楼主: billgates1996
收起左侧

[病毒样本] 精睿论坛样本测试(01.29)

  [复制链接]
phpwave
发表于 2012-1-29 11:06:29 | 显示全部楼层
中文密码?
billgates1996
 楼主| 发表于 2012-1-29 11:07:28 | 显示全部楼层
phpwave 发表于 2012-1-29 11:06
中文密码?

不行吗
phpwave
发表于 2012-1-29 11:28:15 | 显示全部楼层
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-1.VC52
是木马程序!

木马名称:Backdoor.Win32.Agent.f

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-12.VC52
是病毒程序!

木马名称:Virus.Win32.Parite.a

处理结果:清除成功!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-18.VC52
是木马程序!

木马名称:Backdoor.Win32.GreyPigeon.dm

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-19.VC52
是木马程序!

木马名称:Backdoor.Win32.007BE047

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-2.VC52
是木马程序!

木马名称:Trojan-Spy.Win32.06636040

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-23.VC52
是木马程序!

木马名称:Trojan.Win32.Generic.dnh

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-29.VC52
是木马程序!

木马名称:Trojan-Spy.Win32.Swizzor.a

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-3.VC52
是木马程序!

木马名称:Trojan-PSW.Win32.QQPass.bqy

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-30.VC52
是木马程序!

木马名称:Backdoor.Win32.007BE047

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-36.VC52
是木马程序!

木马名称:Trojan-Spy.Win32.005C0EE5

处理结果:成功删除!
程序:C:\USERS\ADMINISTRATOR\DOWNLOADS\VC520129\BILLLAB-0129-41.VC52
是病毒程序!

木马名称:Virus.Win32.Sality.u

处理结果:清除成功!


微点kill15X
金山云补上19X
总共kill34X
lll714775117
发表于 2012-1-29 12:06:53 | 显示全部楼层
360 43
留侯
发表于 2012-1-29 12:25:09 | 显示全部楼层
大蜘蛛发现40个病毒,在39个样本内:

清除其中的一个:
vc520129\BillLab-0129-12.vc52 - cured

扫描统计:
Total 19038499 bytes in 50 files scanned (57 objects)
Total 11 files (16 objects) are clean
Total 39 files (40 objects) are infected
Scan time is 00:00:15

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hx1997
发表于 2012-1-29 13:09:45 | 显示全部楼层
噗哪来的样本全都是启发

Malcide Scanner
Version - 1.0.532
Genetic Database - 2012/1/29 1:27:31
Urgent Database - 2012/1/29 1:27:31

Scanning now...
Date - 2012/1/29   Time - 13:09:12
Target:
    C:\Users\Gateway\Desktop\vc520129

C:\Users\Gateway\Desktop\vc520129\BillLab-0129-0.vc52 - HEUR: Win32.Virus.Suspect-EP.2
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-1.vc52 - HEUR: Win32.Virus.Suspect-EP.2
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-10.vc52 - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-11.vc52 - HEUR: Win32.Virus.Suspect-EP.2
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-12.vc52 - HEUR: Win32.Virus.Suspect-EP.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-13.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-15.vc52 - HEUR: Win32.Packed.EP-Crypt
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-17.vc52 - HEUR: Win32.Virus.Unexpected-SOI
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-19.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-2.vc52 - HEUR: Win32.Trojan.PV-Crypt
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-20.vc52 - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-22.vc52 - decompression error (UPX)
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-23.vc52 > UPX - Generic: Win32.Trojan-PSW.IEPass
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-25.vc52 - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-27.vc52 - HEUR: Win32.Packed.EP-Crypt
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-28.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-3.vc52 - Genetic: Win32.Trojan-PSW.1 (Possibly)
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-30.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-31.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-32.vc52 - HEUR: Win32.Virus.Suspect-EP.2
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-34.vc52 - HEUR: Win32.Virus.Unexpected-SOI
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-36.vc52 - HEUR: Win32.Packed.EP-Crypt
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-37.vc52 - decompression error (UPX)
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-4.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-41.vc52 - HEUR: Win32.Virus.Suspect-EP.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-43.vc52 - HEUR: Win32.Virus.Suspect-EP.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-44.vc52 - HEUR: Win32.Virus.Suspect-EP.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-45.vc52 - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-47.vc52 - HEUR: Win32.Trojan-Dropper.RarSfx
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-48.vc52 - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-5.vc52 > UPX - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-6.vc52 - HEUR: Win32.Trojan.Sign.Suspicious
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-8.vc52 - HEUR: Win32.Trojan.EPO-Crypt.1
C:\Users\Gateway\Desktop\vc520129\BillLab-0129-9.vc52 - HEUR: Win32.Trojan.Sign.Suspicious

50 Objects scanned
1 Malicious objects found
31 Suspicious objects found
32 Threats found

Finish time - 13:09:21
Duration - 9 second(s) (00:00:09)
Kevin_Memo
发表于 2012-1-29 13:11:17 | 显示全部楼层
NIS  Quarantine 34X Cured 2X Miss 14X
zarkfair
发表于 2012-1-29 13:20:43 | 显示全部楼层
emsisoft  40/50

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
kxmp
发表于 2012-1-29 13:36:08 | 显示全部楼层
nod32 43

Mirror
http://1000eb.com/6il1
saga3721
发表于 2012-1-29 14:02:59 | 显示全部楼层

File ID         Filename         Size (Byte)        Result
26539524         vc520129.rar        0 Byte        OK
A listing of files contained inside archives alongside their results can be found below:
File ID         Filename         Size (Byte)        Result
26539525         BillLab-0129-13.vc52         339.57 KB         UNDER ANALYSIS
26539526         BillLab-0129-14.vc52         157.8 KB         UNDER ANALYSIS
26539527         BillLab-0129-22.vc52         73 KB         UNDER ANALYSIS
26539528         BillLab-0129-34.vc52         348.25 KB         UNDER ANALYSIS
26539529         BillLab-0129-47.vc52         338.16 KB         UNDER ANALYSIS
26539530         BillLab-0129-9.vc52         452.24 KB         UNDER ANALYSIS
26539531         BillLab-0129-11.vc52         431.02 KB         UNDER ANALYSIS
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-12 18:45 , Processed in 0.091052 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表