123
返回列表 发新帖
楼主: qianwenxiang
收起左侧

[病毒样本] 06.07 100x

[复制链接]
sbbdms
发表于 2008-6-7 23:48:22 | 显示全部楼层
Hello,

an006[1].Vexe - Trojan-Downloader.Win32.Agent.sfj,
Rundll32.bat - Worm.BAT.Agent.s,
39FB068D - Trojan.Win32.Agent.rdt,
6F9973FD - Backdoor.Win32.Visel.nt,
965C548D - SpamTool.Win32.VB.az,
A06A102B - Trojan.Win32.VB.des,
C55B5C61 - Backdoor.Win32.Visel.nv,
D322414C - Rootkit.Win32.Agent.aqd,
DD3FE4CF - Trojan-Downloader.Win32.QQHelper.bku,
E8D0C734 - Trojan-Spy.Win32.Delf.cnm

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

iifdabYR.dll - not-a-virus:AdWare.Win32.Virtumonde.yff,
msupdate.exe - not-a-virus:AdWare.Win32.Virtumonde.yfg

These files are Advertizing Tools, theirs detection will be included in the next
update of extended databases set. See more info about
extended databases here: http://www.kaspersky.com/extraavupdates

msssc.dll2, Procmon1.exe2, sysme.bat3, tencent.sys3, 697C40F2, 8ADC7D0A, ADA462C, B026E55B, D6C26FA9

No malicious code were found in these files.

BA48E62A

This file is corrupted.

Please quote all when answering.

--
Best regards, Vyacheslav Zakorzhevsky
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.



> Attachment: 080605up.rar
sam.to
发表于 2008-6-9 20:03:07 | 显示全部楼层
Filename         Result
1A37EC7E          MALWARE

The file '1A37EC7E' has been determined to be 'MALWARE'. Our analysts named the threat TR/BHO.dkf. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
24036445          DAMAGED FILE (MALWARE)

The file '24036445' has been determined to be 'DAMAGED FILE (MALWARE)'. In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename         Result
2F494FAD          MALWARE

The file '2F494FAD' has been determined to be 'MALWARE'. Our analysts named the threat TR/PSW.OnlineGames.alse.48. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: HEUR/Malware.
Filename         Result
67ABC5E          MALWARE

The file '67ABC5E' has been determined to be 'MALWARE'. Our analysts named the threat TR/StartPage.atj.7. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
697C40F2          MALWARE

The file '697C40F2' has been determined to be 'MALWARE'. Our analysts named the threat DR/Agent.L.1. The term "DR/" denotes a program that is able to place a virus or a malware discretely on a system.Detection is added to our virus definition file (VDF) starting with version 6.39.01.51.
Filename         Result
6BEAE1E1          DAMAGED FILE (UNKNOWN)

The file '6BEAE1E1' has been determined to be 'DAMAGED FILE (UNKNOWN)'. In particular this means that this file is damaged and not working properly. We could not find any malicious content. However the heuristic detection module may still detect this particular file even though it is damaged. In that case we will not adjust and remove detection for this damaged file.
Filename         Result
717D085          MALWARE

The file '717D085' has been determined to be 'MALWARE'. Our analysts named the threat TR/Killav.TI.9. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
739AC812          MALWARE

The file '739AC812' has been determined to be 'MALWARE'. Our analysts named the threat TR/PSW.OnlineGames.alse.49. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: HEUR/Malware.
Filename         Result
796DEC29          MALWARE

The file '796DEC29' has been determined to be 'MALWARE'. Our analysts named the threat TR/Killav.TI.10. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
965C548D          MALWARE

The file '965C548D' has been determined to be 'MALWARE'. Our analysts named the threat SPR/Spam.VB.AZ. The term "SPR/" ("Security or Privacy Risk") denotes a program that might possibly be able to affect the security of your system, might trigger activities you might not want or might violate your privacy.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: HEUR/Crypted.
Filename         Result
9849130E          MALWARE

The file '9849130E' has been determined to be 'MALWARE'. Our analysts named the threat TR/Killav.TI.11. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
A4DDE476          DAMAGED FILE (MALWARE)

The file 'A4DDE476' has been determined to be 'DAMAGED FILE (MALWARE)'. In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename         Result
A4E42008          MALWARE

The file 'A4E42008' has been determined to be 'MALWARE'. Our analysts named the threat TR/PSW.OnlineGames.alse.50. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: HEUR/Malware.
Filename         Result
B3732C45          MALWARE

The file 'B3732C45' has been determined to be 'MALWARE'. Our analysts named the threat TR/Killav.TI.12. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
D322414C          MALWARE

The file 'D322414C' has been determined to be 'MALWARE'. Our analysts named the threat Rkit/Agent.aqd. The term ?RKIT/? denotes a piece of software that uses cloaking techniques to hide itself from view. Therefore it has to be categorized as potentially malicious.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
D5A93DC6          MALWARE

The file 'D5A93DC6' has been determined to be 'MALWARE'. Our analysts named the threat DR/BHO.Aim.28. The term "DR/" denotes a program that is able to place a virus or a malware discretely on a system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
DAF245FD          DAMAGED FILE (UNKNOWN)

The file 'DAF245FD' has been determined to be 'DAMAGED FILE (UNKNOWN)'. In particular this means that this file is damaged and not working properly. We could not find any malicious content. However the heuristic detection module may still detect this particular file even though it is damaged. In that case we will not adjust and remove detection for this damaged file.
Filename         Result
E05EB776          MALWARE

The file 'E05EB776' has been determined to be 'MALWARE'. Our analysts named the threat TR/Killav.TI.13. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
ECD64B3D          MALWARE

The file 'ECD64B3D' has been determined to be 'MALWARE'. Our analysts named the threat BDS/Hupigon.ADI.347. The term "BDS/" denotes a Backdoor-Server program. Backdoor-Server programs are used to spy out, modify or delete data.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: HEUR/Crypted.
Filename         Result
F21E25DC          MALWARE

The file 'F21E25DC' has been determined to be 'MALWARE'. Our analysts named the threat TR/PSW.OnlineGames.alse.51. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
Filename         Result
FEAF52CC          MALWARE

The file 'FEAF52CC' has been determined to be 'MALWARE'. Our analysts named the threat TR/Killav.TI.14. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.00.04.157.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-16 00:28 , Processed in 0.104728 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表