查看: 3367|回复: 13
收起左侧

kv报backdoor

[复制链接]
kp2006
头像被屏蔽
发表于 2007-3-9 02:30:18 | 显示全部楼层 |阅读模式
快杀

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-3-9 02:33:52 | 显示全部楼层

LZ存心不让偶睡觉

nod32未报
kp2006
头像被屏蔽
 楼主| 发表于 2007-3-9 02:36:54 | 显示全部楼层
原帖由 EQ2 于 2007-3-9 02:33 发表
nod32未报


评分

参与人数 1经验 -1 收起 理由
qyb179 -1 纯表情回复

查看全部评分

The EQs
发表于 2007-3-9 02:39:00 | 显示全部楼层
大多数杀软还是报的rootkit比较多。。。。
The EQs
发表于 2007-3-9 02:40:21 | 显示全部楼层
AntiVir 7.3.1.41 03.08.2007 TR/Rootkit.GDT.1
Authentium 4.93.8 03.07.2007  no virus found
Avast 4.7.936.0 03.08.2007 Win32:Trojan-gen. {Other}
AVG 7.5.0.447 03.08.2007  no virus found
BitDefender 7.2 03.08.2007 Trojan.Rootkit.GDT
CAT-QuickHeal 9.00 03.08.2007  no virus found
ClamAV devel-20060426 03.08.2007  no virus found
DrWeb 4.33 03.08.2007  no virus found
eSafe 7.0.14.0 03.08.2007  no virus found
eTrust-Vet 30.6.3464 03.08.2007  no virus found
Ewido 4.0 03.07.2007 Adware.Cdn
FileAdvisor 1 03.08.2007  no virus found
Fortinet 2.85.0.0 03.08.2007  no virus found
F-Prot 4.3.1.45 03.07.2007  no virus found
F-Secure 6.70.13030.0 03.08.2007  no virus found
Ikarus T3.1.1.3 03.08.2007 Trojan.Rootkit.GDT
Kaspersky 4.0.2.24 03.08.2007  no virus found
McAfee 4980 03.08.2007  no virus found
Microsoft 1.2204 03.08.2007 VirTool:WinNT/Protmin.L
NOD32v2 2103 03.08.2007  no virus found
Norman 5.80.02 03.07.2007  no virus found
Panda 9.0.0.4 03.08.2007  no virus found
Prevx1 V2 03.08.2007 Polynomial.Code.Exploit
Sophos 4.15.0 03.07.2007  no virus found
Sunbelt 2.2.907.0 03.07.2007 3721 Chinese Keywords (CNSMin)
Symantec 10 03.08.2007  no virus found
TheHacker 6.1.6.072 03.07.2007  no virus found
UNA 1.83 03.07.2007  no virus found
VBA32 3.11.2 03.07.2007  no virus found
VirusBuster 4.3.19:9 03.08.2007 no virus found


Aditional Information
File size: 6575 bytes
MD5: b2412168c14fdced3dee532a278d4835
SHA1: 5659790a4da4f5f04c3e6d4aa7b3e33053023307
Prevx info: http://fileinfo.prevx.com/fileinfo.asp?PXC=00c737903827
Sunbelt info: 3721 Chinese Keywords, also known as CNSMin or Adware.CDN, is keyword-lookup provider that takes over the search feature of IE's address bar. It is aimed at providing keywords using Chinese characters.

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
> Go to: Home Contactar En Español
--------------------------------------------------------------------------------
www.virustotal.com :: ©Hispasec Sistemas
mofunzone
发表于 2007-3-9 03:31:01 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\11403484.rar'
C:\Documents and Settings\Administrator\My Documents\
  11403484.rar
    [0] Archive type: RAR
    --> 11403484.sys
        [DETECTION] Is the Trojan horse TR/Rootkit.GDT.1
        [WARNING]   Infected files in archives cannot be repaired!
        [INFO]      The file was deleted!
jlennon
头像被屏蔽
发表于 2007-3-9 04:13:42 | 显示全部楼层
Virus check with AntiVirusKit
Version 16.0.7
Virus signatures of 2007-3-6
Start time: 2007-3-9 4:13
Engine(s): KAV engine (AVK 17.3103), BD-Engine (BD 17.2113)
Heuristic: On
Archives: On
System areas: On

Check system areas...
Check selected directories and files...
Object: 11403484.sys
        In archive: C:\Documents and Settings\Administrator\桌面\11403484.rar
        Status: Virus detected
        Virus: Trojan.Rootkit.GDT (BD-Engine)
Object: 11403484.rar
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Move file into quarantine
        Virus: Trojan.Rootkit.GDT (BD-Engine)
Analysis complete: 2007-3-9 4:13
    1 files checked
    1 infected files detected
    0 suspected files detected
hsjj2005
发表于 2007-3-9 08:29:22 | 显示全部楼层
费尔

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
bridgewr
发表于 2007-3-9 13:06:18 | 显示全部楼层
sys,上报微点分析,不知道是否木马
The EQs
发表于 2007-3-9 13:07:07 | 显示全部楼层

回复 #9 bridgewr 的帖子

rootkit
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-4-30 06:28 , Processed in 0.137562 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表