12
返回列表 发新帖
楼主: mofunzone
收起左侧

[病毒样本] 今日的一包

[复制链接]
sam.to
发表于 2008-5-19 16:25:53 | 显示全部楼层
a.rar/fvowketqfgq.dll - OK
a.rar/mpfanvqg.dll - OK
a.rar/.tt2A0.tmp.vbs - OK
a.rar/ctfmona.exe - infected by Trojan.Win32.Agent.mtm
a.rar/ddcCUoml.dll - OK
a.rar/emxa.exe - OK


b.rar/stdcons.exe - OK
b.rar/vbksrofa.dll - OK
b.rar/WinCtrl32.dll - infected by Trojan-Downloader.Win32.Mutant.yf
b.rar/msprint.exe - infected by Trojan-Dropper.Win32.Agent.rph
b.rar/oadkxrts.exe - OK
b.rar/ojN88.sys - infected by Trojan-Dropper.Win32.Agent.ror
b.rar/pvnsmfor.dll - infected by Trojan.Win32.Vapsup.fhj


to kl

[ 本帖最后由 kato9096 于 2008-5-19 16:27 编辑 ]
阿棍
发表于 2008-5-19 18:48:25 | 显示全部楼层
ESET 扫出4个~~~
qigang
发表于 2008-5-19 19:54:46 | 显示全部楼层

23/6

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.Zlob.ajl   
病毒: AdWare.Win32.BHO.ant     
病毒: AdWare.Win32.BHO.ant     
病毒: Dropper.Win32.Cutwail.t  
病毒: Trojan.Win32.Undef.gls   

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.45.02
rongmaojuanjuan
发表于 2008-5-19 21:01:01 | 显示全部楼层
avast!阻止了下载。
allinwonderi
发表于 2008-5-19 21:08:12 | 显示全部楼层

F-Prot 4.4.4

[Found possible virus]         <W32/Adware-RegBHO-based.1!Maximus (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar->WINDOWS\fvowketqfgq.dll
[Found security risk]         <W32/Agent.BD.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar->WINDOWS\ojN88.sys
[Found downloader]         <W32/Downloader.Z1.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar->WINDOWS\stdcons.exe
[Found downloader]         <W32/Downloader.Z1.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar->WINDOWS\WinCtrl32.dll

---------------------------------------------------------------------
Scan ended:        2008-5-19, 21:07:54
Duration:        0:00:11

Scan result:

Scanned files:                 6
Infected objects:         4
Disinfected objects:         0
Quarantined files:         0
---------------------------------------------------------------------
allinwonderi
发表于 2008-5-19 21:08:34 | 显示全部楼层

ArcaVir2008

[Scanning : C:\Documents and Settings\All Users\Documents\Test]


C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:ctfmona.exe <- Trojan.Agent.Mtm : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:msprint.exe<PECompact2>:msprint.exe<DLLRES>:res1.exe<PECompact2>:res1.exe <- Downloader.Small.Ivo : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:msprint.exe<PECompact2>:msprint.exe<DLLRES>:res2.exe <- Downloader.Small.Ivo : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:msprint.exe<PECompact2>:msprint.exe<DLLRES>:res3.exe<UPX>:res3.exe <- Adware.E404.w : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:msprint.exe<PECompact2>:msprint.exe<DLLRES>:res3.exe<UPX>:res3.exe<DLLRES>:res0.exe <- Adware.E404.Ag : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:msprint.exe<PECompact2>:msprint.exe<DLLRES>:res3.exe<UPX>:res3.exe<DLLRES>:res0.exe<UPX>:res0.exe <- Adware.E404.ag : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:ojN88.sys <- Trojan.Dropper.Agent.Ror : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:ojN88.sys<DLLRES>:EXERESOURCE0.exe <- Trojan.Downloader.Mutant.Yf : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:pvnsmfor.dll <- Trojan.Vapsup.Fhj : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:stdcons.exe <- Trojan.Downloader.Mutant.Xp : No action
C:\Documents and Settings\All Users\Documents\Test\WINDOWS.rar<RAR>:WinCtrl32.dll <- Trojan.Downloader.Mutant.Yf : No action



Scanned objects : 25

Infected objects : 11
挪威的冬天
发表于 2008-5-19 22:00:10 | 显示全部楼层
靠您了

信息        2008-05-19  21:59:58        您此次查毒清除了4个病毒                       
信息        2008-05-19  21:59:58        您此次查毒共查出4个病毒以及危险代码                       
信息        2008-05-19  21:59:58        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件15个                       
信息        2008-05-19  21:59:58        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒                       
病毒        2008-05-19  21:59:58        D:\Desktop\WINDOWS.rar\WINDOWS\WinCtrl32.dll        Win32.TrojDownloader.Mutant.yf.14336        清除成功       
病毒        2008-05-19  21:59:58        D:\Desktop\WINDOWS.rar\WINDOWS\stdcons.exe        Win32.TrojDownloader.Mutant.xp.11776        清除成功       
病毒        2008-05-19  21:59:58        D:\Desktop\WINDOWS.rar\WINDOWS\msprint.exe        Win32.VirInstaller.Agent.77824        清除成功       
病毒        2008-05-19  21:59:57        D:\Desktop\WINDOWS.rar\WINDOWS\ctfmona.exe        Win32.TrojDownloader.FakeAlert.CW.96256        清除成功
hao1899
发表于 2008-5-20 05:53:05 | 显示全部楼层
瑞星      扫了6个
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-15 23:25 , Processed in 0.098662 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表