卡饭茶舍 | 软件下载专区 | HIPS专区 | 防火墙专区 | 病毒样本区 | 国内杀软专区 | 国外杀软专区 | 卡饭计算机安全软件下载中心
免费的安全盛宴 | 关于安全软件的12个谣言和误会~ 卡巴官方最新正式版 | 官方最新测试版帮助他人,快乐自己 | 助人者,人助之91款国外杀毒软件官方介绍 附优秀文章
论坛常见问题解答 | 相逢在论坛从杀毒软件到文化 | 我们为什么要装防火墙hips新手入门 | 卡饭HIPS教程集合病毒样本区 | 费尔区
 17 12
发新话题
打印

[病毒样本] 27scan.exe

27scan.exe

附件: 您所在的用户组无法下载或查看附件




Hilary Duff Reach Out
Jolin 爱的练习语
布兰妮 Circus
Scan Log
Version of virus signature database: 3394 (20080827)
Date: 2008-8-28  Time: 5:47:52
Scanned disks, folders and files: G:\v\27scan.rar
G:\v\27scan.rar » RAR » 27scan.exe - a variant of Win32/Kryptik.E trojan - was a part of the deleted object
Number of scanned objects: 1
Number of threats found: 1
Number of cleaned objects: 1
Time of completion: 5:47:52  Total scanning time: 0 sec (00:00:00)




Hilary Duff Reach Out
Jolin 爱的练习语
布兰妮 Circus

TOP

Kaspersky miss
TO KL




Dr.Web
Trojan.Packed.619.


红酥手,黄滕酒,满城春色宫墙柳。东风恶,欢情薄,一怀愁绪,几年离索。错,错,错!
春如旧,人空瘦,泪痕红浥鲛绡透。桃花落,闲池阁,山盟虽在,锦书难托。莫,莫,莫!
Avira Antivir 样本在线提交:http://analysis.avira.com/samples

TOP

Hello,

27scan.exe - Backdoor.Win32.Frauder.bn

New malicious software was found in this file. It's detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Vladimir Lebedev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.



> Attachment: 27scan.rar


TOP

efenseWall HIPS log file

08.28.2008  09:16:02,模块 C:\Documents and Settings\htyhzd\桌面\27scan.exe, 企图 设置值 lphc17dj0ej11 在注册表键 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ (注册表)

08.28.2008  09:16:02,模块 C:\Documents and Settings\htyhzd\桌面\27scan.exe, 企图 设置值 lphc17dj0ej11 在注册表键 HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ (注册表)

08.28.2008  09:16:02,模块 C:\Documents and Settings\htyhzd\桌面\27scan.exe, 企图 设置值 Personal 在注册表键 HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\ (注册表)

08.28.2008  09:16:02,模块 C:\Documents and Settings\htyhzd\桌面\27scan.exe, 企图 设置值 Common Documents 在注册表键 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\ (注册表)

08.28.2008  09:16:02,模块 C:\Documents and Settings\htyhzd\桌面\27scan.exe, 企图 设置值 Desktop 在注册表键 HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\ (注册表)

08.28.2008  09:16:02,模块 C:\Documents and Settings\htyhzd\桌面\27scan.exe, 企图 设置值 Common Desktop 在注册表键 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\ (注册表)


TOP

红伞miss了。。。


TOP

NIS2008  飘过


TOP

微点拦截
附件: 您所在的用户组无法下载或查看附件


MSG to hack:  the first vir who bypass Micropoint  will be the first killed in the next 24hours!!!

TOP

NOD32 搞定!
附件: 您所在的用户组无法下载或查看附件


TOP

 17 12
发新话题
卡饭论坛