楼主: sam.to
收起左侧

[病毒样本] 过主流2 (天天更新) (此帖完,1024楼有新帖子地址)

  [复制链接]
sam.to
 楼主| 发表于 2010-9-23 15:42:38 | 显示全部楼层
本帖最后由 sam.to 于 2010.9.24 18:32 编辑

a6611ae116165dbc1daf65bd51ea872e  Advanced.Defrag.5.0.Crack.40063.exe2
215ebff7c30fe47db001b13a7d6f8fab  Advanced.Defrag.5.0.Keygen.40063.exe2
38144d4547c4660da044ae6b794eb2ad  AnyDVD.HD.6.6.9.0.Crack.40063.exe2
42b376d4bbc391a10362fd8d537761c1  AnyDVD.HD.6.6.9.0.Keygen.40063.exe2
b9a16750bd649f956ea3e5a612e22df6  Crystal.Impact.Endeavour.1.7.Crack.40063.exe2
34771a00940ca41dcf9e919a55ca6ca1  Crystal.Impact.Endeavour.1.7.Keygen.40063.exe2
a0cf42256cdbe23ce647306a91e144de  Mozilla.SpeedFox.3.6.Crack.40063.exe2
e1ac2b10b7d8a2e3c89650d667ae9e56  Mozilla.SpeedFox.3.6.Keygen.40063.exe2
f170afbbabe16453a99d5109e31da466  QuickTime.Pro.7.67.75.0.Crack.40063.exe2
720c5fe294221534130fd052a41d076c  QuickTime.Pro.7.67.75.0.Keygen.40063.exe2
b64a5df7a161bdc54423b69486d454b5  WinZip.14.0.Crack.40063.exe2
ef0ee142acb2f95b1194e32ea47e5ce9  WinZip.14.0.Keygen.40063.exe2


to kl,ll,comodo,avira


File ID
Filename
Size (Byte)
Result
25892939
765735-241.rar
96.2 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
25892940
Advanced.Defrag....63.exe2
154.5 KB
UNDER ANALYSIS
25892941
Advanced.Defrag....63.exe2
154.5 KB
UNDER ANALYSIS
25892942
AnyDVD.HD.6.6.9....63.exe2
154.5 KB
UNDER ANALYSIS
25892943
AnyDVD.HD.6.6.9....63.exe2
154.5 KB
UNDER ANALYSIS
25892944
Crystal.Impact.E...63.exe2
154.5 KB
UNDER ANALYSIS
25892945
Crystal.Impact.E...63.exe2
154.5 KB
UNDER ANALYSIS
25892946
Mozilla.SpeedFox...63.exe2
154.5 KB
UNDER ANALYSIS
25892947
Mozilla.SpeedFox...63.exe2
154.5 KB
UNDER ANALYSIS
25892948
QuickTime.Pro.7....63.exe2
154.5 KB
UNDER ANALYSIS
25892949
QuickTime.Pro.7....63.exe2
154.5 KB
UNDER ANALYSIS
25892950
WinZip.14.0.Crac...63.exe2
154.5 KB
UNDER ANALYSIS
25892951
WinZip.14.0.Keyg...63.exe2
154.5 KB
UNDER ANALYSIS


Please find a detailed report concerning each individual sample below:
Filename
Result
Advanced.Defrag....63.exe2
MALWARE

The file 'Advanced.Defrag.5.0.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
Advanced.Defrag....63.exe2
MALWARE

The file 'Advanced.Defrag.5.0.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
AnyDVD.HD.6.6.9....63.exe2
MALWARE

The file 'AnyDVD.HD.6.6.9.0.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
AnyDVD.HD.6.6.9....63.exe2
MALWARE

The file 'AnyDVD.HD.6.6.9.0.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
Crystal.Impact.E...63.exe2
MALWARE

The file 'Crystal.Impact.Endeavour.1.7.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
Crystal.Impact.E...63.exe2
MALWARE

The file 'Crystal.Impact.Endeavour.1.7.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
Mozilla.SpeedFox...63.exe2
MALWARE

The file 'Mozilla.SpeedFox.3.6.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
Mozilla.SpeedFox...63.exe2
MALWARE

The file 'Mozilla.SpeedFox.3.6.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
QuickTime.Pro.7....63.exe2
MALWARE

The file 'QuickTime.Pro.7.67.75.0.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
QuickTime.Pro.7....63.exe2
MALWARE

The file 'QuickTime.Pro.7.67.75.0.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
WinZip.14.0.Crac...63.exe2
MALWARE

The file 'WinZip.14.0.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.
Filename
Result
WinZip.14.0.Keyg...63.exe2
MALWARE

The file 'WinZip.14.0.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.158208.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.23.

wzq9845
发表于 2010-9-23 16:01:29 | 显示全部楼层
a-squared        5.0.0.19        20100826072253        2010-08-26       
-
40.097
AntiVir        8.2.4.38        7.10.11.22        2010-08-25       
TR/Code.TW.2
0.359
Arcavir        2009        201006281601        2010-06-28       
-
0.008
Authentium        5.1.1        201008260731        2010-08-26       
W32/Renos.A!Generic (Possible)
1.743
AVAST!        4.7.4        100826-0        2010-08-26       
Win32:Renos-PX [Drp]
0.052
AVG        8.5.793        271.1.1/3095        2010-08-26       
Crypt.YRR
0.619
BitDefender        7.90123.6268687        7.33576        2010-08-26       
Trojan.Generic.KD.25551
4.519
ClamAV        0.96.1        11694        2010-08-26       
-
0.476
Comodo        4.0        5858        2010-08-25       
-
40.093
CP Secure        1.3.0.5        2010.08.26        2010-08-26       
-
0.860
Dr.Web        5.0.2.3300        2010.08.26        2010-08-26       
Trojan.Siggen2.375
9.914
F-Prot        4.4.4.56        20100825        2010-08-25       
W32/Renos.A!Generic
1.514
F-Secure        7.02.73807        2010.08.26.07        2010-08-26       
Packed.Win32.Katusha.n [AVP]
0.974
GData        21.724/21.283        20100826        2010-08-26       
-
40.091
Ikarus        T3.        2010.08.25.76609        2010-08-25       
Trojan.Code
4.684
Microsoft        1.6103        2010.08.26        2010-08-26       
-
40.085
Norman        6.05.11        6.05.00        2010-08-25       
W32/Suspicious_Gen2.BUZOM
8.014
nProtect        20100825.02        8925998        2010-08-25       
-
40.167
Quick Heal        11.00        2010.08.24        2010-08-24       
-
40.092
Sophos        3.10.0        4.56        2010-08-26       
Mal/FakeAV-CX
4.696
Sunbelt        3.9.2432.2        6794        2010-08-25       
-
40.090
The Hacker        6.5.2.1        v00356        2010-08-25       
-
40.085
VBA32        3.12.14.0        20100825.0623        2010-08-25       
BScope.Trojan.MTA.0795
3.853
ViRobot        20100826        2010.08.26        2010-08-26       
-
40.151
VirusBuster        4.5.11.10        10.127.67/2023229        2010-08-26       
-
0.000
卡巴斯基        5.5.10        2010.08.26        2010-08-26       
Packed.Win32.Katusha.n
0.687
安博士V3        2010.08.07.00        2010.08.07        2010-08-07       
-
40.105
安天        2.0.18        20100826.4985538        2010-08-26       
Packed/Win32.Katusha.o[:crypt]
0.731
江民杀毒        13.0.900        2010.08.26        2010-08-26       
-
40.086
熊猫卫士        9.05.01        2010.08.24        2010-08-24       
-
40.096
瑞星        20.0        22.62.02.04        2010-08-25       
-
40.114
赛门铁克        1.3.0.24        20100825.002        2010-08-25       
Trojan.FakeAV!gen29
40.660
趋势科技        9.120-1004        7.412.01        2010-08-26       
TROJ_FAKEAV.SMA2
0.041
迈克菲        5400.1158        6085        2010-08-25       
Downloader-CEW.b
19.323
金山毒霸        2009.2.5.15        2010.8.26.18        2010-08-26       
-
40.087
飞塔        4.1.143        12.279        2010-08-25       
-
40.092
网名丢失
发表于 2010-9-24 00:34:09 | 显示全部楼层
又全国了红伞,晕
sam.to
 楼主| 发表于 2010-9-24 14:08:10 | 显示全部楼层
本帖最后由 sam.to 于 2010.9.24 20:12 编辑

7866a4b31da6af00e5c77ecce2ce0a2c  COMODO.EasyVPN.2.1.2.1.Crack.40063.exe2
d2b0f40d60ec22fdfc1e1b3cd64fab35  COMODO.EasyVPN.2.1.2.1.Keygen.40063.exe2
02261179f03f9a435a800c29160b2be9  Devil.2010.Crack.40063.exe2
763d80a7897aabba0d8f81b6a7e4ad91  Devil.2010.Keygen.40063.exe2
59fc40b6b316e1fa2f2d8aa398af605a  Error.Repair.Professional.4.2.3.Crack.40063.exe2
2bcb25b7d0593aec72555976f0db64bb  Error.Repair.Professional.4.2.3.Keygen.40063.exe2
5845955aee97bd8512ecd0e86eed1003  FarStone.TotalDeploy.Server.1.0.Crack.40063.exe2
d8433d8a11009c4419e2532688ea55e7  FarStone.TotalDeploy.Server.1.0.Keygen.40063.exe2
852af7f38cf5dddb68f704ce05e58314  OnLine.TV.Live.8.1.2.Crack.40063.exe2
589bf774b724252148691e05c78d633f  OnLine.TV.Live.8.1.2.Keygen.40063.exe2
7b760a3386989f2e9b0a556357d0d378  SmartFTP.4.0.Crack.40063.exe2
bb73ceecce9cbb6847a3b10383c95897  SmartFTP.4.0.Keygen.40063.exe2


to kl,ll,comdoo,avira


File ID
Filename
Size (Byte)
Result
25894065
765735-245.rar
101.23 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
25894066
COMODO.EasyVPN.2...63.exe2
165 KB
UNDER ANALYSIS
25894067
COMODO.EasyVPN.2...63.exe2
165 KB
UNDER ANALYSIS
25894068
Devil.2010.Crack...63.exe2
165 KB
UNDER ANALYSIS
25894069
Devil.2010.Keyge...63.exe2
165 KB
UNDER ANALYSIS
25894070
Error.Repair.Pro...63.exe2
165 KB
UNDER ANALYSIS
25894071
Error.Repair.Pro...63.exe2
165 KB
UNDER ANALYSIS
25894072
FarStone.TotalDe...63.exe2
165 KB
UNDER ANALYSIS
25894073
FarStone.TotalDe...63.exe2
165 KB
UNDER ANALYSIS
25894074
OnLine.TV.Live.8...63.exe2
165 KB
UNDER ANALYSIS
25894075
OnLine.TV.Live.8...63.exe2
165 KB
UNDER ANALYSIS
25894076
SmartFTP.4.0.Cra...63.exe2
165 KB
UNDER ANALYSIS
25894077
SmartFTP.4.0.Key...63.exe2
165 KB
UNDER ANALYSIS





COMODO.EasyVPN.2.1.2.1.Crack.40063.exe2 - Trojan-Downloader.Win32.CodecPack.nds,
COMODO.EasyVPN.2.1.2.1.Keygen.40063.exe2 - Trojan-Downloader.Win32.CodecPack.ndu,
Devil.2010.Crack.40063.exe2 - Trojan-Downloader.Win32.CodecPack.ndv,
Devil.2010.Keygen.40063.exe2 - Trojan-Downloader.Win32.CodecPack.ndw,
Error.Repair.Professional.4.2.3.Crack.40063.exe2 - Trojan-Downloader.Win32.CodecPack.ndx,
Error.Repair.Professional.4.2.3.Keygen.40063.exe2 - Trojan-Downloader.Win32.CodecPack.ndz,
FarStone.TotalDeploy.Server.1.0.Crack.40063.exe2 - Trojan-Downloader.Win32.CodecPack.nea,
FarStone.TotalDeploy.Server.1.0.Keygen.40063.exe2 - Trojan-Downloader.Win32.CodecPack.neb,
OnLine.TV.Live.8.1.2.Crack.40063.exe2 - Trojan-Downloader.Win32.CodecPack.nec,
OnLine.TV.Live.8.1.2.Keygen.40063.exe2 - Trojan-Downloader.Win32.CodecPack.ned,
SmartFTP.4.0.Crack.40063.exe2 - Trojan-Downloader.Win32.CodecPack.nee,
SmartFTP.4.0.Keygen.40063.exe2 - Trojan-Downloader.Win32.CodecPack.nef




Please find a detailed report concerning each individual sample below:
Filename
Result
COMODO.EasyVPN.2...63.exe2
MALWARE

The file 'COMODO.EasyVPN.2.1.2.1.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
COMODO.EasyVPN.2...63.exe2
MALWARE

The file 'COMODO.EasyVPN.2.1.2.1.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
Devil.2010.Crack...63.exe2
MALWARE

The file 'Devil.2010.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
Devil.2010.Keyge...63.exe2
MALWARE

The file 'Devil.2010.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
Error.Repair.Pro...63.exe2
MALWARE

The file 'Error.Repair.Professional.4.2.3.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
Error.Repair.Pro...63.exe2
MALWARE

The file 'Error.Repair.Professional.4.2.3.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
FarStone.TotalDe...63.exe2
MALWARE

The file 'FarStone.TotalDeploy.Server.1.0.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
FarStone.TotalDe...63.exe2
MALWARE

The file 'FarStone.TotalDeploy.Server.1.0.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
OnLine.TV.Live.8...63.exe2
MALWARE

The file 'OnLine.TV.Live.8.1.2.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
OnLine.TV.Live.8...63.exe2
MALWARE

The file 'OnLine.TV.Live.8.1.2.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
SmartFTP.4.0.Cra...63.exe2
MALWARE

The file 'SmartFTP.4.0.Crack.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Filename
Result
SmartFTP.4.0.Key...63.exe2
MALWARE

The file 'SmartFTP.4.0.Keygen.40063.exe2' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.BP.1.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.12.27.
Mr.L
发表于 2010-9-24 14:20:48 | 显示全部楼层
   ESET   清空
jtxx2011
发表于 2010-9-24 14:22:19 | 显示全部楼层

NOD32 清空
wlx81702
发表于 2010-9-24 15:40:33 | 显示全部楼层
duba2011SP3   241清空  245清空
waring_id
发表于 2010-9-25 13:13:19 | 显示全部楼层
7866a4b31da6af00e5c77ecce2ce0a2c  COMODO.EasyVPN.2.1.2.1.Crack.40063.exe2
d2b0f40d60ec22fdfc1e1b3cd ...
sam.to 发表于 2010.9.24 14:08



解压需要密码,是我没找到还是其它什么原因?


网名丢失
发表于 2010-9-25 13:18:36 | 显示全部楼层
哇哈哈哇哈哈,红伞也全杀了
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-30 18:49 , Processed in 0.099098 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表