楼主: sam.to
收起左侧

[病毒样本] 过主流2 (天天更新) (此帖完,1024楼有新帖子地址)

  [复制链接]
sam.to
 楼主| 发表于 2010-10-11 17:15:51 | 显示全部楼层
本帖最后由 sam.to 于 2010.10.11 19:56 编辑

3710b56e5f4897dc8029a0f5485af8af  Folder.Lock.5.75.Crack.40063.exe9
73caee25129172fb76fb5e58f70445f5  Folder.Lock.5.75.Keygen.40063.exe9
7c18ae4bb53f7ff83feca78a47c62443  GetFLV.8.9.4.1.Crack.40063.exe9
6c12d543943479de474963afd3833ee4  GetFLV.8.9.4.1.Keygen.40063.exe9
0138fd329e8e1db3ddd8862bca29142f  Splash.PRO.HD.Player.1.2.4.0.Crack.40063.exe9
d0da3508a41815b220c1a54406e1c95a  Splash.PRO.HD.Player.1.2.4.0.Keygen.40063.exe9
b936d8932c49ee94cf73123f1b924399  Uninstall.Gold.2.0.2.237.Crack.40063.exe9
6c893b5cadc5427d674468a4e68d87c6  Uninstall.Gold.2.0.2.237.Keygen.40063.exe9
ac8ff141ed851f5fa7fc2cbf588d2107  WinHex.15.7.Crack.40063.exe9
f2782f206341a376b2e0ba31b5b83c3f  WinHex.15.7.Keygen.40063.exe9
719f4523de100886eace751191e8d3e9  Wondershare.VC.4.4.1.0.Crack.40063.exe9
25c9963b4c041fabad8f6ee578691dce  Wondershare.VC.4.4.1.0.Keygen.40063.exe9


to ll,mcafee,comodo,avira





File ID
Filename
Size (Byte)
Result
25913496
765735-322.rar
80.25 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
25913497
Folder.Lock.5.75...63.exe9
126 KB
UNDER ANALYSIS
25913498
Folder.Lock.5.75...63.exe9
126 KB
UNDER ANALYSIS
25913499
GetFLV.8.9.4.1.C...63.exe9
126 KB
UNDER ANALYSIS
25913500
GetFLV.8.9.4.1.K...63.exe9
126 KB
UNDER ANALYSIS
25913501
Splash.PRO.HD.Pl...63.exe9
126 KB
UNDER ANALYSIS
25913502
Splash.PRO.HD.Pl...63.exe9
126 KB
UNDER ANALYSIS
25913503
Uninstall.Gold.2...63.exe9
126 KB
UNDER ANALYSIS
25913504
Uninstall.Gold.2...63.exe9
126 KB
UNDER ANALYSIS
25913505
WinHex.15.7.Crac...63.exe9
126 KB
UNDER ANALYSIS
25913506
WinHex.15.7.Keyg...63.exe9
126 KB
UNDER ANALYSIS
25913507
Wondershare.VC.4...63.exe9
126 KB
UNDER ANALYSIS
25913508
Wondershare.VC.4...63.exe9
126 KB
UNDER ANALYSIS





Please find a detailed report concerning each individual sample below:
Filename
Result
Folder.Lock.5.75...63.exe9
MALWARE

The file 'Folder.Lock.5.75.Crack.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Folder.Lock.5.75...63.exe9
MALWARE

The file 'Folder.Lock.5.75.Keygen.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
GetFLV.8.9.4.1.C...63.exe9
MALWARE

The file 'GetFLV.8.9.4.1.Crack.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
GetFLV.8.9.4.1.K...63.exe9
MALWARE

The file 'GetFLV.8.9.4.1.Keygen.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Splash.PRO.HD.Pl...63.exe9
MALWARE

The file 'Splash.PRO.HD.Player.1.2.4.0.Crack.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Splash.PRO.HD.Pl...63.exe9
MALWARE

The file 'Splash.PRO.HD.Player.1.2.4.0.Keygen.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Uninstall.Gold.2...63.exe9
MALWARE

The file 'Uninstall.Gold.2.0.2.237.Crack.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Uninstall.Gold.2...63.exe9
MALWARE

The file 'Uninstall.Gold.2.0.2.237.Keygen.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
WinHex.15.7.Crac...63.exe9
MALWARE

The file 'WinHex.15.7.Crack.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
WinHex.15.7.Keyg...63.exe9
MALWARE

The file 'WinHex.15.7.Keygen.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Wondershare.VC.4...63.exe9
MALWARE

The file 'Wondershare.VC.4.4.1.0.Crack.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Filename
Result
Wondershare.VC.4...63.exe9
MALWARE

The file 'Wondershare.VC.4.4.1.0.Keygen.40063.exe9' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Crypt.XPACK.Gen2.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.This file is detected by a special detection routine from the engine module.
Alternatively
jayavira
发表于 2010-10-11 17:25:16 | 显示全部楼层
回复 322楼 sam.to 的帖子

ess 清空
瓜皮猫
发表于 2010-10-11 17:25:16 | 显示全部楼层
322L
ess 清空
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Folder.Lock.5.75.Crack.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Folder.Lock.5.75.Keygen.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\GetFLV.8.9.4.1.Crack.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\GetFLV.8.9.4.1.Keygen.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Splash.PRO.HD.Player.1.2.4.0.Crack.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Splash.PRO.HD.Player.1.2.4.0.Keygen.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Uninstall.Gold.2.0.2.237.Crack.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Uninstall.Gold.2.0.2.237.Keygen.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\WinHex.15.7.Crack.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\WinHex.15.7.Keygen.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Wondershare.VC.4.4.1.0.Crack.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
C:\Users\微亿毫\Desktop\765735-322\2010-Oct-11-1704\Wondershare.VC.4.4.1.0.Keygen.40063.exe9 - Win32/TrojanDownloader.FakeAlert.BBT 特洛伊木马
sam.to
 楼主| 发表于 2010-10-12 13:07:54 | 显示全部楼层
本帖最后由 sam.to 于 2010.10.12 17:43 编辑

a49fc50c5f5405e45ecdb141881e695c  ACDSee.Pro.Photo.Manager.3.0.Crack.40063.exe5
c54d6201bf1197f7d3a1590be50d8d4d  ACDSee.Pro.Photo.Manager.3.0.Keygen.40063.exe5
2cea428dc5e8afee298e436dbe7d3622  EarthView.3.12.4.Crack.40063.exe5
0aa33b476841c3f7c6d373fc84ef069e  EarthView.3.12.4.Keygen.40063.exe5
2f381654cdb9110e5aa7a8e011fe020e  Folder.Lock.5.75.Crack.40063.exe5
a17d20f581b90840df20b6aa44921b6c  Folder.Lock.5.75.Keygen.40063.exe5
79390918fb07c9edf0821fb5db1e75f3  GetFLV.8.9.4.1.Crack.40063.exe5
a40dc8fa60198dff16d9d5a5495dd7e8  GetFLV.8.9.4.1.Keygen.40063.exe5
81aff417df7f2588b4a22ca632545ed6  Rollback.Rx.9.1.Crack.40063.exe5
0dd0384f75e50af1ce075bf15a3b1735  Rollback.Rx.9.1.Keygen.40063.exe5
e2b0559b7a0e7a87ab657c5c416d846a  SlideshowZilla.1.55.Crack.40063.exe5
f079dc3b214298879b5f024724f93816  SlideshowZilla.1.55.Keygen.40063.exe5
cbd5ac9f96367e21eba76ebededb2cc2  Sonne.DVD.Burner.4.3.0.2046.Crack.40063.exe5
3afba497f609ce709954a52c57f616e4  Sonne.DVD.Burner.4.3.0.2046.Keygen.40063.exe5
0b65d81a8ced6b12424dee6d2d49a411  Splash.PRO.HD.Player.1.2.4.0.Crack.40063.exe5
4390908664297e241dc86df2efa1b688  Splash.PRO.HD.Player.1.2.4.0.Keygen.40063.exe5
c29fbf06556e5c8d714b26859acf3753  Topaz.Simplify.3.0.2.Crack.40063.exe5
ad28e5c96a1350c1bbd727c50a14924e  Topaz.Simplify.3.0.2.Keygen.40063.exe5
bee7f7665e81e5cc5e6e3fa045cea0af  Uninstall.Gold.2.0.2.237.Crack.40063.exe5
42b905596b402d39a47fde9bea07d887  Uninstall.Gold.2.0.2.237.Keygen.40063.exe5
72234839af1b6301c728a2480e70cd03  WinHex.15.7.Crack.40063.exe5
708902468302e568fc83a188c7c3d4ec  WinHex.15.7.Keygen.40063.exe5
fc35bfcdcfdbadd4160c2b3e4938d64f  Wondershare.VC.4.4.1.0.Crack.40063.exe5
0fab803dbdc17b5dbe07dc4a0a9ad0cf  Wondershare.VC.4.4.1.0.Keygen.40063.exe5



to kl,ll,mcafee,comodo


Hello,

87718514_303598723_ACDSee.Pro.Photo.Manager.3.0.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfnx,
87718514_303598724_ACDSee.Pro.Photo.Manager.3.0.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfoa,
87718514_303598725_EarthView.3.12.4.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfob,
87718514_303598726_EarthView.3.12.4.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfoc,
87718514_303598727_Folder.Lock.5.75.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfoe,
87718514_303598728_Folder.Lock.5.75.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfof,
87718514_303598729_GetFLV.8.9.4.1.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfoh,
87718514_303598730_GetFLV.8.9.4.1.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfoi,
87718514_303598731_Rollback.Rx.9.1.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfok,
87718514_303598732_Rollback.Rx.9.1.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfol,
87718514_303598733_SlideshowZilla.1.55.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfon,
87718514_303598734_SlideshowZilla.1.55.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfoo,
87718514_303598735_Sonne.DVD.Burner.4.3.0.2046.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfor,
87718514_303598736_Sonne.DVD.Burner.4.3.0.2046.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfos,
87718514_303598737_Splash.PRO.HD.Player.1.2.4.0.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfou,
87718514_303598738_Splash.PRO.HD.Player.1.2.4.0.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfow,
87718514_303598739_Topaz.Simplify.3.0.2.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfox,
87718514_303598740_Topaz.Simplify.3.0.2.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfoz,
87718514_303598741_Uninstall.Gold.2.0.2.237.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfpb,
87718514_303598742_Uninstall.Gold.2.0.2.237.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfpc,
87718514_303598743_WinHex.15.7.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfpe,
87718514_303598744_WinHex.15.7.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfpf,
87718514_303598745_Wondershare.VC.4.4.1.0.Crack.40063.exe5 - Trojan.Win32.FraudPack.cfpi,
87718514_303598746_Wondershare.VC.4.4.1.0.Keygen.40063.exe5 - Trojan.Win32.FraudPack.cfpk

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.
The answer is relevant to the latest bases from update sources.

--
Best regards,
Virus analyst, Kaspersky Lab.
rasis
发表于 2010-10-12 13:10:51 | 显示全部楼层
    765735-325.rar  这回avira 竟然都删掉了

hansyu
发表于 2010-10-12 13:37:42 | 显示全部楼层
325#
panda Trj/CI.A x6 启发 x18
18x to xandora(panda)
jayavira
发表于 2010-10-12 13:47:33 | 显示全部楼层
回复 325楼 sam.to 的帖子

ess 清空
sakula
发表于 2010-10-12 13:55:44 | 显示全部楼层
看看看怎么过地
TIW
发表于 2010-10-12 22:00:02 | 显示全部楼层
本帖最后由 TIW 于 2010.10.12 22:09 编辑

每天俺都在样本区下载当天所有的样本 一般都是小a先拦一下 金山卫士再报一下 解压压缩包之后mcafee都先检测到 然后部分小a杀一点 norton报一两个 最后金山卫士在几分钟后再捡漏一个 LZ的病毒包都是PASS的很多 其他的也就误报或一个漏的
hx1997
发表于 2010-10-12 22:33:23 | 显示全部楼层
#325
Keniu missed.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-1 00:39 , Processed in 0.093627 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表