查看: 2909|回复: 11
收起左侧

[病毒样本] 纯真ip 是病毒?

[复制链接]
cxc0532
发表于 2008-10-25 09:13:45 | 显示全部楼层 |阅读模式
File ShowIP.rar received on 10.25.2008 03:05:28 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED

Result: 10/34 (29.42%)

Loading server information...
Your file is queued in position: ___.
Estimated start time is between ___ and ___
.
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they're generated.
Compact
Print results


Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position:
) for an undefined time. You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.  
Email:



AntivirusVersionLast UpdateResult
AhnLab-V32008.10.24.32008.10.24-
AntiVir7.9.0.92008.10.24-
Authentium5.1.0.42008.10.24-
Avast4.8.1248.02008.10.24Win32:Hupigon-MJG
AVG8.0.0.1612008.10.25BackDoor.Hupigon4.AJFF
BitDefender7.22008.10.25-
CAT-QuickHeal9.502008.10.24-
ClamAV0.93.12008.10.25-
DrWeb4.44.0.091702008.10.24-
eSafe7.0.17.02008.10.23Suspicious File
eTrust-Vet31.6.61682008.10.25-
Ewido4.02008.10.24-
F-Prot4.4.4.562008.10.24-
Fortinet3.113.0.02008.10.25-
GData192008.10.25Win32:Hupigon-MJG
IkarusT3.1.1.44.02008.10.25-
K7AntiVirus7.10.5062008.10.24Trojan.Win32.Malware.1
Kaspersky7.0.0.1252008.10.25-
McAfee54152008.10.25BackDoor-AWQ.b
Microsoft1.40052008.10.25-
NOD3235532008.10.24-
Norman5.80.022008.10.24W32/Hupigon.ECHS
Panda9.0.0.42008.10.25Suspicious file
Prevx1V22008.10.25System Back Door
Rising21.00.42.002008.10.24-
SecureWeb-Gateway6.7.62008.10.24-
Sophos4.35.02008.10.25-
Sunbelt3.1.1752.12008.10.24-
Symantec102008.10.25-
TheHacker6.3.1.0.1262008.10.25-
TrendMicro8.700.0.10042008.10.24BKDR_AJFF.A
VBA323.12.8.82008.10.25-
ViRobot2008.10.24.14362008.10.24-
VirusBuster4.5.11.02008.10.24-
Additional information
File size: 341581 bytes
MD5...: d6c61fe8ada6509d20810bf952bf4bdd
SHA1..: 1289e482ef120cee3978735aec5e220c16536d79
SHA256: 6e2868688f0da804cf6624a57cc613d12747552df8388364af3ffeaa7f5895ad
SHA512: 3333ce935b394c926233eda78387575b18779d9914ccb58895fe05ba8b24a7ff
8eaece4140c32b763c7c5af414d22f0c293419d59f664222e98f959df099b7fe
PEiD..: -
TrID..: File type identification
RAR Archive (83.3%)
REALbasic Project (16.6%)
PEInfo: -
Prevx info: http://info.prevx.com/aboutprogr ... 57CCB12B300B6E37C20
packers (Kaspersky): UPX
packers (F-Prot): UPX

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
syfwxmh
发表于 2008-10-25 09:28:53 | 显示全部楼层
不测试了 相信是误报~~
zhb4433
发表于 2008-10-25 09:36:25 | 显示全部楼层
咖啡报特洛伊

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
lingbo110120
发表于 2008-10-25 09:49:08 | 显示全部楼层
2008/10/25 09:46:29 c:\windows\explorer.exe 创建文件 C:\Users\Administrator\Desktop\ShowIP.exe 允许
2008/10/25 09:46:36 c:\windows\explorer.exe 创建新进程 c:\users\administrator\desktop\showip.exe 允许

正常...没有其他动作...误报...

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
tian832
发表于 2008-10-25 09:50:07 | 显示全部楼层
不是吧
08红伞威点
发表于 2008-10-25 14:41:59 | 显示全部楼层
伞过上报
lingbo110120
发表于 2008-10-25 14:46:00 | 显示全部楼层

回复 6楼 08红伞威点 的帖子

都说是误报了 上报什么...
九尾野狐
头像被屏蔽
发表于 2008-10-25 15:02:08 | 显示全部楼层
管你是什么

管你说什么

先上报是样本区很多人的通性
lingbo110120
发表于 2008-10-25 15:04:04 | 显示全部楼层

回复 8楼 没注册 的帖子

我只是想说多此一举...
毕竟红伞没有误报...
yuanliu 该用户已被删除
发表于 2008-10-25 15:14:38 | 显示全部楼层
我也同意误报
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-1-1 21:25 , Processed in 0.524948 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表