查看: 17117|回复: 96
收起左侧

[病毒样本] mm.exe(第28次更新)已开新帖

[复制链接]
sam.to
发表于 2008-9-6 15:42:18 | 显示全部楼层 |阅读模式
**注意:卡巴把x.gif清除后,是会留下一个0.135KB的文件,这个文件不用上报,只需刪除**

9月6日下午3时:
cd64447c960a9585107417affe7ac9c3  mm.exe3
已上报到卡巴
Hello,

mm.exed - Worm.Win32.AutoRun.mpq

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Denis Maslennikov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月6日下午10时:
b13045cfd8c95f06dd4b99a73a616e65  mm.exe1
已上报到卡巴
Hello. This file is already detected. Please update your bases.
-----------------
Regards, Vladimir Lebedev
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com

============================================================================================================
9月7下午5时:
Hello,

1.exe_ - Trojan-Spy.Win32.Delf.dyk,
3.exe_ - Trojan-Downloader.Win32.Delf.nqw,
9.ex3e - HackTool.Win32.Xarp.ag,
mm.exe_ - Worm.Win32.AutoRun.msj,
x.gif_ - Worm.Win32.AutoRun.msz

These files are already detected. Please update your antivirus bases.

2.ex3e

This file contains a warning "The requested URL is infected with virus".
It means that you've tried to download infected file
or site you've visited tried to download infected file secretly.

Please quote all when answering.

--
Best regards, Vitaly Butuzov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================\
9月8下午8时:
2a0fcbb15bc60bab218652eb94b2aba9  mm.exe3
已上报到卡巴

Hello.
New malicious software was found in the attached file.
It's detection will be included in the next update. Thank you for your help.
-----------------
Regards, Namestnikov Yury
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com

============================================================================================================
9月8下午8时(第2次):
a29888c3877bd2b0e3291743060319b4  x.gif3
0b3765716acbd0748fbf0849a10abf4d  1.exe3
2418c9b406d27a8821a7aeba9479fae7  3.exe3
cf1269353d3ad50d10a170a4abc4d9b5  9.exe3
已上报卡巴
Hello.
New malicious software was found in the attached file.
It's detection will be included in the next update. Thank you for your help.
-----------------
Regards, Namestnikov Yury
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com

============================================================================================================
9月9日:
b038db1cd85665259d5c9ab31997de08  9.exe3
8992bc40a150cb5fa84de875c4dab560  mm.exe3
ce13f43a53f550946b7c7c07e41098d0  x.gif3
798762424ab4e80d7a9d9d4067c8ec19  1.exe3
632eaf895de3ac61b41147b8d561aa6b  3.exe3
2923b250a3660c034aa7831d5e6d7f3c  4.exe3
90560ec5afdac2098bf68f659b246564  6.exe3
已上报到卡巴
Hello,

##.exe_ - Worm.Win32.AutoRun.mwf,

1.exe_ - Trojan-Dropper.Win32.Agent.tcr,

3.exe_ - Trojan-Downloader.Win32.Delf.nrt,

9.exe_ - HackTool.Win32.Xarp.ai

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

4.exe_

No malicious code was found in this file.

6.exe_

This file contains a warning "The requested URL is infected with virus".
It means that you've tried to download infected file
or site you've visited tried to download infected file secretly.

mm.exe_ - Worm.Win32.AutoRun.mvn

This file is already detected. Please update your antivirus bases.

Please quote all when answering.

--
Best regards, Mikhail Bulgakov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月10日:
f97d49bfcee3da0bef1dc77caa1e8339  9.exe3
2334eb95456c82a97bdd87dc4dd2ac36  mm.exe1
ca3558a0a46d5ae387fd03abdf1f2c0a  x.gif1
6c838953ec97c09ec1d0451bd8cedcc8  1.exe3
c25408b1a2b2c952b755d71add6b3f89  3.exe3
ee37bad130d71c139222d95b4e929416  6.exe3
已上报到卡巴
Hello,

#######################################################################################################.exe_ - Worm.Win32.AutoRun.mwk,
1.exe3 - Trojan-Spy.Win32.Delf.dyv,
3.exe3 - Trojan-Downloader.Win32.Delf.nsd,
9.exe3 - Trojan-GameThief.Win32.OnLineGames.teac,
mm.exe1 - Worm.Win32.AutoRun.mwn

These files are already detected. Please update your antivirus bases.

6.exe3

This file contains a warning "The requested URL is infected with virus".
It means that you've tried to download infected file
or site you've visited tried to download infected file secretly.

============================================================================================================
9月10日下午3时:
5d9c51a69a906cce581d78b654f3d411  9.exe3
4ea79f2f273fc290ad2bce23ca41f88d  mm.exe1
382189cf5d02e0d9791b128ffe1105d7  x.gif1
f227413def2bb899400b820e4bb6682d  1.exe3
57fece280d7ce02150072e1ea95ee3b2  2.exe3
8f8bc55ecd9bf13f0047907aea399102  3.ex3e
已上报到卡巴
Hello,

#######################################################################################################.exe_ - Worm.Win32.AutoRun.mya,
1.exe3 - Trojan-Spy.Win32.Delf.dze,
3.ex3e - Trojan-Downloader.Win32.Delf.ntw,
9.exe3 - Trojan-GameThief.Win32.OnLineGames.teik,
mm.exe1 - Worm.Win32.AutoRun.mye

These files are already detected. Please update your antivirus bases.

2.exe3 - not-a-virus:AdWare.Win32.Cinmus.rrl

This file is an Advertizing Tool, it is detected by
extended databases set. See more info about
extended databases here: http://www.kaspersky.com/extraavupdates

Please quote all when answering.

--
Best regards, Vyacheslav Zakorzhevsky
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月10日晚上十一时
5e2a008dd15762853677dd806400a623  1.exe3
ad38f64a1dd79ee4635a9a2f8b15c7f8  mm.exe3
e6462d95da60c885b4a6ac4d3ef4c5e7  x.gif3
已上报卡巴

============================================================================================================
9月11:
9d667d0d8acb9078f58950771012c05e  mm.exe3
414650ea81d88bf6fd8df47fa473b112  1.exe3
3ecd70f0f6296316e2aeac6fd33aacad  x.gif3
2106e193b6ec32b5255572ea1de04e0e  3.exe3
2ca1c486e55d3300c6e8164de221efed  9.exe3
已上报到卡巴

============================================================================================================
9月11第2次:
d7068be48039aa41b6d780138ccd5742  9.exe3
e8c9d9783169bea338364a278bb655f4  mm.exe3
2b3ad4d5594900cbf1a19ce081fb0eab  x.gif3
9c447e5d99512865ad35ae9f140fc1e0  1.exe3
a70f2306dff67b122a8e15a05d61658b  3.exe3
已上报卡巴

============================================================================================================
9月12:
cc29c461e537ad763d3e1294466ba81e  5.exe3
7887aeb30cb3bd65691ec30536823646  mm.exe3
ddc967002e3ea05caa324dab3faa3bb4  x.gif
f043f011140028e347aae8c1d7b84ab1  1.exe3
已上报卡巴~~~

============================================================================================================
9月12第2次:
17e55a9e4c8dc578bec1eae16a054c37  9.exe3
ac871c374b9b217c9627035e1d5e53a6  mm.exe3
5d14f10582ab0bd0b82564c86ea469a9  x.gif0
9528a36e84ae51c838fb6c4b2e51b9d7  1.exe3
e1d9665e039e0bb8b2635e585b977bec  3.exe3
已上报卡巴
Hello,

1.exe_ - Trojan-GameThief.Win32.OnLineGames.tgfc,
3.exe_ - Trojan-Downloader.Win32.Delf.nxe,
9.exe_ - HackTool.Win32.Xarp.al,
mm.exe_ - Worm.Win32.AutoRun.nfw,
x.gif_ - Worm.Win32.AutoRun.nfy

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Andrey Bezborodov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月13:
f47feca713469bbeda3d6029c2944a1a  mm.exe3
cfc49a8f0366783036fde1e4c78bb2ea  x.gif
03b4066d28be20367e22422bf9a0a70a  1.exe3
19cead8de8c187005ad9f26594049c82  3.exe3
cc29c461e537ad763d3e1294466ba81e  5.exe3
891f2fe8e235dc054dbe798ba1da72f2  9.exe3
已上报卡巴
ello,

##.exe_ - Worm.Win32.AutoRun.ngv,
1.exe_ - Trojan-Spy.Win32.Delf.eai,
3.exe_ - Trojan-Downloader.Win32.Delf.nxv,
9.exe_ - Trojan-Dropper.Win32.Agent.wso

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

5.exe_ - not-a-virus:AdWare.Win32.Agent.fad

This file is an Advertizing Tool, it is detected by
extended databases set. See more info about
extended databases here: http://www.kaspersky.com/extraavupdates

mm.exe_ - Worm.Win32.AutoRun.ngr

This file is already detected. Please update your antivirus bases.

Please quote all when answering.

--
Best regards, Evgeny Aseev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月13第2次:
ab580f0c7b03b830daf4350619b80540  1.exe3
已上报卡巴

============================================================================================================
9月13第3次:
6f7ef79f694be44f7e47335b718398d7  3.exe3
0234fabf404a9d740d8de5e431c62674  mm.exe3
436567e902772215262d21a09631bd76  x.gif3
已上报卡巴
Hello,

##.exe_ - Worm.Win32.AutoRun.ngy,
3.exe_ - Trojan-Downloader.Win32.Delf.nyd,
mm.exe_ - Worm.Win32.AutoRun.ngz

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Evgeny Aseev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月14:
80e31fdf9987f80c25cedad2a221b187  9.exe3
b3a830dd4dd23dc92ad39b2d50008bf3  mm.exe3
0d274ab60907290eafc17e6e965bda4a  x.gif1
f65611ea6a1cfc33027d2a1cf3fb7436  1.exe3
b4e6e3a90a7e6d4bb8a4f5eec1852cb0  3.exe3
已上报到卡巴

============================================================================================================
9月14第2次:
8e7f47979a5a28401642952a1d380fc9  9.exe3
55ad6b20cc28fb64c1a81df21812111b  mm.exe3
fd0fc05445523e243c2cbea4136d7a3e  x.gif3
3bd1e839a21081d4e602d60e5c6018ee  3.exe3
已上报到卡巴

============================================================================================================
9月15:
8e7f47979a5a28401642952a1d380fc9  9.exe3
7d656d2f963a1a176e7e38426ae9da83  mm.exe3
14cf23c0be00e780f3994c1290492c47  x.gif3
e8d840097b2a238dbbd13676a296759d  1.exe3
已上报到卡巴(卡巴已回信)

============================================================================================================
9月15第2次:
ecdc5d86d4cb0720cadc838f9c34eed8  3.exe3
e0fe8ba6eb8671e293e3e657918d6761  9.exe3
c50b0699ba1321bae965a97639ed2e6f  mm.exe3
4b41c2b695305d7c9a440a8b8ebdb962  x.gif3
04db2e17db3ff60fe18c4155af64fef4  1.exe3
已上报到卡巴
Hello.
New malicious software was found in the attached file.
It's detection will be included in the next update. Thank you for your help.
-----------------
Regards, Namestnikov Yury
Virus Analyst, Kaspersky Lab.

Ph.: +7(095) 797-8700
E-mail: newvirus@kaspersky.com
http://www.kaspersky.com   http://www.viruslist.com

============================================================================================================
9月15第3次:
3fb09bd58863515ec8cac92b99c0add6  mm.exe1
3ee94f19bd68490eaba90eebe6b1a11b  x.gif1
09cec445458cb0c927d15121632884d8  1.exe3
5212d3173913b2211d206dd08be01699  3.exe3
34802194932686247e953d7d70b8d198  9.exe3
已上报到卡巴

============================================================================================================
9月16:
b49cde91e79378bcc36accb217d5c268  9.exe3
b117e02a0e7bf2a5a7430e96a0fe1402  mm.exe3
8ec1afc9191bcbef54097db0c428fde5  x.gif3
ca43f9885071ad423a44e81314ccc453  1.exe3
5eb1a51a4797fb299788b68e944d2673  3.exe3
TO KL

============================================================================================================
9月16第2次:
81defd82b02c7fa5557964559153c3a4  x.gif
93311bafa51cbbde72876869829ab0f7  1.exe
269cf577553e0189a2c76fd720381b1d  3.exe3
上报卡巴!!!
Hello,

1.exe_ - Trojan-GameThief.Win32.OnLineGames.thgo,
3.exe_ - Trojan-Downloader.Win32.Delf.oen,
9.exe_ - HackTool.Win32.Xarp.ar,
a.exe_ - Trojan.Win32.Pakes.kmb,
install_player_1xxx3912941.exe_, install_player_2xxx3912941.exe_ - Trojan-Downloader.Win32.FraudLoad.vcdu,
piki.dll3 - Trojan.Win32.BHO.gus,
x.gif_ - Worm.Win32.AutoRun.nov

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Ilya Tolstikhin
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月17:
93dac2099710029917fa88a26d84d249  9.exe2
3e2ebdd77cbe72ad0aa65396c462cf5a  mm.exe3
70af9a89f3ff38ebebbf131f5da7fca4  x.gif3
1a0412da0808d5b3e619c99ee561ba78  1.exe3
d96a7db9e827a3dd2505cc85a41f7c92  3.exe1
TO KL

============================================================================================================
9月17第2次:
1c9f8b8efd026f8ff0f4dae98b786bc4  9.ex3e
7da945708fdc5e5475080449df1cce7e  mm.ex3e
94103b25bc630f503a7932cde6512f87  x.gif3
5f46abc33c68b3f1bcc8b003d13a5ee5  1.ex3e
e77f2e3f7a99610ae029e90752885e0b  3.e3xe
TO KL
Hello,

1.ex3e - Trojan-Spy.Win32.Delf.edr,
3.e3xe - Trojan-Downloader.Win32.Delf.epw,
9.ex3e - HackTool.Win32.Xarp.aa,
mm.ex3e - Trojan-Dropper.Win32.Agent.wxs

These files are already detected. Please update your antivirus bases.

x.gif_ - Worm.Win32.AutoRun.nsw

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Andrey Bezborodov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月18:
4454bede269966018adc356b7c4f3227  9.exe3
0f9f0746fa52c21dfcd8f6f0bb09928b  mm.exe1
fa2a777271593b95f0c89470f1f19303  x.gif1
f4f5f3cc0621deedde4cb13a366b0c57  1.exe3
edf1020c618f675df89f5c64a0639e8a  2.exe3
TO KL
Hello,

1.exe_ - Trojan-Spy.Win32.Delf.eec,

9.exe_ - Trojan-GameThief.Win32.OnLineGames.thtg,

mm.exe_ - Worm.Win32.AutoRun.ntm,

x.gif_ - Worm.Win32.AutoRun.nsg

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

2.exe_ - not-a-virus:AdWare.Win32.Cinmus.sxy

This file is an Advertizing Tool, It's detection will be included in the next
update of extended databases set. See more info about
extended databases here: http://www.kaspersky.com/extraavupdates

Please quote all when answering.

--
Best regards, Sergey Temnikov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

============================================================================================================
9月18第2次:
3afd9e30b63dd302f3cb0597a9bd264e  mm.exe3
TO KL

============================================================================================================
9月19:
9a11861afc9fe4e708d4c30b063c21f8  mm.exe3
TO KL
mm.exe3 - Worm.Win32.AutoRun.nuk

============================================================================================================
9月19第2次:
96f91943e9249409b25d91615ad018ce  1.exe3
TO KL
This file is corrupted.

============================================================================================================

[ 本帖最后由 kato9096 于 2008-9-20 01:03 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 2经验 +8 人气 +2 收起 理由
电影结束了 + 1 辛苦咯~
qianwenxiang + 8 + 1 辛苦了~

查看全部评分

mofunzone
发表于 2008-9-6 15:50:44 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Users\Morgan\Desktop\mm.rar'
C:\Users\Morgan\Desktop\
  mm.rar
    [0] Archive type: RAR
    --> mm.exe3
      [DETECTION] Contains HEUR/Crypted suspicious code
    [WARNING]   The file was ignored!
  mm.rar:Zone.Identifier
eshine
发表于 2008-9-6 15:51:43 | 显示全部楼层
江民查杀!
tanlimo
发表于 2008-9-6 15:52:22 | 显示全部楼层
KAV2009 启发
2008-9-6 15:52:58        检测到: Heur.Trojan.Generic        G:\mm.rar/mm.exe3
Palkia
发表于 2008-9-6 15:55:56 | 显示全部楼层
金山 -
南宫秋雨 该用户已被删除
发表于 2008-9-6 15:56:13 | 显示全部楼层
360不允许下载   太强了
Palkia
发表于 2008-9-6 16:02:46 | 显示全部楼层

升级查杀

病毒        2008-09-06  16:02:30        C:\Documents and Settings\Administrator\桌面\mm.rar\mm.exe3        Win32.Troj.Downloader.if.58368        清除成功
啊弥陀佛
发表于 2008-9-6 17:07:39 | 显示全部楼层
微点拦截

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Anycall-D908
发表于 2008-9-6 17:20:23 | 显示全部楼层
原帖由 南宫秋雨 于 2008-9-6 15:56 发表
360不允许下载   太强了


你用的是360安全卫士还是360杀毒?
sam.to
 楼主| 发表于 2008-9-6 18:03:01 | 显示全部楼层
Hello,

mm.exed - Worm.Win32.AutoRun.mpq

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Denis Maslennikov
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-27 18:15 , Processed in 0.133851 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表