楼主: sam.to
收起左侧

[病毒样本] Email-Worm.Win32.Iksmas. (來自垃圾邮件) 最后更新:486超过150个样本)

[复制链接]
ledled
发表于 2009-3-3 00:10:38 | 显示全部楼层

回复 351楼 sam.to 的帖子

All to VB
leonfg
发表于 2009-3-3 13:52:47 | 显示全部楼层

回复 351楼 sam.to 的帖子

eset全
C:\Documents and Settings\GUNDAM\桌面\07\couponlist.exe_ - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\07\coupons.exe_ - a variant of Win32/Waledac.GQ trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\07\coupons.exe__ - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\07\list.exe_ - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\07\salelist.exe1 - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\07\save.exe_ - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\07\stopcrisis.exe2 - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
Palkia
发表于 2009-3-3 19:11:17 | 显示全部楼层
to rs
sam.to
 楼主| 发表于 2009-3-3 23:03:59 | 显示全部楼层
4e221fb2df9d726e116c0bbb7bce4b75  couponslist.exe6
ac0df9dfeb5a65153565e5c7080afbe2  sales.exe5
dc18182d13ad641453838ee2783f6a68  couponslist.exe1
031c9d2dbb29e505b1e277acabf6e573  couponslist.exe2
d666429df1df3a45a1a1b34f33835732  run.exe3
6474692301a42eb1249344b3d961a3b2  sales.exe4
0d7d49cc2a2e81aca765735a4f08977d  sale.exe
ffd6997006a66ca96d177e0c746a635b  sales.exe

to kl

Hello,

couponslist.exe1, couponslist.exe6, run.exe3, sale.exe7, sales.exe5, sales.exe8 - Email-Worm.Win32.Iksmas.gen

These files are already detected. Please update your antivirus bases.

couponslist.exe2, sales.exe4 - Packed.Win32.Krap.i

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

[ 本帖最后由 sam.to 于 2009-3-6 22:21 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
leonfg
发表于 2009-3-3 23:17:03 | 显示全部楼层
原帖由 sam.to 于 2009-3-3 23:03 发表
4e221fb2df9d726e116c0bbb7bce4b75  couponslist.exe6
ac0df9dfeb5a65153565e5c7080afbe2  sales.exe5
dc18182d13ad641453838ee2783f6a68  couponslist.exe1
031c9d2dbb29e505b1e277acabf6e573  couponslist.exe2 ...

eset 6
C:\Documents and Settings\GUNDAM\桌面\08\couponslist.exe1 - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\08\couponslist.exe2 - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\08\couponslist.exe6 - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\08\run.exe3 - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\08\sale.exe7 - a variant of Win32/Waledac.HB trojan - cleaned by deleting - quarantined
C:\Documents and Settings\GUNDAM\桌面\08\sales.exe4 - a variant of Win32/Waledac.HC trojan - cleaned by deleting - quarantined
ledled
发表于 2009-3-3 23:35:02 | 显示全部楼层

回复 355楼 sam.to 的帖子

to VB
sam.to
 楼主| 发表于 2009-3-4 10:13:53 | 显示全部楼层
246742e5227e7add7f89034e89d57f51   coupons.exe1
7b2a61cba68c8f0cdb383549bfb91345   run.exe2
to kl


Hello,

coupons.exe1 - Packed.Win32.Krap.i

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

run.exe2 - Email-Worm.Win32.Iksmas.gen

This file is already detected. Please update your antivirus bases.

Please quote all when answering.

--
Sincerely yours,
Vyacheslav Zakorzhevsky,
Senior Malware Analyst,
Heuristic detection group

10/1, 1st Volokolamsky Proezd, Moscow, 123060, Russia
Tel./Fax: + 7 (495) 797 8700
http://www.kaspersky.com http://www.viruslist.com

[ 本帖最后由 sam.to 于 2009-3-6 22:25 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ledled
发表于 2009-3-4 10:15:04 | 显示全部楼层

回复 358楼 sam.to 的帖子

这次没有MD5重复吧

to VB
leonfg
发表于 2009-3-4 11:17:01 | 显示全部楼层

回复 358楼 sam.to 的帖子

C:\Documents and Settings\GUNDAM\桌面\2.rar » RAR » run.exe2 - a variant of Win32/Waledac.HB trojan
C:\Documents and Settings\GUNDAM\桌面\2.rar » RAR » coupons.exe1 - a variant of Win32/Waledac.HC trojan
kingmuro
头像被屏蔽
发表于 2009-3-4 11:39:57 | 显示全部楼层
过咖啡8.7i
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-12-21 19:35 , Processed in 0.084145 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表