Variantes de ONLINE GAMES que pasamos a controlar con el ELISTARA
Nuevas variantes de este conocido troyano, cuyo control ha sido im,pleentado a partir del ELISTARA 24.15 de hoy.
Los preanalisis con Virustotal han ofrecido estos informes:
File name: APIQQ0.DLL.Muestra EliStartPage v24.13
Submission date: 2011-10-25 12:35:27 (UTC)
Result: 33/ 43 (76.7%)
VT Community
not reviewed
Safety score: –
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.10.24.01 2011.10.24 Win-Trojan/MalPackedD.suspicious
AntiVir 7.11.16.138 2011.10.25 TR/Crypt.ASPM.Gen
Antiy-AVL 2.0.3.7 2011.10.25 Trojan/Win32.Small.gen
Avast 6.0.1289.0 2011.10.25 Win32:Malware-gen
AVG 10.0.0.1190 2011.10.25 Generic2_c.BUII
BitDefender 7.2 2011.10.25 Trojan.Generic.4725038
ByteHero 1.0.0.1 2011.09.23 –
CAT-QuickHeal 11.00 2011.10.25 –
ClamAV 0.97.3.0 2011.10.25 PUA.Packed.ASPack
Commtouch 5.3.2.6 2011.10.25 W32/MalwareF.VTQG
Comodo 10549 2011.10.25 UnclassifiedMalware
DrWeb 5.0.2.03300 2011.10.25 Trojan.PWS.Wsgame.12824
Emsisoft 5.1.0.11 2011.10.25 Trojan-Dropper.Win32.Small!IK
eSafe 7.0.17.0 2011.10.24 –
eTrust-Vet 36.1.8638 2011.10.25 –
F-Prot 4.6.5.141 2011.10.25 W32/MalwareF.VTQG
F-Secure 9.0.16440.0 2011.10.25 Trojan.Generic.4725038
Fortinet 4.3.370.0 2011.10.25 –
GData 22 2011.10.25 Trojan.Generic.4725038
Ikarus T3.1.1.107.0 2011.10.25 Trojan-Dropper.Win32.Small
Jiangmin 13.0.900 2011.10.24 TrojanDropper.Small.fax
K7AntiVirus 9.116.5334 2011.10.24 Riskware
Kaspersky 9.0.0.837 2011.10.25 Packed.Win32.Klone.bq
McAfee 5.400.0.1158 2011.10.25 Artemis!63E035647802
McAfee-GW-Edition 2010.1D 2011.10.25 Artemis!63E035647802
Microsoft 1.7801 2011.10.25 PWS:Win32/Frethog.gen!G
NOD32 6572 2011.10.25 a variant of Win32/PSW.OnLineGames.PPA
Norman 6.07.13 2011.10.25 W32/Suspicious_Gen2.EVWTC
nProtect 2011-10-25.01 2011.10.25 Trojan/W32.Agent.98304.XJ
Panda 10.0.3.5 2011.10.25 Trj/Small.SDL
PCTools 8.0.0.5 2011.10.25 Trojan.Gen
Prevx 3.0 2011.10.25 –
Rising 23.81.01.03 2011.10.25 –
Sophos 4.70.0 2011.10.25 Mal/Generic-L
SUPERAntiSpyware 4.40.0.1006 2011.10.25 –
Symantec 20111.2.0.82 2011.10.25 Trojan.Gen
TheHacker 6.7.0.1.331 2011.10.25 Trojan/Dropper.Small.fyo
TrendMicro 9.500.0.1008 2011.10.25 Mal_OLGM-41
TrendMicro-HouseCall 9.500.0.1008 2011.10.25 Mal_OLGM-41
VBA32 3.12.16.4 2011.10.25 –
VIPRE 10870 2011.10.25 Packed.Win32.Taterf.a (v)
ViRobot 2011.10.25.4737 2011.10.25 –
VirusBuster 14.1.28.0 2011.10.24 Trojan.DR.Small!GD09FjnNARI
Additional informationShow all
MD5 : 63e0356478024f4d0dcb708cae9e39da
SHA1 : 1bfc9da7f4f3b511f0a6517dd710901954e6f8f9
File size : 98304 bytes
_________
File name: ARKING0.DLL.Muestra EliStartPage v24.13
Submission date: 2011-10-25 12:40:35 (UTC)
Current status: finished
Result: 23 /43 (53.5%)
VT Community
not reviewed
Safety score: –
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.10.13.00 2011.10.13 Trojan/Win32.Gen
AntiVir 7.11.15.252 2011.10.13 TR/Crypt.ZPACK.Gen
Antiy-AVL 2.0.3.7 2011.10.13 –
Avast 6.0.1289.0 2011.10.13 Win32:Rootkit-gen [Rtk]
AVG 10.0.0.1190 2011.10.13 Win32/Heur
BitDefender 7.2 2011.10.13 Gen:Variant.Taterf.20
ByteHero 1.0.0.1 2011.09.23 –
CAT-QuickHeal 11.00 2011.10.13 –
ClamAV 0.97.0.0 2011.10.13 PUA.Packed.ASPack
Commtouch 5.3.2.6 2011.10.13 W32/Taterf.A!Eldorado
Comodo 10440 2011.10.13 –
DrWeb 5.0.2.03300 2011.10.12 –
Emsisoft 5.1.0.11 2011.10.13 Trojan-GameThief.Win32.Magania!IK
eSafe 7.0.17.0 2011.10.11 –
eTrust-Vet 36.1.8617 2011.10.13 Win32/Frethog.D!Generic
F-Prot 4.6.5.141 2011.10.13 W32/Taterf.A!Eldorado
F-Secure 9.0.16440.0 2011.10.13 Gen:Variant.Taterf.20
Fortinet 4.3.370.0 2011.10.13 –
GData 22 2011.10.13 Gen:Variant.Taterf.20
Ikarus T3.1.1.107.0 2011.10.13 Trojan-GameThief.Win32.Magania
Jiangmin 13.0.900 2011.10.12 –
K7AntiVirus 9.115.5278 2011.10.13 Riskware
Kaspersky 9.0.0.837 2011.10.13 –
McAfee 5.400.0.1158 2011.10.13 Generic BackDoor.bfr!m
McAfee-GW-Edition 2010.1D 2011.10.13 Heuristic.LooksLike.Win32.Suspicious.C
Microsoft 1.7702 2011.10.13 PWS:Win32/Frethog.F
NOD32 6541 2011.10.13 a variant of Win32/PSW.OnLineGames.PUY
Norman 6.07.11 2011.10.13 –
nProtect 2011-10-13.01 2011.10.13 Gen:Variant.Taterf.20
Panda 10.0.3.5 2011.10.13 Trj/CI.A
PCTools 8.0.0.5 2011.10.13 Trojan.Gen
Prevx 3.0 2011.10.16 –
Rising 23.79.03.02 2011.10.13 –
Sophos 4.70.0 2011.10.13 Troj/Virtum-Gen
SUPERAntiSpyware 4.40.0.1006 2011.10.13 –
Symantec 20111.2.0.82 2011.10.13 Trojan.Gen
TheHacker 6.7.0.1.322 2011.10.13 –
TrendMicro 9.500.0.1008 2011.10.13 –
TrendMicro-HouseCall 9.500.0.1008 2011.10.13 –
VBA32 3.12.16.4 2011.10.13 –
VIPRE 10749 2011.10.13 –
ViRobot 2011.10.13.4717 2011.10.13 –
VirusBuster 14.1.11.0 2011.10.13 –
Additional informationShow all
MD5 : 848c5cc6bec24dba2311c59390e9a260
SHA1 : 8075879e533031fad4ee5944801136998a097b27
File size : 115288 bytes
______
File name: ARKING1.DLL.Muestra EliStartPage v24.13
Submission date: 2011-10-25 12:38:15 (UTC)
Result: 29/ 43 (67.4%)
VT Community
malware
Safety score: 0.0%
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.10.24.01 2011.10.24 Trojan/Win32.Gen
AntiVir 7.11.16.138 2011.10.25 TR/Crypt.ZPACK.Gen
Antiy-AVL 2.0.3.7 2011.10.25 Trojan/win32.agent
Avast 6.0.1289.0 2011.10.25 Win32:Rootkit-gen [Rtk]
AVG 10.0.0.1190 2011.10.25 Win32/Heur
BitDefender 7.2 2011.10.25 Gen:Variant.Taterf.20
ByteHero 1.0.0.1 2011.09.23 –
CAT-QuickHeal 11.00 2011.10.25 –
ClamAV 0.97.3.0 2011.10.25 PUA.Packed.ASPack
Commtouch 5.3.2.6 2011.10.25 W32/Taterf.A!Eldorado
Comodo 10549 2011.10.25 UnclassifiedMalware
DrWeb 5.0.2.03300 2011.10.25 Trojan.PWS.Gamania.32659
Emsisoft 5.1.0.11 2011.10.25 Trojan-GameThief.Win32.Magania!IK
eSafe 7.0.17.0 2011.10.24 Win32.Trojan
eTrust-Vet 36.1.8638 2011.10.25 Win32/Frethog.D!Generic
F-Prot 4.6.5.141 2011.10.25 W32/Taterf.A!Eldorado
F-Secure 9.0.16440.0 2011.10.25 Gen:Variant.Taterf.20
Fortinet 4.3.370.0 2011.10.25 –
GData 22 2011.10.25 Gen:Variant.Taterf.20
Ikarus T3.1.1.107.0 2011.10.25 Trojan-GameThief.Win32.Magania
Jiangmin 13.0.900 2011.10.24 –
K7AntiVirus 9.116.5334 2011.10.24 Riskware
Kaspersky 9.0.0.837 2011.10.25 HEUR:Trojan.Win32.Generic
McAfee 5.400.0.1158 2011.10.25 Generic BackDoor.bfr!m
McAfee-GW-Edition 2010.1D 2011.10.25 Heuristic.LooksLike.Win32.Suspicious.C
Microsoft 1.7801 2011.10.25 PWS:Win32/Frethog.F
NOD32 6572 2011.10.25 a variant of Win32/PSW.OnLineGames.PUY
Norman 6.07.13 2011.10.25 –
nProtect 2011-10-25.01 2011.10.25 Gen:Variant.Taterf.20
Panda 10.0.3.5 2011.10.25 Trj/CI.A
PCTools 8.0.0.5 2011.10.25 Trojan.Gen
Prevx 3.0 2011.10.25 –
Rising 23.81.01.03 2011.10.25 –
Sophos 4.70.0 2011.10.25 Troj/Virtum-Gen
SUPERAntiSpyware 4.40.0.1006 2011.10.25 –
Symantec 20111.2.0.82 2011.10.25 Trojan.Gen
TheHacker 6.7.0.1.331 2011.10.25 –
TrendMicro 9.500.0.1008 2011.10.25 –
TrendMicro-HouseCall 9.500.0.1008 2011.10.25 –
VBA32 3.12.16.4 2011.10.25 –
VIPRE 10870 2011.10.25 Trojan.Win32.Generic!BT
ViRobot 2011.10.25.4737 2011.10.25 –
VirusBuster 14.1.28.0 2011.10.24 –
Additional informationShow all
MD5 : 848c5cc6bec24dba2311c59390e9a260
SHA1 : 8075879e533031fad4ee5944801136998a097b27
File size : 115288 bytes
_____
le name: CVASDS0.DLL.Muestra EliStartPage v24.13
Submission date: 2011-10-25 12:49:37 (UTC)
Result: 35/ 39 (89.7%)
VT Community
not reviewed
Safety score: –
Compact Print results Antivirus Version Last Update Result
AntiVir 7.11.16.138 2011.10.25 TR/Crypt.ASPM.Gen
Antiy-AVL 2.0.3.7 2011.10.25 –
Avast 6.0.1289.0 2011.10.25 Win32:Malware-gen
AVG 10.0.0.1190 2011.10.25 Win32/Cryptor
BitDefender 7.2 2011.10.25 Gen:Heur.Krypt.21
ByteHero 1.0.0.1 2011.09.23 –
CAT-QuickHeal 11.00 2011.10.25 TrojanGameThief.Magania.ctfa
ClamAV 0.97.3.0 2011.10.25 –
Commtouch 5.3.2.6 2011.10.25 W32/OnlineGames.DE.gen!Eldorado
Comodo 10549 2011.10.25 TrojWare.Win32.GameThief.Magania.ctfa
DrWeb 5.0.2.03300 2011.10.25 Trojan.PWS.Wsgame.13118
Emsisoft 5.1.0.11 2011.10.25 Trojan-GameThief.Win32.Magania!IK
eTrust-Vet 36.1.8638 2011.10.25 Win32/Frethog.FFR
F-Prot 4.6.5.141 2011.10.25 W32/OnlineGames.DE.gen!Eldorado
F-Secure 9.0.16440.0 2011.10.25 Gen:Heur.Krypt.21
Fortinet 4.3.370.0 2011.10.25 Malware_fam.gw
GData 22 2011.10.25 Gen:Heur.Krypt.21
Ikarus T3.1.1.107.0 2011.10.25 Trojan-GameThief.Win32.Magania
Jiangmin 13.0.900 2011.10.24 Trojan/PSW.Magania.ahdf
K7AntiVirus 9.116.5339 2011.10.25 Password-Stealer
Kaspersky 9.0.0.837 2011.10.25 Trojan-GameThief.Win32.Magania.ctfa
McAfee 5.400.0.1158 2011.10.25 PWS-Gamania
McAfee-GW-Edition 2010.1D 2011.10.25 Heuristic.LooksLike.Win32.Suspicious.J
Microsoft 1.7801 2011.10.25 PWS:Win32/Frethog.gen!G
nProtect 2011-10-25.01 2011.10.25 Trojan-PWS/W32.WebGame.91648.BG
Panda 10.0.3.5 2011.10.25 W32/Lineage.LIE.worm
PCTools 8.0.0.5 2011.10.25 Malware.Gammima!rem
Prevx 3.0 2011.10.25 –
Rising 23.81.01.03 2011.10.25 Trojan.Win32.Generic.11F1B6EB
Sophos 4.70.0 2011.10.25 Mal/Generic-L
SUPERAntiSpyware 4.40.0.1006 2011.10.25 Trojan.Dropper/Gen-NV
Symantec 20111.2.0.82 2011.10.25 W32.Gammima.AG
TheHacker 6.7.0.1.331 2011.10.25 Trojan/OnlineGames.gen
TrendMicro 9.500.0.1008 2011.10.25 TSPY_MAGANIA.RSP
TrendMicro-HouseCall 9.500.0.1008 2011.10.25 TSPY_MAGANIA.RSP
VBA32 3.12.16.4 2011.10.25 SScope.Trojan.SB.0866
VIPRE 10870 2011.10.25 Trojan-PWS:Win32.Frethog.gen.g (v)
ViRobot 2011.10.25.4737 2011.10.25 Trojan.Win32.PSWMagania.91648.C
VirusBuster 14.1.28.0 2011.10.24 Trojan.Magania.Gen!Pac.3
Additional informationShow all
MD5 : 2da0f39af466ab2c5ef37637c739f5c9
SHA1 : a69804a7bd78ba3aa401c1165264899b317292e9
File size : 91648 bytes
_____
ile name: CVASDS1.DLL.Muestra EliStartPage v24.13
Submission date: 2011-10-25 12:56:24 (UTC)
Current status: queued queued analysing finished
Result: 37/ 41 (90.2%)
VT Community
malware
Safety score: 0.0%
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.10.24.01 2011.10.24 Win-Trojan/Onlinegamehack.91648.F
AntiVir 7.11.16.138 2011.10.25 TR/Crypt.ASPM.Gen
Antiy-AVL 2.0.3.7 2011.10.25 –
Avast 6.0.1289.0 2011.10.25 Win32:Malware-gen
AVG 10.0.0.1190 2011.10.25 Win32/Cryptor
BitDefender 7.2 2011.10.25 Gen:Heur.Krypt.21
CAT-QuickHeal 11.00 2011.10.25 TrojanGameThief.Magania.ctfa
ClamAV 0.97.3.0 2011.10.25 –
Commtouch 5.3.2.6 2011.10.25 W32/OnlineGames.DE.gen!Eldorado
Comodo 10549 2011.10.25 TrojWare.Win32.GameThief.Magania.ctfa
DrWeb 5.0.2.03300 2011.10.25 Trojan.PWS.Wsgame.13118
Emsisoft 5.1.0.11 2011.10.25 Trojan-GameThief.Win32.Magania!IK
eSafe 7.0.17.0 2011.10.24 –
eTrust-Vet 36.1.8638 2011.10.25 Win32/Frethog.FFR
F-Prot 4.6.5.141 2011.10.25 W32/OnlineGames.DE.gen!Eldorado
F-Secure 9.0.16440.0 2011.10.25 Gen:Heur.Krypt.21
Fortinet 4.3.370.0 2011.10.25 Malware_fam.gw
GData 22 2011.10.25 Gen:Heur.Krypt.21
Ikarus T3.1.1.107.0 2011.10.25 Trojan-GameThief.Win32.Magania
Jiangmin 13.0.900 2011.10.24 Trojan/PSW.Magania.ahdf
K7AntiVirus 9.116.5339 2011.10.25 Password-Stealer
Kaspersky 9.0.0.837 2011.10.25 Trojan-GameThief.Win32.Magania.ctfa
McAfee 5.400.0.1158 2011.10.25 PWS-Gamania
McAfee-GW-Edition 2010.1D 2011.10.25 Heuristic.LooksLike.Win32.Suspicious.J
Microsoft 1.7801 2011.10.25 PWS:Win32/Frethog.gen!G
NOD32 6572 2011.10.25 a variant of Win32/Pacex.Gen
nProtect 2011-10-25.01 2011.10.25 Trojan-PWS/W32.WebGame.91648.BG
Panda 10.0.3.5 2011.10.25 W32/Lineage.LIE.worm
PCTools 8.0.0.5 2011.10.25 Malware.Gammima!rem
Prevx 3.0 2011.10.25 –
Rising 23.81.01.03 2011.10.25 Trojan.Win32.Generic.11F1B6EB
Sophos 4.70.0 2011.10.25 Mal/Generic-L
SUPERAntiSpyware 4.40.0.1006 2011.10.25 Trojan.Dropper/Gen-NV
Symantec 20111.2.0.82 2011.10.25 W32.Gammima.AG
TheHacker 6.7.0.1.331 2011.10.25 Trojan/OnlineGames.gen
TrendMicro 9.500.0.1008 2011.10.25 TSPY_MAGANIA.RSP
TrendMicro-HouseCall 9.500.0.1008 2011.10.25 TSPY_MAGANIA.RSP
VBA32 3.12.16.4 2011.10.25 SScope.Trojan.SB.0866
VIPRE 10870 2011.10.25 Trojan-PWS:Win32.Frethog.gen.g (v)
ViRobot 2011.10.25.4737 2011.10.25 Trojan.Win32.PSWMagania.91648.C
VirusBuster 14.1.28.0 2011.10.24 Trojan.Magania.Gen!Pac.3
Additional informationShow all
MD5 : 2da0f39af466ab2c5ef37637c739f5c9
SHA1 : a69804a7bd78ba3aa401c1165264899b317292e9
File size : 91648 bytes
________
File name: DSOQQ0.DLL.Muestra EliStartPage v24.13
Submission date: 2011-10-25 12:54:50 (UTC)
Current status: queued queued (#1) analysing finished
Result: 34/ 41 (82.9%)
VT Community
not reviewed
Safety score: –
Compact Print results Antivirus Version Last Update Result
AhnLab-V3 2011.10.24.01 2011.10.24 Win-Trojan/Onlinegamehack.83456.M
AntiVir 7.11.16.138 2011.10.25 TR/Crypt.ASPM.Gen
Antiy-AVL 2.0.3.7 2011.10.25 Trojan/Win32.Magania.gen
Avast 6.0.1289.0 2011.10.25 Win32:Malware-gen
AVG 10.0.0.1190 2011.10.25 PSW.OnlineGames3.AREA
BitDefender 7.2 2011.10.25 Gen:Variant.Taterf.12
ByteHero 1.0.0.1 2011.09.23 –
CAT-QuickHeal 11.00 2011.10.25 –
ClamAV 0.97.3.0 2011.10.25 PUA.Packed.ASPack
Commtouch 5.3.2.6 2011.10.25 W32/MalwareF.EEYM
Comodo 10549 2011.10.25 UnclassifiedMalware
Emsisoft 5.1.0.11 2011.10.25 Trojan-GameThief.Win32.Taworm!IK
eSafe 7.0.17.0 2011.10.24 Win32.Suspect.Fd
eTrust-Vet 36.1.8638 2011.10.25 –
F-Prot 4.6.5.141 2011.10.25 W32/MalwareF.EEYM
F-Secure 9.0.16440.0 2011.10.25 Gen:Variant.Taterf.12
Fortinet 4.3.370.0 2011.10.25 –
GData 22 2011.10.25 Gen:Variant.Taterf.12
Ikarus T3.1.1.107.0 2011.10.25 Trojan-GameThief.Win32.Taworm
Jiangmin 13.0.900 2011.10.24 Trojan/PSW.Magania.apty
K7AntiVirus 9.116.5339 2011.10.25 Riskware
Kaspersky 9.0.0.837 2011.10.25 Trojan-GameThief.Win32.Magania.dnsr
McAfee 5.400.0.1158 2011.10.25 Generic.dx!tvc
McAfee-GW-Edition 2010.1D 2011.10.25 Generic.dx!tvc
Microsoft 1.7801 2011.10.25 PWS:Win32/Frethog.gen!G
NOD32 6572 2011.10.25 a variant of Win32/PSW.OnLineGames.POK
Norman 6.07.13 2011.10.25 W32/Suspicious_Gen2.CVAPB
nProtect 2011-10-25.01 2011.10.25 Trojan/W32.Agent.83456.IC
Panda 10.0.3.5 2011.10.25 Trj/StartPage.DAW
PCTools 8.0.0.5 2011.10.25 Trojan.Gen
Prevx 3.0 2011.10.25 –
Rising 23.81.01.03 2011.10.25 Trojan.Win32.Generic.12339DA2
Sophos 4.70.0 2011.10.25 Mal/Agent-CK
SUPERAntiSpyware 4.40.0.1006 2011.10.25 –
Symantec 20111.2.0.82 2011.10.25 Trojan.Gen
TheHacker 6.7.0.1.331 2011.10.25 Trojan/Magania.dnsr
TrendMicro 9.500.0.1008 2011.10.25 TROJ_GEN.USEHJ21
TrendMicro-HouseCall 9.500.0.1008 2011.10.25 TROJ_GEN.USEHJ21
VIPRE 10870 2011.10.25 Packed.Win32.Taterf.a (v)
ViRobot 2011.10.25.4737 2011.10.25 –
VirusBuster 14.1.28.0 2011.10.24 Trojan.Magania!8+nUh92MmI4
Additional informationShow all
MD5 : 454d34f7f43000ee899f13163acbb275
SHA1 : 9e83f6d0ac8f4f652b57b87b1871e4d9a1976e5c
File size : 83456 bytes
Dicha version del ELISTARA 24.15 que los detecta y elimina, estará diusponible en nuestra web a partir de las 19 h CEST de hoy
saludos
ms, 25-10-2011
NOTA: Los interesados en información sobre contrato de soporte Asistencia Tecnica de SATINFO y/o licencia de uso/actualizaciones de sus utilidades, contacten con info@satinfo.es
__________
Este blog no se hace responsable de las opiniones y comentarios de los textos en los que se cita la Fuente, ofreciendo su contenido solo para facilitar el acceso a la información del mismo.
Puedes seguir cualquier respuesta a esta entrada mediante el canal RSS 2.0. Los comentarios y los pings están cerrados.
Los comentarios están cerrados.