查看: 2830|回复: 18
收起左侧

[病毒样本] wo.jpg

[复制链接]
solcroft
发表于 2008-10-28 17:30:59 | 显示全部楼层 |阅读模式

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
feihongtian 该用户已被删除
发表于 2008-10-28 17:33:20 | 显示全部楼层
Trojan-Downloader.Win32.Delf.pjt (病毒)
C:\Documents and Settings\s\桌面\wo.zip\wo.jpg


定义版本:
病毒: 2008-10-28_02
间谍软件: 2008-10-28_02
扫描引擎:
F-Secure AVP: 7.00.171, 2008-10-28
F-Secure Hydra: 2.08.8110, 2008-10-28
The EQs
发表于 2008-10-28 17:33:38 | 显示全部楼层
Dear Don Johnson,

Thank you for your submission.
The detection for this threat will be included in our next signature update.

Regards,

Senior Virus Researcher
ESET spol. s r.o.
feihongtian 该用户已被删除
发表于 2008-10-28 17:37:42 | 显示全部楼层
原帖由 EQ2 于 2008-10-28 17:33 发表
Dear Don Johnson,

Thank you for your submission.
The detection for this threat will be included in our next signature update.

Regards,

Senior Virus Researcher
ESET spol. s r.o.


ESET反应速度啥时候这么快了

期待下个版本的ESS了
coolbox
发表于 2008-10-28 17:41:47 | 显示全部楼层
红伞没报??????
linjw
发表于 2008-10-28 17:42:36 | 显示全部楼层
Begin scan in 'D:\wo.zip'
D:\wo.zip
    [0] Archive type: ZIP
    --> wo.jpg
      [DETECTION] Is the TR/Dldr.Delf.pjt.6 Trojan
    [NOTE]      A backup was created as '4934dedb.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
yuanliu 该用户已被删除
发表于 2008-10-28 17:43:25 | 显示全部楼层
2008-10-28 17:01:36        http://avgtechnologies.112.2o7.n ... .1/s37008947668571?[AQB]&ndh=1&t=28/9/2008%2017%3A1%3A26%202%20-480&ns=avgtechnologies&pageName=http%3A//www.avg.com/&g=http%3A//www.avg.com/&server=www.avg.com&s=1280x1024&c=32&j=1.7&v=N&k=Y&bw=1280&bh=833&p=Mozilla%20Default%20Plug-in%3BRealJukebox%20NS%20Plugin%3BRealPlayer%28tm%29%20G2%20LiveConnect-Enabled%20Plug-In%20%2832-bit%29%20%3BRealPlayer%20Version%20Plugin%3BThunder%20DapCtrl%20Plugin%3BMicrosoft%3F%20Windows%20Media%20Player%20Firefox%20Plugin%3BAdobe%20Acrobat%3BShockwave%20Flash%3BWindows%20Media%20Player%20Plug-in%20Dynamic%20Link%20Library%3BMicrosoft%3F%20DRM%3B&[AQE]        Firefox        拒绝: 2o7.net               
2008-10-28 17:02:18        http://avgtechnologies.112.2o7.n ... .1/s31979686783885?[AQB]&ndh=1&t=28/9/2008%2017%3A2%3A18%202%20-480&ns=avgtechnologies&pageName=http%3A//www.avg.com/download-trial&g=http%3A//www.avg.com/download-trial&r=http%3A//www.avg.com/&server=www.avg.com&s=1280x1024&c=32&j=1.7&v=N&k=Y&bw=1280&bh=833&p=Mozilla%20Default%20Plug-in%3BRealJukebox%20NS%20Plugin%3BRealPlayer%28tm%29%20G2%20LiveConnect-Enabled%20Plug-In%20%2832-bit%29%20%3BRealPlayer%20Version%20Plugin%3BThunder%20DapCtrl%20Plugin%3BMicrosoft
%3F%20Windows%20Media%20Player%20Firefox%20Plugin%3BAdobe%20Acrobat%3BShockwave%20Flash%3BWindows%20Media%20Player%20Plug-in%20Dynamic%20Link%20Library%3BMicrosoft%3F%20DRM%3B&pid=http%3A//www.avg.com/&pidt=1&oid=http%3A//www.avg.com/download-trial&ot=A&[AQE]        Firefox        拒绝: 2o7.net


2008-10-28 17:44:04    已删除: Trojan-Downloader.Win32.Delf.pjt    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\wo.zip/wo.jpg        
2008-10-28 17:44:04    已检测到: Trojan-Downloader.Win32.Delf.pjt    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\wo.zip/wo.jpg/PE_Patch.UPX/UPX

[ 本帖最后由 yuanliu 于 2008-10-28 17:45 编辑 ]
zdlzp
发表于 2008-10-28 19:24:10 | 显示全部楼层
红伞已入库
左手
发表于 2008-10-28 19:30:34 | 显示全部楼层
27号红伞没有报?

什么毒?
雨宫优子
发表于 2008-10-28 19:35:15 | 显示全部楼层
程序:
C:\DOCUMENTS AND SETTINGS\***.18F12FE200FB45E\桌面\ANTI-VIRUS LAB\RUN VIRUS LAB\WO.EXE
是否阻止该进程继续运行?

MS不是JPG啊...
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-16 21:18 , Processed in 0.113780 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表