楼主: sam.to
收起左侧

[病毒样本] Email-Worm.Win32.Iksmas. (來自垃圾邮件) 最后更新:486超过150个样本)

[复制链接]
wcj20236
头像被屏蔽
发表于 2009-3-2 12:31:41 | 显示全部楼层
原帖由 sam.to 于 2009-3-2 12:01 发表
65681daf6280a65ae3d44e49bafe3717   run.exe_
b97169f29ec643a30e6aa936ef8a2e33   discounts.exe_
to kl


微点通杀
328397663
发表于 2009-3-2 13:50:35 | 显示全部楼层

回复 332楼 sam.to 的帖子

呵呵.没注意看.只看回复结果.
sam.to
 楼主| 发表于 2009-3-2 17:28:53 | 显示全部楼层
4c0920a25efdb272a7a285d1367d41d2  stopcrisis.exe_
3b7156b0cbc19bff670d94c0b9519f03  coupon.exe_
e440efa6b2c3e433fb0fc311f150e783  sale.exe_
2d00ce071fd91f868a4f898734a66750  saleslist.exe_
7802abe10f4a16eb68b7dd3af97651a9  salelist.exe_
e7a586ca0d2e172fc267cbd0c500f853  print.exe_
to kl

coupon.exe_ - Email-Worm.Win32.Iksmas.ym,
print.exe_ - Email-Worm.Win32.Iksmas.yn,
sale.exe_ - Email-Worm.Win32.Iksmas.yo,
salelist.exe_ - Email-Worm.Win32.Iksmas.yp,
saleslist.exe_ - Email-Worm.Win32.Iksmas.yq,
stopcrisis.exe_ - Email-Worm.Win32.Iksmas.yr

[ 本帖最后由 sam.to 于 2009-3-2 22:11 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ledled
发表于 2009-3-2 17:32:43 | 显示全部楼层

回复 343楼 sam.to 的帖子

All to VB
Palkia
发表于 2009-3-2 18:54:44 | 显示全部楼层
to rs
328397663
发表于 2009-3-2 22:09:30 | 显示全部楼层

回复 343楼 sam.to 的帖子

Hello,

coupon.exe_ - Email-Worm.Win32.Iksmas.ym,
print.exe_ - Email-Worm.Win32.Iksmas.yn,
sale.exe_ - Email-Worm.Win32.Iksmas.yo,
salelist.exe_ - Email-Worm.Win32.Iksmas.yp,
saleslist.exe_ - Email-Worm.Win32.Iksmas.yq,
stopcrisis.exe_ - Email-Worm.Win32.Iksmas.yr

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.
leonfg
发表于 2009-3-2 23:22:35 | 显示全部楼层

回复 338楼 sam.to 的帖子

eset
C:\Documents and Settings\GUNDAM\桌面\2.zip » ZIP » discounts.exe_ - a variant of Win32/Waledac.HB trojan
C:\Documents and Settings\GUNDAM\桌面\2.zip » ZIP » run.exe_ - Win32/Waledac.HD trojan
phantom009
发表于 2009-3-2 23:24:33 | 显示全部楼层
微点通杀
leonfg
发表于 2009-3-2 23:25:09 | 显示全部楼层

回复 343楼 sam.to 的帖子

eset 全
C:\Documents and Settings\GUNDAM\桌面\6\coupon.exe_ - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\6\print.exe_ - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\6\sale.exe_ - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\6\salelist.exe_ - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\6\saleslist.exe_ - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\6\stopcrisis.exe_ - a variant of Win32/Waledac.GQ trojan - cleaned by deleting - quarantined
sam.to
 楼主| 发表于 2009-3-3 00:01:47 | 显示全部楼层
941fc7b9f3fffc9d8b9ada6f442e6f77   coupons.exe_
a3b1d92ccefa151337501e4737c5d27c   save.exe_
d77eff38089709891994132668d88e60   couponlist.exe_
9dfac1125864e0d392a5ff072c17d937   list.exe_
adb95fbafded91e67b80a225b2ab6e70   stopcrisis.exe2
2e5152a9b3164a8be0ab371ebf23484d   salelist.exe1
010ea96c11837e72f3f7b159afa64e45   coupons.exe__
to kl

couponlist.exe_ - Email-Worm.Win32.Iksmas.zd,
coupons.exe_ - Email-Worm.Win32.Iksmas.zj,
coupons.exe_1 - Email-Worm.Win32.Iksmas.ze,
list.exe_ - Email-Worm.Win32.Iksmas.zi,
salelist.exe1 - Email-Worm.Win32.Iksmas.zh,
save.exe_ - Email-Worm.Win32.Iksmas.zg,
stopcrisis.exe2 - Email-Worm.Win32.Iksmas.zf

[ 本帖最后由 sam.to 于 2009-3-3 21:54 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-12-21 19:43 , Processed in 0.075344 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表