查看: 1781|回复: 7
收起左侧

[病毒样本] 2014-07-11 #40

[复制链接]
malware1
发表于 2014-7-11 23:25:24 | 显示全部楼层 |阅读模式
http://www.400gb.com/file/68299449

密码(7Z) infected

已将以下杀软漏报的文件上报至对应厂商:

Anvisoft
Avast
Avira
Baidu
BitDefender
Comodo
Dr.Web
Emsisoft
ESET
F-Prot
F-Secure
Fortinet
Ikarus
Immunet
K7
Kaspersky
Kompas
Malwarebytes
McAfee
Microsoft
Nano
Norman
Outpost
Panda
PCMAV
Qihoo 360
Quick Heal
Sophos
Spybot
Symantec
TotalDefense
Trend Micro
Trojan Killer
Twister
Vipre
VirIT
Xvirus
Zillya
瞠凰韬晦
发表于 2014-7-11 23:28:38 | 显示全部楼层
压缩包坏了~

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
617902068
发表于 2014-7-11 23:36:46 | 显示全部楼层
火绒扫描  kill 12X

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
fzshot
发表于 2014-7-12 02:43:58 | 显示全部楼层
Dr.Web 27x kill 13x miss

Object(s) to scan:
- C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40


C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\fax_message.exe - infected with Trojan.DownLoad3.33842
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\fax_message.exe - infected
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Case_854699.exe - packed by FLY-CODE
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\crypted.exe - infected with Trojan.DownLoader11.20599
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\crypted.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Encrypte.exe - infected with BackDoor.Bladabindi.1056
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Encrypte.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\adobe_flash.exe - infected with Trojan.Encoder.682
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\adobe_flash.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\andro.exe - infected with Trojan.PWS.Multi.911
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\andro.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\csrss.exe - infected with Trojan.Siggen6.20334
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\csrss.exe - infected
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\facebookaccounthacker.exe - packed by UPX
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\facebookaccounthacker.exe - infected with BackDoor.Comet.884
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\facebookaccounthacker.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\AcbatSatzu.dat - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Case_854699.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\femmmmm.exe - infected with Trojan.PWS.Panda.547
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\femmmmm.exe - infected
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe is RAR archive
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\new_fax_message.exe - infected with Trojan.PWS.Panda.7520
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\new_fax_message.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\k.exe - infected with Trojan.Fakealert.45800
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\k.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ForWardow.exe - infected with Trojan.Keylogger.23529
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ForWardow.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\dc.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\luxnetbin.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(1).exe - infected with BackDoor.IRC.NgrBot.449
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(1).exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(3).exe - infected with BackDoor.IRC.NgrBot.449
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(3).exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(2).exe - infected with BackDoor.IRC.NgrBot.449
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(2).exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\leghere.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng.exe - infected with BackDoor.IRC.NgrBot.146
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\OverUzugr.dat - infected with Trojan.PWS.Papras.295
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\OverUzugr.dat - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ngnzv.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\purchase_order.exe - infected with Trojan.DownLoader9.61598
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\purchase_order.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc.pdf.scr - infected with Trojan.Encoder.682
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc.pdf.scr - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\ng(4).exe - Ok
>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe\Auto Like.exe is ZLIB container
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\slyot.exe - infected with Trojan.PWS.Papras.295
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\slyot.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\stub.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\tcysd.exe - infected with Trojan.Inject1.43672
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\tcysd.exe - infected
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc(1).pdf.scr - packed by FLY-CODE
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\testt1_ - Copy.exe - infected with BackDoor.Bladabindi.1056
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\testt1_ - Copy.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\________.vbs - infected with Trojan.Hworm.1
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\________.vbs - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Update.exe - infected with Trojan.VbCrypt.250
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Update.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\opp.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Screen dll.exe - Ok
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\WABGKPRTWZ15.cpl - packed by PECOMPACT
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\winlogon(1).exe - infected with Trojan.Siggen6.20334
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\winlogon(1).exe - infected
>>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe\Auto Like.exe\data008 - packed by BZIP
>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc(1).pdf.scr - packed by FLY-CODE
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\UpdateAVC.exe - infected with Trojan.PWS.Stealer.13020
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\UpdateAVC.exe - infected
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Tf2 Key Generator 2.0.exe is RAR archive
>>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc(1).pdf.scr - packed by PESTUB
>>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe\Auto Like.exe\data013 - packed by FLY-CODE
>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\pTDTkIQ.exe is AUTOIT container
>>>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc(1).pdf.scr is BINARYRES container
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Securedoc(1).pdf.scr - container
>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Tf2 Key Generator 2.0.exe\pTDTkIQ.exe is AUTOIT container
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe\Auto Like.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe\Update.exe - infected with Trojan.VbCrypt.250
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe\Update.exe - infected
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe - infected archive
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Auto Like.exe - infected archive
>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\pTDTkIQ.exe\Users\Adam\AppData\Local\Temp\autC59B.tmp - packed by ASCRIPT
>>>C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Tf2 Key Generator 2.0.exe\pTDTkIQ.exe\Users\Adam\AppData\Local\Temp\autC59B.tmp - packed by ASCRIPT
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\pTDTkIQ.exe - container
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Tf2 Key Generator 2.0.exe\pTDTkIQ.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Tf2 Key Generator 2.0.exe - Ok
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\Tf2 Key Generator 2.0.exe - archive
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\WABGKPRTWZ15.cpl - infected with Trojan.Bankfraud.1513
C:\Users\PRODUCTION I.G\Desktop\2014-07-11_40\2014-07-11_40\WABGKPRTWZ15.cpl - infected
蓝天二号
发表于 2014-7-12 07:50:41 | 显示全部楼层
金山卫士 KILL 11X

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
cn86li
发表于 2014-7-12 08:35:01 | 显示全部楼层
GD kill 31x

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
cpcpcpy
发表于 2014-7-12 11:13:36 | 显示全部楼层
管家33x / 数字34x

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
a445441
发表于 2014-7-12 14:31:52 | 显示全部楼层
微点剩下



本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-18 06:00 , Processed in 0.148478 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表