Page 23 of 46

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Mon Jun 11, 2012 6:26 pm
by Xylitol
Windows Privacy Counsel
https://www.virustotal.com/file/15ce8ee ... /analysis/
Code: Select all
http://defendsafetylow.in/0520091375cbc551/11/setup.exe
• dns: 1 ›› ip: 77.79.10.12 - adresse: GALAINT.STATONLINEKIT.IN
• dns: 1 ›› ip: 77.79.10.14 - adresse: DEFENDSAFETYLOW.IN
• dns: 1 ›› ip: 77.79.10.15 - adresse: 0520091375CBC551.FIREWALLSAFETYSTABILITY.IN

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Mon Jun 11, 2012 6:36 pm
by Win32:Virut
Windows Privacy Counsel (FakeVimes):

MD5: 9248aefd0886cda740764d5b808e3b87

https://www.virustotal.com/file/3407d57 ... /analysis/
infected
(1.52 MiB) Downloaded 65 times
Live Security Platinum (Winwebsec):

5db33.exe https://www.virustotal.com/file/d6d3a1c ... /analysis/
96ece.exe https://www.virustotal.com/file/f70037e ... /analysis/
f424f.exe https://www.virustotal.com/file/180619e ... /analysis/
infected
(941.87 KiB) Downloaded 53 times

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Wed Jun 13, 2012 2:04 am
by thisisu
Windows Instant Scanner
FakeVimes - MD5: 1769da880a83d2d1e2390492516babe1
https://www.virustotal.com/file/0538ae3 ... /analysis/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Wed Jun 13, 2012 2:01 pm
by Win32:Virut
Windows Instant Scanner (FakeVimes)

MD5: 3dacd28be0b96f91368e9545b865c641
Password: infected
(1.71 MiB) Downloaded 62 times
https://www.virustotal.com/file/721cae3 ... /analysis/


MD5: f4a684f5e35e4942a3d5bd4090b98fa2

https://www.virustotal.com/file/98c5a83 ... /analysis/
Password: infected
(1.71 MiB) Downloaded 53 times

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Fri Jun 15, 2012 3:23 pm
by hx1997
Live Security Platinum (Winwebsec)

New icon

https://www.virustotal.com/file/e22f9e6 ... /analysis/

MD5: DA9386E7A0B44F9957B4A215C5F812DA
infected
(310.88 KiB) Downloaded 56 times
Image

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sat Jun 16, 2012 8:39 am
by Win32:Virut
Live Security Platinum (Winwebsec)

MD5: 0d18e363c3105ef963fc91879354723e

https://www.virustotal.com/file/fdc972c ... /analysis/
VirusTotal wrote:First seen by VirusTotal
2012-06-16 08:28:49 UTC ( 10 minutes ago )
Password: infected
(333.24 KiB) Downloaded 54 times
Live Security Platinum (Winwebsec) - new icon

MD5: 7bef06528006a8e79b15cfc49c80344b

https://www.virustotal.com/file/c8f5383 ... /analysis/
VirusTotal wrote:First seen by VirusTotal
2012-06-15 20:40:55 UTC ( 14 hours, 54 minutes ago )
Password: infected
(325.16 KiB) Downloaded 63 times

Trojan:Win32/FakeSysdef

PostPosted:Wed Jun 20, 2012 6:33 am
by dumb110
SHA256: cf6f26dfa8c1faa7828280f682fa9a04d363bec9b2bff81e8c7558a4046a783a File name: AKD-243821.pdf.exe Detection ratio: 1 / 42

Sample please! :lol:

Re: Malware Requests, part 2

PostPosted:Wed Jun 20, 2012 6:48 am
by Xylitol
dumb110 wrote:SHA256: cf6f26dfa8c1faa7828280f682fa9a04d363bec9b2bff81e8c7558a4046a783a File name: AKD-243821.pdf.exe Detection ratio: 1 / 42

Sample please! :lol:

Re: Malware Requests, part 2

PostPosted:Wed Jun 20, 2012 9:16 am
by dumb110

Re: Malware Requests, part 2

PostPosted:Wed Jun 20, 2012 9:44 am
by Xylitol