12
返回列表 发新帖
楼主: qianwenxiang
收起左侧

[病毒样本] 9+2

[复制链接]
soul20010
发表于 2007-11-8 09:05:26 | 显示全部楼层
Malware:        Application.Adware.Savenow.G
    C:\Documents and Settings\028222\桌面\1107small.rar=>SecureInstall_LOFS020701Inst.exe

Malware:        BehavesLike:Trojan.ShellHook
    C:\Documents and Settings\028222\桌面\1107small.rar=>down.exe

Malware:        DeepScan:Generic.Malware.Sdld!!g.CF15B810
    C:\Documents and Settings\028222\桌面\1107small.rar=>Winhelp.dll

Malware:        GenPack:Trojan.Downloader.ACP
    C:\Documents and Settings\028222\桌面\1107small.rar=>downloader.exe

Malware:        Generic.Virtob.1.6C017ED8
    C:\Documents and Settings\028222\桌面\1107small.rar=>dl.exe

Malware:        MemScan:Trojan.Startpage.ANV
    C:\Documents and Settings\028222\桌面\1107small.rar=>ms.exe

Malware:        Trojan.Dropper.Microjoin.WE
    C:\Documents and Settings\028222\桌面\1107small.rar=>200701250235.exe

Malware:        Trojan.Elitebar.H
    C:\Documents and Settings\028222\桌面\1107small.rar=>setup_file.exe
啊弥陀佛
发表于 2007-11-8 10:07:36 | 显示全部楼层
广告软件名称:AdWare.Win32.Cinmus.bka
程序:
C:\PROGRAM FILES\COMMON FILES\CPUSH\UNINST.EXE
是广告软件!
已成功阻止其运行,是否要删除此文件?


广告软件名称:AdWare.Win32.BHO.nv
程序:
C:\PROGRAM FILES\COMMON FILES\CPUSH\CPUSH.DLL
是广告软件!
已成功阻止其运行,是否要删除此文件?

广告软件名称:AdWare.Win32.BHO.nv
程序:
C:\PROGRAM FILES\COMMON FILES\CPUSH\CPUSH.TMP
是广告软件!
已成功阻止其运行,是否要删除此文件?

木马名称:Trojan-Downloader.Win32.QQHelper.fwi
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\MY_70011.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?
googlehack
发表于 2007-11-8 13:04:59 | 显示全部楼层
真不明白,病毒的尺寸竟这么大!
pmj_sh
发表于 2007-11-8 16:51:51 | 显示全部楼层
[0] Archive type: RAR
  --> 200701250235.exe
      [DETECTION] Contains detection pattern of the dropper DR/MicroJoiner.Gen
  --> dl.exe
      [DETECTION] Contains detection pattern of the worm WORM/Mefir.R
  --> downloader.exe
      [DETECTION] Is the Trojan horse TR/Crypt.ULPM.Gen
  --> Winhelp.dll
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> down.exe
      [DETECTION] Contains detection pattern of the dropper DR/Delphi.Gen
  --> ms.exe
      [DETECTION] Is the Trojan horse TR/StartPage.anv.5
  --> SecureInstall_LOFS020701Inst.exe
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/Whenu.A.9
  --> setup_file.exe
      [DETECTION] Is the Trojan horse TR/EliteBar.H.1
  --> setup.exe
      [DETECTION] Is the Trojan horse TR/Fake.WebSpyShi.A
uhthn2002
发表于 2007-11-8 23:43:53 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 812
Paranoia Database - 48490
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\New Folder

C:\Documents and Settings\Uhthn\Desktop\New Folder\200701250235.exe - Infected TROJAN-DROPPER.MICROJOIN.1 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\dl.exe - Infected WORM.MEFIR.1 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\downloader.exe - Suspected MaliciousScope:GENERIC.MALWARE.17
C:\Documents and Settings\Uhthn\Desktop\New Folder\Winhelp.dll - Infected MaliciousScope:TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\down.exe - Infected WIN32.TROJAN-PSW.DELF.B - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\ms.exe - OK
C:\Documents and Settings\Uhthn\Desktop\New Folder\SecureInstall_LOFS020701Inst.exe - Infected TROJAN.VB.A - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\setup_file.exe - Suspected TROJAN-DOWNLOADER.AGENT.1
C:\Documents and Settings\Uhthn\Desktop\New Folder\setup.exe - Suspected TROJAN.DIALER.1
C:\Documents and Settings\Uhthn\Desktop\New Folder\14564_setup.exe - Suspected MaliciousScope:WIN32.GENERIC.MALWARE.12
C:\Documents and Settings\Uhthn\Desktop\New Folder\down_sotp.exe - Suspected MaliciousScope:WIN32.GENERIC.MALWARE.12

11 Files scanned
5 Infected files found
5 Suspected files found
0 Files disinfected
5 Files deleted
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-18 05:23 , Processed in 0.101930 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表