楼主: pyic
收起左侧

[病毒样本] 5月1日过主流的高质量样本!

[复制链接]
kav2046
头像被屏蔽
发表于 2009-5-1 10:22:33 | 显示全部楼层
TO ESET!
猴纸
发表于 2009-5-1 10:23:02 | 显示全部楼层
过不了红色
xys3
发表于 2009-5-1 10:30:14 | 显示全部楼层
哈哈,江民表现还不错啊,把它干掉了
lmsa613
发表于 2009-5-1 10:32:04 | 显示全部楼层
kv:TrojanDownloader.VB.nly
song-ci
发表于 2009-5-1 10:32:47 | 显示全部楼层
过金山

a2  kill
wangfeng66
发表于 2009-5-1 13:00:10 | 显示全部楼层
文件 setup.exe 接收于 2009.04.29 13:49:47 (CET)
当前状态: 完成

结果: 4/40 (10.00%)
格式化文本 打印结果  
反病毒引擎 版本 最后更新 扫描结果
a-squared 4.0.0.101 2009.04.29 -
AhnLab-V3 5.0.0.2 2009.04.29 -
AntiVir 7.9.0.156 2009.04.29 TR/Dropper.Gen
Antiy-AVL 2.0.3.1 2009.04.29 -
Authentium 5.1.2.4 2009.04.27 -
Avast 4.8.1335.0 2009.04.28 -
AVG 8.5.0.287 2009.04.29 -
BitDefender 7.2 2009.04.29 Gen:Trojan.Heur.VB.80B44B7B7B
CAT-QuickHeal 10.00 2009.04.29 -
ClamAV 0.94.1 2009.04.29 -
Comodo 1141 2009.04.29 -
DrWeb 4.44.0.09170 2009.04.29 -
eSafe 7.0.17.0 2009.04.27 -
eTrust-Vet 31.6.6482 2009.04.29 -
F-Prot 4.4.4.56 2009.04.27 -
F-Secure 8.0.14470.0 2009.04.29 -
Fortinet 3.117.0.0 2009.04.29 -
GData 19 2009.04.29 Gen:Trojan.Heur.VB.80B44B7B7B
Ikarus T3.1.1.49.0 2009.04.29 -
K7AntiVirus 7.10.719 2009.04.29 -
Kaspersky 7.0.0.125 2009.04.29 -
McAfee 5599 2009.04.28 -
McAfee+Artemis 5599 2009.04.28 -
McAfee-GW-Edition 6.7.6 2009.04.29 Trojan.Dropper.Gen
Microsoft 1.4602 2009.04.29 -
NOD32 4042 2009.04.29 -
Norman 6.00.06 2009.04.28 -
nProtect 2009.1.8.0 2009.04.29 -
Panda 10.0.0.14 2009.04.28 -
PCTools 4.4.2.0 2009.04.29 -
Prevx1 3.0 2009.04.29 -
Rising 21.27.22.00 2009.04.29 -
Sophos 4.41.0 2009.04.29 -
Sunbelt 3.2.1858.2 2009.04.28 -
Symantec 1.4.4.12 2009.04.29 -
TheHacker 6.3.4.1.317 2009.04.29 -
TrendMicro 8.950.0.1092 2009.04.29 -
VBA32 3.12.10.3 2009.04.29 -
ViRobot 2009.4.29.1715 2009.04.29 -
VirusBuster 4.6.5.0 2009.04.28 -
附加信息
File size: 135168 bytes
MD5...: eadaef6f9a1076adc4558f74d4351885
SHA1..: 8e47519df62b88df460d7999bbee9c2acb1db174
SHA256: 9ffc864ea327c2d6d93da8aa9409e66608be133a8cd8896efb24b63103baf46a
SHA512: 0a8cfe1e42901438ffbb10e93ed712c8bd5846d9e0786a02a415b344b5afbbb0
433491f928e1651e3560c15bc24b0d2a0fe29ef333c44d9eff1969720373f29f
ssdeep: 1536:AF0H8TnGa3s8xEuPoLH8Tn8FckRA4twfw4399JF85JBRKJAr1RSm1pSpcQg
L:hHG9s8tCHGORr6f/TJF85vRKJASng

PEiD..: -
TrID..: File type identification
Win32 Executable Microsoft Visual Basic 6 (91.5%)
Win32 Dynamic Link Library (generic) (5.5%)
Generic Win/DOS Executable (1.4%)
DOS Executable Generic (1.4%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x136c
timedatestamp.....: 0x49f67603 (Tue Apr 28 03:20:35 2009)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x8464 0x9000 5.57 c63a351636227686a6da36bb9d831ece
.data 0xa000 0xa3c 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110
.rsrc 0xb000 0x15bf6 0x16000 5.12 6623815e5707dbbc183955675bf1a385

( 1 imports )
> MSVBVM60.DLL: _CIcos, _adj_fptan, __vbaVarMove, __vbaFreeVar, __vbaAryMove, __vbaFreeVarList, __vbaEnd, _adj_fdiv_m64, __vbaFreeObjList, _adj_fprem1, __vbaStrCat, __vbaLsetFixstr, __vbaSetSystemError, __vbaHresultCheckObj, _adj_fdiv_m32, __vbaAryDestruct, __vbaOnError, __vbaObjSet, -, _adj_fdiv_m16i, __vbaObjSetAddref, _adj_fdivr_m16i, _CIsin, __vbaChkstk, __vbaFileClose, EVENT_SINK_AddRef, __vbaStrCmp, __vbaPutOwner3, DllFunctionCall, __vbaVarLateMemSt, _adj_fpatan, __vbaFixstrConstruct, EVENT_SINK_Release, _CIsqrt, EVENT_SINK_QueryInterface, __vbaExceptHandler, __vbaStrToUnicode, _adj_fprem, _adj_fdivr_m64, __vbaFPException, __vbaStrVarVal, -, _CIlog, __vbaFileOpen, __vbaNew2, __vbaVar2Vec, _adj_fdiv_m32i, _adj_fdivr_m32i, __vbaStrCopy, __vbaFreeStrList, _adj_fdivr_m32, _adj_fdiv_r, -, __vbaI4Var, __vbaStrToAnsi, __vbaVarDup, __vbaVarCopy, -, _CIatan, __vbaStrMove, _allmul, __vbaLateIdSt, _CItan, _CIexp, __vbaFreeObj, __vbaFreeStr

( 0 exports )

PDFiD.: -
RDS...: NSRL Reference Data Set
HKLHF
发表于 2009-5-1 13:45:21 | 显示全部楼层
TO PCT
tangxc0746
发表于 2009-5-1 16:23:15 | 显示全部楼层
AVG8.5没有发现
pyic
 楼主| 发表于 2009-5-1 18:19:09 | 显示全部楼层
继续来顶,不顶就沉了!
kkgh
发表于 2009-5-1 18:25:30 | 显示全部楼层
费尔  TrojanDownloader.VB.nly.bvan
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-12-24 00:13 , Processed in 0.069137 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表