查看: 3472|回复: 12
收起左侧

[病毒样本] 请分析这个可疑样本的行为?

[复制链接]
xiaotuzi
头像被屏蔽
发表于 2008-10-5 23:07:08 | 显示全部楼层 |阅读模式
好期待~~~~~~~~

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
sam.to
发表于 2008-10-5 23:11:03 | 显示全部楼层
TO KL

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
xiaotuzi
头像被屏蔽
 楼主| 发表于 2008-10-5 23:17:36 | 显示全部楼层
谢谢热饭————热心卡饭的简称!哈!!哈哈!!哈~~~~
sam.to
发表于 2008-10-5 23:19:18 | 显示全部楼层
等待高手分析~~
wangjay1980
发表于 2008-10-5 23:25:15 | 显示全部楼层
wangjay1980
发表于 2008-10-5 23:26:19 | 显示全部楼层
不用高手,用机器分析

Visit ThreatExpert web site|Close Report

Submission Summary:
  • Submission details:
    • Submission received: 6 October 2008, 02:16:52
    • Processing time: 6 min 36 sec
    • Submitted sample:
      • File MD5: 0xDD3975246D8928C04549B31B6B49434F
      • Filesize: 1,527,056 bytes
  • Summary of the findings:
What's been foundSeverity Level
Downloads/requests other files from Internet.


Technical Details:
  • The new window was created, as shown below:

NOTICE: The content shown in the above window is captured automatically and is not controlled or endorsed by ThreatExpert.
Please contact us on this link should any material be offensive or inappropriate and we will ensure any such content is blocked from future viewers of the report.


File System Modifications

  • The following files were created in the system:
#Filename(s)File SizeFile MD5
1%Temp%\nsc2.tmp\NSISArray.dll 17,920 bytes0x2B8574F6A8F5DE9042BAA43C069D20BA
2%System%\Macromed\Flash\Flash9f.ocx 2,991,488 bytes0x48FDF435B8595604E54125B321924510
3%System%\Macromed\Flash\FlashUtil9f.exe 218,496 bytes0x5ABE08EEB790D2322565DBD11BF70A19
4%System%\Macromed\Flash\install.log 16,901 bytes0x2EF7B45A9583C8F90846A1047B4CF95C
5%System%\Macromed\Flash\uninstall_activeX.exe 74,649 bytes0x1726C79B2FF949CE2D7E8C931B7811FA
6[file and pathname of the sample #1] 1,527,056 bytes0xDD3975246D8928C04549B31B6B49434F

  • Notes:
    • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
    • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • The following file was deleted:
    • %System%\Macromed\Flash\flash.ocx
  • The following directory was created:
    • %Temp%\nsc2.tmp

Memory Modifications

  • There were new processes created in the system:
Process NameProcess FilenameMain Module Size
FlashUtil9f.exe%System%\macromed\flash\flashutil9f.exe212,992 bytes
[filename of the sample #1][file and pathname of the sample #1]225,280 bytes


Registry Modifications

  • The following Registry Keys were created:
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\EnableFullPage\.mfp
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}\ProxyStubClsid
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}\ProxyStubClsid32
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}\TypeLib
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\0
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\0\win32
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\FLAGS
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\HELPDIR
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\0
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\0\win32
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\FLAGS
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\HELPDIR
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.mfp
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.sol
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.sor
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\CLSID
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\DefaultIcon
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.7
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.7\CLSID
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.8
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.8\CLSID
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.9
    • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.9\CLSID
    • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{D27CDB6E-AE6D-11CF-96B8-444553540000}
    • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights
    • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy
    • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}
    • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX
    • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash
    • HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia
    • HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayer
    • HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayer\SafeVersions
    • HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayerActiveX
    • HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayerActiveX\Components
    • HKEY_CURRENT_USER\Software\Macromedia
    • HKEY_CURRENT_USER\Software\Macromedia\FlashPlayer
  • The newly created Registry Values are:
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib]
      • (Default) = "{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32]
      • (Default) = "%System%\Macromed\Flash\FlashUtil9f.exe"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation]
      • Enabled = 0x00000001
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}]
      • (Default) = "FlashBroker"
      • LocalizedString = "@%System%\Macromed\Flash\FlashUtil9f.exe,-101"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib]
      • (Default) = "{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      • Version = "1.0"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32]
      • (Default) = "{00020424-0000-0000-C000-000000000046}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}]
      • (Default) = "IFlashBroker"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}\TypeLib]
      • (Default) = "{57A0E746-3863-4D20-A811-950C84F1DB9B}"
      • Version = "1.1"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}\ProxyStubClsid32]
      • (Default) = "{00020424-0000-0000-C000-000000000046}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}\ProxyStubClsid]
      • (Default) = "{00020424-0000-0000-C000-000000000046}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{307F64C0-621D-4D56-BBC6-91EFC13CE40D}]
      • (Default) = "ISimpleTextSelection"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\0\win32]
      • (Default) = "%System%\Macromed\Flash\Flash9f.ocx\2"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\HELPDIR]
      • (Default) = "%System%\Macromed\Flash"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1\FLAGS]
      • (Default) = "0"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{57A0E746-3863-4D20-A811-950C84F1DB9B}\1.1]
      • (Default) = "FlashAccessibility"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\0\win32]
      • (Default) = "%System%\Macromed\Flash\FlashUtil9f.exe"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\HELPDIR]
      • (Default) = "%System%\Macromed\Flash\FlashUtil9f.exe"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0\FLAGS]
      • (Default) = "0"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0]
      • (Default) = "FlashBroker"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}]
      • (Default) = ""
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.mfp]
      • (Default) = "MacromediaFlashPaper.MacromediaFlashPaper"
      • Content Type = "application/x-shockwave-flash"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.sol]
      • Content Type = "text/plain"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.sor]
      • Content Type = "text/plain"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\shell\open\command]
      • (Default) = ""%ProgramFiles%\Internet Explorer\iexplore.exe" -nohome "%1""
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\DefaultIcon]
      • (Default) = "%ProgramFiles%\Internet Explorer\iexplore.exe,1"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper\CLSID]
      • (Default) = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MacromediaFlashPaper.MacromediaFlashPaper]
      • (Default) = "Macromedia Flash Paper"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.7\CLSID]
      • (Default) = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.7]
      • (Default) = "Shockwave Flash Object"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.8\CLSID]
      • (Default) = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.8]
      • (Default) = "Shockwave Flash Object"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.9\CLSID]
      • (Default) = "{D27CDB6E-AE6D-11cf-96B8-444553540000}"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash.9]
      • (Default) = "Shockwave Flash Object"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
      • IsInstalled = 01 00 00 00
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{D27CDB6E-AE6D-11CF-96B8-444553540000}]
      • Compatibility Flags = 0x00000000
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}]
      • Policy = 0x00000003
      • AppPath = "%System%\Macromed\Flash"
      • AppName = "FlashUtil9f.exe"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX]
      • DisplayName = "Adobe Flash Player ActiveX"
      • DisplayVersion = "9.0.124.0"
      • Publisher = "Adobe Systems Incorporated"
      • URLInfoAbout = "http://www.adobe.com/go/getflashplayer"
      • VersionMajor = "9"
      • VersionMinor = "0"
      • HelpLink = "http://www.adobe.com/go/flashplayer_support/"
      • URLUpdateInfo = "http://www.adobe.com/go/flashplayer/"
      • DisplayIcon = "%System%\Macromed\Flash\uninstall_activeX.exe"
      • UninstallString = "%System%\Macromed\Flash\uninstall_activeX.exe"
      • RequiresIESysFile = "4.70.0.1155"
      • NoModify = 0x00000001
      • NoRepair = 0x00000001
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash]
      • DisplayVersion = "9.0.124.0"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayer\SafeVersions]
      • 6.0 = 0x00000058
      • 7.0 = 0x00000049
      • 8.0 = 0x0000002A
      • 9.0 = 0x007C0000
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayerActiveX\Components]
      • Main = "1"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayerActiveX]
      • Path = "%System%\Macromed\Flash"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayer]
      • CurrentVersion = "9,0,124,0"
    • [HKEY_CURRENT_USER\Software\Macromedia\FlashPlayer]
      • FlashPlayerVersion = "9.0.124.0"
  • The following Registry Value was deleted:
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
      • IsInstalled = 0x00000001
  • The following Registry Values were modified:
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
      • (Default) = "%System%\Macromed\Flash\Flash9f.ocx"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
      • (Default) = "ShockwaveFlash.ShockwaveFlash.9"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
      • (Default) = "%System%\Macromed\Flash\Flash9f.ocx, 1"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
      • (Default) = "%System%\Macromed\Flash\Flash9f.ocx"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
      • (Default) = "%System%\Macromed\Flash\Flash9f.ocx, 1"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{57A0E747-3863-4D20-A811-950C84F1DB9B}\TypeLib]
      • Version = "1.1"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ShockwaveFlash.ShockwaveFlash\CurVer]
      • (Default) = "ShockwaveFlash.ShockwaveFlash.9"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0\0\win32]
      • (Default) = "%System%\Macromed\Flash\Flash9f.ocx"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0\HELPDIR]
      • (Default) = "%System%\Macromed\Flash\"
    • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
      • (Default) = "Adobe Flash Player"
      • Version = "9.0.124.0"

Other details

  • To mark the presence in the system, the following Mutex objects were created:
    • {0697F55F-F461-46fc-BABA-6D27CC032A75}
    • {1B655094-FE2A-433c-A877-FF9793445069}
  • The following Internet Connection was established:
Server NameServer PortConnect as UserConnection Password
fpdownload2.macromedia.com80(null)(null)

  • The following GET request was made:
    • get/flashplayer/update/current/install/install_all_win_ax_sgn.z

All content ("Information") contained in this report is the copyrighted work of Threat Expert Ltd and its associated companies ("ThreatExpert") and may not be copied without the express permission of ThreatExpert.
The Information is provided on an "as is" basis. ThreatExpert disclaims all warranties, whether express or implied, to the maximum extent permitted by law, including the implied warranties that the Information is merchantable, of satisfactory quality, accurate, fit for a particular purpose or need, or non-infringing, unless such implied warranties are legally incapable of exclusion. Further, ThreatExpert does not warrant or make any representations regarding the use or the results of the use of the Information in terms of their correctness, accuracy, reliability, or otherwise.
Copyright © 2008 ThreatExpert. All rights reserved.
sam.to
发表于 2008-10-5 23:26:49 | 显示全部楼层
原帖由 wangjay1980 于 2008-10-5 23:25 发表
http://www.threatexpert.com/repo ... 8c04549b31b6b49434f


...........
sam.to
发表于 2008-10-5 23:27:40 | 显示全部楼层

回复 6楼 wangjay1980 的帖子

我不太喜歡用这个网,一來慢,二來慢
wangjay1980
发表于 2008-10-5 23:28:58 | 显示全部楼层
我很快,很快。。。

[ 本帖最后由 wangjay1980 于 2008-10-5 23:31 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
sam.to
发表于 2008-10-5 23:31:21 | 显示全部楼层

回复 9楼 wangjay1980 的帖子

最快要5分钟,但經常要10-15分钟
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-2 06:38 , Processed in 0.129932 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表