Clicky

Pages

Tuesday, February 16, 2010

Malware links (ESET NOD32 virus names)

  •  Mar 5 hxxp://www.sciences-po.org/ contains HTML/ScrInject.B.Gen virus.
  • Feb 24 hxxp://www.raktor.net/exeHelper/exeHelper.com contains probably a variant of Win32/Agent trojan.
  •  Feb 18 hxxp://www1.fast-pc-scanner.in/build6_258.php?cmd=sendFile&counter=1&p=p52dcWppcF/Cj8bYboNuilik12qYVp/Zatrau4FdlJ/JnsWYeHpfqKygdZ6SYJjHZ2dil2lviqDWkaTboKCViaJ0WKrO1c+eb1qfnaSZdV/XlsndblaWpG9rnFuTYGCUXpmSlGprWKjKx6Chpqipbmdjr7DYW8vVoJeZmWCb05qRo5XHn8bMopmjb5vTh8Smom+coKGZpq2ek83YlpacrF+Zio7PoGvYmdah0qOeYKPU28ylnpVeZ3mZpma2gImZcp+TmpubzY7OVpHTnZ7M1m6xc4iLwtCpbaV2oZmmo2TYjtbKXKWbWpOl1GjDoW3MU8TR02yYo5+iyJZfk6Gpb6eldV/VoKGXY2ZjaGRrlV6WVqTZX6CVlWdtZmiYkpRtWJeccY2H contains a variant of Win32/Kryptik.CLM trojan
  • Feb. 16 hxxtp://google.analytics.com.zelhnalbivd.info/kav/kav3 .asp/eHbcb9bc6cV0100f070006R111090bf102Tf7c2bdef201l0409K80667147318J130204010 contains a variant of Win32/Kryptik.CKT trojan.
  • Feb 15 hxxp://www.usakpedia.com/default.asp contains JS/TrojanDownloader.Agent.NSA
========================================================
  • Feb. 05 hxxp://klaikius.com/news/index.php contains JS/Exploit.Agent.AGC trojan.
  • Feb. 05  hxxp://arra.servehttp.com/nc.jar contains multiple threats. 
  • Feb. 05 hxxp://yvuxksuk.cn/10/andEthics.jar contains probably a variant of Java/TrojanDownloader.Agent.AB trojan.
  •   hxxp://yvuxksuk.cn/10/exactPointMiddle.pdf contains JS/Exploit.Pdfka.NRF trojan. 
  • Feb. 5 hxxp://klaikius.com/news/index.php contains JS/Exploit.Agent.AGC trojan.
  • Feb. 5 hxxp://huliganseres.net//pdf.php contains JS/Exploit.Pdfka.NQQ trojan.
  • Feb. 5 hxxp://www.cald.org/site/js/ddaccordion.js contains JS/TrojanDownloader.Agent.NRO trojan.
  • Feb. 5 hxxp://www.drr.gov.bd/ contains JS/TrojanDownloader.Agent.NRL trojan.
  • Feb. 5  hxxp://www.reflecttass.com.br/unicor/MailboxMicrosoft09328.zip contains a variant of Win32/TrojanDownloader.Banload.OEL trojan.
  •  =============================
  • hxxp://google.analytics.com.jvoamkvyxv.info/nte/avorp1kav1.html/oU230d9c2eHbcb9bc6cV0100f070006R8bbc0d14102Tf7d8079a201l0409Kdbd3cfa3317 contains JS/Exploit.Pdfka.ASD trojan.
  • hxxp://www.cald.org/site/js/jquery-1.js contains JS/TrojanDownloader.Agent.NRO trojan.
  •  hxxp://ww2.millages.net/pqothqzoetqopww/xd/pdf.pdf contains PDF/Exploit.Gen trojan.
  •   hxxp://eiypqcionpdv.com/nte/avorp1kav1.php/oU230d9c2eHbcb9bc6cV03007f35002Re5e732c2102Tf7e6c576Q00000000901801F00000000J11000601l0409K7044875f317  -contains JS/Exploit.Pdfka.ASD trojan.
  •   hxxp://ditrnbibarsp.com/kav/KAV1.php/oHbcb9bc6cV0100f070006Rf129df8a102Tf7e753eb201l0409K9395be4b317 contains JS/Exploit.Pdfka.ASD trojan.
  •  hxxp://google.com.analytics.qehtsmuqcun.com/nte/trest11/oHbcb9bc6cV0100f070006Rac213110102Tf7e428df201l0409K0dedc3c0317 contains JS/Exploit.Pdfka.ASD trojan.
  •  hxxp://www.marines.cc/data.js contains JS/TrojanDownloader.Agent.NRK trojan.
  •    hxxp://www.reflecttass.com.br/unicor/MailboxMicrosoft09328.zip contains a variant of Win32/TrojanDownloader.Banload.OEL trojan.
  •   hxxp://www.drr.gov.bd/ contains JS/TrojanDownloader.Agent.NRL trojan
  •   hxxp://google.com.analytics.gfjpoiqgcun.com/nte/TREST11.py/oHbcb9bc6cV0100f070006Rac213110102Tf7ec50ba201l0409K848c964d317 contains JS/Exploit.Pdfka.ASD trojan
  •  hxxp://www.deaf-video.de/3c55ea9320fcadfabb79d08f91bef510/.a1/pdf.php contains PDF/Exploit.Pidief.OJS.Gen trojan   (manual[1].pdf)
   

No comments:

Post a Comment