查看: 1963|回复: 6
收起左侧

[病毒样本] 1个 2009.1.18_01

[复制链接]
killloop
发表于 2009-1-18 22:57:15 | 显示全部楼层 |阅读模式
反病毒引擎版本最后更新扫描结果
a-squared4.0.0.732009.01.18Trojan-Spy.Win32.Banker.anv!IK
AhnLab-V32009.1.15.02009.01.17Packed/Upack
AntiVir7.9.0.572009.01.18TR/Dropper.Gen
Authentium5.1.0.42009.01.17W32/Injector.A.gen!Eldorado
Avast4.8.1281.02009.01.16Win32:Delf-DNR
AVG8.0.0.2292009.01.18Win32/Small.DE
BitDefender7.22009.01.18Win32.Worm.Otwycal.T
CAT-QuickHeal10.002009.01.17-
ClamAV0.94.12009.01.18-
Comodo9352009.01.18-
DrWeb4.44.0.091702009.01.18BackDoor.Rejoice.origin
eSafe7.0.17.02009.01.18Win32.Looked.gen
eTrust-Vet31.6.63122009.01.17-
F-Prot4.4.4.562009.01.17W32/Injector.A.gen!Eldorado
F-Secure8.0.14470.02009.01.18W32/Packed_Upack.H
Fortinet3.117.0.02009.01.15-
GData192009.01.18Win32:Delf-DNR
IkarusT3.1.1.45.02009.01.18Trojan-Spy.Win32.Banker.anv
K7AntiVirus7.10.5942009.01.17Generic.Packed.Upack
Kaspersky7.0.0.1252009.01.18-
McAfee54982009.01.17New Malware.n
McAfee+Artemis54982009.01.17New Malware.n
Microsoft1.42052009.01.18Backdoor:Win32/Prosti.U
NOD3237742009.01.17a variant of Win32/TrojanDropper.Delf.VX
Norman5.93.012009.01.16W32/Packed_Upack.H
nProtect2009.1.8.02009.01.16-
Panda9.5.1.22009.01.18Suspicious file
PCTools4.4.2.02009.01.18Packed/Upack
Prevx1V22009.01.18-
Rising21.12.62.002009.01.18-
SecureWeb-Gateway6.7.62009.01.18Trojan.Dropper.Gen
Sophos4.37.02009.01.18Mal/Packer
Sunbelt3.2.1835.22009.01.16-
Symantec102009.01.18Backdoor.Prosti
TheHacker6.3.1.5.2222009.01.17W32/Behav-Heuristic-060
TrendMicro8.700.0.10042009.01.16Cryp_Upack
VBA323.12.8.102009.01.17suspected of Backdoor.Delf.178
ViRobot2009.1.17.15632009.01.17-
VirusBuster4.5.11.02009.01.18Packed/Upack


软件名称引擎版本
病毒库版本
病毒库时间
扫描结果
时间
a-squared4.0.0.29200901181701482009-01-18Trojan-Spy.Win32.Banker.anv!IK
5.543
AntiVir7.9.0.577.1.1.1352009-01-17TR/Dropper.Gen
1.778
Authentium5.1.12009011719222009-01-17W32/Injector.A.gen!Eldorado (Possible)
4.497
AVAST!3.0.1090116-12009-01-16Win32:Otwycal-AK [Wrm]
0.094
AVG7.5.52.442270.10.8/18992009-01-17Win32/Small.DE
2.530
BitDefender7.81008.25230717.232252009-01-18Win32.Worm.Otwycal.T (suspected)
2.424
CA (VET)9.0.0.14331.6.63122009-01-17-
6.290
ClamAV0.94.288742009-01-18-
0.554
Comodo3.09352009-01-18-
2.060
CP Secure1.1.0.7152009.01.182009-01-18Troj.PSW.W32.OnLineGames.qel
6.815
Dr.Web4.44.0.91702009.01.182009-01-18BackDoor.Rejoice.origin
4.454
F-Prot4.4.4.56200901172009-01-17W32/Injector.A.gen!Eldorado (generic, not disinfectable)
3.757
F-Secure5.51.61002009.01.18.042009-01-18-
0.193
GData19.2489/19.190200901182009-01-18Win32:Otwycal-AK [Wrm] [Engine:B]
4.911
IkarusT3.1.01.452009.01.18.721702009-01-18Trojan-Spy.Win32.Banker.anv
3.605
Microsoft1.42052009.01.182009-01-18Backdoor:Win32/Prosti.U
12.017
mks_vir2.012009.01.152009-01-15-
2.690
Norman5.93.015.93.002009-01-16W32/Packed_Upack.H
6.520
nProtect20090116.0129035432009-01-16-
5.327
Quick Heal10.002009.01.172009-01-17-
0.946
Sophos2.82.14.372009-01-18Mal/EncPk-BW
2.421
Sunbelt475647562009-01-08-
0.170
The Hacker6.3.1.5v002222009-01-17W32/Behav-Heuristic-060
1.841
VBA323.12.8.1020090117.08552009-01-17Backdoor.Delf.178 (suspicious)
4.648
ViRobot200901162009.01.162009-01-16-
0.769
VirusBuster4.5.11.1010.100.29/7626442009-01-17-
1.589
卡巴斯基5.5.102009.01.182009-01-18-
0.153
安博士V32009.01.18.002009.01.182009-01-18Packed/Upack
7.072
安天2.0.1820090118.20639252009-01-18-
0.018
江民杀毒11.0.7062009.01.132009-01-13-
4.330
熊猫卫士9.05.012009.01.182009-01-18Suspicious file
3.733
瑞星20.021.12.62.002009-01-18-
2.351
赛门铁克1.3.0.2420090117.0062009-01-17Backdoor.Prosti
0.521
趋势科技8.700-10045.774.362009-01-18Cryp_Upack
2.274
迈克菲5.3.0054982009-01-17New Malware.n
2.938
金山毒霸2008.9.8.182009.1.18.202009-01-18Win32.Troj.OnlineGameT.bs.1081344
1.751
飞塔2.81-3.1179.9332009-01-15-
3.832


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hddu
发表于 2009-1-18 23:01:21 | 显示全部楼层
EQ拦截了

2009-01-18 22:59:53    运行应用程序      操作:阻止
进程路径:F:\jcvip2009002\jcvip2009002.exe
文件路径:C:\WINDOWS\system32\cmd.exe
命令行:/c set date=%date% &&date 1986-10-10 &&ping 127.0.0.1&&ping 127.0.0.1&&ping 127.0.0.1&&ping 127.0.0.1&&date %date%
触发规则:所有程序规则->系统程序_黑名单->*\cmd.exe

2009-01-18 23:00:00    创建文件      操作:阻止并结束进程
进程路径:F:\jcvip2009002\jcvip2009002.exe
文件路径:C:\WINDOWS\system32\360rpt.exe
触发规则:所有程序规则->WINDOWS_2->%windir%\system*\*.exe

2009-01-18 23:00:00    创建文件      操作:阻止并结束进程
进程路径:F:\jcvip2009002\jcvip2009002.exe
文件路径:C:\WINDOWS\system32\360rpt.exe
触发规则:所有程序规则->WINDOWS_2->%windir%\system*\*.exe
尤金卡巴斯基
发表于 2009-1-18 23:10:45 | 显示全部楼层
启发kill
2009/1/18 23:10:13 已隔离 病毒 HEUR:Trojan.Win32.Generic G:\Temp\Virus\jcvip2009002.rar/jcvip2009002.exe//UPack  
To KL

[ 本帖最后由 尤金卡巴斯基 于 2009-1-18 23:12 编辑 ]
浪滔天
发表于 2009-1-18 23:12:39 | 显示全部楼层
卡8启发

2009-01-18 23:10:32        http://bbs.kafan.cn/attachment.p ... p2009002.exe//UPack        TouchNet Browser        已检测到: HEUR:Trojan.Win32.Generic
KOI9009
发表于 2009-1-18 23:18:07 | 显示全部楼层
COMODO Internet Security        Heur.Pck.Upack
xyao
发表于 2009-1-18 23:19:15 | 显示全部楼层
微点

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
尤金卡巴斯基
发表于 2009-1-19 00:45:29 | 显示全部楼层
Hello,

jcvip2009002.exe_ - Trojan.Win32.Slefdel.cik

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.
The answer is relevant to the latest bases from update sources.

Regards, Andrey Ladikov
Virus Analyst, Kaspersky Lab.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-20 19:23 , Processed in 0.138853 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表