8c959d5bf2d4ad517ce4780c0a290434

From aldeid
Jump to: navigation, search

General information

Virus information

  • Location: C:\RECYCLER\S-1-5-21-6631472627-6829699553-685860233-6318\recycle.exe
  • SHA256: ba14ec75d6a158bd3f2f9646f8b84b89431dcb388ba1dd1ce2335a0fb30ad229
  • SHA1: a649ba7a6e16f1e63757bf86e5808e4ac2ca46f0
  • MD5: 8c959d5bf2d4ad517ce4780c0a290434
  • File name: recycle.exe
  • File size: 1.5 MB ( 1527808 bytes )
  • File type: Win32 EXE
  • VT detection ratio on 2013-06-05 07:39:56 UTC: 39 / 47

Identification

  • CAT-QuickHeal => TrojanPSW.Dybalom.dpe
  • McAfee => W32/Rimecud
  • K7AntiVirus => Riskware
  • TheHacker => Trojan/PSW.Dybalom.dpe
  • VirusBuster => Trojan.PWS.Dybalom!+ReKkOZiubg
  • NOD32 => probably a variant of Win32/Agent.IWMGPSV
  • F-Prot => W32/MalwareF.EZVL
  • Symantec => W32.Pilleuz
  • Norman => W32/Suspicious_Gen2.CHGVV
  • ByteHero => Trojan.Malware.Win32.xPack.m
  • TrendMicro-HouseCall => TSPY_DYBALOM.B
  • Avast => Win32:Trojan-gen
  • ClamAV => Trojan.Spy-77401
  • Kaspersky => Trojan-PSW.Win32.Dybalom.dpe
  • BitDefender => Backdoor.Generic.418113
  • Emsisoft => Trojan-PWS.Win32.Dybalom!IK
  • Comodo => Heur.Suspicious
  • F-Secure => Backdoor.Generic.418113
  • VIPRE => Trojan.Win32.Generic!BT
  • AntiVir => TR/Dropper.Gen
  • TrendMicro => TSPY_DYBALOM.B
  • McAfee-GW-Edition => W32/Rimecud
  • Sophos => Mal/Generic-L
  • Jiangmin => Trojan/PSW.Dybalom.xd
  • Antiy-AVL => Trojan/Win32.Agent.gen
  • Microsoft => Trojan:Win32/Malagent
  • GData => Backdoor.Generic.418113
  • Commtouch => W32/MalwareF.EZVL
  • AhnLab-V3 => Virus/Win32.Dybalom
  • VBA32 => Trojan.Qhost.vme
  • PCTools => Malware.Pilleuz!rem
  • Ikarus => Trojan-PWS.Win32.Dybalom
  • AVG => Generic2_c.APXT
  • Panda => Generic Trojan
  • Avast5 => Win32:Trojan-gen

Destinations

  • 85.17.155.142:7006/udp
  • 209.222.14.3:7006/udp

Impacts

Incomplete.png
INCOMPLETE SECTION OR ARTICLE
This section/article is being written and is therefore not complete.
Thank you for your comprehension.

Links

Comments

blog comments powered by Disqus