查看: 3982|回复: 17
收起左侧

[病毒样本] 40 pcs

[复制链接]
jimmyleo
发表于 2008-4-26 09:01:03 | 显示全部楼层 |阅读模式
f-port更新后不能用老库了 郁闷...

33

[Found security risk] <W32/Mvcd.IG (exact, not disinfectable)>  E:\VirusZoo\Unknown\f9da402f6af8379113e248288e3bce39.exe->(CAB)->t1.exe
[Found virus] <W32/Downloader.gen10 (not disinfectable)>  E:\VirusZoo\Unknown\f9da402f6af8379113e248288e3bce39.exe->(CAB)->f1.exe
[Contains infected objects] E:\VirusZoo\Unknown\f9da402f6af8379113e248288e3bce39.exe
[Clean]    E:\VirusZoo\Unknown\d4334c5ae7c99c9b388bf2cb4168515d.exe
[Found security risk] <W32/Injector.A.gen!Eldorado (generic, not disinfectable)>  E:\VirusZoo\Unknown\e41a556929c9874165c3b5f95b3cd1b0.exe
[Found backdoor] <W32/Rbot.A.gen!Eldorado (generic, not disinfectable)>  E:\VirusZoo\Unknown\57f866d1c9d93ffc15f90bc6a35ccb6c.exe
[Found password stealer] <W32/Maran.ADP (exact)>  E:\VirusZoo\Unknown\17a6424a777022289c6b86d784f58c4f.exe
[Found possible virus] <W32/Downloader-WebExe-based!Maximus>  E:\VirusZoo\Unknown\b919a9f3b2a18ef83a6dcaa4ac3afc09.exe->(UPX)
[Clean]    E:\VirusZoo\Unknown\9300fe60a34b0d232857fd41dadb8c51.exe
[Clean]    E:\VirusZoo\Unknown\15e932aeb1a9e426b1389d23c9b0dda9.exe
[Found backdoor] <W32/Agent.B.gen!Eldorado (generic, not disinfectable)>  E:\VirusZoo\Unknown\c3301fd4e51de2f118c860e09ca63b40.dll
[Found downloader] <W32/Downldr2.BSHF (exact)>  E:\VirusZoo\Unknown\ede98e6840cf1f3c40ef10fc3aaac210.sys
[Found password stealer] <W32/Magania.RN (exact)>  E:\VirusZoo\Unknown\96ee125038dc1f16b349b0a67f38b377.exe
[Found virus] <W32/Downloader.gen10>  E:\VirusZoo\Unknown\3e69316e114faff3409ec84d8dc63f50.exe
[Clean]    E:\VirusZoo\Unknown\fb0246250058bea8023b293a47dcd93f.exe->(UPX)
[Clean]    E:\VirusZoo\Unknown\fb0246250058bea8023b293a47dcd93f.exe
[Found security risk] <W32/Mvcd.JD (exact, not disinfectable)>  E:\VirusZoo\Unknown\559e1b052ee01710c6fae9889f9e743c.exe->(CAB)->t1.exe
[Found virus] <W32/Downloader.gen10 (not disinfectable)>  E:\VirusZoo\Unknown\559e1b052ee01710c6fae9889f9e743c.exe->(CAB)->f1.exe
[Contains infected objects] E:\VirusZoo\Unknown\559e1b052ee01710c6fae9889f9e743c.exe
[Clean]    E:\VirusZoo\Unknown\2cbc944592b93ed4e537d998a97eaa0e.exe->(UPX)
[Found virus] <W32/Downloader.gen10>  E:\VirusZoo\Unknown\2cbc944592b93ed4e537d998a97eaa0e.exe
[Found possible security risk] <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>  E:\VirusZoo\Unknown\855b25b38fad20c13adf9a26378fa36e.exe->(UPack)
[Found virus] <W32/Downloader.gen10>  E:\VirusZoo\Unknown\09168f10abc1c6239b9d308dda6bf80f.exe
[Found trojan] <W32/Trojan2.JDU (exact)>  E:\VirusZoo\Unknown\650b769c23f31cd65ace870e879d481f.exe
[Found trojan] <W32/Trojan2.UKE (exact)>  E:\VirusZoo\Unknown\8f6e844cb56e0cc8da5bcf43dacda129.exe
[Found trojan] <W32/Trojan2.ALIG (exact)>  E:\VirusZoo\Unknown\a4c8da2814d43b87d9b27fb42095970c.exe
[Found backdoor] <W32/Hupigon.C.gen!Eldorado (generic, not disinfectable)>  E:\VirusZoo\Unknown\1b4f171f83452c571f90b45a6858528a.exe
[Found downloader] <W32/Downldr2.BKWQ (exact)>  E:\VirusZoo\Unknown\e341297c244a88147c7d0a75085fa391.exe
[Clean]    E:\VirusZoo\Unknown\eca91cb10b82f3aa8439fb2a49add97b.exe
[Found security risk] <W32/D_Downloader!GSA (generic, not disinfectable)>  E:\VirusZoo\Unknown\7fcac1d180df2683c17a67897e4a489a.com->(YodaProt)
[Found possible security risk] <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>  E:\VirusZoo\Unknown\ade256218faad15e65034d529d1c5571.exe->(UPack)
[Found virus] <W32/Downloader.gen10>  E:\VirusZoo\Unknown\cc736a086631bea124fd445acf11bf49.exe
[Found downloader] <W32/Downldr2.BOHW (exact)>  E:\VirusZoo\Unknown\cb403df183200ba6a265b120bf6162dc.exe
[Clean]    E:\VirusZoo\Unknown\4078bed239e0661466c6a67706649c9b.Exe->(UPX)
[Clean]    E:\VirusZoo\Unknown\4078bed239e0661466c6a67706649c9b.Exe
[Found possible downloader] <W32/Heuristic-DL2!Eldorado (not disinfectable)>  E:\VirusZoo\Unknown\0730a6d7e4d99ed7cf87fd5cd995e5bd.exe->(PecBundle)->(PECompact)
[Clean]    E:\VirusZoo\Unknown\99fa3c27158a8584d16bc93005c144ac.exe
[Found possible security risk] <W32/Heuristic-166!Eldorado (not disinfectable)>  E:\VirusZoo\Unknown\669c8613a839d1ce5443e4cad3f92130.dll
[Clean]    E:\VirusZoo\Unknown\1b1f7ef245f9986ac03bc710116ca1cd.exe
[Found security risk] <W32/Agent.AC.gen!Eldorado (generic, not disinfectable)>  E:\VirusZoo\Unknown\984fb2a5b2f11e584141cafe9c6caabe.dll
[Found security risk] <W32/Mvcd.FA (exact)>  E:\VirusZoo\Unknown\693a12287c361eb2710cf7d201b597a7.sys
[Found virus] <W32/Downloader.gen10>  E:\VirusZoo\Unknown\83e88bfd0641ba78453d6f8ff2898b9e.exe
[Found trojan] <W32/Trojan2.PTV (exact)>  E:\VirusZoo\Unknown\6ac01b79fad46ee82f584a5b0ac432f7.dll
[Found trojan] <W32/Trojan2.TSL (exact)>  E:\VirusZoo\Unknown\64ade001daf5d5a601b144e967741449.dll
[Clean]    E:\VirusZoo\Unknown\b31ae0126d550a8143a61d93919e2fdf.dll
[Found trojan] <W32/Trojan.ATII (exact)>  E:\VirusZoo\Unknown\5ed4e0c635a9e611825e875f9794e416.dll
[Found security risk] <W32/Injector.A.gen!Eldorado (generic, not disinfectable)>  E:\VirusZoo\Unknown\e41a556929c9874165c3b5f95b3cd1b0.scr

[ 本帖最后由 jimmyleo 于 2008-4-26 09:06 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
发表于 2008-4-26 09:06:13 | 显示全部楼层
TO KL

Hello,

15e932aeb1a9e426b1389d23c9b0dda9.exe_ - Trojan.Win32.Inject.bdm,
1b1f7ef245f9986ac03bc710116ca1cd.exe_ - Trojan.Win32.Inject.bdl,
208.exe_ - Trojan-Dropper.Win32.Small.blf,
211.exe_ - Trojan-Dropper.Win32.Small.blg,
4078bed239e0661466c6a67706649c9b.exe_ - Trojan-PSW.Win32.Delf.bij,
d4334c5ae7c99c9b388bf2cb4168515d.exe_ - Trojan-PSW.Win32.Nilage.cim,
Launcher.206.exe_ - Trojan.Win32.Agent.kve,
zloi.exe_ - Trojan-Dropper.Win32.Small.blh

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

669c8613a839d1ce5443e4cad3f92130.dll - Trojan-PSW.Win32.Nilage.cil,
9300fe60a34b0d232857fd41dadb8c51.exe_ - Trojan.Win32.Inject.bdj

These files are already detected. Please update your antivirus bases.

Please quote all when answering.

--
Best regards, Evgeny Aseev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.

> Attachment: Unknown.zip


[ 本帖最后由 wangjay1980 于 2008-4-26 19:19 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Exia 该用户已被删除
发表于 2008-4-26 09:14:01 | 显示全部楼层

36

Starting the file scan:

Begin scan in 'E:\AV\新建文件夹'
E:\AV\新建文件夹\fb0246250058bea8023b293a47dcd93f.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.zjw.1
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\f9da402f6af8379113e248288e3bce39.exe
      [DETECTION] Contains detection pattern of the dropper DR/Inject.alz
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\ede98e6840cf1f3c40ef10fc3aaac210.sys
      [DETECTION] Is the Trojan horse TR/Agent.OBW
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\eca91cb10b82f3aa8439fb2a49add97b.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\e341297c244a88147c7d0a75085fa391.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\e41a556929c9874165c3b5f95b3cd1b0.scr
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\e41a556929c9874165c3b5f95b3cd1b0.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\cc736a086631bea124fd445acf11bf49.exe
      [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aas
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\cb403df183200ba6a265b120bf6162dc.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\b919a9f3b2a18ef83a6dcaa4ac3afc09.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Delphi.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\b31ae0126d550a8143a61d93919e2fdf.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.wna
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\ade256218faad15e65034d529d1c5571.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\a4c8da2814d43b87d9b27fb42095970c.exe
      [DETECTION] Is the Trojan horse TR/Inject.ajw
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\9300fe60a34b0d232857fd41dadb8c51.exe
      [DETECTION] Is the Trojan horse TR/Agent.34816.Z
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\09168f10abc1c6239b9d308dda6bf80f.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Spy.Agent.ash
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\4078bed239e0661466c6a67706649c9b.Exe
      [DETECTION] Contains detection pattern of the dropper DR/Delphi.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\855b25b38fad20c13adf9a26378fa36e.exe
      [DETECTION] Is the Trojan horse TR/PSW.Maran.AU
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\0730a6d7e4d99ed7cf87fd5cd995e5bd.exe
      [DETECTION] Is the Trojan horse TR/Agent.5178
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\693a12287c361eb2710cf7d201b597a7.sys
      [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aas
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\650b769c23f31cd65ace870e879d481f.exe
      [DETECTION] Is the Trojan horse TR/Inject.HH
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\559e1b052ee01710c6fae9889f9e743c.exe
      [DETECTION] Contains detection pattern of the dropper DR/Inject.amb
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\99fa3c27158a8584d16bc93005c144ac.exe
      [DETECTION] Contains detection pattern of the worm WORM/Zhelatin.AQ
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\96ee125038dc1f16b349b0a67f38b377.exe
      [DETECTION] Is the Trojan horse TR/PSW.Magania.bre
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\83e88bfd0641ba78453d6f8ff2898b9e.exe
      [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aas
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\64ade001daf5d5a601b144e967741449.dll
      [DETECTION] Is the Trojan horse TR/Spy.Agent.ash
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\57f866d1c9d93ffc15f90bc6a35ccb6c.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\17a6424a777022289c6b86d784f58c4f.exe
      [DETECTION] Is the Trojan horse TR/PSW.Maran.FF
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\15e932aeb1a9e426b1389d23c9b0dda9.exe
      [DETECTION] Is the Trojan horse TR/Inject.GB.4
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\8f6e844cb56e0cc8da5bcf43dacda129.exe
      [DETECTION] Is the Trojan horse TR/Inject.QK
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\7fcac1d180df2683c17a67897e4a489a.com
      [DETECTION] Is the Trojan horse TR/Crypt.CFI.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\6ac01b79fad46ee82f584a5b0ac432f7.dll
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.54784.1
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\5ed4e0c635a9e611825e875f9794e416.dll
      [DETECTION] Is the Trojan horse TR/Drop.Maran.CJ.2
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\3e69316e114faff3409ec84d8dc63f50.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Spy.Agent.ash
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\2cbc944592b93ed4e537d998a97eaa0e.exe
      [DETECTION] Is the Trojan horse TR/Copiet.B.1
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\1b4f171f83452c571f90b45a6858528a.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Backdoor.Gen Backdoor server programs
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\1b1f7ef245f9986ac03bc710116ca1cd.exe
      [DETECTION] Is the Trojan horse TR/PSW.Magania.ddd
      [NOTE]      The file was deleted!


End of the scan: 2008年4月26日  09:15
Used time: 00:18 min

The scan has been done completely.

      1 Scanning directories
     40 Files were scanned
     36 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     36 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      4 Files not concerned
      0 Archives were scanned
      0 Warnings
     36 Notes
Exia 该用户已被删除
发表于 2008-4-26 09:16:07 | 显示全部楼层
25000687         669c8613a839d1ce5...30.dll         44 KB         UNDER ANALYSIS
25000688         984fb2a5b2f11e584...be.dll         25 KB         UNDER ANALYSIS
25000689         c3301fd4e51de2f11...40.dll         205 KB         UNDER ANALYSIS
25000690         d4334c5ae7c99c9b3...5d.exe         68 KB         UNDER ANALYSIS
平淡
发表于 2008-4-26 09:22:00 | 显示全部楼层

34

F:\病毒\Unknown.part1.rar>>0730a6d7e4d99ed7cf87fd5cd995e5bd.exe        TrojanDownloader.Small.uhd.oobu        木马        还未处理
F:\病毒\Unknown.part1.rar>>09168f10abc1c6239b9d308dda6bf80f.exe        Heuri.Suspicious.ERNM        启发式扫描        还未处理
F:\病毒\Unknown.part1.rar>>17a6424a777022289c6b86d784f58c4f.exe        TrojanPSW.Maran.ff.edgu        木马        还未处理
F:\病毒\Unknown.part1.rar>>1b4f171f83452c571f90b45a6858528a.exe        Backdoor.BlackHole.az.csee        后门        还未处理
F:\病毒\Unknown.part1.rar>>2cbc944592b93ed4e537d998a97eaa0e.exe        TrojanPSW.Delf.aih.ljjj        木马        还未处理
F:\病毒\Unknown.part1.rar>>3e69316e114faff3409ec84d8dc63f50.exe        TrojanPSW.Agent.vqp.olfx        木马        还未处理
F:\病毒\Unknown.part1.rar>>4078bed239e0661466c6a67706649c9b.Exe        Trojan.Delphi.Gen.puwo        木马        还未处理
F:\病毒\Unknown.part1.rar>>559e1b052ee01710c6fae9889f9e743c.exe>>emb-0.cab>>f1.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\Unknown.part1.rar>>559e1b052ee01710c6fae9889f9e743c.exe>>emb-0.cab>>t1.exe        Trojan.Inject.amb.ibro        木马        还未处理
F:\病毒\Unknown.part1.rar>>57f866d1c9d93ffc15f90bc6a35ccb6c.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\Unknown.part1.rar>>5ed4e0c635a9e611825e875f9794e416.dll        TrojanPSW.Maran.ff.klcg.dll        木马        还未处理
F:\病毒\Unknown.part1.rar>>64ade001daf5d5a601b144e967741449.dll        TrojanSpy.Agent.ash.yqhs.dll        木马        还未处理
F:\病毒\Unknown.part1.rar>>650b769c23f31cd65ace870e879d481f.exe        Trojan.Inject.hh.pxki        木马        还未处理
F:\病毒\Unknown.part1.rar>>693a12287c361eb2710cf7d201b597a7.sys        TrojanPSW.OnLineGames.wkt.dkqs        木马        还未处理
F:\病毒\Unknown.part1.rar>>6ac01b79fad46ee82f584a5b0ac432f7.dll        PWSteal.Lemir.bpb.ptjw.dll        木马        还未处理
F:\病毒\Unknown.part1.rar>>7fcac1d180df2683c17a67897e4a489a.com        Heuri.Possible/Packed        启发式扫描        还未处理
F:\病毒\Unknown.part1.rar>>83e88bfd0641ba78453d6f8ff2898b9e.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\Unknown.part1.rar>>855b25b38fad20c13adf9a26378fa36e.exe        W32.Viking.k        病毒        还未处理
F:\病毒\Unknown.part1.rar>>96ee125038dc1f16b349b0a67f38b377.exe        TrojanPSW.Magania.bre.sxdp        木马        还未处理
F:\病毒\Unknown.part1.rar>>984fb2a5b2f11e584141cafe9c6caabe.dll        TrojanSpy.Pophot.zr.ogxm.dll        木马        还未处理
F:\病毒\Unknown.part1.rar>>a4c8da2814d43b87d9b27fb42095970c.exe        Trojan.Inject.ajw.gvxn        木马        还未处理
F:\病毒\Unknown.part1.rar>>ade256218faad15e65034d529d1c5571.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\Unknown.part1.rar>>b31ae0126d550a8143a61d93919e2fdf.dll        TrojanPSW.OnLineGames.wna.elpo.dll        木马        还未处理
F:\病毒\Unknown.part1.rar>>b919a9f3b2a18ef83a6dcaa4ac3afc09.exe        TrojanDownloader.Delf.ggz.gtbz        木马        还未处理
F:\病毒\Unknown.part1.rar>>c3301fd4e51de2f118c860e09ca63b40.dll        W32.Hitapop.hlow.dll        病毒        还未处理
F:\病毒\Unknown.part1.rar>>cb403df183200ba6a265b120bf6162dc.exe        TrojanDownloader.Agent.mng.noxv        木马        还未处理
F:\病毒\Unknown.part1.rar>>cc736a086631bea124fd445acf11bf49.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\Unknown.part1.rar>>e341297c244a88147c7d0a75085fa391.exe        TrojanDownloader.Tiny.vg.dqse        木马        还未处理
F:\病毒\Unknown.part1.rar>>e41a556929c9874165c3b5f95b3cd1b0.exe        TrojanSpy.Pophot.cu.tkyq        木马        还未处理
F:\病毒\Unknown.part1.rar>>e41a556929c9874165c3b5f95b3cd1b0.scr        TrojanSpy.Pophot.cu.tkyq        木马        还未处理
F:\病毒\Unknown.part1.rar>>ede98e6840cf1f3c40ef10fc3aaac210.sys        TrojanDownloader.Agent.dbt.nuda        木马        还未处理
F:\病毒\Unknown.part1.rar>>f9da402f6af8379113e248288e3bce39.exe>>emb-0.cab>>f1.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\Unknown.part1.rar>>f9da402f6af8379113e248288e3bce39.exe>>emb-0.cab>>t1.exe        Trojan.Inject.alz.pomj        木马        还未处理
F:\病毒\Unknown.part1.rar>>fb0246250058bea8023b293a47dcd93f.exe        Packed.UPX.a        带壳程序        还未处理
挪威的冬天
发表于 2008-4-26 09:41:43 | 显示全部楼层
信息        2008-04-26  09:41:08        您此次查毒隔离了33个文件                       
信息        2008-04-26  09:41:08        您此次查毒共查出33个病毒以及危险代码                       
信息        2008-04-26  09:41:08        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件55个                       
信息        2008-04-26  09:41:08        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒
jimmyleo
 楼主| 发表于 2008-4-26 09:44:22 | 显示全部楼层

回复 6楼 挪威的冬天 的帖子

金山 有单独的命令行程序?
挪威的冬天
发表于 2008-4-26 09:46:00 | 显示全部楼层

回复 7楼 jimmyleo 的帖子

回 吉米

有 kavdx 这个命令行模式的引擎 不过貌似无法 DOS 下调用 [:27:]

贴的日志是右键扫描(也就是扫描)的日志...
jimmyleo
 楼主| 发表于 2008-4-26 09:48:04 | 显示全部楼层

回复 8楼 挪威的冬天 的帖子

en 多谢指教
郁冰兰雪
发表于 2008-4-26 09:52:50 | 显示全部楼层
EAV 发现36个
D:\病毒样本\Unknown\f9da402f6af8379113e248288e3bce39.exe > CAB > f1.exe - Win32/PSW.OnLineGames.WMZ 特洛伊木马
D:\病毒样本\Unknown\fb0246250058bea8023b293a47dcd93f.exe - Win32/PSW.OnLineGames.NNL 特洛伊木马 的变种
D:\病毒样本\Unknown\ede98e6840cf1f3c40ef10fc3aaac210.sys - 可能是 Win32/Agent.NLI 特洛伊木马 的变种
D:\病毒样本\Unknown\eca91cb10b82f3aa8439fb2a49add97b.exe - 可能是 Win32/Poison 特洛伊木马 的变种
D:\病毒样本\Unknown\e341297c244a88147c7d0a75085fa391.exe - Win32/TrojanDownloader.Tiny.AMX 特洛伊木马
D:\病毒样本\Unknown\e41a556929c9874165c3b5f95b3cd1b0.scr - Win32/Spy.Delf.NIK 特洛伊木马 的变种
D:\病毒样本\Unknown\e41a556929c9874165c3b5f95b3cd1b0.exe - Win32/Spy.Delf.NIK 特洛伊木马 的变种
D:\病毒样本\Unknown\cc736a086631bea124fd445acf11bf49.exe - Win32/PSW.OnLineGames.WMZ 特洛伊木马
D:\病毒样本\Unknown\cb403df183200ba6a265b120bf6162dc.exe - Win32/Agent.NLI 特洛伊木马
D:\病毒样本\Unknown\c3301fd4e51de2f118c860e09ca63b40.dll - 可能是 Win32/Spy.Delf.NIG 特洛伊木马 的变种
D:\病毒样本\Unknown\b919a9f3b2a18ef83a6dcaa4ac3afc09.exe - Win32/Mypis.AA 病毒
D:\病毒样本\Unknown\b31ae0126d550a8143a61d93919e2fdf.dll - Win32/PSW.OnLineGames.WMZ 特洛伊木马
D:\病毒样本\Unknown\ade256218faad15e65034d529d1c5571.exe - 可能是 Win32/Jalous 蠕虫 的变种
D:\病毒样本\Unknown\a4c8da2814d43b87d9b27fb42095970c.exe - Win32/PSW.Gamania.NAG 特洛伊木马
D:\病毒样本\Unknown\09168f10abc1c6239b9d308dda6bf80f.exe - Win32/PSW.OnLineGames.LYX 特洛伊木马
D:\病毒样本\Unknown\4078bed239e0661466c6a67706649c9b.Exe - 可能是 Win32/Genetik 特洛伊木马 的变种
D:\病毒样本\Unknown\984fb2a5b2f11e584141cafe9c6caabe.dll - Win32/Spy.Delf.NHF 特洛伊木马 的变种
D:\病毒样本\Unknown\855b25b38fad20c13adf9a26378fa36e.exe - Win32/PSW.Maran 特洛伊木马 的变种
D:\病毒样本\Unknown\0730a6d7e4d99ed7cf87fd5cd995e5bd.exe - Win32/TrojanDownloader.Small.OBH 特洛伊木马
D:\病毒样本\Unknown\693a12287c361eb2710cf7d201b597a7.sys - Win32/PSW.OnLineGames.WMZ 特洛伊木马
D:\病毒样本\Unknown\650b769c23f31cd65ace870e879d481f.exe - 可能是 Win32/Inject 特洛伊木马 的变种
D:\病毒样本\Unknown\559e1b052ee01710c6fae9889f9e743c.exe > CAB > t1.exe - Win32/PSW.Gamania.NAI 特洛伊木马
D:\病毒样本\Unknown\559e1b052ee01710c6fae9889f9e743c.exe > CAB > f1.exe - Win32/PSW.OnLineGames.WMZ 特洛伊木马
D:\病毒样本\Unknown\96ee125038dc1f16b349b0a67f38b377.exe - Win32/PSW.Gamania.BR 特洛伊木马
D:\病毒样本\Unknown\83e88bfd0641ba78453d6f8ff2898b9e.exe - Win32/PSW.OnLineGames.WMZ 特洛伊木马
D:\病毒样本\Unknown\64ade001daf5d5a601b144e967741449.dll - Win32/PSW.OnLineGames.KAK 特洛伊木马
D:\病毒样本\Unknown\57f866d1c9d93ffc15f90bc6a35ccb6c.exe - Win32/Jalous.AK 蠕虫
D:\病毒样本\Unknown\17a6424a777022289c6b86d784f58c4f.exe - Win32/PSW.Maran.FF 特洛伊木马
D:\病毒样本\Unknown\15e932aeb1a9e426b1389d23c9b0dda9.exe - Win32/PSW.Gamania.NAG 特洛伊木马
D:\病毒样本\Unknown\8f6e844cb56e0cc8da5bcf43dacda129.exe - 可能是 Win32/Inject 特洛伊木马 的变种
D:\病毒样本\Unknown\7fcac1d180df2683c17a67897e4a489a.com - Win32/TrojanDownloader.Banload.CZK 特洛伊木马 的变种
D:\病毒样本\Unknown\6ac01b79fad46ee82f584a5b0ac432f7.dll - 可能是 Win32/PSW.OnLineGames 特洛伊木马 的变种
D:\病毒样本\Unknown\5ed4e0c635a9e611825e875f9794e416.dll - Win32/PSW.Maran.FF 特洛伊木马
D:\病毒样本\Unknown\3e69316e114faff3409ec84d8dc63f50.exe - Win32/PSW.OnLineGames.LYX 特洛伊木马
D:\病毒样本\Unknown\2cbc944592b93ed4e537d998a97eaa0e.exe - Win32/PSW.OnLineGames.FCJ 特洛伊木马 的变种
D:\病毒样本\Unknown\1b4f171f83452c571f90b45a6858528a.exe - 可能是 Win32/BlackHole 特洛伊木马 的变种
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-3 20:28 , Processed in 0.128675 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表