12
返回列表 发新帖
楼主: yunhan123
收起左侧

[病毒样本] 继续发

[复制链接]
欠妳緈諨
发表于 2008-6-5 01:05:03 | 显示全部楼层
3
D:\病毒测试\临时解压\桌面.rar:\A17-tmpaASI.exe - 特征码 'Trojan.Win32.Delflob.I' 被发现
D:\病毒测试\临时解压\桌面.rar:\jkill.exe - 特征码 'Application.Win32.AdWare.TopMoxie' 被发现
D:\病毒测试\临时解压\桌面.rar:\djtopr1150.exe - 特征码 'not-a-virus:AdWare.Win32.WebRebates.g' 被发现
D:\病毒测试\临时解压\桌面.rar:\A13-tmp
D:\病毒测试\临时解压\桌面.rar

        5 文件被扫描
          (1 压缩档 4 文件)
        3 特征码被侦测
        0 可疑代码段被发现
        耗时: 0:00.881
水晶
发表于 2008-6-5 08:26:58 | 显示全部楼层
原帖由 小邪邪 于 2008-6-4 20:11 发表
278612
瑞星过

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hahacomcn
发表于 2008-6-5 09:07:12 | 显示全部楼层
原帖由 kato9096 于 2008-6-5 00:50 发表

已刪除: 特洛伊木馬程式 Trojan-Downloader.Win32.Peregar.cg        檔案: C:\Documents and Settings\kato9096\桌面\桌面.rar/A17-tmpaASI.exe//PE_Patch.UPX//UPX
已刪除: 廣告軟體 not-a-virus:AdWare.Win32.WebReba ...


素P版滴~
残缺的唯美
发表于 2008-6-5 09:18:52 | 显示全部楼层
C:\Documents and Settings\Administrator\桌面\桌面.rar » RAR » A17-tmpaASI.exe - Win32/Adware.IeDefender.NDH application - was a part of the deleted object
C:\Documents and Settings\Administrator\桌面\桌面.rar » RAR » jkill.exe - Win32/ProcKill application - was a part of the deleted object
C:\Documents and Settings\Administrator\桌面\桌面.rar » RAR » djtopr1150.exe - Win32/Adware.TopRebates.A application - was a part of the deleted object
C:\Documents and Settings\Administrator\桌面\桌面.rar » RAR » A13-tmp - Win32/Adware.IeDefender.NEX application - was a part of the deleted object
sam.to
发表于 2008-6-5 19:01:49 | 显示全部楼层
原帖由 kato9096 于 2008-6-5 00:50 发表

已刪除: 特洛伊木馬程式 Trojan-Downloader.Win32.Peregar.cg        檔案: C:\Documents and Settings\kato9096\桌面\桌面.rar/A17-tmpaASI.exe//PE_Patch.UPX//UPX
已刪除: 廣告軟體 not-a-virus:AdWare.Win32.WebReba ...

Hello,

jkill.exe_

No malicious code was found in this file.

Please quote all when answering.

--
Best regards, Namestnikov Yury
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.
allinwonderi
发表于 2008-6-5 20:14:05 | 显示全部楼层

ArcaVir2008

[Scanning : C:\Documents and Settings\All Users\Documents\Test]


C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A17-tmpaASI.exe <- Trojan.Agent.Ai : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A17-tmpaASI.exe<DLLRES>:file0.exe <- Trojan.Agent.Ai : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A17-tmpaASI.exe<DLLRES>:file0.exe<UPX>:file0.exe <- Downloader.Peregar.cg : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A17-tmpaASI.exe<UPX>:A17-tmpaASI.exe <- Downloader.Peregar.cg : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A17-tmpaASI.exe<UPX>:A17-tmpaASI.exe<DLLRES>:file0.exe <- Trojan.Agent.Ai : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A17-tmpaASI.exe<UPX>:A17-tmpaASI.exe<DLLRES>:file0.exe<UPX>:file0.exe <- Downloader.Peregar.cg : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:jkill.exe <- Adware.Ia : No action
C:\Documents and Settings\All Users\Documents\Test\桌面.rar<RAR>:A13-tmp <- Trojan.Agent.Ki : No action



Scanned objects : 11

Infected objects : 8
allinwonderi
发表于 2008-6-5 20:14:43 | 显示全部楼层

F-Prot 4.4.4

[Found downloader]         <W32/Downldr2.BXCO (exact, not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\桌面.rar->A17-tmpaASI.exe->exefile

---------------------------------------------------------------------
Scan ended:        2008-6-5, 20:14:33
Duration:        0:00:00

Scan result:

Scanned files:                 6
Infected objects:         1
Disinfected objects:         0
Quarantined files:         0
---------------------------------------------------------------------
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-6-2 11:32 , Processed in 0.099618 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表