查看: 15400|回复: 79
收起左侧

[病毒样本] Uninstall.exe(此帖会每天更新)[第18次更新]

[复制链接]
sam.to
发表于 2008-7-16 17:53:39 | 显示全部楼层 |阅读模式
当打开这些文件后:









====================================================================
2008年7月16日 下午5时53分:
7e6c7ab07e48809833304f582c75c7bf
Hello.
New malicious software was found in the attached file.
Its detection will be included in the next update. Thank you for your help.
-----------------
Regards, Vladimir Lebedev
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com

====================================================================
2008年7月16日 下午7时03,07分:
cf410a0dae4ffd7dd0709c1788269810  uninstall.exe8

d550979601422fe44125ab9553979694  uninstall.exe3
8ebfa3584785452dba9b487194e1f050  uninstall.exe2

Hello.
New malicious software was found in the attached file.  Trojan.Win32.Obfuscated.mfx
It's detection will be included in the next update. Thank you for your help.

Please quote all when answering. Do not forget to include you registration data.
-----------------
Regards, Tatarinov Ivan
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com



====================================================================
2008年7月17日 下午2时14分:
130d5b51a08df3996c3401fc68aacc09 uninstall.exe1
Hello,

uninstall.exe1 - Trojan-Downloader.Win32.Obfuscated.aru

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Kirill Erakhtin
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

====================================================================
2008年7月17日 下午11时56分:
79298743a72d498fdb57a186748b36da  uninstall.exe9
Hello,

uninstall.exe9 - Trojan.Win32.Obfuscated.mon

This file is already detected. Please update your antivirus bases.

Please quote all when answering.

--
Best regards, Vladimir Lebedev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

====================================================================
2008年7月18日 早上12时59分:
61994878544915d0842c74e6a25045e0  uninstall.exe
Hello.
New malicious software was found in the attached file.
Its detection will be included in the next update. Thank you for your help.
-----------------
Regards, Vladimir Lebedev
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com

====================================================================
2008年7月18日 中午2时02分:
793a186ca802d72c835eb96e1c181c63  uninstall.exe6
Hello,

uninstall.exe_ - Trojan.Win32.Obfuscated.mvl

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Evgeny Aseev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

====================================================================
2008年7月18日 晚上6时02分:
ef94face33b365193315b5ed1cd6d230  uninstall.exe8
82c66b4de0ebe48d91c31949d1f122ab  uninstall.exe2
2bae5d0b71e5dc7b7efafbe5c9213dcf  uninstall.exe5
5ae70c3d7297e5713d1cf1f4c28dade0  uninstall.exe6
f8428764821c4e7ac5e49f8c50507f11  uninstall.exe4
44f5ea22cf91b4200789efee35af7694  uninstall.exe9
已上报卡巴,不报的不是毒


====================================================================
2008年7月18日 晚上7时06分:
939be772f0f48beaa63a0c67760418b8  uninstall.exe5
卡巴:
No malicious code were found in these files.

====================================================================
2008年7月19日 晚上7时07分:
6460ac3b642109db2c95c88cd82023a6  9kgen_up.int
fdc06e0e97779b3b670536daed61afbf  uninstall.exe1
Hello.
New malicious software was found in the attached files.
Its detection will be included in the next update. Thank you for your help.
-----------------
Regards, Vladimir Lebedev
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com


====================================================================
2008年7月19日 晚上11时32分:
3c538631011f034d7b9f1f2115f613ed  uninstall.exe4
已上报卡巴(卡巴沒有回信,但已入庫)

====================================================================
2008年7月20日 晚上11时35分:
3290130f8808ecf47566e8d0cf7b1a8d  9-uninstall.exe
6f5fa089277041e9369738515c749fb5  10-uninstall.exe
6f5fa089277041e9369738515c749fb5  1-uninstall.exe
10d6288ab0a167cd4adcc3ace5d9b7e8  2-uninstall.exe
1202e322fd8cddb9c4c847a2d70b2e25  3-uninstall.exe
37b2878ed22c401e72a6c459e76a1e72  4-uninstall.exe
f64c476c187d84a88dada1fa4802ef35  5-uninstall.exe
228317391f8b31ecf495311d6515a740  6-uninstall.exe
d30ded9d57835dc3f2a433b7da2b7446  7-uninstall.exe
5a8133aacc96be7c68e2fae876109961  8-uninstall.exe
今天下载的都有美丽的图标

已上报卡巴(已入庫)



====================================================================
2008年7月21日 中午4时33分:
843d930131a6a6b2cfd8ea12035c8585  uninstall.exe1
已上报卡巴(已入庫)

====================================================================
2008年7月22日 中午4时33分:
de38472324a29abfdf574938aac52f39  9kgen_up.int
21e363bb6234bcdc273d3fe8bbdf7bb3  uninstall.exe1
fce2d778a9d54af889f67c46510709aa  uninstall.exe2
3921bbcd3fc4d6e03d2413a99b519bac  uninstall.exe3
9633737c6ea7fef9617ae3b4205ff5ed  uninstall.exe4
5ce05f1f2bd9a1b363d4888587f09871  uninstall.exe5
6f382d5794bbd48a97f126f11e08c9a7  uninstall.exe6
1fdd98de0e2075877fbb8847e5a0b582  uninstall.exe8
471b28930600d398f6334a1850dfba83  uninstall.exe9

Hello.
These files will be detected as soon as possible.


====================================================================
2008年7月23日 晚上(由sbbdms提供):
fe7306f14f932c6f86be16a7a21a3125  uninstall.ex1e
fbea4db3911713c4100f64b252253337  uninstall(1).exe1
f8dc4abc1d352488831b02f22f30e4cd  uninstall(2).exe1
eb738969953223e9dd941086d05d584d  uninstall(2).exe2
e5e5961d1e39e738a5a4c3cb12ce87f6  uninstall(2).exe2
e4874cae295a5186ba1499020e99837a  uninstall(2).exe2
ddd25616d316da4d75d1287d00c43489  uninstall(2).exe1
dab795f2c8f2f6da8431a1d92023626e  uninstall(3).exe1
d7d25735f1446595f262cf47df72335b  uninstall.exe2
d3478d416e6acab010ece2cf4326883a  uninstall(3).exe2
d318d309b4de33dbf216774426a6418c  uninstall(1).exe6
d0d8929d01d06d0c16e87b529b393b2e  uninstall.exe3
ced35639a9182477fa0424ec3036e83a  uninstall(3).ex2e
ba2c51723c0153339ec7397a1510ff32  uninstall(1).exe2
b7a903cd2a98a8e1387aba073e095bc3  uninstall(3).ex4e
ae7cb704f1b1c71e8ff0b710e4c89b49  uninstall.exe2
acdeed41c532a129abdce78df0f22b04  uninstall(1).exe2
a9657c2112cf9b8cd884ef055e1a1024  uninstall.exe1
a603882044229e48088ec69b6c18ae24  uninstall(3).exe1
a56202a193643522d17e222140831414  uninstall(4).ex3e
9d59f22655f10f12565560f095c5546b  uninstall(3).exe3
9bfae5983f7cc5c7bbf36caf580deb4f  uninstall(4).ex2e
8a58f92ed5dd542d7a07b082a1ab4a8d  uninstall(3).exe2
813b3f6b7e53af873b2072cde5440b86  uninstall(1).exe1
73400fcb069f6f3a6c97591f839b4020  uninstall(4).exe1
70df9332f34206407505087ca729cd03  uninstall(3).exe2
69d8cc71f8c3f29c115253254ad27b59  uninstall(3).exe4
66f7fab73544478256fe4a14febaecab  uninstall(4).exe4
5be2b58339598e00deb9f947262b97de  uninstall(2).exe1
5a8e70807faa9c5b16b85624a6af2823  uninstall(2).ex3e
3921bbcd3fc4d6e03d2413a99b519bac  uninstall(2).exe2
3309585e094a8313a480fb4bb8eb078f  uninstall(1).exe1
30ab72bd26aed267721f2694db314ef7  uninstall(1).exe2
2fe3b96e271fdbe35f9fe2dbbea70407  uninstall(2).ex2e
1fdd98de0e2075877fbb8847e5a0b582  uninstall(2).ex2e
17ae9aa7281c9bd97c14c29d352660e9  uninstall(1).ex2e
12ec61c1195891c3a0508edf565ec34a  uninstall(1).exe2
0e3b425e25930bc1abb503e9879bdddf  uninstall.exe2

38个,不报的已上报卡巴.

Hello.
These files will be detected as soon as possible.













====================================================================
2008年7月24日 晚上(由sbbdms提供):



ddd25616d316da4d75d1287d00c43489  uninstall(2).e2xe
6f8ae41a559df08de4d837bbef59d01b  uninstall(4).ex2e
0e5678294845415ea01dae997d28fdb8  uninstall.ex2e
62aa759eaf3d046271494387e9eec9ea  uninstall(1).e4xe
bf35d78e270e34fd6e91741a5444dbff  uninstall(2).e2xe
a5d667288080551c81aa178996f614d1  uninstall(3).e2xe
fbea4db3911713c4100f64b252253337  uninstall(4).ex2e
6deae97b72cee2d8f6c70f0b090551ad  uninstall(1).ex2e
4d237c94c3b1537b852c7411d80917b8  uninstall(2).ex2e
5062381c51dfc32781442d5cfaa7add0  uninstall(3).ex2e
ced9278306abb005be046d415e6a4caf  uninstall(4).exe2
acbb150b4881cac7c6b1842a6496a97e  uninstall.ex3e
8c26f7e9e55ca981fa435db50aca6fec  uninstall(2).ex2e
3ba4eb51a9820066c964515b0554230c  uninstall(3).ex2e
cef61112a7976d10a9ab45fc95df02f5  uninstall(4).ex2e
73400fcb069f6f3a6c97591f839b4020  uninstall.ex3e
58d7d11e42697e0a875527c7a68c9ebb  uninstall(1).exe4
08736f449af1d1aed1c648d1cf1c0088  uninstall(2).ex4e
a8e3a6e85b5c8dbc99d3e759a6287d8f  uninstall(3).exe4
dbca438c5abeaa6293462e724ffd6547  uninstall(1).ex1e
6f8c337724dc0f9bff6b44ca8ce1e29b  uninstall(2).e1xe
4300dbfd0831228e197f85b87390d770  uninstall(3).ex1e
2975b11a89fba9176b594fff89d35a31  uninstall.ex1e
ee5b2d89c5c77253b235875fd4a35b9d  uninstall(1).ex1e
563cd18b8c268e3817f87f82dd0d79e7  uninstall(2).ex2e
3887789f03a7d1d38839e19f5cc1f143  uninstall(3).exe2
d3aaf6aa4dcde7ca0033c2b7599c1154  uninstall(4).ex4e
d0d8929d01d06d0c16e87b529b393b2e  uninstall.ex2e
0052c1361e598ec09dcc6e5d0a851ebe  uninstall(1).ex2e
0f092cd2acf17b2f0418d8e1906e3dbb  uninstall(2).ex3e
dab795f2c8f2f6da8431a1d92023626e  uninstall(3).ex3e
0ed1c532ccf8ff302a8129d9bb151ae5  uninstall(4).ex2e
d5b02d0f2bc5fbb298d6becc61256826  uninstall.ex3e
8fcc0a1375a2eb15b7938a89d180530c  uninstall(2).exe2
fbea4db3911713c4100f64b252253337  uninstall(3).ex2e
69eaa2c4cb7bd7fadd116609158b5292  uninstall(4).ex2e
322832e150c5b26f4b9bb80fb452f6c2  uninstall.ex2e
e386593fb8e90bc29cb8213484006cda  uninstall(1).e2xe
5c130615e12644bf25a1e201ff70ebcb  uninstall(2).ex2e
a684ec6041dae1bd010190149b05d441  uninstall(3).ex2e
24b61c916ad2a9f1794d4dbc20d4072a  uninstall(4).ex2e
9738bf1fca0fcb49a6a9f56771fb6025  uninstall.ex5e
69d8cc71f8c3f29c115253254ad27b59  uninstall(1).ex2e
4bf7b1620c6148a847715368846a90f9  uninstall(2).ex2e
ebd732d96600eda337c84623bce9ac10  uninstall(3).ex2e
9306c7810210ed2632405a0fefe3615e  uninstall(4).ex4e
aabaef2fb834b87ce6981b55a8ef7167  uninstall.ex5e
ca5e1c097573e2c7bc4d249b3811bea5  uninstall(1).ex2e
5a8e70807faa9c5b16b85624a6af2823  uninstall(2).ex2e
c6b683806dd4a2b7e6ec8b6a7500800b  uninstall(3).ex2e
18953e88011704fbe55b105af9f7e4bd  uninstall(4).ex3e
55a3f026fbae71ad680c18d232252ce0  uninstall(1).ex2e
ab4c7d77d2cedf551106f9a5087f12cb  uninstall(3).ex1e
0b171c0c99e0062fb92452cd31a33061  uninstall(4).ex4e
d42263abfd7a047fb1359222a93598f7  uninstall.ex5e
601f08a7f202c8079715ef6dd920b0cf  uninstall(1).e2xe
d9aaba0d6a8878cae3c3f0a5084440e9  uninstall(2).ex2e
8d7ca438608b87ef970e3147830bc2a5  uninstall(4).ex4e
39eb9b8504627743ad6db2b8dbfcfa09  uninstall.ex4e
8c26f7e9e55ca981fa435db50aca6fec  uninstall(1).e3xe
8084e825ae24b4b0dd4e0bd54e6a5d04  uninstall(2).ex3e
0443f7bfb0657bf7d779d55259fde6d0  uninstall(3).ex2e
0e3b425e25930bc1abb503e9879bdddf  uninstall(4).ex1e
976f2dfc49f4bd531a5e7e4e3d82a6f3  uninstall.exe1
已刪除: 特洛伊木馬程式 Trojan.Win32.Obfuscated.prd        檔案: C:\Documents and Settings\kato9096\桌面\0724\11\uninstall(3).ex3e
已刪除: 特洛伊木馬程式 Trojan.Win32.Obfuscated.pfy        檔案: C:\Documents and Settings\kato9096\桌面\0724\13\uninstall(3).ex2e
已刪除: 特洛伊木馬程式 Trojan.Win32.Obfuscated.pss        檔案: C:\Documents and Settings\kato9096\桌面\0724\14\uninstall(1).ex2e
已刪除: 特洛伊木馬程式 Trojan.Win32.Obfuscated.pip        檔案: C:\Documents and Settings\kato9096\桌面\0724\14\uninstall(2).ex2e
已刪除: 特洛伊木馬程式 Trojan.Win32.Obfuscated.pio        檔案: C:\Documents and Settings\kato9096\桌面\0724\15\uninstall(4).ex3e

已上报卡巴
卡巴:
Hello.

Detection for these files will be added as soon as possible.

-----------------





















====================================================================
2008年7月26日:

8e6dd1abe04c46dcb700f5eca5127e03  uninstall.exe-1
c017bb3ecc96f76611d8c922366aeb05  uninstall.exe0
096ddf09c3790d7689e499a90e7ecd3f  uninstall.exe1
663c36b169a7d37ccfa6a5812c930388  uninstall.exe2
b539f89926a75ed26d654f05fa9ba1e9  uninstall.exe3
ddf83cfb1d2da6c4e43893e94acdc9f0  uninstall.exe4
613cf0900e505759905aabf7fb8fb20f  uninstall.exe5
c6b683806dd4a2b7e6ec8b6a7500800b  uninstall.exe6
9d959d9bea593703b184f77f57ecbf0a  uninstall.exe7
8061eb060f47e3172ddf8e9c536760c5  uninstall.exe8
0ed1c532ccf8ff302a8129d9bb151ae5  uninstall.exe9
ceef8e835beb656d8a50208d2066c0bb  uninstall.exe-0

Hello,

uninstall.exe-0, uninstall.exe0, uninstall.exe2 - Trojan.Win32.Obfuscated.qeu,
uninstall.exe-1 - Trojan.Win32.Obfuscated.qet,
uninstall.exe1, uninstall.exe4 - Trojan.Win32.Obfuscated.qev,
uninstall.exe5, uninstall.exe7, uninstall.exe9 - Trojan.Win32.Obfuscated.qew,
uninstall.exe6, uninstall.exe8 - Trojan.Win32.Obfuscated.qey,
uninstall.exed - Trojan.Win32.Obfuscated.qex

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Denis Maslennikov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.





====================================================================
7月26日第2次
07e1d4f8efc06a8e245ec73236d54fd0  uninstall.exe0
a2c31a1575eb5693c40b99c7271bfc81  uninstall.exe1
247f6cdf5e9832a4b30e38768c6e0658  uninstall.exe10
4fdc4f042e1015dfcbb401b70f3fd790  uninstall.exe11
4d7da2b7884ab3374d2ad272d58f4f26  uninstall.exe12
dadb1e14ad8d15e0a8f4b4a72eff572d  uninstall.exe13
5f1ec5bf5f11005b40d7e7144d200d0f  uninstall.exe14
8a1ce6de5b1487ff657c5173eadae199  uninstall.exe15
2371b4b2aba9111522ba3ef931f4be45  uninstall.exe16
a63111d2df703164ad1be0c3c1281da7  uninstall.exe17
d5b02d0f2bc5fbb298d6becc61256826  uninstall.exe18
3193ed3004f5c31161e681aa0ffe2e42  uninstall.exe19
1164e011c18c2ffc5ba28f53b17672fc  uninstall.exe2
388c1b0ceb6bee65ab84799169110ad7  uninstall.exe20
d90ecbd8626e4a1a8b0a0d0a01eb6171  uninstall.exe3
b67aa00158b2e734cadfcca2234d5a55  uninstall.exe4
f90866acc3adb9bfb0a0f898f22b06b6  uninstall.exe5
e8a3b0fd91c503a17c8fa6bf969103f6  uninstall.exe6
441f000b8ea2967adc56b9aa10cd8885  uninstall.exe7
daedebdd86d6c4815490a49de5d307e6  uninstall.exe8
565b95df83b77d7fb1856cd0d52a63b3  uninstall.exe9
已上报到卡巴
这次有21个
卡巴:
Hello.

These files will be detected ASAP.








====================================================================
7月26日第3次

454af3072b71125190422f98d39856e3  uninstall.exe8
75e72a3745485caf95f4155fc59346e9  uninstall.exe10
68aa28ba15be392cad8cc71b873b7e59  9kgen_up.int
7b1111746c65e018741185352ccaf22c  uninstall.exe9
0416e40eecbce333a610ea900822aada  uninstall.exe0
47c895755b724dd7ab0b36dbdff2821e  uninstall.exe1
23b8dfaa3571164916d8ffcab8a12652  uninstall.exe2
8da40fb7f3a7e3b63370f8d646f96845  uninstall.exe3
617f257a3503d6cea1dcf921f594dd1a  uninstall.exe4
d5b02d0f2bc5fbb298d6becc61256826  uninstall.exe5
b6de5b5ff8180272246407618e36621c  uninstall.exe6
6deae97b72cee2d8f6c70f0b090551ad  uninstall.exe7
这次有12个,已上报到卡巴
Hello,

9kgen_up.int - Trojan-Downloader.Win32.Obfuscated.bmm

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

uninstall.exe0, uninstall.exe1, uninstall.exe10, uninstall.exe2, uninstall.exe3, uninstall.exe4, uninstall.exe5, uninstall.exe6, uninstall.exe7, uninstall.exe8, uninstall.exe9

No malicious code were found in these files.




====================================================================

[ 本帖最后由 kato9096 于 2008-9-2 00:24 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +10 收起 理由
qianwenxiang + 10 加分鼓励

查看全部评分

无尽藏海
发表于 2008-7-16 17:55:50 | 显示全部楼层
Begin scan in 'F:\VIRUS\uninstall-0716-1753.zip'
F:\VIRUS\uninstall-0716-1753.zip
  [0] Archive type: ZIP
  --> uninstall.exe3
      [DETECTION] Is the Trojan horse TR/Dldr.Swizzor.Gen
      [WARNING]   The file was ignored!
郁冰兰雪
发表于 2008-7-16 17:58:48 | 显示全部楼层
EAV 无视!
aerbeisi
发表于 2008-7-16 18:00:01 | 显示全部楼层

NOD32 0个

dadingdading
发表于 2008-7-16 18:01:25 | 显示全部楼层
kv    没有发现病毒   
hj5abc
发表于 2008-7-16 18:06:03 | 显示全部楼层
f-prot和avira的gen总是那么勤快 特别是f-prot
taihuxian
发表于 2008-7-16 18:07:50 | 显示全部楼层
TR/Dldr.Swizzor.Gen
sam.to
 楼主| 发表于 2008-7-16 18:26:28 | 显示全部楼层
估計卡巴是报Trojan.Win32.Obfuscated.mfk
kangxi
发表于 2008-7-16 18:33:04 | 显示全部楼层
又是Eldorado!引擎报的
卡巴8被过。。。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
chima287
发表于 2008-7-16 18:43:56 | 显示全部楼层
刚要下载,红伞就报毒了。呵呵

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-18 19:50 , Processed in 0.142142 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表