Submit Malware Here To Be Blacklisted - 2014 (NO LIVE MALWARE!)

Hi, have you noticed my submissions? You said “spywar & yigido” so I’m not sure.

Adobe Flash Player.exe
VT: 9/47
SHA1: 2e4a601c786f6c43fbbf609d6b78c5f5d5bd8df0

http://camas.comodo.com/cgi-bin/submit?file=7b25babe60a48cf9afea747ae5e4f3e668440b9f98f4e9c9b949adf177ff39cc
http://valkyrie.comodo.com/Result.html?sha1=2e4a601c786f6c43fbbf609d6b78c5f5d5bd8df0&&query=0&&filename=Adobe%20Flash%20Player.exe

hiii.exe
VT: 6/48
SHA1: c596ed4d130f14390b1f2121d62506c42e375e58

http://camas.comodo.com/cgi-bin/submit?file=c10f247d0a4f09d2a3512d2a1badbd586ebcdf2b8fda18e32fe855c521d32bd3
http://valkyrie.comodo.com/Result.html?sha1=c596ed4d130f14390b1f2121d62506c42e375e58&&query=0&&filename=hiii.exe

bill_0834521.pdf____________________________________________________________________________________________________________.exe - although it’s not considered harmful, it sure is.
Scanning this file while it’s being zipped, gives such results - bill_0834521.zip. Also Valkyrie detected it (PE, extracted from zip) as a malware.

Even file name is quite suspicious.

cricket, please don’t post anything in this thread, instead go here https://forums.comodo.com/av-false-positivenegative-detection-reporting/submit-malware-here-to-be-blacklisted-2014-no-live-malware-t100707.30.html.

uploaded to CIMA

SHA1 :

46b473d38d8114c4c6b0505856675f1729f70c97
0437fd43f0cdc0785abaf1f6dd593067adf91d9d
4b0a5503782bf295a9d8d12f6d88cb599e6d3e9d
a94b84c99c3ff351287a9443f9f194e5ebe4fc50
e88eebf9fe9afd90713b21c5745b2d0ce31254fc
1e50cf5f85a76c4dfcfecb4e63b722703983e1f8
c76de37fd200cf97ebfbe7da4ceef7e2e94ec186
0bbd984b186da36b3435e21df95c4ed737f039c5
827cc8bad41c5e0e395122842be7dda3186c5d66
7c2a95084500306ff471853866622dc46868faec
396c3040308c3c6d48a873bdceb03a343d0ea491
135018af1d0c9d37e240cbc49392d75e6c6e1d2e
a433176983db45260d1806575c060ebfb3c751a0
97a217c942ef204ae7946d890bff91bc403005bb
98f211226230057f93e1f79054b73ab333dff2d4

TT Payment.exe
VT: 5/48
SHA1: 79d096d5e749dcfc397a66b4579b48b5522f1923

http://camas.comodo.com/cgi-bin/submit?file=f20b13ea5f08250e88d1da2a3c876e7a128efbe3bbb84911e56e0f1ed7009e51
http://valkyrie.comodo.com/Result.html?sha1=79d096d5e749dcfc397a66b4579b48b5522f1923&&query=0&&filename=TT%20Payment.exe

Uploaded to CIMA

SHA1 :

afd1d68feee2cc29aeab4ab767eaad93bf29f8de
0ffbc63c411e2d29c743bca7a4d500de311e5bee
f5b187046a0f33ae5256382ae4d064e54cf6632f
196550c02059517d8f5d47bef417a08680d451a4
57d25975b7aa50ff33b66eef7d345d28537710eb
46b473d38d8114c4c6b0505856675f1729f70c97
5d45d4b614bdb1d5c82c4012732193ddba5f9797
153abe6dcab4f8d8858620beae27f61cffeb7a9a
6c6aaada2a0dc305c2ed64a04918e38db20aef68
eeada32e13ec3e3bde544d659b303575154d1edb
bcda62e711d6236c9da392cc3328753834969551
c9b2d4342414fa24e8c570bb2d34a011598b2967
5c5d5b60225ed232f132cf7eb439cfe1ef291c23
97590090f36388c6422598f14d470d31d5c3fdb6
01e36596e42b6695ec60844bc203fa5afe9e7ba0

Hi,

Thank you for your submissions.
We’ll check them and if found to be malware detection will be added.

Regards,
Priyadharsini.G

uploaded to CIMA

Diddycoy.exe
VT: 6/48
SHA1: ad9cd8372cc18c9f2531b7a01216c8844097ac61

http://camas.comodo.com/cgi-bin/submit?file=bd17673f48890f81f0692e896c6f5805ba02c59b2c3ff9c7587e3bf4f084f2b1
http://valkyrie.comodo.com/Result.html?sha1=ad9cd8372cc18c9f2531b7a01216c8844097ac61&&query=0&&filename=Diddycoy.exe

a8148bf3821e10143ca8898d2a314d0afe2a1f1f

install_flashplayer86x64_mssd_aaa_aih.exe
VT: 13/48
SHA1: 1b659dda6ac89996ea61e383e311f4223c95efa4

http://camas.comodo.com/cgi-bin/submit?file=801161dc51a513f800c7c21213869e8d833f24fae2bbced9108644400cec4213
http://valkyrie.comodo.com/Result.html?sha1=1b659dda6ac89996ea61e383e311f4223c95efa4&&query=0&&filename=install_flashplayer86x64_mssd_aaa_aih.exe

I merged your posts with the new topic.

I am not sure if you are referring to a previously submitted malware. If so, could next time please quote your previous post for convenience?

photo wow.exe
VT: 14/48
SHA1: a4a41e5cf0cf3f09b3b0566614bf74139ff79d64

http://camas.comodo.com/cgi-bin/submit?file=81cc90f1845ade9433e5c88a279033c6e92e25ada1aaf18787b7b240429699e1
http://valkyrie.comodo.com/Result.html?sha1=a4a41e5cf0cf3f09b3b0566614bf74139ff79d64&&query=0&&filename=photo%20wow.exe

k9px6wfbsadulxzo.exe
VT: 11/48
SHA1: dd0d1f573c8a0360607ba7c1e862aa50c2f30c20

http://camas.comodo.com/cgi-bin/submit?file=b3cb8bac7bfccfdd51aba158c37fba6f261e213526c1c37100345d26d3525601
http://valkyrie.comodo.com/Result.html?sha1=dd0d1f573c8a0360607ba7c1e862aa50c2f30c20&&query=0&&filename=k9px6wfbsadulxzo.exe

setup.exe
VT: 5/48
SHA1: 156d1f5a4ed2779c0ae87a20fcfc440a71ff22ab

http://camas.comodo.com/cgi-bin/submit?file=9fc02e0d6bd41aad00a7029f703e276eda490c522ce3b3ec6d59f6a62a8e28d4
http://valkyrie.comodo.com/Result.html?sha1=156d1f5a4ed2779c0ae87a20fcfc440a71ff22ab&&query=0&&filename=setup.exe

@spywar, Malware, yigido

Thank you, i will submit more samples.
Nice to meet you.
:azn:

www.google.com1.exe
VT: 21/48
SHA1: 28fdb4c4c5347e512200f2c807c5e80297363f3b

http://camas.comodo.com/cgi-bin/submit?file=6c0e14dfbe08562d6537085c4399ce187c85b6e486e44769f1d2e68f7473ecad
http://valkyrie.comodo.com/Result.html?sha1=28fdb4c4c5347e512200f2c807c5e80297363f3b&&query=0&&filename=www.google.com1.exe