123
返回列表 发新帖
楼主: 绅博周幸
收起左侧

红伞挂了,[191060236]

[复制链接]
小小龙
发表于 2007-9-4 17:28:52 | 显示全部楼层
We received the following archive files:

File ID  Filename  Size (Byte) Result
1302071  CheckUpdate903.zip 888.7 KB OK

A listing of files contained inside archives alongside their results can be found below:

File ID  Filename  Size (Byte) Result
1302087  busns_2_top_img.gif  8.76 KB  CLEAN
1302088  busns_2_topbg.gif  795 Byte  CLEAN
1302089  busns_2_top_copyright.gif  4.55 KB  CLEAN
1302090  busns_2_top2_bg.gif  45 Byte  CLEAN
1302091  busns_2_main_left.gif  52 Byte  CLEAN
1302092  busns_2_textline.gif  52 Byte  CLEAN
1302093  busns_2_main_right.gif  52 Byte  CLEAN
1302094  busns_2_down_left.gif  105 Byte  CLEAN
1302095  busns_2_down_bg.gif  79 Byte  CLEAN
1302096  busns_2_down_right.gif  105 Byte  CLEAN
1302066  CheckUpdate903.exe  896 KB  MALWARE


Please find a detailed report concerning each individual sample below:

Filename Result
busns_2_top_img.gif  CLEAN

The file 'busns_2_top_img.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_topbg.gif  CLEAN

The file 'busns_2_topbg.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_top_copyright.gif  CLEAN

The file 'busns_2_top_copyright.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_top2_bg.gif  CLEAN

The file 'busns_2_top2_bg.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_main_left.gif  CLEAN

The file 'busns_2_main_left.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_textline.gif  CLEAN

The file 'busns_2_textline.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_main_right.gif  CLEAN

The file 'busns_2_main_right.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_down_left.gif  CLEAN

The file 'busns_2_down_left.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_down_bg.gif  CLEAN

The file 'busns_2_down_bg.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
busns_2_down_right.gif  CLEAN

The file 'busns_2_down_right.gif' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.

Filename Result
CheckUpdate903.exe  MALWARE

The file 'CheckUpdate903.exe' has been determined to be 'MALWARE'. Our analysts named the threat ADSPY/MokeAd.CB. The term "ADSPY/" denotes adware or spyware. This type of malware is able to change browser settings for example by manipulating registry settings or by using of NTFS-streams. Very often IEexploits are used to manipulate the browserhelp.dll.Detection will be added to our virus definition file (VDF) with one of the next updates.
小邪邪
发表于 2007-9-4 18:59:41 | 显示全部楼层
咖啡8.5i企业版报:BackDoor-DKA
timhas266
发表于 2007-9-4 19:15:22 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\tim\桌面\e.rar'
C:\Documents and Settings\tim\桌面\e.rar
  [0] Archive type: RAR
  --> e.exe
      [DETECTION] Contains signature of the worm WORM/Winko.I
      [INFO]      A backup was created as '474f3e58.qua'  ( QUARANTINE )
      [INFO]      The file was deleted!
jhtl
发表于 2007-9-4 19:27:33 | 显示全部楼层
可能是针对红伞的
tracydk
发表于 2007-9-4 19:29:04 | 显示全部楼层
...隐藏文件
uhthn2002
发表于 2007-9-4 22:34:24 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Paranoia Database - 2759
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\uhthn\Desktop\e.exe

C:\Documents and Settings\uhthn\Desktop\e.exe - Suspicious file

1 Files scanned
0 Infected files found
1 Suspicious files found
0 Files cured
0 Files deleted
天涯浪子
发表于 2007-9-6 07:41:05 | 显示全部楼层
还未下栽

AVK07报了病毒
tracydk
发表于 2007-9-6 08:11:29 | 显示全部楼层
Starting the file scan:

Begin scan in 'F:\病毒样本\e.rar'
F:\病毒样本\e.rar
  [0] Archive type: RAR
  --> e.exe
      [DETECTION] Contains detection pattern of the worm WORM/Winko.I
      [INFO]      The file was deleted!
东京时空
头像被屏蔽
发表于 2007-9-6 09:23:33 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-11 14:12 , Processed in 0.091951 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表