楼主: Love=卡巴+费尔
收起左侧

[病毒样本] 又来一个CBA722

[复制链接]
solcroft
发表于 2007-9-7 21:35:34 | 显示全部楼层

回复 9楼 solcroft 的帖子

竟然是死的
promised
发表于 2007-9-7 21:36:43 | 显示全部楼层

回复 11楼 solcroft 的帖子

我这里没死
promised
发表于 2007-9-7 21:37:33 | 显示全部楼层
a-squared3.0.0.1232007.09.062007-09-06-
4.085
Arcavir1.0.42007090619522007-09-06Trojan.Packed.Morphine.A
1.235
AVAST1.0.8000773-12007-09-06-
3.043
AVG7.5.48.442269.13.7/9922007-09-06Generic6.MBG
1.510
BitDefender7.60825.8674747.146562007-09-07Packer.Morphine.B
3.440
CA (VET)8.4.0.2431.1.51172007-09-07-
1.000
ClamAV 0.91.141782007-09-07Trojan.Packed-86
0.157
Comodo2.112.0.0.2772007-09-07-
1.079
ewido4.0.0.22007.09.062007-09-06-
2.074
F-SECURE5.51.61002007.09.07.062007-09-07Packed.Win32.Morphine.a
3.141
IKARUST3.1.1.122007.09.07.694622007-09-07MalwareScope.Trojan-Spy.BZub.1
1.361
MKS_VIR2.012007.09.072007-09-07-
1.962
NOD322.70.825122007-09-07a variant of Win32/BHO.BO trojan
1.027
nProtect2007-09-07.009093342007-09-07Packer.Morphine.B
13.808
QuickHeal9.002007.09.062007-09-06-
2.475
SOPHOS2.49.14.212007-09-07Mal/EncPk-M
4.271
The Hacker6.1.9v001802007-09-06Trojan/Morphine.a
1.520
VBA323.12.2.420070907.07592007-09-07Trojan.DownLoader.29569
0.692
VirusBuster4.3.19:99.103.1/11.02007-09-07Packed/Morphine
1.443
冰岛杀毒3.16.162007.09.072007-09-07-
0.455
卡巴斯基5.5.102007.09.072007-09-07-
0.350
大蜘蛛4.332007.09.072007-09-07Trojan.Click.3614
5.946
小红伞7.6.0.56.39.1.1032007-09-07TR/Crypt.Morphine.Gen
2.344
江民杀毒10.00.6502007.09.062007-09-06-
0.757
熊猫卫士9.04.03.00012007.09.062007-09-06Generic Trojan      
3.290
瑞星19.019.39.42.002007-09-07-
2.084
诺曼5.91.075.902007-09-07W32/BHO.QG
2.824
赛门铁克1.3.0.2420070906.0502007-09-06Infostealer.Bzup
0.207
趋势8.500-10014.701.002007-09-06-
0.207
迈克菲5.2.0051142007-09-06-
0.937
金山毒霸2007.6.20.2492007.9.72007-09-07-
0.912

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
solcroft
发表于 2007-9-7 21:39:08 | 显示全部楼层

回复 12楼 promised 的帖子

贴EQ日志出来看看
promised
发表于 2007-9-7 21:41:58 | 显示全部楼层
2007-09-07 21:40:22        应用程序保护(运行应用程序)     操作:阻止
进程路径:C:\ABC\installer\installer\installer.exe
文件路径:C:\windows\system32\regsvr32.exe
命令行:/u /s C:\windows\system32\ipv6mons.dl
l2007-09-07 21:40:17        创建文件     操作:阻止
进程路径:C:\ABC\installer\installer\installer.exe
文件路径:C:\windows\system32\AClient.dll
The EQs
发表于 2007-9-7 21:46:05 | 显示全部楼层
Scan performed at: 2007-9-7 21:45:56
Scanning Log
NOD32 version 2513 (20070907) NT
Command line: C:\Documents and Settings\Don johnson\桌面\installer.zip
Operating memory - is OK

Date: 7.9.2007  Time: 21:46:00
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\Don johnson\桌面\installer.zip
C:\Documents and Settings\Don johnson\桌面\installer.zip ?ZIP ?installer/installer.exe - a variant of Win32/BHO.BO trojan
Number of scanned files: 2
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 21:46:01 Total scanning time: 1 sec (00:00:01)
solcroft
发表于 2007-9-7 21:46:27 | 显示全部楼层

回复 15楼 promised 的帖子

在我这里跑不动,也找不到那个aclient.dll
promised
发表于 2007-9-7 21:49:32 | 显示全部楼层

回复 17楼 solcroft 的帖子

估计系统差异
反正Petite我也脱不干净
taihuxian
发表于 2007-9-7 22:13:26 | 显示全部楼层
HEUR/Exploit.HTML
TR/Crypt.Morphine.Gen
l784588
发表于 2007-9-7 22:43:24 | 显示全部楼层
第一个kav 6.0已检测
------
状态        对象
----        ----
已删除: 木马程序 Trojan-Downloader.VBS.Agent.p        文件: C:\Documents and Settings\Administrator\桌面\counter21.rar/counter21.php
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-3-1 10:25 , Processed in 0.074761 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表