Archive for August 19th, 2008

19
Aug

Britney Spears MalSpam points to mov.exe

We saw a new MalSpam today. Unfortunately, it shows a very nasty picture of Britney Spears getting out of Paris Hilton’s car. It fowards us to hxxp://www.lenapiel.com/mov.exe, which does not appear to be up at the time of our post.

Warning: The BSD daemon may not appear in the malspam you receive. You have been forewarned.

MalSpam

19
Aug

The International Virus Research Lab Strikes Again!

Here are some new domains pushing out malicious binaries.  All of the files have been made available in /lithium-malware/AVXP08_1.zip

Screen shots:
hxxp://supersolution-freeantivirus.com/antivirus

antivirus2

avxp08

powerav09

Site: hxxp://antivirus-bestsolution.net
Distributes: Antivirus XP 2008
Files: Setup.exe
MD5…: 0044fd9dbf39280ec10ba88068637e5e
SHA1..: d4ae99b5b490047038bf0c8a3277d3a8b42f6be9
SHA256: b7c4c4f8cf54b4fe87571b28915a38d95b05dc6b8d1a36dfaec746de8e697d78

Site: hxxp://antivirus4protection.net/
Distributes: Antivirus XP 2008
Files: Setup.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d

Site: hxxp://antivirusproxp.com
Distributes:Antivirus XP 2008
Files: Setup.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d

Site: hxxp://freebest-antivirus.net/
Distributes: IVRL Defender
Files: Setup.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d

Site:hxxp://goodantivirus-free.net/
Distributes: Antivirus XP 2008
Files: Setup.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d

Site:hxxp://noadwareantivirus.com
Distributes: Antivirus XP 2008
Files: Setup.exe
MD5…: 0044fd9dbf39280ec10ba88068637e5e
SHA1..: d4ae99b5b490047038bf0c8a3277d3a8b42f6be9
SHA256: b7c4c4f8cf54b4fe87571b28915a38d95b05dc6b8d1a36dfaec746de8e697d78

Site: hxxp://pwrantivirus2009.com/
Distributes: Power Antivirus 2009
Files: Install.exe
MD5…: a06b0ec8cecd60abcad508bcbdf467e4
SHA1..: dd2999afa470d56a460a3c216c0e34023e0deaa7
SHA256: 6519623940729b4d00c98494c309c60b5b2cad31ad5108c7876bf1e011876ea7

Site: hxxp://scanner-pwrantivirus.com (Russian Federation)
Distributes: None yet
Files: None yet

Site: hxxp://scanner-xpertantivirus.com/ (Russian Federation)
Distributes: None yet
Files: None yet

Site: hxxp://solution-freeantivirus.com/
Distributes: Antivirus XP 2008
Files: Setup.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d

Site: hxxp://supersolution-antivirus.com/
Distributes: IVRL Defender
Files: Install.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d

Site: hxxp://supersolution-freeantivirus.com/
Distributes: Antivirus XP 2008
Files: Setup.exe
MD5…: b6ffa3a1c9e5ea0bd58fd2a38d42e71a
SHA1..: a60d2e00d3e35e8213ee3067eb2f3f99871b92b4
SHA256: b33b9e3dd5a662d5e11dc5d5f6df13e2b1afc4be217c3553fb0f3981591c432d






 

August 2008
M T W T F S S
« Jul   Sep »
 123
45678910
11121314151617
18192021222324
25262728293031