楼主: www-tekeze
收起左侧

[病毒样本] 样本集奉上_118

  [复制链接]
huang1111
发表于 2019-4-1 22:53:29 | 显示全部楼层
www-tekeze 发表于 2019-4-1 22:47
你比20楼晚了半小时,怎么比他差? 设置不一样吧,高启深度解包的开了没?

开了。。。。不清楚为啥,有可能推送时间问题晚吧
提交扫描也只扫出来这个:
Samp(9).vir - HEUR:Exploit.Script.Generic
www-tekeze
 楼主| 发表于 2019-4-1 22:55:35 | 显示全部楼层
huang1111 发表于 2019-4-1 22:53
开了。。。。不清楚为啥,有可能推送时间问题晚吧
提交扫描也只扫出来这个:
Samp(9).vir - HEUR:Explo ...

估计云又抽风了。。


huang1111
发表于 2019-4-1 22:56:07 | 显示全部楼层
www-tekeze 发表于 2019-4-1 22:55
估计云又抽风了。。

云应该没抽风,我这边有好几个是UDS杀的

评分

参与人数 1人气 +1 收起 理由
www-tekeze + 1 安慰下。。。

查看全部评分

AK2019
发表于 2019-4-1 23:05:57 | 显示全部楼层
Windows 10 Rising 38/85

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
www-tekeze
 楼主| 发表于 2019-4-1 23:07:39 | 显示全部楼层
AK2019 发表于 2019-4-1 23:05
Windows 10 Rising 38/85

感谢参与,RQ恢复后送上。。。请@小草猫  来看看。。


iha40999
发表于 2019-4-1 23:08:59 | 显示全部楼层
剩下的样本,全部改exe双击
就剩下这几个免杀了

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
你好,再见
头像被屏蔽
发表于 2019-4-1 23:16:32 | 显示全部楼层
小Q机器人 发表于 2019-4-1 21:05
多引擎扫描器不知道为啥这次扫描这么低。第一次扫描  44 第二次扫描 45

因为不能脱壳呀~
Jerry.Lin
发表于 2019-4-1 23:20:20 | 显示全部楼层
本帖最后由 191196846 于 2019-4-1 23:24 编辑
霄栋 发表于 2019-4-1 22:32
遇到未知文件(云端没有哈希),HitmanPro的策略是将文件打包上传,让云端的扫描引擎处理。
个人觉得, ...

并不是,其实真正的原因是

HMP右键扫描功能 扫描时不扫描子目录/子文件夹 (M的样本在子文件夹)

这也是我抛弃HMP作为SecondaryScanner的原因。现在转EEK了,毕竟Console好用得一匹

评分

参与人数 1人气 +1 收起 理由
Sailer.X + 1 感谢解答: )

查看全部评分

wrb116
发表于 2019-4-1 23:32:48 | 显示全部楼层
www-tekeze 发表于 2019-4-1 22:15
“S:43/50 M:17/35”,那总共应该是60/85吧,双击了?

看了下隔离区 确实是60个
麦青儿
发表于 2019-4-2 01:00:52 | 显示全部楼层
* options in CMDLINE :
* loading malware signatures from C:\home\tools\rame-x64/malware.rmd
* loading mode : use multi-byte character set
* malware signature file : C:\home\tools\rame-x64\malware.rmd
* malware signature pub-id : 4839
* scan target : (1) C:\Users\joy-c\Downloads\VirusSamples_118

C:\Users\joy-c\Downloads\VirusSamples_118\Samp(1).vir   Infect: PE:Trojan.Kryptik!8.8/N3#87% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(10).vir  Infect: PE:Trojan.Agent!1.B63F (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(11).vir  Infect: PE:Worm.AutoIt!8.10A/N3#92% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(12).vir  Infect: PE:Trojan.Win32.Upatre.j (md5)!1631885 [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(13).vir  Infect: PE:Trojan.Occamy!8.F1CD/N3#98% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(14).vir  Infect: PE:Trojan.Zpevdo!8.F912/N3#88% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(15).vir  Infect: PE:Trojan.GenKryptik!8.AA55 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(16).vir  Infect: PE:Trojan.Kryptik!8.8 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(17).vir  Infect: PE:Trojan.Zpevdo!8.F912/N3#89% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(18).vir  Infect: PE:Trojan.Zpevdo!8.F912/N3#82% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(19).vir  Infect: PE:Downloader.Agent!8.B23 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(2).vir   Infect: PE:Trojan.GenKryptik!8.AA55 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(20).vir  Infect: PE:Trojan.Kryptik!8.8 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(21).vir  Infect: PE:Trojan.Win32.Injector.mf (classic)!1631709 [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(22).vir  Infect: PE:Trojan.Kryptik!8.8 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(23).vir  Infect: PE:Trojan.Win32.Generic.19DFDE48 (rdmk)!434101832 [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(24).vir::upx_c   Infect: PE:Virus.Parite!1.9B80 (classic) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(24).vir  Contain: 1, 1st is PE:Virus.Parite!1.9B80 (classic)
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(25).vir  Infect: PE:Spyware.Zbot!8.16B (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(26).vir  Infect: PE:Trojan.Filecoder!8.68 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(27).vir  Infect: PE:Trojan.Crypto!8.364 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(28).vir  Infect: PE:Ransom.Firecerb!8.E6D7 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(29).vir::02 - The World at Large.mp3
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(29).vir::hw7u1uanadudaui1koaa
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(29).vir::$PLUGINSDIR\isoantigens.dll     Infect: PE:Ransom.Critroni!8.AAC (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(29).vir::[NSIS].nsi
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(29).vir  Contain: 1, 1st is PE:Ransom.Critroni!8.AAC (md5)
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(3).vir   Infect: PE:Spyware.IcedId!8.F061 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(30).vir  Infect: PE:Worm.Mydoom!8.10C/N3#94% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(31).vir  Infect: PE:Trojan.Kryptik!1.B4EF (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(32).vir  Infect: PE:Trojan.Fuerboos!8.EFC8/N3#84% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(33).vir  Infect: PE:Trojan.Ransom.GlobeImposter!1.AF70 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(34).vir  Infect: PE:Trojan.Kryptik!8.8 (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(35).vir  Infect: PE:Ransom.HydraCrypt!8.864F (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(36).vir  Infect: PE:Trojan.Injector!1.B459 (classic) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(37).vir  Infect: PE:Trojan.GenKryptik!8.AA55 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(38).vir  Infect: PE:Ransom.GandCrypt!8.F33E (c64) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(39).vir  Infect: PE:Trojan.Fuerboos!8.EFC8/N3#91% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(4).vir   Infect: PE:Downloader.Geral!8.72A (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(40).vir  Infect: PE:Trojan.Ransom.Sage2.0!1.AA7A (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(41).vir  Infect: PE:Ransom.Locky!8.1CD4 (c64) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(42).vir  Infect: PE:Trojan.Kryptik!1.B4DB (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(43).vir::upx_c   Infect: PE:Malware.Undefined!8.C (tfe) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(43).vir  Contain: 1, 1st is PE:Malware.Undefined!8.C (tfe)
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(44).vir  Infect: PE:Backdoor.Zegost!8.177 (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(45).vir  Infect: PE:Spyware.SpyEyes!8.4AA (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(46).vir  Infect: PE:Trojan.Kryptik!8.8 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(47).vir  Infect: PE:Backdoor.Caphaw!8.190 (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(48).vir
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(49).vir  Infect: PE:Backdoor.NanoBot!8.28C (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(5).vir   Infect: PE:Ransom.GandCrab!8.F355 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(50).vir  Infect: PE:Trojan.Inject!8.103 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(6).vir   Infect: PE:Ransom.Mytreex!8.E66D (c64) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(7).vir   Infect: PE:Ransom.HydraCrypt!8.864F (c64) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(8).vir   Infect: PE:Ransom.HydraCrypt!8.864F (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\Samp(9).vir
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(1)M.vir
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(10)M.vir       Infect: PE:Trojan.Fuerboos!8.EFC8 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(11)M.vir       Infect: PE:Trojan.Kryptik!8.8 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::upx_c
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::$PLUGINSDIR\ioSpecial.ini
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::$PLUGINSDIR\modern-wizard.bmp
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::trackComps.js
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::favicon.ico322423712.plain
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::apple-touch-icon-76x76.png
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::osd.xml
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::print1429107950.css
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::favicon-32x321201191252.png
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::seesaws.Jd
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir::[NSIS].nsi
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(12)M.vir
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(13)M.vir       Infect: PE:Downloader.Wauchos!8.D9/N3#98% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(14)M.vir       Infect: PE:Spyware.Zbot!8.16B/N3#79% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(15)M.vir       Infect: PE:Trojan.GenKryptik!8.AA55 (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(16)M.vir       Infect: PE:Ransom.SageCrypt!8.E42C/N3#96% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(17)M.vir::upx_c
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(17)M.vir
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(18)M.vir       Infect: PE:PUA.Presenoker!8.F608/N3#80% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(19)M.vir
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(2)M.vir        Infect: PE:Trojan.Kryptik!8.8/N3#92% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(20)M.vir       Infect: PE:Trojan.Zpevdo!8.F912/N3#98% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(21)M.vir       Infect: PE:Downloader.Nymaim!8.781/N3#98% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(22)M.vir       Infect: PE:Trojan.Trickster!8.E0E2/N3#97% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(23)M.vir       Infect: PE:Trojan.Boaxxe!8.7E (md5) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(24)M.vir       Infect: PE:Worm.Kasidet!8.206 (tfe) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(25)M.vir       Infect: PE:Trojan.Emotet!8.B95/N3#90% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(26)M.vir       Infect: PE:Trojan.Generic!8.C3/N3#87% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(27)M.vir       Infect: PE:Ransom.Tescrypt!8.3AF/N3#88% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(28)M.vir       Infect: PE:Trojan.Tiggre!8.ED98/N3#98% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(29)M.vir       Infect: PE:Malware.Undefined!8.C/N3#95% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(3)M.vir        Infect: PE:Trojan.Azden!8.F0E3/N3#96% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(30)M.vir       Infect: PE:Trojan.GenKryptik!8.AA55/N3#97% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(31)M.vir       Infect: PE:Trojan.Emotet!8.B95 (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(32)M.vir       Infect: PE:Trojan.Zpevdo!8.F912/N3#83% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(33)M.vir
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(34)M.vir       Infect: PE:Trojan.Injector!8.C4/N3#91% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(35)M.vir       Infect: PE:Trojan.Trickster!8.E0E2/N3#94% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(4)M.vir        Infect: PE:Spyware.Panda!8.AFED/N3#99% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(5)M.vir        Infect: PE:Trojan.Fuerboos!8.EFC8/N3#91% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(6)M.vir        Infect: PE:Ransom.Shieldcrypt!8.E458/N3#88% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(7)M.vir        Infect: PE:Downloader.Yorobun!8.51F9/N3#88% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(8)M.vir        Infect: PE:Trojan.Injector!8.C4/N3#96% (rdmk) [F]
C:\Users\joy-c\Downloads\VirusSamples_118\VirusSamples_118M\Samp(9)M.vir        Infect: PE:Trojan.Zpevdo!8.F912/N3#83% (rdmk) [F]

Duration: 0:13:339(m:s:ms)
Files: 78 / 85 = 91.76%
Streams: 78 / 105 = 74.29%
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-22 22:35 , Processed in 0.097190 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表