查看: 2521|回复: 6
收起左侧

[病毒样本] 流行網馬生成物(0905)

[复制链接]
haol
发表于 2009-9-5 22:06:15 | 显示全部楼层 |阅读模式
zc785004002
发表于 2009-9-5 22:08:57 | 显示全部楼层
360杀毒23个
尤金卡巴斯基
发表于 2009-9-5 22:12:49 | 显示全部楼层
2009/9/5 22:11:32        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\b1[1].#xe//NSPack               
2009/9/5 22:11:32        已删除        木马程序 Trojan-Downloader.Win32.PepperPaper.ks        G:\Temp\Virus\0905\70e19.#xe               
2009/9/5 22:11:32        已删除        木马程序 Trojan-Downloader.Win32.PepperPaper.ks        G:\Temp\Virus\0905\70e19__1.#xe               
2009/9/5 22:11:32        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\b1[1].#xe               
2009/9/5 22:11:32        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\b1[1]__1.#xe//NSPack               
2009/9/5 22:11:32        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\b1[1]__1.#xe               
2009/9/5 22:11:33        已删除        木马程序 Backdoor.Win32.NewRest.ao        G:\Temp\Virus\0905\glaide31.#ys               
2009/9/5 22:11:33        已删除        木马程序 Backdoor.Win32.NewRest.ao        G:\Temp\Virus\0905\glaide32.#ys               
2009/9/5 22:11:33        已删除        木马程序 Backdoor.Win32.NewRest.an        G:\Temp\Virus\0905\install.#xe               
2009/9/5 22:11:34        已删除        木马程序 Backdoor.Win32.NewRest.an        G:\Temp\Virus\0905\install1.#xe               
2009/9/5 22:11:34        已删除        木马程序 Trojan-GameThief.Win32.WOW.ikp        G:\Temp\Virus\0905\kghbb.#xe               
2009/9/5 22:11:34        已删除        木马程序 Trojan-GameThief.Win32.WOW.ikp        G:\Temp\Virus\0905\kghbb__1.#xe               
2009/9/5 22:11:35        已删除        木马程序 Trojan-PSW.Win32.QQPass.iop        G:\Temp\Virus\0905\knrxo.#xe//NSPack               
2009/9/5 22:11:35        已删除        木马程序 Trojan-PSW.Win32.QQPass.iop        G:\Temp\Virus\0905\knrxo.#xe               
2009/9/5 22:11:35        已删除        木马程序 Trojan-PSW.Win32.QQPass.iop        G:\Temp\Virus\0905\knrxo__1.#xe//NSPack               
2009/9/5 22:11:35        已删除        木马程序 Trojan-PSW.Win32.QQPass.iop        G:\Temp\Virus\0905\knrxo__1.#xe               
2009/9/5 22:11:37        已删除        木马程序 Trojan-Downloader.Win32.Pher.gt        G:\Temp\Virus\0905\sndanmi1.#xe               
2009/9/5 22:11:37        已删除        木马程序 Trojan-Downloader.Win32.Pher.gt        G:\Temp\Virus\0905\sndanmiw.#xe               
2009/9/5 22:11:38        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\svchost.#xe//NSPack               
2009/9/5 22:11:38        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\svchost.#xe               
2009/9/5 22:11:38        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\svchost1.#xe//NSPack               
2009/9/5 22:11:38        已删除        木马程序 Trojan-Downloader.Win32.Delf.utt        G:\Temp\Virus\0905\svchost1.#xe               
2009/9/5 22:11:38        已删除        病毒 Worm.Win32.AdwareAgent.a        G:\Temp\Virus\0905\uocma.#xe               
2009/9/5 22:11:39        已删除        病毒 Worm.Win32.AdwareAgent.a        G:\Temp\Virus\0905\uocma__1.#xe               
2009/9/5 22:11:35        已清除        病毒 Virus.Win32.Virut.ce        G:\Temp\Virus\0905\load.#xe               
2009/9/5 22:11:36        已清除        病毒 Virus.Win32.Virut.ce        G:\Temp\Virus\0905\load___1.#xe               
2009/9/5 22:11:36        已隔离        病毒 HEUR:Trojan.Win32.Generic        G:\Temp\Virus\0905\minst.#xe               
2009/9/5 22:11:37        已隔离        病毒 HEUR:Trojan.Win32.Generic        G:\Temp\Virus\0905\minst__1.#xe               

To KL
尤金卡巴斯基
发表于 2009-9-5 22:40:42 | 显示全部楼层
Hello,


load.#xe, load___1.#xe

No malicious code were found in these files.

minst.#xe, minst__1.#xe - Trojan-Downloader.Win32.Agent.coyp

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.


Best Regards, NewVirus

10/1, 1st Volokolamsky Proezd, Moscow, 123060, Russia
Tel./Fax: + 7 (495) 797 8700
http://www.kaspersky.com http://www.viruslist.com
悠柚
发表于 2009-9-5 22:41:41 | 显示全部楼层
14 to IObit
悠柚
发表于 2009-9-5 22:49:20 | 显示全部楼层
Multi Command-Line Scanner Report
-------------------------------------------------------------------------
D:\TDDownload\0905\b1[1].#xe
MD5 Hash: 409A5A96ABB5AE317DB60486755773D9

A-squared ----- Trojan-Dropper.Delf!IK
BitDefender ----- GenPack:Generic.Malware.Yddld.85E68E9D
F-Prot ----- W32/Downloader.AT.gen!Eldorado  
Sophos ----- Mal/TinyDL-T
VBA32 ----- Trojan-Downloader.Win32.Delf.uqs

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\b1[1]__1.#xe
MD5 Hash: 409A5A96ABB5AE317DB60486755773D9

A-squared ----- Trojan-Dropper.Delf!IK
BitDefender ----- GenPack:Generic.Malware.Yddld.85E68E9D
F-Prot ----- W32/Downloader.AT.gen!Eldorado  
Sophos ----- Nothing
VBA32 ----- Trojan-Downloader.Win32.Delf.uqs

*** 4/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\glaide31.#ys
MD5 Hash: 6B813E2C1D53B5D1F9F52C806A1DACFB

A-squared ----- Backdoor.Win32.NewRest!IK
BitDefender ----- Backdoor.Rustock.NFT
F-Prot ----- W32/SYStroj.S.gen!Eldorado  
Sophos ----- Mal/RKRustok-B
VBA32 ----- Backdoor.Win32.NewRest.ao

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\glaide32.#ys
MD5 Hash: 6B813E2C1D53B5D1F9F52C806A1DACFB

A-squared ----- Backdoor.Win32.NewRest!IK
BitDefender ----- Backdoor.Rustock.NFT
F-Prot ----- W32/SYStroj.S.gen!Eldorado  
Sophos ----- Mal/RKRustok-B
VBA32 ----- Backdoor.Win32.NewRest.ao

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\install.#xe
MD5 Hash: D09D8A4FF447E9A2C1C3C2789F438B1C

A-squared ----- Trojan-Downloader.Win32.Boltolog!IK
BitDefender ----- Nothing
F-Prot ----- W32/NewRest.A.gen!Eldorado  
Sophos ----- Mal/Rustok-C
VBA32 ----- Backdoor.Win32.NewRest.an

*** 4/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\install1.#xe
MD5 Hash: D09D8A4FF447E9A2C1C3C2789F438B1C

A-squared ----- Trojan-Downloader.Win32.Boltolog!IK
BitDefender ----- Nothing
F-Prot ----- W32/NewRest.A.gen!Eldorado  
Sophos ----- Mal/Rustok-C
VBA32 ----- Backdoor.Win32.NewRest.an

*** 4/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\kghbb.#xe
MD5 Hash: 23896C70D79A02A729EE3B2755FAFEAA

A-squared ----- Trojan.Win32.Inject!IK
BitDefender ----- Gen:Trojan.Heur.cmX@RUfVA1h
F-Prot ----- Nothing
Sophos ----- Nothing
VBA32 ----- Malware-Dropper.Win32.Inject.gen

*** 3/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\kghbb__1.#xe
MD5 Hash: 23896C70D79A02A729EE3B2755FAFEAA

A-squared ----- Trojan.Win32.Inject!IK
BitDefender ----- Gen:Trojan.Heur.cmX@RUfVA1h
F-Prot ----- Nothing
Sophos ----- Nothing
VBA32 ----- Malware-Dropper.Win32.Inject.gen

*** 3/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\knrxo.#xe
MD5 Hash: 3BE32AE509CB11A29150F9F0526E49BB

A-squared ----- Trojan-Dropper.Delf!IK
BitDefender ----- GenPack:Generic.Malware.Yddld.3F2964C8
F-Prot ----- W32/Threat-IKNP.gen!Eldorado  
Sophos ----- Mal/TinyDL-T
VBA32 ----- Trojan-PSW.Win32.QQPass.iop

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\knrxo__1.#xe
MD5 Hash: 3BE32AE509CB11A29150F9F0526E49BB

A-squared ----- Trojan-Dropper.Delf!IK
BitDefender ----- GenPack:Generic.Malware.Yddld.3F2964C8
F-Prot ----- W32/Threat-IKNP.gen!Eldorado  
Sophos ----- Mal/TinyDL-T
VBA32 ----- Trojan-PSW.Win32.QQPass.iop

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\load.#xe
MD5 Hash: 72A82BE36C8D77C07A4005F5EB81AE91

A-squared ----- Virus.Win32.Virut!IK
BitDefender ----- Win32.Virtob.Gen.12
F-Prot ----- W32/Virut.AI!Generic
Sophos ----- Mal/Scribble-C
VBA32 ----- Virus.Win32.Virut.X6

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\load___1.#xe
MD5 Hash: 72A82BE36C8D77C07A4005F5EB81AE91

A-squared ----- Virus.Win32.Virut!IK
BitDefender ----- Win32.Virtob.Gen.12
F-Prot ----- W32/Virut.AI!Generic
Sophos ----- Mal/Scribble-C
VBA32 ----- Virus.Win32.Virut.X6

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\svchost.#xe
MD5 Hash: 409A5A96ABB5AE317DB60486755773D9

A-squared ----- Trojan-Dropper.Delf!IK
BitDefender ----- GenPack:Generic.Malware.Yddld.85E68E9D
F-Prot ----- W32/Downloader.AT.gen!Eldorado  
Sophos ----- Mal/TinyDL-T
VBA32 ----- Trojan-Downloader.Win32.Delf.uqs

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------
D:\TDDownload\0905\svchost1.#xe
MD5 Hash: 409A5A96ABB5AE317DB60486755773D9

A-squared ----- Trojan-Dropper.Delf!IK
BitDefender ----- GenPack:Generic.Malware.Yddld.85E68E9D
F-Prot ----- W32/Downloader.AT.gen!Eldorado  
Sophos ----- Mal/TinyDL-T
VBA32 ----- Trojan-Downloader.Win32.Delf.uqs

*** 5/5 antivirus engines found virus in this file ***
-------------------------------------------------------------------------

Task done @ 2009-09-05 星期六 22:48:40.89
Note: The results might be different from that of the GUI version.
miss 的几个
zloyDi2008
发表于 2009-9-6 00:48:35 | 显示全部楼层
NOD32 kill all
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-4-20 11:29 , Processed in 0.091503 second(s), 4 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表