filename hash malware signature
bar a58db1b00a4f93d3147b940d0baeaca8 W32/Malware NO_VIRUS
bar 6b213bdf7da54ff4f0380404d5df49f5 W32/Malware Gobot.A
asn.exe b5199fae9773d6db6e803c7bb5c6f837 W32/Spybot.gen3 W32/Pinfi.A
bar 381d60b5bf76e751aa02039d16f0d1b7 W32/Malware W32/Bobax.gen
bar 84fcfceeef182bcee56e245a26d2e260 W32/Malware W32/SDBot.ALM
FireWall-Update1.exe 44b4d8abd4fc1ce3fa011c98a069724e Not detected by sandbox NO_VIRUS
SVCHOSTE.EXE 6c7b64402537dcd4976770ef5382a636 Not detected by sandbox W32/Spybot.XAI
bar 421d8dafade3738ddebd43b92622f212 W32/Gaobot.gen W32/Gaobot.SN
bar 3fcaaeca724562162464e89619fb9e10 Not detected by sandbox W32/Gael.A
4 44cdb469c172bb8042d6e6013e3161e2 W32/Gaobot.gen W32/Suspicious_M.gen
xxxxxxxx 1ccec7cfdaa5a3baaa6db36f3a59e7b5 Not detected by sandbox NO_VIRUS
resource32w.exe b3bdc88b8c508923f446366a1f1b874a W32/Spybot.gen6 W32/Pinfi.A
mcafee.exe d6310bbb2b706bf9f93b6deea36999aa Not detected by sandbox NO_VIRUS
xxxxxxxx 6d6abd5ff41cf6cb679141efc547d4f7 Not detected by sandbox W32/Pinfi.A
7184_up.exe e5e731429a948ddd4651d18d220d6f1b W32/Sasser.gen Sasser.D
x.exe 10ca89c59efe14675b0a6f006dce257a W32/Malware W32/Pinfi.A
index.html 14308f724938081949f0ccf625b9e3b2 W32/Malware Korgo.J
x.exe bcb4447cd8f58ffe1269c8c16071ae50 W32/Malware Korgo.AA
service.exe be803e87e419ad753a4eef39953af6a6 W32/Spybot.gen3 W32/Spybot.TAH
SVCHOSTE.EXE 99ef50382b079d067a5850cc58c878c2 W32/Malware W32/Spybot.XAI
x.exe c1c50636987976a284357e27547337ab W32/Malware Korgo.U
index.html 6577a35cf2a8ef56928163cc059ff9ef Not detected by sandbox NO_VIRUS
bar f856638791ac4a2176c14f757864d3ef W32/Malware Gobot.A
bar dab26d126471a5b2d3f9547c75f750d2 W32/Malware Gobot.A
explorer.pif 03ff754f20f1e2db1bbcc71c507c4f3e Not detected by sandbox W32/Pinfi.A
16738_upload.exe cc2355bd2d9bde8ac7fb6f585254f42b Not detected by sandbox Sasser.E
4 524c63fb157a5b3f88bf1aa683ddd813 Not detected by sandbox NO_VIRUS
msnxpsp.exe a2f858df63e1d038f26d3e787040e29a W32/Spybot.gen7 W32/Spybot.XGU
x.exe 0c78be4560b158684b3661f36e97cf7c W32/Malware W32/Pinfi.A
SVCHOSTE.EXE 590d73cd84e6c183e2f0da8c112310fc Not detected by sandbox NO_VIRUS
x.exe bc3e2bb76dc8f3eeecea95eba7ac066f Not detected by sandbox W32/Gael.A
bar 745f14b62b2ab44eed301dd3e817c0a6 Not detected by sandbox Gobot.A
mswind32.pif 621a381654cb602a51e4eb83e413b384 Not detected by sandbox NO_VIRUS
mswind32.pif b47b3bbbc8ff18cc94aecc9c03e6940d Not detected by sandbox NO_VIRUS
mswind32.pif 057c7962710f42bfaadfe0c532ac2b8a Not detected by sandbox NO_VIRUS
mswind32.pif af3b3d0c1a8964f430331600576e9ca1 Not detected by sandbox NO_VIRUS
x.exe ed81f9fcd439e29fc070fa512877d965 W32/Malware W32/Bobax.gen
bar 4bff2b088b650030500e9a8904ce2fbe W32/Malware W32/SDBot.IZD
bar 910b53d6742f1c6b448f2037de2bbb94 W32/Malware W32/SDBot.IZE
asn.exe 844452c34d434004541a33bf19082e7b Not detected by sandbox W32/Codbot.BM
4 303b28664be7ccd1ce6e6f4608500b21 W32/Gaobot.gen W32/Gaobot.DQX
bar 1b947550266ef2df81cce42e5465150b W32/Gaobot.gen W32/HLLW.Gaobot.FJ
bar 17a686dda59cd48ed3c90035e28875db W32/Gaobot.gen Gaobot.GU
x.exe 625566f28f469131aa26ebf01979a0c9 W32/Malware Korgo.Z
bar 5a3cdd45fe65d3be5f5ff761430fef6d W32/Malware W32/SDBot.IZM
javams32.exe b604c6678048aecb3cc5a4218ee0b05d Not detected by sandbox W32/Smalldrp.ENP
bar 4d1eaf7c80f32bb90050f3d203305d49 W32/Malware W32/SDBot.ALM
mswind32.pif 725bbae5463b423e1461af04e50f466c Not detected by sandbox NO_VIRUS
mswind32.pif 38aa6c6ecb6181b2f3ab4bc5a218c540 Not detected by sandbox NO_VIRUS
CWM32.dll.exe 256619822229625c4db0fd323c20d94c W32/Spybot.gen2 NO_VIRUS
bar c8bac553bead4273c0149c0d3b4e2fce W32/Malware W32/SDBot.ALM
bar 28a2acb76bdb016669944a33f30a57e7 W32/Gaobot.gen W32/HLLW.Gaobot.FJ
bar 5cedc043b35a0ebcd81eeae3bc349226 W32/Gaobot.gen W32/HLLW.Gaobot.FJ
lsd b47790a26ea520bf5aeecbd73760f279 Not detected by sandbox NO_VIRUS
lsd 02880dceebe984d88a47661b00f2bbae Not detected by sandbox NO_VIRUS
FireWall-Update1.exe f442ac314e5d84859f96e30386ed7414 W32/Malware W32/Bobax.gen
bar a1726a13bf8c5f90a538e096867ce1fd W32/Malware NO_VIRUS
redy.exe c26467d1ec866a51a855778679afae9b W32/Spybot.gen6 NO_VIRUS
redy.exe 2afa882a79bb6cf2ae15702764325d58 W32/Spybot.gen6 NO_VIRUS
msnxpsp.exe 26fdca1117865b9811cb61e6f4c6027a W32/Spybot.gen7 W32/Spybot.XAL
x.exe ba65cad9d2182bb54f37ce395485d592 W32/Malware W32/Pinfi.A
x.exe 57f22ea1ea375c7e73e3dcf6f4c29242 Not detected by sandbox W32/Pinfi.A
x.exe cb9458d8983d67184674d851661a4f37 Not detected by sandbox W32/Pinfi.A
svc32.pif ef42ede99d5ac95c973b40d449c41864 Not detected by sandbox NO_VIRUS
schedsvc32.exe 23d172a1e46678e6156c479c68af32d7 Not detected by sandbox NO_VIRUS
WinPatrol.exe 0c6c853efa1b40cb53dfd1e764e04280 W32/Spybot.gen4 NO_VIRUS
redy.exe 077397ff13378166719f07c18e8aa3e7 W32/Spybot.gen6 NO_VIRUS
msnxpsp.exe 0c0ea41db74893fafb7578d5f0e55a10 W32/Spybot.gen7 W32/Spybot.XAL
x.exe ab7926c04cdbbd153f874da70ad43882 W32/Malware W32/Pinfi.A
x.exe c8890baa65c869c915dee84f50d8ed21 W32/Malware Korgo.V
x.exe 74ea8da7b3bd67b9e8e899bfc05d6a0b Not detected by sandbox W32/Bobax.gen
x.exe 6ca0dc93ba4e0fe86c7c3c8ded8afdeb W32/Malware Korgo.V
bar 5ccbd44eb57329117fdb0c488dbb5fc2 W32/Gaobot.gen Gaobot.GU
4 4aac0e586b5728fb3036babd0b20d946 W32/Gaobot.gen W32/Gaobot.BTL
x.exe c9d126896d6db398f87623cfe66a0137 W32/Malware W32/Bobax.gen
bar 3af2b248f69685c70c158929c81e95d3 W32/Malware W32/SDBot.IZD
x.exe f2167a85a687e1f06e694af7f8f34f41 W32/Malware W32/Pinfi.B
x.exe 9b59deefc7d3995d77dceaf61d12eea3 W32/Malware Korgo.Z
eraseme_82583.exe 17ff64636711a004ec6e89700ccf1d3a Not detected by sandbox W32/Suspicious_M.gen
x.exe fada869abf6a9f9d7fdb162075e42828 W32/Malware Korgo.V
svc32.pif d97ef87d5f9a120c52fec8de919bb157 Not detected by sandbox NO_VIRUS
bar 7ff671de51464b7b14542bba97a63105 W32/Malware W32/SDBot.ALM
x.exe 71586acb8993d1bd560e77a9ca361ffc W32/Malware W32/Pinfi.A
javams32.exe aec8cd463b33584be429499300d03e85 Not detected by sandbox W32/Smalldrp.ENP
NeroFilterCheck.EXE 5cdb957e77fcba6f3c902819bc2937eb W32/Malware W32/Suspicious_M.gen
WinUpdater.exe a7e51fdb49d284905bb9762b89c19518 W32/Spybot.gen6 W32/Suspicious_M.gen
CWM32.dll.exe e395e0c7172ce836fb6a9e84870b9f8f W32/Spybot.gen2 NO_VIRUS
bar e775222621bcc8e2efb2a89a5daad4da Not detected by sandbox W32/Gael.A
CWM32.dll.exe 4e43287dd6413458ed38c8192c57297a W32/Spybot.gen2 NO_VIRUS
NeroFilterCheck.EXE 03814c313d34e6b9e028b9b31c4c386e W32/Malware W32/Suspicious_M.gen
x.exe 3127d4491d7d36f5b246a4f3d8528483 W32/Malware W32/Bobax.gen
bar 0a0ac44d58565b06a5b1200dcb8bffed Not detected by sandbox Gobot.A
x.exe d31f37c45eaa0791b5588290cb9e0988 W32/Malware W32/Pinfi.A
x.exe fbb1958b6d26ac6f5b95e7d2c3fbc9d6 Not detected by sandbox W32/Gael.A
bar fe155b3097e8695aba6a486c356b4932 W32/Malware W32/SDBot.ALM
CWM32.dll.exe 5566e98a4ae534b3e0c47cb8b655cc35 W32/Spybot.gen2 NO_VIRUS
bot.exe a102a9536b7817949aad5da9c8b9cbc5 W32/Malware NO_VIRUS
CWM32.dll.exe 638e9fb5fffd6670a519c36b537bca93 Not detected by sandbox NO_VIRUS
x.exe 1dceac5145ce75ccb84110a5c1a580ce W32/Malware W32/Bobax.gen
bar 043763316fe651760ecc919a02aeb4c6 W32/Malware NO_VIRUS
bar eb8ad8df556872f094be0950ae5ae6b0 W32/Malware Gobot.S
lsd 12a951400aaacb8d8868593c7f1569ff Not detected by sandbox NO_VIRUS
bar c2a148c5f81c7125d0d820111be1bb84 W32/Malware Gobot.A
bar a0d1b1f01240856fe0ac971b160c1761 W32/Malware W32/SDBot.IZM
index.html 4b1633a998c057d045c6eb1da71acb22 W32/Malware Korgo.L
index.html c88bc1175132d790611bcb4d6bf7c331 W32/Malware Korgo.L
x.exe 8be63306605ebbbb24cd984e7086aab6 Not detected by sandbox NO_VIRUS
x.exe edd0948d4c5513c45fa908de731e1460 W32/Malware Korgo.V
x.exe f0e6bab2e1179db042366e82de07e9a8 W32/Malware W32/Pinfi.A
x.exe b1a62972fd7e7f8af98612db29d40199 Not detected by sandbox W32/Pinfi.A
x.exe 5ab7fba24b5cc86dadf13c978c5c0753 Not detected by sandbox W32/Pinfi.A
x.exe 188e816f7ae1424e73182065cf12400b Not detected by sandbox W32/Pinfi.A
x.exe c0cc322c85fb709db924545bfd4b3b3a Not detected by sandbox W32/Pinfi.A
bar 083d5f8e0b60c07206efd8127790a609 W32/Malware W32/Gobot.A
CWM32.dll.exe 1751956f53350128977b9fef73ee0d84 W32/Spybot.gen2 NO_VIRUS
x.exe 22a1d65dc961e4387762170297b410d7 W32/Malware W32/Pinfi.A
x.exe 73aa6397cdfe25cbc24b433fb55278c8 Not detected by sandbox NO_VIRUS
x.exe eda5d3f59f969a9121e76aa6012e41c7 W32/Malware W32/Pinfi.A
bar 54c4fdb724739438c20b741ef48b3883 Not detected by sandbox Gobot.A
setup_16464.exe 259c1e73180016d680aecdd5c38a0dab Not detected by sandbox NO_VIRUS
viri-check.exe ed6b5b68d1d3d8aa466aa112dd655a19 W32/Spybot.gen3 W32/SDBot.SQY
CWM32.dll.exe 9d30bb6bdb4c017210dfc14cc37e00ad W32/Spybot.gen2 NO_VIRUS
CWM32.dll.exe 5b9f800accb0b3eeb25c9ad0c618b293 Not detected by sandbox NO_VIRUS
bar 5d602ad49f3014208e94881b00c734c5 W32/Malware W32/SDBot.IZD
bar a45aadf7791172580bc51947c81c4717 Not detected by sandbox W32/Gael.A
4 3f1d0b05eb4b533e49aaaa30441a8d10 Not detected by sandbox NO_VIRUS
svch32.pif 4b72c37a30fda4db4281b0e45aafc595 Not detected by sandbox NO_VIRUS
svch32.pif 91ef59383e7ed58bf27cf54950129524 Not detected by sandbox NO_VIRUS
bar 7146c0382b4904f2cba7767d9152eb49 W32/Gaobot.gen W32/Gaobot.ATI
svch32.pif 99e1265498b51462a3ae112d69ed59fc Not detected by sandbox NO_VIRUS
runs.pif b2972da497a22a0e867273be0e13324e Not detected by sandbox W32/Codbot.BP
svch32.pif 2774a6c2dc67a777eec34b728e802cb2 Not detected by sandbox NO_VIRUS
svch32.pif 8a53c1043cc4dd4d21831f7ff00389a0 Not detected by sandbox NO_VIRUS
bar 511e55c39c1cc1517fb7a25c1bf0dec2 W32/Malware W32/Pinfi.B
svch32.pif d6013a37f95e23a291e901c28e619df6 Not detected by sandbox NO_VIRUS
eraseme_41522.exe c54e4d80533990fdd7061e1c058cb1a7 Not detected by sandbox W32/SDBot.TNW
CWM32.dll.exe 2d6eab548d03dec514e5868fd6c24400 W32/Spybot.gen2 NO_VIRUS
x.exe ebf9ac5ce6096f55193fe7fa00d64f9b W32/Malware W32/Pinfi.A
bar b492ca332389b6ed167b42334d8b24f0 W32/Malware Gobot.A
x.exe 9b82db348904475c1566b627608fcc1d W32/Malware Korgo.U
5500_up.exe 5736c352a32f2f4d614a4242ef964af9 W32/Sasser.gen W32/Pinfi.A
bar e56432a559dd55c2f41f6ae9a6894213 Not detected by sandbox W32/Gael.A
svch32.pif 147e976e58c2840752b5cff61caa1d7b Not detected by sandbox NO_VIRUS
bar 854c4fdda702bec2451516885af67275 W32/Malware W32/Gobot.Y
bar dfffea13ed5a936ae1a1e25661d350a0 W32/Gaobot.gen W32/Pinfi.B
WinSync32.exe 8e86c3a0a7ad2e92765e251fd82cfeba W32/Spybot.gen3 W32/Suspicious_M.gen
bar 532beffe56a9854cca656700fd280a59 W32/Malware W32/Gobot.A
MSAOL32dll.exe 7de6c4140b0700c12ad4efabec64efdf Not detected by sandbox W32/Spybot.XRU
bar 29fd6f882be4859aa4114d8a7114c0ff W32/Malware W32/SDBot.IZL
up32.pif 92ec7ec032b0182a616cd6362abcbe48 Not detected by sandbox W32/Spybot.WTQ
up32.pif 6cc429a821ddccd4425e19714cb03d0a Not detected by sandbox W32/Spybot.WTQ
up32.pif 1753358e7cd8c8dcb1ad597beb52f894 Not detected by sandbox W32/Spybot.WTQ
up32.pif 50ee52a55a960355b52567065570192d Not detected by sandbox W32/Spybot.WTQ
up32.pif d03f25ed1b37d23848deb09585d85b39 Not detected by sandbox W32/Spybot.WTQ
up32.pif 64be58a86425292a98a9f6d871932bb4 Not detected by sandbox W32/Spybot.WTQ
msnwindows.exe 1170d3f7966d1e375069381122190d4c W32/Spybot.gen3 NO_VIRUS
4 c8fa7f305677f0e19ae1bd499b6e0269 W32/Gaobot.gen W32/Gaobot.AOA
index.html d25c7b393a07f8ddf09721c24d5bf577 W32/Malware Korgo.I
x.exe 5573a841758621b76d58d75286d2471b W32/Malware W32/Bobax.gen
bar 8fe67610592802bf79244d75a9d02525 Not detected by sandbox Gobot.A
msnwindows.exe db907da6a4fb9c09853621001467af99 W32/Spybot.gen3 NO_VIRUS
hhs.pif 7b091004b1335900e3590448e41a443b Not detected by sandbox NO_VIRUS
bar 5f820ef5e631fb0c5ca62314c70aad37 W32/Malware Gobot.S
9814_upload.exe 533c98277c299379a8a7850133d4c2ed W32/Sasser.gen Sasser.E
bar 6ee593625a66735a7b211eb1a4db22ae W32/Malware NO_VIRUS
eraseme_34756.exe e772e36c86698d3166cfe9311220332c Not detected by sandbox NO_VIRUS
bar d456e9b41f4655110e652e506ad82d5d W32/Malware W32/SDBot.ALM
x.exe b2a997ee73c9006d806dbdc0b9ca3f8d W32/Malware W32/Bobax.gen
msnxpexe.exe 0653c568bf39b5f39f8ee2243f958290 W32/Spybot.gen3 NO_VIRUS
bar cbe000db5bfa30eda1133e5d3e47c927 W32/Gaobot.gen W32/Gaobot.BNB
xxxxxxxx 94044de029164cd0125f96cfe10ba495 Not detected by sandbox W32/Pinfi.A
MSAOL32dll.exe e5cac52cd7d66679f38b85f8a17b24b6 W32/Spybot.gen2 W32/Pinfi.A
bar e39384d17d0a1fac64aa6b91755191ab W32/Malware W32/Gobot.T
norten.pif 92cb2497879745175eb69747c0569c86 W32/Spybot.gen6 NO_VIRUS
SVCHOSTE.EXE 662aa805033bc28fd29f6f696131723e W32/Codbot.gen W32/Codbot.AY
bar 93a3c8d9d7cf2a140d85f64f58fec479 W32/Malware Gobot.A
norten.pif b4a2aa96f248a1fe5c642c57e939a792 W32/Spybot.gen6 NO_VIRUS
bot.exe c76f50a1b7d98b8337dd11368a8c1639 Not detected by sandbox W32/Bobax.gen
bar 62d7f590fec227b5748dc5d24d99b5ab Not detected by sandbox Gobot.A
x.exe ba7f545c04298eb8af98b1ab0e18a32e Not detected by sandbox Korgo.V
pload.exe 5c6cffb4af116f7242e7c5892d3604cf Not detected by sandbox NO_VIRUS
xxxxxxxx fa1de6f3a14afbebf3767252691b5793 Not detected by sandbox W32/Pinfi.A
SVCHOSTE.EXE ccdef4ef97fddeafc1df75379e8d2602 Not detected by sandbox W32/Poebot.J
bar 22ed7cb3aaf14baa239b6be6d511f2bf W32/Gaobot.gen W32/HLLW.Gaobot.FJ
bar 8290033ab1a320ff513f6dfea6cefc17 W32/Malware Gobot.A
25394_upload.exe 20b4ec7aaf7584e2d192f3840e4853d5 W32/Sasser.gen Sasser.E
29307_upload.exe b9dd41604a58982808096ad2082a810e Not detected by sandbox Sasser.E
expl0rer.pif 8d37eac15d7f9f99ccc9d8db42f0a37e Not detected by sandbox W32/Spybot.UNX
bar 00ee965471a86cde44f2f30fad5e931d W32/Malware Gobot.A
bar 252cbdff6929ea89cc8ede1dd41a4b0a Not detected by sandbox W32/Pinfi.A
winupd.exe e84fd6bd4baa7faa0da486277809ff14 W32/Malware NO_VIRUS
SVCHOSTE.EXE 46d06b3c0b922b37b21407f3320bacc7 W32/Malware W32/Spybot.XAI
4 c8287631c38f03cbaaf204e341f6a40b Not detected by sandbox W32/Gaobot.ALM
bar 21094b9dffbdc82125994286d7bd49e0 W32/Malware NO_VIRUS
winupd.exe fe3a61b8c123fc8b565ed2b533fdf82e W32/Malware NO_VIRUS
NeroFilterCheck.EXE 8deb0ee3397740a7a4e3ac0933e9bf04 Not detected by sandbox W32/Poebot.AN
winupdmon.exe 807617592353c4073c03b522c4dba221 Not detected by sandbox NO_VIRUS
AsnFtpd.exe e6e7fd8c69729fd4b88279fcaf112ef0 Not detected by sandbox NO_VIRUS
section.exe ae0ad33ee91b7235913d41ebe3e5b7c3 W32/Codbot.gen W32/SDBot.RSX
4 4993569d66411f3d5b38ddca35c49179 W32/Gaobot.gen (Signature: W32/Sus W32/Suspicious_M.gen

 
analysis/norman_al.txt · Last modified: 2006/03/05 20:14
 
Recent changes RSS feed Creative Commons License Donate Powered by PHP Valid XHTML 1.0 Valid CSS Driven by DokuWiki