12
返回列表 发新帖
楼主: lengwushuang
收起左侧

[病毒样本] 卡巴斯基查不出来的几个新病毒

[复制链接]
mofunzone
发表于 2007-9-21 22:48:38 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\virus2'
C:\Documents and Settings\Administrator\My Documents\virus2\
  1.exe
      [DETECTION] Contains suspicious code HEUR/Crypted
      [INFO]      The file was moved to '4758d9ed.qua'!
  cc1.txt
  crs.exe
  CTFMON.EXE
  feinuo.com.cn.exe
      [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/SVKP). Please verify the origin of the file
      [INFO]      The file was moved to '475cda24.qua'!
  interdns.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [INFO]      The file was moved to '4767da2d.qua'!
  logagent.exe
  msiexce.exe
  msnmsgr.exe
  muqiu
      [DETECTION] Is the Trojan horse TR/Ucklee
      [INFO]      The file was moved to '4764da34.qua'!
  Perflib_Perfdata_188.dat
  realplayer.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [INFO]      The file was moved to '4754da24.qua'!
  regsvc.exe
  SICLOG00003.txt
  srchasst.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [INFO]      The file was moved to '4756da31.qua'!
  system.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [INFO]      The file was moved to '4766da38.qua'!
  winhlp32.exe
  x.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46f8ae66.qua'!
  zx.exe
      [DETECTION] Contains detection pattern of the worm WORM/Rous.A
      [INFO]      The file was moved to '4721da37.qua'!


End of the scan: 2007年9月21日  07:48
Used time: 00:05 min

The scan has been done completely.

      1 Scanning directories
     19 Files were scanned
      7 viruses and/or unwanted programs were found
      2 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      9 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     12 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
小飞侠.net
发表于 2007-9-22 15:41:00 | 显示全部楼层

我晕,这个样本怎么让KV2008的日志变成乱码了???

½­Ãñɱ¶¾Èí¼şÉ¨Ã豨¸æÎļş

±±¾©½­ÃñĞ¿Ƽ¼ÊõÓĞÏŞ¹«Ë¾

ɨÃèÒıÇæ 11.00.702

²¡¶¾¿âÈÕÆÚ 2007-09-22

¸üĞÂÈÕÆÚ 2007-09-22

ɨÃèÄ¿±ê V:\ViRusDoc20070922\037\virus2[1].rar


¿ªÊ¼Ê±¼ä 2007-09-22 15:39:54


ÔÚ V:\ViRusDoc20070922\037\virus2[1].rar->virus2[1]\feinuo.com.cn.exe ÖĞ·¢ÏÖ Backdoor/Huigezi.evi ²¡¶¾, ·¢ÏÖ²¡¶¾

ÔÚ V:\ViRusDoc20070922\037\virus2[1].rar->virus2[1]\realplayer.exe ÖĞ·¢ÏÖ Trojan/Agent.pox ²¡¶¾, ·¢ÏÖ²¡¶¾

ÔÚ V:\ViRusDoc20070922\037\virus2[1].rar->virus2[1]\system.exe ÖĞ·¢ÏÖ Backdoor/Huigezi.evi ²¡¶¾, ·¢ÏÖ²¡¶¾

ÔÚ V:\ViRusDoc20070922\037\virus2[1].rar->virus2[1]\muqiu ÖĞ·¢ÏÖ Backdoor/Huigezi.2007.ahbq ²¡¶¾, ·¢ÏÖ²¡¶¾

Õı³£½áÊø¡£


ɨÃè½á¹û:

ÎļşÊı : 21  ²¡¶¾Ìå : 4  
ɾ³ı : 0  ½â¶¾ : 0  
ɨÃèËÙ¶È(Kb/sec) : 0  É¨Ãèʱ¼ä : 00:00:00
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

[ 本帖最后由 小飞侠.net 于 2007-9-22 15:43 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
二月盒
发表于 2007-9-25 03:05:12 | 显示全部楼层
看来NOD在木马方面比卡巴强一点?HOHO,俺再装个NOD去。
qqq000@qq.com
头像被屏蔽
发表于 2007-9-25 07:53:45 | 显示全部楼层
----------
              [凝逸反毒] (http://hi.baidu.com/503165656)
       [凝逸.扫描病毒引擎-日志]       2007.9.24 7:50:17
文件:F:\070925\virus2[1]\1.exe | 感染:virus [345>20070921_ny0022.axx]3(1.1)
操作:删除文件
文件:F:\070925\virus2[1]\feinuo.com.cn.exe | 感染:virus [347>20070921_ny0022.axx]3(1.1)
操作:删除文件
文件:F:\070925\virus2[1]\realplayer.exe | 感染:virus [349>20070921_ny0022.axx]2(1.1)
操作:删除文件
文件:F:\070925\virus2[1]\srchasst.exe | 感染:virus [346>20070921_ny0022.axx]3(1.1)
操作:删除文件
文件:F:\070925\virus2[1]\system.exe | 感染:virus [344>20070921_ny0022.axx]3(1.1)
操作:删除文件
文件:F:\070925\virus2[1]\x.exe | 感染:Trojan.DownLoader.21028 [129>20070921_ny0022.axx]3(1.1)
操作:删除文件
文件:F:\070925\virus2[1]\zx.exe | 感染:virus [348>20070921_ny0022.axx]3(1.1)
操作:删除文件
扫描完成|病毒:7 文件:19|耗时:5688
----------

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-18 10:36 , Processed in 0.106082 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表