Otra variante de este malware, esta vez descargado por el BUBLIK, pasa a ser controlado a partir del ElistarA 29.11 de hoy
El preanalisis de virustotal ofrece el siguiente informe:
MD5 6ae09843f7cd449d981e990d0908acdb
SHA1 f2ff3baf8bd4cd398aab6803b2533447828e2d3c
File size 413.5 KB ( 423424 bytes )
SHA256: e248b12f024fc9367bc72649f71b877a4f3ad409d9ac0c82c52919ffda455a65
Nombre: zyyd.exe
Detecciones: 10 / 47
Fecha de análisis: 2014-01-09 12:31:23 UTC ( hace 0 minutos )
0 1
Antivirus Resultado Actualización
AhnLab-V3 Spyware/Win32.Zbot 20140109
AntiVir TR/Crypt.Xpack.43305 20140109
Avast Win32:Malware-gen 20140109
ESET-NOD32 Win32/Spy.Zbot.AAU 20140109
K7GW Trojan ( 0040f71e1 ) 20140109
Kaspersky Trojan-Spy.Win32.Zbot.rdht 20140109
Kingsoft Win32.Troj.Zbot.rd.(kcloud) 20130829
Malwarebytes Spyware.Zbot 20140109
Panda Suspicious file 20140109
Sophos Troj/Zbot-HIO 20140109
AVG ? 20140109
Ad-Aware ? 20140109
Agnitum ? 20140108
Antiy-AVL ? 20140109
Baidu-International ? 20131213
BitDefender ? 20140109
Bkav ? 20140109
ByteHero ? 20131227
CAT-QuickHeal ? 20140109
ClamAV ? 20140109
Commtouch ? 20140109
Comodo ? 20140109
DrWeb ? 20140109
Emsisoft ? 20140109
F-Prot ? 20140109
Fortinet ? 20140109
GData ? 20140109
Ikarus ? 20140109
Jiangmin ? 20140109
K7AntiVirus ? 20140108
McAfee ? 20140109
McAfee-GW-Edition ? 20140109
MicroWorld-eScan ? 20140109
Microsoft ? 20140109
NANO-Antivirus ? 20140109
Norman ? 20140109
Rising ? 20140109
SUPERAntiSpyware ? 20140108
Symantec ? 20140109
TheHacker ? 20140108
TotalDefense ? 20140108
TrendMicro ? 20140109
TrendMicro-HouseCall ? 20140109
VBA32 ? 20140109
VIPRE ? 20140109
ViRobot ? 20140109
nProtect ? 20140109
Dicha version del ElistarA 29.11 que lo detecta y elimina, estará disponible en nuestra web a partir de las 19 h CEST de hoy
saludos
ms, 9-1-2014
El preanalisis de virustotal ofrece el siguiente informe:
MD5 6ae09843f7cd449d981e990d0908acdb
SHA1 f2ff3baf8bd4cd398aab6803b2533447828e2d3c
File size 413.5 KB ( 423424 bytes )
SHA256: e248b12f024fc9367bc72649f71b877a4f3ad409d9ac0c82c52919ffda455a65
Nombre: zyyd.exe
Detecciones: 10 / 47
Fecha de análisis: 2014-01-09 12:31:23 UTC ( hace 0 minutos )
0 1
Antivirus Resultado Actualización
AhnLab-V3 Spyware/Win32.Zbot 20140109
AntiVir TR/Crypt.Xpack.43305 20140109
Avast Win32:Malware-gen 20140109
ESET-NOD32 Win32/Spy.Zbot.AAU 20140109
K7GW Trojan ( 0040f71e1 ) 20140109
Kaspersky Trojan-Spy.Win32.Zbot.rdht 20140109
Kingsoft Win32.Troj.Zbot.rd.(kcloud) 20130829
Malwarebytes Spyware.Zbot 20140109
Panda Suspicious file 20140109
Sophos Troj/Zbot-HIO 20140109
AVG ? 20140109
Ad-Aware ? 20140109
Agnitum ? 20140108
Antiy-AVL ? 20140109
Baidu-International ? 20131213
BitDefender ? 20140109
Bkav ? 20140109
ByteHero ? 20131227
CAT-QuickHeal ? 20140109
ClamAV ? 20140109
Commtouch ? 20140109
Comodo ? 20140109
DrWeb ? 20140109
Emsisoft ? 20140109
F-Prot ? 20140109
Fortinet ? 20140109
GData ? 20140109
Ikarus ? 20140109
Jiangmin ? 20140109
K7AntiVirus ? 20140108
McAfee ? 20140109
McAfee-GW-Edition ? 20140109
MicroWorld-eScan ? 20140109
Microsoft ? 20140109
NANO-Antivirus ? 20140109
Norman ? 20140109
Rising ? 20140109
SUPERAntiSpyware ? 20140108
Symantec ? 20140109
TheHacker ? 20140108
TotalDefense ? 20140108
TrendMicro ? 20140109
TrendMicro-HouseCall ? 20140109
VBA32 ? 20140109
VIPRE ? 20140109
ViRobot ? 20140109
nProtect ? 20140109
Dicha version del ElistarA 29.11 que lo detecta y elimina, estará disponible en nuestra web a partir de las 19 h CEST de hoy
saludos
ms, 9-1-2014