查看: 1751|回复: 6
收起左侧

[病毒样本] Test Sample(1)

[复制链接]
qigang
发表于 2008-6-29 22:36:27 | 显示全部楼层 |阅读模式
反病毒引擎版本最后更新扫描结果
AhnLab-V32008.6.27.12008.06.29-
AntiVir7.8.0.592008.06.28TR/Dropper.Gen
Authentium5.1.0.42008.06.29-
Avast4.8.1195.02008.06.28-
AVG7.5.0.5162008.06.29Downloader.Swizzor.A
BitDefender7.22008.06.29-
CAT-QuickHeal9.502008.06.28-
ClamAV0.93.12008.06.28-
DrWeb4.44.0.091702008.06.29-
eSafe7.0.17.02008.06.26Suspicious File
eTrust-Vet31.6.59112008.06.27-
Ewido4.02008.06.27-
F-Prot4.4.4.562008.06.29-
F-Secure7.60.13501.02008.06.26-
Fortinet3.14.0.02008.06.29-
GData2.0.7306.10232008.06.29-
IkarusT3.1.1.26.02008.06.29Trojan-Dropper.Farfli.C
Kaspersky7.0.0.1252008.06.29-
McAfee53272008.06.27-
Microsoft1.37042008.06.29-
NOD32v232252008.06.29-
Norman5.80.022008.06.27-
Panda9.0.0.42008.06.29-
Prevx1V22008.06.29Malicious Software
Rising20.50.62.002008.06.29-
Sophos4.30.02008.06.29-
Sunbelt3.0.1176.12008.06.26-
Symantec102008.06.29-
TheHacker6.2.96.3642008.06.28-
TrendMicro8.700.0.10042008.06.27-
VBA323.12.6.82008.06.29-
VirusBuster4.5.11.02008.06.23-
Webwasher-Gateway6.6.22008.06.29Trojan.Dropper.Gen
附加信息
File size: 184320 bytes
MD5...: ecdf5c628dea372bae1f34742915599d
SHA1..: 614346701d332b20a7c58d657a63e4e66827d2db
SHA256: c35795f2e12bb5a649bf7bbcb912d2fcf3932dc76dc4ffbf343a7fda8b863fcb
SHA512: 8a2ec574435521870339e9abf34322878c053eb8bd48ab88600fad3a1ca15d00
65f3442cd167fbb5e7287cb4299ed240c0bea71d48ac379b852eedda54683e26
PEiD..: Armadillo v1.71
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x40cae4
timedatestamp.....: 0x48645212 (Fri Jun 27 02:36:02 2008)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xbc70 0xc000 6.80 2d5e42d4bcc9004170e28bb0c4778d65
.rdata 0xd000 0x4b0c 0x5000 7.32 50c3527437298f5e1f7bc1dc04943d17
.data 0x12000 0x1ab50 0x1b000 7.98 acd70dd277dbb7511b1fc450f3a9be46

( 9 imports )
> USER32.dll: wsprintfA
> SHELL32.dll: SHGetSpecialFolderPathA
> ole32.dll: CoInitialize, CoCreateGuid, CoCreateInstance
> RPCRT4.dll: UuidToStringA
> ADVAPI32.dll: RegCloseKey, StartServiceA, RegCreateKeyExA, RegSetValueExA, RegOpenKeyExA, CreateServiceA, OpenSCManagerA, DeleteService, CryptReleaseContext, CryptGenRandom, CryptAcquireContextA, CloseServiceHandle, OpenServiceA
> SHLWAPI.dll: StrStrIA, SHGetValueA, SHEnumKeyExA, SHSetValueA, SHEnumValueA
> MSVCRT.dll: strlen, ispunct, isspace, strerror, tolower, isalnum, printf, wctomb, __mb_cur_max, malloc, isupper, islower, fwrite, free, fclose, fopen, time, sprintf, atoi, strncpy, wcscpy, mbstowcs, srand, _exit, _XcptFilter, exit, _acmdln, __getmainargs, _initterm, __setusermatherr, _adjust_fdiv, __p__commode, __p__fmode, __set_app_type, _except_handler3, _controlfp, isxdigit, memcmp, isalpha, rand, isgraph, strcpy, strcat, memcpy, memset, __2@YAPAXI@Z
> IMAGEHLP.dll: ImageNtHeader
> KERNEL32.dll: FindFirstFileA, lstrlenA, ExitProcess, GetVersionExA, GetLocalTime, SleepEx, GetModuleHandleA, GetFileAttributesA, GetPrivateProfileStringA, FindNextFileA, WideCharToMultiByte, GetLastError, GetSystemDirectoryA, GetFileAttributesExA, CreateFileA, SetFileTime, CloseHandle, GetStartupInfoA

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogr ... 2B616500C001B5445E7

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ssy275
发表于 2008-6-29 22:45:10 | 显示全部楼层
sophosMISS
Kitman
发表于 2008-6-30 00:44:15 | 显示全部楼层
Hello. This file is already detected. Please update your bases.

Sincerely yours,
Andrey Bezborodov,
Virus Analyst.
_____________________
Kaspersky Lab Ltd
Moscow, Russia
电影结束了
发表于 2008-6-30 08:37:10 | 显示全部楼层
F:\logo.rar>>logo.jpg         Trojan.Cap86300.pgxt    木马

....误报?
Palkia
发表于 2008-6-30 09:14:10 | 显示全部楼层
病毒        2000-06-30  09:14:00        C:\Documents and Settings\Administrator\桌面\logo.rar\logo.jpg        Win32.Troj.HmirT.xe.188416        清除成功
markrhy
发表于 2008-7-1 15:43:23 | 显示全部楼层
红伞杀!!!
水晶
发表于 2008-7-1 15:46:14 | 显示全部楼层
毒霸 病毒        2008-07-01  15:48:14        C:\Documents and Settings\Administrator\桌面\logo.rar\logo.jpg        Win32.Troj.HmirT.xe.188416        隔离成功
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-27 16:43 , Processed in 0.122811 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表