查看: 3412|回复: 13
收起左侧

[病毒样本] swf嗅探!

[复制链接]
qigang
发表于 2008-6-10 18:15:26 | 显示全部楼层 |阅读模式
http://www.clsre.cn/4561.swf

http://www.clsre.cn/4562.swf


qigang
 楼主| 发表于 2008-6-10 19:56:15 | 显示全部楼层

呼唤!

冷冷,小祥及其他高手!
sam.to
发表于 2008-6-10 20:07:37 | 显示全部楼层
Already to kl , anti vir ,pc security labs

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
曲中求
发表于 2008-6-10 20:13:09 | 显示全部楼层
反病毒引擎 版本 最后更新 扫描结果
AhnLab-V3 2008.5.30.1 2008.06.10 -
AntiVir 7.8.0.55 2008.06.10 -
Authentium 5.1.0.4 2008.06.09 -
Avast 4.8.1195.0 2008.06.10 -
AVG 7.5.0.516 2008.06.10 -
BitDefender 7.2 2008.06.10 -
CAT-QuickHeal 9.50 2008.06.09 -
ClamAV 0.92.1 2008.06.10 -
DrWeb 4.44.0.09170 2008.06.10 -
eSafe 7.0.15.0 2008.06.09 -
eTrust-Vet 31.6.5862 2008.06.10 -
Ewido 4.0 2008.06.10 -
F-Prot 4.4.4.56 2008.06.09 -
F-Secure 6.70.13260.0 2008.06.10 -
Fortinet 3.14.0.0 2008.06.10 -
GData 2.0.7306.1023 2008.06.10 -
Ikarus T3.1.1.26.0 2008.06.10 -
Kaspersky 7.0.0.125 2008.06.10 -
McAfee 5313 2008.06.09 -
Microsoft None 2008.06.10 -
NOD32v2 3172 2008.06.10 -
Norman 5.80.02 2008.06.09 -
Panda 9.0.0.4 2008.06.09 -
Prevx1 V2 2008.06.10 -
Rising 20.48.12.00 2008.06.10 -
Sophos 4.30.0 2008.06.10 -
Sunbelt 3.0.1145.1 2008.06.05 -
Symantec 10 2008.06.10 -
TheHacker 6.2.92.341 2008.06.10 -
VBA32 3.12.6.7 2008.06.09 -
VirusBuster 4.3.26:9 2008.06.09 -
Webwasher-Gateway 6.6.2 2008.06.10 -
附加信息
File size: 1928 bytes
MD5...: b93c2ae92d12577ba33afcfc25495ff2
SHA1..: 4025ab01d315a79d1acbb47f312241c10be6013c
SHA256: 353a9052b167cc9aed26221b0f3655529c854121953b04aa77b9700b7fc7d934
SHA512: 929371bd8fa7bd18f9a981266ff6980b8623cdbe068debd7108c842f1bc6c6d0
0ad16e493fe657fc6826d47be583f37f2563a5bd6f3ec255b4cef3ba32ae641e
PEiD..: -
PEInfo: -
packers (Kaspersky): Swf2Swc, Swf2Swc

qianwenxiang
发表于 2008-6-10 20:25:20 | 显示全部楼层
http://www.clsre.cn/abe.exe

与flashw.net.cn是一家人

Domain Name: clsre.cn
ROID: 20080607s10001s30021685-cn
Domain Status: clientTransferProhibited
Registrant Organization: 呆呆
Registrant Name: 呆呆
Administrative Email: lovegod@aaa.com

Domain Name: flashw.net.cn
ROID: 20080606s10021s68215672-cn
Domain Status: clientTransferProhibited
Registrant Organization: 呆呆
Registrant Name: 呆呆
Administrative Email: lovegod@aaa.com
qigang
 楼主| 发表于 2008-6-10 20:41:34 | 显示全部楼层

2/1

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.AntiAV.aj   

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.48.12

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
sam.to
发表于 2008-6-10 20:44:08 | 显示全部楼层
我用threatexpert.com分析不到,說不支持SWF,我把SWF更改成exe都不行
冷冷
发表于 2008-6-10 20:45:08 | 显示全部楼层

回复 7楼 kato9096 的帖子

不是pe文件
sam.to
发表于 2008-6-10 22:32:57 | 显示全部楼层
Hello.
New malicious software was found in the attached files.
Its detection will be included in the next update. Thank you for your help.
-----------------
Regards, Vladimir Lebedev
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com
sam.to
发表于 2008-6-10 22:47:21 | 显示全部楼层
Filename         Result
4561.swf          MALWARE

The file '4561.swf' has been determined to be 'MALWARE'. Our analysts named the threat EXP/SWF.Downloade.J. The term "EXP/" denotes malware that is able to detect and use certain security vulnerabilities whereby the attacker can get control of the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename         Result
4562.swf          MALWARE

The file '4562.swf' has been determined to be 'MALWARE'. Our analysts named the threat EXP/SWF.Downloade.K. The term "EXP/" denotes malware that is able to detect and use certain security vulnerabilities whereby the attacker can get control of the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-6 19:46 , Processed in 0.130658 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表