12
返回列表 发新帖
楼主: promised
收起左侧

[病毒样本] [MD5: A5C3E1 C222A0 93DEB4]

[复制链接]
woai_jolin
发表于 2007-8-16 13:02:30 | 显示全部楼层
BitDefender Log File
Product : Bitdefender Internet Security
Version : BitDefender UIScanner v.11
Log date : 13:02:13 16/08/2007
Log path : C:\Documents and Settings\Administrator\Application Data\BitDefender\Desktop\Profiles\Logs\contextual\1187240533_9_02.xml

Scan Paths: Path0000: F:\v\v1\样本3.rar


Scan Options: Scan for viruses : Yes
Scan for adware : Yes
Scan for spyware : Yes
Scan for applications : Yes
Scan for dialers : Yes
Scan for rootkits : No


Target selection options: Scan registry keys : No
Scan cookies : No
Scan boot sectors : No
Scan memory processes : No
Scan archives : Yes
Scan runtime packers : Yes
Scan email : Yes
Scan all files : No
Heuristic Scan : Yes
Scanned extenstions : (null)
Exclude extensions :  


Target Processing Default action for infected objects : Disinfect
Default action for suspicious objects : None
Default action for hidden objects : None


Scan engines summary Number of virus signatures : 754472
Archive plugins : 40
Email plugins : 6
Scan plugins : 12
Archive plugins : 40
System plugins : 4
Unpack plugins : 6


Overall scan summary Scanned items : 14
Infected items : 2
Suspicious items : 0
Resolved items : 0
Individual viruses found : 2
Scanned directories : 0
Scanned boot sectors : 0
Scanned archives : 6
Input-output errors : 0
Scan time : 00:00:00:05
Files per second : 2


Scanned files summary Scanned : 14
Infected : 2


Scanned processes summary Scanned : 0
Infected : 0


Scanned registry keys summary Scanned : 0
Infected : 0


Scanned cookies summary Scanned : 0
Infected : 0


Remaining issues:Object Name Threat Name  Final Status


Resolved issues:Object Name Threat Name  Final Status
F:\v\v1\样本3.rar DeepScan:Generic.Virtob.1.5B8E2BDA Deleted
woai_jolin
发表于 2007-8-16 14:15:09 | 显示全部楼层
===================================================================================================
NVCOD On Demand Scanner 5.80.02

NSE revision 5.91.04
nvcbin.def revision 5.90.00 of 2007/08/15 19:07:26 (829574 variants)
nvcmacro.def revision 5.90.00 of 2007/08/06 19:46:49 (20358 variants)
Total number of variants: 849932
Command line: "@C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~OD9C.tmp"
===================================================================================================

       Time  Filename                                                     Virus name
---------------------------------------------------------------------------------------------------
- Scanning files matching: F:\v\v1\load1.exe
      219 ms F:\v\v1\load1.exe                                          
        0 ms F:\v\v1\load1.exe:Zone.Identifier                           
- Scanning files matching: F:\v\v1\loadadv579.exe
       15 ms F:\v\v1\loadadv579.exe                                       Trojan Tibs.gen116 ()
        0 ms F:\v\v1\loadadv579.exe:Zone.Identifier                     
- Scanning files matching: F:\v\v1\li01.exe
     5718 ms F:\v\v1\li01.exe                                            
        0 ms F:\v\v1\li01.exe:Zone.Identifier                           
- File F:\v\v1\loadadv579.exe quarantined.
- File F:\v\v1\loadadv579.exe deleted.

===================================================================================================

The scanning started: 2007/08/16 14:14:55
               ended: 2007/08/16 14:15:01
Logged on as        : Administrator
on hostname         : 2FF87FC2B9AB46F

Scanning results:
   Total number of files found..............................:       6
   Number of files scanned..................................:       6
   Number of files/directories skipped due to exclude list..:       0
   Number of files that could not be opened.................:       0
   Number of archive files unpacked.........................:       0
   Number of archive files not unpacked.....................:       0
   Number of infections.....................................:       1

Copyright (c) 1993-2005 Norman ASA.
yurius
发表于 2007-8-16 15:57:52 | 显示全部楼层
C:\virus\load1.exe - infected with Win32.Virut.5
C:\virus\loadadv579.exe - infected with Trojan.DownLoader.28702
taihuxian
发表于 2007-8-16 16:10:49 | 显示全部楼层
Result: 1 malware found
Trojan-Downloader.Win32.LoadAdv.gen (virus)
C:\Documents and Settings\Administrator\×ÀÃæ\Ñù±¾3.rar\loadadv579.exe
taihuxian
发表于 2007-8-16 16:11:25 | 显示全部楼层
Scan performed at: 2007-8-16 16:11:09
Scanning Log
NOD32 version 2465 (20070816) NT
Command line: C:\Documents and Settings\Administrator\桌面\样本3.rar
Operating memory - is OK

Date: 16.8.2007  Time: 16:11:11
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\Administrator\桌面\样本3.rar
C:\Documents and Settings\Administrator\桌面\样本3.rar ?RAR ?load1.exe - Win32/Virut.NAK virus - was a part of the deleted object
C:\Documents and Settings\Administrator\桌面\样本3.rar ?RAR ?loadadv579.exe - a variant of Win32/TrojanDownloader.Small.NUS trojan
Number of scanned files: 4
Number of threats found: 2
Number of files cleaned: 1
Time of completion: 16:11:12 Total scanning time: 1 sec (00:00:01)
uhthn2002
发表于 2007-8-16 16:22:55 | 显示全部楼层
vba32miss
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-15 21:00 , Processed in 0.093977 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表