楼主: jehovah
收起左侧

[已鉴定] 系统时间被更改!但使用卡巴瑞星等软件扫不到任何病毒

 关闭 [复制链接]
Palkia
发表于 2008-6-1 09:13:16 | 显示全部楼层
ok.exe              12.06/12.06KB       100.00%    在线扫描      它是一个“间谍程序”2008-6-1 9:12:59     2008-6-1 9:13:13





未命名.jpg
lx1234
发表于 2008-6-1 09:22:42 | 显示全部楼层
sophos
未命名.jpg
qianwenxiang
发表于 2008-6-1 11:04:51 | 显示全部楼层
http://www.beijingvip.org//v.txt
aaa.beijingvip.org/aa.exe
aaa.beijingvip.org/bb.exe
aaa.beijingvip.org/z1.exe
aaa.beijingvip.org/z2.exe
aaa.beijingvip.org/z3.exe
aaa.beijingvip.org/z4.exe
aaa.beijingvip.org/z5.exe
aaa.beijingvip.org/z6.exe
aaa.beijingvip.org/z7.exe
aaa.beijingvip.org/z8.exe
aaa.beijingvip.org/z9.exe
aaa.beijingvip.org/z10.exe
aaa.beijingvip.org/z11.exe
aaa.beijingvip.org/z12.exe
aaa.beijingvip.org/z13.exe
aaa.beijingvip.org/z14.exe
aaa.beijingvip.org/z15.exe
aaa.beijingvip.org/z16.exe
aaa.beijingvip.org/z17.exe
aaa.beijingvip.org/z18.exe
aaa.beijingvip.org/z19.exe
aaa.beijingvip.org/z20.exe
aaa.beijingvip.org/z21.exe
aaa.beijingvip.org/z22.exe
aaa.beijingvip.org/z23.exe
aaa.beijingvip.org/z24.exe
aaa.beijingvip.org/z25.exe
aaa.beijingvip.org/z26.exe
aaa.beijingvip.org/z27.exe
aaa.beijingvip.org/z28.exe
aaa.beijingvip.org/z29.exe
aaa.beijingvip.org/z30.exe
aaa.beijingvip.org/z31.exe
aaa.beijingvip.org/z32.exe
aaa.beijingvip.org/z33.exe

[ 本帖最后由 qianwenxiang 于 2008-6-1 11:06 编辑 ]

batchdown.rar

519.07 KB, 下载次数: 131

醉一生爱妍
发表于 2008-6-1 11:14:27 | 显示全部楼层
江民杀毒软件报告文件

        北京江民新科技术有限公司

        扫描引擎 11.00.704
        病毒库日期 2008-05-31
        更新日期 2008-06-01

扫描目标 C:\Documents and Settings\Administrator\桌面\batchdown.rar

开始时间 2008-06-01 10:51:46

在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__C5FEB.exe 中发现 Trojan/PSW.OnLineGames.ues 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__C922D.exe 中发现 Trojan/PSW.OnLineGames.mef 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__14BF0.exe 中发现 Trojan/PSW.OnLineGames.uha 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__3C0AE.exe 中发现 Trojan/PSW.OnlineGames.Gen 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__45DED.exe 中发现 Trojan/PSW.OnlineGames.Gen 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__4A385.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__50C42.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__6135A.exe 中发现 Trojan/PSW.Almat.eft 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__619D5.exe 中发现 Trojan/Agent.amgi 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__637B4.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__678A3.exe 中发现 Trojan/PSW.Almat.efu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__6CD32.exe 中发现 Trojan/PSW.OnlineGames.Gen 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__6F5.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__7D632.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__8A468.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__8BB26.exe 中发现 Trojan/PSW.OnLineGames.ueu 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__9DE05.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__A3130.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__A34F8.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__A518E.exe 中发现 Trojan/PSW.OnlineGames.Gen 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__A6FCE.exe 中发现 Trojan/Agent.bcpg 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__A8543.exe 中发现 Trojan/PSW.OnLineGames.ues 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__AC22F.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__BA45.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__BCE23.exe 中发现 Trojan/PSW.OnLineGames.uem 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__BE1E6.exe 中发现 Trojan/PSW.OnLineGames.aikp 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__C04E4.exe 中发现 Trojan/PSW.OnLineGames.uha 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\batchdown.rar->2008-6-1__C236.exe 中发现 Trojan/CallBeep.Gen 病毒, 已删除
正常结束。

扫描结果:
                 文件数 :35                                  病毒体 :28        
                   删除 :28                                    解毒 :0         
    扫描速度(千字节/秒) :65                                扫描时间 :00:00:16
    扫描文件速度(个/秒) :2

    - - - - -   - - - - - - -   - - - - - - -    - - - - - - -    - - - - - - -     - - - - - - -   - - - - -
fireworld
发表于 2008-6-1 11:36:20 | 显示全部楼层
Log is generated by FreShow.
[wide]http://bbs.topsage.com/index.asp
    [frame]http://www.lilemon.net/mm/index.htm
        [frame]http://aaa.fyair.net/123/ms.htm?078
            [frame]http://aaa.fyair.net/123/web.htm
                [frame]http://www.yahovip.cn/gm.htm
                    [script]http://www.yahovip.cn/webx.asp
                        [frame]http://aaa.fyair.net/123/Ms06014.htm
                        [frame]http://aaa.fyair.net/123/Real10.htm
                        [frame]http://aaa.fyair.net/123/Real11.htm
                        [frame]http://aaa.fyair.net/123/Lzzx.htm
                        [frame]http://aaa.fyair.net/123/pps.htm
                            [object]http://www.beijingvip.org/123/ok.exe
                    [object]http://www.yahovip.cn/4561.swf
                        [object]http://www.yahovip.cn/4562.swf
BING126
头像被屏蔽
发表于 2008-6-1 11:41:49 | 显示全部楼层
McAfee MISS
Kitman
发表于 2008-6-1 11:55:54 | 显示全部楼层
34
Begin scan in 'C:\Documents and Settings\Administrator\桌面\新資料夾'
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__14BF0.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.alae
      [NOTE]      A backup was created as '48721de0.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__1A7C6.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705d9.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__1BABA.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '48721de2.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__1F206.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '49d705db.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__3C0AE.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
      [NOTE]      A backup was created as '48721de4.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__45DED.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
      [NOTE]      A backup was created as '48721de1.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__4A385.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705da.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__50C42.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721de3.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__5936B.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.22164
      [NOTE]      A backup was created as '49d705dc.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__6135A.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Inject.cky
      [NOTE]      A backup was created as '48721de5.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__619D5.exe
      [DETECTION] Is the Trojan horse TR/Agent.qsy.2
      [NOTE]      A backup was created as '49d705de.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__637B4.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721de7.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__678A3.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '49d705d0.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__6CD32.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
      [NOTE]      A backup was created as '48721de9.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__6F5.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705dd.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__7D632.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721de6.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__8A468.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705df.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__8BB26.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721dd8.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__9DE05.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705e1.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__A3130.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721dda.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__A34F8.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705e3.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__A518E.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
      [NOTE]      A backup was created as '48721ddc.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__A6FCE.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '49d705e5.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__A8543.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721dde.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__AC22F.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '49d705e7.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__BA45.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721dd0.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__BA6F.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '49d705d2.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__BCE23.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721deb.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__BE1E6.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ajok
      [NOTE]      A backup was created as '49d705d4.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__C04E4.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '48721ded.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__C236.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ajus
      [NOTE]      A backup was created as '49d705d6.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__C5FEB.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      A backup was created as '48721def.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__C922D.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '49d705c8.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\新資料夾\2008-6-1__D4B45.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      A backup was created as '48721df1.qua'  ( QUARANTINE )
      [NOTE]      The file was deleted!
挪威的冬天
发表于 2008-6-1 13:19:24 | 显示全部楼层
信息        2008-06-01  13:19:17        您此次查毒清除了32个病毒                       
信息        2008-06-01  13:19:17        您此次查毒共查出32个病毒以及危险代码                       
信息        2008-06-01  13:19:17        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件62个                       
信息        2008-06-01  13:19:17        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒
scottxzt
发表于 2008-6-1 13:23:24 | 显示全部楼层
原帖由 zwl2828 于 2008-6-1 09:06 发表

推荐使用卡巴斯基7.0的MP1版本,可以防止时间被改而失去保护!


8.0能行吗
sbbdms
发表于 2008-6-1 13:42:37 | 显示全部楼层

回复 14楼 qianwenxiang 的帖子

Kaspersky miss seven
TO KL
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-16 23:33 , Processed in 0.104722 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表