Probably New Virus

There are a few files in my temp folder that I suspect to be a virus.


I zipped these files (password: 'infected').


I suspect these files because they were in my temp folder and they always wanted to connect to the internet.


I blocked the connection for these programs using the BitDefender Firewall module.


So Please analyze these files.


PS: Sorry if my English is bad

/applications/core/interface/file/attachment.php?id=1260" data-fileid="1260" rel="">virus.zip

Comments

  • I ran a jotti scan (http://virusscan.jotti.org) on these files and these are the results:


    A-Squared Found nothing


    AntiVir Found TR/Crypt.NSPM.Gen, TR/Crypt.XPACK.Gen


    ArcaVir Found nothing


    Avast Found nothing


    AVG Antivirus Found SHeur.AHDR, Downloader.Generic6.AAOY


    BitDefender Found nothing


    ClamAV Found nothing


    CPsecure Found nothing


    Dr.Web Found nothing


    F-Prot Antivirus Found nothing


    F-Secure Anti-Virus Found nothing


    Fortinet Found Dloader.AB!tr


    Ikarus Found Suspect code-parts, Trojan-Downloader.Win32.VB.atp (probable variant)


    Kaspersky Anti-Virus Found nothing


    NOD32 Found nothing


    Norman Virus Control Found W32/Smalltroj.BQHY


    Panda Antivirus Found Trj/Agent.HLS


    Rising Antivirus Found nothing


    Sophos Antivirus Found nothing


    VirusBuster Found nothing


    VBA32 Found nothing


    PS: Sorry if my English is bad

  • Hello,


    thanks for the sample! They will be detected after our next udpate.


    kind regards,


    Marius Bosit