查看: 4815|回复: 22
收起左侧

[病毒样本] 50ge

[复制链接]
lanvin
发表于 2007-12-3 14:51:50 | 显示全部楼层 |阅读模式
卡巴7.0 28个
含fp
http://hi.baidu.com/tomatolabs

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Graybird
发表于 2007-12-3 14:55:02 | 显示全部楼层
Starting the file scan:

Begin scan in 'E:\新建文件夹.zip'
E:\新建文件夹.zip
  [0] Archive type: ZIP
  --> н¨Îļþ¼Ð/12.3_1.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> н¨Îļþ¼Ð/12.3_13.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_14.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_15.exe
      [DETECTION] Contains detection pattern of the SPR/Ardamax.K.Gen program
  --> н¨Îļþ¼Ð/12.3_16.exe
      [DETECTION] Contains detection pattern of the worm WORM/Cekar.A
  --> н¨Îļþ¼Ð/12.3_17.exe
      [DETECTION] Contains detection pattern of the worm WORM/Cekar.A
  --> н¨Îļþ¼Ð/12.3_19.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
  --> н¨Îļþ¼Ð/12.3_2.EXE
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> н¨Îļþ¼Ð/12.3_21.exe
      [DETECTION] Contains detection pattern of the SPR/Ardamax.K.Gen program
  --> н¨Îļþ¼Ð/12.3_22.exe
      [DETECTION] Contains detection pattern of the SPR/Perflogger.163.C program
  --> н¨Îļþ¼Ð/12.3_23.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.inq
  --> н¨Îļþ¼Ð/12.3_24.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.inw.1
  --> н¨Îļþ¼Ð/12.3_25.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.gvs
  --> н¨Îļþ¼Ð/12.3_26.dll
      [DETECTION] Is the Trojan horse TR/FWDisable.20810
  --> н¨Îļþ¼Ð/12.3_27.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Alphabet.LH1
  --> н¨Îļþ¼Ð/12.3_28.ini
      [DETECTION] Is the Trojan horse TR/Constructor.Uniskit.C.1
  --> н¨Îļþ¼Ð/12.3_29.dll
      [DETECTION] Is the Trojan horse TR/FWDisable.21840
  --> н¨Îļþ¼Ð/12.3_3.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> н¨Îļþ¼Ð/12.3_30.dll
      [DETECTION] Is the Trojan horse TR/FWDisable.21896
  --> н¨Îļþ¼Ð/12.3_31.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_32.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.gcu
  --> н¨Îļþ¼Ð/12.3_34.exe
      [DETECTION] Is the Trojan horse TR/Crypt.PEC2X.Gen
  --> н¨Îļþ¼Ð/12.3_35.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.gmh.1
  --> н¨Îļþ¼Ð/12.3_36.exe
      [DETECTION] Contains detection pattern of the dial-up program DIAL/22632.A.3
  --> н¨Îļþ¼Ð/12.3_39.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.gcr
  --> н¨Îļþ¼Ð/12.3_4.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_40.exe
      [DETECTION] Contains detection pattern of the exploits EXP/Phel.EG
  --> н¨Îļþ¼Ð/12.3_41.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_42.exe
      [DETECTION] Is the Trojan horse TR/Keylog.24576
  --> н¨Îļþ¼Ð/12.3_43.dll
      [DETECTION] Is the Trojan horse TR/PSW.25088.2
  --> н¨Îļþ¼Ð/12.3_44.dll
      [DETECTION] Is the Trojan horse TR/Zapchast.M
  --> н¨Îļþ¼Ð/12.3_47.exe
      [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/Dumped). Please verify the origin of the file
  --> н¨Îļþ¼Ð/12.3_48.EXE
      [DETECTION] Is the Trojan horse TR/PSW.Online.agb.2
  --> н¨Îļþ¼Ð/12.3_49.exe
      [DETECTION] Contains detection pattern of the dial-up program DIAL/12696.A
  --> н¨Îļþ¼Ð/12.3_5.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> н¨Îļþ¼Ð/12.3_50.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.hdz
  --> н¨Îļþ¼Ð/12.3_7.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.1301
      [INFO]      The file was deleted!


End of the scan: 2007年12月3日  14:55
Used time: 00:28 min

The scan has been done completely.

      0 Scanning directories
     51 Files were scanned
     32 viruses and/or unwanted programs were found
      5 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     19 Files not concerned
      1 Archives were scanned
      0 Warnings
      0 Notes
gogo8989
发表于 2007-12-3 15:02:34 | 显示全部楼层
FS扫描


结果:
病毒: 20
间谍软件: 6
可疑对象: 1
危险软件: 4



在FS沙盘运行后主防自动挡住后还剩15个

[ 本帖最后由 gogo8989 于 2007-12-3 15:18 编辑 ]
dericyeoh
发表于 2007-12-3 15:40:09 | 显示全部楼层
deleted: virus Packed.Win32.PolyCrypt.b        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_1.exe//RPCrypt
deleted: adware not-a-virus:AdWare.Win32.Comet.t        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_11.exe
deleted: riskware not-a-virus:Monitor.Win32.Ardamax.k        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_15.exe//PE_Patch//TeLock
deleted: virus Virus.Win32.AutoRun.aho        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_16.exe//UPack
deleted: virus Virus.Win32.AutoRun.aho        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_17.exe//UPack
deleted: adware not-a-virus:AdWare.Win32.BHO.aw        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_18.exe
deleted: virus Virus.Win32.AutoRun.ahh        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_19.exe//FSG
deleted: virus Heur.Invader (modification)        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_2.EXE
deleted: riskware not-a-virus:Monitor.Win32.Ardamax.k        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_21.exe//PE_Patch//TeLock
deleted: riskware not-a-virus:Monitor.Win32.Perflogger.163        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_22.exe//PE-Crypt.XorPE
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.inq        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_23.exe//UPack
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.inw        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_24.exe//NSPack//PE_Patch
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.gvs        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_25.dll
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.gvp        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_26.dll
deleted: Trojan program Trojan-Downloader.Win32.Alphabet.gen        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_27.exe//PE_Patch.PECompact//PecBundle//PECompact
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.gyz        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_29.dll
deleted: Trojan program Trojan-Downloader.Win32.Small.gxg        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_3.exe//PE_Patch.PECompact//PecBundle//PECompact
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.hfo        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_30.dll
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.hgz        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_32.dll
deleted: Trojan program Trojan.Win32.Dialer.qn        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_34.exe//PE_Patch.PECompact//PecBundle//PECompact
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.gmh        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_35.dll
deleted: auto-dialer not-a-virus:Porn-Dialer.Win32.EgroupDial.d        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_36.exe//UPX
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.hgw        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_39.dll
deleted: Trojan program Trojan-Spy.Win32.Agent.aom        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_4.exe//PE_Patch.UPX//UPX
deleted: virus Email-Worm.Win32.generic (modification)        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_41.exe
deleted: riskware not-a-virus:Monitor.Win32.Perflogger.ca        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_42.exe//PE-Crypt.XorPE
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.jdf        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_43.dll
deleted: adware not-a-virus:AdWare.Win32.SecToolBar.k        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_46.dll
deleted: adware not-a-virus:AdWare.Win32.Thesa.c        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_47.exe
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.hhp        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_48.EXE//PE_Patch//UPack
deleted: auto-dialer not-a-virus:Porn-Dialer.Win32.Juicy        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_49.exe//UPX
deleted: Trojan program Trojan-PSW.Win32.OnLineGames.hqh        File: C:\Users\Yang Jun\Desktop\н¨Îļþ¼Ð.zip/н¨Îļþ¼Ð/12.3_50.exe

32个
ggcn
发表于 2007-12-3 16:08:11 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\新建文件夹.zip'
C:\Documents and Settings\Administrator\桌面\新建文件夹.zip
  [0] Archive type: ZIP
  --> н¨Îļþ¼Ð/12.3_1.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> н¨Îļþ¼Ð/12.3_11.exe
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/Comet.T.1
  --> н¨Îļþ¼Ð/12.3_13.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_14.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_15.exe
      [DETECTION] Contains detection pattern of the SPR/Ardamax.K.Gen program
  --> н¨Îļþ¼Ð/12.3_16.exe
      [DETECTION] Contains detection pattern of the worm WORM/Cekar.A
  --> н¨Îļþ¼Ð/12.3_17.exe
      [DETECTION] Contains detection pattern of the worm WORM/Cekar.A
  --> н¨Îļþ¼Ð/12.3_18.exe
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/Bho.AW.4
  --> н¨Îļþ¼Ð/12.3_19.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
  --> н¨Îļþ¼Ð/12.3_2.EXE
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> н¨Îļþ¼Ð/12.3_21.exe
      [DETECTION] Contains detection pattern of the SPR/Ardamax.K.Gen program
  --> н¨Îļþ¼Ð/12.3_22.exe
      [DETECTION] Contains detection pattern of the SPR/Perflogger.163.C program
  --> н¨Îļþ¼Ð/12.3_23.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.inq
  --> н¨Îļþ¼Ð/12.3_24.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.inw.1
  --> н¨Îļþ¼Ð/12.3_25.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.gvs
  --> н¨Îļþ¼Ð/12.3_26.dll
      [DETECTION] Is the Trojan horse TR/FWDisable.20810
  --> н¨Îļþ¼Ð/12.3_27.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Alphabet.LH1
  --> н¨Îļþ¼Ð/12.3_28.ini
      [DETECTION] Is the Trojan horse TR/Constructor.Uniskit.C.1
  --> н¨Îļþ¼Ð/12.3_29.dll
      [DETECTION] Is the Trojan horse TR/FWDisable.21840
  --> н¨Îļþ¼Ð/12.3_3.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> н¨Îļþ¼Ð/12.3_30.dll
      [DETECTION] Is the Trojan horse TR/FWDisable.21896
  --> н¨Îļþ¼Ð/12.3_31.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_32.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.gcu
  --> н¨Îļþ¼Ð/12.3_34.exe
      [DETECTION] Is the Trojan horse TR/Crypt.PEC2X.Gen
  --> н¨Îļþ¼Ð/12.3_35.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.gmh.1
  --> н¨Îļþ¼Ð/12.3_36.exe
      [DETECTION] Contains detection pattern of the dial-up program DIAL/22632.A.3
  --> н¨Îļþ¼Ð/12.3_39.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.gcr
  --> н¨Îļþ¼Ð/12.3_4.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_40.exe
      [DETECTION] Contains detection pattern of the exploits EXP/Phel.EG
  --> н¨Îļþ¼Ð/12.3_41.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð/12.3_42.exe
      [DETECTION] Is the Trojan horse TR/Keylog.24576
  --> н¨Îļþ¼Ð/12.3_43.dll
      [DETECTION] Is the Trojan horse TR/PSW.25088.2
  --> н¨Îļþ¼Ð/12.3_44.dll
      [DETECTION] Is the Trojan horse TR/Zapchast.M
  --> н¨Îļþ¼Ð/12.3_47.exe
      [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/Dumped). Please verify the origin of the file
  --> н¨Îļþ¼Ð/12.3_48.EXE
      [DETECTION] Is the Trojan horse TR/PSW.Online.agb.2
  --> н¨Îļþ¼Ð/12.3_49.exe
      [DETECTION] Contains detection pattern of the dial-up program DIAL/12696.A
  --> н¨Îļþ¼Ð/12.3_5.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> н¨Îļþ¼Ð/12.3_50.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.hdz
  --> н¨Îļþ¼Ð/12.3_7.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.1301
      [INFO]      A backup was created as 'acdb1894.qua'  ( QUARANTINE )
      [INFO]      The file was deleted!


End of the scan: 2007年12月3日星期一  16:08
Used time: 00:19 min

The scan has been done completely.

      0 Scanning directories
     51 Files were scanned
     34 viruses and/or unwanted programs were found
      5 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      1 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     17 Files not concerned
      1 Archives were scanned
      0 Warnings
      0 Notes
ggcn
发表于 2007-12-3 16:09:29 | 显示全部楼层
原帖由 Graybird 于 2007-12-3 14:55 发表
Starting the file scan:

Begin scan in 'E:\新建文件夹.zip'
E:\新建文件夹.zip
  [0] Archive type: ZIP
  --> н¨Îļþ¼Ð/12.3_1.exe
      [DETEC ...

二楼的,怎么你的结果和我的结果不一样啊?我的是V7
jimmyleo
发表于 2007-12-3 16:18:03 | 显示全部楼层
D:\Download\Scan\12.3_1.exe - Signature 'Backdoor.Win32.Hupigon.dkl' found
D:\Download\Scan\12.3_10.dll
D:\Download\Scan\12.3_11.exe
D:\Download\Scan\12.3_12.exe
D:\Download\Scan\12.3_13.exe
D:\Download\Scan\12.3_14.exe
D:\Download\Scan\12.3_15.exe - Suspect code-parts found (Level: 160)
D:\Download\Scan\12.3_16.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
D:\Download\Scan\12.3_17.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
D:\Download\Scan\12.3_18.exe
D:\Download\Scan\12.3_19.exe - Signature 'Trojan-PWS.Win32.Delf.ix' found
D:\Download\Scan\12.3_2.EXE - Signature 'Backdoor.Win32.Agent.ahj' found
D:\Download\Scan\12.3_20.exe
D:\Download\Scan\12.3_21.exe - Suspect code-parts found (Level: 160)
D:\Download\Scan\12.3_22.exe
D:\Download\Scan\12.3_23.exe - Signature 'Trojan-PWS.Win32.Agent.jp' found
D:\Download\Scan\12.3_24.exe - Signature 'Packed.Win32.Klone.af' found
D:\Download\Scan\12.3_25.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_26.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_27.exe - Signature 'Trojan-Downloader.Win32.Alphabet' found
D:\Download\Scan\12.3_28.ini - Signature 'Trojan.Constructor.Uniskit.C' found
D:\Download\Scan\12.3_29.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_3.exe
D:\Download\Scan\12.3_30.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_31.exe - Signature 'Virus.Win32.VB.FGK' found
D:\Download\Scan\12.3_32.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_33.exe
D:\Download\Scan\12.3_34.exe - Signature 'Trojan.Win32.Agent.vg' found
D:\Download\Scan\12.3_35.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_36.exe - Signature 'not-a-virus:Porn-Dialer.Win32.EgroupDial.d' found
D:\Download\Scan\12.3_37.dll
D:\Download\Scan\12.3_38.exe - File is maybe corrupt
D:\Download\Scan\12.3_39.dll - Signature 'BehavesLikeTrojan.WUDisable' found
D:\Download\Scan\12.3_4.exe
D:\Download\Scan\12.3_40.exe - Signature 'Trojan.Horse.Downloader3.EDP' found
D:\Download\Scan\12.3_41.exe
D:\Download\Scan\12.3_42.exe - Signature 'not-a-virus:Monitor.Win32.Perflogger.ca' found
D:\Download\Scan\12.3_43.dll - Signature 'Trojan-PWS.Win32.OnLineGames.es' found
D:\Download\Scan\12.3_44.dll - Signature 'Trojan.Win32.Zapchast.M' found
D:\Download\Scan\12.3_45.dll - Signature 'Backdoor.Win32.Prorat.19.i' found
D:\Download\Scan\12.3_46.dll - Signature 'not-a-virus:AdWare.Win32.SecToolBar.k' found
D:\Download\Scan\12.3_47.exe
D:\Download\Scan\12.3_48.EXE - Signature 'Trojan-Downloader.Win32.Zlob.and' found
D:\Download\Scan\12.3_49.exe - Signature 'not-a-virus:Porn-Dialer.Win32.Juicy' found
D:\Download\Scan\12.3_5.exe - Signature 'Generic.Sdbot' found
D:\Download\Scan\12.3_50.exe - Signature 'Trojan-PWS.Win32.Small.br' found
D:\Download\Scan\12.3_6.exe
D:\Download\Scan\12.3_7.exe
D:\Download\Scan\12.3_8.dll
D:\Download\Scan\12.3_9.dll

        50 Files scanned
          (0 Archives with 0 files)
        29 Signatures found
        2 Suspect code-parts found
        Used time: 0:01.981

上周的
Graybird
发表于 2007-12-3 16:19:18 | 显示全部楼层

回复 6楼 ggcn 的帖子

C版不杀广告~
残缺的唯美
发表于 2007-12-3 16:28:08 | 显示全部楼层
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_16.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_17.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_18.exe - Win32/Adware.BHO.AW application - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_2.EXE - a variant of Win32/TrojanDownloader.Agent.BTS trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_23.exe - Win32/PSW.OnLineGames.GJV trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_24.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_25.dll - Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_26.dll - a variant of Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_27.exe - a variant of Win32/TrojanDownloader.Alphabet.P trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_29.dll - Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_3.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_30.dll - a variant of Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_32.dll - a variant of Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_35.dll - Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_36.exe - a variant of Win32/Dialer.MiniDial application - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_39.dll - a variant of Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_4.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_41.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_43.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_44.dll - Win32/Delf.NCB trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_48.EXE - Win32/PSW.Agent.NEC trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_50.exe - Win32/PSW.OnLineGames.NGU trojan - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip » ZIP » 新建文件夹/12.3_7.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
G:\Users\Administrator\Desktop\新建文件夹.zip - multiple threats - deleted - quarantined

23
googlehack
发表于 2007-12-3 17:26:06 | 显示全部楼层
以盗号木马居多……
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-13 16:44 , Processed in 0.133511 second(s), 23 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表