楼主: qianwenxiang
收起左侧

[病毒样本] 第一包24个

[复制链接]
悠柚
发表于 2008-1-26 16:19:28 | 显示全部楼层
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\1710.rar\我的照片.Exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\diybar2.cab\diybar2.dll - is an AdWare program Adware.DiyBar
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\wincup.cab\wincup.exe - is an AdWare program Adware.Borlander
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\mun1_26_11_070.exe - infected with BackDoor.Bolg
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\43.exe - infected with Trojan.LowZones.706
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\2.exe - infected with Trojan.DownLoader.32674
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\1.3075221.exe - infected with Trojan.PWS.Wsgame.3104
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\1.3912404.exe - probably infected with BACKDOOR.Trojan
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\1.7680584.exe - infected with Trojan.DownLoader.origin
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\1.8259836.exe - infected with Trojan.PWS.Legmir.2018
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\1.8886942.exe - infected with Trojan.PWS.Wsgame.1741
C:\Documents and Settings\Owner.B2DEF1EA8C1547B\Local Settings\Application Data\Mozilla\Firefox\Profiles\th2903ve.default\Cache\E87294EAd01\19.262645E-02.exe - infected with Trojan.PWS.Gamania.6954

Archive contains 12 infected items
kkgh
发表于 2008-1-26 16:29:42 | 显示全部楼层
瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Trojan.Win32.Undef.bfe   
病毒: Backdoor.Win32.Small.tf  
病毒: Trojan.PSW.Win32.QQHX.tvu
病毒: Trojan.Win32.Undef.bxt   
病毒: Trojan.PSW.Win32.LMir.yys
病毒: Trojan.PSW.Win32.GameOL.ljx
病毒: Trojan.PSW.Win32.GameOL.lhu
病毒: Trojan.PSW.Win32.OnlineGames.GEN
病毒: Trojan.PSW.Win32.GamesOnline.bm
病毒: Trojan.PSW.Win32.GameOL.gng
病毒: Malicious Code           
病毒: Trojan.PSW.Win32.GameOL.gfw
病毒: Trojan.PSW.Win32.GameOL.lpn

用户来源:互联网

软件版本:20.28.50
qigang
发表于 2008-1-26 17:08:01 | 显示全部楼层

47/18

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.Undef.bfe   
病毒: Backdoor.Win32.Small.tf  
病毒: Trojan.PSW.Win32.QQHX.tvu
病毒: Trojan.Win32.Undef.bxt   
病毒: Trojan.PSW.Win32.LMir.yys
病毒: Trojan.PSW.Win32.GameOL.ljx
病毒: Trojan.PSW.Win32.GameOL.lhu
病毒: Trojan.PSW.Win32.OnlineGames.GEN
病毒: Trojan.PSW.Win32.GamesOnline.bm
病毒: Trojan.PSW.Win32.GameOL.gng
病毒: Malicious Code           
病毒: Trojan.PSW.Win32.GameOL.gfw
病毒: Trojan.PSW.Win32.GameOL.lpn

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.28.51
leonfg
发表于 2008-1-26 18:16:36 | 显示全部楼层
ESET 22
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 1710.rar » RAR » 我的照片.Exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » diybar2.cab » CAB » diybar2.dll - Win32/Adware.Toolbar.Diybar application
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 43.exe - Win32/Agent.NNA trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 2.exe - Win32/Small.CJT trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 1.3075221.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 1.3912404.exe - Win32/PSW.OnLineGames.NMF trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 1.7680584.exe - a variant of Win32/PSW.Agent.NGZ trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 1.8259836.exe - Win32/PSW.WOW.WU trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 1.8886942.exe - Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 19.262645E-02.exe - a variant of Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 6.1559359.exe - Win32/PSW.WOW.WU trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 8.1174411.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 8.4764441.exe - Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 8.5582588.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 8.9635147.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 11.248562.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 11.1437953.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 11.2236246.exe - Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 11.6853994.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 11.7012554.exe - Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 15.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Malware1.rar » RAR » 16.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
Palkia
发表于 2008-1-26 19:49:14 | 显示全部楼层

卡巴23~费尔37!!??

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\1.8259836.EXE        PWSteal.Lemir.boy.pjkg        木马        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>1.3075221.exe        TrojanPSW.OnLineGames.pbp.zipb        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>1.3912404.exe        W32.Viking.k        病毒        已删除/隔离
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\1.8886942.EXE        TrojanPSW.OnLineGames.nmc.pejv        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\19.262645E-02.EXE        TrojanPSW.OnLineGames.odx.lhap        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\6.1559359.EXE        PWSteal.Lemir.boy.pjkg        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\8.1174411.EXE        TrojanDownloader.Nurech.bd.bmqk        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\8.4764441.EXE        TrojanPSW.OnLineGames.jhe.ihnb        木马        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>1.7680584.exe        TrojanPSW.XYOnline.aao.etad        木马        已删除/隔离
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\8.5582588.EXE        TrojanDropper.Agent.fth.ivmj        木马        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>1.8259836.exe        PWSteal.Lemir.boy.pjkg        木马        已删除/隔离
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\8.9635147.EXE        TrojanPSW.GameOL.gng.dqvs        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\11.248562.EXE        TrojanDownloader.Nurech.bd.bmqk        木马        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>1.8886942.exe        TrojanPSW.OnLineGames.nmc.pejv        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>11.1437953.exe        TrojanDownloader.Nurech.bd.bmqk        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>11.2236246.exe        TrojanPSW.GameOL.GEN.acib        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>11.248562.exe        TrojanDownloader.Nurech.bd.bmqk        木马        已删除/隔离
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\11.1437953.EXE        TrojanDownloader.Nurech.bd.bmqk        木马        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>11.6853994.exe        TrojanDownloader.Nurech.bd.bmqk        木马        已删除/隔离
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\11.2236246.EXE        TrojanPSW.GameOL.GEN.acib        木马        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>11.7012554.exe        TrojanPSW.OnLineGames.lhc.wklh        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>15.exe        TrojanPSW.OnLineGames.pjj.leeh        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>16.exe        Heuri.Suspicious.ERNM        启发式扫描        已删除/隔离
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\11.6853994.EXE        TrojanDownloader.Nurech.bd.bmqk        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\11.7012554.EXE        TrojanPSW.OnLineGames.lhc.wklh        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\15.EXE        TrojanPSW.OnLineGames.pjj.leeh        木马        删除失败
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TWIEX19\16.EXE        Heuri.Suspicious.ERNM        启发式扫描        删除失败
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>19.262645E-02.exe        TrojanPSW.OnLineGames.odx.lhap        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>43.exe        TrojanDownloader.Agent.gbh.zemh        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>6.1559359.exe        PWSteal.Lemir.boy.pjkg        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>8.1174411.exe        TrojanDownloader.Nurech.bd.bmqk        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>8.4764441.exe        TrojanPSW.OnLineGames.jhe.ihnb        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>8.5582588.exe        TrojanDropper.Agent.fth.ivmj        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>8.9635147.exe        TrojanPSW.GameOL.gng.dqvs        木马        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>diybar2.cab>>diybar2.dll        Adware.Diybar.b.vk.dll        广告程序        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>mun1_26_11_070.exe        Backdoor.Agent.dbo.cgex        后门        已删除/隔离
C:\Documents and Settings\Administrator\桌面\Malware1.rar>>wincup.cab>>wincup.exe        Adware.Boran.p.hdp        广告程序        已删除/隔离
sam.to
发表于 2008-1-26 20:10:45 | 显示全部楼层
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.Delf.anw        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/1710.rar/扂腔桽⑵.Exe//UPX
已刪除: 廣告軟體 not-a-virus:AdWare.Win32.Diybar.b        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/diybar2.cab/diybar2.dll
已刪除: 廣告軟體 not-a-virus:AdWare.Win32.Boran.p        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/wincup.cab/wincup.exe
已刪除: 特洛伊木馬程式 Backdoor.Win32.Agent.dbo        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/mun1_26_11_070.exe
已刪除: 特洛伊木馬程式 Trojan-Downloader.Win32.Agent.gbh        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/43.exe//PE_Patch.PECompact//PecBundle//PECompact
已刪除: 特洛伊木馬程式 Backdoor.Win32.Small.tf        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/2.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.pbp        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/1.3075221.exe//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.pcn        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/1.3912404.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.pgn        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/1.7680584.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.Lmir.boy        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/1.8259836.exe//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.nmc        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/1.8886942.exe//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.odx        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/19.262645E-02.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.Lmir.boy        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/6.1559359.exe//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/8.1174411.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.mmy        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/8.4764441.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.nbk        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/8.5582588.exe//NSPack//PE_Patch
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.lqb        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/8.9635147.exe//NSPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/11.248562.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/11.1437953.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.mht        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/11.2236246.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/11.6853994.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.nbl        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/11.7012554.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.pjj        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/15.exe//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.pbp        檔案: C:\Documents and Settings\kato9096\桌面\Malware1.rar/16.exe//PE_Patch//UPack

24
spaceplane
发表于 2008-1-26 20:15:34 | 显示全部楼层
原帖由 hj5abc 于 2008-1-26 16:04 发表


? 楼了 10 个 ..

没问题,又查了,AVAST是20个


右键扫是20个,监控扫出是13个,怪了。。。。

[ 本帖最后由 spaceplane 于 2008-1-26 20:20 编辑 ]
woai_jolin
发表于 2008-1-26 20:21:26 | 显示全部楼层
2008-1-26 20:20:37        Real-time file system protection        file        G:\v\diybar2.dll        Win32/Adware.Toolbar.Diybar application        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:10        Real-time file system protection        file        G:\v\6.1559359.exe        Win32/PSW.WOW.WU trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:09        Real-time file system protection        file        G:\v\19.262645E-02.exe        a variant of Win32/PSW.OnLineGames.FDY trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:07        Real-time file system protection        file        G:\v\1.8886942.exe        Win32/PSW.OnLineGames.MUG trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:06        Real-time file system protection        file        G:\v\1.8259836.exe        Win32/PSW.WOW.WU trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:05        Real-time file system protection        file        G:\v\1.7680584.exe        a variant of Win32/PSW.Agent.NGZ trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:03        Real-time file system protection        file        G:\v\1.3912404.exe        Win32/PSW.OnLineGames.NMF trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:02        Real-time file system protection        file        G:\v\1.3075221.exe        a variant of Win32/PSW.OnLineGames.MUG trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:20:00        Real-time file system protection        file        G:\v\2.exe        Win32/Small.CJT trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2008-1-26 20:19:59        Real-time file system protection        file        G:\v\43.exe        Win32/Agent.NNA trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
ballakay
发表于 2008-1-26 21:43:44 | 显示全部楼层
Scanning Report
26 January 2008 21:43:25 - 21:43:28
Computer name: PUMA-PC
Scanning type: Scan target
Target: C:\Users\Administrator\Desktop\Malware1.rar


--------------------------------------------------------------------------------

Result: 23 malware found
AdWare.Win32.Diybar.b (adware)
C:\Users\Administrator\Desktop\Malware1.rar\diybar2.cab\diybar2.dll
AdWare.Win32.Boran.p (adware)
C:\Users\Administrator\Desktop\Malware1.rar\wincup.cab\wincup.exe
Backdoor.Win32.Agent.dbo (virus)
C:\Users\Administrator\Desktop\Malware1.rar\mun1_26_11_070.exe
Trojan-Downloader.Win32.Agent.gbh (virus)
C:\Users\Administrator\Desktop\Malware1.rar\43.exe
Backdoor.Win32.Small.tf (virus)
C:\Users\Administrator\Desktop\Malware1.rar\2.exe
Trojan-PSW.Win32.OnLineGames.pbp (virus)
C:\Users\Administrator\Desktop\Malware1.rar\1.3075221.exe
C:\Users\Administrator\Desktop\Malware1.rar\16.exe
Trojan-PSW.Win32.OnLineGames.pcn (virus)
C:\Users\Administrator\Desktop\Malware1.rar\1.3912404.exe
Trojan-PSW.Win32.OnLineGames.pgn (virus)
C:\Users\Administrator\Desktop\Malware1.rar\1.7680584.exe
Trojan-PSW.Win32.Lmir.boy (virus)
C:\Users\Administrator\Desktop\Malware1.rar\1.8259836.exe
C:\Users\Administrator\Desktop\Malware1.rar\6.1559359.exe
Trojan-PSW.Win32.OnLineGames.nmc (virus)
C:\Users\Administrator\Desktop\Malware1.rar\1.8886942.exe
Trojan-PSW.Win32.OnLineGames.odx (virus)
C:\Users\Administrator\Desktop\Malware1.rar\19.262645E-02.exe
Trojan-PSW.Win32.OnLineGames.isb (virus)
C:\Users\Administrator\Desktop\Malware1.rar\8.1174411.exe
C:\Users\Administrator\Desktop\Malware1.rar\11.248562.exe
C:\Users\Administrator\Desktop\Malware1.rar\11.1437953.exe
C:\Users\Administrator\Desktop\Malware1.rar\11.6853994.exe
Trojan-PSW.Win32.OnLineGames.mmy (virus)
C:\Users\Administrator\Desktop\Malware1.rar\8.4764441.exe
Trojan-PSW.Win32.OnLineGames.nbk (virus)
C:\Users\Administrator\Desktop\Malware1.rar\8.5582588.exe
Trojan-PSW.Win32.OnLineGames.lqb (virus)
C:\Users\Administrator\Desktop\Malware1.rar\8.9635147.exe
Trojan-PSW.Win32.OnLineGames.mht (virus)
C:\Users\Administrator\Desktop\Malware1.rar\11.2236246.exe
Trojan-PSW.Win32.OnLineGames.nbl (virus)
C:\Users\Administrator\Desktop\Malware1.rar\11.7012554.exe
Trojan-PSW.Win32.OnLineGames.pjj (virus)
C:\Users\Administrator\Desktop\Malware1.rar\15.exe




--------------------------------------------------------------------------------

Statistics
Scanned:
Files: 31
Not scanned: 0
Result:
Viruses: 21
Spyware: 2
Suspicious items: 0
Riskware: 0
Actions:
Disinfected: 0
Renamed: 0
Deleted: 0
Quarantined: 0
Failed: 0
Boot Sectors:
Scanned: 0
Infected: 0
Suspicious items: 0
Disinfected: 0


--------------------------------------------------------------------------------

Options
Definitions version:
Viruses: 2008-01-26_03
Spyware: 2008-01-26_02
Scanning Engines:
F-Secure AVP: 7.00.171, 2008-01-26
F-Secure Libra: 2.04.01, 2008-01-24
F-Secure Orion: 1.02.37, 2008-01-26
F-Secure Draco: 1.00.35, 2008-01-14
Scanning options:
Scan all files
Scan inside archives
Actions:
Viruses: Delete infected files
Spyware: Delete infected files
冷冷
发表于 2008-1-26 22:06:28 | 显示全部楼层


I:\virus\test/1.3075221.exe: PUA.Packed.UPack-3 FOUND
I:\virus\test/1.3912404.exe: PUA.Packed.UPack-1 FOUND
I:\virus\test/1.8259836.exe: PUA.Packed.UPack-2 FOUND
I:\virus\test/1.8886942.exe: PUA.Packed.UPack-3 FOUND
I:\virus\test/11.1437953.exe: PUA.Packed.UPack-2 FOUND
I:\virus\test/11.2236246.exe: PUA.Packed.UPack FOUND
I:\virus\test/11.248562.exe: PUA.Packed.UPack-2 FOUND
I:\virus\test/11.6853994.exe: PUA.Packed.UPack-2 FOUND
I:\virus\test/11.7012554.exe: PUA.Packed.UPack FOUND
I:\virus\test/15.exe: PUA.Packed.UPack-3 FOUND
I:\virus\test/16.exe: PUA.Packed.UPack-3 FOUND
I:\virus\test/19.262645E-02.exe: PUA.Packed.UPack FOUND
I:\virus\test/2.exe: PUA.Packed.MEW-1 FOUND
I:\virus\test/43.exe: Trojan.Downloader-18725 FOUND
I:\virus\test/6.1559359.exe: PUA.Packed.UPack-2 FOUND
I:\virus\test/8.1174411.exe: PUA.Packed.UPack-2 FOUND
I:\virus\test/8.4764441.exe: PUA.Packed.UPack FOUND
I:\virus\test/8.9635147.exe: Trojan.Spy-18711 FOUND
I:\virus\test/mun1_26_11_070.exe: Trojan.Agent-11124 FOUND
----------- SCAN SUMMARY -----------
Known viruses: 197940
Engine version: 0.92
Scanned directories: 1
Scanned files: 27
Infected files: 19
Data scanned: 1.24 MB
Time: 7.046 sec (0 m 7 s)

I:\virus\test\1.3075221.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\1.3912404.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\1.7680584.exe - Signature 'Virus.Win32.OnLineGames.SR' found
I:\virus\test\1.8259836.exe - Signature 'Trojan-PWS.Win32.Lmir.boy' found
I:\virus\test\1.8886942.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\11.1437953.exe - Signature 'Trojan-PWS.Win32.OnLineGames.isb' found
I:\virus\test\11.2236246.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
I:\virus\test\11.248562.exe - Signature 'Trojan-PWS.Win32.OnLineGames.isb' found
I:\virus\test\11.6853994.exe - Signature 'Trojan-Downloader.Win32.Zlob.and' found
I:\virus\test\11.7012554.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
I:\virus\test\15.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\16.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\19.262645E-02.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
I:\virus\test\2.exe - Signature 'Backdoor.Win32.Small.tf' found
I:\virus\test\43.exe - Suspect code-parts found (Level: 150)
I:\virus\test\6.1559359.exe - Signature 'Trojan-PWS.Win32.Lmir.boy' found
I:\virus\test\8.1174411.exe - Signature 'Trojan-PWS.Win32.OnLineGames.es' found
I:\virus\test\8.4764441.exe - Signature 'Trojan-Dropper.Win32.Agent.ane' found
I:\virus\test\8.5582588.exe - Signature 'Packed.Win32.Klone.af' found
I:\virus\test\8.9635147.exe - Signature 'Packed.Win32.Klone.af' found
I:\virus\test\diybar2.dll - Signature 'not-a-virus:AdWare.Win32.Diybar.b' found
I:\virus\test\diybar2.inf
I:\virus\test\menu_ex.xml
I:\virus\test\mun1_26_11_070.exe - Signature 'Backdoor.Win32.Agent.dbo' found
I:\virus\test\version.txt
I:\virus\test\wincup.exe - Signature 'not-a-virus:AdWare.Win32.Boran.p' found
I:\virus\test\我的照片.Exe - Signature 'Trojan-Spy.Win32.Delf.PG' found
27 Files scanned
   (0 Archives with 0 files)
23 Signatures found
1 Suspect code-part found

Used time: 0:03.016
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-25 16:06 , Processed in 0.098349 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表