Packed.PolyCrypt.h

Description: Unclassified Threat
Risk Level: Medium
Date of First Occurence: Monday, April 21, 2008
Software Developer: (unknown)
Brief Info: Unclassified threats are threats that are not properly sorted or threats having an unknown publisher.
Removal: This threat can be removed using "Spyware Terminator"

REMOVER SPYWARE »

Geographical Distribution of Threat "Packed.PolyCrypt.h"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\kavo.exe MD5: BC5F0FA32DF8B018991494EB1A73BBA4 Size:113439
  2. Detected Files with variable Filenames: MD5: EFB9D1C51CA721F98AD30C2B5A781031 Size: 100836 %SYSDIR%\amvo.exe %WINDIR%\Temp\DWH1245.tmp e:\3o.exe d:\3o.exe %SystemDiskRoot%\3o.exe i:\3o.exe h:\3o.exe F:\3o.exe %SystemDiskRoot%\System Volume Information\_restore{3E65DCEF-111B-4174-B3CF-2167418CB9FA}\RP770\A0047600.exe f:\System Volume Information\_restore{98115B01-4C3D-4602-9AE1-1462F489D573}\RP291\A0033866.exe %SystemDiskRoot%\System Volume Information\_restore{0BFCDD9C-CC1F-4921-8A04-B2ABF07FBCC1}\RP1567\A0073952.exe and next 31 variations. MD5: D3883CB5CD0987C7785268A9482B5655 Size: 101295 %SystemDiskRoot%\xp19.com %SYSDIR%\amvo.exe %DESKTOP%\Nova godina\XP19.EXE %SystemDiskRoot%\System Volume Information\_restore{D8F2DF27-78E8-48C5-9C32-4CE705117593}\RP223\A0042759.exe d:\xp19.com F:\xp19.com d:\back_up\Kerio\WinRoute Firewall\quarantine\http_080317_085116-171901_S.tmp d:\back_up\Kerio\WinRoute Firewall\quarantine\http_080317_085112-171900_S.tmp %SystemDiskRoot%\System Volume Information\_restore{185D4452-F5C0-40E7-B6BA-AC7D5CEE0D3C}\RP46\A0016809.exe %SystemDiskRoot%\System Volume Information\_restore{185D4452-F5C0-40E7-B6BA-AC7D5CEE0D3C}\RP41\A0016238.exe %SystemDiskRoot%\System Volume Information\_restore{185D4452-F5C0-40E7-B6BA-AC7D5CEE0D3C}\RP40\A0016218.exe and next 13 variations. MD5: 13A6FDEA868B032A25001DC0E6A0D496 Size: 113973 f:\e6ieg.exe e:\e6ieg.exe d:\e6ieg.exe %SystemDiskRoot%\e6ieg.exe I:\e6ieg.exe d:\System Volume Information\_restore{2B65E6B1-9A8F-4F81-AFA6-5B2CF63EC527}\RP259\A0090836.exe %SYSDIR%\kavo.exe

Detecting items list:

  1. Files by MD5 MD5: EFB9D1C51CA721F98AD30C2B5A781031 Size: 100836 MD5: 13A6FDEA868B032A25001DC0E6A0D496 Size: 113973 MD5: 79E9D2D213773C1A66F4BD05BB1FA629 Size: 100206 MD5: 4CBFF6647D1FDB0BCA4135594E3436D1 Size: 41989 MD5: 6982EDAD44C4380D416E519E437CD01B Size: 113439 MD5: 344D8CBA9C07184761DE5D6948D2A149 Size: 121162 MD5: 72A1EA4FEC7888B50606775F819C4E38 Size: 121895 MD5: 8FD8045897252D85B9BDEED08EA32678 Size: 121607 MD5: 68D96014EF1030F21B34E9F37C59AEEE Size: 38491 MD5: 47133BB75CA9BDD19CEBAAB492C7DAC3 Size: 112640

« Go to Software Database