查看: 3061|回复: 17
收起左侧

[病毒样本] 小包

[复制链接]
wangjay1980
发表于 2007-12-8 15:54:18 | 显示全部楼层 |阅读模式
30

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Graybird
发表于 2007-12-8 15:56:40 | 显示全部楼层

26

Starting the file scan:

Begin scan in 'E:\30.zip'
E:\30.zip
  [0] Archive type: RAR
  --> wl(1).exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 3(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 4(1)(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 5(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 6(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emi
  --> 7(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emc
  --> 8(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 9(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emg
  --> 10(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 11(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emh
  --> 11.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 12(1).exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.10240.2
  --> 13(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 14(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 15(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 16(1).exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> 17.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 18(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 19.exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.9728.1
  --> dahua.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> hx.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> myself(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> sanguo.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> tl.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> wd(2).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLi.iiu.1.A
  --> wei.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinRem Backdoor server programs
      [INFO]      The file was deleted!


End of the scan: 2007年12月8日  15:57
Used time: 00:30 min

The scan has been done completely.

      0 Scanning directories
     31 Files were scanned
     16 viruses and/or unwanted programs were found
     10 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     15 Files not concerned
      1 Archives were scanned
      0 Warnings
      0 Notes
FBAV
发表于 2007-12-8 15:57:53 | 显示全部楼层
MicroVita AntiSpyware 100 C
_____________________________________________
                                          
             风暴微塔反间谍
[强力查杀各种Win32位的病毒,木马,蠕虫,恶意软件]                  
                   http://221.10.254.214/
----------------------------------------------
开始扫描……


正在检查启动……
[C:\Documents and Settings\Administrator\桌面\Virus\30\wl(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:16700  MD5:6a846b632f935fb877b258a651ae7136


[C:\Documents and Settings\Administrator\桌面\Virus\30\3(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:9396  MD5:828fd25f774868e0eafe32c490a25cb6


[C:\Documents and Settings\Administrator\桌面\Virus\30\5(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:10432  MD5:6960232341e50e95aff35428253a0c7c


[C:\Documents and Settings\Administrator\桌面\Virus\30\6(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:11308  MD5:c611d2edffd2132066d3623f85874e08


[C:\Documents and Settings\Administrator\桌面\Virus\30\8(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:9376  MD5:000975becdc39c8b9f8a32b211aa21cf


[C:\Documents and Settings\Administrator\桌面\Virus\30\9(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:10560  MD5:d39a622f05710995692bbe47783803e7


[C:\Documents and Settings\Administrator\桌面\Virus\30\10(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:8760  MD5:d391831c21668225f6d5dc41f534291a


[C:\Documents and Settings\Administrator\桌面\Virus\30\11(1).exe]
                    …………发现Spy!报告:[1] Win32.NkHack.MicroJoiner
文件信息:  大小:10752  MD5:98d36a365981acd7d7efaeb5a672b324


[C:\Documents and Settings\Administrator\桌面\Virus\30\11.exe]
                    …………发现Spy!报告:[1] Win32.Unknow[5] 下载者
文件信息:  大小:15392  MD5:cce4580438250f4439038441d021d24d


[C:\Documents and Settings\Administrator\桌面\Virus\30\13(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:10368  MD5:cfa47a6e413dc0d4bf06144f58ca5b64


[C:\Documents and Settings\Administrator\桌面\Virus\30\14(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:9584  MD5:b2d16b6a9996af33ea4438b0281e87d7


[C:\Documents and Settings\Administrator\桌面\Virus\30\15(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:9684  MD5:3641059b9de1f948a87abce6335c0db2


[C:\Documents and Settings\Administrator\桌面\Virus\30\16(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:9020  MD5:a887eb86db9287a85cc834e2deb86672


[C:\Documents and Settings\Administrator\桌面\Virus\30\17.exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:15072  MD5:ca2bf05441a9fdb6f6bba9cfb5bee8d0


[C:\Documents and Settings\Administrator\桌面\Virus\30\18(1).exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:9760  MD5:65e2b7e341564f0c6464d0c8bffc8064


[C:\Documents and Settings\Administrator\桌面\Virus\30\dahua.exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:20360  MD5:447d8f9f576c81b32507a4b6f371450c


[C:\Documents and Settings\Administrator\桌面\Virus\30\hx.exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:15408  MD5:7b31428db9aa4a18acc871c75c65e863


[C:\Documents and Settings\Administrator\桌面\Virus\30\myself(1).exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:104816  MD5:05712f4735111a3249684458dbd2c09b


[C:\Documents and Settings\Administrator\桌面\Virus\30\sanguo.exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:15392  MD5:78e7cafc1ebd991b18190b5c4b3fe54b


[C:\Documents and Settings\Administrator\桌面\Virus\30\tl.exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:15092  MD5:3066bdcda291e0755260c4ebba96f43e


文件数:30   病毒数:20  比重:0.7
OK  扫描完毕!

  ***日志解释
[4] 集中有害分析引擎
[3] 全局系统判断引擎   
[2] 文件特征码引擎
[1] 文件启发式引擎


[ 本帖最后由 FBAV 于 2007-12-8 16:09 编辑 ]
葬禮
发表于 2007-12-8 15:59:12 | 显示全部楼层
有些重复了

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
 楼主| 发表于 2007-12-8 16:01:12 | 显示全部楼层

回复 4楼 葬禮 的帖子

懒得筛选,应该没几个吧

[ 本帖最后由 wangjay1980 于 2007-12-8 16:02 编辑 ]
葬禮
发表于 2007-12-8 16:06:56 | 显示全部楼层
原帖由 wangjay1980 于 2007-12-8 16:01 发表
懒得筛选,应该没几个吧

红伞杀了,ZA会有显示
挪威的冬天
发表于 2007-12-8 16:07:28 | 显示全部楼层
信息        2007-12-08  16:07:10        您此次查毒共查出20个病毒以及危险代码                       
信息        2007-12-08  16:07:10        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件58个                       
信息        2007-12-08  16:07:10        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒                       
风险程序        2007-12-08  16:07:10        C:\Documents and Settings\Norways Winter\桌面\30.zip\ttpsetupexe.exe        Win32.Adware.Agent.2039808        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\wei.exe        Win32.TrojDownloader.Agent.630784        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\tl.exe        Win32.Troj.OnLineGamesT.or.258048        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\sanguo.exe        Win32.Troj.OnLineGamesT.or.258048        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\hx.exe        Win32.Troj.OnLineGamesT.or.258048        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\dahua.exe        Win32.Troj.OnLineGamesT.or.258048        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\18(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\17.exe        Trash.OnlineGamesT.aq.2615        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\16(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\15(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\14(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\13(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\11.exe        Win32.Troj.OnLineGamesT.or.258048        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\10(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\9(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\8(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\6(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\5(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\3(1).exe        Win32.Troj.OnlineGamesT.ty.81920        跳过,未处理       
病毒        2007-12-08  16:07:09        C:\Documents and Settings\Norways Winter\桌面\30.zip\wl(1).exe        Trash.OnlineGamesT.aq.2615        跳过,未处理
ywarmy
发表于 2007-12-8 16:12:51 | 显示全部楼层
AntiVir PersonalEdition Premium
Report file date: 2007年12月8日  16:12

Scanning for 963523 virus strains and unwanted programs.

Licensed to:      Manfred Liesegang
Serial number:    1100233401-PEPWE-0001
Platform:         Windows Vista
Windows version:  (plain)  [6.0.6000]
Username:         ywarmy
Computer name:    YWARMY-PC

Version information:
BUILD.DAT    : 308           17199 Bytes   2007/9/19 13:44:00
AVSCAN.EXE   : 7.0.6.1      290856 Bytes   2007/8/23 06:16:29
AVSCAN.DLL   : 7.0.6.0       49192 Bytes   2007/8/16 05:23:51
LUKE.DLL     : 7.0.5.3      147496 Bytes   2007/8/14 08:32:47
LUKERES.DLL  : 7.0.6.1       10280 Bytes   2007/8/21 05:35:20
ANTIVIR0.VDF : 6.40.0.0    11030528 Bytes   2007/7/18 07:27:15
ANTIVIR1.VDF : 7.0.0.0     1640448 Bytes   2007/9/13 07:26:55
ANTIVIR2.VDF : 7.0.1.30    1575424 Bytes  2007/11/30 01:36:24
ANTIVIR3.VDF : 7.0.1.60     112128 Bytes   2007/12/7 05:55:11
AVEWIN32.DLL : 7.6.0.40    3064320 Bytes   2007/12/8 05:55:11
AVWINLL.DLL  : 1.0.0.7       14376 Bytes   2007/2/26 03:36:26
AVPREF.DLL   : 7.0.2.2       25640 Bytes   2007/7/18 00:39:17
AVREP.DLL    : 7.0.0.1      155688 Bytes   2007/4/16 06:16:24
AVPACK32.DLL : 7.3.0.15     360488 Bytes    2007/8/3 01:46:00
AVREG.DLL    : 7.0.1.6       30760 Bytes   2007/7/18 00:17:06
AVARKT.DLL   : 1.0.0.20     278568 Bytes   2007/8/28 05:26:33
AVEVTLOG.DLL : 7.0.0.20      86056 Bytes   2007/7/18 00:10:18
NETNT.DLL    : 7.0.0.0        7720 Bytes    2007/3/8 04:09:42
RCIMAGE.DLL  : 7.0.1.30    2576424 Bytes    2007/8/7 05:51:06
RCTEXT.DLL   : 7.0.62.0      86056 Bytes   2007/8/21 06:03:18
SQLITE3.DLL  : 3.3.17.1     339968 Bytes   2007/7/23 02:37:21

Configuration settings for the scan:
Jobname..........................: ShlExt
Configuration file...............: C:\Users\ywarmy\AppData\Local\Temp\3c049bae.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Scan memory......................: on
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high
Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR,

Start of the scan: 2007年12月8日  16:12

Starting the file scan:

Begin scan in 'C:\Users\ywarmy\Downloads\30.zip'
C:\Users\ywarmy\Downloads\30.zip
  [0] Archive type: RAR
  --> wl(1).exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 3(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 4(1)(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 5(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 6(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emi
  --> 7(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emc
  --> 8(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 9(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emg
  --> 10(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 11(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emh
  --> 11.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 12(1).exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.10240.2
  --> 13(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 14(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 15(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 16(1).exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> 17.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 18(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> 19.exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.9728.1
  --> dahua.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> hx.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> myself(1).exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> sanguo.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> tl.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> wd(2).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLi.iiu.1.A
  --> wei.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinRem Backdoor server programs
      [WARNING]   The file was ignored!


End of the scan: 2007年12月8日  16:12
Used time: 00:13 min

The scan has been done completely.

      0 Scanning directories
     31 Files were scanned
     16 viruses and/or unwanted programs were found
     10 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     15 Files not concerned
      1 Archives were scanned
      1 Warnings
      0 Notes
kkgh
发表于 2007-12-8 16:18:12 | 显示全部楼层
瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: AdWare.Win32.Agent.zat   

用户来源:互联网

软件版本:20.21.50

mofunzone
发表于 2007-12-8 16:44:30 | 显示全部楼层
v8又少一个。。
Starting the file scan:

Begin scan in 'C:\Users\morgan\Documents\30'
C:\Users\morgan\Documents\30\
  10(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  11(1).exe
    [0] Archive type: Runtime Packed
    --> Object
        [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emh
        [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  11.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!
  12(1).exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.10240.2
      [INFO]      The file was deleted!
  13(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  14(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  15(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  16(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/Spy.Gen
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  17.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!
  18(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  19.exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.9728.1
      [INFO]      The file was deleted!
  3(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  4(1)(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  5(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  6(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emi
      [INFO]      The file was deleted!
  7(1).exe
    [0] Archive type: Runtime Packed
    --> Object
        [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emc
        [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  8(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Contains suspicious code HEUR/Malware
            [WARNING]   Infected files in archives cannot be repaired!
      [INFO]      The file was deleted!
  9(1).exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.emg
      [INFO]      The file was deleted!
  bf.gif
  dahua.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!
  hx.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!
  Link.gif
  myself(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
        --> Object
      [INFO]      The file was deleted!
  reader.gif
  sanguo.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!
  tl.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!
  ttpsetupexe.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
  wd(2).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
  wei.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinRem Backdoor server programs
      [INFO]      The file was deleted!
  wl(1).exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [INFO]      The file was deleted!


End of the scan: 2007年12月8日  00:44
Used time: 00:08 min

The scan has been done completely.

      1 Scanning directories
     30 Files were scanned
      8 viruses and/or unwanted programs were found
     17 Files were classified as suspicious:
     25 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     22 Files not concerned
     20 Archives were scanned
     12 Warnings
      0 Notes
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-28 00:38 , Processed in 0.131158 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表