楼主: sam.to
收起左侧

[病毒样本] 过主流2 (天天更新) (此帖完,1024楼有新帖子地址)

  [复制链接]
lurebreast
发表于 2010-10-27 22:27:23 | 显示全部楼层
pass诺顿
歌歌的人
发表于 2010-10-28 11:53:50 | 显示全部楼层
解压蜘蛛全杀

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
sam.to
 楼主| 发表于 2010-10-28 20:15:35 | 显示全部楼层
本帖最后由 sam.to 于 2010-10-28 23:27 编辑

a4e4c67691fed4d867e145e73696f572  Adobe.Photoshop.CS3.Version.10.0.Crack.40063.exe5
bf1d4d6dff7876c8395d852f370361ba  Adobe.Photoshop.CS3.Version.10.0.Keygen.40063.exe5
8462472d75fd8fd4f7659ed1a66ae7ad  AVG.Internet.Security.2011.10.0.1136.Crack.40063.exe5
adbd374d915931773c0a2d8a074efe80  AVG.Internet.Security.2011.10.0.1136.Keygen.40063.exe5
f31e426db8688150fe39d77c2f86955b  BatchPhoto.Pro.2.6.1.Crack.40063.exe5
5d96ad606db00c9ce1efe53f21d71ae2  BatchPhoto.Pro.2.6.1.Keygen.40063.exe5
db678cc159dd5ed7d19bd5c2caaef0dd  Flash.Banner.Creator.1.10.Crack.40063.exe5
bad50d07e707c2e8f901aca9db7e17fe  Flash.Banner.Creator.1.10.Keygen.40063.exe5
7fb5a2174821bd2b75a534a4a10142f0  Folder.Locker.6.2.5.Crack.40063.exe5
b4296c36b6fb1497983424bf8c01d3ab  Folder.Locker.6.2.5.Keygen.40063.exe5
dfb8d4160bde73fcb6cf5a3cc1ecb1d5  Video.Vision.Plus.11.0.10.Crack.40063.exe5
de94b6a57076b10b1b868ad8e3bb63af  Video.Vision.Plus.11.0.10.Keygen.40063.exe5


to kl,ll,mcafee,comodo,avira


File ID
Filename
Size (Byte)
Result
25931806
765735-385.rar
100.01 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
25931807
Adobe.Photoshop....63.exe5
192 KB
UNDER ANALYSIS
25931808
Adobe.Photoshop....63.exe5
192 KB
UNDER ANALYSIS
25931809
AVG.Internet.Sec...63.exe5
192 KB
UNDER ANALYSIS
25931810
AVG.Internet.Sec...63.exe5
192 KB
UNDER ANALYSIS
25931811
BatchPhoto.Pro.2...63.exe5
192 KB
UNDER ANALYSIS
25931812
BatchPhoto.Pro.2...63.exe5
192 KB
UNDER ANALYSIS
25931813
Flash.Banner.Cre...63.exe5
192 KB
UNDER ANALYSIS
25931814
Flash.Banner.Cre...63.exe5
192 KB
UNDER ANALYSIS
25931815
Folder.Locker.6....63.exe5
192 KB
UNDER ANALYSIS
25931816
Folder.Locker.6....63.exe5
192 KB
UNDER ANALYSIS
25931817
Video.Vision.Plu...63.exe5
192 KB
UNDER ANALYSIS
25931818
Video.Vision.Plu...63.exe5
192 KB
UNDER ANALYSIS





Please find a detailed report concerning each individual sample below:
Filename
Result
Adobe.Photoshop....63.exe5
MALWARE

The file 'Adobe.Photoshop.CS3.Version.10.0.Crack.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Renos.A.4.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Adobe.Photoshop....63.exe5
MALWARE

The file 'Adobe.Photoshop.CS3.Version.10.0.Keygen.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
AVG.Internet.Sec...63.exe5
MALWARE

The file 'AVG.Internet.Security.2011.10.0.1136.Crack.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
AVG.Internet.Sec...63.exe5
MALWARE

The file 'AVG.Internet.Security.2011.10.0.1136.Keygen.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
BatchPhoto.Pro.2...63.exe5
MALWARE

The file 'BatchPhoto.Pro.2.6.1.Crack.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
BatchPhoto.Pro.2...63.exe5
MALWARE

The file 'BatchPhoto.Pro.2.6.1.Keygen.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
Flash.Banner.Cre...63.exe5
MALWARE

The file 'Flash.Banner.Creator.1.10.Crack.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
Flash.Banner.Cre...63.exe5
MALWARE

The file 'Flash.Banner.Creator.1.10.Keygen.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
Folder.Locker.6....63.exe5
MALWARE

The file 'Folder.Locker.6.2.5.Crack.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
Folder.Locker.6....63.exe5
MALWARE

The file 'Folder.Locker.6.2.5.Keygen.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
Video.Vision.Plu...63.exe5
MALWARE

The file 'Video.Vision.Plus.11.0.10.Crack.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.
Filename
Result
Video.Vision.Plu...63.exe5
MALWARE

The file 'Video.Vision.Plus.11.0.10.Keygen.40063.exe5' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Code.LK.31.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.13.66.

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
微亿毫
发表于 2010-10-28 20:32:42 | 显示全部楼层
网之龙
发表于 2010-10-28 21:03:13 | 显示全部楼层
楼主啊,解压密码是什么?不是默认的“virus“啊!
sam.to
 楼主| 发表于 2010-10-29 00:27:17 | 显示全部楼层
网之龙 发表于 2010-10-28 21:03
楼主啊,解压密码是什么?不是默认的“virus“啊!

infected
歌歌的人
发表于 2010-10-29 09:42:07 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
网之龙
发表于 2010-10-29 20:41:03 | 显示全部楼层
过360网盾。avast! 5.0网页和网络监控没反应,不排除是因为下载压缩包加密的关系。但在本地解压后avast扫描成功报毒!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
sam.to
 楼主| 发表于 2010-10-29 20:50:02 | 显示全部楼层
本帖最后由 sam.to 于 2010-10-30 12:02 编辑

44d0459a50745e743cc66ea614784cea  CoffeeCup.Web.Form.Builder.8.2.Crack.40063.exe5
33059471f0075489df29b59b97be5c39  CoffeeCup.Web.Form.Builder.8.2.Keygen.40063.exe5
43a10a184b8ff8f2fbb27ea84b62bcef  Hot.hot.UltraISO.8.6.2.2011.Crack.40063.exe5
bb48c33ddca5c12a4f93c1616ed0e62e  Hot.hot.UltraISO.8.6.2.2011.Keygen.40063.exe5
7c8cebf578a6eced32a70b4ce0608fab  iMacsoft.DVD.Maker.Suite.2.3.5.1026.Crack.40063.exe5
10b1d5f56b221db243f37ac9d8b70861  iMacsoft.DVD.Maker.Suite.2.3.5.1026.Keygen.40063.exe5
df7ea54b4b37a7ce86056690b1e69ef1  Norton.GoBack.4.0.Crack.40063.exe5
5ddf78b7da8bffdb07ce826d6400f7a8  Norton.GoBack.4.0.Keygen.40063.exe5
e148d2873926d121221fbf855e10a17a  NWS.Centurybyte.Focus.Photo.Editor.6.2.8.1.Crack.40063.exe5
06c1becd4f0b7e7c37ddb5e43db2d6f1  NWS.Centurybyte.Focus.Photo.Editor.6.2.8.1.Keygen.40063.exe5
8a6c424e7b2f9a26f48dc0ff2ad3001c  Office.Password.Recovery.Magic.6.1.1.256.Crack.40063.exe5
2e54fb542fabee3f86e299c00cde33a3  Office.Password.Recovery.Magic.6.1.1.256.Keygen.40063.exe5


to kl,ll,mcafee,avira


File ID
Filename
Size (Byte)
Result
25933105
765735-391.rar
100.73 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
25933106
CoffeeCup.Web.Fo...63.exe5
196 KB
UNDER ANALYSIS
25933107
CoffeeCup.Web.Fo...63.exe5
196 KB
UNDER ANALYSIS
25933108
Hot.hot.UltraISO...63.exe5
196 KB
UNDER ANALYSIS
25933109
Hot.hot.UltraISO...63.exe5
196 KB
UNDER ANALYSIS
25933110
iMacsoft.DVD.Mak...63.exe5
196 KB
UNDER ANALYSIS
25933111
iMacsoft.DVD.Mak...63.exe5
196 KB
UNDER ANALYSIS
25933112
Norton.GoBack.4....63.exe5
196 KB
UNDER ANALYSIS
25933113
Norton.GoBack.4....63.exe5
196 KB
UNDER ANALYSIS
25933114
NWS.Centurybyte....63.exe5
196 KB
UNDER ANALYSIS
25933115
NWS.Centurybyte....63.exe5
196 KB
UNDER ANALYSIS
25933116
Office.Password....63.exe5
196 KB
UNDER ANALYSIS
25933117
Office.Password....63.exe5
196 KB
UNDER ANALYSIS







Please find a detailed report concerning each individual sample below:
Filename
Result
CoffeeCup.Web.Fo...63.exe5
DAMAGED FILE (MALWARE)

The file 'CoffeeCup.Web.Form.Builder.8.2.Crack.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
CoffeeCup.Web.Fo...63.exe5
DAMAGED FILE (MALWARE)

The file 'CoffeeCup.Web.Form.Builder.8.2.Keygen.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
Hot.hot.UltraISO...63.exe5
DAMAGED FILE (MALWARE)

The file 'Hot.hot.UltraISO.8.6.2.2011.Crack.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
Hot.hot.UltraISO...63.exe5
DAMAGED FILE (MALWARE)

The file 'Hot.hot.UltraISO.8.6.2.2011.Keygen.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
iMacsoft.DVD.Mak...63.exe5
DAMAGED FILE (MALWARE)

The file 'iMacsoft.DVD.Maker.Suite.2.3.5.1026.Crack.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
iMacsoft.DVD.Mak...63.exe5
DAMAGED FILE (MALWARE)

The file 'iMacsoft.DVD.Maker.Suite.2.3.5.1026.Keygen.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
Norton.GoBack.4....63.exe5
DAMAGED FILE (MALWARE)

The file 'Norton.GoBack.4.0.Crack.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
Norton.GoBack.4....63.exe5
DAMAGED FILE (MALWARE)

The file 'Norton.GoBack.4.0.Keygen.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
NWS.Centurybyte....63.exe5
DAMAGED FILE (MALWARE)

The file 'NWS.Centurybyte.Focus.Photo.Editor.6.2.8.1.Crack.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
NWS.Centurybyte....63.exe5
DAMAGED FILE (MALWARE)

The file 'NWS.Centurybyte.Focus.Photo.Editor.6.2.8.1.Keygen.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
Office.Password....63.exe5
DAMAGED FILE (MALWARE)

The file 'Office.Password.Recovery.Magic.6.1.1.256.Crack.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.
Filename
Result
Office.Password....63.exe5
DAMAGED FILE (MALWARE)

The file 'Office.Password.Recovery.Magic.6.1.1.256.Keygen.40063.exe5' has been determined to be 'DAMAGED FILE (MALWARE)'.In particular this means that this file is damaged and not working properly. Nevertheless we were able to determine that it contains malicious code fragments.

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
8073176430
发表于 2010-10-29 21:13:18 | 显示全部楼层
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-2-1 04:58 , Processed in 0.098849 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表