12
返回列表 发新帖
楼主: allenhippo
收起左侧

[病毒样本] 今晚最后几个,睡觉了[MD5: CABE12 B6AEAF B6324F 0461B6 5975C5]

[复制链接]
蓝色牛仔裤
发表于 2007-6-24 23:11:02 | 显示全部楼层
[Scan path] C:\Documents and Settings\Administrator\桌面\virus.rar
>>C:\Documents and Settings\Administrator\桌面\virus.rar\index[1].exe infected with Trojan.DownLoader.origin
>>>C:\Documents and Settings\Administrator\桌面\virus.rar\x1[1].exe - Ok
>>C:\Documents and Settings\Administrator\桌面\virus.rar\x4[1].exe infected with Trojan.PWS.Wsgame
>>C:\Documents and Settings\Administrator\桌面\virus.rar\x6[1].exe infected with Trojan.PWS.Wsgame
>C:\Documents and Settings\Administrator\桌面\virus.rar\x7[1].exe - Ok
C:\Documents and Settings\Administrator\桌面\virus.rar - archive contains infected objects
aerbeisi
发表于 2007-6-24 23:58:56 | 显示全部楼层
video.dll, wmsj.exek - Trojan-PSW.Win32.Delf.wi

刚才从那个程序中又提取了几个。
1688388728
发表于 2007-6-25 02:54:00 | 显示全部楼层
病毒: Trojan-PSW.Win32.Delf.wi, Trojan-PSW.Win32.Nilage.bjp, Trojan.Win32.StartPage.aos
檔案: virus[1].rar
目錄: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\OH2QVAT0
處理序: GreenBrowser.exe
病毒: Trojan-PSW.Win32.Delf.wi
檔案: unp151100904.tmp
目錄: C:\WINDOWS\Temp\_avast4_
處理序: CHService.exe                              病毒: Win32:Onlinegames-ACS [Trj]
檔案: unp151046575.tmp
目錄: C:\WINDOWS\Temp\_avast4_                                     病毒: Trojan-PSW.Win32.Nilage.bjp
檔案: unp150996343.tmp
目錄: C:\WINDOWS\Temp\_avast4_
處理序: CHService.exe
病毒: Win32:Onlinegames-ACS [Trj]
檔案: unp151046575.tmp
目錄: C:\WINDOWS\Temp\_avast4_
處理序: CHService.exe
處理序: CHService.exe
taihuxian
发表于 2007-6-25 05:55:36 | 显示全部楼层
Virus: Trojan-PSW.Win32.Delf.wi, Trojan-PSW.Win32.Nilage.bjp, Trojan.Win32.StartPage.aos

Virus found while downloading Web content.

Address: bbs.kafan.cn
woai_jolin
发表于 2007-6-25 13:05:56 | 显示全部楼层
2007/6/25 12:44:18        eAmon        file        D:\VIRUS\ME.EXE        probably a variant of Win32/Pacex.Gen virus        deleted - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/25 13:05:43        eAmon        file        D:\VIRUS\X4[1].EXE        a variant of Win32/PSW.Agent.NEW trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/25 13:05:40        eAmon        file        D:\VIRUS\X1[1].EXE        probably unknown NewHeur_PE virus        deleted - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/25 13:05:37        eAmon        file        D:\VIRUS\INDEX[1].EXE        probably unknown NewHeur_PE virus        deleted - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
cpkkz
发表于 2007-6-25 13:59:22 | 显示全部楼层
趋势科技报杀   现在趋势的表现真的蛮不错的~!
yurius
发表于 2007-6-25 14:19:19 | 显示全部楼层
趋势太慢了,封印中。。。

IKARUS - T3SCAN V1.25 (WIN32)
         T3 V1.01.08
         Copyright (c) 2003 - 2007 by IKARUS Software.
         Written by Richard Schmoegner.
         All rights reserved.

Signature-database from 24.6.2007 17:05:40 (Build: 69117)

C:\virus\virus1.rar:\index[1].exe - Signature 'Trojan.Win32.Agent.KE' found
C:\virus\virus1.rar:\x1[1].exe - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:\virus\virus1.rar:\x4[1].exe - Signature 'Trojan-PWS.Win32.Nilage.bjp' found
C:\virus\virus1.rar:\x6[1].exe - Signature 'Trojan-PWS.Win32.Nilage.bjp' found

        6 Files scanned
          (1 Archiv with 5 files)
        4 Signatures found
        0 Suspect code-parts found
        Used time: 0:00.062
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-11 23:50 , Processed in 0.095234 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表