查看: 3268|回复: 16
收起左侧

[病毒样本] 病毒样本,内含10个可疑文件

[复制链接]
franksissi
发表于 2007-8-8 11:01:53 | 显示全部楼层 |阅读模式
2007年8月7日发现的病毒样本,内含10个可疑文件,请帮助检测,谢谢!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
xxwpk007
头像被屏蔽
发表于 2007-8-8 11:11:46 | 显示全部楼层
已检测到: 广告软件 not-a-virus:AdWare.Win32.BHO.ca        文件: G:\样本\病毒样本1[1]\ieset.dll//NSPack
已检测到: 广告软件 not-a-virus:AdWare.Win32.BHO.ca        文件: G:\样本\病毒样本1[1]\IETool.dll//NSPack





Starting the file scan:

Begin scan in 'G:\样本\病毒样本1[1]'
G:\样本\病毒样本1[1]\
  wdhjbean.dll
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  arnalfha.dll
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  brwddstu.dll.0DEL.VIR
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  fbrrquux.dll.0DEL.VIR
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  ffjflnqf.dll
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  hvckjowa.dll
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  ieset.dll
      [DETECTION] Contains signature of the Ad- or Spyware ADSPY/BHO.CA.3
      [INFO]      The file was deleted!
  IETool.dll
      [DETECTION] Contains signature of the Ad- or Spyware ADSPY/BHO.CA.17
      [INFO]      The file was deleted!
  oxnmhfrh.dll
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
  uptool.dll.0DEL.VIR
      [DETECTION] Is the Trojan horse TR/Spy.Wanglian.A
      [INFO]      The file was deleted!
yurius
发表于 2007-8-8 11:39:37 | 显示全部楼层
C:\virus\病毒样本1[1].rar »RAR »病毒样本1[1]\ieset.dll - probably a variant of Win32/Adware.BHO application
jimmyleo
发表于 2007-8-8 11:45:28 | 显示全部楼层
Wanglian?网恋?
残缺的唯美
发表于 2007-8-8 11:57:24 | 显示全部楼层
红伞继续全报?
镭风
发表于 2007-8-8 12:15:55 | 显示全部楼层
费尔围剿

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
lsyer
发表于 2007-8-8 12:32:22 | 显示全部楼层
TR/Spy.Wanglian.A
woai_jolin
发表于 2007-8-8 12:41:22 | 显示全部楼层
//-----------------------------------------------------------------
//
//        Product: BitDefender 8 Standard
//        Version: 8.0
//
//        Created on:        08/08/2007        12:40:41
//
//-----------------------------------------------------------------


Statistics

Scan path        : F:\v
Folders        : 1
Files        :  26
Archives        : 0
Packed files        : 9
Identified viruses        : 1
Infected files        : 1
Warnings        : 0
Suspect files        : 0
Disinfected files        : 0
Deleted files        : 0
Copied files        : 0
Moved files        : 0
Renamed files        : 0
I/O errors        : 0
Scan time        : 00:00:09
Scan speed (files/sec)        : 2

Virus definitions        : 690131
Scan plugins        : 14
Archive plugins        : 38
Unpack plugins        : 6
Mail plugins        : 6
System plugins        : 1

Scan options

Detection
[X] Scan boot sectors
[X] Scan archives
[X] Scan packed files
[X] Scan email

File mask
[ ] Programs
[X] All files
[ ] User defined extensions:
[ ] Exclude extensions: ;

Action

Infected objects
[ ] Ignore
[ ] Disinfect
[ ] Delete
[ ] Copy to quarantine
[ ] Move to quarantine
[ ] Rename
[X] Prompt user

Second action
[X] Ignore
[ ] Delete
[ ] Copy to quarantine
[ ] Move to quarantine
[ ] Rename
[ ] Prompt user

Scan options
[X] Enable warnings
[X] Enable heuristics
[X] Show all files in log
[X] Report file: vscan.log
[ ] Append to existing report

Summary:

F:\v\IETool.dll        Infected Backdoor.Pcclient.GV

Scanned files

C:\=>Master Boot Record        OK
C:\=>Primary partition 1 (Active)        OK
C:\=>Logical partition 1        OK
C:\=>Logical partition 2        OK
C:\=>Logical partition 3        OK
C:\=>Logical partition 4        OK
C:\=>Logical partition 5        OK
F:\v\        OK
F:\v\arnalfha.dll        OK
F:\v\arnalfha.dll=>:Zone.Identifier        OK
F:\v\brwddstu.dll.0DEL.VIR        OK
F:\v\brwddstu.dll.0DEL.VIR=>:Zone.Identifier        OK
F:\v\fbrrquux.dll.0DEL.VIR        OK
F:\v\fbrrquux.dll.0DEL.VIR=>:Zone.Identifier        OK
F:\v\ffjflnqf.dll        OK
F:\v\ffjflnqf.dll=>:Zone.Identifier        OK
F:\v\hvckjowa.dll        OK
F:\v\hvckjowa.dll=>:Zone.Identifier        OK
F:\v\ieset.dll        OK
F:\v\ieset.dll=>:Zone.Identifier        OK
F:\v\IETool.dll        Infected Backdoor.Pcclient.GV
F:\v\oxnmhfrh.dll        OK
F:\v\oxnmhfrh.dll=>:Zone.Identifier        OK
F:\v\uptool.dll.0DEL.VIR        OK
F:\v\uptool.dll.0DEL.VIR=>:Zone.Identifier        OK
F:\v\wdhjbean.dll        OK
F:\v\wdhjbean.dll=>:Zone.Identifier        OK
woai_jolin
发表于 2007-8-8 12:42:03 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
remind_me
发表于 2007-8-8 13:11:53 | 显示全部楼层
rising 一个都不认识  [:27:] [:27:]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-15 04:50 , Processed in 0.136923 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表