查看: 2080|回复: 9
收起左侧

[病毒样本] X1-VT-Result: 1/41 (2.44%)

[复制链接]
黑衣~魂
发表于 2009-7-16 18:52:01 | 显示全部楼层 |阅读模式
RT
http://www.virustotal.com/analisis/340c49e2e318610d86ccc65a62abae8f9b04001e03989640462a5618efc4e2a3-1247741631

AVG    8.5.0.387    2009.07.16    PSW.OnlineGames_r.AE


大蜘蛛回覆
Original file name: usbwte.sys
File size: 2304
MD5: 551e385404086e9d0ccaa06d3ab8a9c9


Dear ~ 魂 ~,


Your submission has been processed by Automatic System. This threat is already familiar to us. A corresponding record exists in the Dr.Web virus database.

Threat: Trojan.Sixtofour


Thank you for the cooperation.

--
Yours sincerely,
Virus Monitoring Service
Doctor Web Ltd.

[ 本帖最后由 黑衣~魂 于 2009-7-16 18:59 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
悠柚
发表于 2009-7-16 18:53:45 | 显示全部楼层
to Arcavir
z2665
发表于 2009-7-16 18:56:12 | 显示全部楼层
mcafee miss,t0
mfcs miss,to
xxwpk007
头像被屏蔽
发表于 2009-7-16 21:33:19 | 显示全部楼层
E:\usbwte.rar > RAR > usbwte.sys - Win32/Agent.PVA 特洛伊木马
尤金卡巴斯基
发表于 2009-7-16 21:37:09 | 显示全部楼层
To KL
cageblue
发表于 2009-7-16 21:39:38 | 显示全部楼层
SUPERAntiSpyware Free

Rootkit.Agent/Gen-FakeDisk[USB].Process
Palkia
发表于 2009-7-16 21:42:03 | 显示全部楼层
查询编号:RS20090716191823093983
文件名称:usbwte.rar
文件MD5:CF82BAFEC79A05936A8E1FDE34E4CEB8
文件状态:压缩文件,包含1个文件
文件名 MD5 状态 病毒名称 解决版本号
usbwte.sys 551E38540... 安全文件

黑衣~魂
 楼主| 发表于 2009-7-16 21:58:40 | 显示全部楼层
Avira

File ID          Filename          Size (Byte)         Result
25399728          usbwte.sys          2.25 KB          MALWARE


Please find a detailed report concerning each individual sample below:
Filename         Result
usbwte.sys          MALWARE

The file 'usbwte.sys' has been determined to be 'MALWARE'. Our analysts discovered that the file is a Rootkit. Most rootkits typically hide files, network connections or Windows Registry entries from other programs. The reason for this is that they make it possible to hide malware from PC users. Detection will be added to our virus definition file (VDF) with one of the next updates.

NOD32        4250        2009.07.16        Win32/Agent.PVA

[ 本帖最后由 黑衣~魂 于 2009-7-16 22:04 编辑 ]
尤金卡巴斯基
发表于 2009-7-16 23:13:11 | 显示全部楼层
Hello,

New malicious software was found in the attached file. Its detection will be included in the next update.
Thank you for your help.

Rootkit.Win32.Small.aec

Sincerely yours,
Gashkin Alex,
Virus Analyst.

10/1, 1st Volokolamsky Proezd, Moscow, 123060, Russia
Tel./Fax: + 7 (495) 797 8700
http://www.kaspersky.com http://www.viruslist.com
allinwonderi
发表于 2009-7-16 23:17:08 | 显示全部楼层

to Avira

Suspicious Files and Miscellaneous Uploads
Thank you for your submission. Below you can see the current status of the uploaded files.

We received the following archive files:

File ID Filename Size (Byte)Result
25399835 usbwte.rar1.24 KBOK
A listing of files contained inside archives alongside their results can be found below:
File ID Filename Size (Byte)Result
25399728 usbwte.sys 2.25 KB MALWARE

Please find a detailed report concerning each individual sample below:
FilenameResult
usbwte.sys MALWARE

The file 'usbwte.sys' has been determined to be 'MALWARE'.
Our analysts discovered that the file is a Rootkit. Most rootkitstypically hide files, network connections or Windows Registry entriesfrom other programs. The reason for this is that they make it possibleto hide malware from PC users.Detection will be added to our virus definition file (VDF) with one of the next updates.
Please note that you will receive an email which will contain theresults shown above. In case the final outcome of the analysis is notyet finished for all files the notification will be sent once ready.

[ 本帖最后由 allinwonderi 于 2009-7-16 23:20 编辑 ]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-1-9 10:49 , Processed in 0.094823 second(s), 4 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表