-
[i]Antivirus results[/i]
AhnLab-V3 - 2011.06.11.00 - 2011.06.10 - -
AntiVir - 7.11.9.156 - 2011.06.10 - [color=red]TR/Crypt.XPACK.Gen [/color]
Antiy-AVL - 2.0.3.7 - 2011.06.10 - -
Avast - 4.8.1351.0 - 2011.06.10 - -
Avast5 - 5.0.677.0 - 2011.06.10 - -
AVG - 10.0.0.1190 - 2011.06.10 - -
BitDefender - 7.2 - 2011.06.10 - -
CAT-QuickHeal - 11.00 - 2011.06.10 - -
ClamAV - 0.97.0.0 - 2011.06.10 - -
Commtouch - 5.3.2.6 - 2011.06.10 - -
Comodo - 9016 - 2011.06.10 - -
DrWeb - 5.0.2.03300 - 2011.06.10 - -
eSafe - 7.0.17.0 - 2011.06.09 - -
eTrust-Vet - 36.1.8379 - 2011.06.10 - -
F-Prot - 4.6.2.117 - 2011.06.10 - -
F-Secure - 9.0.16440.0 - 2011.06.10 - -
Fortinet - 4.2.257.0 - 2011.06.10 - -
GData - 22 - 2011.06.10 - -
Ikarus - T3.1.1.104.0 - 2011.06.10 - -
Jiangmin - 13.0.900 - 2011.06.10 - -
K7AntiVirus - 9.106.4798 - 2011.06.10 - -
Kaspersky - 9.0.0.837 - 2011.06.10 - [color=red]HEUR:Trojan.Win32.Generic [/color]
McAfee - 5.400.0.1158 - 2011.06.10 - -
McAfee-GW-Edition - 2010.1D - 2011.06.10 - -
Microsoft - 1.6903 - 2011.06.10 - -
NOD32 - 6196 - 2011.06.10 - -
Norman - 6.07.10 - 2011.06.10 - -
nProtect - 2011-06-10.01 - 2011.06.10 - -
Panda - 10.0.3.5 - 2011.06.10 - [color=red]Suspicious file [/color]
PCTools - 7.0.3.5 - 2011.06.10 - -
Prevx - 3.0 - 2011.06.10 - -
Rising - 23.61.04.07 - 2011.06.10 - -
Sophos - 4.66.0 - 2011.06.10 - -
SUPERAntiSpyware - 4.40.0.1006 - 2011.06.10 - -
Symantec - 20111.1.0.186 - 2011.06.10 - -
TheHacker - 6.7.0.1.227 - 2011.06.10 - -
TrendMicro - 9.200.0.1012 - 2011.06.10 - -
TrendMicro-HouseCall - 9.200.0.1012 - 2011.06.10 - -
VBA32 - 3.12.16.1 - 2011.06.10 - -
VIPRE - 9542 - 2011.06.10 - -
ViRobot - 2011.6.10.4505 - 2011.06.10 - -
VirusBuster - 14.0.75.2 - 2011.06.10 - -
[i]File info:[/i]
MD5: 80686a96fe1759ddaf1e7175dc08f642
SHA1: 0ea6ed4840940f84856aee2d1727edfc2c9aa40b
SHA256: 1371b9f3ac2e55a181cb2ab0c42ea2ad3c4280f0b6868530793d6dd8e0dad8f1
File size: 88576 bytes
Scan date: 2011-06-10 17:29:03 (UTC)
-
[i]Antivirus results[/i]
AhnLab-V3 - 2011.06.20.00 - 2011.06.19 - -
AntiVir - 7.11.10.12 - 2011.06.17 - -
Antiy-AVL - 2.0.3.7 - 2011.06.19 - -
Avast - 4.8.1351.0 - 2011.06.19 - -
Avast5 - 5.0.677.0 - 2011.06.19 - -
AVG - 10.0.0.1190 - 2011.06.19 - -
BitDefender - 7.2 - 2011.06.19 - -
CAT-QuickHeal - 11.00 - 2011.06.19 - -
ClamAV - 0.97.0.0 - 2011.06.18 - -
Commtouch - 5.3.2.6 - 2011.06.19 - -
Comodo - 9119 - 2011.06.19 - -
DrWeb - 5.0.2.03300 - 2011.06.19 - -
eSafe - 7.0.17.0 - 2011.06.15 - -
eTrust-Vet - 36.1.8393 - 2011.06.17 - -
F-Prot - 4.6.2.117 - 2011.06.19 - -
F-Secure - 9.0.16440.0 - 2011.06.19 - -
Fortinet - 4.2.257.0 - 2011.06.19 - -
GData - 22 - 2011.06.19 - -
Ikarus - T3.1.1.104.0 - 2011.06.19 - -
Jiangmin - 13.0.900 - 2011.06.18 - -
K7AntiVirus - 9.106.4825 - 2011.06.18 - -
Kaspersky - 9.0.0.837 - 2011.06.19 - [color=red]Trojan-Ransom.Win32.PornoAsset.acl [/color]
McAfee - 5.400.0.1158 - 2011.06.19 - -
McAfee-GW-Edition - 2010.1D - 2011.06.19 - -
Microsoft - 1.6903 - 2011.06.13 - -
NOD32 - 6220 - 2011.06.19 - -
Norman - 6.07.10 - 2011.06.19 - -
nProtect - 2011-06-19.01 - 2011.06.19 - -
Panda - 10.0.3.5 - 2011.06.18 - -
PCTools - 7.0.3.5 - 2011.06.17 - -
Prevx - 3.0 - 2011.06.19 - -
Rising - 23.62.03.03 - 2011.06.17 - -
Sophos - 4.66.0 - 2011.06.19 - -
SUPERAntiSpyware - 4.40.0.1006 - 2011.06.19 - -
TheHacker - 6.7.0.1.233 - 2011.06.18 - -
TrendMicro - 9.200.0.1012 - 2011.06.19 - -
TrendMicro-HouseCall - 9.200.0.1012 - 2011.06.19 - -
VBA32 - 3.12.16.2 - 2011.06.17 - -
VIPRE - 9626 - 2011.06.19 - -
ViRobot - 2011.6.18.4521 - 2011.06.18 - -
VirusBuster - 14.0.85.1 - 2011.06.18 - -
[i]File info:[/i]
MD5: b1213368877125ae61b0745302acd4b7
SHA1: 16a252f91813f909c31a562af54037846ddaec38
SHA256: 957192c694a5dd00cf04f2289b8d286952b25b1d668439a84804a0ff1f552a9f
File size: 24576 bytes
Scan date: 2011-06-19 10:43:14 (UTC)
-
[QUOTE]File name:
sp.sys
Submission date:
2011-06-19 17:19:36 (UTC)
Current status:
finished
Result:
6 /42 (14.3%) VT Community
not reviewed
Safety score: -
Compact
Print results Antivirus Version Last Update Result
AhnLab-V3 2011.06.20.00 2011.06.19 -
AntiVir 7.11.10.12 2011.06.17 [B]TR/Killav.hhc.2[/B]
Antiy-AVL 2.0.3.7 2011.06.19 -
Avast 4.8.1351.0 2011.06.19 -
Avast5 5.0.677.0 2011.06.19 -
AVG 10.0.0.1190 2011.06.19 [B]Generic22.CFHU[/B]
BitDefender 7.2 2011.06.19 -
CAT-QuickHeal 11.00 2011.06.19 -
ClamAV 0.97.0.0 2011.06.19 -
Commtouch 5.3.2.6 2011.06.19 -
Comodo 9123 2011.06.19 -
DrWeb 5.0.2.03300 2011.06.19 -
eSafe 7.0.17.0 2011.06.15 -
eTrust-Vet 36.1.8393 2011.06.17 -
F-Prot 4.6.2.117 2011.06.19 -
F-Secure 9.0.16440.0 2011.06.19 -
Fortinet 4.2.257.0 2011.06.19 -
GData 22 2011.06.19 -
Ikarus T3.1.1.104.0 2011.06.19 -
Jiangmin 13.0.900 2011.06.19 -
K7AntiVirus 9.106.4825 2011.06.18 -
Kaspersky 9.0.0.837 2011.06.19 [B]Trojan.Win32.KillAV.hhc[/B]
McAfee 5.400.0.1158 2011.06.19 -
McAfee-GW-Edition 2010.1D 2011.06.19 -
Microsoft 1.6903 2011.06.13 -
NOD32 6221 2011.06.19 [B]probably a variant of Win32/KillAV.FUMDCAF[/B]
Norman 6.07.10 2011.06.19 -
nProtect 2011-06-19.01 2011.06.19 -
Panda 10.0.3.5 2011.06.19 -
PCTools 7.0.3.5 2011.06.17 -
Prevx 3.0 2011.06.19 -
Rising 23.62.03.03 2011.06.17 -
Sophos 4.66.0 2011.06.19 -
SUPERAntiSpyware 4.40.0.1006 2011.06.19 -
Symantec 20111.1.0.186 2011.06.19 -
TheHacker 6.7.0.1.233 2011.06.18 [B]Trojan/KillAV.hhc[/B]
TrendMicro 9.200.0.1012 2011.06.19 -
TrendMicro-HouseCall 9.200.0.1012 2011.06.19 -
VBA32 3.12.16.2 2011.06.17 -
VIPRE 9629 2011.06.19 [B]Trojan.Win32.Killav[/B]
ViRobot 2011.6.18.4521 2011.06.19 -
VirusBuster 14.0.86.0 2011.06.19 -[/QUOTE]
"Информация к размышлению":
1) Файл был изготовлен осенью 2010 г.
2) Файл выкладывался только в закрытом разделе Symantecclub.ru для демонстрации убогости NIS (мог попасть также в закрытый раздел ВИ)
3) Весной сего года на него стал ругаться KIS
4) Сам NIS молчит до сих пор.
5) Файл, устанавливающий дров после простейшей модификации (добавления НОПов) перестает детектиться, что указывает на чисто сигнатурный детект.
6) Это добро попало и к другим аверам или сработали их эвристики?
-
Свежий сэмпл Cidox
File name:
avz00002.dta
Submission date:
2011-06-29 08:33:53 (UTC)
Current status:
finished
Result:
2/ 42 (4.8%)
[QUOTE][i]Antivirus results[/i]
AhnLab-V3 - 2011.06.29.02 - 2011.06.29 - -
AntiVir - 7.11.10.145 - 2011.06.29 - -
Antiy-AVL - 2.0.3.7 - 2011.06.29 - -
Avast - 4.8.1351.0 - 2011.06.28 - -
Avast5 - 5.0.677.0 - 2011.06.28 - -
AVG - 10.0.0.1190 - 2011.06.29 - -
BitDefender - 7.2 - 2011.06.29 - -
CAT-QuickHeal - 11.00 - 2011.06.29 - -
ClamAV - 0.97.0.0 - 2011.06.29 - -
Commtouch - 5.3.2.6 - 2011.06.28 - -
Comodo - 9218 - 2011.06.29 - -
DrWeb - 5.0.2.03300 - 2011.06.29 - [color=red]Trojan.Mayachok.1 [/color]
eSafe - 7.0.17.0 - 2011.06.28 - -
eTrust-Vet - 36.1.8413 - 2011.06.28 - -
F-Prot - 4.6.2.117 - 2011.06.28 - -
F-Secure - 9.0.16440.0 - 2011.06.29 - -
Fortinet - 4.2.257.0 - 2011.06.29 - -
GData - 22 - 2011.06.29 - -
Ikarus - T3.1.1.104.0 - 2011.06.29 - -
Jiangmin - 13.0.900 - 2011.06.28 - [color=red]Trojan/Cidox.a [/color]
K7AntiVirus - 9.106.4851 - 2011.06.28 - -
Kaspersky - 9.0.0.837 - 2011.06.29 - -
McAfee - 5.400.0.1158 - 2011.06.29 - -
McAfee-GW-Edition - 2010.1D - 2011.06.29 - -
Microsoft - 1.7000 - 2011.06.29 - -
NOD32 - 6248 - 2011.06.29 - -
Norman - 6.07.10 - 2011.06.28 - -
nProtect - 2011-06-29.01 - 2011.06.29 - -
Panda - 10.0.3.5 - 2011.06.28 - -
PCTools - 8.0.0.5 - 2011.06.29 - -
Prevx - 3.0 - 2011.06.29 - -
Rising - 23.64.02.03 - 2011.06.29 - -
Sophos - 4.66.0 - 2011.06.29 - -
SUPERAntiSpyware - 4.40.0.1006 - 2011.06.29 - -
Symantec - 20111.1.0.186 - 2011.06.29 - -
TheHacker - 6.7.0.1.244 - 2011.06.28 - -
TrendMicro - 9.200.0.1012 - 2011.06.29 - -
TrendMicro-HouseCall - 9.200.0.1012 - 2011.06.29 - -
VBA32 - 3.12.16.3 - 2011.06.28 - -
VIPRE - 9723 - 2011.06.29 - -
ViRobot - 2011.6.29.4539 - 2011.06.29 - -
VirusBuster - 14.0.100.0 - 2011.06.28 - -[/QUOTE]
[i]File info:[/i]
MD5: b4973b4048794ad6dc35b8d903747070
SHA1: dd57f26f4b10c33613fd7f4cbaa05ac92a856bd4
SHA256: 48f0a0ce88332e4da0fe03377b309872de4edf936ce2beeb628e083f1bebdc7e
File size: 53248 bytes
[url]http://www.virustotal.com/file-scan/report.html?id=48f0a0ce88332e4da0fe03377b309872de4edf936ce2beeb628e083f1bebdc7e-1309336433#[/url]
-
File name:
новая папка.lnk
Submission date:
2011-07-29 01:30:52 (UTC)
Current status:
finished
Result:
10/ 43 (23.3%)
[QUOTE][i]Antivirus results[/i]
AhnLab-V3 - 2011.07.28.00 - 2011.07.27 - -
AntiVir - 7.11.12.160 - 2011.07.28 - -
Antiy-AVL - 2.0.3.7 - 2011.07.28 - -
Avast - 4.8.1351.0 - 2011.07.28 - -
Avast5 - 5.0.677.0 - 2011.07.28 - -
AVG - 10.0.0.1190 - 2011.07.29 - -
BitDefender - 7.2 - 2011.07.29 - -
CAT-QuickHeal - 11.00 - 2011.07.28 - [color=red]LNK.Exploit.Gen [/color]
ClamAV - 0.97.0.0 - 2011.07.29 - -
Commtouch - 5.3.2.6 - 2011.07.29 - -
Comodo - 9547 - 2011.07.28 - -
DrWeb - 5.0.2.03300 - 2011.07.29 - -
Emsisoft - 5.1.0.8 - 2011.07.29 - [color=red]Worm.Win32.Dorkbot!IK [/color]
eSafe - 7.0.17.0 - 2011.07.27 - -
eTrust-Vet - 36.1.8470 - 2011.07.28 - [color=red]LNK/Dorkbot [/color]
F-Prot - 4.6.2.117 - 2011.07.28 - -
F-Secure - 9.0.16440.0 - 2011.07.29 - -
Fortinet - 4.2.257.0 - 2011.07.29 - -
GData - 22 - 2011.07.29 - -
Ikarus - T3.1.1.104.0 - 2011.07.29 - [color=red]Worm.Win32.Dorkbot [/color]
Jiangmin - 13.0.900 - 2011.07.28 - -
K7AntiVirus - 9.109.4957 - 2011.07.28 - [color=red]Trojan [/color]
Kaspersky - 9.0.0.837 - 2011.07.29 - [color=red]Worm.Win32.FakeFolder.a [/color]
McAfee - 5.400.0.1158 - 2011.07.29 - -
McAfee-GW-Edition - 2010.1D - 2011.07.29 - -
Microsoft - 1.7104 - 2011.07.28 - [color=red]Worm:Win32/Dorkbot!lnk [/color]
NOD32 - 6333 - 2011.07.29 - [color=red]Win32/Dorkbot.D [/color]
Norman - 6.07.10 - 2011.07.28 - -
nProtect - 2011-07-28.04 - 2011.07.28 - -
Panda - 10.0.3.5 - 2011.07.28 - -
PCTools - 8.0.0.5 - 2011.07.29 - -
Prevx - 3.0 - 2011.07.29 - -
Rising - 23.68.02.03 - 2011.07.27 - -
Sophos - 4.67.0 - 2011.07.29 - [color=red]W32/AutoRun-BQJ [/color]
SUPERAntiSpyware - 4.40.0.1006 - 2011.07.29 - -
Symantec - 20111.1.0.186 - 2011.07.28 - -
TheHacker - 6.7.0.1.264 - 2011.07.28 - -
TrendMicro - 9.200.0.1012 - 2011.07.28 - -
TrendMicro-HouseCall - 9.200.0.1012 - 2011.07.29 - -
VBA32 - 3.12.16.4 - 2011.07.28 - -
VIPRE - 9996 - 2011.07.29 - -
ViRobot - 2011.7.28.4593 - 2011.07.28 - [color=red]LNK.Autorun.1445 [/color]
VirusBuster - 14.0.144.0 - 2011.07.28 - -[/QUOTE]
[i]File info:[/i]
MD5: 9867f6f87f102f41beccbaafce2fefca
SHA1: 653c66d6880781c2a5e0ce80d9972b532933f087
SHA256: 56f7ddafa56e5e5a26b194b04166902b0ab6d08e17cbe009b687d23c90c9dde5
File size: 1471 bytes
Scan date: 2011-07-29 01:30:52 (UTC)
[size="1"][color="#666686"][B][I]Добавлено через 19 минут[/I][/B][/color][/size]
Вот еще нашел
File name: eBayShortcuts.exe
Submission date: 2011-07-29 01:55:37 (UTC)
Current status: finished
Result: 22/ 43 (51.2%)
[QUOTE][i]Antivirus results[/i]
AhnLab-V3 - 2011.07.28.00 - 2011.07.27 - [color=red]Win-Trojan/Yabector.89088.B [/color]
AntiVir - 7.11.12.160 - 2011.07.28 - -
Antiy-AVL - 2.0.3.7 - 2011.07.28 - -
Avast - 4.8.1351.0 - 2011.07.28 - [color=red]Win32:Yabector-B [Adw] [/color]
Avast5 - 5.0.677.0 - 2011.07.28 - [color=red]Win32:Yabector-B [Adw] [/color]
AVG - 10.0.0.1190 - 2011.07.29 - -
BitDefender - 7.2 - 2011.07.29 - [color=red]Adware.Yabector.B [/color]
CAT-QuickHeal - 11.00 - 2011.07.28 - [color=red]TrojanClicker.Yabector.a [/color]
ClamAV - 0.97.0.0 - 2011.07.29 - -
Commtouch - 5.3.2.6 - 2011.07.29 - [color=red]W32/Adware.AKPT [/color]
Comodo - 9549 - 2011.07.29 - -
DrWeb - 5.0.2.03300 - 2011.07.29 - -
Emsisoft - 5.1.0.8 - 2011.07.29 - -
eSafe - 7.0.17.0 - 2011.07.27 - -
eTrust-Vet - 36.1.8470 - 2011.07.28 - -
F-Prot - 4.6.2.117 - 2011.07.28 - [color=red]W32/Adware.AKPT [/color]
F-Secure - 9.0.16440.0 - 2011.07.29 - [color=red]Adware.Yabector.B [/color]
Fortinet - 4.2.257.0 - 2011.07.29 - [color=red]Adware/AdClicker [/color]
GData - 22 - 2011.07.29 - [color=red]Adware.Yabector.B [/color]
Ikarus - T3.1.1.104.0 - 2011.07.29 - -
Jiangmin - 13.0.900 - 2011.07.28 - -
K7AntiVirus - 9.109.4957 - 2011.07.28 - [color=red]Adware [/color]
Kaspersky - 9.0.0.837 - 2011.07.29 - -
McAfee - 5.400.0.1158 - 2011.07.29 - [color=red]AdClicker-CW [/color]
McAfee-GW-Edition - 2010.1D - 2011.07.29 - [color=red]AdClicker-CW [/color]
Microsoft - 1.7104 - 2011.07.28 - [color=red]TrojanClicker:Win32/Yabector.A [/color]
NOD32 - 6333 - 2011.07.29 - [color=red]a variant of Win32/Adware.ADON [/color]
Norman - 6.07.10 - 2011.07.28 - -
nProtect - 2011-07-28.04 - 2011.07.28 - [color=red]Trojan/W32.Agent.89088.FQ [/color]
Panda - 10.0.3.5 - 2011.07.28 - [color=red]Adware/AdOnDemand [/color]
PCTools - 8.0.0.5 - 2011.07.29 - -
Prevx - 3.0 - 2011.07.29 - [color=red]Medium Risk Malware [/color]
Rising - 23.68.02.03 - 2011.07.27 - -
Sophos - 4.67.0 - 2011.07.29 - [color=red]EbayShortcuts [/color]
SUPERAntiSpyware - 4.40.0.1006 - 2011.07.29 - -
Symantec - 20111.1.0.186 - 2011.07.28 - -
TheHacker - 6.7.0.1.264 - 2011.07.28 - -
TrendMicro - 9.200.0.1012 - 2011.07.28 - -
TrendMicro-HouseCall - 9.200.0.1012 - 2011.07.29 - -
VBA32 - 3.12.16.4 - 2011.07.28 - -
VIPRE - 9996 - 2011.07.29 - [color=red]Trojan.Win32.Adware [/color]
ViRobot - 2011.7.28.4593 - 2011.07.28 - [color=red]Trojan.Win32.Clicker.89088.A [/color]
VirusBuster - 14.0.144.0 - 2011.07.28 - [color=red]TrojanCL.Yabector.Gen [/color][/QUOTE]
[i]File info:[/i]
MD5: 6b8ff268e9b1080f56af15db1403d6b2
SHA1: 8857bc6673aef22685a3cd98a089df242a2449b5
SHA256: b0a3337793cac2502732c547372e509305c56b60896c2bb6a21adf495bfaa097
File size: 89088 bytes
Scan date: 2011-07-29 01:55:37 (UTC)
-
Новый, популярный нынче MBRLock, помнится раньше WinLockи выходили с такими именами)
[B]File name:[/B]
video.avi.exe
[B]Submission date:[/B]
2011-08-07 07:04:17 (UTC)
[B]Current status:[/B]
finished
[B]Result:[/B]
6/ 43 (14.0%)
[CENTER]Safety score: -
Antivirus Version Last Update Result[/CENTER]
AhnLab-V3 2011.08.06.00 2011.08.06 -
[COLOR="#FF0000"]AntiVir 7.11.12.233 2011.08.05 DR/Delphi.Gen[/COLOR]
Antiy-AVL 2.0.3.7 2011.08.06 -
Avast 4.8.1351.0 2011.08.06 -
Avast5 5.0.677.0 2011.08.06 -
AVG 10.0.0.1190 2011.08.07 -
BitDefender 7.2 2011.08.07 -
CAT-QuickHeal 11.00 2011.08.06 -
ClamAV 0.97.0.0 2011.08.06 -
Commtouch 5.3.2.6 2011.08.06 -
Comodo 9654 2011.08.06 -
DrWeb 5.0.2.03300 2011.08.06 -
Emsisoft 5.1.0.8 2011.08.07 -
eSafe 7.0.17.0 2011.08.04 -
[COLOR="#FF0000"]eTrust-Vet 36.1.8486 2011.08.05 Win32/Swisyn.D!generic[/COLOR]
F-Prot 4.6.2.117 2011.08.06 -
F-Secure 9.0.16440.0 2011.08.07 -
[COLOR="#FF0000"]Fortinet 4.2.257.0 2011.08.07 W32/Injector.fam!tr[/COLOR]
GData 22 2011.08.07 -
Ikarus T3.1.1.104.0 2011.08.07 -
Jiangmin 13.0.900 2011.08.06 -
K7AntiVirus 9.109.4973 2011.08.02 -
[COLOR="#FF0000"]Kaspersky 9.0.0.837 2011.08.07 UDS:DangerousObject.Multi.Generic[/COLOR]
McAfee 5.400.0.1158 2011.08.07 -
McAfee-GW-Edition 2010.1D 2011.08.07 -
[COLOR="#FF0000"]Microsoft 1.7104 2011.08.07 VirTool:Win32/DelfInject.gen!BI[/COLOR]
NOD32 6356 2011.08.07 -
Norman 6.07.10 2011.08.06 -
nProtect 2011-08-06.01 2011.08.06 -
[COLOR="#FF0000"]Panda 10.0.3.5 2011.08.06 Suspicious file[/COLOR]
PCTools 8.0.0.5 2011.08.07 -
Prevx 3.0 2011.08.07 -
Rising 23.69.03.03 2011.08.04 -
Sophos 4.67.0 2011.08.07 -
SUPERAntiSpyware 4.40.0.1006 2011.08.06 -
Symantec 20111.2.0.82 2011.08.07 -
TheHacker 6.7.0.1.272 2011.08.06 -
TrendMicro 9.200.0.1012 2011.08.07 -
TrendMicro-HouseCall 9.200.0.1012 2011.08.07 -
VBA32 3.12.16.4 2011.08.06 -
VIPRE 10092 2011.08.07 -
ViRobot 2011.8.6.4609 2011.08.06 -
VirusBuster 14.0.155.0 2011.08.06 -
[B]Additional information[/B]
[B]MD5 [/B] : 89767cf0dabe03853d39365ba56fab62
[B]SHA1 [/B] : 59d32ba05db73c43943b93643d3428dbd4e95918
[B]SHA256[/B]: bb67beda924e84eb44793d89ee4ace00badbb4147ac3471636f6f97edc503ed8
[URL="http://www.virustotal.com/file-scan/report.html?id=bb67beda924e84eb44793d89ee4ace00badbb4147ac3471636f6f97edc503ed8-1312700657"]VirusTotal[/URL]
-
[B]File name:[/B] flaapy_.exe
[B]Submission date:[/B] 2011-10-06 02:06:49 (UTC)
[B]Current status:[/B] finished
[B]Result:[/B] 16 /43 (37.2%)
[QUOTE][B]Antivirus Version Last Update Result[/B]
AhnLab-V3 2011.10.05.00 2011.10.05 -
[B]AntiVir 7.11.15.135 2011.10.05 TR/Pakes.qev
Antiy-AVL 2.0.3.7 2011.10.06 Trojan/Win32.Pakes.gen[/B]
Avast 6.0.1289.0 2011.10.05 -
[B]AVG 10.0.0.1190 2011.10.05 Generic24.CLFQ
BitDefender 7.2 2011.10.06 Gen:Variant.Kazy.38253
[/B]ByteHero 1.0.0.1 2011.09.23 -
CAT-QuickHeal 11.00 2011.10.05 -
ClamAV 0.97.0.0 2011.10.06 -
Commtouch 5.3.2.6 2011.10.06 -
Comodo 10358 2011.10.06 -
DrWeb 5.0.2.03300 2011.10.06 -
Emsisoft 5.1.0.11 2011.10.06 -
eSafe 7.0.17.0 2011.10.05 -
eTrust-Vet 36.1.8601 2011.10.06 -
F-Prot 4.6.2.117 2011.10.05 -
[B]F-Secure 9.0.16440.0 2011.10.06 Gen:Variant.Kazy.38253
Fortinet 4.3.370.0 2011.10.06 W32/Shiz.NCD!tr
GData 22 2011.10.06 Gen:Variant.Kazy.38253
[/B]Ikarus T3.1.1.107.0 2011.10.06 -
[B]Jiangmin 13.0.900 2011.10.05 Trojan/Pakes.onw
[/B]K7AntiVirus 9.114.5245 2011.10.05 -
[B]Kaspersky 9.0.0.837 2011.10.06 Trojan.Win32.Pakes.qev
[/B]McAfee 5.400.0.1158 2011.10.06 -
McAfee-GW-Edition 2010.1D 2011.10.05 -
Microsoft 1.7702 2011.10.05 -
[B]NOD32 6520 2011.10.06 a variant of Win32/Kryptik.THB
[/B]Norman 6.07.11 2011.10.05 -
[B]nProtect 2011-10-05.01 2011.10.05 Gen:Variant.Kazy.38253
Panda 10.0.3.5 2011.10.05 Generic Trojan
[/B]PCTools 8.0.0.5 2011.10.06 -
Prevx 3.0 2011.10.06 -
Rising 23.77.04.01 2011.09.30 -
Sophos 4.69.0 2011.10.06 -
SUPERAntiSpyware 4.40.0.1006 2011.10.06 -
Symantec 20111.2.0.82 2011.10.06 -
[B]TheHacker 6.7.0.1.317 2011.10.05 Trojan/Kryptik.tcq
[/B]TrendMicro 9.500.0.1008 2011.10.05 -
TrendMicro-HouseCall 9.500.0.1008 2011.10.06 -
[B]VBA32 3.12.16.4 2011.10.05 Trojan.Pakes.qev
VIPRE 10673 2011.10.06 Trojan.Win32.Pakes
[/B]ViRobot 2011.10.5.4703 2011.10.06 -
[B]VirusBuster 14.0.250.0 2011.10.05 Trojan.Pakes!OWgQI7ngbKI
[/B][/QUOTE]
[B]Additional information[/B]
MD5 : b6a852b8b63c894087e569479b8f69cb
SHA1 : 1fcc0a700c8f5f89edb5b21e3c649be095f93313
SHA256: d513cae3f217d9f84561590851beffeb473962e1ed50af34dfb66c9275e76075
MD5 : b6a852b8b63c894087e569479b8f69cb
SHA1 : 1fcc0a700c8f5f89edb5b21e3c649be095f93313
SHA256: d513cae3f217d9f84561590851beffeb473962e1ed50af34dfb66c9275e76075
-
Пришло на почту
[CODE]
Return-path: <[email protected]>
Received: from [91.207.66.6] (port=49528 helo=host.inyur.net)
by mx38.mail.ru with esmtp
id 1RDyvI-0001H2-00
for [email protected]; Wed, 12 Oct 2011 17:32:40 +0400
Received-SPF: softfail (mx38.mail.ru: transitioning domain of mail.ru does not designate 91.207.66.6 as permitted sender) client-ip=91.207.66.6; [email protected]; helo=host.inyur.net;
X-Mru-BL: 0:0:1090
X-Mru-PTR: host.inyur.net
X-Mru-NR: 1
X-Mru-OF: FreeBSD (ethernet/modem)
X-Mru-RC: UA
Received: from [80.12.82.91] (helo=LPuteaux-156-15-100-91.w80-12.abo.wanadoo.fr)
by host.inyur.net with esmtpa (Exim 4.74 (FreeBSD))
(envelope-from <[email protected]>)
id 1RDyvB-000BC4-Vt
for [email protected]; Wed, 12 Oct 2011 16:32:39 +0300
Message-ID: <7CE7DC6A91904365A7ABE133D46839C1@vishnu>
From: =?koi8-r?B?9MHJzMHOxA==?= <[email protected]>
To: [email protected]
Subject: =?koi8-r?B?8M/Uz9Ag1yD0wcnMwc7ExQ==?=
Date: Wed, 12 Oct 2011 15:27:26 +0200
MIME-Version: 1.0
[/CODE]
[QUOTE]В Таиланде уже второй месяц непрерывно идут дожди
Синоптики прогнозируют их продолжение еще на длительный период.
В приложении видео происходящего[/QUOTE]
[B]File name:[/B]
Thailand.exe
Submission date:
2011-10-12 15:25:16 (UTC)
[B]Current status:[/B]
finished
[B]Result:[/B]
1/ 43 (2.3%)
Antivirus Version Last Update Result
AhnLab-V3 2011.10.12.00 2011.10.12 -
AntiVir 7.11.15.238 2011.10.12 -
Antiy-AVL 2.0.3.7 2011.10.12 -
Avast 6.0.1289.0 2011.10.12 -
AVG 10.0.0.1190 2011.10.07 -
BitDefender 7.2 2011.10.12 -
ByteHero 1.0.0.1 2011.09.23 -
CAT-QuickHeal 11.00 2011.10.12 -
ClamAV 0.97.0.0 2011.10.12 -
Commtouch 5.3.2.6 2011.10.12 -
Comodo 10431 2011.10.12 -
DrWeb 5.0.2.03300 2011.10.12 -
Emsisoft 5.1.0.11 2011.10.12 -
eSafe 7.0.17.0 2011.10.11 -
eTrust-Vet 36.1.8615 2011.10.12 -
F-Prot 4.6.5.141 2011.10.12 -
F-Secure 9.0.16440.0 2011.10.12 -
Fortinet 4.3.370.0 2011.10.12 -
GData 22 2011.10.12 -
Ikarus T3.1.1.107.0 2011.10.12 -
Jiangmin 13.0.900 2011.10.12 -
K7AntiVirus 9.115.5267 2011.10.10 -
Kaspersky 9.0.0.837 2011.10.12 -
McAfee 5.400.0.1158 2011.10.12 -
McAfee-GW-Edition 2010.1D 2011.10.12 -
Microsoft 1.7702 2011.10.12 -
NOD32 6537 2011.10.12 -
Norman 6.07.11 2011.10.12 -
nProtect 2011-10-12.01 2011.10.12 -
Panda 10.0.3.5 2011.10.12 -
PCTools 8.0.0.5 2011.10.12 -
Prevx 3.0 2011.10.12 -
Rising 23.79.02.02 2011.10.12 -
Sophos 4.70.0 2011.10.12 -
[COLOR="#FF0000"]SUPERAntiSpyware 4.40.0.1006 2011.10.12 Trojan.Agent/Gen-Zbot[/COLOR]
Symantec 20111.2.0.82 2011.10.12 -
TheHacker 6.7.0.1.320 2011.10.11 -
TrendMicro 9.500.0.1008 2011.10.12 -
TrendMicro-HouseCall 9.500.0.1008 2011.10.12 -
VBA32 3.12.16.4 2011.10.12 -
VIPRE 10740 2011.10.12 -
ViRobot 2011.10.12.4715 2011.10.12 -
VirusBuster 14.1.7.0 2011.10.11 -
[B]Additional information[/B]
MD5 : 71d6c8f58318b95277992dc54cceb0f4
SHA1 : c00e53921552ef24524a07a0f5822f030f057d5a
SHA256: 47f9ce63f4f0e266a4f999c08e3dde9be05116e86409b20b56b8980dbcf0372e
[B]UPD: [/B]Спустя [COLOR="#FFA500"]~12 часов[/COLOR] после обнаружения и рассылки вендорам:
[B]Result:[/B]
7 /43 (16.3%)
AhnLab-V3 2011.10.12.02 2011.10.12 [COLOR="#FF0000"]Trojan/Win32.Zbot[/COLOR]
Comodo 10437 2011.10.13 [COLOR="#FF0000"]Heur.Suspicious[/COLOR]
Emsisoft 5.1.0.11 2011.10.13 [COLOR="#FF0000"]Win32.Outbreak!IK[/COLOR]
Ikarus T3.1.1.107.0 2011.10.13 [COLOR="#FF0000"]Win32.Outbreak[/COLOR]
Kaspersky 9.0.0.837 2011.10.13 [COLOR="#FF0000"]UDS:DangerousObject.Multi.Generic[/COLOR]
Microsoft 1.7702 2011.10.13 [COLOR="#FF0000"]PWS:Win32/Zbot.ADB[/COLOR]
SUPERAntiSpyware 4.40.0.1006 2011.10.13 [COLOR="#FF0000"]Trojan.Agent/Gen-Zbot[/COLOR]
[B]UPD 2:[/B] И ещё спустя [COLOR="#FF8C00"]~12 часов:[/COLOR]
[B]Result:[/B]
10/ 43 (23.3%)
Добавили:
BitDefender 7.2 2011.10.13 [COLOR="#FF0000"]Trojan.Generic.KDV.377785[/COLOR]
NOD32 6540 2011.10.13 [COLOR="#FF0000"]Win32/PSW.Delf.OAL[/COLOR]
TrendMicro-HouseCall 9.500.0.1008 2011.10.13 [COLOR="#FF0000"]TROJ_UGMEME.H[/COLOR]
-
File name:
ndnbvdw.exe
Submission date:
2011-11-10 04:11:52 (UTC)
Current status:
finished
Result:
4/ 43 (9.3%)
[i]Antivirus results[/i]
AhnLab-V3 - 2011.11.09.00 - 2011.11.09 - -
AntiVir - 7.11.17.111 - 2011.11.09 - -
Antiy-AVL - 2.0.3.7 - 2011.11.09 - -
Avast - 6.0.1289.0 - 2011.11.09 - -
AVG - 10.0.0.1190 - 2011.11.09 - -
BitDefender - 7.2 - 2011.11.10 - -
ByteHero - 1.0.0.1 - 2011.11.04 - -
CAT-QuickHeal - 11.00 - 2011.11.10 - -
ClamAV - 0.97.3.0 - 2011.11.10 - -
Commtouch - 5.3.2.6 - 2011.11.10 - -
Comodo - 10728 - 2011.11.10 - -
DrWeb - 5.0.2.03300 - 2011.11.10 - -
Emsisoft - 5.1.0.11 - 2011.11.10 - -
eSafe - 7.0.17.0 - 2011.11.09 - -
eTrust-Vet - 36.1.8666 - 2011.11.09 - -
F-Prot - 4.6.5.141 - 2011.11.09 - -
F-Secure - 9.0.16440.0 - 2011.11.10 - -
Fortinet - 4.3.370.0 - 2011.11.10 - [color=red]W32/Yakes.D!tr [/color]
GData - 22 - 2011.11.10 - -
Ikarus - T3.1.1.109.0 - 2011.11.10 - -
Jiangmin - 13.0.900 - 2011.11.09 - -
K7AntiVirus - 9.119.5423 - 2011.11.09 - [color=red]Trojan [/color]
Kaspersky - 9.0.0.837 - 2011.11.10 - [color=red]Trojan-Dropper.Win32.Injector.vbu [/color]
McAfee - 5.400.0.1158 - 2011.11.10 - -
McAfee-GW-Edition - 2010.1D - 2011.11.09 - -
Microsoft - 1.7801 - 2011.11.09 - -
NOD32 - 6616 - 2011.11.10 - -
Norman - 6.07.13 - 2011.11.08 - -
nProtect - 2011-11-09.01 - 2011.11.09 - -
Panda - 10.0.3.5 - 2011.11.09 - -
PCTools - 8.0.0.5 - 2011.11.10 - -
Prevx - 3.0 - 2011.11.10 - -
Rising - 23.83.01.01 - 2011.11.08 - -
Sophos - 4.71.0 - 2011.11.09 - -
SUPERAntiSpyware - 4.40.0.1006 - 2011.11.10 - [color=red]Trojan.Agent/Gen-MalPack [/color]
Symantec - 20111.2.0.82 - 2011.11.10 - -
TheHacker - 6.7.0.1.341 - 2011.11.09 - -
TrendMicro - 9.500.0.1008 - 2011.11.10 - -
TrendMicro-HouseCall - 9.500.0.1008 - 2011.11.10 - -
VBA32 - 3.12.16.4 - 2011.11.09 - -
VIPRE - 11009 - 2011.11.10 - -
ViRobot - 2011.11.10.4765 - 2011.11.10 - -
VirusBuster - 14.1.55.1 - 2011.11.09 - -
[i]File info:[/i]
MD5: e9ead48f014daade25744e6069e9ca6c
SHA1: 4df8a0ef977d077c0f9dc55417517da826d4482f
SHA256: 025ee553a25b98a1811838ebfb093d5f5c2e4025fcb02ba1d744b4fab838e1c1
File size: 207872 bytes
Scan date: 2011-11-10 04:11:52 (UTC)
-
Вложений: 1
Предложили груз получить по почте :)
[QUOTE]Здравствуйте!
транспортная компания: Автологистика
номер накладной: 77468257
дата: 2011.11.28
Номер вашего заказ: 77468257
Ваш заказ отгружен. Прикрепляю транспортную накладную к письму, она необходима для получения груза.
После получения заказа, просим Вас подписать документы и отправить на наш почтовый адрес.
Спасибо
Вложения:
Накладная.zip 50.5 КБ[/QUOTE]
Свежий, но чья-то проверка на ВТ уже была (под другим именем) :)
File name:
Накладная.exe.org
Submission date:
2011-12-04 04:42:45 (UTC)
[B]Result:
[COLOR="#FF0000"]8[/COLOR]/ 43 (18.6%)[/B]
AhnLab-V3 2011.12.03.00 2011.12.03 -
AntiVir 7.11.18.204 2011.12.02 [COLOR="#FF0000"] TR/Crypt.ULPM.Gen[/COLOR]
Antiy-AVL 2.0.3.7 2011.12.04 -
Avast 6.0.1289.0 2011.12.03 -
AVG 10.0.0.1190 2011.12.03 -
BitDefender 7.2 2011.12.04 -
ByteHero 1.0.0.1 2011.11.29 [COLOR="#FF0000"]Trojan.Heur.Malware.Gen[/COLOR]
CAT-QuickHeal 12.00 2011.12.03 -
ClamAV 0.97.3.0 2011.12.04 -
Commtouch 5.3.2.6 2011.12.03 [COLOR="#FF0000"]W32/Yakes.G4.gen!Eldorado[/COLOR]
Comodo 10831 2011.12.04 -
DrWeb 5.0.2.03300 2011.12.04 -
Emsisoft 5.1.0.11 2011.12.04 -
eSafe 7.0.17.0 2011.12.01 -
eTrust-Vet 37.0.9600 2011.12.02 -
F-Prot 4.6.5.141 2011.11.29 [COLOR="#FF0000"]W32/Yakes.G4.gen!Eldorado[/COLOR]
F-Secure 9.0.16440.0 2011.12.04 -
Fortinet 4.3.388.0 2011.12.04 [COLOR="#FF0000"]W32/Yakes.B!tr[/COLOR]
GData 22 2011.12.04 -
Ikarus T3.1.1.109.0 2011.12.03 -
Jiangmin 13.0.900 2011.12.03 -
K7AntiVirus 9.119.5589 2011.12.03 [COLOR="#FF0000"] Riskware[/COLOR]
Kaspersky 9.0.0.837 2011.12.04 -
McAfee 5.400.0.1158 2011.12.04 -
McAfee-GW-Edition 2010.1D 2011.12.03 -
Microsoft 1.7903 2011.12.03 -
NOD32 6681 2011.12.04 -
Norman 6.07.13 2011.12.03 [COLOR="#FF0000"]W32/Kryptik.ATI[/COLOR]
nProtect 2011-12-03.01 2011.12.03 -
Panda 10.0.3.5 2011.12.03 [COLOR="#FF0000"]Suspicious file[/COLOR]
PCTools 8.0.0.5 2011.12.04 -
Prevx 3.0 2011.12.04 -
Rising 23.86.04.02 2011.12.02 -
Sophos 4.71.0 2011.12.04 -
SUPERAntiSpyware 4.40.0.1006 2011.12.03 -
Symantec 20111.2.0.82 2011.12.04 -
TheHacker 6.7.0.1.352 2011.12.01 -
TrendMicro 9.500.0.1008 2011.12.04 -
TrendMicro-HouseCall 9.500.0.1008 2011.12.04 -
VBA32 3.12.16.4 2011.12.03 -
VIPRE 11198 2011.12.03 -
ViRobot 2011.12.3.4807 2011.12.03 -
VirusBuster 14.1.98.0 2011.12.03 -
Additional information
MD5 : c607a4e05bd4509f7d16bc257bf93f58
SHA1 : a7022e33db19f6599132e9c1758bc178eff1c529
SHA256: 594edaabd23c8e8b22c10fe607472b9ab40153b9ffee0b0502293b8ca2f93a81
[ATTACH=CONFIG]339851[/ATTACH]
Сэмпл разослан вендорам
-
Судя по новым зловредам, медиагет набрал популярность. Удивился детекту Вирусблокады.
[QUOTE]
File name:
acdsee_23zip.exe
Submission date:
2012-01-11 20:09:51 (UTC)
Current status:
finished
Result:
[COLOR=red]10[/COLOR]/ 43 (23.3%)[TABLE="width: 700"]
[TR="class: odd"]
[/TR]
[TR]
[TD]AhnLab-V3[/TD]
[TD]2012.01.11.00[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]AntiVir[/TD]
[TD]7.11.20.248[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]Antiy-AVL
[/COLOR][/TD]
[TD][COLOR=#ff0000]2.0.3.7[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Downloader/Win32.MediaGet.gen[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD][COLOR=#ff0000]Avast[/COLOR][/TD]
[TD][COLOR=#ff0000]6.0.1289.0[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Win32:MediaGet-A [PUP][/COLOR][/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]AVG[/COLOR][/TD]
[TD][COLOR=#ff0000]10.0.0.1190[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Suspicion: unknown virus[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD]BitDefender[/TD]
[TD]7.2[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]ByteHero[/TD]
[TD]1.0.0.1[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]CAT-QuickHeal[/TD]
[TD]12.00[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]ClamAV[/TD]
[TD]0.97.3.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Commtouch[/TD]
[TD]5.3.2.6[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]Comodo[/TD]
[TD]11244[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD][COLOR=#ff0000]DrWeb
[/COLOR][/TD]
[TD][COLOR=#ff0000]5.0.2.03300[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Tool.InstallToolbar.31
[/COLOR][/TD]
[/TR]
[TR]
[TD]Emsisoft[/TD]
[TD]5.1.0.11[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]eSafe[/TD]
[TD]7.0.17.0[/TD]
[TD]2012.01.10[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]eTrust-Vet
[/COLOR][/TD]
[TD][COLOR=#ff0000]37.0.9676[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Win32/MediaGet.A!genus[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD]F-Prot[/TD]
[TD]4.6.5.141[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]F-Secure[/TD]
[TD]9.0.16440.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Fortinet[/TD]
[TD]4.3.388.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]GData[/TD]
[TD]22[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Ikarus[/TD]
[TD]T3.1.1.113.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]Jiangmin[/TD]
[TD]13.0.900[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]K7AntiVirus[/TD]
[TD]9.125.5916[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]Kaspersky
[/COLOR][/TD]
[TD][COLOR=#ff0000]9.0.0.837[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]not-a-virus:Downloader.Win32.MediaGet.and[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD]McAfee[/TD]
[TD]5.400.0.1158[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]McAfee-GW-Edition[/TD]
[TD]2010.1E[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Microsoft[/TD]
[TD]1.7903[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]NOD32
[/COLOR][/TD]
[TD][COLOR=#ff0000]6787[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]a variant of Win32/MediaGet
[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD]Norman[/TD]
[TD]6.07.13[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]nProtect[/TD]
[TD]2012-01-11.01[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Panda[/TD]
[TD]10.0.3.5[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]PCTools[/TD]
[TD]8.0.0.5[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Prevx[/TD]
[TD]3.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]Rising
[/COLOR][/TD]
[TD][COLOR=#ff0000]23.92.02.02[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Trojan.Spy.Win32.MediaGet.b[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD]Sophos[/TD]
[TD]4.73.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]SUPERAntiSpyware[/TD]
[TD]4.40.0.1006[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]Symantec[/TD]
[TD]20111.2.0.82[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]TheHacker[/TD]
[TD]6.7.0.1.375[/TD]
[TD]2012.01.10[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD]TrendMicro[/TD]
[TD]9.500.0.1008[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]TrendMicro-HouseCall[/TD]
[TD]9.500.0.1008[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR="class: odd"]
[TD][COLOR=#ff0000]VBA32
[/COLOR][/TD]
[TD][COLOR=#ff0000]3.12.16.4[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Downloader.MediaGet.and[/COLOR][/TD]
[/TR]
[TR]
[TD][COLOR=#ff0000]VIPRE[/COLOR][/TD]
[TD][COLOR=#ff0000]11384[/COLOR][/TD]
[TD][COLOR=#ff0000]2012.01.11[/COLOR][/TD]
[TD="class: positive"][COLOR=#ff0000]Trojan.Win32.Generic!BT[/COLOR][/TD]
[/TR]
[TR="class: odd"]
[TD]ViRobot[/TD]
[TD]2012.1.11.4875[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[TR]
[TD]VirusBuster[/TD]
[TD]14.1.162.0[/TD]
[TD]2012.01.11[/TD]
[TD]-[/TD]
[/TR]
[/TABLE]
[/QUOTE]
Спустя 12 часов детект появился у Emisisoft и McAfee.
[QUOTE][COLOR="#FF0000"]Emsisoft 5.1.0.11 2012.01.12 Riskware.Downloader.Win32.MediaGet.AMN!A2
McAfee 5.400.0.1158 2012.01.12 Artemis!A9BFA093E77F
McAfee-GW-Edition 2010.1E 2012.01.12 Artemis!A9BFA093E77F[/COLOR][/QUOTE]
-
Господа специалисты!
Прошу Вас, просто напишите, какой из бесплатных антивирусов наилучший!
Заранее БЛАГОДАРЮ!
-
SHA256: 0ee188c0a1cb24e8b05ba5f6be29c68f5ce83d2acc0e85d9b8936c5a809102b3
File name: 24kkk729347.exe
Detection ratio: 4 / 43
Analysis date: 2012-03-11 03:12:35 UTC
[QUOTE]Antivirus Result Update
AhnLab-V3 - 20120310
AntiVir - 20120309
Antiy-AVL - 20120310
Avast - 20120310
AVG - 20120310
BitDefender - 20120311
ByteHero - 20120309
CAT-QuickHeal - 20120310
ClamAV - 20120311
Commtouch - 20120310
Comodo - 20120310
DrWeb - 20120311
Emsisoft - 20120310
eSafe - 20120308
eTrust-Vet - 20120310
F-Prot - 20120311
F-Secure - 20120310
[B]Fortinet W32/Yakes.LS!tr 20120311[/B]
GData - 20120310
Ikarus - 20120310
Jiangmin - 20120301
[B]K7AntiVirus Trojan 20120310
Kaspersky Trojan-Ransom.Win32.Birele.fbu 20120311
[/B]McAfee - 20120311
McAfee-GW-Edition - 20120310
Microsoft - 20120310
NOD32 - 20120311
Norman - 20120310
nProtect - 20120310
Panda - 20120310
PCTools - 20120310
Prevx - 20120311
Rising - 20120309
Sophos - 20120311
[B]SUPERAntiSpyware Trojan.Agent/Gen-MalPE 20120308[/B]
Symantec - 20120311
TheHacker - 20120309
TrendMicro - 20120310
TrendMicro-HouseCall - 20120310
VBA32 - 20120307
VIPRE - 20120310
ViRobot - 20120310
VirusBuster - 20120309[/QUOTE]
-
SHA256: c5c0f4518d1ec5e857ca7258c3272015b07557643fd777f317ab8b9b2b1f2e64
File name: tes[1].ex
Detection ratio: 34 / 42
Analysis date: 2012-04-19 02:18:42 UTC
[QUOTE][B]Antivirus Result Update
[/B]AhnLab-V3 Trojan/Win32.Jorik 20120418
AntiVir TR/Dropper.Gen 20120419
Antiy-AVL Trojan/Win32.Pincav.gen 20120418
Avast Win32:Dropper-KPG [Drp] 20120419
AVG Suspicion: unknown virus 20120418
BitDefender Gen:Variant.Zusy.1197 20120419
ByteHero Virus.Win32.Heur.p 20120417
CAT-QuickHeal Trojan.Pincav.cgw 20120418
ClamAV Trojan.VB-50367 20120418
[B]Commtouch - 20120418[/B]
Comodo Heur.Suspicious 20120419
[B]DrWeb - 20120419[/B]
Emsisoft Virus.Win32.VBInject!IK 20120419
eSafe Win32.TRDropper 20120417
eTrust-Vet Win32/Tnega.ALDZ 20120418
[B]F-Prot - 20120418[/B]
F-Secure Gen:Variant.Zusy.1197 20120419
Fortinet W32/Injector.KRW 20120419
GData Gen:Variant.Zusy.1197 20120419
Ikarus Virus.Win32.VBInject 20120419
Jiangmin Trojan/Pincav.rfo 20120418
K7AntiVirus Trojan 20120418
Kaspersky Trojan.Win32.Pincav.cgwf 20120419
McAfee Generic.dx!bdxg 20120418
McAfee-GW-Edition Generic.dx!bdxg 20120418
Microsoft VirTool:Win32/VBInject.WD 20120418
NOD32 a variant of Win32/Injector.KRW 20120419
Norman W32/Troj_Generic.AXPGW 20120418
[B]nProtect - 20120418[/B]
Panda Suspicious file 20120418
[B]PCTools - 20120419
Rising - 20120417[/B]
Sophos Troj/VBInjec-EU 20120419
[B]SUPERAntiSpyware - 20120402[/B]
Symantec Trojan.ADH.2 20120419
TheHacker Trojan/Injector.krw 20120418
TrendMicro WORM_HAMWEQ.EQ 20120418
TrendMicro-HouseCall WORM_HAMWEQ.EQ 20120419
VBA32 Trojan.VB.Mistato 20120418
VIPRE Trojan.Win32.Generic!BT 20120419
ViRobot - 20120418
VirusBuster Trojan.Injector!4PR60qYEPTM 20120418[/QUOTE][COLOR=#ffffff][FONT=Verdana][/FONT][/COLOR]
-
[QUOTE=ICar;864637]Господа специалисты!
Прошу Вас, просто напишите, какой из бесплатных антивирусов наилучший!
Заранее БЛАГОДАРЮ![/QUOTE]
самый лучший из бесплатных - это comodo !!!
мои слова уже проверенны временем и тестами.
P.S. извините, что не в тему ! просто человек просил ответить :)
-
SHA256: c94710b9705a029535813128f0aef99f86df86a3d610bdea2964ba47e6988b02
File name: wpbt0.dll
Detection ratio: 11 / 42
Analysis date: 2012-06-06 03:04:18 UTC ( 1 минута ago )
[QUOTE]More detailsAntivirus Result Update
AhnLab-V3 - 20120605
AntiVir DR/Delphi.Gen 20120606
Antiy-AVL - 20120606
Avast - 20120605
AVG BackDoor.Generic15.BDRQ 20120606
BitDefender - 20120606
ByteHero - 20120531
CAT-QuickHeal - 20120605
ClamAV - 20120605
Commtouch - 20120606
Comodo UnclassifiedMalware 20120606
DrWeb Trojan.Hottrend.195 20120606
Emsisoft - 20120606
eSafe - 20120605
F-Prot - 20120605
F-Secure - 20120606
Fortinet - 20120606
GData - 20120606
Ikarus - 20120606
Jiangmin - 20120605
K7AntiVirus - 20120605
Kaspersky Backdoor.Win32.Buterat.joz 20120605
McAfee - 20120606
McAfee-GW-Edition - 20120606
Microsoft - 20120602
NOD32 Win32/TrojanDownloader.Nutiliers.A 20120605
Norman - 20120605
nProtect - 20120605
Panda Suspicious file 20120605
PCTools - 20120606
Rising Suspicious 20120604
Sophos - 20120606
SUPERAntiSpyware - 20120605
Symantec - 20120606
TheHacker Posible_Worm32 20120604
TotalDefense - 20120605
TrendMicro PAK_Generic.001 20120606
TrendMicro-HouseCall PAK_Generic.001 20120605
VBA32 - 20120605
VIPRE - 20120605
ViRobot - 20120605
VirusBuster - 20120605[/QUOTE]
-
Сегодня попался зверек, прописавшись в AppInit_DLLs
SHA256: a14f3fa7031f992f2cc0ca52b4c20c28d7a697fc46c805497e548bfa9a974b70
File name: sajnbxj.dll
Detection ratio: [B]10 / 41[/B]
Analysis date: 2012-07-25 10:01:42 UTC ( 14 минут ago )
More details
Antivirus Result Update
AhnLab-V3 - 20120725
AntiVir - 20120725
Antiy-AVL - 20120725
Avast - 20120725
AVG - 20120725
BitDefender - 20120725
ByteHero - 20120723
CAT-QuickHeal - 20120724
ClamAV - 20120725
Commtouch - 20120725
[B]Comodo TrojWare.Win32.Kryptik.AGZD 20120725[/B]
DrWeb - 20120725
[B]Emsisoft Trojan-Ransom.Win32.Cidox!IK 20120725[/B]
eSafe - 20120724
[B]ESET-NOD32 a variant of Win32/Kryptik.AIWZ 20120725[/B]
F-Prot - 20120724
F-Secure - 20120725
[B]Fortinet W32/Cidox.KIV!tr 20120725[/B]
GData - 20120725
[B]Ikarus Trojan-Ransom.Win32.Cidox 20120725[/B]
Jiangmin - 20120725
K7AntiVirus - 20120724
[B]Kaspersky HEUR:Trojan.Win32.Generic 20120725[/B]
McAfee - 20120725
McAfee-GW-Edition - 20120725
Microsoft - 20120725
[B]Norman W32/Vundo.BPUD 20120725[/B]
nProtect - 20120725
Panda - 20120725
Rising - 20120725
[B]Sophos Troj/Virtum-Gen 20120725[/B]
SUPERAntiSpyware - 20120725
Symantec - 20120725
TheHacker - 20120724
TotalDefense - 20120724
TrendMicro - 20120725
TrendMicro-HouseCall - 20120725
[B]VBA32 OScope.Trojan.Cidox.07 20120725
VIPRE Trojan.Win32.Vundo.pb (v) 20120725[/B]
ViRobot - 20120725
VirusBuster - 20120724
[URL="https://www.virustotal.com/file/a14f3fa7031f992f2cc0ca52b4c20c28d7a697fc46c805497e548bfa9a974b70/analysis/"]ссылка на вирустотал[/URL]
-
Я тоже извиняюсь, что не в тему. А теперь диаграмм с детектом не делают? Помнится как то были, любопытно было посмотреть
-
[b]Станислав Ивахненко[/b], пока нет, но планируем возобновить эту практику.
-
SHA256: e388355f35cc87011996e9577427e9d94ef654a8f3b1f59e171cfbc99aded31f
File name: ms.ex#
Detection ratio: 3 / 42
Analysis date: 2012-08-15 05:35:27 UTC ( 32 минут ago )
More details
Antivirus Result Update
AhnLab-V3 - 20120814
AntiVir - 20120815
Antiy-AVL - 20120815
Avast - 20120814
AVG - 20120814
BitDefender - 20120815
ByteHero - 20120814
[B]CAT-QuickHeal (Suspicious) - DNAScan 20120814[/B]
ClamAV - 20120815
Commtouch - 20120815
Comodo - 20120814
DrWeb - 20120815
Emsisoft - 20120815
eSafe - 20120814
ESET-NOD32 - 20120814
F-Prot - 20120814
F-Secure - 20120814
Fortinet - 20120814
GData - 20120815
Ikarus - 20120815
Jiangmin - 20120815
[B]K7AntiVirus Spyware 20120814[/B]
Kaspersky - 20120815
McAfee - 20120815
McAfee-GW-Edition - 20120814
Microsoft - 20120815
Norman - 20120814
nProtect - 20120814
Panda - 20120814
PCTools - 20120813
[B]Rising Win32.Asim.a 20120815[/B]
Sophos - 20120815
SUPERAntiSpyware - 20120815
Symantec - 20120815
TheHacker - 20120814
TotalDefense - 20120814
TrendMicro - 20120815
TrendMicro-HouseCall - 20120815
VBA32 - 20120814
VIPRE - 20120815
ViRobot - 20120814
VirusBuster - 20120814
Поймал через Opera
[URL="https://www.virustotal.com/file/e388355f35cc87011996e9577427e9d94ef654a8f3b1f59e171cfbc99aded31f/analysis/1345008927/"]На вирустотал[/URL]
Спустя ~24 часа
BitDefender Trojan.Generic.KDV.697444 20120816
CAT-QuickHeal (Suspicious) - DNAScan 20120814
Comodo Heur.Suspicious 20120816
DrWeb Trojan.Winlock.6234 20120816
Emsisoft Trojan-Ransom.Win32.Gimemo!IK 20120816
ESET-NOD32 a variant of Win32/Injector.VEP 20120815
F-Secure Trojan.Generic.KDV.697444 20120816
Fortinet W32/Gimemo.AMOZ!tr 20120816
GData Trojan.Generic.KDV.697444 20120816
Ikarus Trojan-Ransom.Win32.Gimemo 20120816
K7AntiVirus Spyware 20120815
Kaspersky Trojan-Ransom.Win32.Gimemo.amoz 20120816
Rising Win32.Asim.a 20120815
Sophos Mal/EncPk-AFN 20120816
Symantec Trojan.Gen 20120816
TrendMicro-HouseCall TROJ_GEN.F47V0815
-
SHA256: 3489c02e5c12aa61b0097db0b2df37813dfe5c980839e1b2847733fa0dbd07fb
File name: 0.08234835355581627.exe
Detection ratio: 5 / 43
Analysis date: 2012-10-18 03:56:42 UTC ( 0 минут ago )
[QUOTE]
Agnitum - 20121017
AhnLab-V3 - 20121017
[B]AntiVir TR/Dropper.Gen 20121017[/B]
Antiy-AVL - 20121018
Avast - 20121017
AVG - 20121018
BitDefender - 20121017
[B]ByteHero Virus.Win32.Heur.p 20121016[/B]
CAT-QuickHeal - 20121017
ClamAV - 20121018
Commtouch - 20121018
Comodo - 20121018
DrWeb - 20121018
eSafe - 20121017
ESET-NOD32 - 20121017
F-Prot - 20121018
F-Secure - 20121017
Fortinet - 20121018
GData - 20121017
Ikarus - 20121018
Jiangmin - 20121018
K7AntiVirus - 20121017
Kaspersky - 20121018
Kingsoft - 20121008
McAfee - 20121018
[B]McAfee-GW-Edition Heuristic.BehavesLike.Win32.Downloader.A 20121018[/B]
Microsoft - 20121018
MicroWorld-eScan - 20121018
Norman - 20121017
nProtect - 20121017
[B]Panda Suspicious file 20121018[/B]
PCTools - 20121018
Rising - 20121017
Sophos - 20121018
SUPERAntiSpyware - 20121018
Symantec - 20121018
[B]TheHacker Posible_Worm32 20121016[/B]
TotalDefense - 20121017
TrendMicro - 20121018
TrendMicro-HouseCall - 20121018
VBA32 - 20121016
VIPRE - 20121018
ViRobot - 20121017
[/QUOTE]
-
Мне тоже нравились эти диаграммы.. ИМХО это был один из немногих более-менее объективный метод оценки детекта "в условиях приближенных к реальным"..
-
[QUOTE=ASte;946950]Мне тоже нравились эти диаграммы.. ИМХО это был один из немногих более-менее объективный метод оценки детекта "в условиях приближенных к реальным"..[/QUOTE]
Вы заблуждаетесь :)
-
SHA256: cb796a11b892af8459f4a4d8b61ce93553711b58748b22d580edc44244aabaab
File name: 24FC2AE39CC.exe
Detection ratio: 2 / 46
Analysis date: 2012-12-21 04:21:55 UTC
[QUOTE]
Antivirus Result Update
Agnitum - 20121220
AhnLab-V3 - 20121220
AntiVir - 20121221
Antiy-AVL - 20121220
Avast - 20121221
AVG - 20121221
BitDefender - 20121221
ByteHero - 20121212
CAT-QuickHeal - 20121220
ClamAV - 20121221
Commtouch - 20121221
Comodo - 20121221
DrWeb - 20121221
Emsisoft - 20121221
eSafe - 20121220
ESET-NOD32 - 20121220
F-Prot - 20121220
F-Secure - 20121221
Fortinet - 20121221
GData - 20121221
Ikarus - 20121221
Jiangmin - 20121221
K7AntiVirus - 20121220
[B][COLOR="#FF0000"]Kaspersky Trojan-Spy.Win32.SpyEyes.ahok 20121221[/COLOR][/B]
Kingsoft - 20121217
Malwarebytes - 20121221
McAfee - 20121221
McAfee-GW-Edition - 20121221
[B][COLOR="#FF0000"]Microsoft Trojan:Win32/EyeStye.N 20121221[/COLOR][/B]
MicroWorld-eScan - 20121221
NANO-Antivirus - 20121221
Norman - 20121220
nProtect - 20121221
Panda - 20121220
PCTools - 20121221
Rising - 20121221
Sophos - 20121221
SUPERAntiSpyware - 20121220
Symantec - 20121221
TheHacker - 20121220
TotalDefense - 20121220
TrendMicro - 20121221
TrendMicro-HouseCall - 20121221
VBA32 - 20121220
VIPRE - 20121221
ViRobot - 20121221
[/QUOTE]
-
[QUOTE=Olejah;914101][b]Станислав Ивахненко[/b], пока нет, но планируем возобновить эту практику.[/QUOTE]
Всех с наступающим Новым Годом! Ждём новых тестов в новом году с диаграммами!! :unsure::cool:
-
винлокер
[QUOTE]SHA256: 561bdf15395e85e314845b6767e87fd81ca8c8cd848cd49b9fab5ebe1958b86b
File name: svchosts.exe
Detection ratio: [B][COLOR="#FF0000"]18[/COLOR] / 46[/B]
Analysis date: 2013-01-02 07:29:06 UTC ( 0 минут ago )
Antivirus Result Update
[B]Agnitum Trojan.Agent!zSTWslqgiSY 20130101[/B]
AhnLab-V3 - 20130101
[B]AntiVir TR/LockScreen.AO.165 20130102[/B]
Antiy-AVL - 20130101
[B]Avast Win32:Malware-gen 20130102[/B]
AVG SHeur4.AXJC 20130102
[B]BitDefender Trojan.Generic.KDZ.2881 20130102[/B]
ByteHero - 20121231
CAT-QuickHeal - 20130102
ClamAV - 20130102
Commtouch - 20121231
Comodo - 20130102
[B]DrWeb Trojan.Winlock.7676 20130102[/B]
Emsisoft - 20130102
eSafe - 20130101
[B]ESET-NOD32 Win32/Injector.AAQH 20130101[/B]
F-Prot - 20121231
[B]F-Secure Trojan.Generic.KDZ.2881 20130102
Fortinet W32/Gimemo.AVWU!tr 20130102
GData Trojan.Generic.KDZ.2881 20130102
Ikarus Trojan-Ransom.Win32.Gimemo 20130102[/B]
Jiangmin - 20121221
K7AntiVirus - 20121231
[B]Kaspersky Trojan-Ransom.Win32.Gimemo.avwu 20130102[/B]
Kingsoft - 20121225
Malwarebytes Trojan.Agent 20130102
McAfee - 20130102
McAfee-GW-Edition - 20130102
[B]Microsoft Trojan:Win32/LockScreen.AO 20130102
MicroWorld-eScan Trojan.Generic.KDZ.2881 20130102[/B]
NANO-Antivirus - 20130102
Norman - 20130101
[B]nProtect Trojan.Generic.KDZ.2881 20130101[/B]
Panda Trj/CI.A 20130101
PCTools - 20130102
Rising - 20121228
Sophos - 20130102
SUPERAntiSpyware - 20121231
Symantec - 20130102
TheHacker Trojan/Injector.aaqh 20130102
TotalDefense - 20130101
TrendMicro - 20130102
TrendMicro-HouseCall - 20130102
VBA32 - 20121231
VIPRE - 20130102
ViRobot - 20130102[/QUOTE]
в пятницу (до отсылки файла касперу) ситуация с этим же вирем была такая:
[QUOTE]SHA256: 561bdf15395e85e314845b6767e87fd81ca8c8cd848cd49b9fab5ebe1958b86b
File name: svchosts.exe
Detection ratio: [B][COLOR="#FF0000"]1[/COLOR] / 46[/B]
Analysis date: 2012-12-28 12:16:07 UTC ( 4 дней, 19 часов ago )
Antivirus Result Update
Agnitum - 20121227
AhnLab-V3 - 20121228
AntiVir - 20121228
Antiy-AVL - 20121228
Avast - 20121228
AVG - 20121228
BitDefender - 20121228
ByteHero - 20121226
CAT-QuickHeal - 20121228
ClamAV - 20121228
Commtouch - 20121228
Comodo - 20121228
DrWeb - 20121228
Emsisoft - 20121228
eSafe - 20121226
ESET-NOD32 - 20121228
F-Prot - 20121228
F-Secure - 20121228
Fortinet - 20121228
GData - 20121228
Ikarus - 20121228
Jiangmin - 20121221
K7AntiVirus - 20121227
Kaspersky - 20121227
Kingsoft - 20121225
[B]Malwarebytes Trojan.Agent 20121228[/B]
McAfee - 20121228
McAfee-GW-Edition - 20121228
Microsoft - 20121228
MicroWorld-eScan - 20121228
NANO-Antivirus - 20121228
Norman - 20121228
nProtect - 20121228
Panda - 20121228
PCTools - 20121228
Rising - 20121228
Sophos - 20121228
SUPERAntiSpyware - 20121228
Symantec - 20121228
TheHacker - 20121227
TotalDefense - 20121227
TrendMicro - 20121228
TrendMicro-HouseCall - 20121228
VBA32 - 20121228
VIPRE - 20121228
ViRobot - 20121228[/QUOTE]
[URL="https://www.virustotal.com/file/561bdf15395e85e314845b6767e87fd81ca8c8cd848cd49b9fab5ebe1958b86b/analysis/"]virustotal[/URL]
-
[QUOTE]
SHA256: 3ceeca4e88f4098021377ae870c24b36b96d7d2d8d8b8120a32bcdbada07ea95
File name: 21173453.ex#
Detection ratio: [B][COLOR="#FF0000"]8[/COLOR] / 46[/B]
Analysis date: 2013-04-08 05:41:29 UTC ( 1 day, 18 hours ago )
Agnitum - 20130407
AhnLab-V3 - 20130407
AntiVir - 20130408
Antiy-AVL - 20130408
Avast - 20130408
[B]AVG Cryptic.EOS 20130407
BitDefender Gen:Variant.Symmi.17642 20130408[/B]
ByteHero - 20130405
CAT-QuickHeal - 20130408
ClamAV - 20130408
Commtouch - 20130408
Comodo - 20130408
DrWeb - 20130408
[B] Emsisoft Gen:Variant.Symmi.17642 (B) 20130408 [/B]
eSafe - 20130407
ESET-NOD32 - 20130407
F-Prot - 20130408
[B] F-Secure Gen:Variant.Symmi.17642 20130408 [/B]
Fortinet - 20130408
[B] GData Gen:Variant.Symmi.17642 20130408 [/B]
Ikarus - 20130408
Jiangmin - 20130408
K7AntiVirus - 20130405
[B] Kaspersky Trojan-Ransom.Win32.Gimemo.baie 20130408 [/B]
Kingsoft - 20130401
Malwarebytes - 20130407
McAfee - 20130408
McAfee-GW-Edition - 20130408
Microsoft - 20130408
[B] MicroWorld-eScan Gen:Variant.Symmi.17642 20130408 [/B]
NANO-Antivirus - 20130408
Norman - 20130407
nProtect - 20130407
[B] Panda Suspicious file 20130407 [/B]
PCTools - 20130408
Rising - 20130403
Sophos - 20130408
SUPERAntiSpyware - 20130407
Symantec - 20130408
TheHacker - 20130408
TotalDefense - 20130407
TrendMicro - 20130408
TrendMicro-HouseCall - 20130408
VBA32 - 20130406
VIPRE - 20130408
ViRobot - 20130408[/QUOTE]
[URL="https://www.virustotal.com/en/file/3ceeca4e88f4098021377ae870c24b36b96d7d2d8d8b8120a32bcdbada07ea95/analysis/1365399689/"]virustotal[/URL]
-
SHA256: 1ce72ca52fb707ed15bbbfa1abc4d1174ed4d8b40a278513dfca7ddd9fa36987
Имя файла: 1699852_.exe
Показатель выявления: [COLOR="#FF0000"]13[/COLOR] / 44
Дата анализа: 2013-04-23 05:08:49 UTC (12 минут назад)
[QUOTE]
[B] MicroWorld-eScan Gen:Variant.Kazy.165667 20130423 [/B]
nProtect 20130423
[B] CAT-QuickHeal Trojan.Vundo.Gen 20130423 [/B]
McAfee 20130423
Malwarebytes 20130423
K7AntiVirus 20130422
K7GW 20130422
TheHacker 20130422
F-Prot 20130423
[B] Symantec WS.Reputation.1 20130423 [/B]
Norman 20130422
TotalDefense 20130422
TrendMicro-HouseCall 20130423
Avast 20130423
eSafe 20130418
ClamAV 20130423
[B] Kaspersky Trojan-Ransom.Win32.Gimemo.bben 20130423
BitDefender Gen:Variant.Kazy.165667 20130423
[/B] Agnitum 20130422
SUPERAntiSpyware 20130423
Sophos 20130423
[B] Comodo UnclassifiedMalware 20130423
F-Secure Gen:Variant.Kazy.165667 20130423
[/B] DrWeb 20130423
VIPRE 20130423
AntiVir 20130423
TrendMicro 20130423
[B] McAfee-GW-Edition Heuristic.LooksLike.Win32.Suspicious.I 20130422
Emsisoft Gen:Variant.Kazy.165667 (B) 20130423
[/B] Jiangmin 20130423
Antiy-AVL 20130423
Kingsoft 20130422
Microsoft 20130423
ViRobot 20130423
[B] GData Gen:Variant.Kazy.165667 20130423
[/B] Commtouch 20130423
ByteHero 20130418
VBA32 20130422
PCTools 20130423
ESET-NOD32 20130422
[B] Ikarus Trojan.Win32.Jorik 20130423
Fortinet W32/SpyVoltar.AI!tr 20130423
AVG Agent_s.EV 20130423
[/B] Panda 20130422[/QUOTE]
[URL="https://www.virustotal.com/ru/file/1ce72ca52fb707ed15bbbfa1abc4d1174ed4d8b40a278513dfca7ddd9fa36987/analysis/"]virustotal[/URL]
-
SHA256: 67dac7b33c120c24b79336f8ebddfbd0b4f86480dc2ad0b25b63046af8d46efc
Имя файла: dfcceaffdddad.ex#
Показатель выявления: 10 / 46
Дата анализа: 2013-08-15 00:58:56 UTC (4 минут назад)
[QUOTE]
Agnitum 20130814
AhnLab-V3 20130814
AntiVir 20130815
Antiy-AVL 20130814
Avast 20130815
AVG 20130815
[B] BitDefender Gen:Variant.Kazy.224444 20130815 [/B]
ByteHero 20130814
CAT-QuickHeal 20130814
ClamAV 20130815
Commtouch 20130814
Comodo 20130815
DrWeb 20130815
[B] Emsisoft Gen:Variant.Kazy.224444 (B) 20130815
ESET-NOD32 a variant of Win32/Kryptik.BHZA 20130814
[/B] F-Prot 20130815
[B] F-Secure Gen:Variant.Kazy.224444 20130815 [/B]
Fortinet 20130815
[B] GData Gen:Variant.Kazy.224444 20130815 [/B]
Ikarus 20130815
[B] Jiangmin Win32/Virut.bn 20130814 [/B]
K7AntiVirus 20130814
K7GW 20130814
Kaspersky 20130815
Kingsoft 20130723
[B] Malwarebytes Trojan.FakeMS 20130814
McAfee Trojan-FCVT!3EA5CFEB0055 20130815
[/B] McAfee-GW-Edition 20130814
Microsoft 20130815
[B] MicroWorld-eScan Gen:Variant.Kazy.224444 20130815 [/B]
NANO-Antivirus 20130815
Norman 20130814
nProtect 20130814
[B] Panda Suspicious file 20130814 [/B]
PCTools 20130814
Rising 20130814
Sophos 20130815
SUPERAntiSpyware 20130815
Symantec 20130815
TheHacker 20130814
TotalDefense 20130814
TrendMicro 20130815
TrendMicro-HouseCall 20130815
VBA32 20130814
VIPRE 20130815
ViRobot 20130814
[/QUOTE]
Page generated in 0.01392 seconds with 10 queries