楼主: sam.to
收起左侧

[病毒样本] 过主流2 (天天更新) (此帖完,1024楼有新帖子地址)

  [复制链接]
留侯
发表于 2011-2-25 20:24:38 | 显示全部楼层
大蜘蛛:
765735-738\99.dll - infected with Trojan.MulDrop1.59382
765735-738\99.dll - packed by PECOMPACT
hj5abc
发表于 2011-2-25 21:42:41 | 显示全部楼层
#732
CI清空
#738
generic trojan
by panda
billgates1996
发表于 2011-2-26 13:07:38 | 显示全部楼层
738#
FS kill
sam.to
 楼主| 发表于 2011-3-2 11:02:38 | 显示全部楼层
本帖最后由 sam.to 于 2011-3-2 19:43 编辑

9307ec09cf542190dbb8f4e69d523220  Corel.VideoStudio.Pro.X4.14.0.0.342.Crack.40063.exe+
578b87f54cab05db9affd3fc90b25f5d  Corel.VideoStudio.Pro.X4.14.0.0.342.Keygen.40063.exe+
d2abb5be717e8546398ed45003b3cbe9  Galcott.PDF.Converter.3.01.Crack.40063.exe+
e590011666fba002e8811ce6daed9035  Galcott.PDF.Converter.3.01.Keygen.40063.exe+
1179984a785559eadc3c3c9455ae10a3  HANDY.BACKUP.SERVER.6.8.2.7170.Crack.40063.exe+
151540f6b21767fde27120e61e796530  HANDY.BACKUP.SERVER.6.8.2.7170.Keygen.40063.exe+
398530d4b719623e673612ecd8245cf2  PhoXo.7.1.Crack.40063.exe+
afe4f5bfe24bd983085fd0e7ca759f05  PhoXo.7.1.Keygen.40063.exe+
e6073ea920f3ba6bfe76454f5941fef5  Steam.Clock.3D.Screensaver.1.0.0.1.Crack.40063.exe+
7e254d940639223e640710e6c53cc038  Steam.Clock.3D.Screensaver.1.0.0.1.Keygen.40063.exe+
cdea9067da0f55228fb45b6b2e4e5571  VMWare.ThinApp.4.6.1.Crack.40063.exe+
a780969cb18aa2bea0be1d872143c1aa  VMWare.ThinApp.4.6.1.Keygen.40063.exe+


to kl,ll,mcafee,comodo,avira




We received the following archive files:

File ID
Filename
Size (Byte)
Result
26062672
765735-744.rar
55.35 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
26062673
Corel.VideoStudi...63.exe+
63.5 KB
UNDER ANALYSIS
26062674
Corel.VideoStudi...63.exe+
63.5 KB
UNDER ANALYSIS
26062675
Galcott.PDF.Conv...63.exe+
63.5 KB
UNDER ANALYSIS
26062676
Galcott.PDF.Conv...63.exe+
63.5 KB
UNDER ANALYSIS
26062677
HANDY.BACKUP.SER...63.exe+
63.5 KB
UNDER ANALYSIS
26062678
HANDY.BACKUP.SER...63.exe+
63.5 KB
UNDER ANALYSIS
26062679
PhoXo.7.1.Crack....63.exe+
63.5 KB
UNDER ANALYSIS
26062680
PhoXo.7.1.Keygen...63.exe+
63.5 KB
UNDER ANALYSIS
26062681
Steam.Clock.3D.S...63.exe+
63.5 KB
UNDER ANALYSIS
26062682
Steam.Clock.3D.S...63.exe+
63.5 KB
UNDER ANALYSIS
26062683
VMWare.ThinApp.4...63.exe+
63.5 KB
UNDER ANALYSIS
26062684
VMWare.ThinApp.4...63.exe+
63.5 KB
UNDER ANALYSIS



Please find a detailed report concerning each individual sample below:
Filename
Result
Corel.VideoStudi...63.exe+
MALWARE

The file 'Corel.VideoStudio.Pro.X4.14.0.0.342.Crack.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Corel.VideoStudi...63.exe+
MALWARE

The file 'Corel.VideoStudio.Pro.X4.14.0.0.342.Keygen.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Galcott.PDF.Conv...63.exe+
MALWARE

The file 'Galcott.PDF.Converter.3.01.Crack.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Galcott.PDF.Conv...63.exe+
MALWARE

The file 'Galcott.PDF.Converter.3.01.Keygen.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
HANDY.BACKUP.SER...63.exe+
MALWARE

The file 'HANDY.BACKUP.SERVER.6.8.2.7170.Crack.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
HANDY.BACKUP.SER...63.exe+
MALWARE

The file 'HANDY.BACKUP.SERVER.6.8.2.7170.Keygen.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
PhoXo.7.1.Crack....63.exe+
MALWARE

The file 'PhoXo.7.1.Crack.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
PhoXo.7.1.Keygen...63.exe+
MALWARE

The file 'PhoXo.7.1.Keygen.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Steam.Clock.3D.S...63.exe+
MALWARE

The file 'Steam.Clock.3D.Screensaver.1.0.0.1.Crack.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Steam.Clock.3D.S...63.exe+
MALWARE

The file 'Steam.Clock.3D.Screensaver.1.0.0.1.Keygen.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
VMWare.ThinApp.4...63.exe+
MALWARE

The file 'VMWare.ThinApp.4.6.1.Crack.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
VMWare.ThinApp.4...63.exe+
MALWARE

The file 'VMWare.ThinApp.4.6.1.Keygen.40063.exe+' has been determined to be 'MALWARE'.Our analysts named the threat TR/Dldr.Renos.MJ.85.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
KOI9009
发表于 2011-3-2 11:11:59 | 显示全部楼层
744L
360 SD 清空
hj5abc
发表于 2011-3-2 11:15:44 | 显示全部楼层
#744
Panda启发清空.
留侯
发表于 2011-3-2 11:22:20 | 显示全部楼层
大蜘蛛清空文件夹:
765735-744\2011-Mar-02-1053\Corel.VideoStudio.Pro.X4.14.0.0.342.Crack.40063.exe+ 已感染:  Trojan.DownLoader2.16274 - 已删除

同一种病毒类型,余下日志不再上传。
瓜皮猫
发表于 2011-3-2 12:31:01 | 显示全部楼层
744L
eset  kill
a variant of Win32/Kryptik.LFK trojan

评分

参与人数 1人气 +1 收起 理由
jayavira + 1 换成英文版?

查看全部评分

sam.to
 楼主| 发表于 2011-3-5 21:26:10 | 显示全部楼层
本帖最后由 sam.to 于 2011-3-7 20:18 编辑

4841b480ecb8fcea583dafde91b273a8  Adobe.Photoshop..2011.Crack.40063.exe+
dd6f3dd8d741066a31529f09dde4fff9  Adobe.Photoshop..2011.Keygen.40063.exe+
b60d32f2868ff7847c04c1eda498e0bb  GetData.Recover.My.Files.Professional.4.6.8.1012.Crack.40063.exe+
7ca6328e19494f08776f1f5e4ffed177  GetData.Recover.My.Files.Professional.4.6.8.1012.Keygen.40063.exe+
b91406690cfb99cde3ba081c9a6215eb  Microsoft.Remote.Desktop.Connection.2.1.0.Crack.40063.exe+
e6403a7eccb89b652e5e711d70443be1  Microsoft.Remote.Desktop.Connection.2.1.0.Keygen.40063.exe+
30508ba8bbcf4c0bfb58d1550230a946  TeamViewer.MultiL.6.0.10124.Crack.40063.exe+
99535c702e4a1d3e3d9c7c4babd8fcec  TeamViewer.MultiL.6.0.10124.Keygen.40063.exe+
8ea0df1312bd1c6a3f42e14d205288e9  Total.Video.Converter.3.50.Crack.40063.exe+
309d6c6ca7428e202477b5068901d998  Total.Video.Converter.3.50.Keygen.40063.exe+
f93c97e69a9870daba0f79351629060e  Windows.XP.SP3.2011.11.02.Crack.40063.exe+
e9ebbdb0360b1d86d9d0801851ac284c  Windows.XP.SP3.2011.11.02.Keygen.40063.exe+


to kl,ll,mcafee,comodo,avira,dr.web,clamwin



File ID
Filename
Size (Byte)
Result
26066090
765735-749.rar
66.82 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
26066091
Adobe.Photoshop....63.exe+
65.5 KB
UNDER ANALYSIS
26066092
Adobe.Photoshop....63.exe+
65.5 KB
UNDER ANALYSIS
26066093
GetData.Recover....63.exe+
65.5 KB
UNDER ANALYSIS
26066094
GetData.Recover....63.exe+
65.5 KB
UNDER ANALYSIS
26066095
Microsoft.Remote...63.exe+
65.5 KB
UNDER ANALYSIS
26066096
Microsoft.Remote...63.exe+
65.5 KB
UNDER ANALYSIS
26066097
TeamViewer.Multi...63.exe+
65.5 KB
UNDER ANALYSIS
26066098
TeamViewer.Multi...63.exe+
65.5 KB
UNDER ANALYSIS
26066099
Total.Video.Conv...63.exe+
65.5 KB
UNDER ANALYSIS
26066100
Total.Video.Conv...63.exe+
65.5 KB
UNDER ANALYSIS
26066101
Windows.XP.SP3.2...63.exe+
65.5 KB
UNDER ANALYSIS
26066102
Windows.XP.SP3.2...63.exe+
65.5 KB
UNDER ANALYSIS





Please find a detailed report concerning each individual sample below:
Filename
Result
Adobe.Photoshop....63.exe+
MALWARE

The file 'Adobe.Photoshop..2011.Crack.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Adobe.Photoshop....63.exe+
MALWARE

The file 'Adobe.Photoshop..2011.Keygen.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
GetData.Recover....63.exe+
MALWARE

The file 'GetData.Recover.My.Files.Professional.4.6.8.1012.Crack.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
GetData.Recover....63.exe+
MALWARE

The file 'GetData.Recover.My.Files.Professional.4.6.8.1012.Keygen.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Microsoft.Remote...63.exe+
MALWARE

The file 'Microsoft.Remote.Desktop.Connection.2.1.0.Crack.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Microsoft.Remote...63.exe+
MALWARE

The file 'Microsoft.Remote.Desktop.Connection.2.1.0.Keygen.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
TeamViewer.Multi...63.exe+
MALWARE

The file 'TeamViewer.MultiL.6.0.10124.Crack.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
TeamViewer.Multi...63.exe+
MALWARE

The file 'TeamViewer.MultiL.6.0.10124.Keygen.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Total.Video.Conv...63.exe+
MALWARE

The file 'Total.Video.Converter.3.50.Crack.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Total.Video.Conv...63.exe+
MALWARE

The file 'Total.Video.Converter.3.50.Keygen.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Windows.XP.SP3.2...63.exe+
MALWARE

The file 'Windows.XP.SP3.2011.11.02.Crack.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Windows.XP.SP3.2...63.exe+
MALWARE

The file 'Windows.XP.SP3.2011.11.02.Keygen.40063.exe+' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Drop.Renos.L.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.



本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
KOI9009
发表于 2011-3-5 21:29:10 | 显示全部楼层
749L
360 SD QVM11 清空
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-30 10:50 , Processed in 0.113722 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表