查看: 2779|回复: 11
收起左侧

[病毒样本] 1个

[复制链接]
hlx98007
发表于 2008-2-20 02:11:54 | 显示全部楼层 |阅读模式
4.exe文件比较大,所以单独发。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
a750828
发表于 2008-2-20 02:14:52 | 显示全部楼层
McAfee Adware-CDNHelper
无尽藏海
发表于 2008-2-20 02:16:19 | 显示全部楼层
红伞报        ADSPY/Cdnup.A.1

[Found Trojan]  <W32/Trojan.YGH (exact, not disinfectable)> F:\virus\4.zip->4.exe
[Contains infected objects] F:\virus\4.zip
[Quarantined] F:\virus\4.zip->4.exe

2008-2-20 2:17:50 Kernel File  'F:\virus\4.zip' was sent to ESET for analysis.

[ 本帖最后由 无尽藏海 于 2008-2-20 02:18 编辑 ]
长空之鹰
发表于 2008-2-20 02:24:16 | 显示全部楼层
KIS7.0129过

病毒库2.19 22:28
hlx98007
 楼主| 发表于 2008-2-20 02:27:56 | 显示全部楼层
是啊,卡巴飘过的。
长空之鹰
发表于 2008-2-20 02:33:35 | 显示全部楼层
File 4.zip received on 02.19.2008 19:22:41 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED

Result: 18/32 (56.25%)

Loading server information...
Your file is queued in position: ___.
Estimated start time is between ___ and ___
.
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they're generated.
Compact
Print results


Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position:
) for an undefined time. You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.  
Email:



AntivirusVersionLast UpdateResult
AhnLab-V32008.2.20.02008.02.19-
AntiVir7.6.0.672008.02.19ADSPY/Cdn.B.1
Authentium4.93.82008.02.19W32/Trojan.YGH
Avast4.7.1098.02008.02.18Win32:Adware-gen
AVG7.5.0.5162008.02.19Adware Generic2.FWT
BitDefender7.22008.02.19Adware.CDN.J
CAT-QuickHeal9.502008.02.18-
ClamAV0.92.12008.02.19Adware.CDN-8
DrWeb4.44.0.091702008.02.19Adware.Cdn
eSafe7.0.15.02008.02.17-
eTrust-Vet31.3.55482008.02.19-
Ewido4.02008.02.19Adware.Cdnup
FileAdvisor12008.02.19-
Fortinet3.14.0.02008.02.19Adware/Bdsearch
F-Prot4.4.2.542008.02.18W32/Trojan.YGH
F-Secure6.70.13260.02008.02.19-
IkarusT3.1.1.202008.02.19AdWare.Cdnup.A.1
Kaspersky7.0.0.1252008.02.19-
McAfee52322008.02.18potentially unwanted program Adware-CDNHelper
Microsoft1.32042008.02.19BrowserModifier:Win32/CNNIC
NOD32v228862008.02.19-
Norman5.80.022008.02.19-
Panda9.0.0.42008.02.19Generic Malware
Prevx1V22008.02.19Heuristic: Suspicious File With Covert Attributes
Rising20.32.12.002008.02.19-
Sophos4.26.02008.02.19CNav
Sunbelt3.0.884.02008.02.19-
Symantec102008.02.19-
TheHacker6.2.9.2232008.02.18-
VBA323.12.6.12008.02.17suspected of Embedded.OScope.Adware.GV.Cdn
VirusBuster4.3.26:92008.02.19-
Webwasher-Gateway6.6.22008.02.19Ad-Spyware.Cdnup.A.1
Additional information
File size: 436358 bytes
MD5: 7c8917132741727c166197308368eed6
SHA1: 8b5a92a13b022ceff522cecc30f7685c46381280
PEiD: -
packers: ASPack
Prevx info: http://info.prevx.com/aboutprogr ... 6219D4CA700D8FD5955
capsshift
发表于 2008-2-20 09:15:42 | 显示全部楼层
多引擎扫描,红伞已经报了。
清蒸波波面
发表于 2008-2-20 09:34:55 | 显示全部楼层
费尔已经杀了
kkgh
发表于 2008-2-20 10:20:31 | 显示全部楼层
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ 创建时间:        10:26:37 2008-2-20

+ 扫描结果:       



C:\Documents and Settings\zh\桌面\4.exe -> Adware.Cdnup : 已清除.
C:\Documents and Settings\zh\桌面\4.zip/4.exe -> Adware.Cdnup : 已清除.


::报告结束
微点卫士
发表于 2008-2-20 10:23:23 | 显示全部楼层
程序:
C:\SANDBOX\ADMINISTRATOR\DEFAULTBOX\DRIVE\C\PROGRAM FILES\CNNIC\CDN\CDNUP.EXE
是否阻止该进程继续运行?

程序:
C:\SANDBOX\ADMINISTRATOR\DEFAULTBOX\DRIVE\C\PROGRAM FILES\CNNIC\CDN\CDNUP.EXE
是否删除病毒程序及其衍生物?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-17 08:09 , Processed in 0.248902 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表