查看: 2750|回复: 12
收起左侧

[病毒样本] Merry Christmas & a happy new year (5个)

[复制链接]
sam.to
发表于 2008-12-25 17:31:34 | 显示全部楼层 |阅读模式
63ffb43a08bda1f7e9639f2af508ecb3  Kieueirnr.exe2
245b8d57998abad0bf0ef2423bfe7ff3  winword.exe3
ce98f7f62f5e2d389bfc9149910e0f76  Kieueirnr.dll3
d65b2b375e6ddc281a980ebe419d4784  Kaspersky.exe3
57fc2f823ebff171fcf0f90b87bfae2c  哥们好~1.EXE2

25/12/2008 17:30:12        已偵測: Trojan.Win32.Agent.agwy        C:\Documents and Settings\kato9096\桌面\11141\哥们好~1.EXE2/PE_Patch.UPX/UPX               

不报的已上报卡巴

Hello,

Kaspersky.exe_ - Trojan-Downloader.Win32.Agent.axnu,
Kieueirnr.dll3 - Trojan-Spy.Win32.FlyStudio.ani,
Kieueirnr.exe_ - Trojan-Spy.Win32.FlyStudio.anj,
winword.exe_ - Backdoor.Win32.Hupigon.fhgk

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.
The answer is relevant to the latest bases from update sources.

[ 本帖最后由 sam.to 于 2008-12-25 18:16 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
08红伞威点
发表于 2008-12-25 17:40:29 | 显示全部楼层
Start of the scan: 2008年12月25日  17:36
Starting the file scan:

Begin scan in 'C:\Documents and Settings\***\桌面\文件'
C:\Documents and Settings\***\桌面\文件\Kaspersky.exe3
    [DETECTION] Is the TR/ATRAPS.Gen Trojan
    [NOTE]      A backup was created as '49c65495.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Documents and Settings\***\桌面\文件\Kieueirnr.exe2
      [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      A backup was created as '49b8549d.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Documents and Settings\***\桌面\文件\winword.exe3
    [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    [NOTE]      A backup was created as '49c1549e.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Documents and Settings\***\桌面\文件\哥们好~1.EXE2
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      A backup was created as 'a2d0a321.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
-----------------------------------------------------------------------------------------------------
红伞S版(库V7.01.01.35)杀4个。
08红伞威点
发表于 2008-12-25 17:42:26 | 显示全部楼层
File ID  Filename Size (Byte) Result
25218677  Kieueirnr.dll3  2.99 MB  UNDER ANALYSIS
---------------------------------------------------------------------------------
红伞上报1个。(隐藏文件)
kris
发表于 2008-12-25 17:43:03 | 显示全部楼层
郁闷,F-Secure一个也未能检测到。
sam.to
 楼主| 发表于 2008-12-25 17:54:11 | 显示全部楼层

回复 4楼 kris 的帖子

相信
哥们好~1.EXE2
是最新被卡巴查出來的
sam.to
 楼主| 发表于 2008-12-25 18:16:40 | 显示全部楼层
Hello,

Kaspersky.exe_ - Trojan-Downloader.Win32.Agent.axnu,
Kieueirnr.dll3 - Trojan-Spy.Win32.FlyStudio.ani,
Kieueirnr.exe_ - Trojan-Spy.Win32.FlyStudio.anj,
winword.exe_ - Backdoor.Win32.Hupigon.fhgk

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.
The answer is relevant to the latest bases from update sources.
su-tt
发表于 2008-12-25 20:33:15 | 显示全部楼层
C:\Documents and Settings\Administrator\桌面\11141.rar > RAR > ???~1.EXE2 - 可能是 Win32/Genetik 特洛伊木马 的变种
su-tt
发表于 2008-12-25 20:36:14 | 显示全部楼层

回复 5楼 sam.to 的帖子

看来卡巴和ESET都报了同一个
allinwonderi
发表于 2008-12-25 20:39:19 | 显示全部楼层

Norman Virus Control 5.99

to lab
BING126
头像被屏蔽
发表于 2008-12-25 20:39:38 | 显示全部楼层
McAfee  报了2个。。

kaspersky.exe3     new malware.ix            
kieueirnr.dll3         no  
kieueirnr.exe2       no  
winword.exe3       new malware.ix              
哥们好~1.EXE2     no
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-19 12:39 , Processed in 0.127004 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表