New
#11
logs part one
[code]
HitmanPro 3.7.6.201
www.hitmanpro.com
Computer name . . . . : SOMEONES-PC
Windows . . . . . . . : 6.1.1.7601.X64/4
User name . . . . . . : Someones-PC\Enrique
UAC . . . . . . . . . : Enabled
License . . . . . . . : Trial (30 days left)
Scan date . . . . . . : 2013-07-23 01:18:04
Scan mode . . . . . . : Normal
Scan duration . . . . : 26m 8s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : No
Threats . . . . . . . : 556
Traces . . . . . . . : 3196
Objects scanned . . . : 31,756,167
Files scanned . . . . : 969,215
Remnants scanned . . : 29,953,891 files / 833,061 keys
Malware _____________________________________________________________________
C:\$Recycle.Bin\S-1-5-21-3946502291-3340588053-1113517402-1000\$8ccb4cf9c6070d760d7d2da245d8f97a\n -> Deleted
Size . . . . . . . : 42,496 bytes
Age . . . . . . . : 71.2 days (2013-05-12 20:58:28)
Entropy . . . . . : 5.3
SHA-256 . . . . . : 8244DDFCBA327A3F67A5582642C53241EE5E58D75808547CD74808BCDED272D0
> G Data . . . . . . : Trojan.Sirefef.KH
> Ikarus . . . . . . : Trojan.Win64!IK
Fuzzy . . . . . . : 115.0
C:\$Recycle.Bin\S-1-5-21-3946502291-3340588053-1113517402-1000\$8ccb4cf9c6070d760d7d2da245d8f97a\U\80000000.@ -> Deleted
Size . . . . . . . : 15,360 bytes
Age . . . . . . . : 71.2 days (2013-05-12 20:59:43)
Entropy . . . . . : 5.4
SHA-256 . . . . . : E483D414588EA9E002CFADD9786088D90557AEB473C0C5C62C8E4B34C58DBDB9
> G Data . . . . . . : Trojan.Generic.8044919
> Ikarus . . . . . . : Trojan.Win64!IK
Fuzzy . . . . . . : 110.0
C:\$Recycle.Bin\S-1-5-21-3946502291-3340588053-1113517402-1000\$8ccb4cf9c6070d760d7d2da245d8f97a\U\80000032.@ -> Deleted
Size . . . . . . . : 90,624 bytes
Age . . . . . . . : 71.2 days (2013-05-12 20:59:43)
Entropy . . . . . : 6.6
SHA-256 . . . . . : EF8766EFC0DDC7A56A71DBCC65200537988163512C70F9CE8CD44398943DE5AD
> G Data . . . . . . : Trojan.Sirefef.XL
> Ikarus . . . . . . : Trojan.Win32.Alureon!IK
Fuzzy . . . . . . : 110.0
C:\$Recycle.Bin\S-1-5-21-3946502291-3340588053-1113517402-1000\$8ccb4cf9c6070d760d7d2da245d8f97a\U\80000064.@ -> Deleted
Size . . . . . . . : 77,312 bytes
Age . . . . . . . : 71.2 days (2013-05-12 20:59:43)
Entropy . . . . . : 6.1
SHA-256 . . . . . : DBDAEA813662144D3D37323DDAB9C9DC63501FB09E9DA3C70325BE5CA816C92B
> G Data . . . . . . : Trojan.Sirefef.YA
> Ikarus . . . . . . : Trojan.Win64!IK
Fuzzy . . . . . . : 110.0
C:\Users\Enrique\AppData\Local\Temp\1393509943_minerd3.exe -> Deleted
Size . . . . . . . : 9,728 bytes
Age . . . . . . . : 45.3 days (2013-06-07 19:12:00)
Entropy . . . . . : 4.6
SHA-256 . . . . . : 39574F1D8CF33A576CF360CDF38C6C9667836F77783387AF5DC6FFAB38C309D1
Description . . . :
Version . . . . . : 0.0.0.0
Copyright . . . . :
> G Data . . . . . . : Gen:Variant.Kazy.158415
> Ikarus . . . . . . : Trojan.CoinMiner!IK
Fuzzy . . . . . . : 106.0
C:\Users\Enrique\AppData\Local\Temp\1393632607_minerd3.exe -> Deleted
Size . . . . . . . : 9,728 bytes
Age . . . . . . . : 45.3 days (2013-06-07 19:14:02)
Entropy . . . . . : 4.6
SHA-256 . . . . . : 39574F1D8CF33A576CF360CDF38C6C9667836F77783387AF5DC6FFAB38C309D1
Description . . . :
Version . . . . . : 0.0.0.0
Copyright . . . . :
> G Data . . . . . . : Gen:Variant.Kazy.158415
> Ikarus . . . . . . : Trojan.CoinMiner!IK
Fuzzy . . . . . . : 106.0
C:\Users\Enrique\AppData\Local\Temp\msimg32.dll -> Deleted
Size . . . . . . . : 147,968 bytes
Age . . . . . . . : 71.2 days (2013-05-12 20:58:28)
Entropy . . . . . : 7.7
SHA-256 . . . . . : A042B0B150765C698A909463F5E8CCF3B687C5150F88E3FA43A697C069B9744D
Product . . . . . : Microsoft® Windows® Operating System
Publisher . . . . : Microsoft Corporation
Description . . . : CertReq.exe
Version . . . . . : 6.1.7600.16385
Copyright . . . . : © Microsoft Corporation. All rights reserved.
> G Data . . . . . . : Trojan.GenericKDZ.17846
> Ikarus . . . . . . : Trojan-Dropper.Win32.Sirefef!IK
Fuzzy . . . . . . : 113.0
C:\Users\Enrique\AppData\Local\Temp\tmp32D4.tmp.exe -> Deleted
Size . . . . . . . : 759,296 bytes
Age . . . . . . . : 45.3 days (2013-06-07 17:16:07)
Entropy . . . . . : 8.0
SHA-256 . . . . . : D9C3A070C9F7EE6A42B1EC415645C812E0E674B16C895DDCBFF2D52261066386
Product . . . . . : Demoridus
Description . . . : Demoridus
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © Demoridus 2013
> G Data . . . . . . : Trojan.GenericKDZ.20587
> Ikarus . . . . . . : Backdoor.Win32.Androm!IK
Fuzzy . . . . . . : 114.0
C:\Users\Enrique\AppData\Local\Temp\tmp3C76.tmp.exe -> Quarantined
Size . . . . . . . : 435,200 bytes
Age . . . . . . . : 24.0 days (2013-06-29 01:35:54)
Entropy . . . . . : 7.9
SHA-256 . . . . . : 168167EFE8E8A73FC059EA46362A9FD95DBBF949A4F28D850DE145364026F1B2
Product . . . . . : The Dargon Project
Publisher . . . . : ItzWarty
Description . . . : Dargon Setup
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © ItzWarty 2012
> Ikarus . . . . . . : Backdoor.Win32.Androm!IK
Fuzzy . . . . . . : 113.0
C:\Users\Enrique\AppData\Local\Temp\tmp3DA6.tmp.exe -> Deleted
Size . . . . . . . : 758,272 bytes
Age . . . . . . . : 46.2 days (2013-06-06 20:27:42)
Entropy . . . . . : 8.0
SHA-256 . . . . . : CDBC12609746961EB1B623880E71211B91CB11FF67A7FA369D4A872249EA1794
Product . . . . . : ModellNvid
Description . . . : ModellNvid
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © ModellNvid 2013
> G Data . . . . . . : Gen:Variant.Zusy.49764
> Ikarus . . . . . . : Backdoor.Win32.Fynloski!IK
Fuzzy . . . . . . : 114.0
C:\Users\Enrique\AppData\Local\Temp\tmp5FFD.tmp.exe -> Quarantined
Size . . . . . . . : 435,200 bytes
Age . . . . . . . : 24.0 days (2013-06-29 01:36:03)
Entropy . . . . . : 7.9
SHA-256 . . . . . : 168167EFE8E8A73FC059EA46362A9FD95DBBF949A4F28D850DE145364026F1B2
Product . . . . . : The Dargon Project
Publisher . . . . : ItzWarty
Description . . . : Dargon Setup
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © ItzWarty 2012
> Ikarus . . . . . . : Backdoor.Win32.Androm!IK
Fuzzy . . . . . . : 113.0
C:\Users\Enrique\AppData\Local\Temp\tmp6809.tmp.exe -> Deleted
Size . . . . . . . : 509,952 bytes
Age . . . . . . . : 45.3 days (2013-06-07 19:09:56)
Entropy . . . . . : 7.9
SHA-256 . . . . . : 6F1864708A08FB79D319C6957F922EB5131C63252633D617229E839FC76DA9F8
Product . . . . . : Demoridus
Description . . . : Demoridus
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © Demoridus 2013
> G Data . . . . . . : Trojan.GenericKDZ.20587
> Ikarus . . . . . . : Backdoor.Win32.Androm!IK
Fuzzy . . . . . . : 114.0
C:\Users\Enrique\AppData\Local\Temp\tmp6894.tmp.exe -> Deleted
Size . . . . . . . : 759,808 bytes
Age . . . . . . . : 45.3 days (2013-06-07 17:54:34)
Entropy . . . . . : 8.0
SHA-256 . . . . . : 6E6E752BB526C76207CEFC98A48DB3BDB4F06B279082005FD8DF727A47E058E0
Product . . . . . : Demoridus
Description . . . : Demoridus
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © Demoridus 2013
> G Data . . . . . . : Trojan.GenericKDZ.20587
> Ikarus . . . . . . : Backdoor.Win32.Androm!IK
Fuzzy . . . . . . : 114.0
C:\Users\Enrique\AppData\Local\Temp\tmp91E2.tmp.exe -> Deleted
Size . . . . . . . : 759,296 bytes
Age . . . . . . . : 36.5 days (2013-06-16 12:35:39)
Entropy . . . . . : 8.0
SHA-256 . . . . . : D9C3A070C9F7EE6A42B1EC415645C812E0E674B16C895DDCBFF2D52261066386
Product . . . . . : Demoridus
Description . . . : Demoridus
Version . . . . . : 1.0.0.0
Copyright . . . . : Copyright © Demoridus 2013
> G Data . . . . . . : Trojan.GenericKDZ.20587
> Ikarus . . . . . . : Backdoor.Win32.Androm!IK
Fuzzy . . . . . . : 114.0