楼主: sam.to
收起左侧

[病毒样本] 过主流2 (天天更新) (此帖完,1024楼有新帖子地址)

  [复制链接]
歌歌的人
发表于 2010-11-27 22:24:13 | 显示全部楼层
本帖最后由 歌歌的人 于 2010-11-27 22:24 编辑

489L

486L

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Mr.L
发表于 2010-11-27 23:26:45 | 显示全部楼层
KIS  清空
sam.to
 楼主| 发表于 2010-11-28 16:02:26 | 显示全部楼层
本帖最后由 sam.to 于 2010-11-29 20:06 编辑

5a89dfd6c8431d494445a19f20997a7e  Auto.Hide.IP.5.1.0.2.Crack.40063.exe3
b3bf98e053e51c4265b30bcd1fa88367  Auto.Hide.IP.5.1.0.2.Keygen.40063.exe3
3a6d24360e3a39bf868b256f3b20a153  BatchPhoto.Pro.2.6.2.Crack.40063.exe3
1faece82030aa3c95f8fe3f591cf1712  BatchPhoto.Pro.2.6.2.Keygen.40063.exe3
d30a47a03b0e250ece7342a245c90715  Hard.Drive.Mechanic.1.0.Crack.40063.exe3
ae5f810a77b020b222de3d4e913fe7f9  Hard.Drive.Mechanic.1.0.Keygen.40063.exe3
e8210477b6b3d77980633def2d34007e  Magic.Music.Editor.8.10.1.221.Crack.40063.exe3
3347847c3904c6e8622923cc0c0f220d  Magic.Music.Editor.8.10.1.221.Keygen.40063.exe3
378ff0b38ef10bc189a6b3b97265b703  Microsoft.Office.Pro.2010.Crack.40063.exe3
2507638560973ee7251cd2a50213220b  Microsoft.Office.Pro.2010.Keygen.40063.exe3
73d27fec3229660c996480087cb355c3  Nero.burning.rom.10.3.Crack.40063.exe3
de4578bef02dca97a0e9a9a9307db66a  Nero.burning.rom.10.3.Keygen.40063.exe3
434022b241cfbd7ad6b02f0860400540  Rainlendar.Pro.2.6.Crack.40063.exe3
53756fe3eb1bbb060efc7e83e87c6613  Rainlendar.Pro.2.6.Keygen.40063.exe3
0b155214661024a1932941d10f8b072b  Seven.Remix.XP.2.4.1.509.Crack.40063.exe3
4ac3bd6f66e609703c221dc42e9d9021  Seven.Remix.XP.2.4.1.509.Keygen.40063.exe3
d72799ef9d5e4a0fbc61df603bceb543  Skype.5.0.5.Crack.40063.exe3
e1c6e388445de3d06f52ba579a12785f  Skype.5.0.5.Keygen.40063.exe3
1a27cbe5454150deaf408198242f3f5e  Speed.MP3.Downloader.2.0.7.6.Crack.40063.exe3
6c883f0e10ebade445d8761e150a7987  Speed.MP3.Downloader.2.0.7.6.Keygen.40063.exe3
d0c46cccf5c8c61e58b68929e8535ea7  VLC.Player.VideoLAN.1.1.5.Crack.40063.exe3
b9032e9a7f88c98c358ddc8c7ba5efbd  VLC.Player.VideoLAN.1.1.5.Keygen.40063.exe3
801a95952382509f2166e03dd75773a4  Windows.Blinds.6..Theme.Pack.100.Crack.40063.exe3
45c06197a070643183bae265cea6e63d  Windows.Blinds.6..Theme.Pack.100.Keygen.40063.exe3


to kl,ll,mcafee,avira





File ID
Filename
Size (Byte)
Result
25965328
765735-495.rar
80.97 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
25965329
Auto.Hide.IP.5.1...63.exe3
82 KB
UNDER ANALYSIS
25965330
Auto.Hide.IP.5.1...63.exe3
82 KB
UNDER ANALYSIS
25965331
BatchPhoto.Pro.2...63.exe3
82 KB
UNDER ANALYSIS
25965332
BatchPhoto.Pro.2...63.exe3
82 KB
UNDER ANALYSIS
25965333
Hard.Drive.Mecha...63.exe3
82 KB
UNDER ANALYSIS
25965334
Hard.Drive.Mecha...63.exe3
82 KB
UNDER ANALYSIS
25965335
Magic.Music.Edit...63.exe3
82 KB
UNDER ANALYSIS
25965336
Magic.Music.Edit...63.exe3
82 KB
UNDER ANALYSIS
25965337
Microsoft.Office...63.exe3
82 KB
UNDER ANALYSIS
25965338
Microsoft.Office...63.exe3
82 KB
UNDER ANALYSIS
25965339
Nero.burning.rom...63.exe3
82 KB
UNDER ANALYSIS
25965340
Nero.burning.rom...63.exe3
82 KB
UNDER ANALYSIS
25965341
Rainlendar.Pro.2...63.exe3
82 KB
UNDER ANALYSIS
25965342
Rainlendar.Pro.2...63.exe3
82 KB
UNDER ANALYSIS
25965343
Seven.Remix.XP.2...63.exe3
82 KB
UNDER ANALYSIS
25965344
Seven.Remix.XP.2...63.exe3
82 KB
UNDER ANALYSIS
25965345
Skype.5.0.5.Crac...63.exe3
82 KB
UNDER ANALYSIS
25965346
Skype.5.0.5.Keyg...63.exe3
82 KB
UNDER ANALYSIS
25965347
Speed.MP3.Downlo...63.exe3
82 KB
UNDER ANALYSIS
25965348
Speed.MP3.Downlo...63.exe3
82 KB
UNDER ANALYSIS
25965349
VLC.Player.Video...63.exe3
82 KB
UNDER ANALYSIS
25965350
VLC.Player.Video...63.exe3
82 KB
UNDER ANALYSIS
25965351
Windows.Blinds.6...63.exe3
82 KB
UNDER ANALYSIS
25965352
Windows.Blinds.6...63.exe3
82 KB
UNDER ANALYSIS





Please find a detailed report concerning each individual sample below:
Filename
Result
Auto.Hide.IP.5.1...63.exe3
MALWARE

The file 'Auto.Hide.IP.5.1.0.2.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Auto.Hide.IP.5.1...63.exe3
MALWARE

The file 'Auto.Hide.IP.5.1.0.2.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
BatchPhoto.Pro.2...63.exe3
MALWARE

The file 'BatchPhoto.Pro.2.6.2.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
BatchPhoto.Pro.2...63.exe3
MALWARE

The file 'BatchPhoto.Pro.2.6.2.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Hard.Drive.Mecha...63.exe3
MALWARE

The file 'Hard.Drive.Mechanic.1.0.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Hard.Drive.Mecha...63.exe3
MALWARE

The file 'Hard.Drive.Mechanic.1.0.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Magic.Music.Edit...63.exe3
MALWARE

The file 'Magic.Music.Editor.8.10.1.221.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Magic.Music.Edit...63.exe3
MALWARE

The file 'Magic.Music.Editor.8.10.1.221.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Microsoft.Office...63.exe3
MALWARE

The file 'Microsoft.Office.Pro.2010.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Microsoft.Office...63.exe3
MALWARE

The file 'Microsoft.Office.Pro.2010.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Nero.burning.rom...63.exe3
MALWARE

The file 'Nero.burning.rom.10.3.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Nero.burning.rom...63.exe3
MALWARE

The file 'Nero.burning.rom.10.3.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Rainlendar.Pro.2...63.exe3
MALWARE

The file 'Rainlendar.Pro.2.6.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Rainlendar.Pro.2...63.exe3
MALWARE

The file 'Rainlendar.Pro.2.6.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Seven.Remix.XP.2...63.exe3
MALWARE

The file 'Seven.Remix.XP.2.4.1.509.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Seven.Remix.XP.2...63.exe3
MALWARE

The file 'Seven.Remix.XP.2.4.1.509.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Skype.5.0.5.Crac...63.exe3
MALWARE

The file 'Skype.5.0.5.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Skype.5.0.5.Keyg...63.exe3
MALWARE

The file 'Skype.5.0.5.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Speed.MP3.Downlo...63.exe3
MALWARE

The file 'Speed.MP3.Downloader.2.0.7.6.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Speed.MP3.Downlo...63.exe3
MALWARE

The file 'Speed.MP3.Downloader.2.0.7.6.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
VLC.Player.Video...63.exe3
MALWARE

The file 'VLC.Player.VideoLAN.1.1.5.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
VLC.Player.Video...63.exe3
MALWARE

The file 'VLC.Player.VideoLAN.1.1.5.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Windows.Blinds.6...63.exe3
MALWARE

The file 'Windows.Blinds.6..Theme.Pack.100.Crack.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.
Filename
Result
Windows.Blinds.6...63.exe3
MALWARE

The file 'Windows.Blinds.6..Theme.Pack.100.Keygen.40063.exe3' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Dldr.Renos.MJ.554.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection is added to our virus definition file (VDF) starting with version 7.10.14.130.

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
jayavira
发表于 2010-11-28 16:13:36 | 显示全部楼层
回复 495楼 sam.to 的帖子

ess 清空

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
414447992
发表于 2010-11-28 16:21:01 | 显示全部楼层
459L


360杀毒扫描日志

病毒库版本:6320674
扫描时间:2010-11-28 16:19:13
扫描用时:00:00:04
扫描类型:右键扫描
扫描文件总数:24
威胁总数:24

扫描选项
----------------------
扫描所有文件:是
扫描压缩包:是
发现病毒处理方式:通知用户
扫描系统内存:是
扫描磁盘引导区:是
扫描 Rootkit:是
使用QVM启发式引擎:是

扫描内容
----------------------
C:\Users\user\Desktop\2010-Nov-28-1553


白名单设置
----------------------


扫描结果
======================
病毒扫描结果
----------------------
C:\Users\user\Desktop\2010-Nov-28-1553\Auto.Hide.IP.5.1.0.2.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Auto.Hide.IP.5.1.0.2.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\BatchPhoto.Pro.2.6.2.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\BatchPhoto.Pro.2.6.2.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Hard.Drive.Mechanic.1.0.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Hard.Drive.Mechanic.1.0.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Magic.Music.Editor.8.10.1.221.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Magic.Music.Editor.8.10.1.221.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Microsoft.Office.Pro.2010.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Microsoft.Office.Pro.2010.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Nero.burning.rom.10.3.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Nero.burning.rom.10.3.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Rainlendar.Pro.2.6.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Rainlendar.Pro.2.6.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Seven.Remix.XP.2.4.1.509.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Seven.Remix.XP.2.4.1.509.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Skype.5.0.5.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Skype.5.0.5.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Speed.MP3.Downloader.2.0.7.6.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Speed.MP3.Downloader.2.0.7.6.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\VLC.Player.VideoLAN.1.1.5.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\VLC.Player.VideoLAN.1.1.5.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Windows.Blinds.6..Theme.Pack.100.Crack.40063.exe3        木马(行为和木马比较相似的程序)        已删除
C:\Users\user\Desktop\2010-Nov-28-1553\Windows.Blinds.6..Theme.Pack.100.Keygen.40063.exe3        木马(行为和木马比较相似的程序)        已删除
Mr.L
发表于 2010-11-28 18:04:03 | 显示全部楼层
  459L
  
  金山卫士清空
歌歌的人
发表于 2010-11-28 18:06:34 | 显示全部楼层
AVG不给力,全过
留侯
发表于 2010-11-28 18:06:55 | 显示全部楼层
495L,又是同一种病毒啊!
大蜘蛛:765735-495\2010-nov-28-1553\auto.hide.ip.5.1.0.2.crack.40063.exe3 - infected with Trojan.DownLoader1.40415
奥古斯都
发表于 2010-11-28 18:17:08 | 显示全部楼层
本帖最后由 奥古斯都 于 2010-11-28 18:28 编辑

495L解压密码是什么啊
jim95
发表于 2010-11-28 18:40:17 | 显示全部楼层
悲剧,mse加金山网盾都没反应
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-2-1 02:52 , Processed in 0.108657 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表