样本来自:
http://bbs.ikaka.com/showtopic-8602689.aspx多引擎扫描结果如下:
VirSCAN.org Scanned Report :
Scanned time : 2009/03/04 10:11:45 (CST)
Scanner results: 65%的杀软(24/37)报告发现病毒
File Name : inst.rar
File Size : 383758 byte
File Type : RAR archive data, v1d, os
MD5 : 38ccafceb83d4d1e1e99c1256385d0ee
SHA1 : e59db932da78940b76ecd3a31d24a559d439c4fb
Online report :
http://virscan.org/report/c9b4763e5b698361dfdb30b7917853e3.htmlScanner Engine Ver Sig Ver Sig Date Time Scan result
a-squared 4.0.0.32 20090303200327 2009-03-03 4.01 Trojan.HackTool.Vb.DF!IK
安博士V3 2009.03.04.00 2009.03.04 2009-03-04 1.08 Win-Trojan/Xema.variant
AntiVir 7.9.0.98 7.1.2.113 2009-03-03 1.90 TR/Virtl.5650
安天 2.0.18 20090303.2207153 2009-03-03 0.12 Monitor/Win32.IKeyLogger.12[:not_virus]
Authentium 5.1.1 200903032212 2009-03-03 1.08 W32/Trojan5.CUF (Exact)
AVAST! 3.0.1 090303-2 2009-03-04 0.03 Win32:Trojan-gen {Other}
AVG 7.5.52.442 270.11.7/1982 2009-03-03 1.96 Logger.AZS
BitDefender 7.81008.2705241 7.23951 2009-03-04 2.51 Virtool.5650
CA (VET) 9.0.0.143 31.6.6381 2009-03-03 3.12 -
ClamAV 0.94.2 9065 2009-03-03 0.08 Trojan.PoisonIvy-7
Comodo 3.8 986 2009-03-03 0.44 -
CP Secure 1.1.0.715 2009.03.03 2009-03-03 7.23 BackDoor.W32.PoisonIvy.g
Dr.Web 4.44.0.9170 2009.03.03 2009-03-03 4.14 -
F-Prot 4.4.4.56 20090303 2009-03-03 1.07 W32/Trojan5.CUF (exact)
F-Secure 5.51.6100 2009.03.03.08 2009-03-03 4.83 -
飞塔 2.81-3.117 10.110 2009-03-03 0.22 Suspicious
GData 19.3623/19.247 20090304 2009-03-04 3.28 Win32:Trojan-gen {Other} [Engine:B]
ViRobot 20090303 2009.03.03 2009-03-03 0.41 -
Ikarus T3.1.01.45 2009.03.04.72380 2009-03-04 4.17 Trojan.HackTool.Vb.DF
江民杀毒 11.0.706 2009.03.03 2009-03-03 1.53 -
卡巴斯基 5.5.10 2009.03.03 2009-03-03 0.12 -
金山毒霸 2009.2.5.15 2009.3.4.9 2009-03-04 0.66 -
迈克菲 5.3.00 5542 2009-03-03 2.92 Generic.dx
Microsoft 1.4405 2009.03.04 2009-03-04 6.93 -
mks_vir 2.01 2009.03.03 2009-03-03 2.66 Spyware.IKeyLogger_12
Norman 6.00.06 6.00.00 2009-03-03 8.01 -
熊猫卫士 9.05.01 2009.03.03 2009-03-03 1.83 Malicious Packer
趋势科技 8.700-1004 5.878.09 2009-03-03 0.07 -
Quick Heal 10.00 2009.03.03 2009-03-03 1.21 -
瑞星 20.0 21.19.11.00 2009-03-03 5.84 -
Sophos 2.84.1 4.39 2009-03-04 2.03 Mal/Generic-A
Sunbelt 5018 5018 2009-03-02 0.58 Trojan.Unclassified.gen
赛门铁克 1.3.0.24 20090303.003 2009-03-03 0.05 Trojan Horse
nProtect 20090303.02 3210092 2009-03-03 4.53 Trojan/W32.HackTool.592637
The Hacker 6.3.2.7 v00271 2009-03-03 0.67 Aplicacion/IKeyLogger.12 (Unwanted)
VBA32 3.12.10.1 20090303.1030 2009-03-03 2.61 BackDoor.Bifrost.637
VirusBuster 4.5.11.10 10.101.32/964630 2009-03-03 1.18 Trojan.Agent.DTPS
请鉴定……
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)附件:
inst.rar