查看: 1982|回复: 9
收起左侧

[病毒样本] 毒网挖来的,[84db94] RS and KAV pass

[复制链接]
绅博周幸
发表于 2007-9-22 14:44:23 | 显示全部楼层 |阅读模式
A-Squared Found nothing
AntiVir Found DR/Delphi.Gen
ArcaVir Found nothing
Avast Found Win32:Nilage-AI
AVG Antivirus Found nothing
BitDefender Found Generic.Malware.SBdld.C5F08824
ClamAV Found nothing
CPsecure Found Troj.PSW.W32.Agent.ha
Dr.Web Found Trojan.StartPage.372
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found nothing
Fortinet Found nothing
Kaspersky Anti-Virus Found nothing
NOD32 Found probably a variant of Win32/Genetik (probable variant)
Norman Virus Control Found Sandbox: W32/Malware; [ General information ]

* File might be compressed.
* Decompressing ASPack.
* Accesses executable file from resource section.
* File length: 31232 bytes.

[ Changes to filesystem ]
* Deletes file C:\Program Files\Common Files\Microsoft Shared\MSINFO\mydown.dll.
* Creates file C:\Program Files\Common Files\Microsoft Shared\MSINFO\mydown.dll.

[ Network ]
* Hooks into Shell explorer.
Panda Antivirus Found nothing
Rising Antivirus Found nothing
Sophos Antivirus Found Mal/PWS-K
VirusBuster Found nothing
VBA32 Found Backdoor.XiaoBird.9 (paranoid heuristics) (probable variant)





诺盟的沙盘难得表现啊

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
jimmyleo
发表于 2007-9-22 14:46:34 | 显示全部楼层
vba报小鸟
风野胤
发表于 2007-9-22 14:46:44 | 显示全部楼层
XiaoBird?????
这是???????
鸽子???????
VBA32
wangjay1980
发表于 2007-9-22 14:47:26 | 显示全部楼层
detected: virus Heur.Downloader (modification)        File: C:\Documents and Settings\Owner\×ÀÃæ\~tmp1452.rar/~tmp1452.exe//ASPack
promised
发表于 2007-9-22 14:48:02 | 显示全部楼层
C:\ABC\~tmp1452.rar:\~tmp1452.exe - 特征码 'Trojan-PWS.Win32.OnLineGames.jj' 被发现
a750828
发表于 2007-9-22 15:52:28 | 显示全部楼层
McAfee PWS-QQGame
zzx129
发表于 2007-9-22 17:53:35 | 显示全部楼层
Virus infection found

File which you are trying download contains virus. Loading has been interrupted.
Technical data:
Error name: Virus Alert
Virus description Generic.Malware.SBdld.C5F08824
Error code: -1602
Requested URL: /attachment.php?aid=130637
Requested HTTP method: GET
Requested ContentType: application/octet-stream
Requested IP: 211.136.18.143
曲中求
发表于 2007-9-22 18:07:53 | 显示全部楼层
2007-9-22        18:08:08        引擎版本=5200.2160
2007-9-22        18:08:08        防病毒 DAT 版本=5125.0000
2007-9-22        18:08:08        EXTRA.DAT 中的检测项特征码数=无
2007-9-22        18:08:08        EXTRA.DAT 中的检测项特征码名称=无
2007-9-22        18:08:00        扫描已启动        3109AB0180954E2\星星        按需扫描
2007-9-22        18:08:09        未采取操作         星星        E:\病毒\~tmp1452.rar\~TMP1452.EXE\~TMP1452.EXE\0000a4f0.EXE        PWS-QQGame(特洛伊)
king6808
发表于 2007-9-22 20:29:03 | 显示全部楼层
已删除:木马程序 Trojan-Downloader.Win32.Delf.cew        文件 : G:\9.22\~tmp1452.rar/~tmp1452.exe//ASPack
uhthn2002
发表于 2007-9-22 21:14:13 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 198
Paranoia Database - 5514
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\uhthn\Desktop\~tmp1452.exe

C:\Documents and Settings\uhthn\Desktop\~tmp1452.exe - Infected with PDB:Win32.c80 Malware program - Deleted

1 Files scanned
1 Infected files found
0 Suspicious files found
0 Files cured
1 Files deleted
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-3 07:13 , Processed in 0.128587 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表