PUA.Win32.Packer.Asprotect-2 (Clamav)
- http://www.clamav.net/lang/en/
- http://www.ikarussecurity.com/
- http://www.securelist.com/en/descriptions/29810394/ASProtect
"It is packed using PE Patch and ASprotect."
- http://www.securelist.com/en/descriptions/6134039/Packed.Win32.Black.d
"It is packed using ASprotect. The unpacked file is approximately 915 KB in size. It is written in Delphi."
- http://www.securelist.com/en/descriptions/16268043/Trojan-Dropper.Win32.Delf.grq
"This password-stealing trojan can monitor your keystrokes and send the recorded information to a hacker. This can include your online activity such as visits to banking websites."
- http://www.microsoft.com/security/portal/threat/encyclopedia/entry.aspx?Name=Win32/Zbot
- http://www.lavasoft.com/mylavasoft/malware-descriptions/blog/backdoorwin32poisontrojanwin32genericbt
"This spyware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It modifies the Internet Explorer Zone Settings. It deletes itself after execution."
- http://about-threats.trendmicro.com/malware.aspx?language=au&name=TSPY_ZBOT.TE
- https://www.virustotal.com/de/file/0a5bf022f878ee811a038a1fd9c8cedfd5d13e7bb028542e4bc7469fdc3272e1/analysis/
Keine Kommentare:
Kommentar veröffentlichen