Chinese Internet Security Response Team (GMT +0800)

images.zip,MyGallery5156.zip,img4851.zip

[Post on : August 27, 2007 17:45 | Category : Bot & Botnets | by : smallmo] Reship : Original

We get three variants of MSN Worm today. We will post the details of these variants to help the users remove these variants.

Be careful of the following file names:
images.zip (IMG34814.pif)
MyGallery5156.zip (PGC5156.jpg-www.gallery-world.com)
img4851.zip (img4851.jpg-www.myspace.com)

The details about these variants:
1. images.zip (IMG34814.pif)
Size: 61,440 bytes
MD5 hash: e4109408541f2fb698d57d15935b103f
Detection: Trojan.Win32.Delf.aed(Kaspersky)
Details: images.zip,AshleyHottie.zip & msnmsgs.exe

2. MyGallery5156.zip (PGC5156.jpg-www.gallery-world.com)
Size: 46,080 bytes
MD5 hash: 1d37fb2493565c999ce102d0b960ced9
Detection: IM-Worm.Win32.Agent.j(Kaspersky)
Details: MyGallery5156.zip & w32_mjd.dll

3. img4851.zip (img4851.jpg-www.myspace.com)
Size: 74,752 bytes
MD5 hash: 235dc5c8f725c8a776e6b990c008104f
Detection: N/A(Kaspersky)
Details: img4851.zip & windrivers.exe

Pages: [1] [2] [3] [4]


Last modified by Moonny onAugust 28, 2007 14:28