查看: 2102|回复: 6
收起左侧

[病毒样本] 晚餐

[复制链接]
sam.to
发表于 2009-6-14 17:58:51 | 显示全部楼层 |阅读模式
19d38903bcb5471028b419a6c49fa29f   file.exe1
36c08e00701d96cc7a50cd3ddd6e4228   file.exe2
c9c4728160adc687125f8d2b043e081d   file.exe3
20d6c54ef91045eb9b008bbc8844606c   file.exe4
1575b73e654263642490ba80301546cc   file.exe5
a9dc594a1f654d3d04b4a60f822205dc   file.exe6
64b7c01ce782935699a0241748126fd8   file.exe7

卡巴报heur

https://www.virustotal.com/anali ... 67e6721e-1244965222
Result: 11/40 (27.5%)

to kl,comodo,lavasoft


Hello,

New malicious software was found in the attached file. Its detection will be included in the next update.
Thank you for your help.


file.exe1
         Trojan.Win32.Tdss.ahex

file.exe2
         Trojan.Win32.Tdss.ahey
         Trojan.Win32.Tdss.ahfa

file.exe3
         Trojan.Win32.Tdss.ahez

file.exe4
         Trojan.Win32.Tdss.ahfa

file.exe5
         Trojan.Win32.Tdss.ahfb
         Trojan.Win32.Tdss.ahff

file.exe6
         Trojan.Win32.Tdss.ahfc

file.exe7
         Trojan.Win32.Tdss.ahfd

有些文件有2个病毒名?

[ 本帖最后由 sam.to 于 2009-6-14 19:36 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
dreams521
发表于 2009-6-14 18:01:18 | 显示全部楼层
to mpav
firefox3
发表于 2009-6-14 18:06:29 | 显示全部楼层
C:\Documents and Settings\g\桌面\007\007\file.exe1        Artemis!19D38903BCB5 (特洛伊)
2009-6-14        18:05:18        已删除         GL\g        D:\Program Files\WinRAR\WinRAR.exe        C:\Documents and Settings\g\桌面\007\007\file.exe2        Artemis!36C08E00701D (特洛伊)
2009-6-14        18:05:19        已删除         GL\g        D:\Program Files\WinRAR\WinRAR.exe        C:\Documents and Settings\g\桌面\007\007\file.exe3        Artemis!C9C4728160AD (特洛伊)
2009-6-14        18:05:20        已删除         GL\g        D:\Program Files\WinRAR\WinRAR.exe        C:\Documents and Settings\g\桌面\007\007\file.exe4        Artemis!20D6C54EF910 (特洛伊)
2009-6-14        18:05:21        已删除         GL\g        D:\Program Files\WinRAR\WinRAR.exe        C:\Documents and Settings\g\桌面\007\007\file.exe5        Generic FakeAlert.k (特洛伊)
2009-6-14        18:05:22        已删除         GL\g        D:\Program Files\WinRAR\WinRAR.exe        C:\Documents and Settings\g\桌面\007\007\file.exe6        Artemis!A9DC594A1F65 (特洛伊)
2009-6-14        18:05:23        已删除         GL\g        D:\Program Files\WinRAR\WinRAR.exe        C:\Documents and Settings\g\桌面\007\007\file.exe7        Artemis!64B7C01CE782 (特洛伊)
Sebastian
发表于 2009-6-14 18:08:56 | 显示全部楼层
--> 007\file.exe1
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> 007\file.exe2
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> 007\file.exe3
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> 007\file.exe4
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> 007\file.exe5
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> 007\file.exe6
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> 007\file.exe7
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
BING126
头像被屏蔽
发表于 2009-6-14 21:58:50 | 显示全部楼层
McAfee  generic fakealert.kv
黑衣~魂
发表于 2009-6-14 22:06:52 | 显示全部楼层
dr.web
file.exe1;C:\Documents and Settings\all\桌面\007\007;BackDoor.Tdss.139;Deleted.;
file.exe2;C:\Documents and Settings\all\桌面\007\007;BackDoor.Tdss.139;Deleted.;
file.exe3;C:\Documents and Settings\all\桌面\007\007;BackDoor.Tdss.139;Deleted.;
file.exe4;C:\Documents and Settings\all\桌面\007\007;BackDoor.Tdss.139;Deleted.;
file.exe5;C:\Documents and Settings\all\桌面\007\007;BackDoor.Tdss.139;Deleted.;
file.exe6;C:\Documents and Settings\all\桌面\007\007;BackDoor.Tdss.139;Deleted.;
yulhun
发表于 2009-6-14 23:29:32 | 显示全部楼层
nod

RAR > 007\file.exe1 is OK
RAR > 007\file.exe2 a variant of Win32/Kryptik.SF trojan
RAR > 007\file.exe3 is OK
RAR > 007\file.exe4 is OK
RAR > 007\file.exe5 is OK
RAR > 007\file.exe6 a variant of Win32/Kryptik.SF trojan
RAR > 007\file.exe7 is OK
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-18 04:26 , Processed in 0.127773 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表