gsran. com / nb.swf / cd.exe virus [Pandora TV]
◆ 3.html (from gsran. com)
- Avira : EXP/Shellcode.N
- Symantec : Trojan.Malscript
■ nb.swf - Flash Exploit
- Avira : HTML/Shellcode.Gen
- avast! : SWF:Agent-P
- Kaspersky : Trojan-Downloader.SWF.Agent.ec
■ cd.exe - Password Stealer Dropper
- Avira : TR/ATRAPS.Gen
- avast! : Win32:Patched-PX
- AVG : Win32/Patched.EA
- Dr.Web : BACKDOOR.Trojan
- ESET : Win32/PSW.OnLineGames.QMR
- Symantec : Infostealer.Onlinegame
[Malware Analyze] cd.exe dropped...
- system32\imm32.dll <-- Cracked Microsoft IME Input DLL
- system32\imm32.dll[randam].tmp <-- Original Microsoft IME Input DLL
- system32\win32.dll <-- Stealer Trojan
・ Virus File Scanner
・ Anti-Virus for Windows
・ Anti-Virus for Mac