Thread: KoDupe1524

Page 1 of 2 12 LastLast
Results 1 to 15 of 25
  1. #1
    knoxx's Avatar
    Join Date
    Feb 2008
    Posts
    5
    Reputation
    10
    Thanks
    0

    KoDupe1524

    Probable virus. Removed.
    Last edited by ace76543; 03-21-2008 at 10:56 AM.

  2. #2
    Dwain12345's Avatar
    Join Date
    Feb 2008
    Posts
    6
    Reputation
    10
    Thanks
    0
    lawl any viruses in it?
    plz post ss's of u doing a virus scan..
    i dont feel like dling and getting a virus so ye...
    Last edited by Dwain12345; 02-26-2008 at 08:55 PM.

  3. #3
    Jemini024's Avatar
    Join Date
    Jan 2008
    Gender
    male
    Posts
    2
    Reputation
    10
    Thanks
    0

    ok dont be a domoss

    lol f7 is a hot key on your skill bar it is a poorly programed keylogger

  4. #4

  5. #5
    Alen's Avatar
    Join Date
    Oct 2007
    Gender
    male
    Location
    Liquid Generator
    Posts
    27,920
    Reputation
    2548
    Thanks
    4,224
    My Mood
    Fine
    This is not a virus as far as I know...
    Last edited by Alen; 02-27-2008 at 08:02 AM.

  6. #6
    knoxx's Avatar
    Join Date
    Feb 2008
    Posts
    5
    Reputation
    10
    Thanks
    0

  7. #7
    Alen's Avatar
    Join Date
    Oct 2007
    Gender
    male
    Location
    Liquid Generator
    Posts
    27,920
    Reputation
    2548
    Thanks
    4,224
    My Mood
    Fine
    It looks ok O.o, sorry for my previous posts

  8. #8
    kuzmich4444's Avatar
    Join Date
    Feb 2008
    Posts
    2
    Reputation
    10
    Thanks
    0
    AhnLab-V3 2008.2.27.0 2008.02.26 -
    AntiVir 7.6.0.67 2008.02.26 TR/Spy.Agent.AHAB
    Authentium 4.93.8 2008.02.26 -
    Avast 4.7.1098.0 2008.02.26 -
    AVG 7.5.0.516 2008.02.26 PSW.Delf
    BitDefender 7.2 2008.02.26 GenPack:Trojan.Agent.AHAB
    CAT-QuickHeal 9.50 2008.02.26 -
    ClamAV 0.92.1 2008.02.26 -
    DrWeb 4.44.0.09170 2008.02.26 BACKDOOR.Trojan
    eSafe 7.0.15.0 2008.02.26 suspicious Trojan/Worm
    eTrust-Vet 31.3.5564 2008.02.26 -
    Ewido 4.0 2008.02.26 -
    FileAdvisor 1 2008.02.26 -
    Fortinet 3.14.0.0 2008.02.26 -
    F-Prot 4.4.2.54 2008.02.25 W32/Threat-Backdoor-Silly-based!Maximus
    F-Secure 6.70.13260.0 2008.02.26 -
    Ikarus T3.1.1.20 2008.02.26 Generic.Agent.AHAB
    Kaspersky 7.0.0.125 2008.02.26 -
    McAfee 5238 2008.02.26 -
    Microsoft 1.3204 2008.02.26 VirTool:Win32/DelfInject.gen!L
    NOD32v2 2903 2008.02.26 Win32/Cakl.NAF
    Norman 5.80.02 2008.02.26 -
    Panda 9.0.0.4 2008.02.25 Suspicious file
    Prevx1 V2 2008.02.26 Heuristic: Suspicious File With Mass Email Capabilities
    Rising 20.33.12.00 2008.02.26 -
    Sophos 4.27.0 2008.02.26 Sus/Behav-1007
    Sunbelt 3.0.893.0 2008.02.23 -
    Symantec 10 2008.02.26 -
    TheHacker 6.2.9.229 2008.02.25 -
    VBA32 3.12.6.2 2008.02.26 Backdoor.Win32.Turkojan.a
    VirusBuster 4.3.26:9 2008.02.26 -
    Webwasher-Gateway 6.6.2 2008.02.26 Trojan.Spy.Agent.AHAB

  9. #9
    knoxx's Avatar
    Join Date
    Feb 2008
    Posts
    5
    Reputation
    10
    Thanks
    0
    lol wtf? it is not my file

  10. #10
    Alen's Avatar
    Join Date
    Oct 2007
    Gender
    male
    Location
    Liquid Generator
    Posts
    27,920
    Reputation
    2548
    Thanks
    4,224
    My Mood
    Fine
    Post an online virus scan result, and post all file info...

  11. #11
    kuzmich4444's Avatar
    Join Date
    Feb 2008
    Posts
    2
    Reputation
    10
    Thanks
    0
    Файл KoDupeR.rar получен 2008.02.27 17:34:06 (CET)Антивирус Версия Обновление Результат
    AhnLab-V3 2008.2.27.0 2008.02.27 -
    AntiVir 7.6.0.67 2008.02.27 TR/Spy.Agent.AHAB
    Authentium 4.93.8 2008.02.27 -
    Avast 4.7.1098.0 2008.02.27 -
    AVG 7.5.0.516 2008.02.27 PSW.Delf
    BitDefender 7.2 2008.02.27 GenPack:Trojan.Agent.AHAB
    CAT-QuickHeal 9.50 2008.02.26 -
    ClamAV 0.92.1 2008.02.27 -
    DrWeb 4.44.0.09170 2008.02.27 BACKDOOR.Trojan
    eSafe 7.0.15.0 2008.02.26 suspicious Trojan/Worm
    eTrust-Vet 31.3.5567 2008.02.27 -
    Ewido 4.0 2008.02.27 -
    FileAdvisor 1 2008.02.27 -
    Fortinet 3.14.0.0 2008.02.27 -
    F-Prot 4.4.2.54 2008.02.26 W32/Threat-Backdoor-Silly-based!Maximus
    F-Secure 6.70.13260.0 2008.02.27 -
    Ikarus T3.1.1.20 2008.02.27 Generic.Agent.AHAB
    Kaspersky 7.0.0.125 2008.02.27 -
    McAfee 5238 2008.02.26 -
    Microsoft 1.3301 2008.02.27 VirTool:Win32/DelfInject.gen!L
    NOD32v2 2906 2008.02.27 Win32/Cakl.NAF
    Norman 5.80.02 2008.02.26 -
    Panda 9.0.0.4 2008.02.27 Suspicious file
    Prevx1 V2 2008.02.27 Heuristic: Suspicious File With Mass Email Capabilities
    Rising 20.33.22.00 2008.02.27 Trojan.Win32.Undef.dhp
    Sophos 4.27.0 2008.02.27 Sus/Behav-1007
    Sunbelt 3.0.893.0 2008.02.23 -
    Symantec 10 2008.02.27 -
    TheHacker 6.2.9.229 2008.02.25 -
    VBA32 3.12.6.2 2008.02.27 Backdoor.Win32.Turkojan.a
    VirusBuster 4.3.26:9 2008.02.27 -
    Webwasher-Gateway 6.6.2 2008.02.27 Trojan.Spy.Agent.AHAB

    Дополнительная информация
    File size: 112103 bytes
    MD5: 490a4bb266c7aeb9ce92d09a34a6eaab
    SHA1: 0487b47adc38be446cc73eafacb81af3d04c7939
    PEiD: -
    packers: UPX_LZMA


    VirusTotal - Бесплатная Онлайн Проверка на Вирусы и Вредоносные Программы

  12. #12
    Alen's Avatar
    Join Date
    Oct 2007
    Gender
    male
    Location
    Liquid Generator
    Posts
    27,920
    Reputation
    2548
    Thanks
    4,224
    My Mood
    Fine
    Maybe you shouldn't download this file people... not safe.

    From prevx:

    This executable program has a file size of 115,712 bytes, it is called KODUPER.EXE and is located in the %mai%\ folder.
    This file has not yet been classified as safe. It was first seen on Tuesday, Feb 26 2008. It has only been seen by one user in this section of the community. The file has only been seen in SPAIN.
    KODUPER.EXE has been seen to perform the following behaviors:
    - The Process is packed and/or encrypted using a software packing process
    - This Process sends MIME Email

  13. #13
    MadJackxD's Avatar
    Join Date
    Feb 2008
    Posts
    3
    Reputation
    10
    Thanks
    0
    looks like a virus to me... i didnt executed it, so do i got the virus? :S


  14. #14
    Alen's Avatar
    Join Date
    Oct 2007
    Gender
    male
    Location
    Liquid Generator
    Posts
    27,920
    Reputation
    2548
    Thanks
    4,224
    My Mood
    Fine
    Yes you do, run superantispyware (just google, its 100% safe) and your AV to get rid of it.

  15. #15
    MadJackxD's Avatar
    Join Date
    Feb 2008
    Posts
    3
    Reputation
    10
    Thanks
    0
    it didnt show anything but some cookies i think... and i have avast for av, dunno if thats enough

Page 1 of 2 12 LastLast

Tags for this Thread