查看: 18605|回复: 15
收起左侧

[病毒样本] H网的11个

[复制链接]
qianwenxiang
发表于 2007-12-4 22:07:21 | 显示全部楼层 |阅读模式
国外H网东西也挺多的

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Joker
发表于 2007-12-4 22:12:35 | 显示全部楼层
deleted: Trojan program Trojan-Clicker.Win32.Small.jf        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/83122.exe//data0004
deleted: Trojan program Trojan-Clicker.HTML.IFrame.dn        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/83122.exe//data0005
deleted: Trojan program Trojan-Downloader.Win32.Small.fgr        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/user4.exe
deleted: Trojan program Trojan-Dropper.Win32.Agent.mu        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/724.exe//UPX
deleted: Trojan program Trojan-Downloader.Win32.Agent.fjj        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/1.exe//PE_Patch.UPX//UPX
deleted: Trojan program Trojan-Clicker.Win32.Agent.ip        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/Porno.exe//PE_Patch.UPX//UPX
deleted: Trojan program Trojan.Win32.Agent.bnj        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/win.exe
deleted: riskware not-a-virus:AdTool.Win32.WhenU.a        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/SetupInstRe.exe
deleted: malware not-virus:BadJoke.Win32.Apeldorn        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/Format.exe
deleted: Trojan program Trojan-Downloader.Win32.Banload.agt        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/fotomensagem-0449.exe//PE_Patch//TeLock
deleted: Trojan program Trojan-Clicker.Win32.Small.jf        File: C:\Documents and Settings\Administrator\×ÀÃæ\1204.rar/acdt-pid67N.exe//data0004

11
wusuobuzai
发表于 2007-12-4 22:12:38 | 显示全部楼层
HOHO, 能把网址告诉我吗?Thanks..
逝去の小丑 该用户已被删除
发表于 2007-12-4 22:12:40 | 显示全部楼层
对楼上的无语了

C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?83122.exe ?NSIS ?func.exe - Win32/TrojanClicker.Small.JF 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?user4.exe - Win32/TrojanDownloader.Small.DXM 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?724.exe - Win32/VB.NFO 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?1.exe - Win32/TrojanDownloader.Delf.NUM 特洛伊木马 的变种 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?Porno.exe - Win32/TrojanClicker.Agent.NCD 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?win.exe - Win32/Agent.QT 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?Format.exe - Win32/Apeldorn 玩笑程序 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?fotomensagem-0449.exe - Win32/TrojanDownloader.Banload.CHQ 特洛伊木马 的变种 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?AdultPicsterInstaller.exe ?NSIS - 压缩文件已损坏
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?acdt-pid67N.exe ?NSIS ?func.exe - Win32/TrojanClicker.Small.JF 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?83122.exe - Win32/TrojanClicker.Small.JF 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar ?RAR ?acdt-pid67N.exe - Win32/TrojanClicker.Small.JF 特洛伊木马 - 是已删除对象的一部分
C:\Documents and Settings\逐風者\桌面\1204.rar - 多个威胁 - 已删除 - 已隔离

[ 本帖最后由 拍黄瓜 于 2007-12-4 22:14 编辑 ]
The EQs
发表于 2007-12-4 22:12:59 | 显示全部楼层

有一个坏了?

C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » 83122.exe » NSIS » func.exe - Win32/TrojanClicker.Small.JF trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » user4.exe - Win32/TrojanDownloader.Small.DXM trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » 724.exe - Win32/VB.NFO trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » 1.exe - a variant of Win32/TrojanDownloader.Delf.NUM trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » Porno.exe - Win32/TrojanClicker.Agent.NCD trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » win.exe - Win32/Agent.QT trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » SetupInstRe.exe - Win32/Adware.WhenU.SaveNow application
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » Format.exe - Win32/Apeldorn joke
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » fotomensagem-0449.exe - a variant of Win32/TrojanDownloader.Banload.CHQ trojan
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » AdultPicsterInstaller.exe » NSIS - archive damaged
C:\Documents and Settings\Don johnson\桌面\1204.rar » RAR » acdt-pid67N.exe » NSIS » func.exe - Win32/TrojanClicker.Small.JF trojan
wangjay1980
发表于 2007-12-4 22:14:38 | 显示全部楼层
detected: Trojan program Trojan-Clicker.Win32.Small.jf        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/83122.exe//data0004
detected: Trojan program Trojan-Clicker.HTML.IFrame.dn        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/83122.exe//data0005
detected: Trojan program Trojan-Downloader.Win32.Small.fgr        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/user4.exe
detected: Trojan program Trojan-Dropper.Win32.Agent.mu        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/724.exe//UPX
detected: Trojan program Trojan-Downloader.Win32.Agent.fjj        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/1.exe//PE_Patch.UPX//UPX
detected: Trojan program Trojan-Clicker.Win32.Agent.ip        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/Porno.exe//PE_Patch.UPX//UPX
detected: Trojan program Trojan.Win32.Agent.bnj        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/win.exe
detected: riskware not-a-virus:AdTool.Win32.WhenU.a        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/SetupInstRe.exe
detected: malware not-virus:BadJoke.Win32.Apeldorn        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/Format.exe
detected: Trojan program Trojan-Downloader.Win32.Banload.agt        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/fotomensagem-0449.exe//PE_Patch//TeLock
detected: Trojan program Trojan-Clicker.Win32.Small.jf        File: C:\Documents and Settings\Owner\×ÀÃæ\1204.rar/acdt-pid67N.exe//data0004

全世界都是一样
qianwenxiang
 楼主| 发表于 2007-12-4 22:16:47 | 显示全部楼层
原帖由 wusuobuzai 于 2007-12-4 22:12 发表
HOHO, 能把网址告诉我吗?Thanks..

http://www.porno.pl/extra2/porno.exe只记得这个了..
nosferatu
头像被屏蔽
发表于 2007-12-4 22:43:08 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\1204.rar'
C:\Documents and Settings\Administrator\桌面\1204.rar
  [0] Archive type: RAR
  --> 83122.exe
      [DETECTION] Is the Trojan horse TR/Drop.Click.JF.7
  --> user4.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dxm.4
  --> 724.exe
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/WebSearch.BR
  --> 1.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> Porno.exe
      [DETECTION] Is the Trojan horse TR/Agent.37088.1
  --> win.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agen.QT.3
  --> SetupInstRe.exe
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/Whenu.A.1
  --> Format.exe
      [DETECTION] Contains detection pattern of the joke program JOKE/Apeldorn
  --> fotomensagem-0449.exe
      [DETECTION] Is the Trojan horse TR/Crypt.CFI.Gen
  --> acdt-pid67N.exe
      [DETECTION] Is the Trojan horse TR/Drop.Click.JF.7
      [INFO]      The file was deleted!


End of the scan: 星期二 2007年12月4日  22:43
Used time: 00:07 min

The scan has been done completely.

      0 Scanning directories
     13 Files were scanned
     10 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
Graybird
发表于 2007-12-4 22:46:47 | 显示全部楼层

回复 8楼 nosferatu 的帖子

漏1个~ 已上报~
nosferatu
头像被屏蔽
发表于 2007-12-4 22:47:15 | 显示全部楼层
AVG Anti-Spyware - Scan Report(10个)
---------------------------------------------------------

+ Created at:        22:47:13 2007-12-4

+ Scan result:       



C:\Documents and Settings\Administrator\桌面\1204.rar/1.exe -> Downloader.Agent.fjj : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/fotomensagem-0449.exe -> Downloader.Banload.agt : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/user4.exe -> Downloader.Small.dxm : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/SetupInstRe.exe/Setup.exe -> Dropper.Agent.asf : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/724.exe -> Dropper.Agent.mu : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/Porno.exe -> Heuristic.Win32.Dialer : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/acdt-pid67N.exe -> Hijacker.Small.jf : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/Format.exe -> Not-A-Virus.BadJoke.Win32.Apeldorn : Cleaned.
C:\Documents and Settings\Administrator\桌面\1204.rar/win.exe -> Trojan.Agent.qt : Cleaned.


::Report end
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-22 20:41 , Processed in 0.151550 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表