查看: 2046|回复: 11
收起左侧

[病毒样本] 6个

[复制链接]
qianwenxiang
发表于 2009-3-21 23:11:28 | 显示全部楼层 |阅读模式
//

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
kingmuro
头像被屏蔽
发表于 2009-3-21 23:21:50 | 显示全部楼层

BD 4个

文件或对象名称 病毒名称 最终处理状态
E:\My Documents\桌面\test\eeee.rar=]rexx.exe Generic.Malware.SFP!Pk!g.79FD8ACC 移动至隔离区失败
E:\My Documents\桌面\test\eeee.rar=]flash_update.exe Packer.Malware.NSAnti.1 移动至隔离区失败
E:\My Documents\桌面\test\eeee.rar=]yahoo_update.exe Packer.Malware.NSAnti.1 移动至隔离区失败
E:\My Documents\桌面\test\eeee.rar=]msn_update.exe Trojan.Crypt.DG 移动至隔离区失败
ledled
发表于 2009-3-22 00:24:12 | 显示全部楼层
VB Kill 4
xxl
发表于 2009-3-22 00:52:24 | 显示全部楼层
KIS8.0 Kill
2009-3-22 0:51:56        http://bbs.kafan.cn/attachment.p ... t=1237654296//a.exe        Internet Explorer        检测到威胁: HEUR:Trojan.Win32.Invader
llydmissile
发表于 2009-3-22 08:46:14 | 显示全部楼层
miss 1 To McAfee
nosferatu
头像被屏蔽
发表于 2009-3-22 08:53:44 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\eeee.rar'
C:\Documents and Settings\Administrator\桌面\eeee.rar
  [0] Archive type: RAR
    --> a.exe
      [DETECTION] Is the TR/Crypt.ULPM.Gen Trojan
    --> flash_update.exe
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> msn_update.exe
      [DETECTION] Contains recognition pattern of the DR/PcClient.Gen dropper
    --> rexx.exe
      [DETECTION] Is the TR/Hijacker.Gen Trojan
    --> setupx.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> yahoo_update.exe
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan

Beginning disinfection:
C:\Documents and Settings\Administrator\桌面\eeee.rar
    [NOTE]      The file was deleted!


End of the scan: 星期日 2009年3月22日  08:54
Used time: 00:01 Minute(s)

The scan has been done completely.

      0 Scanned directories
      8 Files were scanned
      6 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      1 files were deleted
      0 Viruses and unwanted programs were repaired
      0 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
      2 Files not concerned
      1 Archives were scanned
      0 Warnings
Palkia
发表于 2009-3-22 10:05:19 | 显示全部楼层
上报瑞星
尤金卡巴斯基
发表于 2009-3-22 13:27:25 | 显示全部楼层
2009/3/22 13:26:45        已清除        木马程序 Backdoor.Win32.PcClient.gtg        G:\Temp\Virus\eeee.rar/msn_update.exe               
2009/3/22 13:26:45        已清除        木马程序 Trojan-Dropper.Win32.Agent.akbo        G:\Temp\Virus\eeee.rar/a.exe               
2009/3/22 13:26:45        已清除        木马程序 Trojan-GameThief.Win32.Magania.agyj        G:\Temp\Virus\eeee.rar/rexx.exe//PE_Patch//UPack               
2009/3/22 13:26:45        已清除        木马程序 Trojan-GameThief.Win32.Magania.vhh        G:\Temp\Virus\eeee.rar/yahoo_update.exe               
2009/3/22 13:26:45        已清除        木马程序 Trojan-PSW.Win32.Magania.oaa        G:\Temp\Virus\eeee.rar/flash_update.exe               


Signature Miss 1,To KL
黑衣~魂
发表于 2009-3-22 13:29:48 | 显示全部楼层
dr.web kill 5
a.exe;D:\Documents and Settings\Administrator\桌面;Trojan.PWS.Wow.origin;Deleted.;
flash_update.exe;D:\Documents and Settings\Administrator\桌面;Trojan.MulDrop.17472;Deleted.;
msn_update.exe;D:\Documents and Settings\Administrator\桌面;Trojan.Proxy.3766;Deleted.;
rexx.exe;D:\Documents and Settings\Administrator\桌面;Trojan.MulDrop.28279;Deleted.;
yahoo_update.exe;D:\Documents and Settings\Administrator\桌面;Trojan.Nsanti.Packed;Deleted.;
TO-1
尤金卡巴斯基
发表于 2009-3-22 14:53:40 | 显示全部楼层
Hello,

New malicious software was found in the attached file. Its detection will be included in the next update.
Thank you for your help.
Trojan-Downloader.Win32.FraudLoad.dxn


Regards, Vladislav Pintiysky
Virus Analyst
10/1, 1st Volokolamsky Proezd, Moscow, 123060, Russia
Tel./Fax: + 7 (495) 797 8700
http://www.kaspersky.com http://www.viruslist.com
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-11-7 02:11 , Processed in 0.148519 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表