查看: 3315|回复: 10
收起左侧

[病毒样本] 23X

[复制链接]
尤金卡巴斯基
发表于 2009-9-5 22:33:51 | 显示全部楼层 |阅读模式
Kaspersky Miss 3,To KL

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
悠柚
发表于 2009-9-5 22:52:49 | 显示全部楼层
6 to IObit
悠柚
发表于 2009-9-5 22:53:39 | 显示全部楼层
Multi Command-Line Scanner Report
-------------------------------------------------------------------------
D:\TDDownload\23X\xx1.exe
MD5 Hash: 9C3F4E08FB9D2B9746B5DDBB6ECCFABE

A-squared ----- Trojan-PWS.Win32.LdPinch!IK
BitDefender ----- Trojan.Generic.2226302
F-Prot ----- W32/OnlineGames.CA.gen!Eldorado  
Sophos ----- Troj/PWS-BCC
VBA32 ----- Trojan-GameThief.Win32.Magania.bulb

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\23X\xx17.exe
MD5 Hash: B026259BF8D2C9BD63C99254D1E8051F

A-squared ----- Trojan-GameThief.Win32.OnLineGames!IK
BitDefender ----- Trojan.Generic.2225942
F-Prot ----- Nothing
Sophos ----- Troj/PWS-BDC
VBA32 ----- Trojan-GameThief.Win32.OnLineGames.bmpl

*** 4/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\23X\xx21.exe
MD5 Hash: 62DC1617D04578BF8546F8F9EC4885A4

A-squared ----- Riskware.AdTool.Win32.VB.a!IK
BitDefender ----- Nothing
F-Prot ----- Nothing
Sophos ----- Mal/Emogen-H
VBA32 ----- Nothing

*** 2/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\23X\xx25.exe
MD5 Hash: 8399FB03EE42DBE48BD1542EA4BF4919

A-squared ----- Trojan-Banker.Win32.Bancos!IK
BitDefender ----- Nothing
F-Prot ----- Nothing
Sophos ----- Nothing
VBA32 ----- Nothing

*** 1/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\23X\xx3.exe
MD5 Hash: 45E632A0F89EE43A1F9CCDB6217998C8

A-squared ----- Win32.SuspectCrc!IK
BitDefender ----- Generic.Malware.dld!!.48B0AB33
F-Prot ----- Nothing
Sophos ----- Mal/Generic-A
VBA32 ----- Nothing

*** 3/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\23X\xx6.exe
MD5 Hash: 9B395C7374B8935D3C8426753E279A4B

A-squared ----- Trojan.Win32.VB!IK
BitDefender ----- Trojan.Generic.2227216
F-Prot ----- Nothing
Sophos ----- Mal/Generic-A
VBA32 ----- Nothing

*** 3/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------

Task done @ 2009-09-05 星期六 22:53:23.71
Note: The results might be different from that of the GUI version.
miss 的6个
失落的手链
发表于 2009-9-5 22:54:51 | 显示全部楼层
瑞星2010

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hanshuo827
发表于 2009-9-5 23:55:55 | 显示全部楼层
ESS kill all
fengtaks
发表于 2009-9-6 00:01:31 | 显示全部楼层
16 to VB,20 to PA
kingmuro
头像被屏蔽
发表于 2009-9-6 00:55:50 | 显示全部楼层

大蜘蛛

xx8.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12116;;
xx9.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12058;;
xx10.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12344;;
xx11.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12059;;
xx12.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12056;;
xx13.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12325;;
xx14.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12116;;
xx15.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.13092;;
xx16.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.13092;;
xx17.exe;D:\My Documents\桌面\test\23X;Trojan.MulDrop.33504;;
xx18.exe;D:\My Documents\桌面\test\23X;Trojan.MulDrop.12903;;
xx19.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12354;;
xx20.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.13092;;
xx22.exe;D:\My Documents\桌面\test\23X;BackDoor.Graybird.2091;;
xx24.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12354;;
xx25.exe;D:\My Documents\桌面\test\23X;Trojan.Siggen.3695;;
xx1.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12116;;
xx2.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.13092;;
xx3.exe;D:\My Documents\桌面\test\23X;Probably DLOADER.Trojan;;
xx4.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.13092;;
xx6.exe;D:\My Documents\桌面\test\23X;Trojan.StartPage.22406;;
xx7.exe;D:\My Documents\桌面\test\23X;Trojan.PWS.Wsgame.12325;;
kingmuro
头像被屏蔽
发表于 2009-9-6 00:56:45 | 显示全部楼层

kaba6.0

已检测:木马程序 Trojan-Dropper.Win32.Agent.ayqa        文件:D:\My Documents\桌面\test\23X\xx8.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bfrp        文件:D:\My Documents\桌面\test\23X\xx9.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bijm        文件:D:\My Documents\桌面\test\23X\xx10.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bfwc        文件:D:\My Documents\桌面\test\23X\xx11.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bfrp        文件:D:\My Documents\桌面\test\23X\xx12.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwxz        文件:D:\My Documents\桌面\test\23X\xx13.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-Dropper.Win32.Agent.ayqa        文件:D:\My Documents\桌面\test\23X\xx14.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwsr        文件:D:\My Documents\桌面\test\23X\xx15.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwsr        文件:D:\My Documents\桌面\test\23X\xx16.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.OnLineGames.vmnr        文件:D:\My Documents\桌面\test\23X\xx17.exe
已检测:木马程序 Trojan.Win32.Buzus.bwjp        文件:D:\My Documents\桌面\test\23X\xx18.exe
已检测:木马程序 Trojan-GameThief.Win32.Magania.bfwc        文件:D:\My Documents\桌面\test\23X\xx19.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwsr        文件:D:\My Documents\桌面\test\23X\xx20.exe//PE_Patch.UPX//UPX
已检测:木马程序 Backdoor.Win32.Hupigon.dkwt        文件:D:\My Documents\桌面\test\23X\xx22.exe//UPack
已检测:木马程序 Trojan-GameThief.Win32.Magania.bfwc        文件:D:\My Documents\桌面\test\23X\xx24.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-Dropper.Win32.Agent.bbgl        文件:D:\My Documents\桌面\test\23X\xx1.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwsr        文件:D:\My Documents\桌面\test\23X\xx2.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwsr        文件:D:\My Documents\桌面\test\23X\xx4.exe//PE_Patch.UPX//UPX
已检测:木马程序 Trojan.Win32.Larchik.ec        文件:D:\My Documents\桌面\test\23X\xx6.exe
已检测:木马程序 Trojan-GameThief.Win32.Magania.bwxz        文件:D:\My Documents\桌面\test\23X\xx7.exe//PE_Patch.UPX//UPX
尤金卡巴斯基
 楼主| 发表于 2009-9-7 02:39:07 | 显示全部楼层
Hello,


xx21.exe - Trojan-Downloader.Win32.VB.qvz

At the moment this file is detected. Please update your antivirus bases.

xx25.exe - Trojan.Win32.StartPage.ede
xx3.exe - Trojan-Downloader.Win32.Agent.cozm

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Best Regards, NewVirus

10/1, 1st Volokolamsky Proezd, Moscow, 123060, Russia
Tel./Fax: + 7 (495) 797 8700
http://www.kaspersky.com http://www.viruslist.com
kalynn84
发表于 2009-9-7 09:14:22 | 显示全部楼层
2009-9-7 9:12:59        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx8.exe\[UPX]" file.  
2009-9-7 9:13:02        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx8.exe\[Embedded_I#1a10]\[UPX]" file.  
2009-9-7 9:13:02        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx9.exe\[UPX]" file.  
2009-9-7 9:13:02        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx9.exe\[Embedded_Ix#2210]\[UPX]" file.  
2009-9-7 9:13:02        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx10.exe\[UPX]" file.  
2009-9-7 9:13:02        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx10.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx11.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx11.exe\[Embedded_Ix#2210]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx12.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx12.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx13.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx13.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx14.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx14.exe\[Embedded_I#1a10]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx15.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx15.exe\[Embedded_Ix#2210]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx16.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx16.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx17.exe" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx18.exe" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx19.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx19.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx20.exe\[UPX]" file.  
2009-9-7 9:13:03        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx20.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx22.exe\[Upack]\[Embedded_I#70a8]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx24.exe\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx24.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx1.exe\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx1.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx2.exe\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx2.exe\[Embedded_Ix#1a10]\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx4.exe\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx4.exe\[Embedded_Ix#2210]\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx6.exe" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx7.exe\[UPX]" file.  
2009-9-7 9:13:04        Administrator        3452        Sign of "Win32:Agent-ACMH [Drp]" has been found in "C:\Documents and Settings\Administrator\桌面\23X.rar\xx7.exe\[Embedded_Ix#2210]\[UPX]" file.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-27 06:04 , Processed in 0.137102 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表