查看: 3220|回复: 16
收起左侧

[病毒样本] 刚抓的漏洞木马3个!

[复制链接]
sanhu35
发表于 2008-7-6 21:52:36 | 显示全部楼层 |阅读模式
。。。。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Kitman
发表于 2008-7-6 22:20:40 | 显示全部楼层
Begin scan in 'C:\Documents and Settings\Administrator\桌面\3'
C:\Documents and Settings\Administrator\桌面\3\刚抓的\bak.css
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Dldr.Small.xxg
      [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/UPACK). Please verify the origin of the file
      [NOTE]      A backup was created as '48dbd507.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\3\刚抓的\update.exe
      [DETECTION] Is the Trojan horse TR/Sorri.O.11
      [NOTE]      A backup was created as '48d4d516.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\3\刚抓的\UUSee.CAB
  [0] Archive type: CAB (Microsoft)
  --> UUSeeMediaCenter.exe
      [DETECTION] Is the Trojan horse TR/Sorri.O.11
      [NOTE]      A backup was created as '48c3d4fb.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
毒枭
发表于 2008-7-6 23:26:55 | 显示全部楼层
Trojan horse TR/Dldr.Small.xxg
syfwxmh
发表于 2008-7-7 08:48:15 | 显示全部楼层
kaspersky 2009 KIll
电影结束了
发表于 2008-7-7 09:22:39 | 显示全部楼层
F:\刚抓的.rar>>刚抓的\bak.css             TrojanDownloader.Agent.vgu.xezp          木马
F:\刚抓的.rar>>刚抓的\update.exe          TrojanPSW.OnLineGames.wlu.kjdk           木马
F:\刚抓的.rar>>刚抓的\UUSee.CAB>>UUSeeMediaCenter.exeTrojanPSW.OnLineGames.wlu.kjdk木马
a256886572008
发表于 2008-7-7 10:22:43 | 显示全部楼层
[5]
20080629 http://hello.hierxw.com/down/wqq1.exe
20080629 http://hello.hierxw.com/down/qqw2.exe
20080629 http://hello.hierxw.com/down/qqw3.exe
20080629 http://hello.hierxw.com/down/qqw4.exe
20080629 http://hello.hierxw.com/down/qqw5.exe
20080629 http://hello.hierxw.com/down/qqw6.exe
20080629 http://hello.hierxw.com/down/qqw7.exe
20080629 http://hello.hierxw.com/down/qqw8.exe
20080629 http://hello.hierxw.com/down/qqw9.exe
20080629 http://hello.hierxw.com/down/qqw10.exe
20080629 http://haha.ziyuan6.com/down/qqw11.exe
20080629 http://haha.ziyuan6.com/down/qqw12.exe
20080629 http://haha.ziyuan6.com/down/qqw13.exe
20080629 http://haha.ziyuan6.com/down/qqw14.exe
20080629 http://haha.ziyuan6.com/down/qqw15.exe
20080629 http://haha.ziyuan6.com/down/qqw16.exe
20080629 http://haha.ziyuan6.com/down/qqw17.exe
20080629 http://haha.ziyuan6.com/down/qqw18.exe
20080629 http://haha.ziyuan6.com/down/qqw19.exe
20080629 http://haha.ziyuan6.com/down/qqw20.exe
20080629 http://news.ziyuan6.com/down/qqw21.exe
20080629 http://news.ziyuan6.com/down/qqw22.exe
20080629 http://news.ziyuan6.com/down/qqw23.exe
20080629 http://news.ziyuan6.com/down/qqw24.exe
20080629 http://news.ziyuan6.com/down/qqw25.exe
20080629 http://news.ziyuan6.com/down/qqw26.exe
20080629 http://news.ziyuan6.com/down/qqw27.exe
20080629 http://news.ziyuan6.com/down/qqw28.exe
20080629 http://news.ziyuan6.com/down/qqw29.exe
20080629 http://news.ziyuan6.com/down/qqw30.exe
20080629 http://news.ziyuan6.com/down/qqw31.exe
20080629 http://news.ziyuan6.com/down/qqw32.exe
20080629 http://news.ziyuan6.com/down/qqw33.exe
20080629 http://news.ziyuan6.com/down/qqw34.exe
20080629 http://news.ziyuan6.com/down/qqw35.exe

Palkia
发表于 2008-7-7 12:04:57 | 显示全部楼层
duba 0
yuanliu 该用户已被删除
发表于 2008-7-7 16:44:13 | 显示全部楼层
2008-7-7 16:43:52        http://bbs.kafan.cn/attachment.p ... &t=1215420170//刚抓的/bak.css//PE_Patch//UPack        Thunder        已检测到: Trojan-Downloader.Win32.Agent.vgu               
2008-7-7 16:43:52        http://bbs.kafan.cn/attachment.p ... &t=1215420170//刚抓的/bak.css//PE_Patch//UPack        Thunder        拒绝: Trojan-Downloader.Win32.Agent.vgu
aerbeisi
发表于 2008-7-7 16:56:14 | 显示全部楼层

NOD32 0个

您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-2 23:27 , Processed in 0.134478 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表