AdWare.Virtumonde.mju

Description: Adware
Risk Level: Critical
Date of First Occurence: Tuesday, May 13, 2008
Software Developer: (unknown)
Brief Info: Adware Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
Removal: This threat can be removed using "Spyware Terminator"

SUPPRIMER SPYWARE »

Geographical Distribution of Threat "AdWare.Virtumonde.mju"

Threat Info

View All

Detected Items

  1. Detected Files:
  2. Detected Files with variable Filenames: MD5: 0FB7BB4B3CDA042F37F2E8B855836343 Size: 53248 %SYSDIR%\lqeokxqp.dll %SystemDiskRoot%\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\G9IJW5U7\rld[1] %SystemDiskRoot%\Users\nanna com\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\10LH6HJB\rld[1] %USERPROFILE%\Local Settings\Temp\spmwwnmr.dll %USERPROFILE%\Local Settings\Temp\nedqcfpt.dll %USERPROFILE%\Local Settings\Temp\aoongmha.dll %SystemDiskRoot%\Documents and Settings\mum\Local Settings\Temporary Internet Files\Content.IE5\8UFGY5K8\rld[1] %USERPROFILE%\Local Settings\Temporary Internet Files\Content.IE5\YJGV61KR\rld[1] %USERPROFILE%\Local Settings\Temporary Internet Files\Content.IE5\OPO7WHCZ\rld[1] %SystemDiskRoot%\Users\amz\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F201IP85\rld[1] %TEMP%\ggqdfcnv.dll and next 43 variations.

Detecting items list:

  1. Files by MD5 MD5: 0BD3A99E540D23ABEB947063F9397569 Size: 53312 MD5: 08F6BDCB0C859D38603AB6FB8F372C13 Size: 53312 MD5: 0761E2FD10AC24860CDF37EEC8962FE7 Size: 53312 MD5: 55B37C45111714EAAA12267132802360 Size: 53312 MD5: 534F093A356469499EA6F5552B9F4EFF Size: 53312 MD5: 52C5CA74A4450862AD3C418E980D8DCE Size: 53312 MD5: 79D2515B082EB62CFE53D205BE21934F Size: 53312 MD5: 6B3F0AC147899A58C89D247CE8C59183 Size: 53312 MD5: 6B017C259D9ED8582956A092A3490429 Size: 53312 MD5: FF169842B10C695309C8846262F982C3 Size: 53312

« Go to Software Database