查看: 3034|回复: 19
收起左侧

[病毒样本] 霉国来的邮件里下到的[A578C2]

[复制链接]
野马
发表于 2007-7-9 13:46:58 | 显示全部楼层 |阅读模式
谁装微点英文版的帮忙截个图上来。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
tonger2003
发表于 2007-7-9 13:48:01 | 显示全部楼层
已检测到: 病毒 Packed.Win32.Tibs.ab        URL: http://bbs.kafan.cn/attachment.php?aid=98589//A578C2.exe
红心王子
发表于 2007-7-9 13:51:29 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\A578C2.rar'
C:\Documents and Settings\Administrator\桌面\A578C2.rar
  [0] Archive type: RAR
  --> A578C2.exe
      [DETECTION] Is the Trojan horse TR/Small.DBY.DB
      [INFO]      The file was deleted!
rasis
发表于 2007-7-9 13:51:38 | 显示全部楼层
A578C2.rar
  [0] Archive type: RAR
  --> A578C2.exe
      [DETECTION] Is the Trojan horse TR/Small.DBY.DB
promised
发表于 2007-7-9 13:55:41 | 显示全部楼层
c:\ABC\A578C2.rar:\A578C2.exe - Signature 'Packed.Win32.Tibs.ab' found
c:\ABC\A578C2.rar

        2 Files scanned
          (1 Archiv with 1 file)
        1 Signature found
        0 Suspect code-parts found
        Used time: 0:00.047
欠妳緈諨
发表于 2007-7-9 13:56:06 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
287669789
发表于 2007-7-9 14:59:51 | 显示全部楼层
卡巴轻松解决病毒[:27:]
电影结束了
发表于 2007-7-9 15:01:54 | 显示全部楼层
Scan performed at: 2007-7-9 15:01:28
Scanning Log
NOD32 version 2384 (20070708) NT
Command line: C:\Documents and Settings\wangcheng\桌面\A578C2.rar
C:\Program Files\Eset\nod32.exe - is OK

Date: 9.7.2007  Time: 15:01:29
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\wangcheng\桌面\A578C2.rar
C:\Documents and Settings\wangcheng\桌面\A578C2.rar ?RAR ?A578C2.exe - Win32/Nuwar worm
Number of scanned files: 2
Number of threats found: 1
Number of active threats: 1
Time of completion: 15:01:30 Total scanning time: 1 sec (00:00:01)
zane_xzz
发表于 2007-7-9 15:06:14 | 显示全部楼层
Check system areas...
Check selected directories and files...
Object: A578C2.exe
        In archive: C:\Documents and Settings\Administrator\桌面\A578C2.rar
        Status: Virus detected
        Virus: Packed.Win32.Tibs.ab (Engine A)
Object: A578C2.rar
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Virus detected
        Virus: Packed.Win32.Tibs.ab (Engine A)
Analysis complete: 7/9/2007 15:05
    1 files checked
    1 infected files detected
    0 suspected files detected
坐在墙头
发表于 2007-7-9 15:07:48 | 显示全部楼层
这样一封电子邮件:
Dear Customer,

Our robot has detected an abnormal activity from your IP adress
on sending e-mails. Probably it is connected with the last epidemic
of a worm which does not have official patches at the moment.

We recommend you to install this patch to remove worm files
and stop email sending, otherwise your account will be blocked.

Abuse Team
我也收到了
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-11 01:22 , Processed in 0.130393 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表