查看: 1885|回复: 14
收起左侧

[病毒样本] 病毒样本测试 7X

[复制链接]
wwwab
发表于 2023-5-5 22:25:54 | 显示全部楼层 |阅读模式
下载1:https://pan.huang1111.cn/s/z9BQfM
下载2:https://t.wss.ink/f/b4ybgup0ici

解压密码:infected
秋日之殇
发表于 2023-5-5 22:34:04 | 显示全部楼层
卡巴清空

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1人气 +2 收起 理由
dongwenqi + 2 版区有你更精彩: )

查看全部评分

UNknownOoo
发表于 2023-5-5 22:34:56 | 显示全部楼层
火绒
扫描:5X

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
东南大学
发表于 2023-5-5 22:37:02 | 显示全部楼层
小红伞SAVAPI扫描
  1. Global information:
  2. -------------------
  3. date: Fri, 05 May 2023 22:33:51 +0800
  4. product version: 4.15.16.62
  5. engine version: 8.3.66.80
  6. VDF version: 8.19.40.6
  7. VDF signature count: 5243914
  8. license expire: 2023-09-30

  9. Scan results:
  10. -------------
  11. alert_name=TR/AD.RedLineSteal.hjsxr type=trojan description=Is the Trojan horse TR/AD.RedLineSteal.hjsxr file=c:\Downloads\missed\1\11.exe
  12. alert_name=TR/Crypt.XPACK.Gen type=APC/TR description=Detected by Avira APC file=c:\Downloads\missed\1\1F3D.exe
  13. alert_name=TR/Redcap.teoox type=trojan description=Is the Trojan horse TR/Redcap.teoox file=c:\Downloads\missed\1\321.exe
  14. alert_name=HEUR/AGEN.1357339 type=heuristic description=Contains suspicious code HEUR/AGEN.1357339 file=c:\Downloads\missed\1\3BAF.exe
  15. alert_name=TR/Crypt.XPACK.Gen type=APC/TR description=Detected by Avira APC file=c:\Downloads\missed\1\4C26.exe
  16. alert_name=TR/Crypt.XPACK.Gen type=APC/TR description=Detected by Avira APC file=c:\Downloads\missed\1\D64C.exe

  17. Summary:
  18. --------
  19. total: 7
  20. clean: 1
  21. infected: 6
  22. repairable: 0
  23. not scanned: 0
复制代码
心醉咖啡
发表于 2023-5-5 22:37:49 | 显示全部楼层
毒霸

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
761773275
发表于 2023-5-5 22:38:19 | 显示全部楼层
本帖最后由 761773275 于 2023-5-5 22:39 编辑

BEST kill all
Eset小粉絲
发表于 2023-5-5 22:39:23 | 显示全部楼层


ESET 7/7

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wwwab
 楼主| 发表于 2023-5-5 22:49:11 | 显示全部楼层
大蜘蛛Dr.Web:
  1. Engine version: 7.0.59.12300
  2. Total virus-finding records: 11568998
复制代码
  1. 1.zip - archive ZIP
  2. >1.zip/1/D64C.exe - Ok
  3. >1.zip/1/3BAF.exe infected with Trojan.MulDropNET.43
  4. >1.zip/1/321.exe packed by FLY-CODE
  5. >>1.zip/1/321.exe - Ok
  6. >1.zip/1/Install.exe - file too large, skipped
  7. >1.zip/1/1F3D.exe - Ok
  8. >1.zip/1/4C26.exe - Ok
  9. >1.zip/1/11.exe packed by FLY-CODE
  10. >>1.zip/1/11.exe packed by BINARYRES
  11. >>>1.zip/1/11.exe packed by FLY-CODE
  12. >>>>1.zip/1/11.exe - Ok
复制代码
Only Kill 1
hhhq316
头像被屏蔽
发表于 2023-5-5 23:04:38 | 显示全部楼层
EMSi

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
东南大学
发表于 2023-5-5 23:06:15 | 显示全部楼层
骚护士扫描
  1. Microsoft Windows [Version 6.1.7601]
  2. Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

  3. e:\GitHub\sav32cli>sav64cli -extensive -all -putf8=sav32cli.log -archive -cab -loopback -mime -oe -tnef -pua -suspicious -rename -mac c:\Downloads\missed\1\
  4. Sophos Anti-Virus
  5. Version 5.99.0 [Win32/AMD64]
  6. Virus data version 6.00, April 2023
  7. Includes detection for 83183875 viruses, trojans and worms
  8. Copyright (c) 1989-2023 Sophos Limited. All rights reserved.

  9. BY USING THIS TOOL YOU AGREE THAT YOU ARE FULLY BOUND BY, AND SUBJECT TO, ALL
  10. OF THE OBLIGATIONS CONTAINED IN THE SOPHOS END USER LICENCE AGREEMENT ("EULA")
  11. AND THE ONLY RIGHTS AND/OR REMEDIES AVAILABLE TO YOU (WITH RESPECT TO YOUR USE
  12. OF THIS TOOL) ARE THOSE RIGHTS AND REMEDIES THAT ARE STATED IN THE EULA
  13. (a copy of which is reproduced at : https://www.sophos.com/en-us/legal/sophos-en
  14. d-user-license-agreement.aspx).

  15. System time 22:59:58, System date 05 May 2023
  16. Command line qualifiers are: -extensive -all -putf8=sav32cli.log -archive -cab -
  17. loopback -mime -oe -tnef -pua -suspicious -rename -mac

  18. IDE directory is: e:\GitHub\sav32cli

  19. Using IDE file form-dlq.ide
  20. .....
  21. Using IDE file crypt-n.ide

  22. Quick Scanning

  23. >>> Virus 'Troj/Krypt-VZ' found in file c:\Downloads\missed\1\1F3D.exe
  24. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  25. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  26. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  27. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  28. Renamed c:\Downloads\missed\1\1F3D.exe to c:\Downloads\missed\1\1F3D.exe.infected successfully
  29. >>> Virus 'Troj/ILAgent-I' found in file c:\Downloads\missed\1\3BAF.exe
  30. >>> Virus 'Troj/ILAgent-I' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  31. >>> Virus 'Troj/ILAgent-I' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  32. >>> Virus 'Troj/ILAgent-I' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  33. >>> Virus 'Troj/ILAgent-I' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  34. Renamed c:\Downloads\missed\1\3BAF.exe to c:\Downloads\missed\1\3BAF.exe.infected successfully
  35. >>> Virus 'Troj/Krypt-VZ' found in file c:\Downloads\missed\1\4C26.exe
  36. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  37. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  38. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  39. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  40. Renamed c:\Downloads\missed\1\4C26.exe to c:\Downloads\missed\1\4C26.exe.infected successfully
  41. >>> Virus 'Troj/Krypt-VZ' found in file c:\Downloads\missed\1\D64C.exe
  42. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  43. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  44. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  45. >>> Virus 'Troj/Krypt-VZ' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  46. Renamed c:\Downloads\missed\1\D64C.exe to c:\Downloads\missed\1\D64C.exe.infected successfully
  47. >>> Virus 'Mal/VMProtBad-A' found in file c:\Downloads\missed\1\Install.exe
  48. >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  49. >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  50. >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  51. >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  52. Renamed c:\Downloads\missed\1\Install.exe to c:\Downloads\missed\1\Install.exe.infected successfully

  53. Registry was swept.
  54. 7 files swept in 3 minutes and 35 seconds.
  55. 25 viruses were discovered.
  56. No PUAs were discovered.
  57. 5 files out of 7 were infected.
  58. If you need further advice regarding any detections please visit our
  59. Threat Center at: http://www.sophos.com/en-us/threat-center.aspx
  60. Ending Sophos Anti-Virus.

  61. e:\GitHub\sav32cli>
复制代码
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-2 08:36 , Processed in 0.268383 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表