12
返回列表 发新帖
楼主: Joker
收起左侧

[病毒样本] 一包4个

[复制链接]
qingdianlgy
头像被屏蔽
发表于 2008-1-13 00:40:19 | 显示全部楼层
卡巴也没发现
斯太尔
发表于 2008-1-13 00:47:08 | 显示全部楼层
小A对HTML毒一直都不在乎
sam.to
发表于 2008-1-13 00:49:46 | 显示全部楼层
上报給卡巴..
zhaoqy03
发表于 2008-1-13 01:18:32 | 显示全部楼层
高级设置,过小a
zhaoqy03
发表于 2008-1-13 01:39:34 | 显示全部楼层
自用avast没报
绿色小红伞
———————————————————————————————————————————————————

AntiVir PersonalEdition Premium
Report file date: 2008年1月13日  01:36
Scanning for 1025286 virus strains and unwanted programs.
Version information:
BUILD.DAT    : 259           13889 Bytes   2006-12-5 17:20:00
AVSCAN.EXE   : 7.0.3.5      208936 Bytes   2007-3-13 08:48:38
AVSCAN.DLL   : 7.0.3.1       35880 Bytes   2006-12-5 09:20:24
LUKE.DLL     : 7.0.3.2      143400 Bytes  2006-10-31 09:07:48
LUKERES.DLL  : 7.0.2.0        9256 Bytes   2006-12-5 09:20:24
ANTIVIR0.VDF : 6.40.0.0    11030528 Bytes   2007-7-18 06:36:36
ANTIVIR1.VDF : 7.0.1.95    3367424 Bytes  2007-12-14 04:29:02
ANTIVIR2.VDF : 7.0.1.205    620544 Bytes    2008-1-8 05:58:12
ANTIVIR3.VDF : 7.0.1.224    122368 Bytes   2008-1-11 03:07:14
AVEWIN32.DLL : 7.6.0.46    3084800 Bytes  2007-12-19 09:09:00
AVPREF.DLL   : 7.0.2.0       23592 Bytes   2006-11-3 03:53:46
AVREP.DLL    : 6.38.0.6    1179688 Bytes   2007-3-13 08:48:40
AVRPBASE.DLL : 7.0.0.0     2162728 Bytes   2006-3-30 01:43:32
AVPACK32.DLL : 7.6.0.2      360488 Bytes  2007-12-19 09:09:04
AVREG.DLL    : 7.0.1.2       30760 Bytes   2007-3-13 08:48:38
NETNT.DLL    : 6.32.0.0       6696 Bytes  2006-11-10 06:19:14
RCIMAGE.DLL  : 7.0.1.3     2334760 Bytes   2006-11-8 01:39:54
RCTEXT.DLL   : 7.0.12.0      77864 Bytes   2006-12-5 09:20:24
Configuration settings for the scan:
Jobname..........................: New Profile
Configuration file...............: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Premium\PROFILES\e6735cdc.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: C:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: 2008年1月13日  01:36
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Modules have been scanned
Scan process 'avcenter.exe' - '1' Modules have been scanned
Scan process 'cmd.exe' - '1' Modules have been scanned
Scan process 'Antivir.exe' - '1' Modules have been scanned
Scan process 'taskmgr.exe' - '1' Modules have been scanned
Scan process 'Maxthon.exe' - '1' Modules have been scanned
Scan process 'Thunder5.exe' - '1' Modules have been scanned
Scan process 'wuauclt.exe' - '1' Modules have been scanned
Scan process 'TXPlatform.exe' - '1' Modules have been scanned
Scan process 'TM.exe' - '1' Modules have been scanned
Scan process 'alg.exe' - '1' Modules have been scanned
Scan process 'ctfmon.exe' - '1' Modules have been scanned
Scan process 'conime.exe' - '1' Modules have been scanned
Scan process 'ashDisp.exe' - '1' Modules have been scanned
Scan process 'FYFireWall.exe' - '1' Modules have been scanned
Scan process 'ApntEx.exe' - '1' Modules have been scanned
Scan process 'TosHKCW.exe' - '1' Modules have been scanned
Scan process 'TFncKy.exe' - '1' Modules have been scanned
Scan process 'TPWRTRAY.EXE' - '1' Modules have been scanned
Scan process 'TouchED.exe' - '1' Modules have been scanned
Scan process 'TFNF5.exe' - '1' Modules have been scanned
Scan process 'Apoint.exe' - '1' Modules have been scanned
Scan process '00THotkey.exe' - '1' Modules have been scanned
Scan process 'ashWebSv.exe' - '1' Modules have been scanned
Scan process 'ashMaiSv.exe' - '1' Modules have been scanned
Scan process 'nvsvc32.exe' - '1' Modules have been scanned
Scan process 'MDM.EXE' - '1' Modules have been scanned
Scan process 'spoolsv.exe' - '1' Modules have been scanned
Scan process 'explorer.exe' - '1' Modules have been scanned
Scan process 'ashServ.exe' - '1' Modules have been scanned
Scan process 'aswUpdSv.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'svchost.exe' - '1' Modules have been scanned
Scan process 'lsass.exe' - '1' Modules have been scanned
Scan process 'services.exe' - '1' Modules have been scanned
Scan process 'winlogon.exe' - '1' Modules have been scanned
Scan process 'csrss.exe' - '1' Modules have been scanned
Scan process 'smss.exe' - '1' Modules have been scanned
41 processes with 41 modules were scanned
Start scanning boot sectors:
Boot sector 'C:\'
      [NOTE]      No virus was found!
Starting to scan the registry.
The registry was scanned ( 21 files ).

Starting the file scan:
Begin scan in 'C:\Documents and Settings\z\桌面\'
C:\Documents and Settings\z\桌面\桌面.rar
  [0] Archive type: RAR
  --> btv[1].htm
      [DETECTION] Contains suspicious code HEUR/Exploit.HTML
  --> dsdgg[1].htm
      [DETECTION] Contains signature of the HTML script virus HTML/Infected.WebPage.Gen
  --> ip[2].htm
      [DETECTION] Contains signature of the HTML script virus HTML/Dldr.Iframe.AT
  --> re[1].htm
      [DETECTION] Contains signature of the exploits EXP/RealPlayer
      [INFO]      The file was deleted!

End of the scan: 2008年1月13日  01:36
Used time: 00:20 min
The scan has been done completely.

[ 本帖最后由 zhaoqy03 于 2008-1-13 01:45 编辑 ]
ye221017
发表于 2008-1-13 10:48:34 | 显示全部楼层
我用费尔 基本就不用式了
sam.to
发表于 2008-1-13 16:23:03 | 显示全部楼层
Hello,

btv[1].htm - Trojan-Clicker.HTML.IFrame.ib,
dsdgg[1].htm - Trojan-Clicker.HTML.IFrame.ic,
ip[2].htm - Trojan-Clicker.HTML.IFrame.ie

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

re[1].htm

No malicious code was found in this file.

Please quote all when answering.
leonsun
发表于 2008-1-13 19:31:17 | 显示全部楼层
诺顿没有反应。分析一下啊
leonsun
发表于 2008-1-13 19:33:10 | 显示全部楼层
微点也没有反应。开来,很多都没反应。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-2-4 03:22 , Processed in 0.075422 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表