查看: 2043|回复: 9
收起左侧

[病毒样本] AD一个,红伞未报

[复制链接]
The EQs
发表于 2007-3-9 01:08:57 | 显示全部楼层 |阅读模式
222222222

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
 楼主| 发表于 2007-3-9 01:09:57 | 显示全部楼层
Scan performed at: 2007-3-9 1:04:55
Scanning Log
NOD32 version 2103 (20070308) NT
Command line: C:\Documents and Settings\EQ2\桌面\1.rar
Operating memory - is OK
Date: 9.3.2007  Time: 01:04:59
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\1.rar
C:\Documents and Settings\EQ2\桌面\1.rar ?RAR ?Yayad4HaoFang070112.exe ?NSIS ?YayadRunOnce.dll - Win32/Adware.Yayad application - was a part of the deleted object
Number of scanned files: 9
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 01:04:59 Total scanning time: 0 sec (00:00:00)
The EQs
 楼主| 发表于 2007-3-9 01:14:40 | 显示全部楼层
AntiVir7.3.1.4103.08.2007 [td]no virus found
Authentium4.93.803.07.2007 [td]no virus found
Avast4.7.936.003.08.2007Win32:Trojan-gen. {Other}
AVG7.5.0.44703.08.2007 [td]no virus found
BitDefender7.203.08.2007 [td]no virus found
CAT-QuickHeal9.0003.08.2007 [td]no virus found
ClamAVdevel-2006042603.08.2007 [td]no virus found
DrWeb4.3303.08.2007 [td]no virus found
eSafe7.0.14.003.08.2007 [td]no virus found
eTrust-Vet30.6.346403.08.2007 [td]no virus found
Ewido4.003.07.2007 [td]no virus found
FileAdvisor103.08.2007 [td]no virus found
Fortinet2.85.0.003.08.2007Adware/Yayadu
F-Prot4.3.1.4503.07.2007 [td]no virus found
F-Secure6.70.13030.003.08.2007 [td]no virus found
IkarusT3.1.1.303.08.2007 [td]no virus found
Kaspersky4.0.2.2403.08.2007not-a-virus:AdWare.Win32.Yayadu.b
McAfee498003.08.2007 [td]no virus found
Microsoft1.220403.08.2007 [td]no virus found
NOD32v2210303.08.2007Win32/Adware.Yayad
Norman5.80.0203.07.2007 [td]no virus found
Panda9.0.0.403.08.2007 [td]no virus found
Prevx1V203.08.2007 [td]no virus found
Sophos4.15.003.07.2007 [td]no virus found
Sunbelt2.2.907.003.07.2007 [td]no virus found
Symantec1003.08.2007 [td]no virus found
TheHacker6.1.6.07203.07.2007 [td]no virus found
UNA1.8303.07.2007Adware.Yayadu.AD25
VBA323.11.203.07.2007AdWare.Win32.Yayadu.b
Aditional Information
File size: 400054 bytes
MD5: e7b98d8665e67a9ed522f8baa33b4785
SHA1: 91d0aeb8deb84c169c7f2aa5e3239b1861932dd2
packers: BINARYRES, BINARYRES
ly250094040
发表于 2007-3-9 01:30:36 | 显示全部楼层
E和M算是正式对上了


你用的什么版红伞?

C好像不杀广告?
The EQs
 楼主| 发表于 2007-3-9 01:34:58 | 显示全部楼层

回复 #4 ly250094040 的帖子

多引擎的是P版的。。。。
mofunzone
发表于 2007-3-9 03:35:21 | 显示全部楼层
nod32是比较诡异的,包报了但是里面的组件都不报告。。
AntiVir         Found HEUR/Malware, ADSPY/Yayadu.B.3
ArcaVir         Found Adware.Yayadu.B
Avast         Found nothing
AVG Antivirus         Found Generic.VQF
BitDefender         Found nothing
ClamAV         Found nothing
Dr.Web         Found nothing
F-Prot Antivirus         Found nothing
F-Secure Anti-Virus         Found not-a-virus:AdWare.Win32.Yayadu.b (4, 1, 400)
Fortinet         Found Adware/Yayadu
Kaspersky Anti-Virus         Found not-a-virus:AdWare.Win32.Yayadu.b
NOD32         Found nothing
Norman Virus Control         Found nothing
Panda Antivirus         Found nothing
VirusBuster         Found nothing
VBA32         Found AdWare.Win32.Yayadu.b
Thank you for your submission. Below you can see the current status of the uploaded files.


A listing of files alongside their results can be found below:File ID         Filename         Size (Byte)        Result
218302         Yayad4HaoFang070112.exe         412.833         UNDER ANALYSIS



Please find a detailed report concerning each individual sample below: Filename        Result
Yayad4HaoFang070112.exe         UNDER ANALYSIS


The file 'Yayad4HaoFang070112.exe' has been determined to be 'UNDER ANALYSIS'.

Please note that you will receive an email which will contain the results shown above. In case the final outcome of the analysis is not yet finished for all files the notification will be sent once ready.

[ 本帖最后由 mofunzone 于 2007-3-8 14:36 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hsjj2005
发表于 2007-3-9 08:31:19 | 显示全部楼层
费尔右键扫描未报
jlennon
头像被屏蔽
发表于 2007-3-9 10:12:38 | 显示全部楼层
Virus check with AntiVirusKit
Version 16.0.7
Virus signatures of 2007-3-6
Start time: 2007-3-9 10:12
Engine(s): KAV engine (AVK 17.3103), BD-Engine (BD 17.2113)
Heuristic: On
Archives: On
System areas: On
Check system areas...
Check selected directories and files...
Object: Yayad4HaoFang070112.exe data0002
In archive: C:\Documents and Settings\Administrator\桌面\1.rar
Status: Virus detected
Virus: not-a-virus:AdWare.Win32.Yayadu.b (KAV engine)
Object: Yayad4HaoFang070112.exe data0005
In archive: C:\Documents and Settings\Administrator\桌面\1.rar
Status: Virus detected
Virus: not-a-virus:AdWare.Win32.Yayadu.b (KAV engine)
Object: 1.rar
Path: C:\Documents and Settings\Administrator\桌面
Status: Move file into quarantine
Virus: not-a-virus:AdWare.Win32.Yayadu.b (2x) (KAV engine)
Analysis complete: 2007-3-9 10:12
    1 files checked
    1 infected files detected
    0 suspected files detected
bridgewr
发表于 2007-3-9 12:49:47 | 显示全部楼层
微点

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
闪电战
发表于 2007-3-9 13:02:48 | 显示全部楼层
P版红伞未报
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-25 15:12 , Processed in 0.137367 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表