12
返回列表 发新帖
楼主: moonsilver
收起左侧

[病毒样本] 一个超级大包,不发md5了,不看后悔啦

[复制链接]
promised
发表于 2007-6-27 13:02:51 | 显示全部楼层
Scan performed at: 2007-6-27 13:07:38
Scanning Log
NOD32 version 2356 (20070627) NT
Command line: C:\ABC\~tmp.rar C:\ABC\1FJ1ugwg.rar C:\ABC\235.rar C:\ABC\0268BBF5.rar C:\ABC\1111.rar C:\ABC\20328.rar C:\ABC\222222.rar C:\ABC\256728F2.rar C:\ABC\ADGUA_2196.rar C:\ABC\auditusr.rar C:\ABC\autochk.rar C:\ABC\autoconv.rar C:\ABC\autofmt.rar C:\ABC\autolfn.rar C:\ABC\WINDOWS.rar C:\ABC\WinForm.rar C:\ABC\新建文件夹.rar
Operating memory - is OK

Date: 27.6.2007  Time: 13:07:53
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\ABC\~tmp.rar; C:\ABC\1FJ1ugwg.rar; C:\ABC\235.rar; C:\ABC\0268BBF5.rar; C:\ABC\1111.rar; C:\ABC\20328.rar; C:\ABC\222222.rar; C:\ABC\256728F2.rar; C:\ABC\ADGUA_2196.rar; C:\ABC\auditusr.rar; C:\ABC\autochk.rar; C:\ABC\autoconv.rar; C:\ABC\autofmt.rar; C:\ABC\autolfn.rar; C:\ABC\WINDOWS.rar; C:\ABC\WinForm.rar; C:\ABC\新建文件夹.rar
C:\ABC\~tmp.rar ?RAR ?~tmp.tmp - probably unknown NewHeur_PE virus [7]
C:\ABC\0268BBF5.rar ?RAR ?0268BBF5.DLL - probably a variant of Win32/Agent.NEO trojan
C:\ABC\222222.rar ?RAR ?fd012.exe ?NSIS ?netdde32.exe - probably unknown NewHeur_PE virus [7]
C:\ABC\222222.rar ?RAR ?fd012.exe ?NSIS ?d03.exe - error occurred while reading archive
C:\ABC\256728F2.rar ?RAR ?256728F2.EXE - a variant of Win32/Agent.NEO trojan
C:\ABC\ADGUA_2196.rar ?RAR ?ADGUA_2196.exe ?NSIS ?VideoCap10.exe - probably unknown NewHeur_PE virus [7]
C:\ABC\WINDOWS.rar ?RAR ?9.exe - Win32/PSW.Agent.NEW trojan
C:\ABC\WINDOWS.rar ?RAR ?10.exe - probably unknown NewHeur_PE virus [7]
C:\ABC\WINDOWS.rar ?RAR ?11.exe - probably a variant of Win32/PSW.QQPass.VD trojan
C:\ABC\WINDOWS.rar ?RAR ?12.exe - a variant of Win32/PSW.OnLineGames.RC trojan
C:\ABC\WINDOWS.rar ?RAR ?14.exe - Win32/PSW.Agent.NDP trojan
C:\ABC\WINDOWS.rar ?RAR ?15.exe - Win32/PSW.Agent.NDP trojan
C:\ABC\WinForm.rar ?RAR ?WinForm.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\ABC\新建文件夹.rar ?RAR ?46BF8E6B.DLL - probably a variant of Win32/Agent.NEO trojan
C:\ABC\新建文件夹.rar ?RAR ?54DCD80D.DLL - probably a variant of Win32/Genetik trojan
C:\ABC\新建文件夹.rar ?RAR ?6BF9991C.EXE - a variant of Win32/Agent.NEO trojan
C:\ABC\新建文件夹.rar ?RAR ?84A64F25.EXE - a variant of Win32/Agent.NEO trojan
C:\ABC\新建文件夹.rar ?RAR ?87CCB3F2.exe - a variant of Win32/Adware.Toolbar.Baidu application
C:\ABC\新建文件夹.rar ?RAR ?88342C60.EXE - a variant of Win32/Agent.NEO trojan
C:\ABC\新建文件夹.rar ?RAR ?9D601AD3.exe - Win32/TrojanClicker.VB.PN trojan
Number of scanned files: 67
Number of threats found: 19
Number of active threats: 8
Time of completion: 13:08:16 Total scanning time: 23 sec (00:00:23)

Notes:
[7] File is probably infected with an unknown virus.
mofunzone
发表于 2007-6-27 13:04:08 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\WinForm.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  WinForm.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ZC
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\~tmp.tmp'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  ~tmp.tmp
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\1FJ1ugwg.dll'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  1FJ1ugwg.dll
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\6BF9991C.EXE'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  6BF9991C.EXE
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.ahj.555 Backdoor server programs
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\6to4svc.dll'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  6to4svc.dll
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\9.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  9.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.UF.60
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\9D601AD3.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  9D601AD3.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\10.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  10.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\11.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  11.exe
      [DETECTION] Is the Trojan horse TR/PSW.Steal.31849
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\12.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  12.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  13.exe
      [DETECTION] Contains signature of the SPR/Tool.Hackdns.1 program
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\14.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  14.exe
      [DETECTION] Is the Trojan horse TR/PSW.7680.2
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\15.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  15.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.NW.54
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\46BF8E6B.DLL'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  46BF8E6B.DLL
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\54DCD80D.DLL'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  54DCD80D.DLL
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\84A64F25.EXE'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  84A64F25.EXE
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\87CCB3F2.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  87CCB3F2.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\235.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  235.exe
      [DETECTION] Contains signature of the Ad- or Spyware ADSPY/CDN.B.1
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\0268BBF5.DLL'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  0268BBF5.DLL
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  20328.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\88342C60.EXE'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  88342C60.EXE
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\256728F2.EXE'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  256728F2.EXE
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  ADGUA_2196.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\auditusr.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  auditusr.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\autochk.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  autochk.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\autoconv.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  autoconv.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\autofmt.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  autofmt.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\autolfn.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  autolfn.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\bind_50099.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  bind_50099.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\bind_50201.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  bind_50201.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\fc.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  fc.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\fd012.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  fd012.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\fde.dll'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  fde.dll
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\fdeploy.dll'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  fdeploy.dll
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\fltMc.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  fltMc.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\kb16.com'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  kb16.com
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\net1.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  net1.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\net.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  net.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\nw16.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  nw16.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\tree.com'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  tree.com
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹\uwdf.exe'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  uwdf.exe


End of the scan: 2007年6月26日  22:08
Used time: 00:13 min

The scan has been done completely.

      0 Scanning directories
     41 Files were scanned
     16 viruses and/or unwanted programs were found
      5 classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     20 Files not concerned
      0 Archives were scanned
     16 Warnings
      0 Notes
      0 Hidden objects were found


[Scan path] C:\Documents and Settings\Administrator\My Documents\新建文件夹
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\0268BBF5.DLL - decompression error
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\10.exe infected with BackDoor.Twin
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\11.exe infected with Trojan.PWS.Qqpass.851
C:\Documents and Settings\Administrator\My Documents\新建文件夹\12.exe infected with Trojan.PWS.Wsgame
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe\data001 - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe\data002 - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe\data003 - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe\data004 - Ok
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe\data005 infected with Trojan.Sniff
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe\data006 - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\13.exe - archive contains infected objects
C:\Documents and Settings\Administrator\My Documents\新建文件夹\14.exe infected with Trojan.PWS.Wsgame
C:\Documents and Settings\Administrator\My Documents\新建文件夹\15.exe infected with Trojan.PWS.Wsgame
C:\Documents and Settings\Administrator\My Documents\新建文件夹\1FJ1ugwg.dll - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe\data001 - Ok
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe\data002 is an adware program Adware.Newweb
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe\data003 - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe\data004 - Ok
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe\data005 - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\20328.exe - archive contains infected objects
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\235.exe is an adware program Adware.Cdn
C:\Documents and Settings\Administrator\My Documents\新建文件夹\256728F2.EXE - Ok
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\46BF8E6B.DLL - decompression error
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\54DCD80D.DLL - decompression error
C:\Documents and Settings\Administrator\My Documents\新建文件夹\6BF9991C.EXE infected with Trojan.Popwin
C:\Documents and Settings\Administrator\My Documents\新建文件夹\6to4svc.dll - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\84A64F25.EXE - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\87CCB3F2.exe infected with Trojan.Click.1956
C:\Documents and Settings\Administrator\My Documents\新建文件夹\88342C60.EXE - Ok
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\9.exe infected with Trojan.PWS.Wsgame
C:\Documents and Settings\Administrator\My Documents\新建文件夹\9D601AD3.exe infected with Trojan.Click.1956
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe\data001 - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe\data002\data001 infected with Trojan.DownLoader.origin
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe\data002\data002 - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe\data002\data003 - Ok
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe\data002 - archive contains infected objects
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe\data003 - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\ADGUA_2196.exe - archive contains infected objects
C:\Documents and Settings\Administrator\My Documents\新建文件夹\auditusr.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\autochk.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\autoconv.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\autofmt.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\autolfn.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\bind_50099.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\bind_50201.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\fc.exe - Ok
>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\fd012.exe\data001 - Ok
>>>C:\Documents and Settings\Administrator\My Documents\新建文件夹\fd012.exe\data002 probably infected with DLOADER.Trojan
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\fd012.exe\data003 - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\fd012.exe - archive contains infected objects
C:\Documents and Settings\Administrator\My Documents\新建文件夹\fde.dll - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\fdeploy.dll - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\fltMc.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\kb16.com - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\net.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\net1.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\nw16.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\tree.com - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\uwdf.exe - Ok
C:\Documents and Settings\Administrator\My Documents\新建文件夹\WinForm.exe infected with Trojan.PWS.Gamania
>C:\Documents and Settings\Administrator\My Documents\新建文件夹\~tmp.tmp infected with Trojan.DownLoader.24767

-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 57
Infected objects found: 13
Objects with modifications found: 0
Suspicious objects found: 1
Adware programs found: 2
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 411 Kb/s
Scan time: 00:00:09
moonsilver
 楼主| 发表于 2007-6-27 13:04:19 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
woai_jolin
发表于 2007-6-27 13:08:34 | 显示全部楼层
2007/6/27 13:10:37        Scanning Log
2007/6/27 13:10:37        Version of virus signature database: 2356 (20070627)
2007/6/27 13:10:37        Date: 27.6.2007  Time: 13:10:37
2007/6/27 13:10:37        Scanned disks, folders and files: D:\peid\
2007/6/27 13:10:40        D:\peid\0268BBF5.DLL - probably a variant of Win32/Agent.NEO trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:42        D:\peid\10.exe - probably unknown NewHeur_PE virus [7] - deleted - quarantined
2007/6/27 13:10:43        D:\peid\11.exe - probably a variant of Win32/PSW.QQPass.VD trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:44        D:\peid\12.exe - a variant of Win32/PSW.OnLineGames.RC trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:47        D:\peid\14.exe - Win32/PSW.Agent.NDP trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:47        D:\peid\15.exe - Win32/PSW.Agent.NDP trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:51        D:\peid\256728F2.EXE - a variant of Win32/Agent.NEO trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:52        D:\peid\46BF8E6B.DLL - probably a variant of Win32/Agent.NEO trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:53        D:\peid\54DCD80D.DLL - probably a variant of Win32/Genetik trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:54        D:\peid\6BF9991C.EXE - a variant of Win32/Agent.NEO trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:10:56        D:\peid\84A64F25.EXE - a variant of Win32/Agent.NEO trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:11:01        D:\peid\87CCB3F2.exe - a variant of Win32/Adware.Toolbar.Baidu application - cleaned by deleting - quarantined [1]
2007/6/27 13:11:02        D:\peid\88342C60.EXE - a variant of Win32/Agent.NEO trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:11:03        D:\peid\9.exe - Win32/PSW.Agent.NEW trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:11:04        D:\peid\9D601AD3.exe - Win32/TrojanClicker.VB.PN trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:11:08        D:\peid\ADGUA_2196.exe - probably unknown NewHeur_PE virus [7] - deleted - quarantined
2007/6/27 13:11:08        D:\peid\ADGUA_2196.exe » NSIS:SFX=37376 » VideoCap10.exe - probably unknown NewHeur_PE virus [7]
2007/6/27 13:11:11        D:\peid\fd012.exe - probably unknown NewHeur_PE virus [7] - deleted - quarantined
2007/6/27 13:11:11        D:\peid\fd012.exe » NSIS:SFX=45056 » netdde32.exe - probably unknown NewHeur_PE virus [7]
2007/6/27 13:11:11        D:\peid\fd012.exe » NSIS:SFX=45056 » d03.exe - error reading archive
2007/6/27 13:11:13        D:\peid\WinForm.exe - a variant of Win32/PSW.OnLineGames.YA trojan - cleaned by deleting - quarantined [1]
2007/6/27 13:11:14        D:\peid\~tmp.tmp - probably unknown NewHeur_PE virus [7] - deleted - quarantined
2007/6/27 13:11:14        Number of scanned files: 44
2007/6/27 13:11:14        Number of threats found: 19
2007/6/27 13:11:14        Time of completion: 13:11:14  Total scanning time: 37 sec (00:00:37)
2007/6/27 13:11:14        Notes:
2007/6/27 13:11:14        [1] File has been deleted as it contained only the virus body.
2007/6/27 13:11:14        [7] File is probably infected with an unknown virus.
qqq000@qq.com
头像被屏蔽
发表于 2007-6-27 15:49:42 | 显示全部楼层

你没见到一个 广告
提示你安装的
freeboyoua
发表于 2007-6-27 16:19:48 | 显示全部楼层
扫描开始时间: 2007-6-27 16:12:59
扫描日志
NOD32 版本 2356 (20070627) NT
命令行: C:\Documents and Settings\Administrator\桌面\病毒压缩包

日期: 2007年6月27日  时间: 16:13:00
反 Rookits 技术已启用。
已扫描磁盘、文件夹和文件: C:\Documents and Settings\Administrator\桌面\病毒压缩包\
C:\Documents and Settings\Administrator\桌面\病毒压缩包\0268BBF5.rar ?RAR ?0268BBF5.DLL<病毒 - 可能是 Win32/Agent.NEO 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\256728F2.rar ?RAR ?256728F2.EXE<病毒 - Win32/Agent.NEO 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\ADGUA_2196.rar ?RAR ?ADGUA_2196.exe ?NSIS ?VideoCap10.exe<病毒 - 未知的 NewHeur_PE 病毒 [7]>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WINDOWS.rar ?RAR ?9.exe<病毒 - Win32/PSW.Agent.NEW 木马>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WINDOWS.rar ?RAR ?10.exe<病毒 - 未知的 NewHeur_PE 病毒 [7]>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WINDOWS.rar ?RAR ?11.exe<病毒 - 可能是 Win32/PSW.QQPass.VD 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WINDOWS.rar ?RAR ?12.exe<病毒 - Win32/PSW.OnLineGames.RC 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WINDOWS.rar ?RAR ?14.exe<病毒 - Win32/PSW.Agent.NDP 木马>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WINDOWS.rar ?RAR ?15.exe<病毒 - Win32/PSW.Agent.NDP 木马>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\WinForm.rar ?RAR ?WinForm.exe<病毒 - Win32/PSW.OnLineGames.YA 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\~tmp.rar ?RAR ?~tmp.tmp<病毒 - 未知的 NewHeur_PE 病毒 [7]>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?46BF8E6B.DLL<病毒 - 可能是 Win32/Agent.NEO 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?54DCD80D.DLL<病毒 - 可能是 Win32/Genetik 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?6BF9991C.EXE<病毒 - Win32/Agent.NEO 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?84A64F25.EXE<病毒 - Win32/Agent.NEO 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?87CCB3F2.exe<病毒 - Win32/Adware.Toolbar.Baidu 应用程序 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?88342C60.EXE<病毒 - Win32/Agent.NEO 木马 变种>
C:\Documents and Settings\Administrator\桌面\病毒压缩包\新建文件夹.rar ?RAR ?9D601AD3.exe<病毒 - Win32/TrojanClicker.VB.PN 木马>
已扫描文件数量: 40
已发现病毒数量: 18
完成时间: 16:22:38 总共扫描时间: 578 秒 (00:09:38)

注意:
[7] 文件可能感染了未知病毒。
yashoo
头像被屏蔽
发表于 2007-6-27 18:39:38 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hj5abc
发表于 2007-6-27 22:03:07 | 显示全部楼层
NOD32 19个..出乎我的意料. ..
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-10 18:10 , Processed in 0.116072 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表