查看: 1540|回复: 3
收起左侧

[病毒样本] EvID報的很多(誤報?!)

[复制链接]
黑衣~魂
发表于 2009-2-24 20:13:37 | 显示全部楼层 |阅读模式
大家幫忙看看吧
轉AVPCLUB
AntiVir+AVG+NOD32+HackTool/EvID+TrendMicro
http://www.virustotal.com/analisis/afc5d29fbba4fb4ec09e42cb30fcc0d8
都報了

不過kaspersky+dr.web未報~上報dr.web回覆乾淨
等等上報kaba確認
Original file name: EvID4226Patch.exe
Dear ~ 魂 ~,
Your submission has been processed by Automatic System. This file is in the trusted (clean) files database of Dr.Web (R).


If you are still confident that this file is malicious, reply to this message.
Thank you for the cooperation.
--
Yours sincerely,
Virus Monitoring Service Doctor Web Ltd.

[ 本帖最后由 黑衣~魂 于 2009-2-24 20:18 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
qianwenxiang
发表于 2009-2-24 20:18:13 | 显示全部楼层
报的大多都是风险工具或者补丁文件 应该不算误报吧   patch文件比较容易被报



Intelligent TCPIP.SYS patcher / EventID 4226 patch             Version 2.23d
(c) 2004-05 LvlLord (www.LvlLord.de)        use parameter /? for more options

This program is in development. Visit http://www.LvlLord.de for a new version
--------------------------------------------------------------------------------

- Windows mode
- Recognised Windows-directory: C:\WINDOWS

- 'Windows XP SP2 or newer' TCPIP.SYS detected ...

- Build of TCPIP.SYS  : 5.1.2600.3394 (I386)
- Build of safety copy: -
           (will be overwritten due to changed version)

Found limit position                            : 0x4F7A2
Current maximum concurrent half-open connections: 256

If you continue, please press 'Abort' and 'Yes' on the popup from Windows
File Protection. Because we change system files, Windows tries to restore the
original one. So it's normal.

Do you really want to change the limit to 10?
  (Y=Yes  /  N=No  /  C=Change limit)
ledled
发表于 2009-2-24 20:26:31 | 显示全部楼层
名称: RiskWare.TCPIPPatcher.A
类型: Trojan

描述:


文件:
c:\users\administrator\desktop\evid4226patch.exe
黑衣~魂
 楼主| 发表于 2009-2-25 16:11:15 | 显示全部楼层
有的報TROJAN
卡巴連NOT-VIRUS 工具也不報
Hello,
EvID4226Patch.exe
No malicious code was found in this file.
-----------
Regards, Ostroverkhov Vladimir
Virus Analyst, Kaspersky Lab.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-20 01:46 , Processed in 0.142695 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表