Nom:TR/Puper.BX
La date de la découverte:05/07/2006
Type:Cheval de Troie
En circulation:Oui
Infections signalées Faible
Potentiel de distribution:Faible
Potentiel de destruction:Faible
Fichier statique:Oui
Taille du fichier:5.214 Octets
Somme de contrôle MD5:f2ccb19280834ca508c5863d03c38918
Version VDF:6.35.00.120

 Général Méthode de propagation:
   • Il ne possède pas de propre routine de propagation


Les alias:
   •  Symantec: Trojan.Favadd
   •  Mcafee: QFav-4
   •  Kaspersky: Trojan.Win32.Puper.bx
   •  TrendMicro: TROJ_PUPER.BX
   •  Sophos: Troj/Favadd-O
   •  VirusBuster: trojan Trojan.CL.Agent.DPL
   •  Bitdefender: Trojan.Clicker.AA


Plateformes / Systèmes d'exploitation:
   • Windows 95
   • Windows 98
   • Windows 98 SE
   • Windows NT
   • Windows ME
   • Windows 2000
   • Windows XP
   • Windows 2003


Effets secondaires:
   • Il crée des fichiers

 Fichiers  Il crée les répertoires suivants:
   • %HOME%\Favorites\Spyware Uninstall
   • %ALLUSERSPROFILE%\Favorites\Spyware Uninstall
   • %HOME%\Favorites\Sex and Dating
   • %ALLUSERSPROFILE%\Favorites\Sex and Dating
   • %HOME%\Favorites\Online Pharmacy
   • %ALLUSERSPROFILE%\Favorites\Online Pharmacy



Les fichiers suivants sont créés:

– Fichiers inoffensifs:
   • %HOME%\Favorites\Spyware Uninstall\Free Spyware Scanner..url;
      %ALLUSERSPROFILE%\Favorites\Spyware Uninstall\Free Spyware Scanner..url;
      %HOME%\Favorites\Spyware Uninstall\Stop PopUps on your PC..url;
      %ALLUSERSPROFILE%\Favorites\Spyware Uninstall\Stop PopUps on your PC..url;
      %HOME%\Favorites\Spyware Uninstall\Search & Destroy Annoying Adware..url;
      %ALLUSERSPROFILE%\Favorites\Spyware Uninstall\Search & Destroy Annoying
      Adware..url; %HOME%\Favorites\Spyware Uninstall\Easy Detect and Uninstall
      Spyware..url; %ALLUSERSPROFILE%\Favorites\Spyware Uninstall\Easy Detect and
      Uninstall Spyware..url; %HOME%\Favorites\Sex and Dating\Meet Girls Who Want
      To Get Laid!.url; %ALLUSERSPROFILE%\Favorites\Sex and Dating\Meet Girls Who
      Want To Get Laid!.url; %HOME%\Favorites\Sex and Dating\Meet Horny Girls In
      Your Area!.url; %ALLUSERSPROFILE%\Favorites\Sex and Dating\Meet Horny Girls
      In Your Area!.url; %HOME%\Favorites\Online Pharmacy\Cialis at HALF
      PRICE!.url; %ALLUSERSPROFILE%\Favorites\Online Pharmacy\Cialis at HALF
      PRICE!.url; %HOME%\Favorites\Online Pharmacy\Tramadol Special Offer!.url;
      %ALLUSERSPROFILE%\Favorites\Online Pharmacy\Tramadol Special Offer!.url;
      %HOME%\Favorites\Online Pharmacy\Guaranteed low price at Pills..url;
      %ALLUSERSPROFILE%\Favorites\Online Pharmacy\Guaranteed low price at
      Pills..url; %HOME%\Favorites\Sex and Dating\SEX Dating - people looking for
      SEX.url; %ALLUSERSPROFILE%\Favorites\Sex and Dating\SEX Dating - people
      looking for SEX.url; %HOME%\Favorites\Sex and Dating\View XXX photos of
      Real Sexy Girls..url; %ALLUSERSPROFILE%\Favorites\Sex and Dating\View XXX
      photos of Real Sexy Girls..url; %HOME%\Favorites\Sex and Dating\Read
      profiles and Chat With Nude Girls!.url; %ALLUSERSPROFILE%\Favorites\Sex and
      Dating\Read profiles and Chat With Nude Girls!.url; %HOME%\Favorites\Online
      Pharmacy\Fast Way To Loose Your Weight!.url;
      %ALLUSERSPROFILE%\Favorites\Online Pharmacy\Fast Way To Loose Your
      Weight!.url; %HOME%\Favorites\Stop PopUps On Your Computer.url ( 78 bytes
      ); %ALLUSERSPROFILE%\Favorites\Stop PopUps On Your Computer.url;
      %HOME%\Favorites\PC protection in under 2 minutes!.url;
      %ALLUSERSPROFILE%\Favorites\PC protection in under 2 minutes!.url;
      %HOME%\Favorites\Online Chat With Nude Girls.url;
      %ALLUSERSPROFILE%\Favorites\Online Chat With Nude Girls.url;
      %HOME%\Favorites\View ADULT photos of REAL GIRLS!.url;
      %ALLUSERSPROFILE%\Favorites\View ADULT photos of REAL GIRLS!.url;
      %HOME%\Favorites\SEX Dating - Real Girls For Real SEX.url;
      %ALLUSERSPROFILE%\Favorites\SEX Dating - Real Girls For Real SEX.url;
      %HOME%\Favorites\NEW VIAGRA at Half Price!.url;
      %ALLUSERSPROFILE%\Favorites\NEW VIAGRA at Half Price!.url;
      %HOME%\Favorites\Online Pharmacy\Try New VIAGRA! Works Faster and
      Longer!.url; %ALLUSERSPROFILE%\Favorites\Online Pharmacy\Try New VIAGRA!
      Works Faster and Longer!.url; %HOME%\Favorites\Online Pharmacy\CHEAPEST
      VIAGRA ONLINE.url; %ALLUSERSPROFILE%\Favorites\Online Pharmacy\CHEAPEST
      VIAGRA ONLINE.url; %HOME%\Favorites\Online Pharmacy\SOMA at Special LOW
      PRICE.url; %ALLUSERSPROFILE%\Favorites\Online Pharmacy\SOMA at Special LOW
      PRICE.url; %HOME%\Favorites\Download Free Spyware Remover.url;
      %ALLUSERSPROFILE%\Favorites\Download Free Spyware Remover.url;
      %HOME%\Favorites\Order CIALIS online without leaving home..url;
      %ALLUSERSPROFILE%\Favorites\Order CIALIS online without leaving home..url;
      %HOME%\Favorites\VIAGRA at incredible low price. Bonus Pills!.url;
      %ALLUSERSPROFILE%\Favorites\VIAGRA at incredible low price. Bonus
      Pills!.url

 Détails de fichier Logiciel de compression des fichiers exécutables:
Afin d'entraver la détection et de réduire la taille du fichier il est compressé avec un logiciel de compression des exécutables.

Description insérée par Daniel Constantin le vendredi 4 août 2006
Description mise à jour par Andrei Ivanes le lundi 11 septembre 2006

Retour . . . .