查看: 3082|回复: 14
收起左侧

[病毒样本] 病毒13个

[复制链接]
troika
发表于 2007-5-7 05:21:12 | 显示全部楼层 |阅读模式
呵呵

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-5-7 05:25:09 | 显示全部楼层

強,加的什么殼??竟然能讓nod32脫50S的殼

Scan performed at: 2007-5-7 5:24:07
Scanning Log
NOD32 version 2245 (20070506) NT
Command line: C:\Documents and Settings\EQ2\桌面\Downloads
Operating memory - is OK

Date: 7.5.2007  Time: 05:24:11
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\Downloads\
C:\Documents and Settings\EQ2\桌面\Downloads\0501.exe - a variant of Win32/Hupigon trojan
C:\Documents and Settings\EQ2\桌面\Downloads\2.exe - a variant of Win32/Spy.Delf.NEH trojan
C:\Documents and Settings\EQ2\桌面\Downloads\axd.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\EQ2\桌面\Downloads\callup.exe - a variant of Win32/Hupigon trojan
C:\Documents and Settings\EQ2\桌面\Downloads\qq(1).exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\EQ2\桌面\Downloads\qq2007.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\EQ2\桌面\Downloads\Q币、Q会员限量发售.exe - a variant of Win32/Hupigon trojan
C:\Documents and Settings\EQ2\桌面\Downloads\免费刷红钻会员.exe - Win32/PSW.QQPass.NAK trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\Downloads\新跑跑牛车-无限加速.exe - a variant of Win32/Hupigon trojan
Number of scanned files: 13
Number of threats found: 9
Number of files cleaned: 9
Time of completion: 05:25:01 Total scanning time: 50 sec (00:00:50)
mofunzone
发表于 2007-5-7 05:30:52 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\morgan\My Documents\Downloads'
C:\Documents and Settings\morgan\My Documents\Downloads\
  0501.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSAnti.Gen
      [WARNING]   The file was ignored!
  142813qwe44144.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [WARNING]   The file was ignored!
  2.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
  axd.exe
      [DETECTION] Is the Trojan horse TR/Proxy.Delf.CA
      [WARNING]   The file was ignored!
  callup.exe
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   The file was ignored!
  qq(1).exe
      [DETECTION] Is the Trojan horse TR/Proxy.Delf.CA
      [WARNING]   The file was ignored!
  qq.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
  qq2007.exe
      [DETECTION] Is the Trojan horse TR/Proxy.Delf.CA
      [WARNING]   The file was ignored!
  QQ工具套装.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
  qzone.exe
      [DETECTION] Is the Trojan horse TR/PSW.QQPass.WD.1
      [WARNING]   The file was ignored!
  Q币、Q会员限量发售.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [WARNING]   The file was ignored!
  免费刷红钻会员.exe
      [DETECTION] Is the Trojan horse TR/Spy.Delf.MO.2
      [WARNING]   The file was ignored!
  新跑跑牛车-无限加速.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [WARNING]   The file was ignored!


End of the scan: 2007年5月6日  14:31
Used time: 00:16 min

The scan has been done completely.

      1 Scanning directories
     13 Files were scanned
     13 viruses and/or unwanted programs were found
      4 classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -4 Files not concerned
      0 Archives were scanned
     13 Warnings
      0 Notes
      0 Hidden objects were found
The EQs
发表于 2007-5-7 05:33:15 | 显示全部楼层

Scan performed at: 2007-5-7 5:32:52
Scanning Log
NOD32 version 2245 (20070506) NT
Command line: C:\Documents and Settings\EQ2\桌面\callup.exe
Operating memory - is OK

Date: 7.5.2007  Time: 05:32:56
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\callup.exe
C:\Documents and Settings\EQ2\桌面\callup.exe - a variant of Win32/Hupigon trojan
Number of scanned files: 1
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 05:33:24 Total scanning time: 28 sec (00:00:28)
Whkroran
发表于 2007-5-7 05:34:26 | 显示全部楼层
不是13个吧 ! 卡巴7.0查出了41个 !!!
The EQs
发表于 2007-5-7 05:35:06 | 显示全部楼层
LS的強。。。。。明明就13個文件除非你不直接解壓。。。
The EQs
发表于 2007-5-7 05:37:24 | 显示全部楼层
File: callup.exe
Status: INFECTED/MALWARE
MD5 acc0b3b9df5918119358409f2d46abaa
Packers detected: SVKP
Scanner results
Scan taken on 06 May 2007 21:33:27 (GMT)
A-Squared Found nothing
AntiVir Found HEUR/Crypted
ArcaVir Found nothing
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found nothing
ClamAV Found nothing
Dr.Web Found nothing
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found nothing
Fortinet Found nothing
Kaspersky Anti-Virus Found nothing
NOD32 Found a variant of Win32/Hupigon
Norman Virus Control Found nothing
Panda Antivirus Found nothing
Rising Antivirus Found nothing
VirusBuster Found nothing
VBA32 Found nothing




AntivirusVersionUpdateResult
AhnLab-V32007.5.4.005.04.2007 [td]no virus found
AntiVir7.4.0.1505.06.2007HEUR/Crypted
Authentium4.93.805.04.2007 [td]no virus found
Avast4.7.997.005.05.2007 [td]no virus found
AVG7.5.0.46705.06.2007 [td]no virus found
BitDefender7.205.06.2007 [td]no virus found
CAT-QuickHeal9.0005.05.2007(Suspicious) - DNAScan
ClamAVdevel-2007041605.06.2007 [td]no virus found
DrWeb4.3305.06.2007 [td]no virus found
eSafe7.0.15.005.03.2007Suspicious Trojan/Worm
eTrust-Vet30.7.361505.05.2007 [td]no virus found
Ewido4.005.06.2007 [td]no virus found
FileAdvisor105.06.2007 [td]no virus found
Fortinet2.85.0.005.06.2007suspicious
F-Prot4.3.2.4805.04.2007 [td]no virus found
F-Secure6.70.13030.005.06.2007 [td]no virus found
IkarusT3.1.1.705.06.2007Backdoor.Win32.Hupigon.gs
Kaspersky4.0.2.2405.06.2007 [td]no virus found
McAfee502405.04.2007New Malware.an
Microsoft1.250305.06.2007 [td]no virus found
NOD32v2224505.06.2007a variant of Win32/Hupigon
Norman5.80.0205.04.2007 [td]no virus found
Panda9.0.0.405.06.2007Suspicious file
Prevx1V205.06.2007 [td]no virus found
Sophos4.17.005.05.2007 [td]no virus found
Sunbelt2.2.907.005.05.2007VIPRE.Suspicious
Symantec1005.06.2007 [td]no virus found
TheHacker6.1.6.10404.15.2007 [td]no virus found
VBA323.11.405.04.2007 [td]no virus found
VirusBuster4.3.7:905.06.2007 [td]no virus found
Webwasher-Gateway6.0.105.06.2007Heuristic.Crypted


Aditional Information
File size: 410112 bytes
MD5: acc0b3b9df5918119358409f2d46abaa
SHA1: 58a3b1e577efa1fda5151f0317a9e7a344150f51
packers: SVKP
packers: SVKProtector
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.



好強的鴿子。。jotti上只有nod32能脫出來。。怪不得脫了這么長時間

[ 本帖最后由 EQ2 于 2007-5-7 05:44 编辑 ]
马力
发表于 2007-5-7 08:23:04 | 显示全部楼层
驱逐舰7个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
kp2006
头像被屏蔽
发表于 2007-5-7 09:03:27 | 显示全部楼层
安铁诺报了8个
moonsilver
发表于 2007-5-7 09:12:16 | 显示全部楼层
C:\Documents and Settings\moonsilver\桌面\Downloa
ds[1].rar>>Downloads[1]\qq.exe>>aspr.ske.2.x.new

Backdoor.Gpigeon.GEN

C:\Documents and Settings\moonsilver\桌面\Downloa
ds[1].rar>>Downloads[1]\免费刷红钻会员.exe>>fsg2.0

Trojan.QQMSG.MsgSender.a

rising
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-6 10:43 , Processed in 0.192508 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表