楼主: sam.to
收起左侧

[病毒样本] mm.exe 第405次更新 3月31日第2次更新 假借瑞星之名

[复制链接]
Palkia
发表于 2009-3-15 18:12:53 | 显示全部楼层
第二次to rs
ledled
发表于 2009-3-15 18:14:47 | 显示全部楼层

回复 9楼 sam.to 的帖子

Name: Packed/NSPack
Type: Sequence

Description:


Files:
c:\users\administrator\desktop\0315-1755mm-c\x.gif2|照片                                                                                                                                                              .exe
sam.to
 楼主| 发表于 2009-3-15 22:48:11 | 显示全部楼层
第368次更新 3月15日第3次更新
ledled
发表于 2009-3-16 00:19:25 | 显示全部楼层

回复 13楼 sam.to 的帖子

Name: Packed/Upack
Type: Sequence

Description:


Files:
c:\users\administrator\desktop\timpiatform.exe3
xuange
发表于 2009-3-16 00:29:02 | 显示全部楼层
C:\Documents and Settings\****\桌面\0315-1635mm-c.rar > RAR > 0315-1635mm-c\MD.pif2 - 可能是 Win32/AutoRun.Agent.IE 蠕虫 的变种
Sebastian
发表于 2009-3-16 06:30:46 | 显示全部楼层

回复 9楼 sam.to 的帖子

Starting the file scan:

Begin scan in 'D:\new\0315-1755mm-c'
D:\new\0315-1755mm-c\MD.pif2
    [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      A backup was created as '49eb8234.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\new\mm.exe2'
D:\new\mm.exe2
      [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      A backup was created as '49eb825d.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\new\x.gif2'
D:\new\x.gif2
    [0] Archive type: RAR
    --> ᅰᅰᅥᆲ                                                                                                                                                              .exe
      [DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
    [NOTE]      A backup was created as '4a24821e.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2009年3月16日  06:32
Used time: 00:06 Minute(s)

The scan has been done completely.

      1 Scanning directories
      4 Files were scanned
      3 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      3 files were deleted
      0 files were repaired
      3 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      0 Warnings
      3 Notes
Sebastian
发表于 2009-3-16 06:32:51 | 显示全部楼层

回复 13楼 sam.to 的帖子

Starting the file scan:

Begin scan in 'D:\new\TIMPIatform.exe3'
D:\new\TIMPIatform.exe3
      [DETECTION] Contains HEUR/Crypted suspicious code
    [NOTE]      A backup was created as '4a0a82b8.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\new\1.exe3'
D:\new\1.exe3
      [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      A backup was created as '4a22829e.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2009年3月16日  06:34
Used time: 00:07 Minute(s)

The scan has been done completely.

      0 Scanning directories
      2 Files were scanned
      1 viruses and/or unwanted programs were found
      1 Files were classified as suspicious:
      2 files were deleted
      0 files were repaired
      2 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      0 Files not concerned
      0 Archives were scanned
      0 Warnings
      2 Notes
sam.to
 楼主| 发表于 2009-3-16 11:37:26 | 显示全部楼层
第369次更新 3月16日第1次更新
Sebastian
发表于 2009-3-16 11:45:36 | 显示全部楼层

回复 18楼 sam.to 的帖子

Starting the file scan:

Begin scan in 'D:\new\1.exe3'
D:\new\1.exe3
      [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      A backup was created as '4a22cbd3.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\new\mm.exe2'
D:\new\mm.exe2
      [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      A backup was created as '49ebcc12.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\new\x.gif2'
D:\new\x.gif2
    [0] Archive type: RAR
    --> ᅰᅰᅥᆲ                                                                                                                                                              .exe
      [DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
    [NOTE]      A backup was created as '4a24cbd3.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
Begin scan in 'D:\new\0316-1131mm-c'
D:\new\0316-1131mm-c\MD.pif2
    [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      A backup was created as '49ebcbea.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\new\0316-1131mm-c\TIMPIatform.exe2
      [DETECTION] Contains HEUR/Crypted suspicious code
    [NOTE]      A backup was created as '4a0acbef.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2009年3月16日  11:46
Used time: 00:08 Minute(s)

The scan has been done completely.

      1 Scanning directories
      6 Files were scanned
      4 viruses and/or unwanted programs were found
      1 Files were classified as suspicious:
      5 files were deleted
      0 files were repaired
      5 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      0 Warnings
      5 Notes
kingmuro
头像被屏蔽
发表于 2009-3-16 11:48:46 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-3-12 00:44 , Processed in 0.096833 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表