Palm84 某所の日記

死のうは一定、しのびクマには何しよぞ...

CWSめも2

Dialer

gdnJP333.exe
gdnJP10.exe/gdnJP208.exe/rdgFR10.exe

Exploit

adv65.php
loadadv65.html
loaderadv65.jar

Dropper?/Downloader

loaddadv65.exe
  • Downloader.Trojan(NAV)
  • TROJ_SMALL.YT
  • Downloader-RU(NAI - Extra.Data)
  • TrojanDownloader.Win32.Small.yt(KAV/Antidote)
  • Win32/TrojanDownloader.Harnig.NAD(NOD32)
  • Trojan Horse Downloader Small.13.V(AVG)
loadadv65.exe
  • Downloader.Trojan(NAV)
  • TROJ_HARNIG.AA(TrendMicro)
  • Downloader-PZ
  • TrojanDownloader.Win32.Harnig.al(KAV/Antidote)
  • Win32/TrojanDownloader.Harnig.ALgen(NOD32)
  • Trojan Downloader Harnig.AF(AVG)
x.chm
  • CHM_CODEBASE.A
  • TrojanDownloader.Win32.Harnig.al(KAV/Antidote)
  • Exploit.CodeBaseExec(KAV/Antidote)
  • Win32/TrojanDownloader.Harnig.AL.gen(NOD32)
  • Exploit.CodeBase(NOD32)

???

silent_install.exe
protector.exe
exploit.exe(xtray_link.exe)
load.exe
  • TROJ_DELF.DH(TrendMicro)
  • Downloader-MM
  • TrojanDownloader.Win32.Delf.ch(KAV/Antidote)
  • Trojan Horse Downloader Delf.3.O(AVG)
Free_Sex_Download.exe
  • Dialer-229(NAI Extra.Data)
MediaTicketsInstaller.cab