楼主: sam.to
收起左侧

[病毒样本] .bin文件(46楼有新)

[复制链接]
BING126
头像被屏蔽
发表于 2009-7-4 22:30:47 | 显示全部楼层
to McAfee
sam.to
 楼主| 发表于 2009-7-5 15:23:36 | 显示全部楼层
96b9c5f250abdb1dc2636755b44fd442  so.bin
30a6bea40800fe3d643136ccd4f23934  td.bin
f3483104c7dc5c1a25801268aabbdedd  rtl60.bin
bc638ae446cbdbb1c1c626e7c6b11711  cf46.bin
d76edb225810f6d999ad0303b82fbd25  w.bin
a36bb9e96c5e2d31992dd3e97229d807  d.bin
f025c7077253a8ee53bf19f64eb79ac6  ms.bin
97523aee642f046ee265f93c256f91e2  w1.bin
7c16c2a0b230ddd7632b0295f2b5d877  af.bin
5ca9ed3dad8870390a18574f63d9df88  ma.bin

to kl


Hello,

af.bin - Trojan.Win32.Koblu.us
d.bin - Trojan.Win32.VBimay.cc
ma.bin - Trojan.Win32.Koblu.uu
ms.bin - Trojan.Win32.Koblu.ahg
so.bin - Trojan.Win32.Koblu.uj
td.bin - Trojan.Win32.Koblu.uw
w.bin - Trojan-Downloader.Win32.DlfBfkg.fv
w1.bin - Trojan-Downloader.Win32.DlfBfkg.gc

At the moment these files are detected. Please update your antivirus bases.

cf46.bin,
rtl60.bin

No malicious code were found in these files.

[ 本帖最后由 sam.to 于 2009-7-26 14:05 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
saga3721
发表于 2009-7-5 15:30:38 | 显示全部楼层

回复 12楼 sam.to 的帖子

就是这玩意儿拉红伞侦测率?

[ 本帖最后由 saga3721 于 2009-7-5 15:32 编辑 ]
悠柚
发表于 2009-7-5 15:34:25 | 显示全部楼层

回复 12楼 sam.to 的帖子

mpav 4个启发
sam.to
 楼主| 发表于 2009-7-5 15:35:08 | 显示全部楼层
原帖由 saga3721 于 2009-7-5 15:30 发表
就是这玩意儿拉红伞侦测率?

????什么
Ceker
发表于 2009-7-5 15:36:12 | 显示全部楼层
Mnless
黑衣~魂
发表于 2009-7-5 16:05:15 | 显示全部楼层
原帖由 sam.to 于 2009-7-5 15:23 发表
96b9c5f250abdb1dc2636755b44fd442  so.bin
30a6bea40800fe3d643136ccd4f23934  td.bin
f3483104c7dc5c1a25801268aabbdedd  rtl60.bin
bc638ae446cbdbb1c1c626e7c6b11711  cf46.bin
d76edb225810f6d999ad0303b82 ...

Original file name: rtl60.bin

Your submission has been processed by Automatic System. This file islisted in the trusted (clean) files database of Dr.Web and presents nothreat to your system.


If you are confident that this file presents a threat, provide details in a reply to this message.

Thank you for the cooperation.
--
Yours sincerely,
Virus Monitoring Service
Doctor Web Ltd.
幸福的猪猪
发表于 2009-7-5 16:42:19 | 显示全部楼层

回复 12楼 sam.to 的帖子

avira kill 1x,miss 9x,to kill.(跟昨天的扫描结果一样)


Dear Sir or Madam,

Thank you for your email to Avira's virus lab.
Tracking number: INC00334144.


We received the following archive files:


File ID?FilenameSize (Byte)Result
25389873010.zip683.58 KBOK

A listing of files contained inside archives alongside their results can be found below:
File ID?FilenameSize (Byte)Result
25389874af.bin95.5 KBMALWARE
25389150cf46.bin49.07 KBCLEAN
25389875d.bin36 KBMALWARE
25389876ma.bin97 KBMALWARE
25389794so.bin96.5 KBMALWARE
25389877td.bin96.5 KBMALWARE
25389795w.bin131 KBMALWARE
25389878w1.bin131 KBMALWARE
1416673rtl60.bin660.5 KBKNOWN CLEAN

?FilenameResult
cf46.binCLEAN

The file 'cf46.bin' has been determined to be 'CLEAN'. Our analysts did not discover any malicious content.

?FilenameResult
rtl60.binKNOWN CLEAN

The file 'rtl60.bin' has been determined to be 'KNOWN CLEAN'. In particular this means that we could not find any malicious content. Please note that the file is part of 'Borland C++ Builder 6 Enterprise Edition'.

以上几个恶意软件,小红伞的7.01.04.181. 以上版本的病毒库可以识别并查杀。

[ 本帖最后由 幸福的猪猪 于 2009-7-6 15:28 编辑 ]
sam.to
 楼主| 发表于 2009-7-6 12:08:01 | 显示全部楼层
a107071a154ebcb1a6a59a72923987ff   w.bin
ea27f6b872d3fbc58ea2c34c71144815   td.bin
442eb5a05afafcf9b64a661342b497cc   so.bin
83ca8a9bfb0ac064364513d0a676a7dc   ma.bin
fbc0973454bc6bb796c7d8a14d19a5ca   af.bin
7cff1f2827cdeedbfd91f1b1416a9e72   w1.bin
644737373136663582d56cc355675bc1   ms.bin
047c143b3d6fc789118252200d6ce217   d.bin
bc638ae446cbdbb1c1c626e7c6b11711   cf46.bin
f3483104c7dc5c1a25801268aabbdedd   rtl60.bin

to kl,大師,comodo,eset

https://www.virustotal.com/anali ... 62cbce2e-1246853624

http://sample.nod32.com.hk/index ... 3dd126dfdf8317432d6


Hello,

af.bin - Trojan.Win32.Koblu.vc,
d.bin - Trojan.Win32.VBimay.cm,
ma.bin - Trojan.Win32.Koblu.vd,
so.bin - Trojan.Win32.Koblu.vb,
td.bin - Trojan.Win32.Koblu.ve,
w.bin - Trojan-Downloader.Win32.DlfBfkg.gg,
w1.bin - Trojan-Downloader.Win32.DlfBfkg.gh

These files are already detected. Please update your antivirus bases.

cf46.bin, rtl60.bin

No malicious code were found in these files.

ms.bin - Trojan.Win32.Koblu.zd

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.
The answer is relevant to the latest bases from update sources.

[ 本帖最后由 sam.to 于 2009-7-10 11:51 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
mofunzone
发表于 2009-7-6 12:11:02 | 显示全部楼层

回复 19楼 sam.to 的帖子

to here mark
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-18 19:01 , Processed in 0.086497 second(s), 13 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表