楼主: sam.to
收起左侧

[病毒样本] 每次下载都不同的木马网站(148楼有最新样本下载)

[复制链接]
Exia 该用户已被删除
发表于 2008-4-5 11:38:30 | 显示全部楼层

回复 20楼 kato9096 的帖子

14
Starting the file scan:

Begin scan in 'E:\新建文件夹 (2)'
E:\新建文件夹 (2)\44.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\45.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\49.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\51.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\52.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\53.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\54.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\56.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\57.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\58.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\60.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\41.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\42.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\43.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!


End of the scan: 2008年4月5日  11:39
Used time: 01:41 min

The scan has been done completely.

      1 Scanning directories
     20 Files were scanned
     14 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     14 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      6 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes

3809244  46.int  423 KB  UNDER ANALYSIS
3809245  47.int  424 KB  UNDER ANALYSIS
3809245  48.int  424 KB  UNDER ANALYSIS
3809246  50.int  403.5 KB  UNDER ANALYSIS
3809247  55.int  498.5 KB  UNDER ANALYSIS
3809248  59.int  413.5 KB  UNDER ANALYSIS

[ 本帖最后由 Exia 于 2008-4-5 11:46 编辑 ]
sam.to
 楼主| 发表于 2008-4-5 11:38:34 | 显示全部楼层
61-80,上报卡巴

今晚再來

Hello,

61.int - Trojan-Downloader.Win32.Obfuscated.gu,
62.int - Trojan-Downloader.Win32.Obfuscated.gv,
63.int - Trojan-Downloader.Win32.Obfuscated.gw,
64.int - Trojan-Downloader.Win32.Obfuscated.gx,
65.int - Trojan-Downloader.Win32.Obfuscated.gy,
66.int - Trojan-Downloader.Win32.Obfuscated.gz,
67.int - Trojan-Downloader.Win32.Obfuscated.ha,
68.int - Trojan-Downloader.Win32.Obfuscated.hb,
69.int - Trojan-Downloader.Win32.Obfuscated.hc,
70.int - Trojan-Downloader.Win32.Obfuscated.hd,
71.int - Trojan-Downloader.Win32.Obfuscated.he,
72.int - Trojan-Downloader.Win32.Obfuscated.hf,
73.int - Trojan-Downloader.Win32.Obfuscated.hg,
74.int - Trojan-Downloader.Win32.Obfuscated.hh,
76.int - Trojan-Downloader.Win32.Obfuscated.hi,
77.int - Trojan-Downloader.Win32.Obfuscated.hj,
78.int - Trojan-Downloader.Win32.Obfuscated.hk,
79.int - Trojan-Downloader.Win32.Obfuscated.hl

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

75.int - Trojan-Downloader.Win32.Obfuscated.gd

This file is already detected. Please update your antivirus bases.

Please quote all when answering.

--
Best regards, Kirill Erakhtin
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

[ 本帖最后由 kato9096 于 2008-4-6 11:03 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Exia 该用户已被删除
发表于 2008-4-5 11:50:20 | 显示全部楼层

回复 22楼 kato9096 的帖子

Starting the file scan:

Begin scan in 'E:\新建文件夹 (2)'
E:\新建文件夹 (2)\77.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\78.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\79.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\80.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\61.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\62.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\63.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\65.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\67.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\68.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\69.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\72.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\74.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\75.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!
E:\新建文件夹 (2)\76.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [INFO]      The file was deleted!


End of the scan: 2008年4月5日  11:51
Used time: 00:27 min

The scan has been done completely.

      1 Scanning directories
     20 Files were scanned
     15 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     15 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      5 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
mofunzone
发表于 2008-4-5 11:53:26 | 显示全部楼层

回复 22楼 kato9096 的帖子

Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\TRR4'
C:\Documents and Settings\Administrator\My Documents\TRR4\
  61.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  62.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  63.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  64.int
  65.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  66.int
  67.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  68.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  69.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  70.int
  71.int
  72.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  73.int
  74.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  75.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  76.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  77.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  78.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  79.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!
  80.int
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [NOTE]      The file was deleted!


End of the scan: 2008年4月4日  20:53
Used time: 00:04 min

The scan has been done completely.

      1 Scanning directories
     20 Files were scanned
     15 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     15 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      5 Files not concerned
      0 Archives were scanned
      0 Warnings
     15 Notes
mofunzone
发表于 2008-4-5 11:56:55 | 显示全部楼层
3809251          64.int          443.5 KB          UNDER ANALYSIS
3809252          66.int          454 KB          UNDER ANALYSIS
3809253          70.int          428 KB          UNDER ANALYSIS
3809254          71.int          413 KB          UNDER ANALYSIS
3809255          73.int          434 KB          UNDER ANALYSIS
微点卫士
发表于 2008-4-5 12:40:40 | 显示全部楼层

回复 20楼 kato9096 的帖子

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
马力
发表于 2008-4-5 12:42:24 | 显示全部楼层

回复 20楼 kato9096 的帖子

驱逐舰20个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
马力
发表于 2008-4-5 12:44:34 | 显示全部楼层

回复 22楼 kato9096 的帖子

驱逐舰全报

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
微点卫士
发表于 2008-4-5 12:47:39 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
sam.to
 楼主| 发表于 2008-4-5 14:03:59 | 显示全部楼层
81-100,上报卡巴

Hello,

100.int - Trojan.Win32.Obfuscated.uu,
81.int - Trojan.Win32.Obfuscated.uv,
82.int - Trojan.Win32.Obfuscated.uw,
83.int - Trojan.Win32.Obfuscated.ux,
84.int - Trojan.Win32.Obfuscated.uy,
85.int - Trojan.Win32.Obfuscated.uz,
86.int - Trojan.Win32.Obfuscated.va,
87.int - Trojan.Win32.Obfuscated.vb,
88.int - Trojan.Win32.Obfuscated.vc,
89.int - Trojan.Win32.Obfuscated.ve,
90.int - Trojan.Win32.Obfuscated.vd,
91.int - Trojan.Win32.Obfuscated.vf,
92.int - Trojan.Win32.Obfuscated.vg,
93.int - Trojan.Win32.Obfuscated.vh,
94.int - Trojan.Win32.Obfuscated.vi,
95.int, 96.int - Trojan.Win32.Obfuscated.vj,
97.int - Trojan.Win32.Obfuscated.vl,
98.int - Trojan.Win32.Obfuscated.vm,
99.int - Trojan.Win32.Obfuscated.vn

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

[ 本帖最后由 kato9096 于 2008-4-5 18:41 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-14 22:54 , Processed in 0.090141 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表