查看: 2682|回复: 14
收起左侧

[病毒样本] 来点广告

[复制链接]
Love=卡巴+费尔
发表于 2007-9-7 15:44:40 | 显示全部楼层 |阅读模式
广告

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-9-7 15:46:36 | 显示全部楼层
Scan performed at: 2007-9-7 15:46:23
Scanning Log
NOD32 version 2511 (20070907) NT
Command line: C:\Documents and Settings\Don johnson\桌面\4.zip
Operating memory - is OK

Date: 7.9.2007  Time: 15:46:27
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\Don johnson\桌面\4.zip
C:\Documents and Settings\Don johnson\桌面\4.zip ?ZIP ?java.exe - Win32/Adware.NewWeb application - was a part of the deleted object
C:\Documents and Settings\Don johnson\桌面\4.zip ?ZIP ?1.exe ?WISE ?DLLFILE - Win32/Adware.NewWeb application - was a part of the deleted object
C:\Documents and Settings\Don johnson\桌面\4.zip ?ZIP ?1.exe ?WISE ?mssv.exe ?NSIS ?java.exe - Win32/Adware.NewWeb application - was a part of the deleted object
Number of scanned files: 12
Number of threats found: 3
Number of files cleaned: 1
Time of completion: 15:46:27 Total scanning time: 0 sec (00:00:00)
zzx129
发表于 2007-9-7 15:49:28 | 显示全部楼层
BitDefender

This web page has been blocked by BitDefender Antivirus Real-time Protection!

The blocked web page included objects that were either infected or likely to be infected with a virus. Your system has NOT been infected.
红心王子
发表于 2007-9-7 15:53:56 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\4.zip'
C:\Documents and Settings\Administrator\桌面\4.zip
  [0] Archive type: ZIP
  --> 1.exe
      [DETECTION] Is the Trojan horse TR/Drop.NewWeb.A.2
      [INFO]      The file was moved to '475b03c3.qua'!
wangjay1980
发表于 2007-9-7 15:54:12 | 显示全部楼层
detected: adware not-a-virus:AdWare.Win32.NewWeb.f        File: C:\Documents and Settings\Owner\×ÀÃæ\4.zip/java.exe//ASPack
detected: adware not-a-virus:AdWare.Win32.NewWeb.e        File: C:\Documents and Settings\Owner\×ÀÃæ\4.zip/1.exe//WISE0006.BIN//UPX
detected: adware not-a-virus:AdWare.Win32.NewWeb.f        File: C:\Documents and Settings\Owner\×ÀÃæ\4.zip/1.exe//WISE0007.BIN//stream//data0001//ASPack
mofunzone
发表于 2007-9-7 16:04:23 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\4.zip'
C:\Documents and Settings\Administrator\My Documents\
  4.zip
    [0] Archive type: ZIP
    --> java.exe
        [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/NewWeb.F.7
        [WARNING]   Infected files in archives cannot be repaired!
    --> 1.exe
        [DETECTION] Is the Trojan horse TR/Drop.NewWeb.A.2
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!


End of the scan: 2007年9月7日  01:04
Used time: 00:03 min

The scan has been done completely.

      0 Scanning directories
      3 Files were scanned
      2 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      3 Warnings
      0 Notes
残缺的唯美
发表于 2007-9-7 16:06:04 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ssy275
发表于 2007-9-7 16:07:07 | 显示全部楼层
结果: 找到 2 恶意软件
AdWare.Win32.NewWeb.f (adware)
C:\Documents and Settings\ssy\桌面\4.zip\java.exe
AdWare.Win32.NewWeb.e (adware)
C:\Documents and Settings\ssy\桌面\4.zip\1.exe
nosferatu
头像被屏蔽
发表于 2007-9-7 16:12:54 | 显示全部楼层
Dr. WEB:
病毒库总数: 247419
[扫描路径] C:\Documents and Settings\Administrator\桌面\4.zip
>>C:\Documents and Settings\Administrator\桌面\4.zip\java.exe 已被感染了 :  Trojan.Ehu
>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data001 - 确定
>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data002 - 确定
>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data003 - 确定
>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data004 - 确定
>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data005 - 确定
>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data006 - 确定
>>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data007 是广告软件程序 Adware.Newweb
>>>>>>>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data008\data001 已被感染了 :  Trojan.Ehu
>>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe\data008 - 发现档案文件中有受感染的对象
>C:\Documents and Settings\Administrator\桌面\4.zip\1.exe - 发现档案文件中有受感染的对象
C:\Documents and Settings\Administrator\桌面\4.zip - 发现档案文件中有受感染的对象
C:\Documents and Settings\Administrator\桌面\4.zip:Zone.Identifier - 确定

-----------------------------------------------------------------------------
扫描统计
-----------------------------------------------------------------------------
已扫描对象: 10
发现受感染对象: 2
发现受变种感染对象: 0
发现可疑对象: 0
发现广告软件程序: 1
发现拨号软件程序: 0
发现玩笑程序: 0
发现风险程序: 0
发现黑客工具程序: 0
已修复对象: 0
已删除对象: 0
已重命名对象: 0
已移动对象: 0
已忽略对象: 0
扫描速度: 403 Kb/s
扫描时间: 00:00:01
-----------------------------------------------------------------------------

C:\Documents and Settings\Administrator\桌面\4.zip - 已删除
timhas266
发表于 2007-9-7 16:50:01 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\tim\桌面\4.zip'
C:\Documents and Settings\tim\桌面\4.zip
  [0] Archive type: ZIP
  --> java.exe
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/NewWeb.F.7
  --> 1.exe
      [DETECTION] Is the Trojan horse TR/Drop.NewWeb.A.2
      [INFO]      A backup was created as '475b10e9.qua'  ( QUARANTINE )
      [INFO]      The file was deleted!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-3-1 12:05 , Processed in 0.094800 second(s), 2 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表