查看: 2367|回复: 11
收起左侧

[病毒样本] 3

[复制链接]
qqq000@qq.com
头像被屏蔽
发表于 2007-9-5 20:55:53 | 显示全部楼层 |阅读模式
文件:D:\000\070906\163j.exe.zip
MD5值(32位):7200F3CC85469E263EACF7C7C98CE952
MD5值(16位):85469E263EACF7C7
       长度:166057
     取长度:166057
       用时:240
       文件:D:\000\070906\fw-update.exe.zip
MD5值(32位):E50AD11519E2F4994E3D9973AE8D2AF6
MD5值(16位):19E2F4994E3D9973
       长度:20480
     取长度:20480
       用时:80

       文件:D:\000\070906\fwtj.exe.zip
MD5值(32位):33ACF5B6D8051C9E97BF3E2623D9A5B1
MD5值(16位):D8051C9E97BF3E26
       长度:98304
     取长度:98304
       用时:60

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-9-5 21:01:32 | 显示全部楼层
fw-update.exe
fwtj.exe没什么大问题
qigang
发表于 2007-9-5 21:24:52 | 显示全部楼层
瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Hack.Win32.ArpCheater.f  

MAC地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:19.39.22
残缺的唯美
发表于 2007-9-5 21:31:58 | 显示全部楼层
诺顿只杀第三个
微点卫士
发表于 2007-9-5 21:36:24 | 显示全部楼层
下载第一个时
微点:
蠕虫名称:Worm.Win32.Agent.dfz

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\EFBOG7D0\163J[1].EXE.ZIP
是蠕虫程序!
已成功阻止其运行,是否要删除此文件?
蠕虫名称:Worm.Win32.Agent.dfz

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\163J[1].EXE.ZIP
是蠕虫程序!
已成功阻止其运行,是否要删除此文件?

第二个,第三个无法解压
自由
发表于 2007-9-5 22:20:05 | 显示全部楼层

回复 5楼 微点卫士 的帖子


第二个fwtj.exe

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
mofunzone
发表于 2007-9-5 22:55:07 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\fwtj.exe.zip'
C:\Documents and Settings\Administrator\My Documents\
  fwtj.exe.zip
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\163j.exe.zip'
C:\Documents and Settings\Administrator\My Documents\
  163j.exe.zip
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.alh.38 Backdoor server programs
      [INFO]      The file was deleted!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\fw-update.exe.zip'
C:\Documents and Settings\Administrator\My Documents\
  fw-update.exe.zip


End of the scan: 2007年9月5日  07:55
Used time: 00:04 min

The scan has been done completely.

      0 Scanning directories
      3 Files were scanned
      1 viruses and/or unwanted programs were found
      0 classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      2 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
      0 Hidden objects were found
wangjay1980
发表于 2007-9-5 23:04:50 | 显示全部楼层
detected: Trojan program Backdoor.Win32.Agent.alh        URL: http://bbs.kafan.cn/attachment.php?aid=123867//UPack
jhtl
发表于 2007-9-5 23:11:48 | 显示全部楼层

第2个

A-Squared  Found nothing
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
CPsecure  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
F-Secure Anti-Virus  Found nothing
Fortinet  Found nothing
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
Panda Antivirus  Found nothing
Rising Antivirus  Found nothing
Sophos Antivirus  Found nothing
VirusBuster  Found nothing
VBA32  Found nothing
jhtl
发表于 2007-9-5 23:15:25 | 显示全部楼层

第3个

A-Squared  Found nothing
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
CPsecure  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
F-Secure Anti-Virus  Found nothing
Fortinet  Found nothing
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
Panda Antivirus  Found nothing
Rising Antivirus  Found nothing
Sophos Antivirus  Found nothing
VirusBuster  Found nothing
VBA32  Found nothing
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-12 03:52 , Processed in 0.135862 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表