楼主: 落华无痕
收起左侧

[病毒样本] 白加黑远控1x

  [复制链接]
wwwab
发表于 2022-4-26 00:10:23 | 显示全部楼层
dongwenqi 发表于 2022-4-25 15:25
尊敬的用户您好!

Hello,

我26楼早就上报了
wwwab
发表于 2022-4-26 00:11:39 | 显示全部楼层
赛门铁克:
Files Submitted
#FilenameMD5DeterminationSignature Protection NameRR Seq#
1test.zip9e96366445772c41d5060e13d6dbafdaNew ThreatTrojan.Gen.NPE
220296
2vixDiskMountApi.dll0b21fc9d585e1a1d6735dd6f84fc1edbCleanN/A
N/A
3GamePPRender.dat62d5493958252c371f67cd8add12b437Data FileN/A
N/A
4sysimgbase.dll368aca682ea702de4c26790938989a1fNew ThreatTrojan.Gen.2
220296
5J1.png8f80a5bb69b4bedec559d18f1fe1abbcNot MaliciousN/A
N/A
6价格表.exee512f85c0a532bc9acecc10f88a46fd0CleanN/A
N/A


Developer Notes:

1. test.zip is a non-repairable threat.

2. vixDiskMountApi.dll is a clean file.

3. GamePPRender.dat is a data file and is not considered to be malicious.

4. sysimgbase.dll is a non-repairable threat.

5. J1.png is not malicious.

6. 价格表.exe is a clean file.

Assessment
File 1:
test.zip
MD5:
9e96366445772c41d5060e13d6dbafda
SHA256:
828ea7750df1b2c13f3fa80af09b48b111ede4067a0d35a30bc8b317c95201b9
Determination:
New Threat
Submission Detail:
This file is detected as Trojan.Gen.NPE with our existing Rapid Release definition set. Protection is available in Rapid Release definitions with a sequence number of 220296 or greater.
Signature Protection Name:
Trojan.Gen.NPE
Rapid Release Sequence Number:
220296

File 2:
vixDiskMountApi.dll
MD5:
0b21fc9d585e1a1d6735dd6f84fc1edb
SHA256:
61381097efa6aac426b0992f19cae410efafb0ed396f2f4e71b6ccb309b85d71
Determination:
Clean
Submission Detail:
This file is clean.

File 3:
GamePPRender.dat
MD5:
62d5493958252c371f67cd8add12b437
SHA256:
766e84fd9218a242bfd786aa07f0c7e76b8bfb6352dc596be90d96af92fef9ea
Determination:
See Dev Notes.
Submission Detail:
Please see the developer notes.

File 4:
sysimgbase.dll
MD5:
368aca682ea702de4c26790938989a1f
SHA256:
aa282ae30dd173db9f5aa92d138dc82591d26e3fcac2e6075ed2b49964bb5359
Determination:
New Threat
Submission Detail:
This file is detected as Trojan.Gen.2 with our existing Rapid Release definition set. Protection is available in Rapid Release definitions with a sequence number of 220296 or greater.
Signature Protection Name:
Trojan.Gen.2
Rapid Release Sequence Number:
220296

File 5:
J1.png
MD5:
8f80a5bb69b4bedec559d18f1fe1abbc
SHA256:
58802c86745c0ad890a9f42180c629b8f0aac9910283797a52ad4718e7215491
Determination:
See Dev Notes.
Submission Detail:
Please see the developer notes.

File 6:
价格表.exe
MD5:
e512f85c0a532bc9acecc10f88a46fd0
SHA256:
00da0ab276bb6b32f032dad66fa7e87421d9f7be387c30995fa449f0fce30ace
Determination:
Clean
Submission Detail:
This file is clean.
dongwenqi
发表于 2022-4-26 08:28:28 | 显示全部楼层
wwwab 发表于 2022-4-26 00:10
我26楼早就上报了

之前没看到
神算子
发表于 2022-4-26 10:11:59 | 显示全部楼层
小Q机器人 发表于 2022-4-25 23:02
防御强,但是不稳定,今晚刚换了 卡巴

卡巴和智量一起装不冲突的
小Q机器人
发表于 2022-4-26 14:56:33 | 显示全部楼层
神算子 发表于 2022-4-26 10:11
卡巴和智量一起装不冲突的

   算了,一个就够了,电脑配置不行   6代i7 6800k  16g 3600
神算子
发表于 2022-4-27 10:14:02 | 显示全部楼层
小Q机器人 发表于 2022-4-26 14:56
算了,一个就够了,电脑配置不行   6代i7 6800k  16g 3600

i7还不行,我i5的两个都装了
水晶
头像被屏蔽
发表于 2022-4-27 12:56:53 | 显示全部楼层
2022-4-27 12:55:14 MD5:368aca682ea702de4c26790938989a1f C:\Users\Administrator\Desktop\价格表\sysimgbase.dll [Win32.Trojan.Ursu.Lkec]  [删除成功]

【电脑管家】
xreak
发表于 2022-4-27 15:31:47 | 显示全部楼层
火绒kill dl lx1
赵志明2022
发表于 2022-4-27 18:23:53 | 显示全部楼层
卡巴2x剩余3x

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
lvzhiwei
发表于 2022-4-28 21:21:55 | 显示全部楼层
天融信1X

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-6 11:10 , Processed in 0.094828 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表