查看: 2088|回复: 13
收起左侧

[病毒样本] 2

[复制链接]
qianwenxiang
发表于 2008-4-7 19:15:21 | 显示全部楼层 |阅读模式
avast pass..

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
geforce
发表于 2008-4-7 19:23:01 | 显示全部楼层
C:\2.rar
  [0] Archive type: RAR
  --> xoomn.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Delphi.Gen
  --> xoomvip.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Delphi.Gen
      [INFO]      The file was deleted!
让红伞pass太难了。
Palkia
发表于 2008-4-7 19:25:19 | 显示全部楼层
费尔0
aerbeisi
发表于 2008-4-7 19:26:34 | 显示全部楼层
[Found downloader]         <W32/Banload.B.gen!Eldorado (not disinfectable, generic)>        C:\test\2.rar->xoomn.exe
[Found downloader]         <W32/Banload.B.gen!Eldorado (not disinfectable, generic)>        C:\test\2.rar->xoomvip.exe
wangjay1980
发表于 2008-4-7 19:27:31 | 显示全部楼层
TO KL

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
qwer9909
发表于 2008-4-7 19:27:49 | 显示全部楼层
我的费尔怎么报了??

C:\Documents and Settings\Administrator\桌面\2.rar>>xoomn.exe        Heuri.Possible/Packed        启发式扫描        还未处理
C:\Documents and Settings\Administrator\桌面\2.rar>>xoomvip.exe        Heuri.Possible/Packed        启发式扫描        还未处理
nealee
发表于 2008-4-7 19:30:32 | 显示全部楼层
EAV 又pass 了~~
qigang
发表于 2008-4-7 19:32:26 | 显示全部楼层

5/0

rising20.39.01未杀!
wangjay1980
发表于 2008-4-7 19:59:35 | 显示全部楼层
Hello.
New malicious software was found in the attached file.
It's detection will be included in the next update. Thank you for your help.
-----------------
Regards, Namestnikov Yury
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com


> Attachment: 2.zip
wangfeng66
发表于 2008-4-7 20:03:29 | 显示全部楼层
File 2.rar received on 04.07.2008 14:01:33 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED


Result: 19/32 (59.38%)
Loading server information...
Your file is queued in position: 2.
Estimated start time is between 42 and 60 seconds.
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they're generated.
Compact Print results  
Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.

You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:  
  

Antivirus Version Last Update Result
AhnLab-V3 2008.4.4.1 2008.04.07 -
AntiVir 7.6.0.81 2008.04.07 TR/Dldr.Delphi.Gen
Authentium 4.93.8 2008.04.05 Possibly a new variant of W32/CrazyCrunch-based!Maximus
Avast 4.7.1098.0 2008.04.07 -
AVG 7.5.0.516 2008.04.06 -
BitDefender 7.2 2008.04.07 BehavesLike:Win32.Malware
CAT-QuickHeal 9.50 2008.04.05 Win32.Trojan-PSW.OnLineGames.nn2
ClamAV 0.92.1 2008.04.07 PUA.Packed.UPack
DrWeb 4.44.0.09170 2008.04.07 -
eSafe 7.0.15.0 2008.04.01 suspicious Trojan/Worm
eTrust-Vet 31.3.5678 2008.04.07 -
Ewido 4.0 2008.04.06 -
F-Prot 4.4.2.54 2008.04.07 W32/Heuristic-162!Eldorado
F-Secure 6.70.13260.0 2008.04.07 W32/Downloader
FileAdvisor 1 2008.04.07 -
Fortinet 3.14.0.0 2008.04.07 -
Ikarus T3.1.1.20.0 2008.04.07 Trojan-Dropper.Win32.Agent.ane
Kaspersky 7.0.0.125 2008.04.07 Heur.Downloader
McAfee 5267 2008.04.04 New Malware.n
Microsoft 1.3408 2008.04.06 TrojanDownloader:Win32/Banload.gen!A
NOD32v2 3006 2008.04.07 -
Norman 5.80.02 2008.04.04 -
Panda 9.0.0.4 2008.04.07 Suspicious file
Prevx1 V2 2008.04.07 -
Rising 20.38.60.00 2008.04.03 -
Sophos 4.28.0 2008.04.07 Mal/DelpDldr-D
Sunbelt 3.0.1032.0 2008.04.07 Win32.Looked.P (v)
Symantec 10 2008.04.07 Downloader
TheHacker 6.2.92.266 2008.04.05 W32/Behav-Heuristic-060
VBA32 3.12.6.4 2008.04.06 -
VirusBuster 4.3.26:9 2008.04.06 Packed/Upack
Webwasher-Gateway 6.6.2 2008.04.07 Trojan.Dldr.Delphi.Gen
Additional information
File size: 38631 bytes
MD5...: 6b32a8a97698720847b3b7363714dab7
SHA1..: b4324468d501e17c88db31671776749c87871a3e
SHA256: f32aae3dd15d2c8dbfd917c4ce0624a781fc240be5903097a43f6ee6354a52ff
SHA512: f0893961cb031aa7d2819b5ee05123b5538c498585e588f39cdc70143829fb36
a48756284d675371009219d5cfa4e4f0ce19c1efa8028c8cb330e3e918366a3f
PEiD..: -
PEInfo: -
packers (Kaspersky): UPack, UPack
packers (F-Prot): UPack
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-15 01:53 , Processed in 0.174467 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表