查看: 2262|回复: 12
收起左侧

[病毒样本] 30 IEHelper

[复制链接]
qianwenxiang
发表于 2008-3-25 20:11:10 | 显示全部楼层 |阅读模式
30 from smartpv.cn

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
28654621
头像被屏蔽
发表于 2008-3-25 20:12:46 | 显示全部楼层
D:\download\BHOS.part1.rar>>2008-3-25__B5B15.dll        Adware.IEHlpr.ca.wgjb.dll        广告程序        还未处理
Joker
发表于 2008-3-25 20:17:08 | 显示全部楼层
30
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.ga        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__41297.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cb        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__4632A.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cr        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__46B14.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cc        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__4A4F2.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cm        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__4C35C.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.ce        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__4D171.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.ea        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__5B211.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.fl        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__5B950.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.co        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__5F913.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.gb        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__655DC.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cf        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__674F0.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.bv        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__725E3.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.by        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__7386B.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cd        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__74669.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.gn        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__84DB6.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cs        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__87DE7.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.fg        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__97B29.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.fc        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__9D49F.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.fe        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__A211.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cn        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__A90F3.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.fk        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__B4FA9.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.ca        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__B5B15.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.bu        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__BA05A.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cl        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__C48D3.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.gd        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__CAD08.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cg        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__CEB40.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.fb        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__CF6D1.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cp        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__D2A64.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.cq        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__D4BC0.dll
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.eb        File: C:\Documents and Settings\Administrator\×ÀÃæ\BHOS\2008-3-25__DFD40.dll
qigang
发表于 2008-3-25 20:17:18 | 显示全部楼层

30/30

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: AdWare.Win32.IEHlpr.ai   

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.37.12
sam.to
发表于 2008-3-25 20:23:04 | 显示全部楼层

回复 3楼 dark1109 的帖子

全部都是DLL
aerbeisi
发表于 2008-3-25 20:44:45 | 显示全部楼层
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__9D49F.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__A211.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__A90F3.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__B4FA9.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__B5B15.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__BA05A.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__C48D3.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__CAD08.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__CEB40.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__CF6D1.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__D2A64.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__D4BC0.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__DFD40.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__41297.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__4632A.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__46B14.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__4A4F2.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__4C35C.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__4D171.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__5B211.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__5B950.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__5F913.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__655DC.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__674F0.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__725E3.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__7386B.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__74669.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__84DB6.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__87DE7.dll->(PE_Patch)->(Aspack)->(Aspack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        c:\test\2008-3-25__97B29.dll->(PE_Patch)->(Aspack)->(Aspack)

---------------------------------------------------------------------
Scan ended:        2008-3-25, 20:49:05
Duration:        00:00:03

Scan result:

Scanned files:                 30
Infected objects:         30
Disinfected objects:         0
Quarantined files:         0
---------------------------------------------------------------------

[ 本帖最后由 aerbeisi 于 2008-3-25 20:49 编辑 ]
HC303
发表于 2008-3-25 21:33:56 | 显示全部楼层
Begin scan in 'E:\Virus Test\BHOS'
E:\Virus Test\BHOS\2008-3-25__41297.dll
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__4632A.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CB
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__46B14.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CR
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__4A4F2.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CC
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__4C35C.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CM
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__4D171.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CE
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__5B211.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.EA
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__5B950.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.FL
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__5F913.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CO
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__655DC.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.GB
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__674F0.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CF
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__725E3.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.BV
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__7386B.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.BY
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__74669.dll
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__84DB6.dll
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__87DE7.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/Bho.BG
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__97B29.dll
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__9D49F.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.FC
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__A211.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.FE
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__A90F3.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CN
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__B4FA9.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.FK
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__B5B15.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CA
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__BA05A.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.BU
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__C48D3.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CL
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__CAD08.dll
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__CEB40.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CG
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__CF6D1.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.FB
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__D2A64.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CP
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__D4BC0.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.CQ
      [WARNING]   The file was ignored!
E:\Virus Test\BHOS\2008-3-25__DFD40.dll
      [DETECTION] Contains detection pattern of the Ad- or Spyware ADSPY/IEHlpr.EB
      [WARNING]   The file was ignored!


End of the scan: 2008年3月25日  21:32
Used time: 00:12 min

The scan has been done completely.

      1 Scanning directories
     30 Files were scanned
     25 viruses and/or unwanted programs were found
      5 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      5 Files not concerned
      0 Archives were scanned
     30 Warnings
      0 Notes
上报
HC303
发表于 2008-3-25 21:41:01 | 显示全部楼层
3798749  2008-3-25__41297.dll  168 KB  UNDER ANALYSIS
3798750  2008-3-25__74669.dll  169 KB  UNDER ANALYSIS
3798751  2008-3-25__84DB6.dll  167.5 KB  UNDER ANALYSIS
3798752  2008-3-25__97B29.dll  168 KB  UNDER ANALYSIS
3798753  2008-3-25__CAD08.dll  167.5 KB  UNDER ANALYSIS
曲中求
发表于 2008-3-25 21:46:26 | 显示全部楼层
咖啡 30

2008-3-25        21:45:34        引擎版本=5200.2160
2008-3-25        21:45:34        防病毒 DAT 版本=5258.0000
2008-3-25        21:45:34        EXTRA.DAT 中的检测项特征码数=1
2008-3-25        21:45:34        EXTRA.DAT 中的检测项特征码名称=Generic.dx (ED)
2008-3-25        21:45:19        扫描已启动        PC-200803241624\求丫        按需扫描
2008-3-25        21:45:35        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__41297.dll        Adware-Alexa(Adware)
2008-3-25        21:45:38        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__4632A.dll        Adware-Alexa(Adware)
2008-3-25        21:45:38        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__46B14.dll        Adware-Alexa(Adware)
2008-3-25        21:45:38        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__4A4F2.dll        Adware-Alexa(Adware)
2008-3-25        21:45:39        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__4C35C.dll        Adware-Alexa(Adware)
2008-3-25        21:45:39        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__4D171.dll        Adware-Alexa(Adware)
2008-3-25        21:45:39        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__5B211.dll        Adware-Alexa(Adware)
2008-3-25        21:45:39        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__5B950.dll        Adware-Alexa(Adware)
2008-3-25        21:45:40        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__5F913.dll        Adware-Alexa(Adware)
2008-3-25        21:45:40        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__655DC.dll        Adware-Alexa(Adware)
2008-3-25        21:45:40        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__674F0.dll        Adware-Alexa(Adware)
2008-3-25        21:45:41        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__725E3.dll        Adware-Alexa(Adware)
2008-3-25        21:45:41        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__7386B.dll        Adware-Alexa(Adware)
2008-3-25        21:45:42        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__74669.dll        Adware-Alexa(Adware)
2008-3-25        21:45:42        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__84DB6.dll        Adware-Alexa(Adware)
2008-3-25        21:45:42        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__87DE7.dll        Adware-Alexa(Adware)
2008-3-25        21:45:42        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__97B29.dll        Adware-Alexa(Adware)
2008-3-25        21:45:43        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__9D49F.dll        Adware-Alexa(Adware)
2008-3-25        21:45:43        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__A211.dll        Adware-Alexa(Adware)
2008-3-25        21:45:43        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__A90F3.dll        Adware-Alexa(Adware)
2008-3-25        21:45:43        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__B4FA9.dll        Adware-Alexa(Adware)
2008-3-25        21:45:43        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__B5B15.dll        Adware-Alexa(Adware)
2008-3-25        21:45:43        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__BA05A.dll        Adware-Alexa(Adware)
2008-3-25        21:45:44        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__C48D3.dll        Adware-Alexa(Adware)
2008-3-25        21:45:44        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__CAD08.dll        Adware-Alexa(Adware)
2008-3-25        21:45:44        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__CEB40.dll        Adware-Alexa(Adware)
2008-3-25        21:45:44        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__CF6D1.dll        Adware-Alexa(Adware)
2008-3-25        21:45:44        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__D2A64.dll        Adware-Alexa(Adware)
2008-3-25        21:45:44        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__D4BC0.dll        Adware-Alexa(Adware)
2008-3-25        21:45:45        未采取操作         求丫        E:\病毒\BHOS\2008-3-25__DFD40.dll        Adware-Alexa(Adware)
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        扫描摘要
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已扫描的进程: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已检测的进程: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已清除病毒的进程: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已扫描的引导区: 1
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已检测的引导区: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已清除病毒的引导区: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已扫描的文件: 30
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        含有检测项的文件: 30
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        文件检测项: 30
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已清除病毒的文件: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已删除的文件: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        未扫描的文件: 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        扫描摘要(注册表扫描)
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已扫描的项         : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已检测的项        : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已清理的项         : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已删除的项         : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        扫描摘要(Cookie 扫描)
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已扫描的 Cookie      : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已检测的 Cookie     : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已清理的 Cookie      : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        已删除的 Cookie      : 0
2008-3-25        21:45:45        扫描摘要        PC-200803241624\求丫        运行时间: 0:00:26
2008-3-25        21:45:45        扫描结束        PC-200803241624\求丫        按需扫描
The EQs
发表于 2008-3-25 21:48:49 | 显示全部楼层

全灭了,都用一个特征码

C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__41297.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__4632A.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__46B14.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__4A4F2.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__4C35C.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__4D171.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__5B211.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__5B950.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__5F913.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__655DC.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__674F0.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__725E3.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__7386B.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__74669.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__84DB6.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__87DE7.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__97B29.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__9D49F.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__A211.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__A90F3.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__B4FA9.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__B5B15.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__BA05A.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__C48D3.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__CAD08.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__CEB40.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__CF6D1.dll - probably a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__D2A64.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__D4BC0.dll - a variant of Win32/Ysmarsys.A trojan
C:\Documents and Settings\Don johnson\桌面\BHOS\2008-3-25__DFD40.dll - a variant of Win32/Ysmarsys.A trojan
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-3 19:57 , Processed in 0.133293 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表