查看: 7315|回复: 43
收起左侧

[病毒样本] 65个一包

[复制链接]
promised
发表于 2007-8-23 16:18:40 | 显示全部楼层 |阅读模式

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
红心王子
发表于 2007-8-23 16:20:32 | 显示全部楼层
江民杀毒软件报告文件

        北京江民新科技术有限公司

        扫描引擎 11.00.700
        病毒库日期 2007-08-23
        更新日期 2007-08-23

扫描目标 C:\Documents and Settings\Administrator\桌面\新建文件夹\

开始时间 2007-08-23 16:20:10

在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\10037.exe 中发现 TrojanDownloader.Agent.npb 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\1.exe 中发现 Backdoor/Agent.vrw 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\121.exe 中发现 TrojanDownloader.Small.luf 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\3.exe 中发现 Backdoor/Agent.vrw 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\4.exe 中发现 Trojan/Agent.nnu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\6.exe 中发现 Trojan/PSW.GamePass.xei 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\5.exe 中发现 Trojan/Agent.nss 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\623.exe 中发现 Trojan/PSW.GamePass.xgb 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\7793EF25.DLL 中发现 Backdoor/Agent.mdp 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\8.exe 中发现 TrojanDownloader.Delf.cwt 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\854.exe 中发现 TrojanDownloader.Delf.dje 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\9.exe 中发现 Backdoor/Agent.vrx 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\A65461A2.EXE 中发现 Trojan/PSW.GamePass.xew 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\acpidisk.sys 中发现 Adware/Clicker.ajr 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\BAA781E3.DLL 中发现 Trojan/StartPage.adz 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\AlxRes070818.exe 中发现 Trojan/PSW.GamePass.wxu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\bw.exe 中发现 Trojan/PSW.GamePass.wxu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\cdnprh.dll 中发现 TrojanDownloader.Agent.mcx 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\CD0FFED6.EXE 中发现 Trojan/PSW.GamePass.xei 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\dodolook.exe 中发现 Trojan/Agent.nhu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\EE99C835.EXE 中发现 Backdoor/Agent.vrw 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\dodolook133.exe 中发现 TrojanDropper.Delf.vn 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\ldcore.dll 中发现 TrojanDownloader.Small.kbk 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\husjdd8s.exe 中发现 Backdoor/Agent.vrx 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\loadadv579.exe 中发现 TrojanDownloader.Agent.nzp 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\my_70145.exe 中发现 Adware/Clicker.dxc 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\load1.exe 中发现 Win32/Virut.f 病毒, 已清除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\netdde32.exe 中发现 Trojan/PSW.GamePass.xfs 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\QQ2007β3.exe 中发现 Trojan/PSW.QQPass.rde 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\scrsys16_070818.dll 中发现 Trojan/Agent.nsm 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\scrsys070818.scr 中发现 Trojan/PSW.GamePass.wxu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\SERVICES.EXE 中发现 Backdoor/Huigezi.2007.lvl 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\setup_bar_015.exe 中发现 Backdoor/Agent.vrx 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\soft210.exe 中发现 TrojanDownloader.Delf.dma 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\srcsvc.exe 中发现 Trojan/Agent.nht 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\SysWin64.Jmp 中发现 Trojan/PSW.QQPass.rde 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\wdfmgrnt.exe 中发现 TrojanDownloader.Small.cam 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\win32.exe 中发现 I-Worm/Zhelatin.enc 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\winsys16_070818.dll 中发现 Trojan/Agent.nsm 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\WinSys64.Sys 中发现 Trojan/PSW.QQPass.rdi 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\winsys32_070818.dll 中发现 TrojanSpy.Agent.avk 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\wr-1-20.exe 中发现 TrojanDownloader.Small.kyi 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\dwnSetup\xxx.exe 中发现 Trojan/PSW.GamePass.xew 病毒, 已删除
正常结束。

扫描结果:
                 文件数 :502                                 病毒体 :43        
                   删除 :42                                    解毒 :1         
    扫描速度(千字节/秒) :17551                             扫描时间 :00:00:07
    扫描文件速度(个/秒) :71
FBAV
发表于 2007-8-23 16:21:45 | 显示全部楼层
_____________________________________________
                                          
             风暴微塔反病毒               
                            [内测版]      
                   http://www.v0day.com/  
----------------------------------------------
开始扫描……


[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\1.exe]
                    …………引擎[2]发现病毒:Win32.Nop ??
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\121.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\2.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\3.exe]
                    …………引擎[2]发现病毒:Win32.Nop ??
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\4.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\4.exe]
                    …………引擎[2]发现病毒:Win32.Nop lA?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\5.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\6.exe]
                    …………引擎[2]发现病毒:Win32.Nop u?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\7793EF25.DLL]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\8.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\9.exe]
                    …………引擎[2]发现病毒:Win32.Nop WB?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\A65461A2.EXE]
                    …………引擎[2]发现病毒:Win32.Nop k
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\AlxRes070818.exe]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\AlxRes070818.exe]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\avp.exe]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\BAA781E3.DLL]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\bw.exe]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\CD0FFED6.EXE]
                    …………引擎[2]发现病毒:Win32.Nop u?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\cpush.dll]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\dodolook133.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\EE99C835.EXE]
                    …………引擎[2]发现病毒:Win32.Nop ??
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\husjdd8s.exe]
                    …………引擎[2]发现病毒:Win32.Nop WB?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\n1187855218k.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\n1187855218k.exe]
                    …………引擎[2]发现病毒:Win32.Nop C ?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\netdde32.exe]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\osiesd3.dll]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\QQ2007β3.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\scrsys070818.scr]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\scrsys070818.scr]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\scrsys16_070818.dll]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\setup_bar_015.exe]
                    …………引擎[2]发现病毒:Win32.Nop WB?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\srcsvc.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\svchos1t.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\svchos1t.exe]
                    …………引擎[2]发现病毒:Win32.Nop C ?
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\svchost.exe]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\SysWFGQQ2.dll]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\SysWFGQQ2.dll]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\SysWin64.Jmp]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\winsys16_070818.dll]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\winsys32_070818.dll]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\WinSys64.Sys]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\wr-1-20.exe]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\wr-1-20.exe]
                    …………引擎[2]发现病毒:Win32.BadUpx
[C:\Documents and Settings\Administrator\桌面\virus\dwnSetup\dwnSetup\xxx.exe]
                    …………引擎[2]发现病毒:Win32.Nop k
文件数:65   病毒数:51  比重:0.7846153846154
OK  扫描完毕!

[ 本帖最后由 FBAV 于 2007-8-23 16:26 编辑 ]
tracydk
发表于 2007-8-23 16:23:32 | 显示全部楼层
41个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-8-23 16:24:14 | 显示全部楼层
Scan performed at: 2007-8-23 16:23:25
Scanning Log
NOD32 version 2477 (20070823) NT
Command line: C:\Documents and Settings\Don johnson\桌面\dwnSetup
Operating memory - is OK

Date: 23.8.2007  Time: 16:23:30
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\Don johnson\桌面\dwnSetup\
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\0.exe - probably a variant of Win32/PSW.QQShou trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\1.exe - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\112.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\121.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\1228.exe ?NSIS ?aabb.exe - Win32/TrojanDownloader.Agent.BYS trojan - was a part of the deleted object
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\3.exe - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\4.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\5.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\6.exe - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\624.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\7793EF25.DLL - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\8.exe - a variant of Win32/Agent.NAU worm
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\854.exe - a variant of Win32/Agent.NAU worm
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\9.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\A65461A2.EXE - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\acpidisk.sys - a variant of Win32/Adware.Cinmus application
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\AlxRes070818.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\BAA781E3.DLL - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\bw.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\CD0FFED6.EXE - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\cpush.dll - probably a variant of Win32/Adware.BHO.AV application
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\dodolook.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\EE99C835.EXE - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\husjdd8s.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\load1.exe - Win32/Virut.NAL virus - quarantined - unable to clean - deleted
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\loadadv579.exe - a variant of Win32/TrojanDownloader.Small.NUS trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\n1187855218k.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\netdde32.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\QQ2007β3.exe - a variant of Win32/AutoRun.Q worm
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\retadpu20.exe - a variant of Win32/TrojanDownloader.Agent.BLS trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\safdsa.exe - a variant of Win32/Agent.ABE trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\scrsys070818.scr - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\setup_bar_015.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\svchos1t.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\svchost.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\SysWFGQQ2.dll - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\SysWin64.Jmp - a variant of Win32/AutoRun.Q worm
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\tempaq - probably a variant of Win32/TrojanDownloader.QQHelper.NDF trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\wdfmgrnt.exe - Win32/TrojanDownloader.VB.APY trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\webhelp.exe - a variant of Win32/Adware.MoKeAD application
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\webshow.dll - a variant of Win32/Adware.MoKeAD application
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\win32.exe - Win32/Nuwar.Gen worm
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\winsys32_070818.dll - probably a variant of Win32/Spy.Delf.NEN trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\WinSys64.Sys - a variant of Win32/AutoRun.Q worm
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\wr-1-20.exe - Win32/TrojanDownloader.Small.EQN trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\wr-1-22.exe - probably a variant of Win32/TrojanDownloader.Small.EQN trojan
C:\Documents and Settings\Don johnson\桌面\dwnSetup\dwnSetup\xxx.exe - probably a variant of Win32/Agent.NEO trojan
Number of scanned files: 67
Number of threats found: 47
Number of files cleaned: 47
Time of completion: 16:23:44 Total scanning time: 14 sec (00:00:14)

Notes:
[7] File is probably infected with an unknown virus.
moonsilver
发表于 2007-8-23 16:25:41 | 显示全部楼层
瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Trojan.IMMSG.Win32.TBMSG.kj
病毒: Trojan.DL.Win32.Agent.xtr
病毒: Trojan.Clicker.Win32.Agent.afv
病毒: Trojan.DL.Win32.VB.xlz   
病毒: Trojan.DL.Win32.VB.xlw   
病毒: Trojan.Win32.Agent.vqe   
病毒: Trojan.Win32.Agent.vrx   
病毒: Trojan.IMMSG.Win32.TBMSG.k
病毒: Trojan.DL.Win32.Agent.xfj
病毒: Trojan.IMMSG.Win32.TBMSG.km
病毒: Trojan.Win32.Dodolook.ab
病毒: Trojan.Clicker.Win32.Pophot.ar
病毒: Trojan.Win32.Agent.vrx   
病毒: Trojan.Win32.Agent.twm   
病毒: Adware.Win32.Agent.nvu   
病毒: Trojan.DL.Win32.Delf.yuf
病毒: Dropper.Win32.QQPass.d   
病毒: Trojan.Win32.Agent.vsl   
病毒: Trojan.DL.Win32.Agent.xes
病毒: Win32.Virut.GEN         
病毒: Worm.Win32.AVKiller.ad   
病毒: Trojan.IMMSG.Win32.MsgSender.w
病毒: Trojan.PSW.Win32.QQPass.toz
病毒: Trojan.Clicker.Win32.Pophot.ar
病毒: Trojan.DL.Win32.Agent.xon
病毒: Trojan.Win32.Agent.vqd   
病毒: Trojan.DL.Small.sdd      
病毒: Worm.Mail.Win32.Zhelatin.dlq
病毒: Trojan.Clicker.Win32.Pophot.ar
病毒: Trojan.DL.Win32.Agent.xkl
病毒: Trojan.DL.Win32.Agent.xen

MAC地址:00:0F:3D:A0:CB:E4

用户来源:局域网

软件版本:19.37.31
FBAV
发表于 2007-8-23 16:26:36 | 显示全部楼层
RS 大约30个?
够少的
woai_jolin
发表于 2007-8-23 16:26:43 | 显示全部楼层
Scan performed at: 2007/8/23 16:26:04
Scanning Log
NOD32 version 2476 (20070822) NT
Command line: G:\v\dwnSetup

Date: 23.8.2007  Time: 16:26:06
Anti-Stealth technology is enabled.
Scanned disks, folders and files: G:\v\dwnSetup\
G:\v\dwnSetup\0.exe - probably a variant of Win32/PSW.QQShou trojan
G:\v\dwnSetup\1.exe - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\112.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\121.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\1228.exe ?NSIS ?aabb.exe - Win32/TrojanDownloader.Agent.BYS trojan - was a part of the deleted object
G:\v\dwnSetup\3.exe - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\4.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\5.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\6.exe - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\624.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\7793EF25.DLL - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\8.exe - a variant of Win32/Agent.NAU worm
G:\v\dwnSetup\854.exe - a variant of Win32/Agent.NAU worm
G:\v\dwnSetup\9.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\A65461A2.EXE - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\acpidisk.sys - a variant of Win32/Adware.Cinmus application
G:\v\dwnSetup\AlxRes070818.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\BAA781E3.DLL - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\bw.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\CD0FFED6.EXE - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\cpush.dll - probably a variant of Win32/Adware.BHO.AV application
G:\v\dwnSetup\dodolook.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\EE99C835.EXE - probably a variant of Win32/Agent.NEO trojan
G:\v\dwnSetup\husjdd8s.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\load1.exe - Win32/Virut.NAL virus - quarantined - unable to clean - deleted
G:\v\dwnSetup\loadadv579.exe - a variant of Win32/TrojanDownloader.Small.NUS trojan
G:\v\dwnSetup\n1187855218k.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\netdde32.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\QQ2007β3.exe - a variant of Win32/AutoRun.Q worm
G:\v\dwnSetup\retadpu20.exe - a variant of Win32/TrojanDownloader.Agent.BLS trojan
G:\v\dwnSetup\safdsa.exe - a variant of Win32/Agent.ABE trojan
G:\v\dwnSetup\scrsys070818.scr - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\setup_bar_015.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\svchos1t.exe - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\svchost.exe - probably unknown NewHeur_PE virus [7]
G:\v\dwnSetup\SysWFGQQ2.dll - probably a variant of Win32/Genetik trojan
G:\v\dwnSetup\SysWin64.Jmp - a variant of Win32/AutoRun.Q worm
G:\v\dwnSetup\tempaq - probably a variant of Win32/TrojanDownloader.QQHelper.NDF trojan
G:\v\dwnSetup\wdfmgrnt.exe - Win32/TrojanDownloader.VB.APY trojan - quarantined - unable to clean - deleted
G:\v\dwnSetup\webhelp.exe - a variant of Win32/Adware.MoKeAD application
G:\v\dwnSetup\webshow.dll - a variant of Win32/Adware.MoKeAD application
G:\v\dwnSetup\win32.exe - Win32/Nuwar.Gen worm
G:\v\dwnSetup\winsys32_070818.dll - probably a variant of Win32/Spy.Delf.NEN trojan
G:\v\dwnSetup\WinSys64.Sys - a variant of Win32/AutoRun.Q worm
G:\v\dwnSetup\wr-1-20.exe - Win32/TrojanDownloader.Small.EQN trojan - quarantined - unable to clean - deleted
G:\v\dwnSetup\wr-1-22.exe - probably a variant of Win32/TrojanDownloader.Small.EQN trojan
G:\v\dwnSetup\xxx.exe - probably a variant of Win32/Agent.NEO trojan
Number of scanned files: 67
Number of threats found: 47
Number of files cleaned: 47
Time of completion: 16:26:21 Total scanning time: 15 sec (00:00:15)

Notes:
[7] File is probably infected with an unknown virus.
kasper
发表于 2007-8-23 16:26:46 | 显示全部楼层
熊猫六个 ~~~~~~~~~昏迷   
红心王子
发表于 2007-8-23 16:28:19 | 显示全部楼层
原帖由 kasper 于 2007-8-23 16:26 发表
熊猫六个 ~~~~~~~~~昏迷   

panda怎么报的这么少
样本区测试不是一向很BT么?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-15 20:24 , Processed in 0.153684 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表