Adware.Mycentria;Target:1;(0&1);5c4d7943656e747269615c496e666f4261725c4d7943656e74726961496e666f4261722e646c6c;5c7265677376723332202f53204d7943656e74726961496e666f4261722e646c6c Exploit.MS08-067;Target:1;(0&1)&(2|3|4|5);5c5c25735c495043;6e6361636e5f6e70;2e2e5c2e2e;2e2e5c5c2e2e;2e002e005c002e002e;2e002e005c005c002e002e Worm.Koobface-80;Target:1;0&1;424c41434b4c4142454c;687474703a2f2f66616365626f6f6b2e636f6d Exploit.PDF.CVE_2009_4324;Target:0;0&1;2f532f4a6176615363726970742f4a53;746869732e6d656469612e6e6577506c61796572286e756c6c29 Trojan.Iframe-14;Target:3;0&1&2&3&4&5;67706c2a2f{-1000}646f63756d656e742e637265617465656c656d656e74{-1000}2e7265706c616365282f{-100}2f69672c222229;5c24;5c28;5c5e;5c21;5c29 Trojan.Iframe-15;Target:3;0&1&2&3&4&5;636f6465312a2f{-1000}646f63756d656e742e637265617465656c656d656e74{-1000}2e7265706c616365282f{-100}2f69672c222229;5c24;5c28;5c5e;5c21;5c29 Trojan.Generic.FakeAV;Engine:51-255,Target:1,IconGroup2:FAKEAV;(0);EP+0:5589e581ec Trojan.Generic.Fakesec;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0|1);EP+0:558bec6aff68{-150}148bcd87cc588be8ff1508200014ff1508200014cd2e;EP+0:558bec6aff68{-150}148bc881e1ff000000890d Trojan.Generic.Bredolab;Engine:51-255,Target:1,IconGroup1:BREDO;(0);EP+0:60be005041008dbe00c0feff5783cdffeb109090909090908a064688074701db75078b1e83eefc11db72edb801000000 Trojan.Bifrose.NSP;Engine:51-255,Target:1,IconGroup2:BIFROSE;(0);EP+0:e9dfc40000b409ba0b01cd21b44ccd21 Trojan.Generic.Bredolab-1;Engine:51-255,Target:1,IconGroup2:BREDO;(0);EP+0:60be005041008dbe00c0feff5783cdffeb109090909090908a064688074701db75078b1e83eefc11db72edb801000000 Trojan.Generic.Bredolab-2;Engine:51-255,Target:1,IconGroup2:BREDO;0|1;555058300000*5550583100000000;EP+0:60be007041008dbe00a0feff5783cdffeb109090909090908a064688074701db75078b1e83eefc11db72edb801000000 Suspect.PDF.LaunchExecutable;Target:0;0&1&(2|3|4|5);0,1024:255044462d??2e;2f4141{5-20}20523e3e;2f4c61756e6368{5-50}3c3c2f46{1-50}2e455845;2f4c61756e6368{5-50}3c3c2f46{1-50}2e655865;2f4c61756e6368{5-50}3c3c2f46{1-50}2e657865;2f4c61756e6368{5-50}3c3c2f46{1-150}(73|53)(79|59)(73|53)(74|54)(65|45)(6d|4d)3332 Trojan.VB.Chinky-2;Target:1;(0&1&2&(3=0));256,256:2e74657874000000????????????????????????????????????????????????????????????????2e64617461000000????????????????00000000????????????????????????????????????????2e72737263000000;0050726f6365737333324e65787400;00676574686f737462796e616d6500;50726f636573733332466972737400 Trojan.Bredolab-975;Engine:51-255,Target:1,IconGroup2:BREDO;(0);010092e8210000008b54240cb9b00000008b3c114f750c83c1086a0b5e11341183e908893c1133c0c333d264ff326489222915011040004983c414c3ff7424045a6633d26a0158eb072bca2bca2bcabe41cd2e52544af71c24a8207507c0e803 Trojan.Generic.Fakesec-4;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0|1);EP+0,150:5250{-8}5133c0;EP+0:0000000000000000000000000000000000000000000000000000000000000000 Trojan.Generic.Fakesec-5;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0);EP+0:558bec51b900300000e823000000585a595a83aaac00000001750a8182b8000000170000005251525033 Trojan.Generic.Fakesec-6;Engine:51-255,Target:1,IconGroup2:FAKESEC;(0);*:7800000039bbd12b5f1e8447a52a63bfbd37a5e1ef9d6b049b929748a745cdb29a76d3ff61a7c61b28fe664b8de41e15361421952976bb45fdb2a24cb137ec Trojan.Fakesec-94;Engine:51-255,Target:1,IconGroup1:FAKESEC;0;EP+0:83ec34ff154c40440085c07402c22cff155c40440085c074f5c1e00405d40f40003effe02d24100000e9ae1a00009367890424e9ec08000093755b918a16e915020000814387876761eb45005426842f305f240de8eb090000e9120800004c440f84be170000e9010c00007a8b742424 Trojan.Fakesec-95;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0);EP+0:83ec34ff154c40440085c07402c22cff155c40440085c074f5c1e00405d40f40 Suspect.Trojan.Generic.FD-1;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0|1);EP+0:60be00??????????????????????????????909090909090;EP+0,8:41005064ff35000000006489250000000033c08908504543 Trojan.Generic.Fakesec-7;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0|1|2);EP+0,150:5250{-8}5133c0ffa00403;EP+0:0000000000000000000000000000000000000000000000000000000000000000;S1+0:3000??000000000000000000??00??003000??00000000000000000000000000 Trojan.Fakesec-96;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0|1|2|3);EP+0:558bece8??000000;EP+0:8bff558bec5150ff75043eff15280048;EP+0:558bec83ec18ff1548504500eb3dc9c3550fafed;EP+0:83ec34ff154cf0440085c074020f85ff Trojan.Generic.Fakesec-9;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0|1|2);EP+0:83ec44;EP+0:8bff558bec5150523eff153c10;EP+0:558bec81ecfc000000e8210000005064 Suspect.Trojan.Generic.FD-2;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:60be00??41008dbe00??feff57eb0b908a064688074701db75078b1e83eefc11db72edb80100000001db75078b1e83eefc11db11c001 Suspect.Trojan.Generic.FD-4;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0|1);EP+0,8:5064ff35000000006489250000000033c0890850454332;*:426f6d65*426f6d65*426f6d65 Trojan.Bredolab-979;Engine:51-255,Target:1,IconGroup2:BREDO;(0);EP+0:89c205951e0000bae6250000482d4c37 Suspect.Trojan.Generic.FD-5;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:3355b481f24d2c0000b865090000ba76 Suspect.Trojan.Generic.FD-6;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:558bec83ec6c535657c745a400000000a1602040008945a8c745ac00000000c745b0000000006a00ff151c2040008945b468003040006a00ff151c20400050ff Suspect.Trojan.Generic.FD-7;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:60e803000000e9eb045d4555c3e801000000eb5dbbedffffff03dd81eb00 Suspect.Trojan.Generic.FD-8;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:558bec83ec585356578365dc00f3eb0c65585072 Suspect.Trojan.Generic.FD-9;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:b800000000600bc074??e8000000005805??0000008038e975??61eb??e800000000582500f0ffff33ff66bb195a6683c33466391875120fb7503c03d0bbe944000083c367391a74072d00100000ebda Suspect.Trojan.Generic.FD-10;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:e8e3feffff33c050505050e8be2b Suspect.Trojan.Generic.FD-11;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:81c12610000089ca0fb7555752ff1504134000ff153c1340000fb754249f81f9 Suspect.Trojan.Generic.FD-12;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:e9e4360000000000000000000000000000000000000000000000000000000000 Suspect.PDF.EmbeddedExecutable-2;Engine:51-255,Target:1,Container:CL_TYPE_PDF;0&1=0;0:4d5a{60-300}50450000;264:61436142 Trojan.Generic.Fakesec-12;Engine:51-255,Target:1,IconGroup1:FAKESEC;(0);EP+0:8bff558bec6a006a016a00ff Suspect.Trojan.Generic.FD-13;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:6888164000e8f0ffffff0000000000003000000040000000000000001158cdb3850f294cbd3ff632f14e133100000000 Trojan.SI;Engine:51-255,Target:1,IconGroup1:20f66;(0);EP+0:68ae7c8fc9e8177d0000685cd290c9e8 Suspect.Trojan.Generic.IE;Engine:51-255,Target:1,IconGroup2:IE;(0|1);EP+0:e93c35000000000000000000;EP+0:60e80000000058055a0b00008b3003f02bc08bfe66 Suspect.Trojan.Generic.FD-14;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:60e8000000005d81ed8a1c4000b99e0000008dbd4c2340008bf733dbad33 Trojan.Bredolab-983;Engine:51-255,Target:1,IconGroup2:BREDO;(0|1);EP+0:8bff558bec6a0068;EP+0:8d4424fc68031c40 Trojan.Bredolab-984;Engine:51-255,Target:1,IconGroup2:BREDO;(0);EP+0:545832c068031c4000c3 Trojan.Bredolab-989;Engine:51-255,Target:1,IconGroup2:BREDO;(0);EP+5:a80474098bc432c068031c4000c32a8bd2 Trojan.Bredolab-990;Engine:51-255,Target:1,IconGroup2:BREDO;(0);EP+0:b8503f4100ffe0db Trojan.Delf-9410;Engine:51-255,Target:1;(0&1&2);*:3ef6ffc3e9bd37f6ffebeb8a45ff5f5e5b8be55dc300d7a3c4fad0c2c4eabfecc0d62e000000534556494e464f00ffff;*:d7ecf5ffc3e911e6f5ffebeb58595dc300000057494e4e532e4558450000000000;*:657273696f6e5c5a5a4800000000000000000000000000000060e800000000582d Trojan.Bredolab-993;Engine:51-255,Target:1,IconGroup2:BREDO;(0);*:64646300b3b5ab00a0a5a2005b676300616d6b0093a7 JS.Agent-86;Engine:51-255,Target:3;(0&1&2&3);*:3c7363726970743e66756e6374696f6e206e30303028297b7d3b{-800}66616c73653b3c2f7363726970743e;*:73756273747228302c{-30}73756273747228302c{-30}73756273747228302c;*:3d66616c73653b{-60}3d66616c73653b{-60}3d66616c73653b{-60}3d66616c73653b;*:2f656e6a6f Suspect.Trojan.Generic;Engine:51-255,Target:1,IconGroup2:Bifrose;(0);EP+0:6a286870204000e87402000033ff57ff15005042006681384d5a751f8b483c03c881395045000075120fb741183d0b010000 Trojan.GenericAD;Engine:51-255,Target:1,IconGroup1:ADB;(0);*:dc8955c88b45c88b4dc803483c894dd46a008b55d48b4250506a006a046a006affff15241040008945fc837dfc00750733c0e9130200008b4dd48b55dc0391800000008955c48b45c4837810000f84ff W32.Trafox;Engine:51-255,Target:1;(0&1&2&3&4);EP+0:e98ffcffff;*:908b0424eb01;*:2d17234000eb01;*:8be8eb01;*:83c404808571234000058d855c23400050c3 W32.Lamechi.A;Engine:51-255,Target:1;(0&1&2);*:64a1300000008b400c8b701cad5f8b75088b58086a0d596a045a891e03f256ff3753e85d000000870603f203fae2f058ff308f45fc414151;*:558bec83c4fc60e8;EP+0:536083ec50545b53e8 Trojan.Packed-174;Engine:51-255,Target:1;(0&1&2&3);EP+0:33d24a6a00ff150c;*:2bc9{-8}31648921;*:cd2e{-12}a8107506c0e803;*:2d00000100{-20}c1c010 Trojan.Patched-146;Engine:51-255,Target:1;(0&1);*:582bc28d400a50c39090909090609ce80000000090905bbf761d807c8d736c8a0e84c9740b8d460550ffd783c610ebef8d734c908b7b4803fb83c74c6a00546a406a2057b8cf1a807cffd0;*:4d006900630072006f0073006f0066007400200043006f00720070006f0072 Heuristic.Trojan.SusPacked.CEP;Engine:51-255,Target:1,IconGroup2:BIFROSE,FileSize:10-10000000;0;EP+5:5064ff35000000006489250000000033c08908 Trojan.Fakesec-100;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2000000;(0);EP+0:558bec6a00 Trojan.Dropper;Engine:51-255,Target:1,FileSize:100000-500000;(0&1);*:4d5a90000300000004000000ffff0000b800000000000000400000000000000000000000000000000000000000000000000000000000000000000000e00000000e1fba0e00b409cd21;EP+0:558bec6aff68b030400068????400064a100000000506489250000000083ec685356578965e833db895dfc6a02ff152030400059830d78??4100ff830d7c??410056ff750cff15??10000185c075083975080f95c08bf0 Heuristic.Trojan.SusPacked.FFXPU;Engine:51-255,Target:1,IconGroup1:FLD,FileSize:10-10000000;0;EP+0:60be00????008dbe00????ff5783cdffeb109090909090908a064688074701db75078b1e83eefc11db72edb80100000001db75078b1e83eefc11db11 Trojan.Fakesec-102;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2500000;(0|1|2|3|4|5|6|7);EP+0:556a0083;EP+0:83ec34;EP+0:83ec30;EP+20,200:450052004e0045004c00330032002e0064006c006c00000000476c6f62616c41;EP+40,240:45524e454c33322e646c6c00476c6f62616c416c6c6f6300476c6f;EP+0:83ec44;EP+0:8bff55;EP+0:83ec24 Trojan.Fakesec-107;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2500000;(0);EP+0:68f0 Heuristic.Trojan.SusPacked.XETPX;Engine:51-255,Target:1,IconGroup2:BIFROSE,FileSize:10-10000000;0;*:2e74657874000000{-100}2e757078300000{-100}2e75707831000000 Trojan.Packed-178;Engine:51-255,Target:1,IconGroup2:BIFROSE,FileSize:10-10000000;0;EP+0:53565733ff8b{-300}57575757e8bc040000508b046518804000 Heuristic.Trojan.SusPacked.PBV;Engine:51-255,Target:1,IconGroup2:BIFROSE,FileSize:10-10000000;0;EP+0:6854174000e8eeffffff00000000000030030000400000000000000020280af1 Heuristic.Trojan.SusPacked.XCPP;Engine:51-255,Target:1,IconGroup2:BIFROSE,FileSize:10-10000000;0;EP+0:6a286870204000e87402000033ff57ff1500??????6681384d5a751f8b483c03c881395045000075120fb741183d0b01 Trojan.Fakesec-108;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2500000;(0);EP+0:558bec6a Trojan.Fakesec-111;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2500000;(0|1|2|3|4|5|6|7|8|9|10|11|12);EP+0:556a0083;EP+0:83ec34;EP+0:83ec30;EP+20,200:450052004e0045004c00330032002e0064006c006c00000000476c6f62616c41;EP+40,240:45524e454c33322e646c6c00476c6f62616c416c6c6f6300476c6f;EP+0:83ec44;EP+0:8bff55;EP+0:83ec24;EP+0:558bec6a;EP+0:68f0;EP+0:558bec83;EP+0:6a00;EP+0:8b04 JS.Generic;Engine:51-255,Target:3,FileSize:10-800;(0|1);0:3c7363726970743e66756e6374696f6e206e303030286e303031297b766172206e303032{-200}2e6c656e677468{-300}293b7d7d646f63756d656e742e777269746528{-200}22293b3c2f7363726970743e;0:3c7363726970743e3c212d2d766172206e3030303d22{-200}6e3030302e6c656e6774{-200}6e3030302e63686172636f64656174{-200}63686172636f646561742869292d31293b7d7d646f63756d656e742e7772697465 JS.Generic-2;Engine:51-255,Target:3,FileSize:10-1000;(0);0:3c7363726970743e3c212d2d66756e6374696f6e206e303030286e303031297b6e3030313d756e657363617065286e30303129{-200}2e63686172636f64656174{-200}646f63756d656e742e7772697465287329 Trojan.Crypt-332;Engine:51-255,Target:1;(0|1|6)&(2|3)&(4|5|7|8|9|10);EP+0:506870430210e8;EP+0:506870630210e8;*:83c40883c400;*:83c40083c404;*:b8e0670210ffd0;*:ffd0833d2881021001;EP+0:506870330210e8;*:b8f0670210ffd0;*:ffd0833d????021001;*:b8f0470210ffd0;*:b840480210ffd0 Trojan.Fakesec-119;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2500000;(0);EP+0:555657536a0026 W32.Dzan-2;Engine:51-255,Target:1;(0&1&2);*:90515657bf????????83c9ff33c0f2aef7d12bf98bc18bf7bf????????c1e902f3a58bc833c083e103f3a4bf????????83c9fff2aef7d12bf98bf78bd1bf????????83c9fff2ae8bca4fc1e902f3a58bca83e103f3a4e8060500008b4424108b35????????6a0068870000806a036a006a01680000008050ffd683f8ffa3;*:72656c6f6300005c6d6d632e657865000000005c0000002a2e2a00613a5c00636b00005c6d73646d2e657865202f6175746f72756e;*:000000004d5a90000300000004000000ffff0000b8000000000000 Trojan.Fakesec-120;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:10000-2500000;(0|1|2);EP+0:e8??1800006a00e8??1800006a0068701540006a0068d700000050e8??180000;EP+0:83ec1033;EP+0:555657536a00ff15??????0050ff1500????008bc8e3689090909090909090909090909090909090909090909090909090909090909090909090909090909090 Trojan.Patched-152;Engine:51-255,Target:1;(0);*:909090608bec83c??0648b153000000052588b480c8bc18b4814908b09908b098bd18b4a10b800000000894df48bc18bc8894df4bb4000000053bb003000005368002001006a0005??9a0000ffd090508f45fce80000000059894df0816df0????010081e956????008bd98bd36a000500800000050010000050b8ee????0003c2508b45f405????0200ffd0506a008d4df85168009000008b4dfc81c10010000051508b45f405??180000ffd08b45f405??9b0000ffd0bf????0100be??????008b5df003fb03f38b5dfc81c300100000b800000000b9??0100008b55f481c2??1a000083ece053bb00000001c39090 Trojan.Patched-153;Engine:51-255,Target:1;(0);*:60e80000000090908bf65d81ed??1440008b85??15400051528b8d??1540008b95??15400033d103c283e8??5a59894424108d85????40008944241c615033c064ff350000000064892500000000cccccccc558bec368b4510573e8bb8c40000003eff37648f05000000003e8380c40000000860e8000000008bff905d81ed????40008db5??1540008a0e84c9742f908bc9909080f9cc908bd2907421908d4605909050908bbd??15400090ffd79050b81000000003f058908bf690ebcb613e8bb8a40000009090518bc83e89b9b8000000595fb800000000c9c31fd114ca Trojan.Fakesec-123;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2000000;(0);EP+0:558becff15 Heuristic.Trojan.SusPacked.BF;Engine:51-255,Target:1,IconGroup2:BIFROSE,FileSize:10-10000000;0;EP+0:685c154000e8f0ffffff000000000000300000004000000000000000c7a0bf86e9782542aecfa669aca9633300000000 Trojan.Fakesec-124;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2000000;(0|1|2|3|4|5|6|7|8|9);EP+0:83ec10;EP+0:e8a91400;EP+0:81ec000f;EP+0:83ec243eff742424;EP+0:68f0f0;EP+0:f08704;EP+0:e84f14;EP+0:6a2468;EP+0:e86e17;EP+0:e8a614 Trojan.Patched-155;Engine:51-255,Target:1;(0|1|2|3);*:90608bec83c4f0648b15300000008b4a0c8b49148b098b098b4910894df48bc1ba4000000052ba003000005268111101006a0005??????00ffd08945fce8000000005a8955f0816df0??????0081ea????????8bda6a000500800000050010000050b8????????03c2508b45f405??????00ffd0506a008d4df85168009000008b4dfc81c10010000051508b45f405??????00ffd08b45f405??????00ffd0bf??????00be??????008b5df003fb03f38b5dfc81c300100000b800000000b9??0100008b55f481c2??????0083ecf053bb;*:90608bec83c4e0648b153000000052588b480c8bc18b4814908b09908b098bd18b4a10b800000000894df48bc18bc8894df4bb4000000053bb003000005368002001006a0005??????00ffd090508f45fce80000000059894df0816df0??????0081e956??????8bd98bd36a000500800000050010000050b8ee??????03c2508b45f405??????00ffd0506a008d4df85168009000008b4dfc81c10010000051508b45f405??????00ffd08b45f405??????00ffd0bf??????00be??????008b5df003fb03f38b5dfc81c300100000b800000000b9??0100008b55;*:90608bff8bec8bc083c4d8648b3d30000000575e8b460c8bc88b4914908bf98b3f908b3f8bdfb8100000008b0c18b8ffffffff894df48bd18bca8bc28955f4be4000000056be003000005668000001006a0005??????00ffd0908bd08955fce80000000059894df0816df0??????0081e9????????8bd98bd36a000500800000050010000050b8????????03c2508b45f405??????00ffd0506a008d4df85168009000008b4dfc81c10010000051508b45f405??????00ffd08b45f405??????00ffd0bf??????00be??????008b5df003fb03f38b5dfc81c300100000b800000000b9??0100008b55f4;*:90608bec83c4f0648b1d300000008b430c8b40148b008b008b40108945f46a40680030000068000001006a0005??????00ffd08945fce8000000005b895df0816df0????000081ebd8????006a00050090000050b85c????0003c3508b45f405??????00ffd06a008d4df85168009000008b4dfc81c10010000051508b45f405??????00ffd0bf????0000be????00008b5df003fb03f38b5dfc81c300100000b800000000b9ca0000008b55 Trojan.Fakesec-129;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:490000-2000000;(0|1|2|3);EP+0:6a4b68;EP+0:6a7168;EP+0:e916fe;EP+0:60be00 Trojan.Bredolab-1027;Engine:51-255,Target:1,IconGroup1:DOCUMENT;(0);EP+0:558bec81ec20020000535657c745 Trojan.Patched-156;Engine:51-255,Target:1;0&1&2;EP+0:837c24080175;*:726f6341c745e064647265;VI:43006f006d00700061006e0079004e0061006d006500000000004d006900630072006f0073006f0066007400200043006f00720070006f007200610074006900 W32.Expiro-11;Engine:51-255,Target:1;0&1;EP+0:60e8319801009061e9;*:5589e583ec2053565766c745fe0000c745f005000000c745f406000000c745ec030000008d3dc6??????8d15c6??????8b0da8??????83c10f030d24??????89d0d3e88b153c??????83c20789d189c6d3e68d45f850a194??????0fbf15bc??????01d083e80c505756e8bd41000083c41089c68b45f8 Trojan.Fakesec-309;Engine:51-255,Target:1,IconGroup1:FAKESEC;0|1;EP+0:558bec81ec;EP+0:5589e581ec Trojan.Spy-78845;Engine:51-255,Target:1;0&1&2;*:f03bf30f84d20100008d8570ffffffc68570ffffff475056c68571ffffff64c68572ffffff69c68573ffffff70c68574ffffff43c68575ffffff72c68576ffffff65c68577ffffff61c68578ffffff74c68579ffffff65c6857affffff42c6857bffffff69c6857cffffff74c6857dffffff6dc6857effffff61c6857fffffff70c6458046c6458172c645826fc64583;*:70c645a444c645a569c645a673c645a770c645a86fc645a973c645aa65c645ab;*:459561c645966dc6459765c6459857c645996ec6459a64c6459b5fc6459c5fc6459d31c6459e30c6459f31c645a05f6a4033c0598dbd89feffff889d88feffffc645a15ff3ab66abaa8d45bc885da2508d45ec50c645ec75c645ed73c645ee65c645ef72c645f033c645f132c645f22e Trojan.GenericFF;Engine:55-255,Target:1,IconGroup2:FAKEFOLDER,FileSize:10-10000000,NumberOfSections:5-255;0|1;8bff558bec5166{-450}ff250c304000ff2510304000ff2514304000ff25;8bff558bec83ec{-450}ff250c304000ff2510304000ff2514304000ff25 Worm.Palevo-14375;Engine:55-255,Target:1,IconGroup2:PLV,FileSize:10-10000000,NumberOfSections:3-255;(0|1|2|3);EP+0:5083e001????c989;EP+0:558bec83????c705;EP+0:558bec83????c745;EP+0:5083{250}4c4c4c4c Trojan.GenericFF-1;Engine:55-255,Target:1,IconGroup1:FLD,FileSize:10-10000000,NumberOfSections:3-255;(0);EP+0:8bff558bec??ec Trojan.Fakesec-310;Engine:55-255,Target:1,IconGroup1:FAVBI,FileSize:100000-10000000,NumberOfSections:4-255;(0);*:2e746c73{-200}2e746c73 Trojan.Downloader-101635;Engine:55-255,Target:1,FileSize:100-10000000;0&(1|2);S1+0:34343434343434343434343434343434;*:83000000408845f0c645f30033c08a45f38b55fc803c020d746533c08a45f38b55fc803c020a745733c08a45f28b55f88a0402240a33d28a55f38b4dfc8a141180e20f32c28845f133c08a45f38b55fc8a040224f024f08a55f102c233d28a55;*:580000c745bcde2e0000c745b8f8850000c745b431450000c745b0e8140000c745acda020000c745a809b800008b45a8508b45ac508b45b0508b45b4508b45b8508b45bc508b45c0508b45c4508b45*3800330037003700300034003100390000000000313936373131353734360000363337313330303239000000558b W32.Expiro-13;Engine:55-255,Target:1;0&1;EP+0:60e86619020061e9;*:b801000000c331c0408b4c2404f7410406000000740f8b4424088b5424108902b803000000c35356578b442410506afe6806????0164ff3500000000648925000000008b4424208b58088b700c83feff74203b742424741a8d34768b0cb38b4c24088b480c837cb3040075d7ff54b308ebd1648f050000000083c40c5f5e5bc3 Trojan.Packed-182;Engine:55-255,Target:1;(0|1|2|3|4|5|6|7|8|9|10|11);EP+0:e9cd0700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9cf0600000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9fd0500000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9790800000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e94a0a00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9ac0700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9f10900000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e98e0a00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9d60800000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9e20600000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9380a00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000;EP+0:e9c50400000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 Trojan.Packed-184;Engine:55-255,Target:1;(0&1&2&3&4);EP+0:558bec81ec;EP+20,60:5068ff010000;EP+50,200:3bc60f85??000000??????????ff{-128}ffd0;EP+90,200:83f8020f85;EP+150,300:83f8030f84 Trojan.Agent-194411;Target:1;0&1;S0+0,32000:5250435254342e;EP+0:558bec81ec????000087fe565789 Trojan.Spy.ZBot-135;Target:1;(0>20)&1&2;S0+0,100000:558bec83ec??8be55dc3;5?e8????0000e8????ffff8be55dc2;EP+10,50:8be55dc3558bec Trojan.Spy.Zbot-136;Target:1;0>2&1;S0+0,100000:558bec83{0-16}4?4?c9c3;S0+0,100000:558bec{3-8}e8[5-12]e8????????e8????????c9c2 Trojan.Spy.Zbot-137;Target:1;0>20&1;S0+0,100000:558bec83ec??c9c3;EP+10,50:e8????ffffc9c3 Trojan.Fakesec-311;Engine:51-255,Target:1,IconGroup1:FAVBI,FileSize:10000-2500000;(0);EP+0:6a006affff15 Trojan.FakeAV.IAP2M4;Engine:51-255,Target:1,IconGroup2:FakeAV,FileSize:2400000-2500000;0;EP+0:68??????00e801000000c3c3 Suspect.W32.AdInstall.PBCXP;Engine:51-255,Target:1;0&(1|2);EP+0:60be;*:500069006e00620061006c006c00200043006f00720070006f0072006100740069006f;*:040a141450696e62616c6c20436f72706f72617469 Trojan.FakeDefrag;Engine:51-255,Target:1,IconGroup2:Defrag;0;EP+300,600:31??81f?ff0000000f8c??f?ffff Trojan.FakeJava.NP;Engine:51-255,Target:1;0&1;EP+0:8b2c082c088b4545908b454590;460069006c0065004400650073006300720069007000740069006f006e00000000004a00610076006100280054004d0029002000 Trojan.FakeJava.CJCS;Engine:51-255,Target:1,IconGroup2:Java;0;EP+0:3c??7402fcf9 Trojan.Heuristic.FakeBrowser.IL;Engine:51-255,Target:1,IconGroup1:Browser;0&(1=0);0:4d5a{60-300}50450000;0:4d5a{60-300}50450000????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????00000000 Trojan.Heuristic.FakeDx.KGU;Engine:51-255,Target:1,IconGroup2:DxDiag;0;EP+0:33c0b9????????030183ec786a00 Trojan.FakeSSH;Engine:51-255,Target:1,IconGroup2:Colors;0;VI:4c006500670061006c0043006f007000790072006900670068007400000069005300530048002c002000320030003100 Trojan.FakeAV.TMHJTIL;Engine:51-255,Target:1,IconGroup2:Ctrlxy;0&1&(2=0);VI:43006f006d00700061006e0079004e0061006d006500000000005400720065006e00640020004d0069006300;0:4d5a{60-300}50450000;0:4d5a{60-300}50450000????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????00000000 Trojan.Generic.Fake.ASISSC;Target:1;0&(1=2)&(2>2)&(3=0);EOF-10000,9500:000202{83}003c003c003c004f00620073006f006c006500740065003e003e003e302130;EOF-10000,9500:41646f62652053797374656d73[0-20]30;EOF-10000,9500:41646f62652053797374656d73;EOF-10000,9500:4469676974616c20494420436c6173732033202d204d6963726f736f667420536f6674776172652056616c69646174696f6e20 Trojan.Spy.SpyEyes-8;Target:1;(0|1)&2&3&4&5&6&(7|8|9|10|11|12|13|14|15);6e74646c6c2e646c6c;4e54444c4c2e444c4c;52746c41646a75737450726976696c656765;4e7450726f746563745669727475616c4d656d6f7279;43726561746552656d6f7465546872656164;47657450726f6341646472657373;4f70656e50726f63657373;EP+0:60be00??4???8dbe00??f???57eb0b908a064688074701db75078b1e83eefc11db72edb80100000001db75078b1e83eefc11db11c001db73??75??8b1e83eefc11db7??????????????????????????????????????????????????????????????????1c9;EP+0:558bec81ec4c05000053565733db53ff155???400068???140005353ff15????40008945ecff153???40003db70000000f842b03000068030100008d85c5feffff5350889dc4feffffe8????????bf040100008d85c4feffff5750e8????????8b354???400083c414578d85b8fbffff5053ffd68d85c4feffff508d85b8fbffff50e8????????595985c00f85f6010000ff75ecff154???40008d45f8508d45fc50be58?640005668f???4000e8????????83c41084c00f84a40200000175fc8d45f0508d45f4505668f???4000e8????????83c41084c00f84830200008b7df403fe33c0884405c84083f82072f68b5df083c3e033f66a208d45c8508d043e;EP+0:558bec81ec??03000053565733??68240100008d85??feffff5?5089?d??feffffe8????????89?d??89?d??e8????????8d4dfc518d4d??5168????????68????????508945??c745fce0040000e8????????83c42085c00f84??????????75fc8b75??56e8????????595985c00f84????????????????????????505???????????04????????????????????????????????????????????????????????????????8?c???????????????????8b;EP+0:60be00??????8dbe00??fcff5789e58d9c2480c1ffff31c05039dc75fb46465368????????5783c3045368????????5683c3045350c7030300020090909090905557565383ec7c8b942490000000c744247400000000c6442473008bac249c0000008d420489442478b8010000000fb64a0289c3d3e389d949894c246c0fb64a01d3e048894424688b8424a80000000fb632c7450000000000c744246000000000c70000000000b80003000089742464c744245c01000000c744245801000000c744245401000000c7442450010000000fb64a0101f1d3e08d8836070000394c2474730e8????????6c700000483c002e2f68b9c249400000031ffc7442448ff;EP+0:60be00??4???8dbe00??f???57eb0b908a064688074701db75078b1e83eefc11db72edb80100000001db75078b1e83eefc11db11c001db73??75??8b1e83eefc11db7??????????????????????????????????????????????????????????????????1c9?????????????????????????????????????????????????????b1??????????????????????????????3e?????????????????????????????????????????????????????????????????????????????????????83;EP+0:558bec81ecac060000404890909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909090909040486a00ff155050400068005140006a006a00ff154c5040008945fcff15385040003db70000007505e9????????c685f0feffff0068030100006a008d85f1feffff50e8????????83c40c68040100008d85f0feffff50e8????????595968040100008d85e8fdffff506a00ff15485040008d85f0feffff508d85e8fdffff50e8????????595985c00f8559030000ff75fcff15445040008d85d8;EP+0:558bec81ec??03000053565733??68240100008d85??feffff5?5089?d??feffffe8????????89?d??89?d??e8????????8d4dfc518d4d??5168????????68????????508945??c745fce0040000e8????????83c42085c00f84??????????75fc8b75??56e8????????595985c00f84????????????????????????505???????????04????????????????????????????????????????????????????????????????8?c???????????????????8b;EP+0:558bec81ec4c05000053565733db53ff155???400068???140005353ff15????40008945ecff153???40003db70000000f842b03000068030100008d85c5feffff5350889dc4feffffe8????????bf040100008d85c4feffff5750e8????????8b354???400083c414578d85b8fbffff5053ffd68d85c4feffff508d85b8fbffff50e8????????595985c00f85f6010000ff75ecff154???40008d45f8508d45fc50be58?640005668f???4000e8????????83c41084c00f84a40200000175fc8d45f0508d45f4505668f???4000e8????????83c41084c00f84830200008b7df403fe33c0884405c84083f82072f68b5df083c3e033f66a208d45c8508d043e;EP+0:558bec81ec8?03000053565733??68240100008d858?feffff5?5089?d8?feffffe801002???89?d??89?d??e801001???8d4dfc518d4df?5168000031??68000031??508945??c745fce0040000e801000a5?83c42085c00f84??????????75fc8b75f?56e8010017??595985c00f84????????8d46046804010000505?8945????15000030048d45fc508d45c050680000315?680000315???75??89?dfce801000a5?83c41485c00f84????????8b??fc??????????????????????????????????????????????????????????59??????????????????????????????????????6a Trojan.FakeAV.DRW;Target:1;0&(1=0);460069006c0065004400650073006300720069007000740069006f006e00{0-16}44007200570065006200200046006f0072002000570069006e0064006f00770073002000{0-8}200032003000;43006f006d00700061006e0079004e0061006d006500{0-16}44006f00630074006f00720020005700650062002c0020004c00740064002e00 Suspect.W32.AdInstall;Engine:55-255,Target:1,FileSize:100-10000000;0&1;0:4d5a;*:0603550403141450696e62616c6c20436f72706f726174 Trojan.Generic.FakeAV.WKA;Engine:51-255,Target:1,NumberOfSections:6-255;0&1=0;43006f006d00700061006e0079004e0061006d00650000{0-8}53004f0046005400570049004e00;004d53564352 Trojan.Generic.FakeAV.WKA-1;Target:1;0&1&2;43006f006d00700061006e0079004e0061006d00650000{0-8}53004f0046005400570049004e00;5550583000;5550583100 Trojan.Generic.FakeAV.WKA-2;Target:1;0&1;43006f006d00700061006e0079004e0061006d006500000000004b0069006e00670073006f0066007400200043006f00720070006f0072006100740069006f;81ec8001000053555633db57895c2418c74424107091400033f6c644241420ff153070400053ff1578724000a3d43f4200538d4424346860010000505368e8f44100ff1554714000682c9240006820374200e89a270000ff15b4704000bf009042005057e88827 Heuristic.HTML.Dropper;Target:7;(0&1&2&3);*:22346435613930{3000-}2920207773687368656c6c2e72756e20;*:6372656174656f626a6563742822736372697074696e672e66696c6573797374656d6f626a6563742229;*:2e777269746520636872;*:6372656174656f626a6563742822777363726970742e7368656c6c2229 Trojan.FakeAV.PDLC;Engine:51-255,Target:1,IconGroup1:PDLC,FileSize:100000-10000000,NumberOfSections:4-255;(0);S3+0:18f04a0040f04a0040f04a0044f04a0000000000000000000000000000000000 Trojan.FakeAV.BD-1;Engine:51-255,Target:1;0&1=0&(2|3)&4=0&5=0&6=0&7>1;VI:43006f006d00700061006e0079004e0061006d0065000000000042006900740044006500660065006e00640065007200200053002e0052002e004c00;004d535643(52|50);6b65726e656c3332;757365723332;006d6964617333322e646c6c00;004144564150493332;006d69646173636f6d6d2e646c6c00;100,1024:2e64617461000000 Trojan.FakeAV.KS-1;Engine:51-255,Target:1;(0|1)&2;VI:49006e007400650072006e0061006c004e0061006d00650000004b0073005700650062005300680069006500;VI:4f0072006900670069006e0061006c00460069006c0065006e0061006d00650000006b007700730074007200610079002e006500;53006f006600740077006100720065005c004d006900630072006f0073006f00660074005c00570069006e0064006f00770073005c00430075007200720065006e007400560065007200730069006f006e005c00520075006e000000 W32.Resur;Engine:51-255,Target:1;0&1&2;EP+0:558bec6aff6800??????6884??????64a100000000506489250000000083ec585356578965e8ff1584??????33d28ad48915a8??????8bc881e1ff000000890da4??????c1e10803ca890da0??????c1e810a39c;*:33c06a003944240868001000000f94c050ff15c0?0????85c0a388?a????7436e893feffff83f803a38c?a????750d68f8030000e86711000059eb0a;*:68202000006a00ff3588?a????ff15dc?0????8bf085f60f840c Trojan.Spy.Zbot-417;Engine:51-255,Target:1;0&1&2&3&4&5;42006f007400490044003a00200025007300;6e007300730033002e0064006c006c00;6e00740064006c006c002e0064006c006c00;7300690067006e006f006e00730033002e00740078007400;53006500530068007500740064006f0077006e00500072006900760069006c00650067006500;73006f006600740077006100720065005c00620075006c006c0065007400700072006f006f006600200073006f00660074007700610072006500 Trojan.Spy.Zbot-453;Engine:51-255,Target:1,IconGroup1:DOCUMENT;0;EP+0:5781ec00??0000545f6a??57e8 Trojan.Downloader.Small-3282;Engine:51-255,Target:1,FileSize:20000-30000,NumberOfSections:1-5;0&1&2;S1+0,250:6f70656e;EP+0:5589e56aff68??40400068????400064ff35000000006489250000000083ec505356578965e86800000002e8a00b000059a3??504000e88503000085c075086a01e86a04000059c745fc00000000e86d;S1+0,250:657865 Trojan.VB-39543;Engine:51-255,Target:1,FileSize:150000-200000,NumberOfSections:1-4;0&1;S0+96800,80:2a232cff1b04002a2328ff1b0f002a2324ff1b10002a2320ff1b11002a231cff1b12002a2318ff1b13002a2314ff1b0a002a4604fff55a000000070800040052322e006cff68ff64ff60ff5cff58ff54;S0+157600,80:2a2308ff1b0a002a46f8fef55a000000070800040052322e0060ff5cff58 Trojan.VB-39546;Engine:51-255,Target:1,FileSize:20000-70000,NumberOfSections:1-4;0&1&2;*:78fff40f2b72fff4052b74ff0b280008002b70ff0b6d000400236cff2a2364ff;S0+5900,60:610000000200000074000000020000006c000000020000006f0000000200000070000000020000005c0000001462fbc9a522534cab63;*:3031320034367d23322e0000000006000000bc27400056423521 Trojan.VB-39547;Engine:51-255,Target:1,FileSize:200000-300000,NumberOfSections:1-3;0&1&2;*:fb331cb704001af5420f00000708009400fc96f5b41500000708009400fcb000372758fff532000000f5670900000708009400fc96fdfe44ff0b64000c0046e4fef527;S0+241950,20:48fc2a2344fc0b5301000023ecf42a23e8f49408000c012afde708007c01320a0030ff48fc44fcecf4e8f40012f5041b00000708009400fc96fd00b0f4001004b0f42844ffcd0b5dfb33;S0+690,30:310000000050000000a5fbc21690603d408ae5a3a005af77dc000000000000000000000000000000000100000080000000000000000000000000000000000000000000000044010000000000000464 Trojan.Patched-164;Engine:51-255,Target:1;(0|1|2|3|4|5|6|7|8|9|10|11);S7+0:837c240801750d60909ce80c0000009d505861905159e9fd000000558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b;S5+0:837c240801750d60909ce80c0000009d505861905159e9fd000000558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b;S4+0:837c240801750d60909ce80c0000009d505861905159e9fd000000558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b;S7+10:e80f00000090906190424a90424ae91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S7+13:e80c00000090619083c500e91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S7+0:837c24080175108bed8be48bd2e80c0000008bc983c10090e91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S4+0:837c24080175108bed8be48bd2e80c0000008bc983c10090e91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S5+0:837c24080175108bed8be48bd2e80c0000008bc983c10090e91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S5+10:e80f00000090906190424a90424ae91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S4+10:e80f00000090906190424a90424ae91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S4+13:e80c00000090619083c500e91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc;S5+13:e80c00000090619083c500e91f01000090558bec83ec385333c05657c745d847657450c745dc726f6341c745e064647265c745e4737300008945fc8945f86064a1300000008b500c8b421c8b008b40088945fc Worm.Ridnu-8;Engine:51-255,Target:1;0&1;EP+0:558bec6aff6868?34?0068?4??410064a1000000005064892500;*:b864190000e8?6??0000535556576a00ff15c8?04?008b35d0?04?008d8c247418000068000100005150ffd68d5424146804010000526a00ffd683c9ff8d7c241433c08d942418010000f2aef7d1 Trojan.VB-39551;Engine:51-255,Target:1;0&1;*:36360070616365200000000006000000344140005642352136262a000000000000000000000000007e000000000000000000000000000a000904000000000000502a40005817400000f0;S0+28465:3a6cff5402f5965600000708000400fcb00032285cff5400f5556700000708000400fc96fc22044cff0abd000c00044cfff5643500 Trojan.VB-39552;Engine:51-255,Target:1;0&1;*:35360053746172747500000000060000;S0+85979:3554ff000d3a64ffdd00fdf008001000000cfc6664fffde608007000000b6364fffde608006000000cfc6664fffde608008000000d3a64ff9c00fdf00800800000436c74ff Trojan.VB-39553;Engine:51-255,Target:1;0&1&2;S0+189379:34ff0a970008000434fff58a0e00000708009400523534ff0010f5340000006c78ff9e54;S0+8340:4e004f004e00440067005400000000000c000c00000000000c0004040c00200000000000200004040c00080000000000080004043800;S0+53469:52001df53f0000000b6f0004004600fff51a1d00000708009400523500ff00 Trojan.VB-39555;Engine:51-255,Target:1;0&1;S0+123588:ff0a00000c000444fffde6080020003554ff000d3a64ff9701fdf008006000000b6364fffde6080080000020f5000000002854ff320a0444ff0a00000c000444fffde6080040003554ff0020f5000000002854ff72110444ff0a00000c000444fffde6080000003554ff0020f5000000002854ff0d140444ff0a;*:35360034367d23322e0000000006000000bc2e40 Trojan.VB-39556;Engine:51-255,Target:1;0&1&2;S0+187033:f800100470f82854ff7f325dfb331cad281ed02800100470f82854ff4e0e5dfb33;S0+140860:52353cff0012f5fc5100000708000400fc96fd007cfd0010047cfd2864ff4c065dfb331c5d091e93090010047cfd2864ff2e2a;S0+26647:520012286cff9831f5307f000007080004005200133a6cff3e Trojan.VB-39558;Engine:51-255,Target:1;(0&1&2)|(3&4&5);S0+136134:63121e861200100444fb2864ff4f415dfb331c76121e861200100444fb2864ff65065dfb331c861200133a64ff4e;S0+70033:522fe0fd3554ff1e2209000e6c54fef539310000c71ceb0800070a030000001e2209000e6c54fef5f463;S0+884:f1618fa26722d946b17a54b7532c793200;S0+90496:9400fcb000133a58ff7301f5392200000708009400fcb0000af5070000007168ff0030f5280000000b3a00040023ccfe1b38002a2334fe6c70ff2a2330fe6c68ffe4f4fffe5d2002320600ccfe34fe30;S0+34468:285cff0000f5000000006c58ff522848ff;S0+702:3135003034367d23322e00 Trojan.VB-39567;Engine:51-255,Target:1;0&1;*:50000000965027aa6e4f6c4eb7e07e;S0+149767:50ff4cff48ff44ff40ff3cff38ff34ff30ff2cff28ff24ff20ff1cff18ff14ff10ff0cff08ff04ff35c4fe1e59240002020d1b00001b01002a2378ff1b02002a2374ff1b03002a2370ff1b04002a236cff1b05002a2368ff1b06002a2364ff1b07002a2360ff1b08002a235cff1b09002a2358ff1b0a002a2354ff1b0b002a2350 Trojan.Agent-217062;Engine:51-255,Target:1;0&1;EP+25,50:555555555503?8ffd6555555555503?8ffd6555555555503?8ffd6555555555503?8ffd6555555555503?8ffd6555555555503?8ffd65555555555;EP+0:83ec0?535556 W32.Relnek;Engine:51-255,Target:1;0&1;100,1000:2e544f54000000000024;EP+0:558bec505251535657ba??????0?b800?0??00034308b9232300008d0401f03110d1ca48e2f88bc8ffe18bff W32.Expiro-15;Engine:51-255,Target:1,NumberOfSections:2-200;0&1&2&3;100,1000:2e5550583000;EP+0:605589e583ec;EP+25,200:eb148b45fc;EP+30,120:8b45??3945fc72e4c745 Trojan.Downloader-106376;Engine:51-255,Target:1;0&1;EP+0,10:53555657;EP+10,20:55555555{-6}55555555{-6}55555555{-6}55555555 Trojan.Downloader-106380;Engine:51-255,Target:1,FileSize:10000-28000,NumberOfSections:1-5,IconGroup1:DOCUMENT;0;EP+0:83ec??5355565733 Exploit.PDF-28718;Engine:51-255,Target:0,FileSize:4000-5000;0&1&2;*:3e3e656e646f626a0d0a0d0a787265660d0a3020390d0a3030303030303030303020363535333520660d0a30303030303030303137203030303030206e0d0a30303030303033383237203030303030206e;14,15:6f626a0d0a3c3c2f4c656e6774682033??????2f46696c746572205b2f415343494938354465636f64652f41534349494865784465636f64652f466c6174654465636f64655d2f54797065202f456d62656464656446696c653e3e0d0a73747265616d0d0a32604e672d41526d5a2d322e414955414d5126243066316823322e65612c416e456b55334160;0:255044462d312e35 OSX.Defma;Engine:51-255,Target:0;0&1;0:cafebabe;*:e87e3c0000c744240cd82e0100c7442408e82e01008b159c45010089542404890424e85c3c0000c744241000000000c744240c0100000089442408a1e444010089442404a154470100890424e8323c0000a3c83001008b157041010089542404890424e81b3c0000a1c830 Trojan.Patched-165;Engine:51-255,Target:1;(0|1|2|3|4|5);EP+0:8bf68bf6608bec83c4d0648b1d300000008b430c8b40148b008b008b40108945f48bc8be4000000056be003000005668003001006a0081c1819a0000ffd18945fc8b7c24ec897df0816df08ce2010081ef65;EP+0:8bff8bff608bec83c4d0b930000000648b31b80c0000008bd08b14328bd2b8140000008bc88b0c1151588bcf8b388bc7908b3f8bd7b9100000008b0c0a908bd18955f48bca53905bbe40;EP+0:8bf68bf6608bec83c4d0648b1d300000008b430c8b40148b008b008b40108945f48bc8be4000000056be003000005668003001006a0081c1f19a0000ffd18945fc8b7c24ec897df0816d;EP+0:90909090608bec83c4f0648b1d300000008b430c8b40148b008b008b40108945f46a40680030000068000001006a0005f19a0000ffd08945fce8000000005b895df0816d;EP+0:909090{200-400}446f63756d656e74735c5365727665725c686c702e6461;*:608bec83c4{200-400}446f63756d656e74735c5365727665725c686c702e6461 Heuristic.Worm.Palevo;Engine:51-255,Target:1,NumberOfSections:5-5,IconGroup1:Document;0|1;EP+0:5083?8;EP+0:5083?0 Trojan.FakeSkype.IL;Engine:51-255,Target:1,IconGroup2:Skype;0&(1=0);0:4d5a{60-300}50450000;0:4d5a{60-300}50450000????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????00000000 Trojan.SMS.Crypt.7zIL;Engine:51-255,Target:1;0&1&(2=0);53656e64534d53*536576656e5a6970457874726163746f72*44656372797074696f6e;0:4d5a{60-300}50450000;0:4d5a{60-300}50450000????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????00000000 Adware.EarnCash;Engine:51-255,Target:1;0;VI:43006f006d006d0065006e007400730000004500610072006e002000630061007300680020006f006e006c0069006e006500 Trojan.Crypted-292;Engine:51-255,Target:1;0&1;EP+0:9ce9????faff*9c8944240460881c249c0f94c0;496e7465726e65744f70656e Trojan.BAT.EHU;Engine:51-255,Target:1;0&(1>5);64656c20222573797374656d726f6f74255c73797374656d33325c647269766572735c6574635c686f73747322;6563686f20{10-30}2573797374656d726f6f74255c73797374656d33325c647269766572735c6574635c686f737473 Trojan.Generic.Banker.IUP;Engine:51-255,Target:1,IconGroup2:BANKER;0|1;555058300000*5550583100000000;EP+0:60be00????008dbe00????ff5783cdffeb109090909090908a064688074701db75078b1e83eefc11db72edb801000000 MacOSX.Revir-1;Engine:51-255,Target:9;(0&1&2);6c6f61642074726f6a616e200d002f746d702f686f7374;2f746d702f7570647464617461;2f646c6572346f7378 Trojan.Kazy-48;Engine:51-255,Target:4;(0&1&2);425741464d4158774257414555415567425441456b415477424f414638415351424f414559415477414141414141765154762f67414141514141414163;7941474541644142704147384162674141414141416367416c4141454152674270414777415a514245414755416377426a414849416151427741;4146514163674268414734416377427341474541644142704147384162674141414141414351546b Trojan.Jorik-317;Engine:51-255,Target:1;(0&1&2);443a5c457370656a6f616d2e706462;476f746d6f6c6b67;646f746e6c6a646f6f6e67 OSX.BlackHol;Engine:51-255,Target:9;(0&1&2);7761726e737472656966656e5f67656c625f37333438315f7468756d62;697369676874766964656f;46696c6542726f7773657257696e646f772e7463706c697374 OSX.BlackHol-1;Engine:51-255,Target:9;(0&1&2);726d202d72202f4170706c69636174696f6e732f2e4a617661557064617465722f2e446174612f2e69736967687463617074757265;4175737363686e656964656e;4b6f70696572656e Exploit.PDF-28726;Engine:51-255,Target:0;(0&1);2f55524920286d61696c746f3a;63616c632e657865222e636d64 Adware.MyWebSearch-15;Engine:51-255,Target:1;(0&1&2);453a5c4275696c64735c7676657072696b;4d6f7a696c6c612f342e302028436f6d70617469626c653b2050696e6729;4d696e64737061726b20496e746572616374697665204e6574776f726b Trojan.Dishigy-1;Engine:51-255,Target:1;(0&1&2);4d6f7a696c6c612f342e302028636f6d70617469626c653b2053796e6170736529;4f706572612f392e303020285769693b20553b203b20313033382d35383b205769692053686f70204368616e6e656c2f312e303b20656e29;687474703a2f2f616e656b646f742e7275 Adware.MyWebSearch-16;Engine:51-255,Target:1;(0&1&2);687474703a2f2f68656c70696e742e6d797765627365617263682e636f6d2f696e746c696e666f2f707269766163792f707269766163792e6a68746d;4d792057656220536561726368;4d6f7a696c6c612f342e302028436f6d70617469626c653b20436f75706f6e416c6572745f32704549496e7374616c6c657229 Adware.MyWebSearch-20;Engine:51-255,Target:1;(0&1&2);4d792057656220536561726368;4d795765625365617263683a;536f6674776172655c4d79576562536561726368 CVE_2011_3544;Engine:51-255,Target:0;0&1&2&3;0:504b0304;4167656e744c61756e636865722e636c617373;5268696e6f4578706c6f69742e636c617373;6167656e742e657865 CVE_2011_3544-2;Engine:51-255,Target:0;0&1&2&3;0:504b0304;6d65746173706c6f69742f5061796c6f61642e636c617373;4578706c6f69742e636c617373;6d65746173706c6f69742e646174 Exploit.CVE_2012_0013;Engine:51-255,Target:2;(0&1)&(2|3);d0cf11e0a1b11ae1;0f000904;2e6170706c69636174696f6e00;2e6170706c69636174696f6e21 Trojan.Injector-33;Engine:51-255,Target:0;(0&1);5472656e64205061636b6574204c61676f6f6e205368616d65204c65617374;4861756c7320417072696c20506f73652047616e6773205275667573204372656570 Trojan.Injector-34;Engine:51-255,Target:0;(0&1);426f736f6d2047696720526f616368205461756e7420323030312d32303037;53636f757420446570746820596f6b6520526f6f6b696520446f677320536d7567 Trojan.IRC.Zapchast-20;Engine:51-255,Target:0;0&1&2&3&4&5&6;*:5b6d6972635d;*:6e373d302c302c302c302c302c302c312c302c302c312c312c302c302c312c312c302c312c37302c302c36312c302c312c302c302c302c302c312c302c302c302c302c302c312c31;*:6e363d302c302c31322c312c312c312c312c312c312c312c302c312c312c302c302c302c312c302c302c312c302c302c3130302c312c312c302c302c312c302c312c312c302c302c31;*:6e353d312c312c312c312c312c312c312c312c312c312c363636372c302c302c302c302c302c312c302c3630302c33302c31302c302c302c32342c302c302c312c383139322c312c312c302c32352c30;*:6e343d302c302c312c302c302c332c393939392c302c302c312c312c302c313032342c302c312c3939392c36312c302c302c302c322c302c302c322c312c353030302c312c312c302c302c312c302c312c31;*:6e333d353030302c302c302c302c312c302c312c302c302c312c302c312c302c302c312c312c312c312c302c312c302c302c312c302c312c302c302c31352c302c302c312c332c3138302c30;*:6e323d302c302c302c312c312c312c312c312c302c36302c3132302c302c302c312c302c302c312c312c312c3132302c32302c31302c302c312c312c302c312c312c302c312c302c302c30 Trojan.Genome-161;Engine:51-255,Target:1;(0|1);486172644355702E657865;486172644355702E696478 CVE_2011_3401;Engine:51-255,Target:0;0&1&2;3026b2758e66cf11a6d900aa0062ce6c;a0c5c4c449002b4e98fb9537f6ce516d;56616c6902000000880000000000000015000000000000000300000000000000ffffff7f Android.SmsSend-1;Engine:51-255,Target:0;(0&1);4368616e6b2074455874206e6f7420666f756e6420696e20706e67;28665f2b77716c666834 Trojan.Stegae;Engine:51-255,Target:1;((0|1)&2);7777772e646e612d646961676e6f7374696b2e6465;2f62636177322f676174652e706870;5a3a5c636f64655c737465616C5C52656C656173655c737465616c2e706462 Trojan.Zusy-1;Engine:51-255,Target:1;(0&(1|2));69006e007300650072007400200069006e0074006f00200063006c00690065006e00740065007300310020002800440045005300430052004900430041004f0029002000760061006c007500650073;5c0053006f006600740077006100720065005c004d006900630072006f0073006f00660074005c00570069006e0064006f00770073005c00430075007200720065006e007400560065007200730069006f006e005c00520075006e0000000000b0040200ffffffff0500000057006f007200640032000000558bec83c4f0535633c9894df0894df48955f88945fc8b45;43003a005c004100720071007500690076006f0073002000640065002000700072006f006700720061006d00610073005c0043006f006400650047006500610072005c005200410044002000530074007500640069006f005c0036002e0030005c006c00690062005c007a0065006f00730037005c007300720063005c006400620063005c005a0044006200630049006e00740065007200620061007300650036005500740069006c0073 JS.ActiveX.SaveData;Engine:51-255,Target:3;(0&2&3&4)|(1&2&3&4);36353939363230302d336238372d313164342d613231662d303065303239313839383236;544c6973742e544c6973742e36;736176656461746128;2e2e;293b JS.ActiveX.SaveData-1;Engine:51-255,Target:3;(0&2&3&4)|(1&2&3&4);61336643313730302d393234432d313164352d386665352d303030346143643834366561;544c6973742e544c6973742e37;736176656461746128;2e2e;293b JS.ActiveX.SaveData-2;Engine:51-255,Target:3;(0&2&3&4)|(1&2&3&4);39356438356437372d623230302d343061342d626636412d393939653962316433623236;544c6973742e544c6973742e38;736176656461746128;2e2e;293b JS.ActiveX.SetDevNames;Engine:51-255,Target:3;0&1;303437353030332d373734302d313164312d626463332d303032306166396638653665;7365746465766e616d6573 cve_2011_2657;Engine:51-255,Target:3;(0&2)|(1&2);6c61756e636868656c702e68656c706c61756e63686572;37613735386439342d653930302d313164352d383436372d303062306430323362323032;6c61756e636870726f63657373 Trojan.Msupdater-3;Engine:51-255,Target:1;(0&1);6d73757064617465722e657865;4641564f52495445532e444154 Trojan.Neraweq;Engine:51-255,Target:1;((0|1|2)&3);3b70617373776f72643d00003b757365723d00003b706f72743d00003b7365727665723d;50006100730073000000000055007300650072000000000050006f00720074000000000048006f00730074;700061007300730077006f00720064000000000075007300650072006e0061006d0065000000000068006f00730074;63006800650063006b005f00730079007300740065006d002e00700068007000000000002a0000004d006f007a0069006c006c0061002f0035002e003000000050004f00530054 CVE_2012_0014-1;Engine:51-255,Target:1;(0&1);53797374656d2e4e65742e536f636b65747300536f636b65744173796e634576656e7441726773;4d656d62657277697365436c6f6e65 CVE_2012_0754-2;Engine:51-255,Target:0;(0|1|2|3|4|5|6|7|8|9|10|11|12|13|14)&(15|16|17|18|19|20|21|22|23|24|25|26|27|28);4:6d6f6f76;4:66747970;4:6d646174;4:66726565;4:7064696e;4:6d6f6f66;4:6d667261;4:736b6970;4:6a756e6b;4:77696465;4:706e6f74;4:70696374;4:6d657461;4:6d65636f;4:75756964;000000006175746800;000000016175746800;000000026175746800;000000036175746800;000000046175746800;000000056175746800;000000066175746800;000000076175746800;000000086175746800;000000096175746800;0000000a6175746800;0000000b6175746800;0000000c6175746800;0000000d6175746800 CVE_2012_0754-3;Engine:51-255,Target:0;(0|1|2|3|4|5|6|7|8|9|10|11|12|13|14)&(15|16|17|18|19|20|21|22|23|24|25|26|27|28);4:6d6f6f76;4:66747970;4:6d646174;4:66726565;4:7064696e;4:6d6f6f66;4:6d667261;4:736b6970;4:6a756e6b;4:77696465;4:706e6f74;4:70696374;4:6d657461;4:6d65636f;4:75756964;000000007469746c00;000000017469746c00;000000027469746c00;000000037469746c00;000000047469746c00;000000057469746c00;000000067469746c00;000000077469746c00;000000087469746c00;000000097469746c00;0000000a7469746c00;0000000b7469746c00;0000000c7469746c00;0000000d7469746c00 CVE_2012_0754-4;Engine:51-255,Target:0;(0|1|2|3|4|5|6|7|8|9|10|11|12|13|14)&(15|16|17|18|19|20|21|22|23|24|25|26|27|28);4:6d6f6f76;4:66747970;4:6d646174;4:66726565;4:7064696e;4:6d6f6f66;4:6d667261;4:736b6970;4:6a756e6b;4:77696465;4:706e6f74;4:70696374;4:6d657461;4:6d65636f;4:75756964;000000006473637000;000000016473637000;000000026473637000;000000036473637000;000000046473637000;000000056473637000;000000066473637000;000000076473637000;000000086473637000;000000096473637000;0000000a6473637000;0000000b6473637000;0000000c6473637000;0000000d6473637000 Trojan.Saeeka;Engine:51-255,Target:1;(0&1&2&3&4&5&6);536133656b61;416e746953616e64626f786965;416e74694d6341666565;416e7469436c616d4156;416e74694e6f72746f6e;416e74694b6173706572736b79;416e74694f66666963655363616e Trojan.Warezov;Engine:51-255,Target:1;(0&1);687474703a2f2f70726f74656374796f75727063;25735c70736325642e646174 CVE_2012_0768;Engine:51-255,Target:0;0&1;696d706f727420666c6173682e67656f6d2e2a;6e6577{-10}737461676533642829 Trojan.Autorun-403;Engine:51-255,Target:1;((0|1)&2);496e7374616c6c2e657865;53657276696365732e657865;23234342332323 Trojan.PHP-27;Engine:51-255,Target:0;0&1&2&3;69662866756E6374696F6E5F657869737473289265786563922929;656C736569662866756E6374696F6E5F65786973747328927368656C6C5F65786563922929;656C736569662866756E6374696F6E5F657869737473289273797374656D922929;656C736569662866756E6374696F6E5F65786973747328927061737374687275922929 PHP.Shell-53;Engine:51-255,Target:3;0&1&(2|3);6A616865656D5F7461626C65;657865{-5}676363{-5}2D6F;657865{-5}63686D6F64{-5}373737;657865{-5}63686D6F64{-5}2B78 CVE_2011_1983;Engine:51-255,Target:0;((0&1)|(1&0));3c773a73647450723e{-100}3c773a626472{-100}3c2f773a73647450723e;3c773a736474456e6450723e{-100}3c773a76616e6973683e{-100}3c2f773a736474456e6450723e HackerTool.PHP;Engine:51-255,Target:3;0&1&2&3;6B696E6764656661636572;63777368656C6C64756D706572;245F706F73745B27696E66336374275D;7065726C206C6F67736572617365722E706C PHP.Flooder-1;Engine:51-255,Target:3;0&(1|2)&((3&(5|6))|(4&(5|6)));666C6F6F64;666F72{-100}636872286D745F72616E6428312C3235362929;7768696C65{-100}636872286D745F72616E6428312C3235362929;666F72{-100}66736F636B6F70656E;7768696C65{-100}66736F636B6F70656E;7564703A2F2F{-100}6D745F72616E6428302C3630303029;7463703A2F2F Exploit.CVE_2009_2502-1;Engine:51-255,Target:0,HandlerType:CL_TYPE_GRAPHICS;(0&1&(2|3)&4&5);49492a00;0100010001000100;020103000400000016010000;02010300040000000a010000;0601030001000000050000;2DCD73DD174DD575DD91357B67500815 Email.Phishing.Blackhole;Engine:51-255,Target:4;(0=0&1);5354415220414c4c49414e4345204c4f474f;46726f6d3a202255532041697277617973202d205265736572766174696f6e7322203c7265736572766174696f6e73406d797573616972776179732e636f6d3e PHP.C99-20;Engine:51-255,Target:7;(0&1&2);2237703170652b6f347371636d66723535;2b70767677706a736b6563776c676e68666866223b;406576616c28677a696e666c617465286261736536345f6465636f646528 PHP.C99-22;Engine:51-255,Target:3;(0&1&2&3&4&5&6&7&8&9&10&11&12&13&14&15&16&17&18&19&20&21&22&23&24&25&26&27&28&29&30&31&32&33&34&35&36&37&38&39&40&41);66756e6374696f6e;6339395f627566665f7072657061726528;66756e6374696f6e;6339396673656172636828;66756e6374696f6e;6339396674706272757465636865636b28;66756e6374696f6e;633939676574736f7572636528;66756e6374696f6e;6339395f736573735f70757428;66756e6374696f6e;63393973686578697428;66756e6374696f6e;63393973685f67657475706461746528;66756e6374696f6e;66735f636f70795f64697228;66756e6374696f6e;66735f636f70795f6f626a28;66756e6374696f6e;66735f6d6f76655f64697228;66756e6374696f6e;66735f6d6f76655f6f626a28;66756e6374696f6e;66735f726d64697228;66756e6374696f6e;66735f726d6f626a28;66756e6374696f6e;746573746375726c28;66756e6374696f6e;74657374666574636828;66756e6374696f6e;746573746d7373716c28;66756e6374696f6e;746573746d7973716c28;66756e6374696f6e;746573746f7261636c6528;66756e6374696f6e;746573747065726c28;66756e6374696f6e;74657374706f737467726573716c28;66756e6374696f6e;746573747767657428 HTML.Iframe-77;Engine:51-255,Target:7;0&1&2&3;6561737465722D616E642D666F72642D7365617263682D726573756C7473;7275737369616E6261736564206372696D696E616C206672617465726E697479;666F726420626C61636B20686174;6E73322E6C6F61642D617263686976652D61762D70726F2E636F6D PHP.C99-23;Engine:51-255,Target:7;(0&1&2);6576616c28677a696e666c617465286261736536345f6465636f646528;37703135772b6d36306a69612f6a2f706d392f626e77666f777863796562616d3472786e677762;667837376472686d64626961786e75777477647778352f2f67773d3d Worm.Expichu-1;Engine:51-255,Target:1;(0&1&2);346538306677376638377765306638377765306630776566796f7566;6c6f766571;6675636b796f CVE_2006_5857;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;(0)&(1);909090e8000000005b9066c703ebfe;5249434eb941523037 PHP.Shell-60;Engine:51-255,Target:0;0&(1|2)&3&(4|5)&(6|7|8);706870;467832394944;465832395348;4665654C{-6}436F4D7A;406765746D79756964;406765746D79676964;7368656C6C5F65786563;4073797374656D;7061737374687275 W32.Suspect.Trojan.FakeAV;Engine:51-255,Target:1,IconGroup1:SMAFO,FileSize:200000-800000,NumberOfSections:4-255;0;0:4d5a Trojan.Pasmu-5;Engine:51-255,Target:0;0&1&2&3&4&5;57535F465450;536D617274465450;5365637572654658;7763785F667470;61626532383639662D396234372D346364392D613335382D633232393034646261376637;2D2D2D2D2D2D2D2D2D2D58585858585858585858585858585858585858585858 IRCbot.PHP;Engine:51-255,Target:0;(0|1|2);6b64476870637941745069427a5a57356b4b434a636544417a5848677a4d545a4362335167624739685a43427062694277636d396e636d567a6379497349485279645755704f;523061476c7a4943302b49484e6c626d516f496c78344d444e6365444d784e6b4a76644342736232466b49476c7549484279623264795a584e7a4969776764484a315a536b37;4a48526f61584d674c543467633256755a436769584867774d3178344d7a4532516d393049477876595751676157346763484a765a334a6c63334d694c434230636e566c4b54 Trojan.PHP-36;Engine:51-255,Target:0;(0|1|2);6c62484e6c6157596f4a47453950536476596c396e656d6868626d52735a58496e4b574a795a5746724f3256736332556b6331746450574679636d46354b4352685054306e5a47566d59585673644342766458527764585167614746755a47786c6369632f5a6d4673633255364a4745704f325a766369676b6154316a623356756443676b63796b744d54736b615434394d44736b615330744b58736b6331736b615631624d56303962324a665a32563058324e76626e526c626e527a4b436b3762324a665a57356b58324e735a5746754b436b3766;5673633256705a69676b595430394a32396958326436614746755a47786c63696370596e4a6c595773375a57787a5a53527a5731303959584a7959586b6f4a4745395053646b5a575a686457783049473931644842316443426f5957356b624756794a7a396d5957787a5a546f6b59536b375a6d39794b43527050574e76645735304b43527a4b5330784f795270506a30774f7952704c5330706579527a577952705856737858543176596c396e5a585266593239756447567564484d6f4b547476596c396c626d52665932786c5957346f4b547439;5a57787a5a576c6d4b4352685054306e62324a665a33706f5957356b624756794a796c69636d5668617a746c62484e6c4a484e6258543168636e4a686553676b595430394a32526c5a6d463162485167623356306348563049476868626d52735a58496e50325a6862484e6c4f6952684b54746d6233496f4a476b3959323931626e516f4a484d704c5445374a476b2b505441374a476b744c536c374a484e624a476c64577a4664505739695832646c6446396a623235305a573530637967704f323969583256755a46396a62475668626967704f33 Exploit.CVE_2012_1873;Engine:51-255,Target:3;(0&(1|2|3)&4&5&6);687474702d65717569763d22782d75612d636f6d70617469626c6522;636f6e74656e743d2269653d3922;636f6e74656e743d2269653d656d756c61746569653922;636f6e74656e743d2269653d6564676522;7061796c6f61643d225c30223b;726566726573687061796c6f61642829;6576656e742e646174612e7265706c616365282f5c302f672c2222293b Exploit.CVE_2012_1889-1;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]30 Exploit.CVE_2012_1889-2;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]31 Exploit.CVE_2012_1889-3;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]32 Exploit.CVE_2012_1889-4;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]33 Exploit.CVE_2012_1889-5;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]34 Exploit.CVE_2012_1889-6;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]35 Exploit.CVE_2012_1889-7;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]36 Exploit.CVE_2012_1889-8;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]37 Exploit.CVE_2012_1889-9;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]38 Exploit.CVE_2012_1889-10;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;66353037386633322d633535312d313164332d383962392d303030306638316665323231;38386439363963302d663139322d313164342d613635662d303034303936333235316535;38386439363965352d663139322d313164342d613635662d303034303936333235316535;38386439366130352d663139322d313164342d613635662d303034303936333235316535;2e646566696e6974696f6e28[0-10]39 Backdoor.Arwobot;Engine:51-255,Target:0;(0&1);3462346632616331323737626164383163376337626666643463386530326436;3039396166353366363031353332646264333165306561393966666465623634 W32.Virus.Expiro-1;Engine:51-255,Target:1;(0&1&2)|3|4|5;EP+4,30:53545556;EP+0:5051;100,1000:405041434b0000;EP+0:505190529053545556575589e583ec74c745fc09000000c745f804000000bb09000000c745f00b000000bf0a000000c745ec????0000e91f02000089d80345f883e80d8945d4e964010000c745cc????????ebe78145f4????0000ebeec745c4;EP+0:50515253545556575589e583ec645356578365fc00c745f004000000bb0d000000bf0a000000c745ec0700000089d801d883e81a8945c0eb158145c8????0000e9c6010000c745bc72??????eb0cc745c8????????e9d2010000c745e800??????89d883e80a8945cc8b45c43945cc73168b45cc0345c80fb6100fb64dc031ca;EP+0:505190529053545556575589e583ec6cc745f40e000000c745f8040000008365fc00c745bc????00008b45bc8945ece9ed000000c745cc????????e91c0200008b45fc89c201c28955d48145ec????0000ff4dcceb678b45fc0345f483e80b89 CVE_2006_0003-4;Engine:51-255,Target:0;(0&1&2);42443936433535362d363541332d313144302d393833412d303043303446433239453336;577363726970742e5368656c6c;4372656174654f{-40}41444f44422e53747265616d DoS.DirtJumper;Engine:51-255,Target:1;0>100;4d6f7a696c6c615c Exploit.CVE_2012_1889-11;Engine:51-255,Target:3;((0|1|2|3|4)&5);32393333626639302d376233362d313164322d623230652d303063303466393833653630;6e657720616374697665786f626a65637428226d6963726f736f66742e786d6c646f6d2e312e302229;6e657720616374697665786f626a65637428276d6963726f736f66742e786d6c646f6d2e312e302729;6372656174656f626a65637428226d6963726f736f66742e786d6c646f6d2e312e302229;6372656174656f626a65637428276d6963726f736f66742e786d6c646f6d2e312e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-12;Engine:51-255,Target:3;((0|1|2|3|4)&5);32393333626639312d376233362d313164322d623230652d303063303466393833653630;6e657720616374697665786f626a65637428226d6963726f736f66742e667265657468726561646564786d6c646f6d2e312e302229;6e657720616374697665786f626a65637428276d6963726f736f66742e667265657468726561646564786d6c646f6d2e312e302729;6372656174656f626a65637428226d6963726f736f66742e667265657468726561646564786d6c646f6d2e312e302229;6372656174656f626a65637428276d6963726f736f66742e667265657468726561646564786d6c646f6d2e312e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-13;Engine:51-255,Target:3;((0|1|2|3|4)&5);66353037386633322d633535312d313164332d383962392d303030306638316665323231;6e657720616374697665786f626a65637428226d73786d6c322e646f6d646f63756d656e742e332e302229;6e657720616374697665786f626a65637428276d73786d6c322e646f6d646f63756d656e742e332e302729;6372656174656f626a65637428226d73786d6c322e646f6d646f63756d656e742e332e302229;6372656174656f626a65637428276d73786d6c322e646f6d646f63756d656e742e332e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-14;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631312d396337332d313164332d623332652d303063303466393930626234;6e657720616374697665786f626a65637428226d73786d6c322e646f6d646f63756d656e742229;6e657720616374697665786f626a65637428276d73786d6c322e646f6d646f63756d656e742729;6372656174656f626a65637428226d73786d6c322e646f6d646f63756d656e742229;6372656174656f626a65637428276d73786d6c322e646f6d646f63756d656e742729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-15;Engine:51-255,Target:3;((0|1|2|3|4)&5);66353037386633332d633535312d313164332d383962392d303030306638316665323231;6e657720616374697665786f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e332e302229;6e657720616374697665786f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e332e302729;6372656174656f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e332e302229;6372656174656f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e332e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-16;Engine:51-255,Target:3;((0|1|2|3|4)&5);66366439306631322d396337332d313164332d623332652d303063303466393930626234;6e657720616374697665786f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742229;6e657720616374697665786f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742729;6372656174656f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742229;6372656174656f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-17;Engine:51-255,Target:3;((0|1|2|3|4)&5);38386439363963302d663139322d313164342d613635662d303034303936333235316535;6e657720616374697665786f626a65637428226d73786d6c322e646f6d646f63756d656e742e342e302229;6e657720616374697665786f626a65637428276d73786d6c322e646f6d646f63756d656e742e342e302729;6372656174656f626a65637428226d73786d6c322e646f6d646f63756d656e742e342e302229;6372656174656f626a65637428276d73786d6c322e646f6d646f63756d656e742e342e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-18;Engine:51-255,Target:3;((0|1|2|3|4)&5);38386439363963312d663139322d313164342d613635662d303034303936333235316535;6e657720616374697665786f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e342e302229;6e657720616374697665786f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e342e302729;6372656174656f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e342e302229;6372656174656f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e342e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-19;Engine:51-255,Target:3;((0|1|2|3|4)&5);38386439363965352d663139322d313164342d613635662d303034303936333235316535;6e657720616374697665786f626a65637428226d73786d6c322e646f6d646f63756d656e742e352e302229;6e657720616374697665786f626a65637428276d73786d6c322e646f6d646f63756d656e742e352e302729;6372656174656f626a65637428226d73786d6c322e646f6d646f63756d656e742e352e302229;6372656174656f626a65637428276d73786d6c322e646f6d646f63756d656e742e352e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-20;Engine:51-255,Target:3;((0|1|2|3|4)&5);38386439363965362d663139322d313164342d613635662d303034303936333235316535;6e657720616374697665786f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e352e302229;6e657720616374697665786f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e352e302729;6372656174656f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e352e302229;6372656174656f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e352e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-21;Engine:51-255,Target:3;((0|1|2|3|4)&5);38386439366130352d663139322d313164342d613635662d303034303936333235316535;6e657720616374697665786f626a65637428226d73786d6c322e646f6d646f63756d656e742e362e302229;6e657720616374697665786f626a65637428276d73786d6c322e646f6d646f63756d656e742e362e302729;6372656174656f626a65637428226d73786d6c322e646f6d646f63756d656e742e362e302229;6372656174656f626a65637428276d73786d6c322e646f6d646f63756d656e742e362e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1889-22;Engine:51-255,Target:3;((0|1|2|3|4)&5);38386439366130362d663139322d313164342d613635662d303034303936333235316535;6e657720616374697665786f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e362e302229;6e657720616374697665786f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e362e302729;6372656174656f626a65637428226d73786d6c322e667265657468726561646564646f6d646f63756d656e742e362e302229;6372656174656f626a65637428276d73786d6c322e667265657468726561646564646f6d646f63756d656e742e362e302729;2e646566696e6974696f6e28 Exploit.CVE_2012_1858;Engine:51-255,Target:0;(0&(1|2|3|4|5|6));3c7374796c653e;3a726762283235302c2729272727;3a726762283235302c5c75303032373b295c75303032373b5c75303032373b5c75303032373b;3a7267622827302c302c3029272727;3a726762282229222222;3a726762282729272727;3a7267622827292727275c75303032373b27 CVE_2012_1522-1;Engine:51-255,Target:3;(0&(1>5)&2);3c7370616e3e;3c756c;3c756c{-100}3c756c{-100}3c756c{-100}3c756c{-100}3c756c{-100}3c756c{-100}3c7461626c65{-100}3c6c69{-100}3c7363726970743e{-100}646f63756d656e742e626f64792e696e6e6572 JS.Obfus-218;Engine:51-255,Target:7;0&1&2&3&4&5&6;76617220{-15}3D223236223B;66756E6374696F6E{-20}766172{-15}646F63756D656E742E636F6F6B6965;7265706C616365282F5C732F672C222229;2E73706C697428223B2229;2E73706C697428223D2229;72657475726E20756E657363617065;646F63756D656E742E637265617465656C656D656E74 PHP.Shell-54;Engine:51-255,Target:3;0&1&2&3;6D6F6469667920627920616C6F6E6520616E6420733965637472756D;616C6F6E652073797374656D;696E695F6765742827736166655F6D6F64655F657865635F6469722729;736574736F636B6F707428732C20736F6C5F736F636B65742C20736F5F7265757365616464722C2031293B PHP.Shell-47;Engine:51-255,Target:3;0&1&2&3&4;687474703A2F2F7777772E696E66656B74696F6E67726F75702E61732E726F2F657870;3C3F706870;706F7369785F6765747569642829;706F7369785F67657465756964;706F7369785F676574676964 Exploit.CVE_2010_3333-2;Engine:51-255,Target:0;(0&1);50467261676d656e7453;363b333b3131313131313131 Exploit.PDF.Dropped-24;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;3c74656d706c61746520786d6c6e733d{-100}687474703a2f2f7777772e7866612e6f72672f{-500}3c6576656e74206163746976697479????696e697469616c697a65{-50}6170706c69636174696f6e2f782d6a617661736372697074 Exploit.CVE_2012_2521;Engine:51-255,Target:3;0&1;666F6E742D66616365;666F6E742D66616D696C79{-40}7372633A{-20}75726C286D61696C746F3A Exploit.CVE_2012_2523;Engine:51-255,Target:3;0&1&2&3;766172726570726F737472;696628726570726F7374722E6C656E6774683C3078376666666666666629;726570726F7374723D726570726F7374722B726570726F7374723B;77696E646F772E6F6E6C6F6164 PDF.Exploit.CVE_2012_4152;Engine:51-255,Target:0;0&1&2&(3=0);0:25504446;25215053;0D2F426C656E6420;0D2F576569676874566563746F72205B ANDR.Trojan.SMSZombie;Engine:51-255,Target:0;(0&1&2);6173736574732F6133332E6A7067;620061006f007800690061006e005f007a0068007500730068006f007500;416E64726F69644D616E69666573742E786D6C JAVA.Exploit.Agent;Engine:51-255,Target:0;0&1&2;63766532303132787878782F476F6E647A7A;6A6176612F6C616E672F50726F636573730C006D002A01000777616974466F7201000B706172616D537472696E6701000C6C6F63616C50726F63657373;7869616F6D616F6C JAVA.Exploit.Agent-1;Engine:51-255,Target:0;0&1&2&3&4;63766532303132787878782F476F6E647676;64697361626C655365637572697479;6A6176612F73656375726974792F416C6C5065726D697373696F6E;7869616F6D616F6C;6A6176612F73656375726974792F50726F74656374696F6E446F6D61696E JAVA.Exploit.Agent-2;Engine:51-255,Target:0;0&1&2&3&4&5&6;CAFEBABE;6A6176612F73656375726974792F50726F74656374696F6E446F6D61696E;66696C653A2F2F2F0C;6A6176612F73656375726974792F416363657373436F6E74726F6C436F6E74657874;73756E2E6177742E53756E546F6F6C6B6974;6A6176612F6177742F4772617068696373;64697361626C655365637572697479 Trojan.Swisyn-159;Engine:51-255,Target:1;(0=11&1=6);45696371;5642696371 JAVA.Exploit.Agent-3;Engine:51-255,Target:0;0&1&2&3&4&5&6;CAFEBABE;6E6473686573612F6E647368657364;6A6176612F73656375726974792F416C6C5065726D697373696F6E0A;6A6176612F73656375726974792F50726F74656374696F6E446F6D61696E;6A6176612F73656375726974792F416363657373436F6E74726F6C436F6E74657874;666F724E616D65;67657456616C7565 JS.Exploit.CVE_2012_4969.gen;Engine:51-255,Target:3;(0&1&2&3);3c626f6479{-50}6f6e73656c6563743d22;646f63756d656e742e65786563636f6d6d616e64282273656c656374616c6c2229;646f63756d656e742e77726974652822;706172656e742e{-50}7372633d22 HTML.Exploit.Bugdork;Engine:51-255,Target:7;(0&1&((2&3)|(4&5)|(6&7)));62756720646F726B;2E7068703F;7068706262;70687062625F726F6F745F70617468;776F72647072657373;626B7077705F706C7567696E5F70617468;6A6F6F6D6C61;6D6F73636F6E6669675F6162736F6C7574655F70617468 Trojan.Win32.Bledoor;Engine:51-255,Target:1;(0&1&2&3);483a5c446f75626c655c446f6f725f77685c417070496e69745c52656c656173655c417070496e69742e706462;4973446562756767657250726573656e74;776f726b5f656e64;776f726b5f7374617274 PDF.Exploit.Agent;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;255044462d*14ffffff{-200}55ffffff{-25}000000??0000000e(01|02|03|04|05|06|07|08|09)000000000e0100(01|02|03|04|05|06|07|08|09)000000(03|04|05|06|07|08|09) PDF.Exploit.CVE_2012_4154-2;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;2c234b5458202060b00160258a381b232159b8ffff622d PDF.Exploit.CVE_2012_4157;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;55554e4d535a2b5454464641*3e3e73747265616d{-29}636d6170*000000020001000000000014000300000000011a*000c0052000000 PDF.Exploit.CVE_2011_4370-1;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;FFDB0084000101010101010101010101*FFDA0008010101063F00794BEA28271D16B6AADC4E4E6F9238026DCACE PDF.Exploit.CVE_2008_2992;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;7574696c2e7072696e7466{-3}282225(31|32|33|34|35|36|37|38|39)(30|31|32|33|34|35|36|37|38|39)(30|31|32|33|34|35|36|37|38|39)(30|31|32|33|34|35|36|37|38|39)66 OSX.Trojan.Iumler-1;Engine:51-255,Target:0,HandlerType:CL_TYPE_ZIP;0;796f7572206469727420706963732f6469636b2e617070 WIN.Trojan.Mapegost;Engine:51-255,Target:1;(0&1);687474703a2f2f39352e3136332e38392e3233362f7370616d6765742e706870;6d6f64653d676574 XLS.Exploit.CVE_2011_0977_gen;Engine:51-255,Target:2;(0&(1|2));1152:57006f0072006b0062006f006f006b;00????????0f0004f0????????????!(0a|0a)!(f0|f0)08000000;0f0003f0????????0f0004f0????????010009f010000000{18}!(0a|0a)!(f0|f0)08000000 WIN.Trojan.Lanman2;Engine:51-255,Target:1;(0&1&2&3);456f616a42776561766c;456f616a427868;496e69746961746553797374656d53687574646f776e57;456f616a5669677a WIN.Trojan.Geeksmail;Engine:51-255,Target:1;(0&1&2);4973446562756767657250726573656e74;497350726f636573736f724665617475726550726573656e74;0d0a0000696d70726f766520706572666f726d616e636500636865636b3d000052454d4f54455f414444520025750000746578742f68746d6c000000504f5354 PDF.Exploit.CVE_2012_4151-1;Engine:51-255,Target:0;0&(1|2);0:25504446;204249{-100}2F4353(2030|2031|2032|2033|2034|2035|2036|2037|2038|2039){-100}494420{-100}454920;204249{-100}436F6C6F725370616365(2030|2031|2032|2033|2034|2035|2036|2037|2038|2039){-100}494420{-100}454920 WIN.Trojan.Daws;Engine:51-255,Target:1;(0&1&2&3&4);4070696e67;312e302e302e31;51514c4f47494e2e455845;73656e2e646c6c;636f6d33322e657865 Win.Trojan.Mirage;Engine:51-255,Target:1;(0|1|(2&3)|4);4e0065006f002c00770065006c0063006f006d006500200074006f00200074006800650020006400650073006500720074;66006d003500300067006f006f006c00670065003f;4d6972616765;25647e4350552f25757e4d487a;3c00430054003e003a002000530079007300740065006d0020004900730020007200650062006f006f00740020002a002a002a002a HackerTool.PHP-1;Engine:51-255,Target:3;0&1&(2|3|4)&(5|6);70697863686572;246F776E65725B2272656164225D203D2028246D6F64652026;6379626572207368656C6C;6379626572206C6F72647320636F6D6D756E697479;687474703A2F2F7777772E63796265726C6F7264732E6E6574;2461355C6E246233335C6E246338375C6E246432335C6E246530395C6E246632335C6E246733325C6E24683635;6A6F686E2E6261726B657234343640676D61696C2E636F6D WIN.Trojan.MiniFlame;Engine:51-255,Target:1;(0&1&2);526567697374657253657276696365;536572766963654d61696e;696373766e74*3332 WIN.Trojan.Gauss;Engine:51-255,Target:1;(0&1&2);7400610072006700650074002e006c006e006b;2e004200610063006b0075007000300044;250078003a UNIX.Exploit.CVE_2010_3301-2;Engine:51-255,Target:6;(0&1&2&3&4);636f6d6d69745f6372656473;707265706172655f6b65726e656c5f63726564;2f70726f632f6b616c6c73796d73;2f62696e2f7368;707472616365 SWF.Exploit.CVE_2012_5271;Engine:51-255,Target:0;(0&1);0:465753;D04900D02D036200(92|94)0A824F0B0247 SWF.Exploit.CVE_2012_4167;Engine:51-255,Target:0;((0&1&2)&(3=0));8:6d7034;73696e66;7374737a0000000000000000{4}00000000;7374737a00000000000000000000000000000000 Win.Trojan.Downloader-52;Engine:51-255,Target:1;0&1&2;476F6F676C6520706167650025733F6D61633D2573267573657269643D25730025732D25732D25732D25732D25732D2573;633A5C53617665547874613731362E747874;5C50726F6772616D2046696C65735C446F776E54656D705C Win.Trojan.Halnine;Engine:51-255,Target:1;(0&1);8a882c65400080f142d0e9884c04244083f80a7ceb;5051c744241823000000c64424442fff152c50400085c075048844243c8a15ac6440008d7c241480f22683c9ffd0ea33c088542414 Pdf.Exploit.Dropped;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;3c3c2f5469746c65202871484664546c664129202f5375626a65637420283235666275353729202f417574686f7220286632356662753529202f43726561746f7220282529202f4372656174696f6e4461746520286576616c293e3e HackerTool.PHP-2;Engine:51-255,Target:7;0&1&2&3;3C3F706870;247831633D225C7836345C3135315C3136336B5C3134365C3136325C313435655C7837335C3136305C7836315C7836335C783635223B;676C6F62616C20247831632C247831642C247831652C247831662C247832302C247832312C247832322C247832332C247832342C247832353B;6563686F20225C783639645C30373220247830663C5C3134325C7837323E223B Andr.Trojan.FakeTimer;Engine:51-255,Target:0,Container:CL_TYPE_ZIP;0&(1|2|3|4|5);0:646578;687474703a2f2f65726f7474652e636f6d2f636865636b2e7068703f69643d;687474703a2f2f65726f7474652e636f6d2f73656e642e7068703f615f69643d;687474703a2f2f65726f7474652e636f6d2f72677374352e7068703f677073783d;687474703a2f2f65726f7474652e636f6d2f73656e642e7068703f615f69643d;687474703a2f2f65726f7474652e636f6d2f72677374352e7068703f677073783d Email.Trojan.Agent;Engine:51-255,Target:4;0&1;4f6e6c79206f6e65207265706c7920697320706f737369626c6520756e74696c2031312f31312f323031312e;6e616d653d22{-30}5f4d4d532e7a697022 Email.Trojan.Agent-1;Engine:51-255,Target:4;0&1;5375626a6563743a20495253206e6f74696669636174696f6e206f6620796f7572207461782061707065616c207374617475732e;6e616d653d224952535f Win.Exploit.KaiXin;Engine:51-255,Target:3;0&1&2&3;636C7369643A66366439306631312D396337332D313164332D623332652D303063303466393930626234;686561706C69622E69652E70726F746F747970652E667265656F6C656175743332;686561706C69622E69652E70726F746F747970652E616C6C6F636F6C656175743332;2830786261626529 Win.Exploit.KaiXin-1;Engine:51-255,Target:0;0&1&2;636B776D636B776D636B776D457870;6A6176612E6C616E672E52756E74696D652E67657452756E74696D6528292E657865632827636D642E657865;222574656D70255C5C79456D6B384B70762E766273222626636D642E657865202F63206563686F206D3D224D766976637672766F7673766F76667674762E7658764D764C7648765476547650223E3E222574656D70255C5C79456D6B384B70762E766273222626636D642E657865 JAVA.Trojan.Jacksbot;Engine:51-255,Target:0;(0&1&2&3&4&5);23212f62696e2f62617368;2e6d696e656372616674;2f6574632f72632e636f6d6d6f6e;2f6574632f72632e6c6f63616c;2e66696c657a696c6c612f726563656e74736572766572732e786d6c;464c4f4f4420445241494e WIN.Trojan.Banload;Engine:51-255,Target:1;(0&1&2&3);73747250617373776f7264;557365724e616d65;52656365697461;4c6f61645f436c69656e746533 Java.Exploit.CVE_2010_3552;Engine:51-255,Target:3;(0|1);3c706172616d{-10}6e616d653d226c61756e63686a6e6c7022{-50}3c706172616d{-10}6e616d653d22646f636261736522{-50}76616c75653d22{70-}22202f3e{-25}3c2f68746d6c3e;3c706172616d{-10}6e616d653d226c61756e63686a6e6c7022{-50}3c706172616d{-10}6e616d653d22646f636261736522{-50}76616c75653d22{-20}73626f66{-20}222f3e OSX.Trojan.Imuler-1;Engine:51-255,Target:9;(0&1&2&3);2f746d702f6c61756e63682d494353303030;2e636f6e6672;726d;2d7266 Win.Trojan.Macnsed-2;Engine:51-255,Target:1;(0&1);496362634461656d6f6e2e657865;31392e747874 WIN.Trojan.Dulom-1;Engine:51-255,Target:1;(0&1&2);687474703a2f2f37322e3234392e37372e3136382f636f6e662e706163;57696e56697374612d6f752d536576656e;4572617365 Win.Trojan.VB-4446;Engine:51-255,Target:1;(0&1);73784945;50ffd6508d4dcc68783b400051ffd6508d55d068603b400052ffd6508d45d4684c3b400050ffd650e8a34effff89458cff15501040008b4dc88d55dc5152ff15e81040008d45c08d4dc48b5d8c508d55 WIN.Trojan.Darkcpn-1;Engine:51-255,Target:1;(0&1);636f6d33322e737973;64656c3034332e626174 HTML.Trojan.Blackhole-9;Engine:51-255,Target:3;(0&1&2&3);3e796f752063616e20646f776e6c6f616420796f7572;6c6963656e7365203c6120687265663d22;223e68657265203c;68656c7066756c20746970732c207475746f7269616c732c20616e64206573656d696e6172732e UNIX.Trojan.Snakso;Engine:51-255,Target:6;(0&1&2&3);7a7a7a7a7a7a5f636f6d6d616e645f687474705f696e6a6563745f666f725f6d6f64756c655f696e6974;696e6a656374;6f6b21;2f2e6b65726e656c5f76657273696f6e5f746d70 WIN.Virus.Crosser;Engine:51-255,Target:1;0&1;0:4d5a??58;EP+0:558bec83ec14535657c745f001000000e81f0300008945ec8b45ec506851f4087fe8790300008945fc8d4df4516a006a006866????006a006a00ff55fc8945f8909090909090909090909090909090909090909090909090 WIN.Trojan.SMSSend;Engine:51-255,Target:1;(0&1);696e737273696434303637393731;736d736f6e6c696e65 Suspect.Trojan.Generic.TPF;Engine:51-255,Target:1,IconGroup1:TEPFER;0|1|2|3;EP+0:33d2ff742410e8;*:676c655f70726a5c7372635c7469676572345f76;VI:43006f006d00700061006e0079004e0061006d006500000000004d006900630072006f0073006f0066007400200043006f00720070006f007200610074006900;EP+0:080e40 WIN.Trojan.Changeup-3;Engine:51-255,Target:1;(0&1&2&3);433030302d446174746f67726170686163;4570696d6f7270686f736973;322e506572666f726d;706f6d70616e646f WIN.Trojan.Vobfus-27;Engine:51-255,Target:1;(0&1&2);433030302d4865616c736f6d65;6d616c6164617074;4865616c736f6d65 Win.Trojan.Quarian;Engine:51-255,Target:0,HandlerType:CL_TYPE_PDF;0;3480:00c40000a6d237fefffd7dfc7efb7bfa850679f824f777f676f575f454f373f272f171f070ef6fee PHP.Shell-56;Engine:51-255,Target:7;0&1&2&3&4;3C3F706870;6572726F725F7265706F7274696E67283029;7365745F74696D655F6C696D6974283029;6B6574656B393040676D61696C2E636F6D;6576616C28677A696E666C617465286261736536345F6465636F6465 Win.Exploit.CVE_2012_1537;Engine:51-255,Target:2;((0)&(1|2|3|4|5|6|7));d0cf11e0a1b11ae1;75672b3bb670af45ea8df35995c609a2;4d486f285e37584472a26a0af8e238b1;ad5579663b6bca4349b97fffbab569bc;50364a6d8d62d2110fae1114b0976000;605d3b748d62d2110fae1114b0976000;c61d3f74ba5a9f42df8bc23d25034dc5;23954a93caa3c54ba0ad2194975dd9d6 Win.Exploit.CVE_2012_1537-1;Engine:51-255,Target:3;((0)&(1|2|3|4|5|6|7));3c6f626a656374{-256}636c7369643a;32383666343834642d333735652d343435382d613237322d623133386532663830613661;33623262363737352d373062362d343561662d386465612d613230396336393535396633;36363739353561642d366233622d343363612d623934392d626336396235626166663766;36643461333635302d363238642d313164322d616530662d303036303937623031343131;37343362356436302d363238642d313164322d616530662d303036303937623031343131;37343366316463362d356162612d343239662d386264662d633534643033323533646332;39333461393532332d613363612d346263352d616461302d643664393564393739343231 WIN.Trojan.Kuluoz-5;Engine:51-255,Target:1;(0&1&2&3);52696e67;4761696e;5354415455535f494c4c4547414c5f494e535452554354494f4e;44656c726567 HTML.Exploit.C99-1;Engine:51-255,Target:3;(0&1&2&3);66696c656e796f;2e65786563;6c73;2d6c61 PHP.Exploit.C99;Engine:51-255,Target:3;(0&1&2&3);77696565656565;6d6435;637261636b6572;7368656c6c5f65786563 PERL.Exploit.C99;Engine:51-255,Target:0;(0&1&2&3);4d617373;4465666163656d656e74;643a663a6e;74726f6361 JS.Exploit.CVE_2012_4792;Engine:51-255,Target:3;((0|1|2|3)&4&5&6);696e6e6572746578743d(22|27)(22|27);6f75746572746578743d(22|27)(22|27);696e6e657268746d6c3d(22|27)(22|27);6f7574657268746d6c3d(22|27)(22|27);617070656e646368696c6428646f63756d656e742e637265617465656c656d656e7428(22|27)627574746f6e(22|27)29;3c666f726d2069643d{-10}3c2f666f726d3e;3c64666e2069643d{-10}3c2f64666e3e WIN.Trojan.Backdoor;Engine:51-255,Target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rojan.CVE_2011_1999;Engine:51-255,Target:3;(0&(1|2|3));3c736372697074;2e6f7074696f6e732e61646428{-15}2d3078{-10}293b;2e6f7074696f6e732e61646428{-15}2c2d{-10}293b;2e6f7074696f6e732e61646428{-15}2c202d{-10}293b Andr.Trojan.SMSsend-1;Engine:51-255,Container:CL_TYPE_ZIP,Target:3;0;68746d6c2375726c3d687474703a2f2f6b6c64617461{1}2e6e65742f3f753d Perl.Shellbot-8;Engine:51-255,Target:7,FileSize:50-102400;(0);2321{1-20}7065726c*75736520736f636b65743b*2f62696e2f7368*736f636b616464725f696e2824*67657470726f746f62796e616d65*736f636b657428*73797374656d2824 Win.Exploit.Iosjailbreak;Engine:51-255,Target:1;(0&1&2&3&4);687474703a2f2f6576617369306e2e636f6d;6950686f6e65;69506f6420546f756368;69506164;2f7661722f6d6f62696c652f4c6962726172792f4361636865732f636f6d2e6170706c652e6d6f62696c652e696e7374616c6c6174696f6e2e706c697374 Unix.Exploit.Iosjailbreak;Engine:51-255,Target:6;(0&1&2&3&4);687474703a2f2f6576617369306e2e636f6d;6950686f6e65;69506f6420546f756368;69506164;2f7661722f6d6f62696c652f4c6962726172792f4361636865732f636f6d2e6170706c652e6d6f62696c652e696e7374616c6c6174696f6e2e706c697374 HTML.Exploit.SVG;Engine:51-255,Target:0;0&1&2&(3|4|5|6|7|8);77696E646F772E6F706572612E636F6C6C6563742829;66656E675F7368756928293B;3C636C697070617468;3C636972636C65;3C72656374;3C656C6C69707365;3C6C696E65;3C706F6C796C696E65;3C706F6C79676F6E SWF.Exploit.CVE_2013_0634-2;Engine:51-255,Target:0;0&(1|2)&(3|4)&(5|6);465753;726567457823;526567457870;283F{-5}6929{-50}7C7C;283F69{-50}7C7C;283F2D{-5}6929{-50}7C7C;283F2D69{-50}7C7C PDF.Exploit.CVE_2010_0188-4;Engine:51-255,Target:0;(0&1);696d6167652f544946;41414141414141413d3c2f696d616765 HTML.Exploit.CVE_2013_0026;Engine:51-255,Target:3;0&1&2&3&4&5;736372697074;73656c656374616c6c;65786563636f6d6d616e6428226a757374696679;65786563636f6d6d616e6428226a757374696679;73656c656374616c6c;2f736372697074 HTML.Exploit.CVE_2013_0029;Engine:51-255,Target:3;(0&1);2e666f637573;6f6e6265666f726565646974666f637573{-50}646f63756d656e742e