2.96.366 2008.07.02 - TrendMicro 8.700.0.1004 2008.07.02 - VBA32 3.12.6.8 2008.07.01 Trojan.Win32.Buzus.il VirusBuster 4.5.11.0 2008.07.01 - Webwasher-Gateway 6.6.2 2008.07.02 Virus.Win32.FileInfector.gen!90 (suspicious) Information additionnelle File size: 345088 bytes MD5...: f5efab9b14eb92bafef1ef3168195b2f SHA1..: d92fb1468c481e429925ca5fc96d1c722ebb2405 Complete scanning result of "is158425.exe", processed in VirusTotal at 07/07/2008 23:36:20 (CET). [ file data ] * name..: is158425.exe * size..: 33792 * md5...: 53a66dfebc646a94b48e46145d0b60e9 * sha1..: d64e3f68b735f0feb6fd11cb2ad43ed759b915dc * peid..: - [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found nothing AntiVir 7.8.0.64/20080707 found [TR/Vundo.Gen] Authentium 5.1.0.4/20080706 found nothing Avast 4.8.1195.0/20080707 found nothing AVG 7.5.0.516/20080707 found [Generic10.AZZQ] BitDefender 7.2/20080707 found [Trojan.Vundo.EYE] CAT-QuickHeal 9.50/20080707 found [(Suspicious) - DNAScan] ClamAV 0.93.1/20080707 found nothing DrWeb 4.44.0.09170/20080707 found [Trojan.Virtumod.based.21] eSafe 7.0.17.0/20080707 found [Suspicious File] eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080703 found nothing Fortinet 3.14.0.0/20080707 found nothing GData 2.0.7306.1023/20080707 found [Trojan.Win32.Monderc.gen] Ikarus T3.1.1.26.0/20080707 found nothing Kaspersky 7.0.0.125/20080707 found [Trojan.Win32.Monderc.gen] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080707 found nothing NOD32v2 3248/20080707 found nothing Norman 5.80.02/20080707 found [Vundo.gen192] Panda 9.0.0.4/20080707 found nothing Prevx1 V2/20080707 found nothing Rising 20.51.60.00/20080706 found nothing Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080707 found nothing TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found nothing VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found [Trojan.Vundo.Gen] Complete scanning result of "eSp3.exe", processed in VirusTotal at 07/08/2008 01:22:28 (CET). [ file data ] * name..: eSp3.exe * size..: 42496 * md5...: c037270d341ccf0d50e5433aa27f635b * sha1..: 7dda16222a4802d1efcbada5d7263f5cb27ed022 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found nothing AntiVir 7.8.0.64/20080707 found [TR/Inject.IU.1] Authentium 5.1.0.4/20080707 found nothing Avast 4.8.1195.0/20080707 found [Win32:Trojan-gen {Other}] AVG 7.5.0.516/20080707 found [Worm/Generic.IMW] BitDefender 7.2/20080708 found [Trojan.Inject.IU] CAT-QuickHeal 9.50/20080707 found nothing ClamAV 0.93.1/20080708 found nothing DrWeb 4.44.0.09170/20080707 found [Win32.HLLW.Autoruner.2296] eSafe 7.0.17.0/20080707 found nothing eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080703 found nothing Fortinet 3.14.0.0/20080707 found [PossibleThreat] GData 2.0.7306.1023/20080708 found [Worm.Win32.AutoRun.eil] Ikarus T3.1.1.26.0/20080707 found [VirTool.Win32.Injector.D] Kaspersky 7.0.0.125/20080708 found [Worm.Win32.AutoRun.eil] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080708 found [Worm:Win32/Slenfbot.YR] NOD32v2 3248/20080707 found [Win32/AutoRun.RM] Norman 5.80.02/20080707 found nothing Panda 9.0.0.4/20080708 found [Trj/Hosts.AE] Prevx1 V2/20080708 found [Malicious Software] Rising 20.51.60.00/20080706 found nothing Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080708 found [Trojan.Dropper] TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found [Win32.HLLW.Autoruner.2296] VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found [Trojan.Inject.IU.1] Complete scanning result of "eSp3x.exe", processed in VirusTotal at 07/08/2008 01:22:24 (CET). [ file data ] * name..: eSp3x.exe * size..: 42496 * md5...: 4b154999a82f3ca63102bb8aa6b2543d * sha1..: 2534b72776fdd916ae78fb9b0af847efaebbf936 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found nothing AntiVir 7.8.0.64/20080707 found [Worm/Autorun.eht] Authentium 5.1.0.4/20080707 found nothing Avast 4.8.1195.0/20080707 found [Win32:Trojan-gen {Other}] AVG 7.5.0.516/20080707 found [Worm/Generic.IMW] BitDefender 7.2/20080708 found [Trojan.Inject.IU] CAT-QuickHeal 9.50/20080707 found nothing ClamAV 0.93.1/20080708 found nothing DrWeb 4.44.0.09170/20080707 found [Win32.HLLW.Autoruner.2296] eSafe 7.0.17.0/20080707 found nothing eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080703 found nothing Fortinet 3.14.0.0/20080707 found [PossibleThreat] GData 2.0.7306.1023/20080708 found [Worm.Win32.AutoRun.eht] Ikarus T3.1.1.26.0/20080707 found [VirTool.Win32.Injector.D] Kaspersky 7.0.0.125/20080708 found [Worm.Win32.AutoRun.eht] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080708 found [Worm:Win32/Slenfbot.YV] NOD32v2 3248/20080707 found [Win32/AutoRun.RM] Norman 5.80.02/20080707 found nothing Panda 9.0.0.4/20080708 found [Trj/Hosts.AE] Prevx1 V2/20080708 found [Malicious Software] Rising 20.51.60.00/20080706 found nothing Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080708 found [Trojan.Dropper] TheHacker 6.2.96.374/20080707 found [W32/AutoRun.eht] TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found [Win32.HLLW.Autoruner.2296] VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found [Worm.Autorun.eht] Complete scanning result of "euSp4f.exe", processed in VirusTotal at 07/08/2008 01:22:24 (CET). [ file data ] * name..: euSp4f.exe * size..: 42496 * md5...: e13e9ca41ff14aba24c1a2ac2889d5a2 * sha1..: b3af4403e971a5da23d0085c71aadcd5e7bc6489 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found nothing AntiVir 7.8.0.64/20080707 found [Worm/Autorun.ehu] Authentium 5.1.0.4/20080707 found nothing Avast 4.8.1195.0/20080707 found [Win32:Trojan-gen {Other}] AVG 7.5.0.516/20080707 found [Worm/Generic.IMW] BitDefender 7.2/20080708 found [Trojan.Inject.IU] CAT-QuickHeal 9.50/20080707 found [Worm.AutoRun.ehu] ClamAV 0.93.1/20080708 found nothing DrWeb 4.44.0.09170/20080707 found [Win32.HLLW.Autoruner.2296] eSafe 7.0.17.0/20080707 found nothing eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080703 found nothing Fortinet 3.14.0.0/20080707 found [PossibleThreat] GData 2.0.7306.1023/20080708 found [Worm.Win32.AutoRun.ehu] Ikarus T3.1.1.26.0/20080707 found [VirTool.Win32.Injector.D] Kaspersky 7.0.0.125/20080708 found [Worm.Win32.AutoRun.ehu] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080708 found [Worm:Win32/Slenfbot.YX] NOD32v2 3248/20080707 found [Win32/AutoRun.RM] Norman 5.80.02/20080707 found nothing Panda 9.0.0.4/20080708 found [Trj/Hosts.AE] Prevx1 V2/20080708 found [Malicious Software] Rising 20.51.60.00/20080706 found nothing Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080708 found [Trojan.Dropper] TheHacker 6.2.96.374/20080707 found [W32/AutoRun.ehu] TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found [Win32.HLLW.Autoruner.2296] VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found [Worm.Autorun.ehu Complete scanning result of "euSp4.exe", processed in VirusTotal at 07/08/2008 01:28:46 (CET). [ file data ] * name..: euSp4.exe * size..: 42496 * md5...: a5b7d933a84fdf5ab912472f43d4e0d5 * sha1..: 7daecc90888cab971bcfe78eac1d6d698f278af4 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found nothing AntiVir 7.8.0.64/20080707 found [TR/Inject.IU.2] Authentium 5.1.0.4/20080707 found nothing Avast 4.8.1195.0/20080707 found nothing AVG 7.5.0.516/20080707 found [Worm/Generic.IMW] BitDefender 7.2/20080708 found [Trojan.Inject.IU] CAT-QuickHeal 9.50/20080707 found nothing ClamAV 0.93.1/20080708 found nothing DrWeb 4.44.0.09170/20080707 found [Win32.HLLW.Autoruner.2296] eSafe 7.0.17.0/20080707 found nothing eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080708 found nothing Fortinet 3.14.0.0/20080707 found [PossibleThreat] GData 2.0.7306.1023/20080708 found [Worm.Win32.AutoRun.eil] Ikarus T3.1.1.26.0/20080707 found [VirTool.Win32.Injector.D] Kaspersky 7.0.0.125/20080708 found [Worm.Win32.AutoRun.eil] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080708 found [Worm:Win32/Slenfbot.YQ] NOD32v2 3248/20080707 found [Win32/AutoRun.RM] Norman 5.80.02/20080707 found nothing Panda 9.0.0.4/20080708 found [Trj/Hosts.AE] Prevx1 V2/20080708 found [Fraudulent Security Program] Rising 20.51.60.00/20080706 found nothing Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080708 found [Trojan.Dropper] TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found [Win32.HLLW.Autoruner.2296] VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found [Trojan.Inject.IU.2] Complete scanning result of "eSp4x.exe", processed in VirusTotal at 07/08/2008 01:22:24 (CET). [ file data ] * name..: eSp4x.exe * size..: 43520 * md5...: ddbedebc247dc42c124f4014ce6f6d12 * sha1..: e97e3433cc1fde78a11ee9d13f30a9be3a875224 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found nothing AntiVir 7.8.0.64/20080707 found nothing Authentium 5.1.0.4/20080707 found nothing Avast 4.8.1195.0/20080707 found nothing AVG 7.5.0.516/20080707 found nothing BitDefender 7.2/20080708 found nothing CAT-QuickHeal 9.50/20080707 found nothing ClamAV 0.93.1/20080708 found nothing DrWeb 4.44.0.09170/20080707 found nothing eSafe 7.0.17.0/20080707 found nothing eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080703 found nothing Fortinet 3.14.0.0/20080707 found nothing GData 2.0.7306.1023/20080708 found [Backdoor.Win32.IRCBot.dyn] Ikarus T3.1.1.26.0/20080707 found nothing Kaspersky 7.0.0.125/20080708 found [Backdoor.Win32.IRCBot.dyn] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080708 found [VirTool:Win32/DelfInject.gen!AF] NOD32v2 3248/20080707 found [Win32/AutoRun.RM] Norman 5.80.02/20080707 found nothing Panda 9.0.0.4/20080708 found nothing Prevx1 V2/20080708 found nothing Rising 20.51.60.00/20080706 found [Trojan.Win32.Delf.ykq] Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080708 found [Trojan.Dropper] TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found nothing VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found nothing Complete scanning result of "euSp5x.exe", processed in VirusTotal at 07/08/2008 01:22:28 (CET). [ file data ] * name..: euSp5x.exe * size..: 43520 * md5...: 90f41a3511c3ffbba20ccc90e164441f * sha1..: 9724c344a3bfb255c915b3ea8cbe8672fc694bc6 * peid..: BobSoft Mini Delphi -> BoB / BobSoft [ scan result ] AhnLab-V3 2008.7.8.0/20080707 found [Win-Trojan/Injector.43520] AntiVir 7.8.0.64/20080707 found nothing Authentium 5.1.0.4/20080707 found nothing Avast 4.8.1195.0/20080707 found nothing AVG 7.5.0.516/20080707 found nothing BitDefender 7.2/20080708 found nothing CAT-QuickHeal 9.50/20080707 found nothing ClamAV 0.93.1/20080708 found nothing DrWeb 4.44.0.09170/20080707 found nothing eSafe 7.0.17.0/20080707 found nothing eTrust-Vet 31.6.5934/20080707 found nothing Ewido 4.0/20080707 found nothing F-Prot 4.4.4.56/20080707 found nothing F-Secure 7.60.13501.0/20080703 found nothing Fortinet 3.14.0.0/20080707 found nothing GData 2.0.7306.1023/20080708 found [Backdoor.Win32.IRCBot.dyn] Ikarus T3.1.1.26.0/20080707 found nothing Kaspersky 7.0.0.125/20080708 found [Backdoor.Win32.IRCBot.dyn] McAfee 5333/20080707 found nothing Microsoft 1.3704/20080708 found [Worm:Win32/Slenfbot.ZA] NOD32v2 3248/20080707 found [Win32/AutoRun.RM] Norman 5.80.02/20080707 found nothing Panda 9.0.0.4/20080708 found nothing Prevx1 V2/20080708 found [Worm] Rising 20.51.60.00/20080706 found [Trojan.Win32.Delf.ykq] Sophos 4.31.0/20080707 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080708 found [Trojan.Dropper] TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080707 found nothing VBA32 3.12.6.8/20080707 found nothing VirusBuster 4.5.11.0/20080707 found nothing Webwasher-Gateway 6.6.2/20080707 found nothing Fichier 76160_4114933_viewimage reçu le 2008.07.08 11:28:55 (CET) Situation actuelle: terminé Résultat: 14/33 (42.42%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.8.0 2008.07.08 Win32/IRCBot.worm.variant AntiVir 7.8.0.64 2008.07.08 Worm/Rbot.63492 Authentium 5.1.0.4 2008.07.07 - Avast 4.8.1195.0 2008.07.07 - AVG 7.5.0.516 2008.07.08 Dropper.Generic.ZLQ BitDefender 7.2 2008.07.08 Trojan.Delf.Inject.E CAT-QuickHeal 9.50 2008.07.07 - ClamAV 0.93.1 2008.07.08 - DrWeb 4.44.0.09170 2008.07.08 - eSafe 7.0.17.0 2008.07.07 - eTrust-Vet 31.6.5937 2008.07.08 - Ewido 4.0 2008.07.07 - F-Prot 4.4.4.56 2008.07.07 - F-Secure 7.60.13501.0 2008.07.08 - Fortinet 3.14.0.0 2008.07.07 PossibleThreat GData 2.0.7306.1023 2008.07.08 Backdoor.Win32.Rbot.rhk Ikarus T3.1.1.26.0 2008.07.08 BehavesLikeWin32.ProcessHijack Kaspersky 7.0.0.125 2008.07.08 Backdoor.Win32.Rbot.rhk McAfee 5333 2008.07.07 - Microsoft 1.3704 2008.07.08 Worm:Win32/Pushbot.gen NOD32v2 3249 2008.07.08 probably a variant of Win32/TrojanDropper.Delf.NFH Norman 5.80.02 2008.07.07 - Panda 9.0.0.4 2008.07.08 Suspicious file Prevx1 V2 2008.07.08 - Rising 20.52.10.00 2008.07.08 - Sophos 4.31.0 2008.07.08 Mal/Generic-A Sunbelt 3.1.1509.1 2008.07.04 - Symantec 10 2008.07.08 - TheHacker 6.2.96.374 2008.07.07 - TrendMicro 8.700.0.1004 2008.07.08 - VBA32 3.12.6.8 2008.07.07 Backdoor.Win32.Rbot.rhk VirusBuster 4.5.11.0 2008.07.07 - Webwasher-Gateway 6.6.2 2008.07.08 Worm.Rbot.63492 Information additionnelle File size: 63492 bytes MD5...: 1f615501f432ea6211267a55c76af1d2 SHA1..: 8bcf99848013a0dc78153faef76a8e5381706252 Fichier DSC00001836.jpg-www.imageshack.co reçu le 2008.07.08 11:31:02 (CET) Situation actuelle: terminé Résultat: 14/33 (42.42%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 - - Win32/IRCBot.worm.variant AntiVir - - Worm/Rbot.63492 Authentium - - - Avast - - - AVG - - Dropper.Generic.ZLQ BitDefender - - Trojan.Delf.Inject.E CAT-QuickHeal - - - ClamAV - - - DrWeb - - - eSafe - - - eTrust-Vet - - - Ewido - - - F-Prot - - - F-Secure - - - Fortinet - - PossibleThreat GData - - Backdoor.Win32.Rbot.rhk Ikarus - - BehavesLikeWin32.ProcessHijack Kaspersky - - Backdoor.Win32.Rbot.rhk McAfee - - - Microsoft - - Worm:Win32/Pushbot.gen NOD32v2 - - probably a variant of Win32/TrojanDropper.Delf.NFH Norman - - - Panda - - Suspicious file Prevx1 - - - Rising - - - Sophos - - Mal/Generic-A Sunbelt - - - Symantec - - - TheHacker - - - TrendMicro - - - VBA32 - - Backdoor.Win32.Rbot.rhk VirusBuster - - - Webwasher-Gateway - - Worm.Rbot.63492 Information additionnelle MD5: bdde2fa3dbeb7c45d275d8ce86c726eb SHA1: 76b23bf98d9dfc92af99eab4dd5a57cbcb865bfc Complete scanning result of "exxe.php?id=0281", processed in VirusTotal at 07/10/2008 11:38:31 (CET). [ file data ] * name..: exxe.php?id=0281 * size..: 11264 * md5...: 9def83afe9a44b78f00e07b25c6ec72c * sha1..: 9d34fc34526df101c0e34394880967884b408e22 * peid..: - [ scan result ] AhnLab-V3 2008.7.10.0/20080710 found nothing AntiVir 7.8.0.64/20080710 found [TR/Crypt.XDR.Gen] Authentium 5.1.0.4/20080710 found nothing Avast 4.8.1195.0/20080709 found [Win32:Crypt-CMW] AVG 7.5.0.516/20080709 found nothing BitDefender 7.2/20080710 found [Trojan.Crypt.EE] CAT-QuickHeal 9.50/20080709 found [(Suspicious) - DNAScan] ClamAV 0.93.1/20080710 found nothing DrWeb 4.44.0.09170/20080710 found nothing eSafe 7.0.17.0/20080709 found nothing eTrust-Vet 31.6.5942/20080710 found nothing Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080710 found nothing F-Secure 7.60.13501.0/20080710 found [Suspicious:W32/Malware!Gemini] Fortinet 3.14.0.0/20080710 found nothing GData 2.0.7306.1023/20080710 found [Win32:Crypt-CMW] Ikarus T3.1.1.26.0/20080710 found nothing Kaspersky 7.0.0.125/20080710 found [Trojan.Win32.Agent.kkp] McAfee 5335/20080709 found nothing Microsoft 1.3704/20080710 found nothing NOD32v2 3257/20080710 found nothing Norman 5.80.02/20080709 found nothing Panda 9.0.0.4/20080709 found [Suspicious file] Rising 20.52.31.00/20080710 found nothing Sophos 4.31.0/20080710 found [Sus/UnkPacker] Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080710 found nothing TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080710 found nothing VBA32 3.12.6.9/20080710 found nothing VirusBuster 4.5.11.0/20080709 found nothing Webwasher-Gateway 6.6.2/20080710 found [Trojan.Crypt.XDR.Gen] Complete scanning result of "down.php?uname=leeman", processed in VirusTotal at 07/09/2008 21:32:55 (CET). [ file data ] * name..: down.php?uname=leeman * size..: 7680 * md5...: 47a608620b46137ad2f13de99043b295 * sha1..: 0c2a2e0746dfbcf986eb36c5bb6e4ec9cbf790e4 * peid..: - [ scan result ] AhnLab-V3 2008.7.10.0/20080709 found nothing AntiVir 7.8.0.64/20080709 found [Worm/Zhelatin.zh] Authentium 5.1.0.4/20080708 found nothing Avast 4.8.1195.0/20080709 found nothing AVG 7.5.0.516/20080709 found [I-Worm/Nuwar.U] BitDefender 7.2/20080709 found [DeepScan:Generic.Malware.dld!!.AE5FDD1C] CAT-QuickHeal 9.50/20080709 found nothing ClamAV 0.93.1/20080709 found nothing DrWeb 4.44.0.09170/20080709 found [Trojan.Packed.555] eSafe 7.0.17.0/20080708 found [Suspicious File] eTrust-Vet 31.6.5940/20080709 found [Win32/Sintun.FB] Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080708 found nothing F-Secure 7.60.13501.0/20080708 found nothing Fortinet 3.14.0.0/20080709 found nothing GData 2.0.7306.1023/20080709 found [Trojan-Downloader.Win32.Cntr.cg] Ikarus T3.1.1.26.0/20080709 found nothing Kaspersky 7.0.0.125/20080709 found [Trojan-Downloader.Win32.Cntr.cg] McAfee 5335/20080709 found [New Win32.g4] Microsoft 1.3704/20080709 found [TrojanDownloader:Win32/Nuwar.gen!B] NOD32v2 3255/20080709 found [a variant of Win32/Nuwar.DD] Norman 5.80.02/20080709 found nothing Panda 9.0.0.4/20080709 found [Suspicious file] Prevx1 V2/20080709 found nothing Rising 20.52.22.00/20080709 found nothing Sophos 4.31.0/20080709 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080709 found nothing TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080709 found nothing VBA32 3.12.6.8/20080708 found nothing VirusBuster 4.5.11.0/20080709 found nothing Webwasher-Gateway 6.6.2/20080709 found [Worm.Zhelatin.zh] Complete scanning result of "2359fqjlerib.exe", processed in VirusTotal at 07/09/2008 21:14:34 (CET). [ file data ] * name: 2359fqjlerib.exe * size: 112128 * md5.: 138f14ffd0a6b4cb6d677299cf0d9df2 * sha1: 5423d3893abba3f09533747c66b5b5ab0ab68e3d * peid..: - [ scan result ] AhnLab-V3 2008.7.10.0/20080709 found nothing AntiVir 7.8.0.64/20080709 found [TR/Dropper.Gen] Authentium 5.1.0.4/20080708 found nothing Avast 4.8.1195.0/20080709 found [Win32:Rootkit-gen] AVG 7.5.0.516/20080709 found nothing BitDefender 7.2/20080709 found nothing CAT-QuickHeal 9.50/20080709 found [Rootkit.Podnuha.ir] ClamAV 0.93.1/20080709 found nothing DrWeb 4.44.0.09170/20080709 found nothing eSafe 7.0.17.0/20080703 found [Suspicious File] eTrust-Vet 31.6.5940/20080709 found nothing Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080708 found nothing F-Secure 7.60.13501.0/20080708 found [Rootkit.Win32.Podnuha.ir] Fortinet 3.14.0.0/20080709 found [Dropper.AC] GData 2.0.7306.1023/20080709 found [Rootkit.Win32.Podnuha.ir] Ikarus T3.1.1.26/20080709 found [Trojan-Dropper] Kaspersky 7.0.0.125/20080709 found [Rootkit.Win32.Podnuha.ir] McAfee 5335/20080709 found nothing Microsoft 1.3704/20080709 found [TrojanDropper:Win32/Boaxxe.D] NOD32v2 3255/20080709 found nothing Norman 5.80.02/20080709 found [W32/Rootkit.MMU] Panda 9.0.0.4/20080709 found nothing Prevx1 V2/20080709 found [Malicious Software] Rising 20.52.22.00/20080709 found nothing Sophos 4.31.0/20080709 found [Mal/Dropper-AC] Sunbelt 3.1.1509.1/20080704 found [Rootkit.Win32.Podnuha.ir] Symantec 10/20080709 found nothing TheHacker 6.2.96.374/20080707 found [Trojan/Podnuha.ir] TrendMicro 8.700.0.1004/20080709 found [PAK_Generic.001] VBA32 3.12.6.8/20080708 found nothing VirusBuster 4.5.11.0/20080709 found nothing Webwasher-Gateway 6.6.2/20080709 found [Trojan.Dropper.Gen] Complete scanning result of "b.exe", processed in VirusTotal at 07/09/2008 21:15:05 (CET). [ file data ] * name..: b.exe * size..: 372112 * md5...: 42ffc1826c15316efbd18eab6cf1f6c6 * sha1..: a3768eba2decf173b08666e1c4fcb9516539d58f * peid..: - [ scan result ] AhnLab-V3 2008.7.10.0/20080709 found nothing AntiVir 7.8.0.64/20080709 found [BDS/Sinowal.DT] Authentium 5.1.0.4/20080708 found nothing Avast 4.8.1195.0/20080709 found [Win32:Trojan-gen {Other}] AVG 7.5.0.516/20080709 found [BackDoor.Generic9.AZDU] BitDefender 7.2/20080709 found nothing CAT-QuickHeal 9.50/20080709 found [Backdoor.Sinowal.dn] ClamAV 0.93.1/20080709 found nothing DrWeb 4.44.0.09170/20080709 found [Trojan.Packed.524] eSafe 7.0.17.0/20080703 found nothing eTrust-Vet 31.6.5939/20080709 found nothing Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080708 found nothing F-Secure 7.60.13501.0/20080708 found nothing Fortinet 3.14.0.0/20080709 found [Sinowa.A] GData 2.0.7306.1023/20080709 found [Backdoor.Win32.Sinowal.dn] Ikarus T3.1.1.26/20080709 found [PWS.Win32.Sinowal.J] Kaspersky 7.0.0.125/20080709 found [Backdoor.Win32.Sinowal.dn] McAfee 5335/20080709 found nothing Microsoft 1.3704/20080709 found [PWS:Win32/Sinowal.gen!K] NOD32v2 3255/20080709 found nothing Norman 5.80.02/20080709 found nothing Panda 9.0.0.4/20080709 found [Suspicious file] Prevx1 V2/20080709 found nothing Rising 20.52.22.00/20080709 found nothing Sophos 4.31.0/20080709 found [Mal/Sinowa-A] Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080709 found nothing TheHacker 6.2.96.374/20080707 found nothing VBA32 3.12.6.8/20080708 found [Backdoor.Win32.Sinowal.dn] VirusBuster 4.5.11.0/20080703 found nothing Webwasher-Gateway 6.6.2/20080709 found [Trojan.Backdoor.Sinowal.DT] Complete scanning result of "ggg3.exe", processed in VirusTotal at 07/09/2008 21:12:04 (CET). [ file data ] * name..: ggg3.exe * size..: 180224 * md5...: 264311a3bb7c7fb33f200da492463867 * sha1..: c94f5e3addbc71a0bc146a437e0e4885960be3ce * peid..: - [ scan result ] AhnLab-V3 2008.7.10.0/20080709 found nothing AntiVir 7.8.0.64/20080709 found [TR/Crypt.XPACK.Gen] Authentium 5.1.0.4/20080708 found nothing Avast 4.8.1195.0/20080709 found [Win32:Virut] AVG 7.5.0.516/20080709 found nothing BitDefender 7.2/20080709 found [Trojan.Srizbi.Dropper.1.Gen] CAT-QuickHeal 9.50/20080709 found [(Suspicious) - DNAScan] ClamAV 0.93.1/20080709 found nothing DrWeb 4.44.0.09170/20080709 found nothing eSafe 7.0.17.0/20080708 found [Suspicious File] eTrust-Vet 31.6.5940/20080709 found nothing Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080708 found nothing F-Secure 7.60.13501.0/20080708 found nothing Fortinet 3.14.0.0/20080709 found nothing GData 2.0.7306.1023/20080709 found [Win32:Virut] Ikarus T3.1.1.26.0/20080709 found nothing Kaspersky 7.0.0.125/20080709 found nothing McAfee 5335/20080709 found nothing Microsoft 1.3704/20080709 found [TrojanDropper:Win32/Srizbi.gen!D] NOD32v2 3255/20080709 found nothing Norman 5.80.02/20080709 found nothing Panda 9.0.0.4/20080709 found nothing Prevx1 V2/20080709 found nothing Rising 20.52.22.00/20080709 found nothing Sophos 4.31.0/20080709 found [Mal/EncPk-CK] Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080709 found nothing TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080709 found nothing VBA32 3.12.6.8/20080708 found nothing VirusBuster 4.5.11.0/20080709 found nothing Webwasher-Gateway 6.6.2/20080709 found [Trojan.Crypt.XPACK.Gen] Complete scanning result of "joker.exe", processed in VirusTotal at 07/09/2008 21:11:59 (CET). [ file data ] * name..: joker.exe * size..: 59904 * md5...: 684202c2f6d4f3b4319d62de2cf898bd * sha1..: d45eb9295d8f73ed1ac4372781227926fd6b5600 * peid..: UPX 2.90 [LZMA] -> Markus Oberhumer, Laszlo Molnar & John Reiser [ scan result ] AhnLab-V3 2008.7.10.0/20080709 found nothing AntiVir 7.8.0.64/20080709 found [TR/Proxy.Gen] Authentium 5.1.0.4/20080708 found nothing Avast 4.8.1195.0/20080709 found nothing AVG 7.5.0.516/20080709 found nothing BitDefender 7.2/20080709 found [Generic.Malware.FMYdg.3319A60A] CAT-QuickHeal 9.50/20080709 found nothing ClamAV 0.93.1/20080709 found nothing DrWeb 4.44.0.09170/20080709 found [DLOADER.Trojan] eSafe 7.0.17.0/20080708 found [Suspicious File] eTrust-Vet 31.6.5940/20080709 found nothing Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080708 found nothing F-Secure 7.60.13501.0/20080708 found nothing Fortinet 3.14.0.0/20080709 found nothing GData 2.0.7306.1023/20080709 found nothing Ikarus T3.1.1.26.0/20080709 found nothing Kaspersky 7.0.0.125/20080709 found nothing McAfee 5335/20080709 found nothing Microsoft 1.3704/20080709 found nothing NOD32v2 3255/20080709 found [probably a variant of Win32/Genetik] Norman 5.80.02/20080709 found nothing Panda 9.0.0.4/20080709 found nothing Prevx1 V2/20080709 found [Suspicious] Rising 20.52.22.00/20080709 found nothing Sophos 4.31.0/20080709 found [Mal/TinyDL-T] Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080709 found nothing TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080709 found [PAK_Generic.001] VBA32 3.12.6.8/20080708 found [suspected of Backdoor.xBot.1 (paranoid heuristics)] VirusBuster 4.5.11.0/20080709 found nothing Webwasher-Gateway 6.6.2/20080709 found [Trojan.Proxy.Gen] Complete scanning result of "windows_media.exe", processed in VirusTotal at 07/09/2008 20:43:45 (CET). [ file data ] * name..: windows_media.exe * size..: 109056 * md5...: 7b7ec3b49b9f1600a19a115f8b06e68f * sha1..: 7e9f319ceab597256888c478ab7249abc4118cdd * peid..: - [ scan result ] AhnLab-V3 2008.7.10.0/20080709 found nothing AntiVir 7.8.0.64/20080709 found [TR/Crypt.XPACK.Gen] Authentium 5.1.0.4/20080708 found nothing Avast 4.8.1195.0/20080709 found [Win32:Trojan-gen {Other}] AVG 7.5.0.516/20080709 found [I-Worm/Nuwar.S] BitDefender 7.2/20080709 found [Trojan.Peed.JOB] CAT-QuickHeal 9.50/20080709 found [(Suspicious) - DNAScan] ClamAV 0.93.1/20080709 found nothing DrWeb 4.44.0.09170/20080709 found [Trojan.Fakealert.950] eSafe 7.0.17.0/20080708 found [Suspicious File] eTrust-Vet 31.6.5940/20080709 found nothing Ewido 4.0/20080709 found nothing F-Prot 4.4.4.56/20080708 found nothing F-Secure 7.60.13501.0/20080708 found nothing Fortinet 3.14.0.0/20080709 found nothing GData 2.0.7306.1023/20080709 found [Win32:Trojan-gen ] Ikarus T3.1.1.26.0/20080709 found [Trojan.Peed.JOB] Kaspersky 7.0.0.125/20080709 found nothing McAfee 5335/20080709 found nothing Microsoft 1.3704/20080709 found [Trojan:Win32/Tibs.J] NOD32v2 3255/20080709 found nothing Norman 5.80.02/20080709 found nothing Panda 9.0.0.4/20080709 found nothing Prevx1 V2/20080709 found [Malicious Software] Rising 20.52.22.00/20080709 found nothing Sophos 4.31.0/20080709 found nothing Sunbelt 3.1.1509.1/20080704 found nothing Symantec 10/20080709 found nothing TheHacker 6.2.96.374/20080707 found nothing TrendMicro 8.700.0.1004/20080709 found nothing VBA32 3.12.6.8/20080708 found nothing VirusBuster 4.5.11.0/20080709 found nothing Webwasher-Gateway 6.6.2/20080709 found [Trojan.Crypt.XPACK.Gen] File ntos.exe received on 07.10.2008 12:42:42 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 11/33 (33.34%) Loading server information... Antivirus Version Last Update Result AhnLab-V3 2008.7.10.0 2008.07.10 - AntiVir 7.8.0.64 2008.07.10 DR/Delphi.Gen Authentium 5.1.0.4 2008.07.10 - Avast 4.8.1195.0 2008.07.09 Win32:Trojan-gen {Other} AVG 7.5.0.516 2008.07.10 SHeur.BVIX BitDefender 7.2 2008.07.10 - CAT-QuickHeal 9.50 2008.07.09 - ClamAV 0.93.1 2008.07.10 - DrWeb 4.44.0.09170 2008.07.10 - eSafe 7.0.17.0 2008.07.09 Suspicious File eTrust-Vet 31.6.5942 2008.07.10 - Ewido 4.0 2008.07.10 - F-Prot 4.4.4.56 2008.07.10 - F-Secure 7.60.13501.0 2008.07.10 - Fortinet 3.14.0.0 2008.07.10 - GData 2.0.7306.1023 2008.07.10 Win32:Trojan-gen Ikarus T3.1.1.26.0 2008.07.10 Downloader.Delphi Kaspersky 7.0.0.125 2008.07.10 - McAfee 5335 2008.07.09 - Microsoft 1.3704 2008.07.10 Trojan:Win32/Delfobfus.C NOD32v2 3257 2008.07.10 - Norman 5.80.02 2008.07.09 - Panda 9.0.0.4 2008.07.09 Trj/Sinowal.VIC Prevx1 V2 2008.07.10 - Rising 20.52.32.00 2008.07.10 Trojan.DL.Win32.Agent.bxw Sophos 4.31.0 2008.07.10 Mal/Dropper-T Sunbelt 3.1.1509.1 2008.07.04 - Symantec 10 2008.07.10 - TheHacker 6.2.96.374 2008.07.07 - TrendMicro 8.700.0.1004 2008.07.10 - VBA32 3.12.6.9 2008.07.10 - VirusBuster 4.5.11.0 2008.07.09 - Webwasher-Gateway 6.6.2 2008.07.10 Trojan.Dropper.Delphi.Gen Additional information File size: 95744 bytes MD5...: 9022715641dd6118b5711d79b99cbedd SHA1..: 12ed2c64c5d1b03c4da434354d127a84748a882e SHA256: 52b883069c86c49f26def8e103655d260252fc07dadff0ec2c1263e6dc01c6de SHA512: 815d93458d25a32a735bba37e15b7f5f805a78584b4a814881173e642bda5162 1aa6a37ea967f948fa329a9c3d9febc105dc5b11424221e59f2f7a0d7f43a88c Fichier usb.exe reçu le 2008.07.15 15:03:12 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 10/33 (30.31%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.11.0 2008.07.15 Dropper/Xema.73216.F AntiVir 7.8.0.64 2008.07.15 TR/Buzus.iij Authentium 5.1.0.4 2008.07.15 - Avast 4.8.1195.0 2008.07.14 - AVG 7.5.0.516 2008.07.15 Dropper.Tiny.Q BitDefender 7.2 2008.07.15 Trojan.Delf.Inject.Z CAT-QuickHeal 9.50 2008.07.14 - ClamAV 0.93.1 2008.07.15 - DrWeb 4.44.0.09170 2008.07.15 - eSafe 7.0.17.0 2008.07.14 - eTrust-Vet 31.6.5956 2008.07.15 - Ewido 4.0 2008.07.15 - F-Prot 4.4.4.56 2008.07.14 W32/DelfInject.A.gen!Eldorado F-Secure 7.60.13501.0 2008.07.15 - Fortinet 3.14.0.0 2008.07.15 - GData 2.0.7306.1023 2008.07.15 - Ikarus T3.1.1.26.0 2008.07.15 VirTool.Win32.DelfInject.X Kaspersky 7.0.0.125 2008.07.15 Heur.Trojan.Generic McAfee 5338 2008.07.14 - Microsoft 1.3704 2008.07.15 VirTool:Win32/DelfInject.gen!X NOD32v2 3268 2008.07.15 - Norman 5.80.02 2008.07.14 - Panda 9.0.0.4 2008.07.14 - Prevx1 V2 2008.07.15 - Rising 20.53.12.00 2008.07.15 - Sophos 4.31.0 2008.07.15 Mal/Emogen-I Sunbelt 3.1.1536.1 2008.07.15 - Symantec 10 2008.07.15 - TheHacker 6.2.96.379 2008.07.14 - TrendMicro 8.700.0.1004 2008.07.15 - VBA32 3.12.8.0 2008.07.15 - VirusBuster 4.5.11.0 2008.07.14 - Webwasher-Gateway 6.6.2 2008.07.15 Trojan.Buzus.iij Information additionnelle File size: 33792 bytes MD5...: 13015f7116d0fc3ab142db187798c6d0 SHA1..: 752b9aa34ee24cb94d5fb9eb3fd4f618720a04a8 Fichier index.html_album_ reçu le 2008.07.15 14:50:34 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/33 (33.34%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.11.0 2008.07.15 - AntiVir 7.8.0.64 2008.07.15 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.07.15 - Avast 4.8.1195.0 2008.07.14 Win32:IRCBot-CRQ AVG 7.5.0.516 2008.07.15 - BitDefender 7.2 2008.07.15 Trojan.Crypt.EM CAT-QuickHeal 9.50 2008.07.14 - ClamAV 0.93.1 2008.07.15 - DrWeb 4.44.0.09170 2008.07.15 - eSafe 7.0.17.0 2008.07.14 Suspicious File eTrust-Vet 31.6.5956 2008.07.15 - Ewido 4.0 2008.07.15 - F-Prot 4.4.4.56 2008.07.14 - F-Secure 7.60.13501.0 2008.07.15 - Fortinet 3.14.0.0 2008.07.15 - GData 2.0.7306.1023 2008.07.15 - Ikarus T3.1.1.26.0 2008.07.15 - Kaspersky 7.0.0.125 2008.07.15 - McAfee 5338 2008.07.14 - Microsoft 1.3704 2008.07.15 - NOD32v2 3268 2008.07.15 probably a variant of Win32/IRCBot.AAL Norman 5.80.02 2008.07.14 - Panda 9.0.0.4 2008.07.14 Suspicious file Prevx1 V2 2008.07.15 - Rising 20.53.12.00 2008.07.15 - Sophos 4.31.0 2008.07.15 Mal/TibsPak Sunbelt 3.1.1536.1 2008.07.15 VIPRE.Suspicious Symantec 10 2008.07.15 Packed.Generic.80 TheHacker 6.2.96.379 2008.07.14 - TrendMicro 8.700.0.1004 2008.07.15 PAK_Generic.001 VBA32 3.12.8.0 2008.07.15 - VirusBuster 4.5.11.0 2008.07.14 - Webwasher-Gateway 6.6.2 2008.07.15 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 42139 bytes MD5...: 627c327b8059e7056e48710dcdcea10e SHA1..: 2a035673038d454122eb328f51781efa5507b8ec Fichier video-nude-anjelina.avi.exe reçu le 2008.07.15 15:21:01 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 12/33 (36.37%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.11.0 2008.07.15 - AntiVir 7.8.0.64 2008.07.15 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.07.15 - Avast 4.8.1195.0 2008.07.14 - AVG 7.5.0.516 2008.07.15 - BitDefender 7.2 2008.07.15 Trojan.Agent.AGGZ CAT-QuickHeal 9.50 2008.07.14 - ClamAV 0.93.1 2008.07.15 - DrWeb 4.44.0.09170 2008.07.15 Trojan.MulDrop.14555 eSafe 7.0.17.0 2008.07.14 Suspicious File eTrust-Vet 31.6.5956 2008.07.15 - Ewido 4.0 2008.07.15 - F-Prot 4.4.4.56 2008.07.14 - F-Secure 7.60.13501.0 2008.07.15 Trojan-Dropper:W32/Agent.EYD Fortinet 3.14.0.0 2008.07.15 - GData 2.0.7306.1023 2008.07.15 Packed.Win32.Tibs.ju Ikarus T3.1.1.26.0 2008.07.15 Trojan.Crypt.XPACK Kaspersky 7.0.0.125 2008.07.15 Packed.Win32.Tibs.ju McAfee 5338 2008.07.14 - Microsoft 1.3704 2008.07.15 - NOD32v2 3268 2008.07.15 Win32/TrojanDownloader.FakeAlert.ES Norman 5.80.02 2008.07.15 W32/Smalltroj.FLBA Panda 9.0.0.4 2008.07.14 - Prevx1 V2 2008.07.15 - Rising 20.53.12.00 2008.07.15 - Sophos 4.31.0 2008.07.15 - Sunbelt 3.1.1536.1 2008.07.15 - Symantec 10 2008.07.15 Packed.Generic.57 TheHacker 6.2.96.379 2008.07.14 - TrendMicro 8.700.0.1004 2008.07.15 - VBA32 3.12.8.0 2008.07.15 - VirusBuster 4.5.11.0 2008.07.15 - Webwasher-Gateway 6.6.2 2008.07.15 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 150016 bytes MD5...: bef73b0a537e58404d5d9a7dd91bda42 SHA1..: b4cf1fbe43e7774bd8f921fa6f58d4dd6abe7d11 Fichier issmb2.exe reçu le 2008.07.16 12:04:28 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 13/33 (39.4%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.16.0 2008.07.16 - AntiVir 7.8.0.68 2008.07.16 TR/Vundo.Gen Authentium 5.1.0.4 2008.07.15 - Avast 4.8.1195.0 2008.07.15 - AVG 7.5.0.516 2008.07.16 Vundo.U BitDefender 7.2 2008.07.16 Trojan.Vundo.EWS CAT-QuickHeal 9.50 2008.07.15 (Suspicious) - DNAScan ClamAV 0.93.1 2008.07.16 - DrWeb 4.44.0.09170 2008.07.16 Trojan.Virtumod.based.21 eSafe 7.0.17.0 2008.07.15 Suspicious File eTrust-Vet 31.6.5959 2008.07.16 - Ewido 4.0 2008.07.15 - F-Prot 4.4.4.56 2008.07.15 - F-Secure 7.60.13501.0 2008.07.16 Trojan.Win32.Monderc.gen Fortinet 3.14.0.0 2008.07.16 - GData 2.0.7306.1023 2008.07.16 Trojan.Win32.Monderc.gen Ikarus T3.1.1.26.0 2008.07.16 - Kaspersky 7.0.0.125 2008.07.16 Trojan.Win32.Monderc.gen McAfee 5339 2008.07.15 - Microsoft 1.3704 2008.07.16 Trojan:Win32/Vundo.HT NOD32v2 3271 2008.07.16 Win32/Adware.Virtumonde.NAE Norman 5.80.02 2008.07.15 Vundo.gen192 Panda 9.0.0.4 2008.07.15 - Prevx1 V2 2008.07.16 - Rising 20.53.22.00 2008.07.16 - Sophos 4.31.0 2008.07.16 - Sunbelt 3.1.1536.1 2008.07.15 - Symantec 10 2008.07.16 - TheHacker 6.2.96.381 2008.07.16 - TrendMicro 8.700.0.1004 2008.07.16 - VBA32 3.12.8.0 2008.07.15 - VirusBuster 4.5.11.0 2008.07.15 - Webwasher-Gateway 6.6.2 2008.07.16 Trojan.Vundo.Gen Information additionnelle File size: 34816 bytes MD5...: ae1b831905c84c1a27b1100d9671c4db SHA1..: 40edaebac12eacd7747c425d44d3a5bf00129daf Fichier client-p.exe reçu le 2008.07.16 11:55:14 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 6/33 (18.19%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.16.0 2008.07.16 - AntiVir 7.8.0.68 2008.07.16 DR/Delphi.Gen Authentium 5.1.0.4 2008.07.15 - Avast 4.8.1195.0 2008.07.15 - AVG 7.5.0.516 2008.07.16 - BitDefender 7.2 2008.07.16 - CAT-QuickHeal 9.50 2008.07.15 - ClamAV 0.93.1 2008.07.16 - DrWeb 4.44.0.09170 2008.07.16 - eSafe 7.0.17.0 2008.07.15 - eTrust-Vet 31.6.5959 2008.07.16 - Ewido 4.0 2008.07.15 - F-Prot 4.4.4.56 2008.07.15 - F-Secure 7.60.13501.0 2008.07.16 - Fortinet 3.14.0.0 2008.07.16 - GData 2.0.7306.1023 2008.07.16 - Ikarus T3.1.1.26.0 2008.07.16 VirTool.Win32.Injector.D Kaspersky 7.0.0.125 2008.07.16 - McAfee 5339 2008.07.15 - Microsoft 1.3704 2008.07.16 VirTool:Win32/Injector.gen!D NOD32v2 3271 2008.07.16 a variant of Win32/Injector.BF Norman 5.80.02 2008.07.15 - Panda 9.0.0.4 2008.07.15 - Prevx1 V2 2008.07.16 - Rising 20.53.22.00 2008.07.16 - Sophos 4.31.0 2008.07.16 - Sunbelt 3.1.1536.1 2008.07.15 - Symantec 10 2008.07.16 Trojan.Dropper TheHacker 6.2.96.381 2008.07.16 - TrendMicro 8.700.0.1004 2008.07.16 - VBA32 3.12.8.0 2008.07.15 - VirusBuster 4.5.11.0 2008.07.15 - Webwasher-Gateway 6.6.2 2008.07.16 Trojan.Dropper.Delphi.Gen Information additionnelle File size: 49152 bytes MD5...: 793c724a1bc5478fc12889e6d5a81467 SHA1..: 80ee1bfe08ee08a7c395cc48ba5c98f313a90016 Complete scanning result of "abcd.exe", processed in VirusTotal at 07/16/2008 12:20:16 (CET). [ file data ] * name..: abcd.exe * size..: 52224 * md5...: 0c09564bfa14f4e4430a2484dcc1c03e * sha1..: a5cb0cfb20a79b6ac3c13a706e133dbfabe49cbb * peid..: - [ scan result ] AhnLab-V3 2008.7.16.0/20080716 found nothing AntiVir 7.8.0.68/20080716 found [DR/Delphi.Gen] Authentium 5.1.0.4/20080715 found nothing Avast 4.8.1195.0/20080715 found nothing AVG 7.5.0.516/20080716 found [Dropper.Generic.ZSP] BitDefender 7.2/20080716 found nothing CAT-QuickHeal 9.50/20080715 found nothing ClamAV 0.93.1/20080716 found nothing DrWeb 4.44.0.09170/20080716 found nothing eSafe 7.0.17.0/20080715 found nothing eTrust-Vet 31.6.5959/20080716 found nothing Ewido 4.0/20080715 found nothing F-Prot 4.4.4.56/20080715 found nothing F-Secure 7.60.13501.0/20080716 found nothing Fortinet 3.14.0.0/20080716 found nothing GData 2.0.7306.1023/20080716 found nothing Ikarus T3.1.1.26.0/20080716 found [VirTool.Win32.DelfInject.AA] Kaspersky 7.0.0.125/20080716 found nothing McAfee 5339/20080715 found nothing Microsoft 1.3704/20080716 found [VirTool:Win32/DelfInject.gen!T] NOD32v2 3271/20080716 found [a variant of Win32/Injector.BH] Norman 5.80.02/20080715 found nothing Panda 9.0.0.4/20080715 found nothing Prevx1 V2/20080716 found nothing Rising 20.53.22.00/20080716 found nothing Sophos 4.31.0/20080716 found nothing Sunbelt 3.1.1536.1/20080715 found nothing Symantec 10/20080716 found nothing TheHacker 6.2.96.381/20080716 found nothing TrendMicro 8.700.0.1004/20080716 found nothing VBA32 3.12.8.0/20080715 found nothing VirusBuster 4.5.11.0/20080715 found nothing Webwasher-Gateway 6.6.2/20080716 found [Trojan.Dropper.Delphi.Gen] Complete scanning result of "F.EXE", processed in VirusTotal at 07/16/2008 12:19:38 (CET). [ file data ] * name..: F.EXE * size..: 158208 * md5...: 1ae1c022ed14d9d59cfc275f9a51c747 * sha1..: 80cf1c62f398d789a3b757964853430f346d202d * peid..: - [ scan result ] AhnLab-V3 2008.7.16.0/20080716 found nothing AntiVir 7.8.0.68/20080716 found [DR/Delphi.Gen] Authentium 5.1.0.4/20080715 found nothing Avast 4.8.1195.0/20080715 found nothing AVG 7.5.0.516/20080716 found nothing BitDefender 7.2/20080716 found [Trojan.Inject.FW] CAT-QuickHeal 9.50/20080715 found nothing ClamAV 0.93.1/20080716 found nothing DrWeb 4.44.0.09170/20080716 found nothing eSafe 7.0.17.0/20080715 found nothing eTrust-Vet 31.6.5959/20080716 found nothing Ewido 4.0/20080715 found nothing F-Prot 4.4.4.56/20080715 found [W32/DelfInject.A.gen!Eldorado] F-Secure 7.60.13501.0/20080716 found nothing Fortinet 3.14.0.0/20080716 found nothing GData 2.0.7306.1023/20080716 found nothing Ikarus T3.1.1.26.0/20080716 found nothing Kaspersky 7.0.0.125/20080716 found nothing McAfee 5339/20080715 found nothing Microsoft 1.3704/20080716 found [VirTool:Win32/DelfInject.gen!K] NOD32v2 3271/20080716 found [a variant of Win32/Injector.U] Norman 5.80.02/20080715 found nothing Panda 9.0.0.4/20080715 found [Suspicious file] Prevx1 V2/20080716 found nothing Rising 20.53.22.00/20080716 found nothing Sophos 4.31.0/20080716 found [Mal/Behav-154] Sunbelt 3.1.1536.1/20080715 found nothing Symantec 10/20080716 found nothing TheHacker 6.2.96.381/20080716 found nothing TrendMicro 8.700.0.1004/20080716 found nothing VBA32 3.12.8.0/20080715 found nothing VirusBuster 4.5.11.0/20080715 found nothing Webwasher-Gateway 6.6.2/20080716 found [Trojan.Dropper.Delphi.Gen] Complete scanning result of "hot_video.exe", processed in VirusTotal at 07/20/2008 16:24:32 (CET). [ file data ] * name..: hot_video.exe * size..: 78848 * md5...: e5e7c25370539d67c7f11f457d219a5c * sha1..: 7d8deed65ef489f20d9836b5620f3adc5d4ea655 * peid..: - [ scan result ] AhnLab-V3 2008.7.17.0/20080718 found nothing AntiVir 7.8.1.11/20080720 found [TR/Crypt.XPACK.Gen] Authentium 5.1.0.4/20080720 found nothing Avast 4.8.1195.0/20080720 found [Win32:PrefPoly] AVG 8.0.0.130/20080719 found [Downloader.Zlob] BitDefender 7.2/20080720 found [Trojan.Downloader.Exchanger.Gen.1] CAT-QuickHeal 9.50/20080718 found [(Suspicious) - DNAScan] ClamAV 0.93.1/20080720 found [Trojan.Downloader.Exchanger.DT] DrWeb 4.44.0.09170/20080720 found nothing eSafe 7.0.17.0/20080720 found [Suspicious File] eTrust-Vet 31.6.5966/20080718 found nothing Ewido 4.0/20080720 found nothing F-Prot 4.4.4.56/20080720 found nothing F-Secure 7.60.13501.0/20080720 found nothing Fortinet 3.14.0.0/20080720 found [PossibleThreat] GData 2.0.7306.1023/20080720 found [Trojan-Downloader.Win32.Exchanger.fj] Ikarus T3.1.1.34.0/20080720 found [Trojan-Downloader.Exchanger.Gen.1] Kaspersky 7.0.0.125/20080720 found [Trojan-Downloader.Win32.Exchanger.fj] McAfee 5342/20080718 found nothing Microsoft 1.3704/20080720 found [TrojanDropper:Win32/Nuwar.gen!ldt] NOD32v2 3282/20080719 found nothing Norman 5.80.02/20080718 found nothing Panda 9.0.0.4/20080720 found nothing Prevx1 V2/20080720 found nothing Rising 20.53.62.00/20080720 found nothing Sophos 4.31.0/20080720 found [Mal/EncPk-DA] Sunbelt 3.1.1536.1/20080718 found nothing Symantec 10/20080720 found [Trojan.Pandex] TheHacker 6.2.96.385/20080719 found nothing TrendMicro 8.700.0.1004/20080718 found nothing VBA32 3.12.8.1/20080720 found nothing VirusBuster 4.5.11.0/20080719 found [Trojan.DL.Exchanger.AO] Webwasher-Gateway 6.6.2/20080720 found [Trojan.Crypt.XPACK.Gen] Complete scanning result of "m1.exe", processed in VirusTotal at 07/25/2008 12:31:49 (CET). [ file data ] * name..: m1.exe * size..: 21504 * md5...: 240b66d79527fc0a583a24f7bfd799a6 * sha1..: 74757de39b87cefa80697507e6a9d57e2c44fa40 * peid..: Armadillo v1.71 [ scan result ] AhnLab-V3 2008.7.25.1/20080725 found nothing AntiVir 7.8.1.12/20080725 found [TR/Downloader.Gen] Authentium 5.1.0.4/20080724 found [W32/Heuristic-257!Eldorado] Avast 4.8.1195.0/20080725 found [Win32:Rootkit-gen] AVG 8.0.0.130/20080725 found [Generic10.BHQW] BitDefender 7.2/20080725 found [Trojan.Crypt.DA] CAT-QuickHeal 9.50/20080724 found nothing ClamAV 0.93.1/20080725 found nothing DrWeb 4.44.0.09170/20080725 found [Trojan.DownLoad.3186] eSafe 7.0.17.0/20080724 found nothing eTrust-Vet 31.6.5980/20080724 found nothing Ewido 4.0/20080724 found nothing F-Prot 4.4.4.56/20080724 found [W32/Heuristic-257!Eldorado] Fortinet 3.14.0.0/20080725 found [PossibleThreat] GData 2.0.7306.1023/20080725 found [Win32:Rootkit-gen] Ikarus T3.1.1.34.0/20080725 found [Trojan.Crypt.DA] Kaspersky 7.0.0.125/20080725 found [Heur.Trojan.Generic] McAfee 5346/20080724 found nothing Microsoft 1.3704/20080724 found nothing NOD32v2 3298/20080725 found [probably unknown NewHeur_PE virus] Norman 5.80.02/20080724 found nothing Panda 9.0.0.4/20080724 found [Suspicious file] PCTools 4.4.2.0/20080724 found nothing Prevx1 V2/20080725 found nothing Rising 20.54.42.00/20080725 found nothing Sophos 4.31.0/20080725 found nothing Sunbelt 3.1.1536.1/20080718 found nothing Symantec 10/20080725 found nothing TheHacker 6.2.96.389/20080725 found nothing TrendMicro 8.700.0.1004/20080725 found [TROJ_BHQW.D] VBA32 3.12.8.1/20080724 found nothing ViRobot 2008.7.25.1310/20080725 found nothing VirusBuster 4.5.11.0/20080724 found nothing Webwasher-Gateway 6.6.2/20080725 found [Trojan.Downloader.Gen] Fichier is16.exe reçu le 2008.07.26 11:30:02 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 9/35 (25.72%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.26.0 2008.07.25 - AntiVir 7.8.1.12 2008.07.25 - Authentium 5.1.0.4 2008.07.26 - Avast 4.8.1195.0 2008.07.25 - AVG 8.0.0.130 2008.07.25 SHeur.BYPL BitDefender 7.2 2008.07.26 - CAT-QuickHeal 9.50 2008.07.25 (Suspicious) - DNAScan ClamAV 0.93.1 2008.07.26 - DrWeb 4.44.0.09170 2008.07.26 - eSafe 7.0.17.0 2008.07.24 Suspicious File eTrust-Vet 31.6.5983 2008.07.26 - Ewido 4.0 2008.07.26 - F-Prot 4.4.4.56 2008.07.25 - F-Secure 7.60.13501.0 2008.07.26 Trojan:W32/Agent.FPP Fortinet 3.14.0.0 2008.07.26 - GData 2.0.7306.1023 2008.07.26 - Ikarus T3.1.1.34.0 2008.07.26 - Kaspersky 7.0.0.125 2008.07.26 - McAfee 5347 2008.07.25 - Microsoft 1.3704 2008.07.26 Trojan:Win32/Conhook.I NOD32v2 3300 2008.07.25 - Norman 5.80.02 2008.07.25 - Panda 9.0.0.4 2008.07.25 Suspicious file PCTools 4.4.2.0 2008.07.25 - Prevx1 V2 2008.07.26 - Rising 20.54.51.00 2008.07.26 - Sophos 4.31.0 2008.07.26 - Sunbelt 3.1.1536.1 2008.07.25 - Symantec 10 2008.07.26 Trojan.Vundo TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.26 PAK_Generic.001 VBA32 3.12.8.1 2008.07.25 - ViRobot 2008.7.26.1311 2008.07.26 - VirusBuster 4.5.11.0 2008.07.25 - Webwasher-Gateway 6.6.2 2008.07.26 Virus.Win32.FileInfector.gen (suspicious) Information additionnelle File size: 57344 bytes MD5...: 94f17bdf42a41f67738e64f24d052c8e SHA1..: f300fdf5cb2d174d64de9176b43fdd540d011373 Fichier Skra.exe reçu le 2008.07.27 17:47:25 (CET) Situation actuelle: terminé Résultat: 6/35 (17.14%) Formaté Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 - - - AntiVir - - TR/Proxy.Gen Authentium - - - Avast - - - AVG - - - BitDefender - - - CAT-QuickHeal - - - ClamAV - - - DrWeb - - - eSafe - - - eTrust-Vet - - - Ewido - - - F-Prot - - - F-Secure - - - Fortinet - - - GData - - - Ikarus - - Trojan-Proxy Kaspersky - - Heur.Trojan.Generic McAfee - - - Microsoft - - TrojanClicker:Win32/Goweles.A NOD32v2 - - - Norman - - - Panda - - - PCTools - - - Prevx1 - - - Rising - - - Sophos - - Mal/Generic-A Sunbelt - - - Symantec - - - TheHacker - - - TrendMicro - - - VBA32 - - - ViRobot - - - VirusBuster - - - Webwasher-Gateway - - Trojan.Proxy.Gen Information additionnelle MD5: 54a8047a92492d8a7660973deb426804 SHA1: 47bf4ca4b6a777ce1e0f5e61f531e7f925d17137 File svchosts.exe received on 07.28.2008 17:59:52 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 12/35 (34.29%) Loading server information... Antivirus Version Last Update Result AhnLab-V3 2008.7.26.0 2008.07.28 - AntiVir 7.8.1.12 2008.07.28 TR/Spy.ZBot.dlw Authentium 5.1.0.4 2008.07.28 - Avast 4.8.1195.0 2008.07.28 Win32:Rootkit-gen AVG 8.0.0.130 2008.07.28 PSW.Generic6.UQM BitDefender 7.2 2008.07.28 - CAT-QuickHeal 9.50 2008.07.28 TrojanSpy.Zbot.dlw ClamAV 0.93.1 2008.07.28 - DrWeb 4.44.0.09170 2008.07.28 - eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5989 2008.07.28 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 W32/Zbot.I.gen!Eldorado F-Secure 7.60.13501.0 2008.07.28 Trojan-Spy.Win32.Zbot.dlw Fortinet 3.14.0.0 2008.07.26 - GData 2.0.7306.1023 2008.07.28 Trojan-Spy.Win32.Zbot.dlw Ikarus T3.1.1.34.0 2008.07.28 Trojan-Spy.Win32.Zbot.dlw Kaspersky 7.0.0.125 2008.07.28 Trojan-Spy.Win32.Zbot.dlw McAfee 5347 2008.07.25 - Microsoft 1.3704 2008.07.28 - NOD32v2 3303 2008.07.28 - Norman 5.80.02 2008.07.28 W32/Smalltroj.FPWO Panda 9.0.0.4 2008.07.28 Suspicious file PCTools 4.4.2.0 2008.07.28 - Prevx1 V2 2008.07.28 - Rising 20.55.02.00 2008.07.28 - Sophos 4.31.0 2008.07.28 - Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.28 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.28 - VBA32 3.12.8.1 2008.07.28 - ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.28 Trojan.Spy.ZBot.dlw Additional information File size: 53760 bytes MD5...: b4ef11781e60fb95d5ad609954b737c3 SHA1..: e5f5d51beedef211740c24e57075d0f3049b98c1 Fichier services.exe reçu le 2008.07.28 18:03:32 (CET) Situation actuelle: terminé Résultat: 7/35 (20.00%) Formaté Formaté Impression des résultats Impression des résultats Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.26.0 2008.07.28 - AntiVir 7.8.1.12 2008.07.28 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.07.28 - Avast 4.8.1195.0 2008.07.28 - AVG 8.0.0.130 2008.07.28 Generic_r.E BitDefender 7.2 2008.07.28 - CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.28 - DrWeb 4.44.0.09170 2008.07.28 Trojan.Packed.573 eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5989 2008.07.28 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.28 - Fortinet 3.14.0.0 2008.07.26 - GData 2.0.7306.1023 2008.07.28 - Ikarus T3.1.1.34.0 2008.07.28 - Kaspersky 7.0.0.125 2008.07.28 - McAfee 5347 2008.07.25 - Microsoft 1.3704 2008.07.28 - NOD32v2 3303 2008.07.28 a variant of Win32/TrojanDropper.Small.NHU Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 - PCTools 4.4.2.0 2008.07.28 - Prevx1 V2 2008.07.28 - Rising 20.55.02.00 2008.07.28 - Sophos 4.31.0 2008.07.28 Mal/TibsPk-F Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.28 Packed.Generic.57 TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.28 - VBA32 3.12.8.1 2008.07.28 - ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.28 Trojan.Crypt.XPACK.Gen Information additionnelle File size: 42496 bytes MD5...: d42b07daf6c3800e2b31943eb711a5aa SHA1..: 1400ceca3547dcc09ef79cf12d65720361fa53a7 File winupdt.exe received on 07.28.2008 18:24:46 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED -èResult: 6/35 (17.15%) Loading server information... Antivirus Version Last Update Result AhnLab-V3 2008.7.26.0 2008.07.28 - AntiVir 7.8.1.12 2008.07.28 TR/Crypt.ULPM.Gen Authentium 5.1.0.4 2008.07.28 - Avast 4.8.1195.0 2008.07.28 - AVG 8.0.0.130 2008.07.28 - BitDefender 7.2 2008.07.28 Trojan.Crypt.EE CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.28 - DrWeb 4.44.0.09170 2008.07.28 - eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5983 2008.07.26 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.28 - Fortinet 3.14.0.0 2008.07.26 - GData 2.0.7306.1023 2008.07.28 - Ikarus T3.1.1.34.0 2008.07.28 Trojan.Crypt.EE Kaspersky 7.0.0.125 2008.07.28 - McAfee 5347 2008.07.25 - Microsoft 1.3704 2008.07.28 - NOD32v2 3303 2008.07.28 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 Suspicious file PCTools 4.4.2.0 2008.07.28 - Prevx1 V2 2008.07.28 - Rising 20.55.02.00 2008.07.28 - Sophos 4.31.0 2008.07.28 - Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.28 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.28 PAK_Generic.001 VBA32 3.12.8.1 2008.07.28 - ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.28 Trojan.Crypt.ULPM.Gen Additional information File size: 9728 bytes MD5...: 26e43b95ebebd315cf521965c88e61d8 SHA1..: 0459f1804da7a3f41d1843295398aa90f1293660 File irptp.sys received on 07.29.2008 08:42:19 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 16/35 (45.72%) Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.28 TR/Rootkit.Gen Authentium 5.1.0.4 2008.07.29 W32/Goldun.gen3 Avast 4.8.1195.0 2008.07.28 Win32:Agent-ZFQ AVG 8.0.0.130 2008.07.28 - BitDefender 7.2 2008.07.29 - CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 Trojan.NtRootKit.1347 eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5991 2008.07.29 Win32/ProcHide!generic Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 W32/Goldun.gen3 F-Secure 7.60.13501.0 2008.07.29 Rootkit.Win32.Agent.bri Fortinet 3.14.0.0 2008.07.29 PossibleThreat GData 2.0.7306.1023 2008.07.29 Rootkit.Win32.Agent.bri Ikarus T3.1.1.34.0 2008.07.29 Backdoor.Win32.Agent.fpj Kaspersky 7.0.0.125 2008.07.29 Rootkit.Win32.Agent.bri McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 Backdoor:Win32/Haxdoor NOD32v2 3305 2008.07.29 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 - PCTools 4.4.2.0 2008.07.29 Rootkit.Agent!sd6 Prevx1 V2 2008.07.29 - Rising 20.55.10.00 2008.07.29 - Sophos 4.31.0 2008.07.29 Mal/Generic-A Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.28 Rootkit.Win32.Agent.bri ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Rootkit.Gen Additional information File size: 8592 bytes MD5...: 922c9d01d49aca67987a0eda1b247a87 SHA1..: 68ee6659ca566113dc310c5869103d829ea68e6a File windUm3zl.exe received on 07.29.2008 08:45:59 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 12/35 (34.29%) Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.28 TR/Crypt.XPACK.Gen Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.28 Win32:Trojan-gen {Other} AVG 8.0.0.130 2008.07.28 Win32/Heur BitDefender 7.2 2008.07.29 - CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 - eSafe 7.0.17.0 2008.07.28 Suspicious File eTrust-Vet 31.6.5991 2008.07.29 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 Suspicious:W32/Malware!Gemini Fortinet 3.14.0.0 2008.07.29 - GData 2.0.7306.1023 2008.07.29 Win32:Trojan-gen Ikarus T3.1.1.34.0 2008.07.29 Trojan.Crypt.XPACK Kaspersky 7.0.0.125 2008.07.29 - McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 - NOD32v2 3305 2008.07.29 - Norman 5.80.02 2008.07.28 W32/Smalltroj.FPQH Panda 9.0.0.4 2008.07.28 - PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 - Rising 20.55.10.00 2008.07.29 - Sophos 4.31.0 2008.07.29 Mal/EncPk-CO Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 PAK_Generic.001 VBA32 3.12.8.1 2008.07.28 suspected of Malware-Cryptor.Win32.General.2 ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Crypt.XPACK.Gen Additional information File size: 34167 bytes MD5...: 713ce2a2017bcb752f11614e1c10c1ee SHA1..: d0f17f77d4c6722c8368766a3f98e2e6f7b598f5 File 153.tmp received on 07.29.2008 08:58:29 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 8/35 (22.86%) Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.28 - Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.28 - AVG 8.0.0.130 2008.07.28 Crypt.NM BitDefender 7.2 2008.07.29 Trojan.Dropper.SET CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 Trojan.Packed.579 eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5991 2008.07.29 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 - Fortinet 3.14.0.0 2008.07.29 - GData 2.0.7306.1023 2008.07.29 Backdoor.Win32.Sinowal.kb Ikarus T3.1.1.34.0 2008.07.29 PWS.Win32.Sinowal.L Kaspersky 7.0.0.125 2008.07.29 Backdoor.Win32.Sinowal.kb McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 PWS:Win32/Sinowal.gen!L NOD32v2 3305 2008.07.29 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 - PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 - Rising 20.55.11.00 2008.07.29 - Sophos 4.31.0 2008.07.29 - Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.28 Backdoor.Win32.Sinowal.ht ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 - Additional information File size: 241448 bytes MD5...: 380b85c7885b960bfdb0c9ea58d1e496 SHA1..: 9e4bb8c915317adca918dec2b6430a005eec6339 File _tmp74.exe received on 07.29.2008 09:03:37 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 5/34 (14.71%) Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.28 DR/Delphi.Gen Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.28 - AVG 8.0.0.130 2008.07.28 Win32/Heur BitDefender 7.2 2008.07.29 - CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 - eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5991 2008.07.29 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 - Fortinet 3.14.0.0 2008.07.29 - GData 2.0.7306.1023 2008.07.29 - Ikarus T3.1.1.34.0 2008.07.29 Downloader.Delphi Kaspersky 7.0.0.125 2008.07.29 - McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 VirTool:Win32/DelfInject.gen!AM NOD32v2 3305 2008.07.29 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 - PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 - Rising 20.55.11.00 2008.07.29 - Sophos 4.31.0 2008.07.29 - Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.28 - ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Dropper.Delphi.Gen Additional information File size: 27648 bytes MD5...: 154bc36fb0d5af96297dd069c3071d8c SHA1..: 78c76db5c5db043217ddd544f2e3c403f3be038d File flyz1w.exe received on 07.29.2008 10:28:24 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 7/35 (20%) Loading server information... Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.29 - Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.28 - AVG 8.0.0.130 2008.07.28 Win32/Heur BitDefender 7.2 2008.07.29 Trojan.Dropper.Cutwail.V CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 Trojan.DownLoad.2077 eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5991 2008.07.29 - Ewido 4.0 2008.07.28 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 - Fortinet 3.14.0.0 2008.07.29 - GData 2.0.7306.1023 2008.07.29 Trojan-Downloader.Win32.Mutant.ase Ikarus T3.1.1.34.0 2008.07.29 Trojan-Dropper.Cutwail.V Kaspersky 7.0.0.125 2008.07.29 Trojan-Downloader.Win32.Mutant.ase McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 - NOD32v2 3305 2008.07.29 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 - PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 Cloaked Malware Rising 20.55.11.00 2008.07.29 - Sophos 4.31.0 2008.07.29 - Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.28 - ViRobot 2008.7.26.1311 2008.07.28 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 - Additional information File size: 15360 bytes MD5...: 23a1525b39f0d41f2ac23fb3c0effb53 SHA1..: d37797ad2389e5f2d8a91a2176f4510a1aa51a8e File shell32.dll received on 07.29.2008 14:36:55 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 10/35 (28.58%) Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.29 TR/Inject.eiy Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.29 - AVG 8.0.0.130 2008.07.29 - BitDefender 7.2 2008.07.29 - CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 - eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5992 2008.07.29 - Ewido 4.0 2008.07.29 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 Trojan.Win32.Inject.eiy Fortinet 3.14.0.0 2008.07.29 - GData 2.0.7306.1023 2008.07.29 Trojan.Win32.Inject.eiy Ikarus T3.1.1.34.0 2008.07.29 Trojan.Win32.Inject.efy Kaspersky 7.0.0.125 2008.07.29 Trojan.Win32.Inject.eiy McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 - NOD32v2 3306 2008.07.29 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 Suspicious file PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 Suspicious Rising 20.55.12.00 2008.07.29 - Sophos 4.31.0 2008.07.29 - Sunbelt 3.1.1536.1 2008.07.28 Trojan.Win32.Inject.ab Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.29 suspected of Win32 Shadow Socket Open ViRobot 2008.7.29.1315 2008.07.29 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Inject.eiy Additional information File size: 5120 bytes MD5...: b8880447285a758e5a65002c1af53bda SHA1..: 369473ffb5f8df01e8592980e4a9ffd7fb4ea8f6 File msdefender.exe received on 07.29.2008 14:40:11 (CET) Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED Result: 14/35 (40%) Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.29 HEUR/Malware Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.29 Win32:Rootkit-gen AVG 8.0.0.130 2008.07.29 Dropper.Small.29.AX BitDefender 7.2 2008.07.29 - CAT-QuickHeal 9.50 2008.07.28 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 DLOADER.Trojan eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5992 2008.07.29 - Ewido 4.0 2008.07.29 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 Rootkit.V.dropper Fortinet 3.14.0.0 2008.07.29 PossibleThreat GData 2.0.7306.1023 2008.07.29 Win32:Trojan-gen Ikarus T3.1.1.34.0 2008.07.29 Virus.Win32.Trojan Kaspersky 7.0.0.125 2008.07.29 - McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 - NOD32v2 3306 2008.07.29 - Norman 5.80.02 2008.07.28 W32/Malware.DIHP Panda 9.0.0.4 2008.07.28 Suspicious file PCTools 4.4.2.0 2008.07.29 Rootkit.Dropper.V Prevx1 V2 2008.07.29 Malware Dropper Rising 20.55.12.00 2008.07.29 - Sophos 4.31.0 2008.07.29 Sus/UnkPacker Sunbelt 3.1.1536.1 2008.07.28 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.29 - ViRobot 2008.7.29.1315 2008.07.29 - VirusBuster 4.5.11.0 2008.07.28 - Webwasher-Gateway 6.6.2 2008.07.29 Heuristic.Malware Additional information File size: 176130 bytes MD5...: 32597da5ed418db6385357141e64fc56 SHA1..: dc669f62294a29b0bb295c007f396299de87aafc Fichier 21824.exe reçu le 2008.07.29 18:43:44 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 10/35 (28.58%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.29 TR/Crypt.ULPM.Gen Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.29 Win32:Trojan-gen {Other} AVG 8.0.0.130 2008.07.29 - BitDefender 7.2 2008.07.29 Trojan.Crypt.EE CAT-QuickHeal 9.50 2008.07.29 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 - eSafe 7.0.17.0 2008.07.28 - eTrust-Vet 31.6.5992 2008.07.29 - Ewido 4.0 2008.07.29 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 - Fortinet 3.14.0.0 2008.07.29 PossibleThreat GData 2.0.7306.1023 2008.07.29 Win32:Trojan-gen Ikarus T3.1.1.34.0 2008.07.29 Trojan.Crypt.EE Kaspersky 7.0.0.125 2008.07.29 Trojan.Win32.Agent.kkp McAfee 5348 2008.07.28 - Microsoft 1.3704 2008.07.28 - NOD32v2 3307 2008.07.29 - Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.28 Suspicious file PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 - Rising 20.55.12.00 2008.07.29 - Sophos 4.31.0 2008.07.29 - Sunbelt 3.1.1537.1 2008.07.29 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 PAK_Generic.001 VBA32 3.12.8.1 2008.07.29 - ViRobot 2008.7.29.1315 2008.07.29 - VirusBuster 4.5.11.0 2008.07.29 - Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Crypt.ULPM.Gen Information additionnelle File size: 11776 bytes MD5...: 232911b936784fdd135c2c4bcc0dfb4b SHA1..: 69d7461e57febbd6a4a47a74d49343c86c936d52 Fichier wmcodec_update.exe reçu le 2008.07.29 22:19:36 (CET) Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE Résultat: 11/35 (31.43%) Antivirus Version Dernière mise à jour Résultat AhnLab-V3 2008.7.29.1 2008.07.29 - AntiVir 7.8.1.12 2008.07.29 DR/Dldr.Small.ZGZ.3 Authentium 5.1.0.4 2008.07.29 - Avast 4.8.1195.0 2008.07.29 - AVG 8.0.0.130 2008.07.29 Downloader.Generic7.ACGW BitDefender 7.2 2008.07.29 Trojan.Zlob.CQW CAT-QuickHeal 9.50 2008.07.29 - ClamAV 0.93.1 2008.07.29 - DrWeb 4.44.0.09170 2008.07.29 - eSafe 7.0.17.0 2008.07.29 - eTrust-Vet 31.6.5992 2008.07.29 - Ewido 4.0 2008.07.29 - F-Prot 4.4.4.56 2008.07.28 - F-Secure 7.60.13501.0 2008.07.29 Trojan-Downloader.Win32.Small.zio Fortinet 3.14.0.0 2008.07.29 - GData 2.0.7306.1023 2008.07.29 Trojan-Downloader.Win32.Small.zgz Ikarus T3.1.1.34.0 2008.07.29 Virus.Trojan.Win32.BHO.egw Kaspersky 7.0.0.125 2008.07.29 Trojan-Downloader.Win32.Small.zgz McAfee 5349 2008.07.29 - Microsoft 1.3704 2008.07.28 Trojan:Win32/Zlob.AR NOD32v2 3308 2008.07.29 Win32/TrojanDownloader.FakeAlert.FB Norman 5.80.02 2008.07.28 - Panda 9.0.0.4 2008.07.29 - PCTools 4.4.2.0 2008.07.29 - Prevx1 V2 2008.07.29 Malware Dropper Rising 20.55.12.00 2008.07.29 - Sophos 4.31.0 2008.07.29 - Sunbelt 3.1.1537.1 2008.07.29 - Symantec 10 2008.07.29 - TheHacker 6.2.96.389 2008.07.25 - TrendMicro 8.700.0.1004 2008.07.29 - VBA32 3.12.8.1 2008.07.29 - ViRobot 2008.7.29.1315 2008.07.29 - VirusBuster 4.5.11.0 2008.07.29 - Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Dropper.Dldr.Small.ZGZ.3 Information additionnelle File size: 263246 bytes MD5...: efd63fd3a630f9dee9415729fa7c7015 SHA1..: 4b46c4fcfeabf8ee37960750c07005051dfff1ec File xkf1cb.exe received on 07.29.2008 18:29:39 (CET) Current status: finished Result: 10/35 (28.57%) Compact Print results Antivirus Version Last Update Result AhnLab-V3 2008.7.29.1