楼主: pluto1313
收起左侧

[病毒样本] 应该是新的后门程序,两个,MD5略了

[复制链接]
1688388728
发表于 2007-7-15 20:32:41 | 显示全部楼层
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\B64X7CKM\virus[1].rar\1.exe\data001 - probably infected with NSPACK
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\B64X7CKM\virus[1].rar\2.exe\data001 - infected with BackDoor.Rpcs

Archive contains 2 infected items
promised
发表于 2007-7-15 20:33:15 | 显示全部楼层

回复 #11 1688388728 的帖子

probably infected with NSPACK
hj5abc
发表于 2007-7-15 20:57:40 | 显示全部楼层
原帖由 promised 于 2007-7-15 20:33 发表
probably infected with NSPACK

这个是蜘蛛吧..
caocao
发表于 2007-7-15 20:59:42 | 显示全部楼层
Hello,

1.exe_,
2.exe_ - Trojan-Clicker.Win32.BHO.n

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Dmitry Shvetsov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.



> Attachment: virus.rar
promised
发表于 2007-7-15 21:00:20 | 显示全部楼层

回复 #13 hj5abc 的帖子

BETA版不是这么报的
1.exe\data001;C:\ABC\virus.rar\1.exe;Probably WIN.WORM.Virus;;
1.exe;C:\ABC\virus.rar;Archive contains infected objects;;
2.exe\data001;C:\ABC\virus.rar\2.exe;BackDoor.Rpcs;;
2.exe;C:\ABC\virus.rar;Archive contains infected objects;;
virus.rar;C:\ABC;Archive contains infected objects;;
wangjay1980
发表于 2007-7-15 21:00:32 | 显示全部楼层
1.exe,
2.exe_ - Trojan-Clicker.Win32.BHO.n,
hkt988
发表于 2007-7-15 21:07:45 | 显示全部楼层
Product: BitDefender 9 Professional Plus
//        Version: 9.5
//
//        创建在:        15/07/2007        15:07:55
//
//-----------------------------------------------------------------


病毒统计

扫描路径        : D:\下载文件夹\virus.rar
文件夹        : 0
文件        :  4
存档        : 1
被压缩的文件        : 1
被识别的病毒        : 2
被感染文件        : 2
警告        : 0
可疑文件        : 0
被清除过的文件        : 0
被删除的文件        : 2
已拷贝的文件        : 0
被移动的文件        : 0
被重命名的文件        : 0
I/O 错误        : 0
扫描时间        : 00:00:04
扫描速度(文件/秒)        : 1

病毒定义        : 859525787
tracydk
发表于 2007-7-15 21:23:12 | 显示全部楼层
红伞挂,上报
tracydk
发表于 2007-7-15 21:31:51 | 显示全部楼层
AhnLab-V32007.7.14.02007.07.14no virus found
AntiVir7.4.0.392007.07.13no virus found
Authentium4.93.82007.07.13no virus found
Avast4.7.997.02007.07.13Win32:BHO-FG
AVG7.5.0.4762007.07.14no virus found
BitDefender7.22007.07.15DeepScan:Generic.PWS.WoW.6A6E96F8
CAT-QuickHeal9.002007.07.14(Suspicious) - DNAScan
ClamAVdevel-200704162007.07.15no virus found
DrWeb4.332007.07.15Win32.HLLW.MyBot
eSafe7.0.15.02007.07.10Suspicious Trojan/Worm
eTrust-Vet30.8.37842007.07.14no virus found
Ewido4.02007.07.14no virus found
FileAdvisor12007.07.15no virus found
Fortinet2.91.0.02007.07.14no virus found
F-Prot4.3.2.482007.07.13no virus found
IkarusT3.1.1.82007.07.15BehavesLikeWin32.ExplorerHijack
Kaspersky4.0.2.242007.07.15no virus found
McAfee50742007.07.13no virus found
Microsoft1.27042007.07.15no virus found
NOD32v223992007.07.14no virus found
Norman5.80.022007.07.13no virus found
Panda9.0.0.42007.07.15Suspicious file
Sophos4.19.02007.07.06no virus found
Sunbelt2.2.907.02007.07.14VIPRE.Suspicious
Symantec102007.07.15no virus found
TheHacker6.1.6.1462007.07.13no virus found
VBA323.12.0.22007.07.14no virus found
VirusBuster4.3.23:92007.07.14no virus found
Webwasher-Gateway6.0.12007.07.15Win32.Malware.gen#PECompact (suspicious)
微点卫士
发表于 2007-7-15 21:58:04 | 显示全部楼层
微点报:Trojan-PSW.Win32.QQRob.cnl     Trojan-PSW.Win32.Legendmir.yj
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-8 12:07 , Processed in 0.112128 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表