VIRUS
(!empty($user->lang['QUOTE'])) ? $user->lang['QUOTE'] : ucwords(strtolower(str_replace('_', ' ', 'QUOTE'))):
File: Czcombo_1474__sw_hack.zip
Status:
INFECTED/MALWARE
MD5 99bee7437dcbce53419d876e3ce7eb3d
Packers detected:
PE-CRYPT.XORPE, UPX
Scanner results
Scan taken on 08 Apr 2007 17:52:12 (GMT)
AntiVir
Found TR/Keylog.24576, SPR/Perflogger.163.A, SPR/Perflogger.163.B
ArcaVir
Found Trojan.Spy.Keylogger.Aaj
Avast
Found Win32:Trojan-gen. {Other}
AVG Antivirus
Found Perflogger.AP
BitDefender
Found Generic.Perfloger.B172C380, Trojan.Peflog.31
ClamAV
Found Trojan.Perflog
Dr.Web
Found Trojan.Peflog.31
F-Prot Antivirus
Found nothing
F-Secure Anti-Virus
Found not-a-virus:Monitor.Win32.Perflogger.163 (6, 2, 604)
Fortinet
Found nothing
Kaspersky Anti-Virus
Found not-a-virus:Monitor.Win32.Perflogger.163
NOD32
Found Win32/Spy.PerfKey
Norman Virus Control
Found nothing
Panda Antivirus
Found nothing
Rising Antivirus
Found Trojan.Perflog.fc
VirusBuster
Found Trojan.DL.ILoveHonk.A
VBA32
Found Trojan.Perflog.8, Trojan.Peflog.31, Monitor.Win32.Perflogger.163 (probable variant)
Attention!
Kaspersky Anti-Virus has detected a virus in the file you have submitted.
Scanned file: Czcombo_1474__sw_hack.zip - Infected
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/archive comment - OK
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/pk.bin - OK
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/inst.dat - OK
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/bpkhk.dll - OK
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/bpkhk.dll - OK
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/bpk.exe - infected by not-a-virus:Monitor.Win32.Perflogger.163
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/KnightOnline.exe - OK
Czcombo_1474__sw_hack.zip/inst_KnightOnline.exe/data.rar/rinst.exe - infected by not-a-virus:Monitor.Win32.Perflogger.163
Antivirus Version Update Result
AhnLab-V3 2007.4.7.0 04.06.2007 no virus found
AntiVir 7.3.1.48 04.08.2007 TR/Keylog.24576
Authentium 4.93.8 04.06.2007 no virus found
Avast 4.7.936.0 04.08.2007 Win32:Trojan-gen. {Other}
AVG 7.5.0.447 04.08.2007 Potentially harmful program Perflogger.AP
BitDefender 7.2 04.08.2007 Generic.Perfloger.B172C380
CAT-QuickHeal 9.00 04.06.2007 no virus found
ClamAV devel-20070312 04.08.2007 Trojan.Perflog
DrWeb 4.33 04.08.2007 Trojan.Peflog.31
eSafe 7.0.15.0 04.08.2007 Spyware.Gen
eTrust-Vet 30.7.3549 04.06.2007 no virus found
Ewido 4.0 04.08.2007 no virus found
FileAdvisor 1 04.08.2007 no virus found
Fortinet 2.85.0.0 04.08.2007 Keylog/Perfect
F-Prot 4.3.1.45 04.04.2007 no virus found
F-Secure 6.70.13030.0 04.08.2007 no virus found
Ikarus T3.1.1.3 04.08.2007 not-a-virus:Monitor.Win32.Perflogger.163
Kaspersky 4.0.2.24 04.08.2007 not-a-virus:Monitor.Win32.Perflogger.163
McAfee 5003 04.06.2007 potentially unwanted program Keylog-Perfect
Microsoft 1.2405 04.08.2007 MonitoringTool:Win32/PerfectKeylogger
NOD32v2 2173 04.07.2007 Win32/Spy.PerfKey
Norman 5.80.02 04.05.2007 no virus found
Panda 9.0.0.4 04.08.2007 Application/Perfectkeylog.I
Aditional Information
File size: 841936 bytes
MD5: 99bee7437dcbce53419d876e3ce7eb3d
SHA1: 1fcd196fa5949a99afaf4b45e41547a94bdbf324
packers: XOREXE, XOREXE
packers: RAR