| View previous topic :: View next topic |
| Author |
Message |
spywarebox
MIRT Hunter
 Joined: Apr 21, 2007 Posts: 68 Location: CANADA
|
|
| Back to top |
|
 |
maliciousbrains
Sergeant
 Premium Member
 Joined: Feb 23, 2008 Posts: 103
|
Posted: Mon Feb 25, 2008 8:41 pm Post subject: Video codec, pbly Zlob Analysis |
|
|
Antivirus Version Last Update Result
AhnLab-V3 2008.2.22.0 2008.02.22 -
AntiVir 7.6.0.67 2008.02.25 -
Authentium 4.93.8 2008.02.24 -
Avast 4.7.1098.0 2008.02.25 -
AVG 7.5.0.516 2008.02.25 -
BitDefender 7.2 2008.02.25 -
CAT-QuickHeal 9.50 2008.02.22 -
ClamAV 0.92.1 2008.02.25 -
DrWeb 4.44.0.09170 2008.02.25 -
eSafe 7.0.15.0 2008.02.21 Suspicious File
eTrust-Vet 31.3.5562 2008.02.25 -
Ewido 4.0 2008.02.25 -
FileAdvisor 1 2008.02.25 -
Fortinet 3.14.0.0 2008.02.25 -
F-Prot 4.4.2.54 2008.02.24 -
F-Secure 6.70.13260.0 2008.02.25 Suspicious:W32/Malware!Gemini
Ikarus T3.1.1.20 2008.02.25 -
Kaspersky 7.0.0.125 2008.02.25 -
McAfee 5237 2008.02.25 -
Microsoft 1.3204 2008.02.25 Trojan:Win32/Delflob.I
NOD32v2 2900 2008.02.25 -
Norman 5.80.02 2008.02.25 -
Panda 9.0.0.4 2008.02.25 Suspicious file
Prevx1 V2 2008.02.25 Generic.Dropper.xCodec
Rising 20.33.02.00 2008.02.25 -
Sophos 4.26.0 2008.02.25 Mal/DelpDldr-E
Sunbelt 3.0.893.0 2008.02.23 -
Symantec 10 2008.02.25 -
TheHacker 6.2.9.229 2008.02.25 -
VBA32 3.12.6.1 2008.02.21 -
VirusBuster 4.3.26:9 2008.02.25 -
Webwasher-Gateway 6.6.2 2008.02.25 -
Additional information
File size: 104992 bytes
MD5: c3b83a3026df73f1ec5af59b57227397
SHA1: ad6ac3682746839509ad0b746cac3ecc82380413
PEiD: ASPack v2.12 -> Alexey Solodovnikov
packers: embedded, Aspack
packers: ASPack
.:: Malicious Brains ::.
http://maliciousbrains.blogspot.com
|
|
| Back to top |
|
 |
computerbrainz
Trooper

 Joined: Jan 28, 2008 Posts: 21 Location: USA
|
Posted: Mon Feb 25, 2008 8:42 pm Post subject: |
|
|
Now my brilliant question is why would you post this link and expect people to download this? You are a supposed hunter and post the spyware links...which means that the server is still active...i think that I may leave this post...this is beginning to be a cyber joke for IT professionals... _________________ My mind is of the ultimate...
|
|
| Back to top |
|
 |
maliciousbrains
Sergeant
 Premium Member
 Joined: Feb 23, 2008 Posts: 103
|
Posted: Mon Feb 25, 2008 8:46 pm Post subject: |
|
|
The link has been deactivated as u can see its typed as HXXP instead of the HTTP. This has been done for the purpose of deactivating the link.
.:: Malicious Brains ::.
http://maliciousbrains.blogspot.com
|
|
| Back to top |
|
 |
spywarebox
MIRT Hunter
 Joined: Apr 21, 2007 Posts: 68 Location: CANADA
|
Posted: Mon Feb 25, 2008 9:14 pm Post subject: Re: |
|
|
computerbrainz:
I don't see what your problem is here?
|
|
| Back to top |
|
 |
computerbrainz
Trooper

 Joined: Jan 28, 2008 Posts: 21 Location: USA
|
Posted: Mon Feb 25, 2008 9:51 pm Post subject: |
|
|
Oh...there is no problem...I didn't understand the nature of your post..that's all.
Obviously this is a site that was deactivated...
Is this just informative? If so, then I will add this to my blocklist..this won't make me click the link...hmm..
So how's Canada? _________________ My mind is of the ultimate...
|
|
| Back to top |
|
 |
spywarebox
MIRT Hunter
 Joined: Apr 21, 2007 Posts: 68 Location: CANADA
|
Posted: Mon Feb 25, 2008 10:08 pm Post subject: Re: |
|
|
If you're going to add something to your block list, then I suggest adding just the domain name:
sevendownloadshost.com
|
|
| Back to top |
|
 |
tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5878
|
|
| Back to top |
|
 |
tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5878
|
|
| Back to top |
|
 |
maliciousbrains
Sergeant
 Premium Member
 Joined: Feb 23, 2008 Posts: 103
|
Posted: Tue Feb 26, 2008 2:03 am Post subject: |
|
|
FYI...
Microsoft Malware Protection Center (MMPC) has finished analyzing submission ID 15766681 and the results are listed below. If the files were determined to be malware or potentially unwanted software, the results will identify the threat for each file submitted.
Analyst comments:
=================
=================
Analysis summary:
=================
Total Files: 1
Clean: 0
Malware: 1
Malware Related: 0
Malware Container: 0
Potentially Unwanted Software: 0
Potentially Unwanted Software Container: 0
Postponed: 0
Not Yet Analyzed: 0
=================
Per-file summary:
=================
20080225_125631536_0_WebVideoDecoder.exe_ | Malware: Trojan:Win32/Delflob.I
http://go.microsoft.com/fwlink/?linkid=95666&name=Trojan%3aWin32%2fDelflob.I
.:: Malicious Brains ::.
http://maliciousbrains.blogspot.com
|
|
| Back to top |
|
 |
|
|