瑞星卡卡安全论坛

首页 » 技术交流区 » 可疑文件交流 » 我下载了一个名为迅雷工具箱.exe的软件瑞星没有报毒~但是我用网站查毒看了下有毒我贴出来~
wyyw1232000 - 2009-3-18 17:52:00
反病毒引擎
版本最后更新扫描结果
a-squared4.0.0.1012009.03.18Virus.Win32.Agent.COH!IK
AhnLab-V35.0.0.22009.03.18Win-Trojan/Xema.variant
AntiVir7.9.0.1162009.03.18TR/Dropper.Gen
Authentium5.1.2.42009.03.18W32/Nuj.A.gen!Eldorado
Avast4.8.1335.02009.03.17-
AVG8.0.0.2372009.03.17SHeur.CMDD
BitDefender7.22009.03.18-
CAT-QuickHeal10.002009.03.18Trojan.Agent.gen
ClamAV0.94.12009.03.18Trojan.Agent-64034
Comodo10622009.03.17TrojWare.Win32.TrojanDropper.VB.~AAAG
DrWeb4.44.0.091702009.03.18-
eSafe7.0.17.02009.03.17-
eTrust-Vet31.6.63882009.03.09Win32/SillyAutorun.ALB
F-Prot4.4.4.562009.03.17W32/Nuj.A.gen!Eldorado
F-Secure8.0.14470.02009.03.18-
Fortinet3.117.0.02009.03.18-
GData192009.03.18-
IkarusT3.1.1.45.02009.03.18Virus.Win32.Agent.COH
K7AntiVirus7.10.6742009.03.17-
Kaspersky7.0.0.1252009.03.18-
McAfee55562009.03.17-
McAfee+Artemis55562009.03.17-
McAfee-GW-Edition6.7.62009.03.18Trojan.Dropper.Gen
Microsoft1.45022009.03.18Worm:Win32/Autorun.JC
NOD3239442009.03.17-
Norman6.00.062009.03.17-
nProtect2009.1.8.02009.03.18Trojan/W32.Agent.718796
Panda10.0.0.102009.03.18-
PCTools4.4.2.02009.03.17-
Prevx1V22009.03.18-
Rising21.21.22.002009.03.18-
Sophos4.39.02009.03.18-
Sunbelt3.2.1858.22009.03.18-
Symantec1.4.4.122009.03.18-
TheHacker6.3.3.0.2832009.03.16-
TrendMicro8.700.0.10042009.03.18-
VBA323.12.10.12009.03.17Trojan-Downloader.Win32.FlyStudio.eq
ViRobot2009.3.18.16542009.03.18-
VirusBuster4.6.5.02009.03.17-
附加信息
File size: 1094593 bytes
MD5...: 1ebd421f81b60336fefe9d7c0e029b1a
SHA1..: c7f898f06b93f65bec619f6ba14e4f3441805d05
SHA256: 2377301078da33b64bb8593ac1712d5f2d18eb21ccb4b1665f2882929c1e1f5e
SHA512: b8b072336c26d15ae3d54abdddc928077b21469d937b97bfdcf355fbe519c4b0
c0238eec1b9bad10bfb40df0b8f55d70e94209ec7d8c196fbddc1e22ed9b32f3
ssdeep: 24576:lhEpkT+VulrCJFY6HyfzUrr/kX2+7WDzj9CsBpqDeq/MLMz6t+2:lhEqT+
VulO06HYzGF+7WhC+pYeqEWY
PEiD..: Armadillo v1.71
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (62.9%)
Win32 Executable Generic (14.2%)
Win32 Dynamic Link Library (generic) (12.6%)
Clipper DOS Executable (3.3%)
Generic Win/DOS Executable (3.3%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x3861
timedatestamp.....: 0x59bffa3 (Mon Dec 25 05:33:23 1972)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x4dcc 0x5000 6.52 2e50996cc73c4c2fb7ea8f79cf982b26
.rdata 0x6000 0xa4a 0x1000 3.56 e5615fe4c75b4f7ba6eaedb684bf431c
.data 0x7000 0x1f58 0x2000 2.86 65f79c130923371bceab73bb68dbb967
.data 0x9000 0x2d000 0x2d000 6.12 b9e448c189410662d1be07d80204452e
.rsrc 0x36000 0x1de8 0x2000 3.84 b0dcb1dd513802dd22669e0cecb2cf91

( 2 imports )
> KERNEL32.dll: GetProcAddress, LoadLibraryA, CloseHandle, WriteFile, CreateDirectoryA, GetTempPathA, ReadFile, SetFilePointer, CreateFileA, GetModuleFileNameA, GetStringTypeA, LCMapStringW, LCMapStringA, HeapAlloc, HeapFree, GetModuleHandleA, GetStartupInfoA, GetCommandLineA, GetVersion, ExitProcess, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, FreeEnvironmentStringsA, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStrings, GetEnvironmentStringsW, SetHandleCount, GetStdHandle, GetFileType, RtlUnwind, GetCPInfo, GetACP, GetOEMCP, MultiByteToWideChar, GetStringTypeW
> USER32.dll: MessageBoxA, wsprintfA

( 0 exports )


我想问问~怎么办??
如何杀??

http://hi.baidu.com/xiaofu296/blog/item/91afcc3142167a1eebc4afdc.html
这个是下载地址~各位可以试试~!
用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1)

附件: 迅雷工具箱.rar
RisingCSC - 2009-3-19 9:25:00
感谢您对瑞星的支持,您所上报的文件已经收集,我们会抓紧分析并跟帖回复。
RisingCSC - 2009-3-20 11:13:00
经过分析,您所上报的文件不是病毒。
1
查看完整版本: 我下载了一个名为迅雷工具箱.exe的软件瑞星没有报毒~但是我用网站查毒看了下有毒我贴出来~