查看: 6222|回复: 24
收起左侧

[病毒样本] NOD 32:刚刚从网站抓来的2只马~~~

[复制链接]
曲中求
发表于 2007-4-1 11:45:07 | 显示全部楼层 |阅读模式
刚刚搜索dreamweaver时NOD 32报的。。。。不知为什么,俺这里用NOD 32对网马反应不错………………

Time Module Object Name Threat Action User Information
2007-4-1 11:40:23 IMON file http://w.qbbd.com/0.htm VBS/TrojanDownloader.Agent.E trojan quarantined - Connection terminated WWW-FAF37E7B05B\love dan

Time Module Object Name Threat Action User Information
2007-4-1 11:40:27 IMON file http://w.qbbd.com/muxiao2.jpg a variant of Win32/TrojanDownloader.Ani.Gen trojan  WWW-FAF37E7B05B\love dan

图没有截好。。。呵呵

[ 本帖最后由 曲中求 于 2007-4-1 11:47 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-4-1 11:46:19 | 显示全部楼层
Scan performed at: 2007-4-1 11:46:29
Scanning Log
NOD32 version 2160 (20070331) NT
Command line: C:\Documents and Settings\EQ2\桌面\马马.rar
Operating memory - is OK

Date: 1.4.2007  Time: 11:46:33
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\马马.rar
C:\Documents and Settings\EQ2\桌面\马马.rar ?RAR ?muxiao2.jpg - a variant of Win32/TrojanDownloader.Ani.Gen trojan
C:\Documents and Settings\EQ2\桌面\马马.rar ?RAR ?0.htm - VBS/TrojanDownloader.Agent.E trojan - was a part of the deleted object
Number of scanned files: 3
Number of threats found: 2
Number of files cleaned: 1
Time of completion: 11:46:33 Total scanning time: 0 sec (00:00:00)
马力
发表于 2007-4-1 11:46:33 | 显示全部楼层
驱逐舰报

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
aoyang
头像被屏蔽
发表于 2007-4-1 11:46:58 | 显示全部楼层
费尔报了病毒

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
曲中求
 楼主| 发表于 2007-4-1 12:22:53 | 显示全部楼层
AhnLab-V3 2007.3.31.0 04.01.2007  no virus found
AntiVir 7.3.1.47 03.31.2007  no virus found
Authentium 4.93.8 03.31.2007  no virus found
Avast 4.7.936.0 03.31.2007  no virus found
AVG 7.5.0.447 03.31.2007  no virus found
BitDefender 7.2 04.01.2007 Exploit.ADODB.Stream.EB
CAT-QuickHeal 9.00 03.31.2007  no virus found
ClamAV devel-20070312 04.01.2007  no virus found
DrWeb 4.33 03.31.2007 VBS.Psyme.239
eSafe 7.0.15.0 03.31.2007 VBS.Phel.a
eTrust-Vet 30.6.3527 03.31.2007  no virus found
Ewido 4.0 03.31.2007 Downloader.Agent.e
FileAdvisor 1 04.01.2007  no virus found
Fortinet 2.85.0.0 04.01.2007  no virus found
F-Prot 4.3.1.45 03.30.2007  no virus found
F-Secure 6.70.13030.0 03.31.2007 Trojan-Downloader.VBS.Psyme.fm
Ikarus T3.1.1.3 03.31.2007 Exploit.JS.ADODB.Stream
Kaspersky 4.0.2.24 04.01.2007 Trojan-Downloader.VBS.Psyme.fm
McAfee 4997 03.31.2007 Exploit-MS06-014
Microsoft 1.2306 04.01.2007  no virus found
NOD32v2 2160 03.31.2007 VBS/TrojanDownloader.Agent.E
Norman 5.80.02 03.31.2007  no virus found
Panda 9.0.0.4 03.31.2007  no virus found
Prevx1 V2 04.01.2007  no virus found
Sophos 4.16.0 03.30.2007  no virus found
Sunbelt 2.2.907.0 03.31.2007  no virus found
Symantec 10 04.01.2007  no virus found
TheHacker 6.1.6.083 03.30.2007  no virus found
UNA 1.83 03.16.2007 Exploit.JS.ADODB.Stream
VBA32 3.11.3 04.01.2007 Exploit.JS.ADODB.Stream.e#4
VirusBuster 4.3.7:9 03.31.2007 JS.Psyme.DO
Webwasher-Gateway 6.0.1 04.01.2007 VBScript.Vulnerable.gen!High (suspicious)

这几款还比较多人用的fans请上报!

[ 本帖最后由 曲中求 于 2007-4-1 12:25 编辑 ]
曲中求
 楼主| 发表于 2007-4-1 12:23:18 | 显示全部楼层
AhnLab-V3 2007.3.31.0 04.01.2007 Win-Trojan/Exploit-ANI.B
AntiVir 7.3.1.47 03.31.2007 EXP/MS05-002.Ani.A
Authentium 4.93.8 03.31.2007  no virus found
Avast 4.7.936.0 03.31.2007  no virus found
AVG 7.5.0.447 03.31.2007 Downloader.Small.58.AW
BitDefender 7.2 04.01.2007 Exploit.Win32.MS05-002.Gen
CAT-QuickHeal 9.00 03.31.2007  no virus found
ClamAV devel-20070312 04.01.2007 Trojan.Downloader-4467
DrWeb 4.33 03.31.2007 Trojan.DownLoader.19858
eSafe 7.0.15.0 03.31.2007  no virus found
eTrust-Vet 30.6.3527 03.31.2007 Win32/MSA-935423!exploit
Ewido 4.0 03.31.2007 Downloader.Ani.g
FileAdvisor 1 04.01.2007  no virus found
Fortinet 2.85.0.0 04.01.2007  no virus found
F-Prot 4.3.1.45 03.30.2007  no virus found
F-Secure 6.70.13030.0 03.31.2007 Trojan-Downloader.Win32.Ani.g
Ikarus T3.1.1.3 03.31.2007  no virus found
Kaspersky 4.0.2.24 04.01.2007 Trojan-Downloader.Win32.Ani.g
McAfee 4997 03.31.2007 Exploit-ANIfile.c
Microsoft 1.2306 04.01.2007 TrojanDownloader:Win32/Anicmoo.gen!D
NOD32v2 2160 03.31.2007 a variant of Win32/TrojanDownloader.Ani.Gen
Norman 5.80.02 03.31.2007 RIFF/Ani_exploit.gen
Panda 9.0.0.4 03.31.2007  no virus found
Prevx1 V2 04.01.2007  no virus found
Sophos 4.16.0 03.30.2007 Troj/Animoo-U
Sunbelt 2.2.907.0 03.31.2007 Trojan-Exploit.Anicmoo.ax (v)
Symantec 10 04.01.2007 Bloodhound.Exploit.131
TheHacker 6.1.6.083 03.30.2007  no virus found
UNA 1.83 03.16.2007  no virus found
VBA32 3.11.3 04.01.2007  no virus found
VirusBuster 4.3.7:9 03.31.2007 Exploit.ANIFile.G
Webwasher-Gateway 6.0.1 04.01.2007 Exploit.MS05-002.Ani.A
soul20010
发表于 2007-4-1 12:24:25 | 显示全部楼层
FS7.0
Result: 2 malware found
Trojan-Downloader.Win32.Ani.g (virus)
C:\Documents and Settings\ÉÙÁÖ\×ÀÃæ\ÂíÂí.rar\muxiao2.jpg
Trojan-Downloader.VBS.Psyme.fm (virus)
C:\Documents and Settings\ÉÙÁÖ\×ÀÃæ\ÂíÂí.rar\0.htm
小邪邪
发表于 2007-4-1 12:24:27 | 显示全部楼层

MCAFEE

2007-4-1        12:29:38       
已删除\马马\muxiao2.jpg       
Exploit-ANIfile.c (特洛伊)

2007-4-1        12:29:38       
已删除\马马\0.htm       
Exploit-MS06-014 (特洛伊)
ouran
发表于 2007-4-1 12:24:59 | 显示全部楼层
咖啡
2007-4-1        12:24:16        未采取操作   G:\样本\马马.rar\MUXIAO2.JPG        Exploit-ANIfile.c(特洛伊)
2007-4-1        12:24:16        未采取操作   G:\样本\马马.rar\0.HTM        Exploit-MS06-014(特洛伊)
蓝色牛仔裤
发表于 2007-4-1 12:26:04 | 显示全部楼层
2007-4-1 12:24:09        Safe'n'Sec Scan report

2007-4-1 12:24:09        Scan start time:        2007-4-1 12:24:09

2007-4-1 12:24:09        Action applied to detected malware:       
2007-4-1 12:24:09        Scan level:        Full

2007-4-1 12:24:10        D:\马马.rar        Infected        Exploit.JS.ADODB.Stream.e#4        Moved to quarantine
2007-4-1 12:24:10        Scan area:

2007-4-1 12:24:10        D:\马马.rar
2007-4-1 12:24:10       
2007-4-1 12:24:10        Objects scanned:        1
2007-4-1 12:24:10        Malicious objects detected:        1
2007-4-1 12:24:10        Malicious objects deleted / removed:        1

2007-4-1 12:24:10        Scan completion time:        2007-4-1 12:24:10
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-11 06:24 , Processed in 0.130705 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表