查看: 7598|回复: 37
收起左侧

[病毒样本] 硬盘终结者病毒样本,给自信的人试试

[复制链接]
safepods
头像被屏蔽
发表于 2008-4-12 22:12:36 | 显示全部楼层 |阅读模式
硬盘终结者病毒样本,给自信的人试试

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Exia 该用户已被删除
发表于 2008-4-12 22:14:27 | 显示全部楼层
Starting the file scan:

Begin scan in 'E:\新建文件夹 (2)\硬盘终结者.rar'
E:\新建文件夹 (2)\硬盘终结者.rar
  [0] Archive type: RAR
  --> Ó²ÅÌÖÕ½áÕß\svchost.bmp.pif
      [DETECTION] Contains detection pattern of the worm WORM/Agent.AC
      [INFO]      The file was deleted!
Palkia
发表于 2008-4-12 22:15:28 | 显示全部楼层
是不是这么厉害呢·呵呵
Palkia
发表于 2008-4-12 22:16:35 | 显示全部楼层

。。。。。。。。。。。。。。。。。。。。

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Worm.Win32.ELan.a        

MAC 地址:00:17:31:40:A3:57

用户来源:局域网

软件版本:20.39.52
wangjay1980
发表于 2008-4-12 22:16:37 | 显示全部楼层
K

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
tanlimo
发表于 2008-4-12 22:18:54 | 显示全部楼层
正在收集这种类型的毒呢。

ess扫描日志
病毒库版本: 3020 (20080411)
日期: 2008-4-12  时间: 22:17:40
已扫描的磁盘、文件夹和文件: G:\硬盘终结者.rar
G:\硬盘终结者.rar > RAR > 硬盘终结者\svchost.bmp.pif - Win32/ZloyFly.D 病毒
已扫描的对象数: 1
发现的威胁数: 1
完成时间: 22:17:41  总扫描时间: 1 秒 (00:00:01)
aerbeisi
发表于 2008-4-12 22:19:01 | 显示全部楼层
[Found possible security risk]         <W32/Heuristic-162!Eldorado (not disinfectable)>        C:\test\硬盘终结者.rar->硬盘终结者\svchost.bmp.pif->(Malware_Prot.O)->(UPX)
woai_jolin
发表于 2008-4-12 22:22:11 | 显示全部楼层
=============================================================================
Dr.Web(R) Scanner for Windows v4.44.5 (4.44.5.03270)
(c) 1992-2008 Igor Daniloff. All rights reserved.
Log generated on: 2008-04-12, 22:21:19 [JASON-PC][Jason]
Command-line: "D:\Program Files\DrWeb\DrWeb32W.Exe" /ARN /HA /OK /UPN /TM- /AL /SS- /SD /SHELL /TB- /CDO
Operating system:Windows  Professional x86 (Build 6001), Service Pack 1
=============================================================================
DwShield started
Engine version: 4.44 (4.44.0.09170)
Engine API version: 2.02
[Virus database] D:\Program Files\DrWeb\drwtoday.vdb - 2807 virus records
[Virus database] D:\Program Files\DrWeb\drw44434.vdb - 5080 virus records
[Virus database] D:\Program Files\DrWeb\drw44433.vdb - 16374 virus records
[Virus database] D:\Program Files\DrWeb\drw44432.vdb - 13616 virus records
[Virus database] D:\Program Files\DrWeb\drw44431.vdb - 1725 virus records
[Virus database] D:\Program Files\DrWeb\drw44430.vdb - 4101 virus records
[Virus database] D:\Program Files\DrWeb\drw44429.vdb - 1319 virus records
[Virus database] D:\Program Files\DrWeb\drw44428.vdb - 3709 virus records
[Virus database] D:\Program Files\DrWeb\drw44427.vdb - 6097 virus records
[Virus database] D:\Program Files\DrWeb\drw44426.vdb - 1097 virus records
[Virus database] D:\Program Files\DrWeb\drw44425.vdb - 3605 virus records
[Virus database] D:\Program Files\DrWeb\drw44424.vdb - 7770 virus records
[Virus database] D:\Program Files\DrWeb\drw44423.vdb - 4210 virus records
[Virus database] D:\Program Files\DrWeb\drw44422.vdb - 1010 virus records
[Virus database] D:\Program Files\DrWeb\drw44421.vdb - 421 virus records
[Virus database] D:\Program Files\DrWeb\drw44420.vdb - 1306 virus records
[Virus database] D:\Program Files\DrWeb\drw44419.vdb - 1234 virus records
[Virus database] D:\Program Files\DrWeb\drw44418.vdb - 1238 virus records
[Virus database] D:\Program Files\DrWeb\drw44417.vdb - 4406 virus records
[Virus database] D:\Program Files\DrWeb\drw44416.vdb - 7847 virus records
[Virus database] D:\Program Files\DrWeb\drw44415.vdb - 6014 virus records
[Virus database] D:\Program Files\DrWeb\drw44414.vdb - 804 virus records
[Virus database] D:\Program Files\DrWeb\drw44413.vdb - 5020 virus records
[Virus database] D:\Program Files\DrWeb\drw44412.vdb - 1565 virus records
[Virus database] D:\Program Files\DrWeb\drw44411.vdb - 1582 virus records
[Virus database] D:\Program Files\DrWeb\drw44410.vdb - 1131 virus records
[Virus database] D:\Program Files\DrWeb\drw44409.vdb - 2303 virus records
[Virus database] D:\Program Files\DrWeb\drw44408.vdb - 3904 virus records
[Virus database] D:\Program Files\DrWeb\drw44407.vdb - 2456 virus records
[Virus database] D:\Program Files\DrWeb\drw44406.vdb - 4411 virus records
[Virus database] D:\Program Files\DrWeb\drw44405.vdb - 1311 virus records
[Virus database] D:\Program Files\DrWeb\drw44404.vdb - 2486 virus records
[Virus database] D:\Program Files\DrWeb\drw44403.vdb - 4462 virus records
[Virus database] D:\Program Files\DrWeb\drw44402.vdb - 94 virus records
[Virus database] D:\Program Files\DrWeb\drw44401.vdb - 557 virus records
[Virus database] D:\Program Files\DrWeb\drw44400.vdb - 945 virus records
[Virus database] D:\Program Files\DrWeb\drwebase.vdb - 209466 virus records
[Virus database] D:\Program Files\DrWeb\dwrtoday.vdb - 32 virus records
[Virus database] D:\Program Files\DrWeb\dwr44401.vdb - 679 virus records
[Virus database] D:\Program Files\DrWeb\dwntoday.vdb - 998 virus records
[Virus database] D:\Program Files\DrWeb\dwn44403.vdb - 1211 virus records
[Virus database] D:\Program Files\DrWeb\dwn44402.vdb - 814 virus records
[Virus database] D:\Program Files\DrWeb\dwn44401.vdb - 698 virus records
[Virus database] D:\Program Files\DrWeb\drwrisky.vdb - 2747 virus records
[Virus database] D:\Program Files\DrWeb\drwnasty.vdb - 13534 virus records
Total virus records: 358196
Key file: D:\Program Files\DrWeb\silentdemo.key
License key number: 1401981453
Registered to: Doctor Web trial user:
License key activates on: 2008-04-12
License key expires on: 2008-07-12
Master Boot Record HDD1 - Ok
Active OS/2 or WinNT Boot Sector HDD1 - Ok

[Scan path] G:\v\硬盘终结者.rar
>>G:\v\硬盘终结者.rar\硬盘终结者\svchost.bmp.pif infected with Trojan.KillFiles.692
G:\v\硬盘终结者.rar - archive contains infected objects
G:\v\硬盘终结者.rar:Zone.Identifier - Ok

-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 4
Infected objects found: 1
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Cured: 0
Deleted: 0
Renamed: 0
Moved: 0
Ignored: 0
Scan speed: 761 Kb/s
Scan time: 00:00:01
-----------------------------------------------------------------------------

G:\v\硬盘终结者.rar - deleted

=============================================================================
Total session statistics
=============================================================================
Objects scanned: 4
Infected objects found: 1
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Cured: 0
Deleted: 1
Renamed: 0
Moved: 0
Ignored: 0
Scan speed: 761 Kb/s
Scan time: 00:00:01
=============================================================================
黄金马甲出租
发表于 2008-4-12 22:22:12 | 显示全部楼层
实机、无还原,我很自信,你不够自信

[ 本帖最后由 黄金马甲出租 于 2008-4-12 22:25 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
zwl2828
发表于 2008-4-12 22:23:52 | 显示全部楼层

Twister

C:\Users\Wesley\Downloads\硬盘终结者.rar>>硬盘终结者\svchost.bmp.pif        W32.ZloyFly.d.ulyq        病毒        还未处理
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-3 14:10 , Processed in 0.115485 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表