查看: 2533|回复: 16
收起左侧

[病毒样本] 9个

[复制链接]
qianwenxiang
发表于 2008-5-1 13:04:29 | 显示全部楼层 |阅读模式

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
傻猪猪米走鸡
发表于 2008-5-1 13:09:39 | 显示全部楼层
正在扫描日志
病毒库版本: 3067 (20080430)
日期: 2008/5/1  时间: 13:09:23
已扫描的磁盘、文件夹和文件: C:\Users\花卉\Desktop\pr1.rar
C:\Users\花卉\Desktop\pr1.rar > RAR > BEEP.SYS - 正常
C:\Users\花卉\Desktop\pr1.rar > RAR > msosiocp.dll - Win32/TrojanDownloader.Agent.NXA 特洛伊木马
C:\Users\花卉\Desktop\pr1.rar > RAR > install_player_3xxx3912941.exe - Win32/Adware.IeDefender.NDJ 应用程序
C:\Users\花卉\Desktop\pr1.rar > RAR > Install4196.exe - 正常
C:\Users\花卉\Desktop\pr1.rar > RAR > WinX_DVD_Author_key.exe > RAR > crack.exe - 正常
C:\Users\花卉\Desktop\pr1.rar > RAR > WinX_DVD_Author_key.exe > RAR > keygen.exe - Win32/TrojanDownloader.Small.IWH 特洛伊木马
C:\Users\花卉\Desktop\pr1.rar > RAR > WinX_DVD_Author_key.exe > RAR > serial.exe - Win32/TrojanDownloader.Small.IAW 特洛伊木马
C:\Users\花卉\Desktop\pr1.rar > RAR > WinX_DVD_Author_key.exe > RAR > readme.bat - 可能是 Win32/Agent 特洛伊木马 的变种
C:\Users\花卉\Desktop\pr1.rar > RAR > load.exe - 正常
C:\Users\花卉\Desktop\pr1.rar > RAR > 614.exe - Win32/TrojanDownloader.Small.NZS 特洛伊木马
C:\Users\花卉\Desktop\pr1.rar > RAR > Install2436.exe - 可能是 Win32/TrojanDownloader.Agent.NTA 特洛伊木马 的变种
C:\Users\花卉\Desktop\pr1.rar > RAR > mm.exe - Win32/AutoRun.HZ 蠕虫 的变种
C:\Users\花卉\Desktop\pr1.rar:Zone.Identifier - 正常
已扫描的对象数: 13
发现的威胁数: 8
已清除对象数:0
完成时间: 13:09:24  总扫描时间: 1 秒 (00:00:01)
mofunzone
发表于 2008-5-1 13:13:31 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\pr1'
C:\Documents and Settings\Administrator\My Documents\pr1\
  614.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ppu
      [NOTE]      The file was deleted!
  BEEP.SYS
  Install2436.exe
      [DETECTION] Is the Trojan horse TR/Renos.29952.10
      [NOTE]      The file was deleted!
  Install4196.exe
  install_player_3xxx3912941.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/Dldr.Peregar.CR
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  load.exe
    [0] Archive type: RSRC
      --> Object
        [1] Archive type: Runtime Packed
        --> Object
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
  mm.exe
      [DETECTION] Is the Trojan horse TR/Spy.Fusad.F.2
      [NOTE]      The file was deleted!
  msosiocp.dll
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
  WinX_DVD_Author_key.exe
    [0] Archive type: RAR SFX (self extracting)
    --> crack.exe
        [DETECTION] Is the Trojan horse TR/Vundo.Gen
    --> keygen.exe
        [DETECTION] Is the Trojan horse TR/Dldr.Small.iwh
    --> serial.exe
        [DETECTION] Is the Trojan horse TR/Crypt.ULPM.Gen
    --> readme.bat
      [DETECTION] Contains detection pattern of the dropper DR/PCK.Monder.157120
      [NOTE]      The file was deleted!


End of the scan: 2008年4月30日  22:12
Used time: 00:04 min

The scan has been done completely.

      1 Scanning directories
     13 Files were scanned
     10 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      7 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      3 Files not concerned
      1 Archives were scanned
      1 Warnings
      7 Notes
mofunzone
发表于 2008-5-1 13:14:35 | 显示全部楼层
25006769          BEEP.SYS          4.38 KB          UNDER ANALYSIS
25006771          Install4196.exe          57.24 KB          UNDER ANALYSIS
hellobaby
发表于 2008-5-1 13:17:05 | 显示全部楼层
瑞星病毒查杀结果报告
22/4
清除病毒种类列表:
病毒: Trojan.DL.Win32.Small.tsf
病毒: Trojan.DL.Win32.Small.tsf
病毒: Trojan.PSW.Win32.OnlineGames.GEN
病毒: Backdoor.Win32.PcClient.ecq

MAC 地址:00:03:0F:FF:B1:22

用户来源:互联网

软件版本:20.42.30
Joker
发表于 2008-5-1 13:17:33 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
qwer9909
发表于 2008-5-1 13:26:15 | 显示全部楼层
pr1.rar\BEEP.SYS;C:\Documents and Settings\Administrator\桌面\pr1.rar;Trojan.NtRootKit.1026;;
pr1.rar\msosiocp.dll;C:\Documents and Settings\Administrator\桌面\pr1.rar;Trojan.DownLoader.57331;;
pr1.rar\install_player_3xxx3912941.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar;Trojan.MulDrop.14988;;
WinX_DVD_Author_key.exe\crack.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar\WinX_DVD_Author_key.exe;Trojan.Virtumod.240;;
WinX_DVD_Author_key.exe\keygen.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar\WinX_DVD_Author_key.exe;Trojan.DownLoader.55602;;
WinX_DVD_Author_key.exe\serial.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar\WinX_DVD_Author_key.exe;Trojan.DownLoader.59536;;
WinX_DVD_Author_key.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar;发现压缩文件中有被感染的对象;;
pr1.rar\614.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar;Trojan.DownLoader.45214;;
pr1.rar\Install2436.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar;Trojan.Fakealert;;
pr1.rar\mm.exe;C:\Documents and Settings\Administrator\桌面\pr1.rar;Win32.HLLW.Autoruner.1862;;
pr1.rar;C:\Documents and Settings\Administrator\桌面;发现压缩文件中有被感染的对象;;

蜘蛛全灭!
wangjay1980
发表于 2008-5-1 13:37:41 | 显示全部楼层
K

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
红心王子
发表于 2008-5-1 14:51:15 | 显示全部楼层
时间        处理结果        木马名称        木马进程名        木马文件创建者
2008-05-01 14:50:54        处理成功        Trojan-PSW.Win32.OLGame.ysj        C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\新建文件夹\614.EXE        C:\PROGRAM FILES\WINRAR\WINRAR.EXE
2008-05-01 14:50:54        处理成功        Trojan.Win32.KillAV.ln        C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\新建文件夹\MSOSIOCP.DLL        C:\PROGRAM FILES\WINRAR\WINRAR.EXE
2008-05-01 14:50:53        处理成功        Trojan.Win32.KillAV.lq        C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\新建文件夹\BEEP.SYS        C:\PROGRAM FILES\WINRAR\WINRAR.EXE
qigang
发表于 2008-5-1 18:57:31 | 显示全部楼层

11/0

RS20.42.30未杀!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-15 18:35 , Processed in 0.120760 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表