Tag Archives: lsass.exe

Removed: d3dx10_3732.dll, d3dx10_3532.dll, lsass.exe

Malware: update_for_media_player_(KB972036).exe Removed: C:\WINDOWS\System32\d3dx10_3732.dll C:\WINDOWS\System32\d3dx10_3532.dll C:\Documents and Settings\Administrator\Application Data\SystemProc\lsass.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.02.08 Suspicious:W32/Riskware!Online Kaspersky 7.0.0.125 2010.02.08 Trojan.Win32.Agent.dgxh McAfee 5886 2010.02.08 – Microsoft 1.5406 2010.02.08 – NOD32 4849 2010.02.08 Win32/TrojanDownloader.Agent.PSH —————————————————————————————————————————- Additional information File size: 562176 bytes MD5 : cdba7ebcd7ef6810d8df3feca09fc624 SHA1 : 3c47a59eda98cd6da84503e7e14c458c89bb51bc SHA256: 5221f828ded4834f43a62510ecca2b8925194c2201691d82e5e96861b020fff7 —————————————————————————————————————————- Installation When the…

Continue reading

Removed: eapqec32.dll, efsadu32.dll, lsass.exe

Malware: update_for_media_player_(KB972036).exe Removed: C:\WINDOWS\System32\eapqec32.dll C:\WINDOWS\System32\efsadu32.dll C:\Documents and Settings\Administrator\Application Data\SystemProc\lsass.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.02.07 Suspicious:W32/Riskware!Online Kaspersky 7.0.0.125 2010.02.07 P2P-Worm.Win32.Agent.xu McAfee 5884 2010.02.06 – Microsoft 1.5406 2010.02.07 – NOD32 4844 2010.02.07 – —————————————————————————————————————————- Additional information File size: 561664 bytes MD5 : 7fced3cea42cb0f7f1dda7d7817d04eb SHA1 : 2da02f20d420aeb75c81b5ced0971ce440e694fa SHA256: 8218522f8676f187d8048f10f422028de4e6035fe77b3fee76cdfc09ef879175 —————————————————————————————————————————- Installation When the…

Continue reading

Removed: winlogon32.exe, smss32.exe, svc.exe, lsass.exe, localxmlruntime.dll, nvwrfont50.exe, 376bcd.exe, odbn0.exe

Malware: 45089.exe Removed: C:\WINDOWS\system32\winlogon32.exe C:\WINDOWS\system32\smss32.exe C:\WINDOWS\svc.exe C:\WINDOWS\lsass.exe C:\Documents and Settings\Administrator\Local Settings\Application Data\localxmlruntime\localxmlruntime.dll C:\Documents and Settings\Administrator\Application Data\nvwrfont50\nvwrfont50.exe C:\Documents and Settings\Administrator\Application Data\376bcd.exe C:\WINDOWS\odbn0.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.02.08 – Kaspersky 7.0.0.125 2010.02.08 – McAfee 5885 2010.02.07 – Microsoft 1.5406 2010.02.08 – NOD32 4847 2010.02.08 a variant of Win32/Kryptik.CDU —————————————————————————————————————————- Additional information File size:…

Continue reading

Removed: dsound32.dll, dskquota32.dll, lsass.exe

Malware: update_for_media_player_(KB972036).exe Removed: C:\WINDOWS\system32\dsound32.dll C:\WINDOWS\system32\dskquota32.dll C:\Documents and Settings\Administrator\Application Data\SystemProc\lsass.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.01.26 Suspicious:W32/Riskware!Online Kaspersky 7.0.0.125 2010.01.26 – McAfee 5873 2010.01.26 – Microsoft 1.5405 2010.01.26 – NOD32 4808 2010.01.26 – Symantec 20091.2.0.41 2010.01.26 – —————————————————————————————————————————- Additional information File size: 535040 bytes MD5 : 9cb2732bd5eca4efa4c71366ce603c77 SHA1 : 742ff89ccf08fccc7de692289e16b7e219223daf SHA256: b7a0017842ee167bcc88290f1116321ad7a06b71a9b1e98c14f143820f70fafd…

Continue reading

Removed: sdra64.exe, wnzip32.exe, gjetk.exe, lsass.exe

Malware: C:\sand-box\700.exe Removed: C:\WINDOWS\system32\sdra64.exe C:\RECYCLER\S-1-5-21-7295788371-6219362898-216113940-7089\wnzip32.exe C:\gjetk.exe C:\lsass.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.01.25 Backdoor:W32/Sohif.gen!A Kaspersky 7.0.0.125 2010.01.25 Packed.Win32.Krap.x McAfee 5871 2010.01.24 Generic Dropper.lr Microsoft 1.5405 2010.01.25 – NOD32 4803 2010.01.25 a variant of Win32/Kryptik.BXO Symantec 20091.2.0.41 2010.01.25 Trojan Horse —————————————————————————————————————————- Additional information File size: 18944 bytes MD5 : 9ab36d270d7c9aed4486c2ee2fd7c48d SHA1 :…

Continue reading

Removed: winlogon32.exe, sdra64.exe, lsass.exe, svc.exe, smss32.exe, odbn0.exe

Malware: load.exe Removed: C:\WINDOWS\system32\winlogon32.exe C:\WINDOWS\system32\sdra64.exe C:\WINDOWS\lsass.exe C:\WINDOWS\svc.exe C:\WINDOWS\system32\smss32.exe C:\WINDOWS\odbn0.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.01.23 Trojan.Generic.CJ.AJYK Kaspersky 7.0.0.125 2010.01.23 Trojan-Dropper.Win32.Mudrop.fty McAfee 5870 2010.01.23 – Microsoft 1.5405 2010.01.23 TrojanDropper:Win32/Microjoin.gen!B NOD32 4800 2010.01.23 a variant of Win32/Kryptik.BCR Symantec 20091.2.0.41 2010.01.23 Trojan Horse —————————————————————————————————————————- Additional information File size: 1915904 bytes MD5 : b0cf55e2028f6b3dde658c3b9c4fc60a SHA1…

Continue reading

Removed: lsass.exe

Malware: C:\sand-box\upd03927.exe Removed: C:\Documents and Settings\Administrator\Application Data\SystemProc\lsass.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.01.03 – Kaspersky 7.0.0.125 2010.01.03 – McAfee 5849 2010.01.02 – Microsoft 1.5302 2010.01.03 Trojan:Win32/Dursg.C NOD32 4738 2010.01.02 a variant of Win32/Injector.AND —————————————————————————————————————————- Additional information File size: 59392 bytes MD5   : b1b47daab4c155b6b7081d1634e61b04 SHA1  : 34345c56c29a9d4cf972d4fde5c7436207f940e5 SHA256: 5db59532dbf741d6571001f1253a7faa28d630f2fd40b5322770b0698caac56d —————————————————————————————————————————- Installation When the program is…

Continue reading

Removed: lsass.exe, abfmokf.dll

Malware: C:\sand-box\7.exe Removed: C:\WINDOWS\system32\uyt\lsass.exe C:\WINDOWS\system32\abfmokf.dll —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.01.09 Trojan.Generic.2915706 Kaspersky 7.0.0.125 2010.01.09 Trojan-Downloader.Win32.Agent.cwnu McAfee 5856 2010.01.09 – Microsoft 1.5302 2010.01.09 – NOD32 4757 2010.01.09 a variant of Win32/TrojanDownloader.Agent.PPB Symantec 20091.2.0.41 2010.01.09 Downloader —————————————————————————————————————————- Additional information File size: 12288 bytes MD5   : b2f3958a9429612c5e07885ee7886f7f SHA1  : f609f0963b7e9eac95c491daae059ea29bbf28d7 SHA256: e4ce6863c7468802dc2e29dea7691554f884fef4d2d32e100ac2af5d97b93588 —————————————————————————————————————————- Installation When the…

Continue reading

Removed: cryptui32.dll, lsass.exe

Malware: update_for_media_player_(KB972036).exe Removed: C:\WINDOWS\System32\cryptui32.dll C:\Documents and Settings\Administrator\Application Data\SystemProc\lsass.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.01.05 Trojan.Generic.IS.108581 Kaspersky 7.0.0.125 2010.01.05 Trojan-Downloader.Win32.Agent.cyrq McAfee 5852 2010.01.05 – Microsoft 1.5302 2010.01.05 TrojanDownloader:Win32/Tracur.A NOD32 4746 2010.01.05 Win32/TrojanDropper.Agent.OMV Symantec 20091.2.0.41 2010.01.05 – —————————————————————————————————————————- Additional information File size: 454144 bytes MD5   : 3299b7c87ab93106fbb84957f691fcd2 SHA1  : dfa68c4935dc4e5ba23431b52f7213a86ac9a7ea SHA256: 1d31f519aa748573edbd0a28527a2c28159c8b0c52fb0b22a534173067c96870 —————————————————————————————————————————- Installation When the…

Continue reading

Removed: wnzip32.exe, lsass.exe, 92915747.sys

Malware: C:\sand-box\your_exe.exe Removed: C:\RECYCLER\S-1-5-21-0951489366-8341901699-434682934-6551\wnzip32.exe C:\Documents and Settings\Administrator\Application Data\System\lsass.exe C:\WINDOWS\system32\drivers\92915747.sys Classification:   Antivirus Version Last Update Result F-Secure 9.0.15370.0 2009.11.20 – Kaspersky 7.0.0.125 2009.11.24 Trojan-Downloader.Win32.Genome.yrs McAfee 5811 2009.11.23 – Microsoft 1.5302 2009.11.24 Trojan:Win32/Waledac.U NOD32 4632 2009.11.24 a variant of Win32/Kryptik.BBD Symantec 1.4.4.12 2009.11.24 – Additional information File size: 16896 bytes MD5 : 33c737225b440d61099dbebfb69b2972 SHA1 : bf2c411797c7e97b646ea0ff93021745aebc6c11…

Continue reading