查看: 3256|回复: 12
收起左侧

[病毒样本] 转一个改ie删cookies和临时文件的

[复制链接]
promised
发表于 2007-12-9 10:18:06 | 显示全部楼层 |阅读模式
C:\ABC\ie.zip:\ie.exe - 特征码 'Virus.Win32.Agent.GJW' 被发现
C:\ABC\ie.zip
多引擎病毒库太老了


a-squared3.0.0.1262007.12.042007-12-04-
2.856
AntiVir7.6.0.407.0.1.602007-12-07-
2.110
Arcavir1.0.42007120819142007-12-08-
1.349
AVAST1.0.8071208-02007-12-08Win32:Agent-GJW [Trj]
3.061
AVG7.5.49.442269.16.17/11782007-12-08-
3.164
BitDefender7.60825.9585787.161722007-12-09-
5.807
CA (VET)9.0.0.14331.3.53532007-12-05-
0.779
ClamAV 0.91.250472007-12-09-
0.212
Comodo2.112.0.0.3642007-12-05-
1.030
CP Secure1.1.0.6552007.12.082007-12-08-
8.226
Dr.WEB4.44.0.91702007.12.082007-12-08-
3.441
ewido4.0.0.22007.12.052007-12-05-
1.913
F-PROT4.4.1.52200712082007-12-08-
2.658
F-SECURE5.51.61002007.12.08.012007-12-08-
5.200
IKARUST3.1.01.152007.12.05.699432007-12-05-
1.474
MKS_VIR2.012007.12.082007-12-08-
3.022
NOD322.70.1027112007-12-07-
0.013
NORMAN5.91.085.902007-12-07-
9.199
nProtect2007-12-05.0010778442007-12-05-
7.988
PrevxV2200712062007-12-06TROJAN.DOWNLOADER.GEN
3.297
QuickHeal9.002007.12.052007-12-05-
2.110
SOPHOS2.49.14.212007-12-09-
4.068
The Hacker6.2.9v001502007-12-04-
0.651
VBA323.12.2.520071208.21432007-12-08Trojan-Spy.Agent.13 (paranoid heuristics) (suspicious)
1.876
ViRobot200712052007.12.052007-12-05-
0.374
VirusBuster4.3.19:99.116.5/11.02007-12-09-
1.056
卡巴斯基5.5.102007.12.092007-12-09-
7.835
安博士V32007.12.01.002007.12.012007-12-01-
0.893
江民杀毒10.00.6502007.12.042007-12-04-
1.274
熊猫卫士9.04.03.00012007.12.042007-12-04-
2.835
瑞星19.020.21.22.002007-12-05-
1.257
赛门铁克1.3.0.2420071208.0092007-12-08-
0.199
趋势8.500-10014.872.172007-12-08-
0.146
迈克菲5.2.0051812007-12-08-
2.474
金山毒霸2007.6.20.2492007.12.52007-12-05-
0.903
飞塔2.81-3.118.4492007-12-03Suspicious
1.909


[ 本帖最后由 promised 于 2007-12-9 12:24 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
发表于 2007-12-9 10:22:15 | 显示全部楼层
省的用兔子了
wangjay1980
发表于 2007-12-9 10:23:22 | 显示全部楼层
未必会入库
leonfg
发表于 2007-12-9 10:23:58 | 显示全部楼层
清理垃圾的?
gho
发表于 2007-12-9 10:27:22 | 显示全部楼层
两个杀软全miss
wangjay1980
发表于 2007-12-9 10:56:59 | 显示全部楼层
不错,入了

Hello.
Trojan-Downloader.Win32.Injecter.cz
New malicious software was found in the attached file.
It's detection will be included in the next update. Thank you for your help.
-----------------
Regards, Yury Nesmachny
Virus Analyst, Kaspersky Lab.

Ph.: +7(495) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com


> Attachment: ie.zip
kellitte
发表于 2007-12-9 12:17:48 | 显示全部楼层
微点喀嚓掉
saga3721
发表于 2007-12-9 12:35:39 | 显示全部楼层
ZA和微点在运行后几秒几乎同时弹框。微点报未知木马,ZA报IEexplorer试图进入英特网。
qigang
发表于 2007-12-9 18:23:09 | 显示全部楼层

2/1

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.Undef.af   

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.21.61
uhthn2002
发表于 2007-12-9 23:15:47 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 1056
Paranoia Database - 49948
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\ie.exe

C:\Documents and Settings\Uhthn\Desktop\ie.exe - Suspected TROJAN-DOWNLOADER.AGENT.1

1 Files scanned
0 Infected files found
1 Suspected files found
0 Files disinfected
0 Files deleted
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-22 11:13 , Processed in 0.128370 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表