楼主: sam.to
收起左侧

[病毒样本] 过主流2 (天天更新) (此帖完,1024楼有新帖子地址)

  [复制链接]
留侯
发表于 2011-4-23 20:02:01 | 显示全部楼层
回复 860楼 sam.to 的帖子

是啊!應該可以查殺了吧!
小丑鱼ZZW
发表于 2011-4-23 20:07:15 | 显示全部楼层
密码是什么?什么叫过主流?单纯扫描过还是连主防或者HIPS也过?
sam.to
 楼主| 发表于 2011-4-24 13:06:31 | 显示全部楼层
本帖最后由 sam.to 于 2011-4-25 19:29 编辑

4fdd47d509c67cf5264e442b7318cef6  AceMoney.Lite.4.8.Crack.40063.exe
fffc22e3530b53cc8c42b7e23513ff08  AceMoney.Lite.4.8.Keygen.40063.exe
224952a4d4ed9b1de8bfc664aad1eb67  Adobe.Dreamweaver.CS5.11.0.4909.Crack.40063.exe
f18f160e6f38a837f6107ca345342be7  Adobe.Dreamweaver.CS5.11.0.4909.Keygen.40063.exe
3703599378753217bf5fbd2df5651455  HomePlanSoft.Home.Plan.Pro.5.2.25.1.Crack.40063.exe
6969025af6b7c1687f8b96ce2004363b  HomePlanSoft.Home.Plan.Pro.5.2.25.1.Keygen.40063.exe
f5699732f0668963c023422680131572  Visual.Importer.4.9.8.5.Crack.40063.exe
4c6aa30f0f9bf0033ba59a971464f07b  Visual.Importer.4.9.8.5.Keygen.40063.exe
70a7e5c96a9ac5a0654661513286bbe7  Xplorer2.Professional.1.8.4.1.Crack.40063.exe
bdbf1c05968f54f9a2784f0792c4b0af  Xplorer2.Professional.1.8.4.1.Keygen.40063.exe
55aa303bde7ce3bb4763d38acab11c43  ZoneAlarm.Free.9.2.106.00.Crack.40063.exe
6a9c332c6ecf419fee54d73b1a279f86  ZoneAlarm.Free.9.2.106.00.Keygen.40063.exe

7187B3ACA0CF2ABE10011066F464ADBB

to kl,ll,mcafee,AntiVir,ClamAV



We received the following archive files:

File ID
Filename
Size (Byte)
Result
26113715
765735-863.rar
57.36 KB
OK
A listing of files contained inside archives alongside their results can be found below:
File ID
Filename
Size (Byte)
Result
26113716
AceMoney.Lite.4.8...63.exe
76.5 KB
UNDER ANALYSIS
26113717
AceMoney.Lite.4.8...63.exe
76.5 KB
UNDER ANALYSIS
26113718
Adobe.Dreamweaver...63.exe
76.5 KB
UNDER ANALYSIS
26113719
Adobe.Dreamweaver...63.exe
76.5 KB
UNDER ANALYSIS
26113720
HomePlanSoft.Home...63.exe
76.5 KB
UNDER ANALYSIS
26113721
HomePlanSoft.Home...63.exe
76.5 KB
UNDER ANALYSIS
26113722
Visual.Importer.4...63.exe
76.5 KB
UNDER ANALYSIS
26113723
Visual.Importer.4...63.exe
76.5 KB
UNDER ANALYSIS
26113724
Xplorer2.Professi...63.exe
76.5 KB
UNDER ANALYSIS
26113725
Xplorer2.Professi...63.exe
76.5 KB
UNDER ANALYSIS
26113726
ZoneAlarm.Free.9....63.exe
76.5 KB
UNDER ANALYSIS
26113727
ZoneAlarm.Free.9....63.exe
76.5 KB
UNDER ANALYSIS




Please find a detailed report concerning each individual sample below:
Filename
Result
AceMoney.Lite.4.8...63.exe
MALWARE

The file 'AceMoney.Lite.4.8.Crack.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
AceMoney.Lite.4.8...63.exe
MALWARE

The file 'AceMoney.Lite.4.8.Keygen.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Adobe.Dreamweaver...63.exe
MALWARE

The file 'Adobe.Dreamweaver.CS5.11.0.4909.Crack.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Adobe.Dreamweaver...63.exe
MALWARE

The file 'Adobe.Dreamweaver.CS5.11.0.4909.Keygen.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
HomePlanSoft.Home...63.exe
MALWARE

The file 'HomePlanSoft.Home.Plan.Pro.5.2.25.1.Crack.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
HomePlanSoft.Home...63.exe
MALWARE

The file 'HomePlanSoft.Home.Plan.Pro.5.2.25.1.Keygen.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Visual.Importer.4...63.exe
MALWARE

The file 'Visual.Importer.4.9.8.5.Crack.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Visual.Importer.4...63.exe
MALWARE

The file 'Visual.Importer.4.9.8.5.Keygen.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Xplorer2.Professi...63.exe
MALWARE

The file 'Xplorer2.Professional.1.8.4.1.Crack.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
Xplorer2.Professi...63.exe
MALWARE

The file 'Xplorer2.Professional.1.8.4.1.Keygen.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
ZoneAlarm.Free.9....63.exe
MALWARE

The file 'ZoneAlarm.Free.9.2.106.00.Crack.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.
Filename
Result
ZoneAlarm.Free.9....63.exe
MALWARE

The file 'ZoneAlarm.Free.9.2.106.00.Keygen.40063.exe' has been determined to be 'MALWARE'.
Our analysts named the threat TR/Jorik.Skor.vx.The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system.Detection will be added to our virus definition file (VDF) with one of the next updates.




AceMoney.Lite.4.8.Crack.40063.exe3 - Trojan.Win32.Jorik.Skor.wp
AceMoney.Lite.4.8.Keygen.40063.exe3 - Trojan.Win32.Jorik.Skor.wq
Adobe.Dreamweaver.CS5.11.0.4909.Crack.40063.exe3 - Trojan.Win32.Jorik.Skor.wr
Adobe.Dreamweaver.CS5.11.0.4909.Keygen.40063.exe3 - Trojan.Win32.Jorik.Skor.ws
HomePlanSoft.Home.Plan.Pro.5.2.25.1.Crack.40063.exe3 - Trojan.Win32.Jorik.Skor.wt
HomePlanSoft.Home.Plan.Pro.5.2.25.1.Keygen.40063.exe3 - Trojan.Win32.Jorik.Skor.wu
Visual.Importer.4.9.8.5.Crack.40063.exe3 - Trojan.Win32.Jorik.Skor.wv
Visual.Importer.4.9.8.5.Keygen.40063.exe3 - Trojan.Win32.Jorik.Skor.ww
Xplorer2.Professional.1.8.4.1.Crack.40063.exe3 - Trojan.Win32.Jorik.Skor.wx
Xplorer2.Professional.1.8.4.1.Keygen.40063.exe3 - Trojan.Win32.Jorik.Skor.wy
ZoneAlarm.Free.9.2.106.00.Crack.40063.exe3 - Trojan.Win32.Jorik.Skor.wz
ZoneAlarm.Free.9.2.106.00.Keygen.40063.exe3 - Trojan.Win32.Jorik.Skor.xa


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
瓜皮猫
发表于 2011-4-24 13:18:17 | 显示全部楼层
863L
to eset
http://samples.nod32.com.sg/inde ... bcd856a06b976e675ca

ps:竟然没有加密。。。

评分

参与人数 1人气 +1 收起 理由
jayavira + 1 多谢上报

查看全部评分

咆哮的蜗牛
发表于 2011-4-24 13:25:01 | 显示全部楼层
863L 360杀毒清空
留侯
发表于 2011-4-24 14:04:52 | 显示全部楼层
863L,大蜘蛛清空:
765735-863\2011-Apr-24-1257\AceMoney.Lite.4.8.Crack.40063.exe3 已感染:  Trojan.DownLoader2.42380
Ricty
发表于 2011-4-24 14:50:02 | 显示全部楼层
本帖最后由 Ricty 于 2011-4-24 14:52 编辑
sam.to 发表于 2011-4-24 13:06
4fdd47d509c67cf5264e442b7318cef6  AceMoney.Lite.4.8.Crack.40063.exe
fffc22e3530b53cc8c42b7e23513ff0 ...

问一下,那个扩展名是后编辑的吧?但不会影响查杀?
exe3?
sam.to
 楼主| 发表于 2011-4-24 17:18:07 | 显示全部楼层
Ricty 发表于 2011-4-24 14:50
问一下,那个扩展名是后编辑的吧?但不会影响查杀?
exe3?

不会
sam.to
 楼主| 发表于 2011-4-24 17:18:26 | 显示全部楼层
三生缘石 发表于 2011-4-24 13:18
863L
to eset
http://samples.nod32.com.sg/index.php?a=query&lang=3&md5=25fdeb1ddb756bcd856a06b976e6 ...

忘了@.@
bluelily
发表于 2011-4-24 17:25:40 | 显示全部楼层
本帖最后由 bluelily 于 2011-4-24 17:25 编辑

863L  avira  IK miss      全是同一种病毒
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-30 06:32 , Processed in 0.125954 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表