nuevas muestras de malware Swisyn que nos llegan para analizar
Ya controladas por el ELISTARA actual, recibimos nuevas muestras de esta famiulia SWISYN:
File name: login.exe
Submission date: 2011-02-28 10:44:37 (UTC)
Current status: queued (#8) queued (#8) analysing finished
Result: 24/ 43 (55.8%)
VT Community
malware
Safety score: 0.0%
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.02.28.01 2011.02.28 –
AntiVir 7.11.3.242 2011.02.28 –
Antiy-AVL 2.0.3.7 2011.02.28 Trojan/Win32.Swisyn.gen
Avast 4.8.1351.0 2011.02.23 Win32:Malware-gen
Avast5 5.0.677.0 2011.02.23 Win32:Malware-gen
AVG 10.0.0.1190 2011.02.27 Generic17.BUCZ
BitDefender 7.2 2011.02.28 Trojan.AutoRun.VB.O
CAT-QuickHeal 11.00 2011.02.28 –
ClamAV 0.96.4.0 2011.02.27 –
Commtouch 5.2.11.5 2011.02.28 W32/MalwareS.BHEY
Comodo 7828 2011.02.28 –
DrWeb 5.0.2.03300 2011.02.28 –
Emsisoft 5.1.0.2 2011.02.28 Trojan.Win32.Swisyn!IK
eSafe 7.0.17.0 2011.02.27 –
eTrust-Vet 36.1.8187 2011.02.28 –
F-Prot 4.6.2.117 2011.02.27 W32/MalwareS.BHEY
F-Secure 9.0.16160.0 2011.02.28 Trojan.AutoRun.VB.O
Fortinet 4.2.254.0 2011.02.28 –
GData 21 2011.02.28 Trojan.AutoRun.VB.O
Ikarus T3.1.1.97.0 2011.02.28 Trojan.Win32.Swisyn
Jiangmin 13.0.900 2011.02.28 Trojan/Swisyn.ieh
K7AntiVirus 9.90.3967 2011.02.25 Riskware
Kaspersky 7.0.0.125 2011.02.28 Trojan.Win32.Swisyn.aech
McAfee 5.400.0.1158 2011.02.28 Suspect-BQ!6166FE69A3C7
McAfee-GW-Edition 2010.1C 2011.02.28 –
Microsoft 1.6603 2011.02.28 Worm:Win32/Autorun.ABM
NOD32 5913 2011.02.28 Win32/AutoRun.VB.OL
Norman 6.07.03 2011.02.27 –
nProtect 2011-02-10.01 2011.02.15 –
Panda 10.0.3.5 2011.02.27 Trj/CI.A
PCTools 7.0.3.5 2011.02.28 Malware.SillyDC!rem
Prevx 3.0 2011.02.28 High Risk Cloaked Malware
Rising 23.47.00.03 2011.02.28 –
Sophos 4.61.0 2011.02.28 Mal/Behav-789
SUPERAntiSpyware 4.40.0.1006 2011.02.28 –
Symantec 20101.3.0.103 2011.02.28 W32.SillyDC
TheHacker 6.7.0.1.140 2011.02.28 –
TrendMicro 9.200.0.1012 2011.02.28 Possible_Otorun8
TrendMicro-HouseCall 9.200.0.1012 2011.02.28 Possible_Otorun8
VBA32 3.12.14.3 2011.02.28 –
VIPRE 8561 2011.02.28 –
ViRobot 2011.2.28.4333 2011.02.28 –
VirusBuster 13.6.225.2 2011.02.27 –
Additional informationShow all
MD5 : 6166fe69a3c7338974dcd5ac4ad261b8
SHA1 : a544524e96cc52022a0c4c9a8fdebf651023571a
File size : 409610 bytes
________________________
File name: smss.exe
Submission date: 2011-02-28 10:50:54 (UTC)
Current status: queued queued analysing finished
Result: 23/ 43 (53.5%)
VT Community
malware
Safety score: 0.0%
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.02.28.01 2011.02.28 –
AntiVir 7.11.3.242 2011.02.28 –
Antiy-AVL 2.0.3.7 2011.02.28 Trojan/Win32.Swisyn.gen
Avast 4.8.1351.0 2011.02.23 Win32:Malware-gen
Avast5 5.0.677.0 2011.02.23 Win32:Malware-gen
AVG 10.0.0.1190 2011.02.28 Generic17.BUCZ
BitDefender 7.2 2011.02.28 Trojan.AutoRun.VB.O
CAT-QuickHeal 11.00 2011.02.28 –
ClamAV 0.96.4.0 2011.02.27 –
Commtouch 5.2.11.5 2011.02.28 W32/MalwareS.BHEY
Comodo 7828 2011.02.28 –
DrWeb 5.0.2.03300 2011.02.28 –
Emsisoft 5.1.0.2 2011.02.28 Trojan.Win32.Swisyn!IK
eSafe 7.0.17.0 2011.02.27 –
eTrust-Vet 36.1.8187 2011.02.28 –
F-Prot 4.6.2.117 2011.02.27 W32/MalwareS.BHEY
F-Secure 9.0.16160.0 2011.02.28 Trojan.AutoRun.VB.O
Fortinet 4.2.254.0 2011.02.28 –
GData 21 2011.02.28 Trojan.AutoRun.VB.O
Ikarus T3.1.1.97.0 2011.02.28 Trojan.Win32.Swisyn
Jiangmin 13.0.900 2011.02.28 Trojan/Swisyn.ieh
K7AntiVirus 9.90.3967 2011.02.25 Riskware
Kaspersky 7.0.0.125 2011.02.28 Trojan.Win32.Swisyn.aech
McAfee 5.400.0.1158 2011.02.28 Suspect-BQ!6166FE69A3C7
McAfee-GW-Edition 2010.1C 2011.02.28 –
Microsoft 1.6603 2011.02.28 Worm:Win32/Autorun.ABM
NOD32 5913 2011.02.28 Win32/AutoRun.VB.OL
Norman 6.07.03 2011.02.27 –
nProtect 2011-02-10.01 2011.02.15 –
Panda 10.0.3.5 2011.02.27 Trj/CI.A
PCTools 7.0.3.5 2011.02.28 Malware.SillyDC!rem
Prevx 3.0 2011.02.28 –
Rising 23.47.00.03 2011.02.28 –
Sophos 4.61.0 2011.02.28 Mal/Behav-789
SUPERAntiSpyware 4.40.0.1006 2011.02.28 –
Symantec 20101.3.0.103 2011.02.28 W32.SillyDC
TheHacker 6.7.0.1.140 2011.02.28 –
TrendMicro 9.200.0.1012 2011.02.28 Possible_Otorun8
TrendMicro-HouseCall 9.200.0.1012 2011.02.28 Possible_Otorun8
VBA32 3.12.14.3 2011.02.28 –
VIPRE 8561 2011.02.28 –
ViRobot 2011.2.28.4333 2011.02.28 –
VirusBuster 13.6.225.2 2011.02.27 –
Additional informationShow all
MD5 : 6166fe69a3c7338974dcd5ac4ad261b8
SHA1 : a544524e96cc52022a0c4c9a8fdebf651023571a
File size : 409610 bytes
________________________
File name: super-setup.gxe
Submission date: 2010-11-22 12:17:26 (UTC)
Current status: finished
Result: 21 /43 (48.8%)
VT Community
not reviewed
Safety score: –
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2010.11.21.01 2010.11.21 –
AntiVir 7.10.14.56 2010.11.21 –
Antiy-AVL 2.0.3.7 2010.11.22 Trojan/Win32.Swisyn.gen
Avast 4.8.1351.0 2010.11.21 Win32:Malware-gen
Avast5 5.0.594.0 2010.11.21 Win32:Malware-gen
AVG 9.0.0.851 2010.11.21 Generic17.BUCZ
BitDefender 7.2 2010.11.22 Trojan.AutoRun.VB.O
CAT-QuickHeal 11.00 2010.11.09 –
ClamAV 0.96.4.0 2010.11.21 –
Command 5.2.11.5 2010.11.21 W32/MalwareS.BHEY
Comodo 6802 2010.11.22 –
DrWeb 5.0.2.03300 2010.11.22 –
Emsisoft 5.0.0.50 2010.11.22 –
eSafe 7.0.17.0 2010.11.21 –
eTrust-Vet 36.1.7992 2010.11.22 –
F-Prot 4.6.2.117 2010.11.21 W32/MalwareS.BHEY
F-Secure 9.0.16160.0 2010.11.22 Trojan.AutoRun.VB.O
Fortinet 4.2.254.0 2010.11.20 –
GData 21 2010.11.22 Trojan.AutoRun.VB.O
Ikarus T3.1.1.90.0 2010.11.22 –
Jiangmin 13.0.900 2010.11.20 Trojan/Swisyn.ieh
K7AntiVirus 9.68.3041 2010.11.20 Riskware
Kaspersky 7.0.0.125 2010.11.22 Trojan.Win32.Swisyn.aech
McAfee 5.400.0.1158 2010.11.22 Suspect-BQ!59D7BC6F632A
McAfee-GW-Edition 2010.1C 2010.11.22 –
Microsoft 1.6402 2010.11.22 –
NOD32 5637 2010.11.21 Win32/AutoRun.VB.OL
Norman 6.06.10 2010.11.21 –
nProtect 2010-11-22.01 2010.11.22 Trojan.AutoRun.VB.O
Panda 10.0.2.7 2010.11.21 Suspicious file
PCTools 7.0.3.5 2010.11.22 Malware.SillyDC!rem
Prevx 3.0 2010.11.22 High Risk Cloaked Malware
Rising 22.74.06.03 2010.11.22 –
Sophos 4.59.0 2010.11.22 –
SUPERAntiSpyware 4.40.0.1006 2010.11.22 –
Symantec 20101.2.0.161 2010.11.22 W32.SillyDC
TheHacker 6.7.0.1.087 2010.11.20 –
TrendMicro 9.120.0.1004 2010.11.22 Possible_Otorun8
TrendMicro-HouseCall 9.120.0.1004 2010.11.22 Possible_Otorun8
VBA32 3.12.14.2 2010.11.19 –
VIPRE 7376 2010.11.22 –
ViRobot 2010.11.20.4158 2010.11.22 –
VirusBuster 13.6.52.1 2010.11.21 –
Additional informationShow all
MD5 : 59d7bc6f632a48000fec308e8d0ae7c2
SHA1 : 19a31f321b21da8e5c3f0f23eba8addba6158cf5
File size : 409610 bytes
________________________
File name: SMSS.EXE
Submission date: 2010-11-22 12:20:39 (UTC)
Current status: finished
Result: 20 /42 (47.6%)
VT Community
not reviewed
Safety score: –
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2010.11.21.01 2010.11.21 –
AntiVir 7.10.14.56 2010.11.21 –
Antiy-AVL 2.0.3.7 2010.11.22 Trojan/Win32.Swisyn.gen
Avast 4.8.1351.0 2010.11.21 Win32:Malware-gen
Avast5 5.0.594.0 2010.11.21 Win32:Malware-gen
AVG 9.0.0.851 2010.11.21 Generic17.BUCZ
BitDefender 7.2 2010.11.22 Trojan.AutoRun.VB.O
CAT-QuickHeal 11.00 2010.11.09 –
ClamAV 0.96.4.0 2010.11.21 –
Command 5.2.11.5 2010.11.21 W32/MalwareS.BHEY
Comodo 6802 2010.11.22 –
DrWeb 5.0.2.03300 2010.11.22 –
Emsisoft 5.0.0.50 2010.11.22 –
eSafe 7.0.17.0 2010.11.21 –
eTrust-Vet 36.1.7992 2010.11.22 –
F-Prot 4.6.2.117 2010.11.21 W32/MalwareS.BHEY
F-Secure 9.0.16160.0 2010.11.22 Trojan.AutoRun.VB.O
Fortinet 4.2.254.0 2010.11.20 –
GData 21 2010.11.22 Trojan.AutoRun.VB.O
Ikarus T3.1.1.90.0 2010.11.22 –
Jiangmin 13.0.900 2010.11.20 Trojan/Swisyn.ieh
K7AntiVirus 9.68.3041 2010.11.20 Riskware
Kaspersky 7.0.0.125 2010.11.22 Trojan.Win32.Swisyn.aech
McAfee 5.400.0.1158 2010.11.22 Suspect-BQ!0C84166B9F7F
McAfee-GW-Edition 2010.1C 2010.11.22 –
Microsoft 1.6402 2010.11.22 –
NOD32 5637 2010.11.21 Win32/AutoRun.VB.OL
Norman 6.06.10 2010.11.21 –
nProtect 2010-11-22.01 2010.11.22 Trojan.AutoRun.VB.O
PCTools 7.0.3.5 2010.11.22 Malware.SillyDC!rem
Prevx 3.0 2010.11.22 High Risk Cloaked Malware
Rising 22.74.06.03 2010.11.22 –
Sophos 4.59.0 2010.11.22 –
SUPERAntiSpyware 4.40.0.1006 2010.11.22 –
Symantec 20101.2.0.161 2010.11.22 W32.SillyDC
TheHacker 6.7.0.1.087 2010.11.20 –
TrendMicro 9.120.0.1004 2010.11.22 Possible_Otorun8
TrendMicro-HouseCall 9.120.0.1004 2010.11.22 Possible_Otorun8
VBA32 3.12.14.2 2010.11.19 –
VIPRE 7376 2010.11.22 –
ViRobot 2010.11.20.4158 2010.11.22 –
VirusBuster 13.6.52.1 2010.11.21 –
Additional informationShow all
MD5 : 0c84166b9f7f8a7599b4c16a90f2ae05
SHA1 : 60e99c18d39d9d4d27dc4d079d7d60689a63c5be
File size : 409610 bytes
________________________
Todos ellos controlados y eliminados por la actual version del ELISTARA 22.70 existente en nuestra web
saludos
ms, 28-2-2011
NOTA: Los interesados en información sobre contrato de soporte Asistencia Tecnica de SATINFO y/o licencia de uso/actualizaciones de sus utilidades, contacten con info@satinfo.es
__________
Este blog no se hace responsable de las opiniones y comentarios de los textos en los que se cita la Fuente, ofreciendo su contenido solo para facilitar el acceso a la información del mismo.
Puedes seguir cualquier respuesta a esta entrada mediante el canal RSS 2.0. Los comentarios y los pings están cerrados.
Los comentarios están cerrados.