Downloader.WinFixer.fs

Description: Unclassified Threat
Risk Level: Medium
Date of First Occurence: Friday, May 09, 2008
Software Developer: (unknown)
Brief Info: Unclassified threats are threats that are not properly sorted or threats having an unknown publisher.
Removal: This threat can be removed using "Spyware Terminator"

SUPPRIMER SPYWARE »

Geographical Distribution of Threat "Downloader.WinFixer.fs"

Threat Info

View All

Detected Items

  1. Detected Files: %DESKTOP%\Download_sdtrial-regnow.exe MD5: 5FE38242896AF172C24258AF74CA4FF7 Size:122880 h:\programmata\avitodvd.exe MD5: 1FB29A3ADC07A321A39C5AC28F77DC00 Size:128408 D:\ISO & Instalki\Instalki\BitComet\BitComet Turbo Accelerator.exe MD5: AC5D3775C8C65FC3672AE4A42C30BC1D Size:128632 %DESKTOP%\Jhunes Stuff\Applications\Spyzooka-Installer.exe MD5: F7A2B1955CDB5462EA957CE220A8AC44 Size:358524
  2. Detected Files with variable Filenames: MD5: 5A96798221AA781EAF9AE37FAFA8F50F Size: 128592 e:\RECYCLER\S-1-5-21-448539723-507921405-725345543-500\De8.exe %SystemDiskRoot%\Download\spyware.exe %USERPROFILE%\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZEQKX61Y\srem[1].exe %USERPROFILE%\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LFKIVGBW\srem[1].exe %USERPROFILE%\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\DP4N6H5W\spyware[1].exe %USERPROFILE%\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3ELMZHDQ\spyware[1].exe %DESKTOP%\Delli\srem.exe MD5: 6356F07FFEDF299F0784965EB3110573 Size: 128640 f:\SetUp\\ \appletvvideoconverter.exe d:\Downloads\mpegconverter.exe %SystemDiskRoot%\\vobconverter.exe e:\Programok\videoconverter\avexvobconverter.exe %SystemDiskRoot%\RECYCLER\S-1-5-21-1004336348-606747145-682003330-1003\Dd2\videoconverter\avexvobconverter.exe %DESKTOP%\IPod Software (Trial)\vobconverter.exe %SystemDiskRoot%\ \vobconverter\vobconverter.exe MD5: 7D811E05E03D49A40CB08C18F9EA45CF Size: 128408 d:\Shadow\OLD D meghajto\MENTS A C-RL\DVD avi project\dvd.exe %SystemDiskRoot%\Downloads\Software\mpeg.exe %SystemDiskRoot%\Documents and Settings\m_alicolak\Desktop\gnlk ilemler+++++\rmvb.exe %USERDOCUMENTS%\Aliden\gnlk ilemler+++++\rmvb.exe %DESKTOP%\dat.exe %USERDOCUMENTS%\Downloads\Programs\vcd.exe %SystemDiskRoot%\\dvd.exe c:\Documents and Settings\Jorge_Arq_XP\Os meus documentos\Os meus ficheiros\VOB.exe d:\Softwares\dat.exe %DESKTOP%\Download\Huong nghiep\rmvb.exe d:\Downloads\VOB.exe and next 47 variations. MD5: 59D7EA4BD3AB43A165CC018AAACF5B85 Size: 128336 f:\programs\TV Software Vers (2008) - Watch over 3000 satellit\Download_TVSoftware1_5_0.exe j:\Programma\TV en radio op PC\Platinum Edition PC 2008 incl. 5000 TV channels\TVSoftware2008\Download_TVSoftware1_5_0.exe %SystemDiskRoot%\RECYCLER\S-1-5-21-1801674531-2139871995-725345543-500\Dc183\Download_TVSoftware1_5_0.exe MD5: B5A5B31706D0189DDCEB4C15251DC6AB Size: 128336 %DESKTOP%\spyware-29(4).exe %USERPROFILE%\Impostazioni locali\Temporary Internet Files\Content.IE5\V52IJ92B\spyware-45[1].exe %USERPROFILE%\Impostazioni locali\Temporary Internet Files\Content.IE5\8P97QXNR\spyware-45[1].exe %USERPROFILE%\ \ (2)\spyware-78.exe MD5: E73073430DE6D1AC49678D4C3795191C Size: 128344 %DESKTOP%\audio-50.exe %DESKTOP%\audio-13.exe %SystemDiskRoot%\Users\Kevin Geist\Downloads\audio-1.exe %DESKTOP%\Cuarto\audio-16.exe %USERDOCUMENTS%\cda konverter.exe %DESKTOP%\audio-18.exe %DESKTOP%\audio-20.exe d:\Programas \utilidades\audio driver\audio-1.exe %USERDOCUMENTS%\My Downloads\audio-53.exe MD5: 0C351F321DA539F5B7AAC4421AE9B7AD Size: 128632 d:\c\Users\audrey\AppData\Local\Temp\Setup(3).exe %TEMP%\Setup(3).exe %SystemDiskRoot%\Documents and Settings\\Local Settings\Temp\Setup(3).exe C:\Documents and Settings\AMCJF\Configuraes locais\Temp\Setup(3).exe %SystemDiskRoot%\Documents and Settings\Administrator\Local Settings\Temp\Setup(3).exe %USERPROFILE%\Configuraes locais\Temp\Setup(3).exe d:\found.003\dir0002.chk\Local Settings\Temp\Setup(3).exe %SystemDiskRoot%\Windows.old.000\Users\jaouad\AppData\Local\Temp\Setup(3).exe %SystemDiskRoot%\Documents and Settings\wenderson.WENDERSO-260BE9\Configuraes locais\Temp\Setup(3).exe %USERPROFILE%\Definies locais\Temp\Setup(3).exe MD5: F9589871397960B598FE5F658F45BEF6 Size: 128608 %DESKTOP%\Downloads\flashconverter.exe %USERPROFILE%\Local Settings\Temporary Internet Files\Content.IE5\JAFO2EI5\mp3converter[1].exe f:\TRAVAIL\IMAGE F\SAUVEGARDE\Software\UTILITIES\FLV convertor new\flashconverter.exe l:\_tmp\hangkonv_edit\audioconverter.exe MD5: 14EEFF507560CA00D0D0C14915072C2A Size: 122880 %USERPROFILE%\ \\PROGRAMMS\audiocd.exe %SystemDiskRoot%\fuentes\audio-cd.exe %SystemDiskRoot%\Downloads\audiocd.exe %USERDOCUMENTS%\Download files\Exe\audiocd.exe %SystemDiskRoot%\all programs\audio.exe MD5: 23B4ECAB73BF7183255850E1CEBB9980 Size: 128384 %SystemDiskRoot%\RECYCLER\S-1-5-21-2025429265-1708537768-839522115-1003\Dc191\WinXMedia iPod, 3GP, PSP, MP4 Converter - New 2008 Edition\Download_winxmedia_ipod_mp4_converter.exe %DESKTOP%\Connells\ MP4 Converter - New 2008 Edition\Download_winxmedia_ipod_mp4_converter.exe f:\System Volume Information\_restore{F1B9D383-CFC0-40A3-8C2E-3CBCFB91CC88}\RP120\A0030168.exe

Detecting items list:

  1. Files by MD5 MD5: 1DF3D8286EB3C903D06A7DF9003BAF73 Size: 128352 MD5: 1C743A765BCEB662DAAE7B558B0A9FB7 Size: 128328 MD5: 1B4A235F575870053131FEF4B87C37C1 Size: 128368 MD5: 1572294CA02AA2CA9308AFE9C4EE2C09 Size: 128368 MD5: 0E83061A9DBCE6E5AE2C04A753C52C59 Size: 128360 MD5: 0BD4D96FF820278D727F17724B19D725 Size: 128368 MD5: 0B61D276547E1E414690244AEF77FC22 Size: 128336 MD5: 09B3B82A3231253D555442FC4C539252 Size: 128360 MD5: 07A740CAA87CE021C349847543D91915 Size: 128368 MD5: 02584632F6A4A786BE7EA63D79AC294E Size: 128368

« Go to Software Database