楼主: 卡巴007
收起左侧

[病毒样本] OPDA格盘代码卡巴斯基、nod32等己入库,其它主流厂商继续无视!

[复制链接]
卡巴007 该用户已被删除
 楼主| 发表于 2009-8-8 10:32:10 | 显示全部楼层
原帖由 lingbo110120 于 2009-8-8 10:25 发表
样本呢?怎么给删了?


http://bbs.kafan.cn/thread-533817-1-1.html
eyesineyes
发表于 2009-8-8 10:34:05 | 显示全部楼层
http://virscan.org/report/d81377fca5efe32d2cfb5b82ac4d9257.html

很多杀软对BaT衍生物有反应的。

Scanner results
Scanner results :  16% Scanner(6/37) found malware!
Time :  2009/08/08 11:28:00 (JST)
ScannerEngine Ver
Sig Ver
Sig Date
Scan result
Time
a-squared4.5.0.3200908080631232009-08-08-
0.363
AhnLab V32009.08.07.072009.08.072009-08-07-
0.764
AntiVir8.2.0.2487.1.5.852009-08-07BAT/Agent.484
0.435
Antiy2.0.1820090804.26722622009-08-04-
0.121
Arcavir20092009080714052009-08-07-
0.018
Authentium5.1.12009080710182009-08-07-
1.184
AVAST!4.7.4090807-02009-08-07-
0.002
AVG8.5.288270.13.47/22892009-08-08-
0.314
BitDefender7.81008.38351277.270512009-08-08BehavesLike:BAT.Delete (suspected)
3.415
CA (VET)9.0.0.14331.6.6665 2009-08-08-
6.627
ClamAV0.95.296662009-08-08-
0.005
Comodo3.1019032009-08-07-
0.720
CP Secure1.1.0.7152009.08.082009-08-08-
11.844
Dr.Web4.44.0.91702009.08.072009-08-07-
5.949
F-Prot4.4.4.56200908072009-08-07-
1.225
F-Secure7.02.738072009.08.07.102009-08-07Trojan.BAT.Formatter.m [AVP]
0.053
Fortinet2.81-3.12010.6912009-08-07-
0.164
GData19.6944/19.431200908082009-08-08Trojan.BAT.Formatter.m [Engine:A]
8.122
IkarusT3.1.01.642009.08.07.732002009-08-07-
3.363
JiangMin11.0.8002009.08.072009-08-07-
3.428
Kaspersky5.5.102009.08.082009-08-08Trojan.BAT.Formatter.m
0.049
KingSoft2009.2.5.152009.8.7.182009-08-07-
0.548
McAfee5.3.0057012009-08-07-
3.045
Microsoft1.49032009.08.072009-08-07-
5.533
Norman6.01.096.01.002009-08-06-
0.004
nProtect20090807.0149753452009-08-07-
8.261
Panda9.05.012009.08.072009-08-07-
1.756
Quick Heal10.002009.08.072009-08-07-
1.117
Rising20.021.41.44.002009-08-07-
0.283
Sophos2.89.14.442009-08-08-
2.828
Sunbelt531853182009-08-07-
1.371
Symantec1.3.0.2420090807.0072009-08-07-
0.191
The Hacker6.3.4.3v003782009-08-07Bat/Generic
0.753
Trend Micro8.700-10046.350.012009-08-07-
0.022
VBA323.12.10.920090807.11522009-08-07-
1.837
ViRobot200908072009.08.072009-08-07-
0.434
VirusBuster4.5.11.1010.111.6/18442092009-08-07-
2.312
NOTICE: It may be false positive by some scanners when they found a malware, so you should judge it by yourself.
寻找周宇轩
发表于 2009-8-8 10:34:57 | 显示全部楼层
eyesineyes
发表于 2009-8-8 10:39:59 | 显示全部楼层
原帖由 寻找周宇轩 于 2009-8-8 10:34 发表
http://bbs.kafan.cn/thread-533757-1-1.html
这个还是无视


不会啊。

We received the following archive files:

File ID Filename Size (Byte)Result
25421581 Norton2010.rar25.64 KBOK
A listing of files contained inside archives alongside their results can be found below:
File ID Filename Size (Byte)Result
25421582 Norton2010.exe 52 KB MALWARE

Please find a detailed report concerning each individual sample below:
FilenameResult
Norton2010.exe MALWARE

The file 'Norton2010.exe' has been determined to be 'MALWARE'.
Our analysts named the threat DR/Formatter.N.The term "DR/" denotes a program that is able to place a virus or a malware discretely on a system.Detection is added to our virus definition file (VDF) starting with version 7.01.05.85.

红伞确认是Malware.
harry4567
发表于 2009-8-8 10:51:09 | 显示全部楼层
測試準備好,開始了...

沒反應=- =...

原文件送上紅傘:Damage File (Unknown)....

[ 本帖最后由 harry4567 于 2009-8-8 10:55 编辑 ]
冲冲
发表于 2009-8-8 10:53:56 | 显示全部楼层
因为是破解工具,估计很多人即使杀软特征码报了也当它是误杀,关了杀软继续点
harry4567
发表于 2009-8-8 10:59:52 | 显示全部楼层
被解出來的update.exe.

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
harry4567
发表于 2009-8-8 11:03:29 | 显示全部楼层
原帖由 冲冲 于 2009-8-8 10:53 发表
因为是破解工具,估计很多人即使杀软特征码报了也当它是误杀,关了杀软继续点


確實,我也中過招,中過寄生虫
eyesineyes
发表于 2009-8-8 11:07:50 | 显示全部楼层
原帖由 harry4567 于 2009-8-8 10:51 发表
測試準備好,開始了...

沒反應=- =...

原文件送上紅傘:Damage File (Unknown)....


诡异哦。

我就搞不懂了,为什么红伞认为是damage file.

[ 本帖最后由 eyesineyes 于 2009-8-8 11:08 编辑 ]
luxiao200888
发表于 2009-8-8 11:08:19 | 显示全部楼层
to mpav
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-4-10 16:22 , Processed in 0.209961 second(s), 4 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表