123
返回列表 发新帖
楼主: qianwenxiang
收起左侧

[病毒样本] 06.04 100个

[复制链接]
悠柚
发表于 2008-6-5 07:23:20 | 显示全部楼层
红伞打扫战场
剩2个
yanshangzhao
发表于 2008-6-5 12:47:30 | 显示全部楼层
90


Avira AntiVir Premium
Report file date: 2008年6月5日  12:46

Scanning for 1310153 virus strains and unwanted programs.

Licensed to:      go oo
Serial number:    1700236362-PEPWE-0001
Platform:         Windows XP
Windows version:  (Service Pack 2)  [5.1.2600]
Boot mode:        Normally booted
Username:         Administrator
Computer name:    ZHAO

Version information:
BUILD.DAT     : 8.1.0.344       19214 Bytes   2008-5-28 17:00:00
AVSCAN.EXE    : 8.1.2.12       311553 Bytes   2008-5-29 13:50:54
AVSCAN.DLL    : 8.1.1.0         53505 Bytes   2008-5-29 13:50:54
LUKE.DLL      : 8.1.2.9        151809 Bytes   2008-5-29 13:50:54
LUKERES.DLL   : 8.1.2.1         12033 Bytes   2008-5-29 13:50:54
ANTIVIR0.VDF  : 6.40.0.0     11030528 Bytes   2007-7-18 06:36:36
ANTIVIR1.VDF  : 7.0.3.2       5447168 Bytes    2008-3-7 06:07:50
ANTIVIR2.VDF  : 7.0.4.120     2206720 Bytes    2008-6-1 05:01:24
ANTIVIR3.VDF  : 7.0.4.143       92672 Bytes    2008-6-4 03:34:52
Engineversion : 8.1.0.51  
AEVDF.DLL     : 8.1.0.5        102772 Bytes   2008-5-29 13:50:56
AESCRIPT.DLL  : 8.1.0.37       270715 Bytes    2008-6-1 05:29:32
AESCN.DLL     : 8.1.0.20       119157 Bytes   2008-5-29 13:50:56
AERDL.DLL     : 8.1.0.20       418165 Bytes   2008-5-29 13:50:56
AEPACK.DLL    : 8.1.1.5        364918 Bytes   2008-5-29 13:50:56
AEOFFICE.DLL  : 8.1.0.18       192890 Bytes   2008-5-29 13:50:56
AEHEUR.DLL    : 8.1.0.29      1253750 Bytes   2008-5-29 13:50:56
AEHELP.DLL    : 8.1.0.15       115063 Bytes   2008-5-29 13:50:54
AEGEN.DLL     : 8.1.0.25       307573 Bytes    2008-6-1 05:28:48
AEEMU.DLL     : 8.1.0.6        430451 Bytes   2008-5-29 13:50:54
AECORE.DLL    : 8.1.0.30       168311 Bytes   2008-5-29 13:50:54
AVWINLL.DLL   : 1.0.0.7         14593 Bytes   2008-5-29 13:50:54
AVPREF.DLL    : 8.0.0.1         25857 Bytes   2008-5-29 13:50:54
AVREP.DLL     : 7.0.0.1        155688 Bytes   2008-5-26 08:50:56
AVREG.DLL     : 8.0.0.0         30977 Bytes   2008-5-29 13:50:54
AVARKT.DLL    : 1.0.0.23       307457 Bytes   2008-5-29 13:50:54
AVEVTLOG.DLL  : 8.0.0.11       114945 Bytes   2008-5-29 13:50:54
SQLITE3.DLL   : 3.3.17.1       339968 Bytes   2008-5-29 13:50:54
SMTPLIB.DLL   : 1.2.0.19        28929 Bytes   2008-5-29 13:50:54
NETNT.DLL     : 8.0.0.1          7937 Bytes   2008-5-29 13:50:54
RCIMAGE.DLL   : 8.0.0.31      2564353 Bytes   2008-5-29 13:50:50
RCTEXT.DLL    : 8.0.32.0        86273 Bytes   2008-5-29 13:50:50

Configuration settings for the scan:
Jobname..........................: ShlExt
Configuration file...............: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\d893117b.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: C:,
Scan memory......................: on
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: 2008年6月5日  12:46

Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\080602up[1].part1.rar'
C:\Documents and Settings\Administrator\桌面\080602up[1].part1.rar
  [0] Archive type: RAR
    --> F7EC15BC
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.amfb
  --> 12FC8499
      [DETECTION] Is the Trojan horse TR/Spy.Gen
    --> 1858742A
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.amdt
  --> 19D45784
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.rod
  --> 1E863F93
      [DETECTION] Is the Trojan horse TR/Agent.49152
  --> 21F16B0F
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.rod.1
  --> 22CE5B64
      [DETECTION] Is the Trojan horse TR/Agent.49152
  --> 28BF2930
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.rod.2
  --> 28F56D4E
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> 2E00ECFB
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> 37AC264F
      [DETECTION] Is the Trojan horse TR/Agent.nbj
  --> 3C01CDF2
      [DETECTION] Contains detection pattern of the worm WORM/Robobot
    --> 3CB8A095
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> 4056B583
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.allu
  --> 407A1EDE
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.amln
  --> 44F67337
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.akyh.1
  --> 467792BF
      [DETECTION] Is the Trojan horse TR/Dldr.Small.iwh
    --> 4A65E016
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.alpo
  --> 4A6B764B
      [DETECTION] Is the Trojan horse TR/Agent.nbl
    --> 4CDF3134
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.amdt
  --> 5037A642
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.almd
  --> 5147906B
      [DETECTION] Is the Trojan horse TR/Agent.NBJ.1
  --> 55C744A1
      [DETECTION] Is the Trojan horse TR/Undef.N
  --> 56FB2A94
      [DETECTION] Is the Trojan horse TR/Agent.qwe
  --> 5A78A3BE
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.almc
    --> 5AD1070A
          [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> 5D4CCC30
      [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.PN
  --> 6007F9D2
      [DETECTION] Contains detection pattern of the Windows virus W32/VB.BU
  --> 639141D2
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.221
  --> 63D0D5A1
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.allk
    --> 65C4D7A7
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.YC.4
  --> 699671BB
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.almh
  --> 6A746952
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.akxv
  --> 6AA9C9C0
      [DETECTION] Is the Trojan horse TR/PSW.16493
  --> 6E3DEF0A
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.220
  --> 6F6E2DD6
      [DETECTION] Contains detection pattern of the dropper DR/PcClient.Gen
    --> 70F74A4
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/Proxy.Xorpix.FC
  --> 752D8BA
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.aiol.1
  --> 781EB2F7
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Pcclient.atg.1 Backdoor server programs
    --> 7A01C916
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.akjk
        --> Object
            [DETECTION] Is the Trojan horse TR/Agent.qqx
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\桌面\080602up[1].part2.rar'
C:\Documents and Settings\Administrator\桌面\080602up[1].part2.rar
  [0] Archive type: RAR
  --> 7D2495C1
      [DETECTION] Is the Trojan horse TR/ATRAPS.Gen
  --> 854AAAF0
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.218
  --> 860F363A
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.rod.3
    --> 8AFC39AB
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.amdt
  --> 8E68D082
      [DETECTION] Is the Trojan horse TR/Agent.7680
    --> 9072C6D0
          [DETECTION] Is the Trojan horse TR/PSW.Online.ACG.2
  --> 92EC568C
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.236
  --> 935F24B8
      [DETECTION] Is the Trojan horse TR/PSW.18397
  --> 99981D77
      [DETECTION] Is the Trojan horse TR/Peed.A.447
    --> A01473F0
          [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> A117EC42
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.almh
  --> A21486D0
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> A9EC8F4C
      [DETECTION] Contains detection pattern of the worm WORM/Downloader.NO
  --> ADCCC404
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.alme.1
  --> AE2427BF
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Pcclient.dtz Backdoor server programs
  --> B14FD43F
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ahnr
  --> BD308229
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.almz
  --> BE95C15B
      [DETECTION] Is the Trojan horse TR/Killav.TI.8
    --> BFF0561
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ajtp
  --> C0BADDA1
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ajti
    --> C1B8CB58
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.259
  --> CD9D245B
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.almz
  --> CE1A347
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> D231871B
      [DETECTION] Contains detection pattern of the Windows virus W32/Zhidao
  --> D44679FC
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> DD538F72
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4854
  --> DE327E66
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> E02DDB72
      [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.PN
  --> E12D5347
      [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.PN
    --> E24A4A02
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.253
  --> E907283
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.allf.1
  --> E929AE4D
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.alna
    --> EDFBCD8F
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ajtm
        --> Object
            [DETECTION] Contains detection pattern of the worm WORM/Downloader.MM
  --> EEEE7237
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.rod.4
    --> EFF4CD77
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Dldr.Delphi.Gen
    --> F0E86656
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.252
  --> F413BD35
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.220
    --> F460C302
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.adwk
  --> F6190D1C
      [DETECTION] Is the Trojan horse TR/Crypt.ASPM.Gen
  --> F6466D1B
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ajxz.1
      [WARNING]   The file was ignored!


End of the scan: 2008年6月5日  12:47
Used time: 00:15 min

The scan has been done completely.

      0 Scanning directories
    103 Files were scanned
     90 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     13 Files not concerned
      2 Archives were scanned
      2 Warnings
      0 Notes
kkgh
发表于 2008-6-5 15:09:31 | 显示全部楼层
诺顿52个
sbbdms
发表于 2008-6-6 07:51:16 | 显示全部楼层
原帖由 kato9096 于 2008-6-5 00:48 发表
去上报吧


他上报了吗?我先上报试试

现在卡巴杀了91个,还剩9个,TO KL
sbbdms
发表于 2008-6-6 16:00:18 | 显示全部楼层
Hello,

606888D2,E47869FF, F6190D1C

No malicious code were found in these files.

1904549B, 196A9846, 81B774AE, D5F1ADC7, E02DDB72, E3F43DEE

These files are corrupted.

Please quote all when answering.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-12-22 12:20 , Processed in 0.063861 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表