5/27/2010

wa.exe virüsü ve çözümü

%Temp% = C:\Documents and Settings\kullanıcıadı\Local Settings\Temp\
klasöründe


wa.exe
%Temp%\wa.exe
%Temp%\herss.exe
%Temp%\nodqq0.dll
%Temp%\cvasds0.dll
veya
%Temp%\nodqq1.dll
%Temp%\cvasds1.dll
%Temp%\nodqq2.dll
%Temp%\cvasds2.dll
dosyaları mevcuttur.


sürücüadı:\wa.exe
sürücüadı:\autorun.inf


Çözümü


hijackthis ve combofixten sonra aşağıdaki antivirüsleri güncelleyin ve taratın


dosyanın ek bilgileri

File size: 104067 bytes
MD5...: 1afcbac609a901833b1544311ecb2dfa
SHA1..: a4d31e9385349a174b0d984d3df40ad054dfb7b7
SHA256: 0e1ed94cb93dbbb834fe1b079c28cf87432fceb4d47f8d444ffa7c35ae758e75
ssdeep: 3072:fef7iLrp6F9qmtBHE36anUzd/ZcNo3WlVEg:2fu334pE3gdBWiWwg


PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: RAR Archive (83.3%)
REALbasic Project (16.6%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned


packers (F-Prot): Aspack








bu virüsü Temizleyen antivirüsler


AhnLab-V3 2010.05. Trojan/Win32.OnlineGameHack
Avast 4.8.1351.0 Win32:Rootkit-gen
Avast5 5.0.332.0 Win32:Rootkit-gen
AVG 9.0.0.787 SHeur3.AABU
BitDefender 7.2 Trojan.Generic.4073790
CAT-QuickHeal 10.00 Worm.Taterf.a
ClamAV 0.96.0.3-git PUA.Packed.ASPack
DrWeb 5.0.2.03300 Trojan.PWS.Wsgame.13295
eSafe 7.0.17.0 Win32.WormTaterf.B
GData 21 Trojan.Generic.4073790
Ikarus T3.1.1.84.0 Worm.Win32.Taterf
Kaspersky 7.0.0.125 Trojan-GameThief.Win32.Magania.dhyd
McAfee 5.400.0.1158 Generic PWS.y!cqa
McAfee-GW-Edition 2010.1 Artemis!CAA485B646F6
Microsoft 1.5802 Worm:Win32/Taterf.B
NOD32 5151 Win32/PSW.OnLineGames.OUM
Norman 6.04.12 Malware.MQVV
Panda 10.0.2.7 Suspicious file
PCTools 7.0.3.5 Malware.Gammima
Prevx 3.0 Medium Risk Malware
Rising 22.49.03.04 Trojan.Win32.Generic.52064F00
Sunbelt 6365 BehavesLike.Win32.Malware (v)
Symantec 20101.1.0.89 W32.Gammima.AG
TrendMicro-HouseCall 9.120 WORM_TATERF.AW
VBA32 3.12.12.5 BScope.Trojan-PSW.AmGames
VirusBuster 5.0.27.0 Trojan.Magania.Gen!Pac.3

Hiç yorum yok:

Related Posts Plugin for WordPress, Blogger...