楼主: Sherry.ai
收起左侧

[病毒样本] Adware Virus DownLoader(释放并下载大量病毒-第290次更新)

  [复制链接]
Sherry.ai
 楼主| 发表于 2009-4-14 18:15:17 | 显示全部楼层
Update
Sherry.ai
 楼主| 发表于 2009-4-14 19:13:53 | 显示全部楼层
绑了一个调色盘...还有误杀
ledled
发表于 2009-4-15 15:27:15 | 显示全部楼层
名称: Packed/FSG
类型: Sequence

描述:


文件:
c:\users\administrator\desktop\ca95715330b4794cc9bf3ba1e1c85849.exe

名称: Packed/FSG
类型: Sequence

描述:


文件:
c:\users\administrator\desktop\7ae4e58b9681d19b2e2b4ef0e46ef9a6.exe
Sherry.ai
 楼主| 发表于 2009-4-16 17:51:29 | 显示全部楼层
来早了
Sebastian
发表于 2009-4-16 18:10:07 | 显示全部楼层
第27-28次更新
Starting the file scan:

Begin scan in 'D:\kafan\CA95715330B4794CC9BF3BA1E1C85849.exe'
D:\kafan\CA95715330B4794CC9BF3BA1E1C85849.exe
  [0] Archive type: NSIS
    [DETECTION] Contains recognition pattern of the DR/Buzus.aucs.6 dropper
    --> [TempDir]/small66.exe
      --> Object
        [DETECTION] Contains recognition pattern of the ADSPY/Agent.XA adware or spyware
    --> [TempDir]/svchosts.exe
      [DETECTION] Contains recognition pattern of the DR/Delphi.Gen dropper
    --> [TempDir]/lqbz82.exe
      [DETECTION] Is the TR/Drop.Agent.PAL Trojan
    --> [TempDir]/llly66.exe
      [1] Archive type: NSIS
      --> [UnknownDir]/install.exe
        [DETECTION] Is the TR/Agent.FWQ Trojan
      --> [UnknownDir]/nlpsa.txt
        [DETECTION] Is the TR/Downloader.Gen Trojan
      --> [UnknownDir]/setup.exe
        [DETECTION] Is the TR/Agent.fwq.1 Trojan
      --> [UnknownDir]/sysmain.dat
        [DETECTION] Is the TR/Kaba.73278 Trojan
      --> [UnknownDir]/sysvc.dat
        [DETECTION] Is the TR/Spy.Agent.abzr Trojan
    --> [TempDir]/paimin6.exe
      [DETECTION] Contains recognition pattern of the DR/IETimbar dropper
      --> Software//Microsoft//Windows//CurrentVersion//Explorer//Browser Helper Objects//{489873CE-F3E1-44A3-8E89-04BE26BE4446}/IETimbar.dll
        [DETECTION] Contains recognition pattern of the ADSPY/IETimbar adware or spyware
    --> [TempDir]/install_205412.exe
      [DETECTION] Is the TR/Dldr.Agent.brcr Trojan
    --> [TempDir]/qq2009.exe
      [DETECTION] Is the TR/Crypt.FKM.Gen Trojan
    [NOTE]      A backup was created as '4a200497.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\kafan\E6DE97FE81921F3D0FF52BEFEEE9C3DB.exe'
D:\kafan\E6DE97FE81921F3D0FF52BEFEEE9C3DB.exe
  [0] Archive type: NSIS
    [DETECTION] Contains recognition pattern of the DR/Buzus.aucs.8 dropper
    --> [TempDir]/small66.exe
      --> Object
        [DETECTION] Contains recognition pattern of the ADSPY/Agent.XA adware or spyware
    --> [TempDir]/svchosts.exe
      [DETECTION] Contains recognition pattern of the DR/Delphi.Gen dropper
    --> [TempDir]/lqbz82.exe
      [DETECTION] Is the TR/Drop.Agent.PAL Trojan
    --> [TempDir]/llly66.exe
      [1] Archive type: NSIS
      --> [UnknownDir]/install.exe
        [DETECTION] Is the TR/Agent.FWQ Trojan
      --> [UnknownDir]/nlpsa.txt
        [DETECTION] Is the TR/Downloader.Gen Trojan
      --> [UnknownDir]/setup.exe
        [DETECTION] Is the TR/Agent.fwq.1 Trojan
      --> [UnknownDir]/sysmain.dat
        [DETECTION] Is the TR/Kaba.73278 Trojan
      --> [UnknownDir]/sysvc.dat
        [DETECTION] Is the TR/Spy.Agent.abzr Trojan
    --> [TempDir]/paimin6.exe
      [DETECTION] Contains recognition pattern of the DR/IETimbar dropper
      --> Software//Microsoft//Windows//CurrentVersion//Explorer//Browser Helper Objects//{489873CE-F3E1-44A3-8E89-04BE26BE4446}/IETimbar.dll
        [DETECTION] Contains recognition pattern of the ADSPY/IETimbar adware or spyware
    --> [TempDir]/install_205412.exe
      [DETECTION] Is the TR/Dldr.Agent.brcr Trojan
    [NOTE]      A backup was created as '4a2b048d.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2009年4月16日  18:11
Used time: 00:02 Minute(s)

The scan has been done completely.

      0 Scanned directories
     45 Files were scanned
     25 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      2 files were deleted
      0 Viruses and unwanted programs were repaired
      2 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
     20 Files not concerned
      6 Archives were scanned
      0 Warnings
      2 Notes
shirenlau
发表于 2009-4-17 12:09:35 | 显示全部楼层
To BitDefender
shirenlau
发表于 2009-4-17 13:40:27 | 显示全部楼层
谢谢楼主,辛苦
aerbeisi
发表于 2009-4-17 13:42:37 | 显示全部楼层
D:\dzh_2009v5(28).rar=]E6DE97FE81921F3D0FF52BEFEEE9C3DB.exe Trojan.Generic.909324
Sherry.ai
 楼主| 发表于 2009-4-17 17:50:44 | 显示全部楼层
Update
Sebastian
发表于 2009-4-17 17:54:45 | 显示全部楼层
第29次更新
Starting the file scan:

Begin scan in 'D:\kafan\0B92995A7BE4076167ED8C0E747E5BFB.exe'
D:\kafan\0B92995A7BE4076167ED8C0E747E5BFB.exe
  [0] Archive type: NSIS
    --> [TempDir]/small66.exe
      --> Object
        [DETECTION] Contains recognition pattern of the ADSPY/Agent.XA adware or spyware
    --> [TempDir]/svchosts.exe
      [DETECTION] Contains recognition pattern of the DR/Delphi.Gen dropper
    --> [TempDir]/lqbz82.exe
      [DETECTION] Is the TR/Drop.Agent.PAL Trojan
    --> [TempDir]/llly66.exe
      [1] Archive type: NSIS
      --> [UnknownDir]/install.exe
        [DETECTION] Is the TR/Agent.FWQ Trojan
      --> [UnknownDir]/nlpsa.txt
        [DETECTION] Is the TR/Downloader.Gen Trojan
      --> [UnknownDir]/setup.exe
        [DETECTION] Is the TR/Agent.fwq.1 Trojan
      --> [UnknownDir]/sysmain.dat
        [DETECTION] Is the TR/Kaba.73278 Trojan
      --> [UnknownDir]/sysvc.dat
        [DETECTION] Is the TR/Spy.Agent.abzr Trojan
    --> [TempDir]/paimin6.exe
      [DETECTION] Contains recognition pattern of the DR/IETimbar dropper
      --> Software//Microsoft//Windows//CurrentVersion//Explorer//Browser Helper Objects//{489873CE-F3E1-44A3-8E89-04BE26BE4446}/IETimbar.dll
        [DETECTION] Contains recognition pattern of the ADSPY/IETimbar adware or spyware
    --> [TempDir]/install_205412.exe
      [DETECTION] Is the TR/Dldr.Agent.brcr Trojan
    --> [TempDir]/service.exe
      [DETECTION] Is the TR/ATRAPS.Gen Trojan
    [NOTE]      A backup was created as '4a215291.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2009年4月17日  17:56
Used time: 00:02 Minute(s)

The scan has been done completely.

      0 Scanned directories
     22 Files were scanned
     12 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      1 files were deleted
      0 Viruses and unwanted programs were repaired
      1 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
     10 Files not concerned
      3 Archives were scanned
      0 Warnings
      1 Notes
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-18 13:14 , Processed in 0.093902 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表