12
返回列表 发新帖
楼主: gzg
收起左侧

[病毒样本] 一大包毒瘤

[复制链接]
woai_jolin
发表于 2007-8-12 22:43:52 | 显示全部楼层
Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanDownloader.QQHelper.va in
F:\V\TEMP\BIND_5~1.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanDownloader.QQHelper.va in
F:\V\TEMP\BIND_5~1.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.OnLineGames.da in
F:\V\TEMP\GEWPTQTD.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.OnLineGames.da in
F:\V\TEMP\GEWPTQTD.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.Nilage.bbr in
F:\V\TEMP\LGSYM.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.Nilage.bbr in
F:\V\TEMP\LGSYM.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.WOW.ec in
F:\V\TEMP\LOGSONY.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.WOW.ec in
F:\V\TEMP\LOGSONY.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.OnLineGames.es in
F:\V\TEMP\UPXDN.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.OnLineGames.es in
F:\V\TEMP\UPXDN.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.OnLineGames.es in
F:\V\TEMP\UPXDN.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanPSW.OnLineGames.es in
F:\V\TEMP\UPXDN.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanDownloader.Cryptic.dw in
F:\V\TEMP\WINGOIN.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: TrojanDownloader.Cryptic.dw in
F:\V\TEMP\WINGOIN.EXE
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: Rootkit.Vanti.eu in
F:\V\TEMP\XNY.DLL
Action taken: Deleted

Report for - Quick Heal Online Protection
Sunday, 12 August, 2007, Time 22:42
Quick Heal Version - 9.00
Virus database - 11 August 2007

-----------------------------------------------------------------------------------------------------------------
Detected: Rootkit.Vanti.eu in
F:\V\TEMP\XNY.DLL
Action taken: Deleted
欠妳緈諨
发表于 2007-8-12 22:58:49 | 显示全部楼层
大部分是流氓,金山一共37个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
欠妳緈諨
发表于 2007-8-12 23:01:07 | 显示全部楼层
AVAST38只

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
woai_jolin
发表于 2007-8-12 23:58:23 | 显示全部楼层
扫描开始于2007年8月12日 23:58:12
F:\v\Temp\00069656.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00160105.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00214753.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00266700.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00427404.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00429101.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00503000.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00585100.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\00803206.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\01013612.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\01135616.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\01485419.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\01769965.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\01832160.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\02006321.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\02219073.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\02333020.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\02349927.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\02698522.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\02866728.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\03106187.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\03121786.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\03323033.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\03381281.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\03610937.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\04274746.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\04384590.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\04803097.exe,查到病毒: Adware/Cdnhelper, 操作: 删除/隔离
F:\v\Temp\BIND_5~1.EXE,查到病毒: W32/BAY.VA!tr.dldr, 操作: 删除/隔离
F:\v\Temp\gewptqtd.dll,查到病毒: W32/Rumrux.A!tr.pws, 操作: 删除/隔离
F:\v\Temp\G_SERV~1.EXE,查到病毒: Suspicious, 操作: <无>
F:\v\Temp\LgSym.dll,查到病毒: W32/Agent.NBX!tr.pws, 操作: 删除/隔离
F:\v\Temp\logsony.exe,查到病毒: W32/Wow.EC!tr.pws, 操作: 删除/隔离
F:\v\Temp\upxdn.dll,查到病毒: SPY/LegMir, 操作: 删除/隔离
F:\v\Temp\upxdn.exe,查到病毒: W32/LegMir.ES!tr.pws, 操作: 删除/隔离
F:\v\Temp\Win8.exe,查到病毒: Suspicious, 操作: <无>
F:\v\Temp\WinA.exe,查到病毒: Suspicious, 操作: <无>
F:\v\Temp\wingoin.exe,查到病毒: W32/Cryptic.DW!tr.dldr, 操作: 删除/隔离
F:\v\Temp\xny.dll,查到病毒: W32/Vanti.EU!tr.rkit, 操作: 删除/隔离
扫描结束于2007年8月12日 23:58:15
总共扫描了52个文件, 其中感染病毒文件为39个. 总共扫描了7个引导区, 感染的引导区为0个.
The EQs
发表于 2007-8-13 03:58:37 | 显示全部楼层

nod32和卡巴一样都是9个

Scan performed at: 2007-8-13 3:57:33
Scanning Log
NOD32 version 2453 (20070812) NT
Command line: C:\Documents and Settings\EQ2\桌面\Temp
Operating memory - is OK

Date: 13.8.2007  Time: 03:57:39
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\Temp\
C:\Documents and Settings\EQ2\桌面\Temp\Temp\BIND_5~1.EXE - a variant of Win32/TrojanDownloader.QQHelper trojan
C:\Documents and Settings\EQ2\桌面\Temp\Temp\gewptqtd.dll - Win32/PSW.Agent.NAV trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\Temp\Temp\G_SERV~1.EXE - a variant of Win32/Hupigon trojan
C:\Documents and Settings\EQ2\桌面\Temp\Temp\LgSym.dll - Win32/PSW.Agent.NBX trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\Temp\Temp\logsony.exe - Win32/Pacex.Gen virus
C:\Documents and Settings\EQ2\桌面\Temp\Temp\upxdn.dll - Win32/PSW.Agent.NCC trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\Temp\Temp\upxdn.exe - a variant of Win32/PSW.OnLineGames.NAG trojan
C:\Documents and Settings\EQ2\桌面\Temp\Temp\wingoin.exe - Win32/TrojanDownloader.VB.NIB trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\Temp\Temp\xny.dll - Win32/Pacex.Gen virus
Number of scanned files: 52
Number of threats found: 9
Number of files cleaned: 9
Time of completion: 03:58:00 Total scanning time: 21 sec (00:00:21)
woai_jolin
发表于 2007-8-13 07:11:45 | 显示全部楼层
cat和飞塔都快无敌了
镭风
发表于 2007-8-13 09:13:30 | 显示全部楼层
费尔38个,哈哈

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-8-13 09:34:40 | 显示全部楼层
CDN很多杀软都不杀
拿这个来评判未免。。。。。。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-15 00:00 , Processed in 0.094074 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表