查看: 4457|回复: 10
收起左侧

[病毒样本] 1x (kaba miss) 3L附上其所下载的木马群病毒样本

[复制链接]
幸福的猪猪
发表于 2009-6-11 15:59:56 | 显示全部楼层 |阅读模式
刚才没事在论坛闲逛,看到http://bbs.kafan.cn/thread-496822-1-1.html这个网址中,提供的病毒下载地址,没事就下载回来,测测杀毒软件……

没想到kaba又被做了免杀,上报kaba 查杀!(有释放病毒样本的行为……)

[ 本帖最后由 幸福的猪猪 于 2009-6-11 16:49 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
HC303
发表于 2009-6-11 16:15:21 | 显示全部楼层
a virus or unwanted program 'TR/Crypt.FKM.Gen' [trojan] was found.
幸福的猪猪
 楼主| 发表于 2009-6-11 16:44:31 | 显示全部楼层
http://www.2a8k.cn/d/1.exe
http://www.2a8k.cn/d/2.exe
http://www.2a8k.cn/d/3.exe
http://www.2a8k.cn/d/4.exe
http://www.2a8k.cn/d/5.exe
http://www.2a8k.cn/d/6.exe
http://www.2a8k.cn/d/7.exe
http://www.2a8k.cn/d/8.exe
http://www.2a8k.cn/d/9.exe
http://www.2a8k.cn/d/10.exe
http://www.2a8k.cn/d/11.exe
http://www.2a8k.cn/d/12.exe
http://www.2a8k.cn/d/13.exe
http://www.2a8k.cn/d/14.exe
http://www.2a8k.cn/d/15.exe
http://www.2a8k.cn/d/16.exe
http://www.2a8k.cn/d/17.exe
http://www.2a8k.cn/d/18.exe
http://www.2a8k.cn/d/19.exe
http://www.2a8k.cn/d/20.exe
http://www.2a8k.cn/d/21.exe
http://www.2a8k.cn/d/22.exe
http://www.2a8k.cn/d/23.exe
http://www.2a8k.cn/d/24.exe
http://www.2a8k.cn/d/25.exe
http://www.2a8k.cn/d/26.exe
http://www.2a8k.cn/d/27.exe
http://www.2a8k.cn/d/28.exe
http://www.2a8k.cn/d/29.exe
http://www.2a8k.cn/d/30.exe
http://www.2a8k.cn/d/31.exe
http://www.2a8k.cn/d/32.exe
http://www.2a8k.cn/d/33.exe
http://www.2a8k.cn/d/34.exe
http://www.2a8k.cn/d/35.exe
http://www.2a8k.cn/d/36.exe
http://www.2a8k.cn/d/37.exe
http://www.2a8k.cn/d/39.exe
http://www.2a8k.cn/d/50.exe
http://www.2a8k.cn/d/51.exe



连续替换差不多十个代理地址,才全部给下载回来!
木马群样本的下载列表地址:http://www.2a8k.cn/mei.txt


kaba miss 4x,to kill !url to kaba!

样本全部打包上报!(40x)

[ 本帖最后由 幸福的猪猪 于 2009-6-11 16:51 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
zhanyuchenbobo
发表于 2009-6-11 16:45:34 | 显示全部楼层
sophos  miss~
taihuxian
发表于 2009-6-11 16:54:08 | 显示全部楼层
"C:\Documents and Settings\Administrator\桌面\TDDownload.zip:\TDDownload\abcd.exe";"Virus identified Win32/Cryptor";"Moved to Virus Vault"
"C:\Documents and Settings\Administrator\桌面\TDDownload.zip";"Virus identified Win32/Cryptor";"Moved to Virus Vault"
yulhun
发表于 2009-6-11 17:13:14 | 显示全部楼层
nod  miss
aerbeisi
发表于 2009-6-11 17:15:39 | 显示全部楼层
11:06:2009 17:14:40 SEARCHTASK "USER_DEFINED" started...
scan item: E:\123
File scanned: E:\123\1.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\10.exe - SIGNATURE FOUND "Generic.Onlinegames"
File scanned: E:\123\11.exe - SIGNATURE FOUND "Trojan-Dropper.OnLineGames"
File scanned: E:\123\12.exe - SIGNATURE FOUND "Trojan-PWS.Win32.QQPass"
File scanned: E:\123\13.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\14.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\15.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\16.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\17.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\18.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\19.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\2.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\20.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\21.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\22.exe - SIGNATURE FOUND "Trojan-Dropper.Agent"
File scanned: E:\123\23.exe - SIGNATURE FOUND "Generic.Onlinegames"
File scanned: E:\123\24.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\25.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\26.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\27.exe - SIGNATURE FOUND "Trojan-GameThief.Win32.WOW"
File scanned: E:\123\29.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\3.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\30.exe - SIGNATURE FOUND "Generic.Onlinegames"
File scanned: E:\123\31.exe - SIGNATURE FOUND "Trojan-PWS.Win32.Small"
File scanned: E:\123\32.exe - SIGNATURE FOUND "Generic.Onlinegames"
File scanned: E:\123\33.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\34.exe - SIGNATURE FOUND "Win32.SuspectCrc"
File scanned: E:\123\35.exe - SIGNATURE FOUND "Virus.Win32.JunkPoly"
File scanned: E:\123\36.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\37.exe - SIGNATURE FOUND "Win32.SuspectCrc"
File scanned: E:\123\39.exe - SIGNATURE FOUND "Generic.Onlinegames"
File scanned: E:\123\4.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\5.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\50.exe - SIGNATURE FOUND "Trojan.Win32.Agent"
File scanned: E:\123\51.exe - SIGNATURE FOUND "Trojan.Win32.Glox"
File scanned: E:\123\6.exe - SIGNATURE FOUND "Trojan-Dropper.OnLineGames"
File scanned: E:\123\7.exe - SIGNATURE FOUND "Generic.Onlinegames"
File scanned: E:\123\8.exe - SIGNATURE FOUND "Trojan-PWS.Win32.LdPinch"
File scanned: E:\123\9.exe - SIGNATURE FOUND "Trojan-GameThief.Win32.OnLineGames"
11:06:2009 17:14:41 SEARCHTASK "USER_DEFINED" FINISHED...
----------------------------------------------------
Directories scanned: 1
Files scanned: 40
Virus found: 39
----------------------------------------------------
黑衣~魂
发表于 2009-6-11 21:01:30 | 显示全部楼层
DR.WEB
To MISS
1.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12057;Deleted.;
10.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12034;Deleted.;
11.exe\data001;C:\Documents and Settings\all\桌面\123\11.exe;Trojan.Starter.1020;;
11.exe/data002\data001;C:\Documents and Settings\all\桌面\123\11.exe/data002;Trojan.PWS.Gamania.18902;;
data002;C:\Documents and Settings\all\桌面\123;Container contains infected objects;;
11.exe;C:\Documents and Settings\all\桌面\123;Container contains infected objects;Deleted.;
12.exe;C:\Documents and Settings\all\桌面\123;Trojan.MulDrop.31900;Deleted.;
13.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.11724;Deleted.;
14.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12056;Deleted.;
15.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12058;Deleted.;
16.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12041;Deleted.;
17.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12035;Deleted.;
18.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.11781;Deleted.;
19.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12035;Deleted.;
2.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.11386;Deleted.;
20.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12056;Deleted.;
21.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12056;Deleted.;
22.exe;C:\Documents and Settings\all\桌面\123;Probably BACKDOOR.Trojan;Renamed.;
23.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12059;Deleted.;
24.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.11386;Deleted.;
25.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12056;Deleted.;
26.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.11806;Deleted.;
27.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Gamania.18753;Deleted.;
28.exe\data001;C:\Documents and Settings\all\桌面\123\28.exe;Trojan.PWS.Wsgame.11749;;
28.exe;C:\Documents and Settings\all\桌面\123;Container contains infected objects;Deleted.;
29.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12035;Deleted.;
3.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12059;Deleted.;
30.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12059;Deleted.;
32.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12059;Deleted.;
33.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.11809;Deleted.;
34.exe\data001;C:\Documents and Settings\all\桌面\123\34.exe;Trojan.PWS.Gamania.origin;;
34.exe\data002;C:\Documents and Settings\all\桌面\123\34.exe;Trojan.Starter.1022;;
34.exe;C:\Documents and Settings\all\桌面\123;Container contains infected objects;Deleted.;
36.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Gamania.19056;Deleted.;
37.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Qqpass.2772;Deleted.;
39.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12034;Deleted.;
4.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12056;Deleted.;
5.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12035;Deleted.;
50.exe;C:\Documents and Settings\all\桌面\123;BackDoor.Generic.1928;Deleted.;
51.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Gamania.19070;Deleted.;
6.exe\data001;C:\Documents and Settings\all\桌面\123\6.exe;Trojan.Starter.979;;
6.exe/data002\data001;C:\Documents and Settings\all\桌面\123\6.exe/data002;Trojan.PWS.Wsgame.12038;;
data002;C:\Documents and Settings\all\桌面\123;Container contains infected objects;;
6.exe;C:\Documents and Settings\all\桌面\123;Container contains infected objects;Deleted.;
7.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12034;Deleted.;
8.exe;C:\Documents and Settings\all\桌面\123;Trojan.PWS.Wsgame.12035;Deleted.;
9.exe\data001;C:\Documents and Settings\all\桌面\123\9.exe;Trojan.PWS.Wsgame.11749;;
9.exe;C:\Documents and Settings\all\桌面\123;Container contains infected objects;Deleted.;
BING126
头像被屏蔽
发表于 2009-6-11 21:49:12 | 显示全部楼层
to McAfee
悠柚
发表于 2009-6-11 22:15:04 | 显示全部楼层
2009-06-11 22:14:50        D:\TDDownload\123\31.exe>>Resource\Res37016,        Malware.Win32.Suspect.f,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\9.exe,        Trojan-PSW.Win32.OLGames.tfm,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\8.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\7.exe,        Trojan-PSW.Win32.Magania.msp,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\6.exe,        Trojan-Dropper.Win32.Delf.xdk,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\51.exe,        Malware.Win32.Suspect.b,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\50.exe,        Trojan.Win32.VB.ldc,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\5.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\4.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\39.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\37.exe,        Trojan-PSW.Win32.Agent.hhj,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\36.exe,        Trojan-PSW.Win32.Magania.nbf,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\35.exe,        Trojan-PSW.Win32.Agent.hdt,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\34.exe,        Malware.Win32.Suspect.f,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\33.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\32.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\30.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\3.exe,        Trojan-PSW.Win32.Magania.nbv,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\29.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\28.exe,        Trojan-PSW.Win32.OLGames.tfm,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\27.exe,        Trojan-PSW.Win32.WOW.pyj,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\26.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\25.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\24.exe,        Trojan-PSW.Win32.Delf.tac,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\23.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\22.exe,        Trojan-Dropper.Win32.Agent.ahbl,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\21.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\20.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\2.exe,        Trojan-PSW.Win32.Delf.tac,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\19.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\18.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\17.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\16.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\15.exe,        Trojan-PSW.Win32.Magania.nbx,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\14.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\13.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\12.exe,        Trojan-PSW.Win32.QQPass.ntb,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\11.exe,        Trojan-PSW.Win32.OnLineGames.ehve,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\10.exe,        Trojan-PSW.Win32.Magania.nby,        成功删除
2009-06-11 22:14:50        D:\TDDownload\123\1.exe,        Trojan-PSW.Win32.OLGames.taw,        成功删除
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-18 02:33 , Processed in 0.157045 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表