楼主: qianwenxiang
收起左侧

[病毒样本] 06.07 100x

[复制链接]
qigang
发表于 2008-6-7 19:35:10 | 显示全部楼层

156/63

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Backdoor.Win32.PcClient.ejr
病毒: Trojan.Win32.AvKiller.bz
病毒: Trojan.PSW.Win32.GameOL.nxl
病毒: Trojan.PSW.Win32.GameOL.nvd
病毒: RootKit.Win32.RESSDT.bc  
病毒: Trojan.Win32.CPEX-based.m
病毒: Trojan.PSW.Win32.GameOL.nvb
病毒: Trojan.PSW.Win32.RocOnline.lb
病毒: Trojan.PSW.Win32.GameOL.nxi
病毒: Junk.Vxnine.a            
病毒: Worm.Win32.Detnat.f      
病毒: Backdoor.Win32.PcClient.ejn
病毒: Trojan.Win32.Undef.gzb   
病毒: Trojan.PSW.Win32.SunOnline.os
病毒: RootKit.Win32.Mnless.si  
病毒: RootKit.Win32.Mnless.si  
病毒: RootKit.Win32.RESSDT.bf  
病毒: Trojan.PSW.Win32.GameOL.nxf
病毒: Trojan.PSW.Win32.GameOL.nuz
病毒: Trojan.DL.Win32.Small.czg
病毒: Trojan.PSW.Win32.QQHX.txx
病毒: Trojan.PSW.Win32.GameOL.nwk
病毒: Worm.Mail.VB.bc         
病毒: Trojan.PSW.Win32.GameOL.nsq
病毒: Trojan.DL.Win32.Undef.pv

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.47.50
冷冷
发表于 2008-6-7 19:36:46 | 显示全部楼层
IK

100 Files scanned
   (3 Archives with 0 files)
64 Signatures found
2 Suspect code-parts found
Used time: 0:03.297

侦测比:66/100


[ 本帖最后由 冷冷 于 2008-6-7 19:41 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
电影结束了
发表于 2008-6-7 20:11:10 | 显示全部楼层
扫描完成: 2008-6-7 20:10
    已检查 100 个文件
    已发现 94 个染毒文件
    发现 0 个可疑文件
woai_jolin
发表于 2008-6-7 20:19:29 | 显示全部楼层

80个

扫描开始于2008年6月7日 20:19:51
G:\v\新建文件夹\10777BCC,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\13571E6E,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\1858742A,查到病毒: W32/Dropper.AMB!tr.pws, 操作: 删除/隔离
G:\v\新建文件夹\1A37EC7E,查到病毒: W32/BHO.DKF!tr, 操作: 删除/隔离
G:\v\新建文件夹\1AAF17B0,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\1DDDA5CA,查到病毒: W32/Generic.A!tr, 操作: 删除/隔离
G:\v\新建文件夹\22324921,查到病毒: W32/Dloader.DCS!tr, 操作: 删除/隔离
G:\v\新建文件夹\24E9FBC8,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\2D16939E,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\2F494FAD,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\368DF5A2,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\37AC264F,查到病毒: SPY/LegMir, 操作: 删除/隔离
G:\v\新建文件夹\39FB068D,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\3A2F9B9C,查到病毒: W32/OnLineGames.AMPD!tr.pws, 操作: 删除/隔离
G:\v\新建文件夹\3AE69D45,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\42A636FC,查到病毒: W32/Hmir.CTE!tr.dldr, 操作: 删除/隔离
G:\v\新建文件夹\45451048,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\4A65E016,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\4A6B764B,查到病毒: W32/Agent.NBL!tr, 操作: 删除/隔离
G:\v\新建文件夹\4E7E868B,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\4F941EF9,查到病毒: Spy/Generic, 操作: 删除/隔离
G:\v\新建文件夹\5015D72C,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\5147906B,查到病毒: W32/Agent.NBJ!tr, 操作: 删除/隔离
G:\v\新建文件夹\5428349,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\55D0BC1D,查到病毒: W32/Generic.A!tr, 操作: 删除/隔离
G:\v\新建文件夹\5A78A3BE,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\5D02B9A4,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\6014D6E7,查到病毒: PSWEY.E!tr, 操作: 删除/隔离
G:\v\新建文件夹\64AE2310,查到病毒: W32/Agent.RQJ!tr.dldr, 操作: 删除/隔离
G:\v\新建文件夹\68D695DA,查到病毒: W32/OnlineGames.ALP!tr.pws, 操作: 已修复
G:\v\新建文件夹\68D9F6C1,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\6A746952,查到病毒: W32/OnlineGames!tr, 操作: 删除/隔离
G:\v\新建文件夹\6D775E04,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\6DE5D511,查到病毒: W32/OnLineGames.AHSH!tr.pws, 操作: 删除/隔离
G:\v\新建文件夹\6F9973FD,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\71091F0B,查到病毒: W32/Delf.IRD!tr.bdr, 操作: 删除/隔离
G:\v\新建文件夹\717D085,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\72CE4DFC,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\739AC812,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\76ABF267,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\79CF3530,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\7A01C916,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\7D3F381E,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\7DA7D4ED,查到病毒: W32/OnLineGames.AMPJ!tr.pws, 操作: 删除/隔离
G:\v\新建文件夹\7E7465CF,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\855821D3,查到病毒: W32/OnLineGames.ALCM!tr.pws, 操作: 删除/隔离
G:\v\新建文件夹\8ADC7D0A,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\965C548D,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\9849130E,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\A01473F0,查到病毒: W32/OnlineGames!tr, 操作: 删除/隔离
G:\v\新建文件夹\A03495E4,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\A06A102B,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\A4DDE476,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\A4E42008,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\ADA462C,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\B026E55B,查到病毒: Adware/AdHelper, 操作: 删除/隔离
G:\v\新建文件夹\B14FD43F,查到病毒: W32/OnLineGames.AHN!tr.pws, 操作: 已修复
G:\v\新建文件夹\B3732C45,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\B5A941A5,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\B5C5ECC0,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\B8AFEEEC,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\BA48E62A,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\C55B5C61,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\CD9D245B,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\CF588112,查到病毒: W32/Heuri.APK!tr.rkit, 操作: 删除/隔离
G:\v\新建文件夹\D6C26FA9,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\DE6D3122,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\DF37409,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\E05EB776,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\E24A4A02,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\E6E5FB6E,查到病毒: W32/OnLineGames.AME!tr, 操作: 已修复
G:\v\新建文件夹\E7719EF5,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\E8D0C734,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\E929AE4D,查到病毒: W32/OnLineGames.AJS!tr, 操作: 已修复
G:\v\新建文件夹\ECD64B3D,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\F0325CFD,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\F21E25DC,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\F4D7E41E,查到病毒: Suspicious, 操作: <无>
G:\v\新建文件夹\F9F9EF3B,查到病毒: W32/OnLineGames.AKJK!tr.pws, 操作: 删除/隔离
G:\v\新建文件夹\FEAF52CC,查到病毒: Suspicious, 操作: <无>
扫描结束于2008年6月7日 20:20:17
总共扫描了100个文件, 其中感染病毒文件为80个. 总共扫描了9个引导区, 感染的引导区为0个.
allinwonderi
发表于 2008-6-7 20:32:43 | 显示全部楼层

ArcaVir2008

[Scanning : C:\Documents and Settings\All Users\Documents\Test]


C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:2D19A8F0<DLLRES>:file1.exe <- Trojan.Killav.Tg : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:2D16939E <- Trojan.Killav.Ti : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:2D16939E<DLLRES>:file0.exe <- Trojan.Killav.Tk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:2F494FAD <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:2F494FAD<UPack>:2F494FAD <- Heur.RoundKick : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:4A65E016<FSG>:4A65E016<DLLRES>:res0.exe <- Trojan.Psw.OnLineGames.Almz : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:4E7E868B <- Trojan.Killav.Ti : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:4E7E868B<DLLRES>:file0.exe <- Trojan.Killav.Tk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:4E7E868B<DLLRES>:file1.exe <- Trojan.Killav.Tg : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:5FE2D8A <- Heur.W32 : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:6DE5D511 <- Trojan.Psw.Onlinegames.Ahsh : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:7A01C916 <- Worm.Downloader.Mw : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:7A01C916<FSG>:7A01C916<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Akjk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:7A01C916<FSG>:7A01C916<DLLRES>:res1.exe <- Trojan.Agent.Qqx : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:8ADC7D0A <- W32.Licum.A : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:9A222D44<DLLRES>:DLLFILE0.exe <- Trojan.Psw.Qqpass.Bpt : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:37AC264F <- Trojan.Agent.Nbj : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:64AE2310 <- Trojan.Downloader.Agent.Rqj : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:68D695DA <- Trojan.Psw.OnLineGames.Almz : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:72CE4DFC<UPX>:72CE4DFC<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Amol : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:739AC812 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:739AC812<UPack>:739AC812 <- Heur.RoundKick : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:855821D3 <- Trojan.Psw.Onlinegames.Alcm : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:855821D3<UPX>:855821D3<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Alyc : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:855821D3<UPX>:855821D3<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Amol : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:5147906B <- Trojan.Agent.Nbj : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:9849130E <- Heur.RoundKick : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:A4E42008 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:A4E42008<UPack>:A4E42008 <- Heur.RoundKick : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:A06A102B <- Worm.Vb.D05 : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:A01473F0 <- Trojan.Psw.Onlinegames.Ajsr : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:A03495E4 <- Trojan.Killav.Ti : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar<RAR>:A03495E4<DLLRES>:file0.exe <- Trojan.Killav.Tk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:B8AFEEEC <- Trojan.Psw.Agent.Aof : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:B3732C45 <- Heur.RoundKick : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:CD9D245B <- Trojan.Psw.OnLineGames.Almz : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:CF588112 <- Trojan.Rootkit.Agent.Apk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:D6C26FA9 <- W32.Licum.A : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:DD3FE4CF <- Variant:Adware.Bho.Ms : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:E929AE4D <- Trojan.Psw.OnLineGames.Almz : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F4D7E41E <- Trojan.Killav.Ti : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F4D7E41E<DLLRES>:file0.exe <- Trojan.Killav.Tk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F4D7E41E<DLLRES>:file1.exe <- Trojan.Killav.Tg : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F9F9EF3B <- Trojan.Psw.Onlinegames.Akjk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F0325CFD <- Trojan.Killav.Ti : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F0325CFD<DLLRES>:file0.exe <- Trojan.Killav.Tk : No action
C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar<RAR>:F0325CFD<DLLRES>:file1.exe <- Trojan.Killav.Tg : No action



Scanned objects : 185

Infected objects : 47
allinwonderi
发表于 2008-6-7 20:33:56 | 显示全部楼层

F-Prot 4.4.4

[Found virus tool]         <W32/FaveAV.A (exact, not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->1AAF17B0
[Found possible virus]         <W32/NewMalware-Rootkit-I-based!Maximus (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->1DDDA5CA
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->2CA579B1
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->2F494FAD->(UPack)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->4A65E016->(embedded)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->5A78A3BE->(embedded)
[Found security risk]         <W32/Busky.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->5D02B9A4->(UPX)
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->5E15999F
[Found security risk]         <W32/Busky.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->6D775E04->(UPX)
[Found security risk]         <W32/Busky.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->6DE5D511->(UPX)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->7A01C916->(embedded)
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->7CB13B81
[Found possible security risk]         <W32/Heuristic-210!Eldorado (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->8ADC7D0A->(TeLock)->(TeLock)
[Found downloader]         <W32/Downloader.F.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->9A222D44->rsrcPE->(Klone.AF)
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->24E9FBC8
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->29D3EACE
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->47EBB81A
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->68D9F6C1
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->68D695DA
[Found security risk]         <W32/Busky.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->72CE4DFC->(UPX)
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->76ABF267
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->368DF5A2
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->739AC812->(UPack)
[Found possible virus]         <W32/VBEMU:VisualBasicMalware!Maximus (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->965C548D->(NSPack)->(PE_Patch)
[Found possible security risk]         <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->5015D72C->(UPack)
[Found security risk]         <W32/OnlineGames.C.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->6014D6E7
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->7100C0DF
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->13571E6E->(embedded)->(Klone.AF)
[Found downloader]         <W32/Downloader.F.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->71091F0B
[Found security risk]         <W32/Busky.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->855821D3->(UPX)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->1858742A
[Found possible virus]         <W32/NewMalware-Rootkit-PX-based!Maximus (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->45451048
[Found security risk]         <W32/OnlineGames.H.gen!Eldorado (dropper, damaged, not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->A4DDE476->(embedded)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->A4E42008->(UPack)
[Found worm]         <W32/VB.KP (exact, not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->A06A102B
[Found security risk]         <W32/Bifrost.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part1.rar->ADA462C
[Found security risk]         <W32/QQhelper.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->B026E55B
[Found worm]         <W32/Warezov.B.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->CF588112->(MEW)
[Found possible Trojan]         <W32/Heuristic-VFM!Eldorado (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->DD3FE4CF
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->DE6D3122
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->E8D0C734
[Found backdoor]         <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->E48B4B3F
[Found password stealer]         <W32/OnlineGames.F.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->ECD64B3D
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\080605up.part2.rar->F9F9EF3B
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\an006[1].Vexe
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\hujfgt.dll2
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\jmkcgt.dll2
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\msssc.dll2
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\Procmon1.exe2
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\sperls.dll2
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\sysme.bat3
[Unscannable]        <File is encrypted>        C:\Documents and Settings\All Users\Documents\Test\8.rar->8\tencent.sys3

---------------------------------------------------------------------
Scan ended:        2008-6-7, 20:33:38
Duration:        0:00:45

Scan result:

Scanned files:                 8
Infected objects:         44
Disinfected objects:         0
Quarantined files:         0
---------------------------------------------------------------------
欠妳緈諨
发表于 2008-6-7 22:41:58 | 显示全部楼层

回复 12楼 冷冷 的帖子

冷版的IK病毒库太老了,我发最新的
100 文件被扫描
          (3 压缩档 0 文件)
        77 特征码被侦测
        2 可疑代码段被发现
        耗时: 0:08.833

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
IllusionWing
发表于 2008-6-7 22:49:55 | 显示全部楼层
UGCmd又来咯

UGuard Extreme Cmd Version

gankeyu@126.com

Please wait for finishing scanning...UGuard Command v1.0.0

OS: Windows Vista

[SusPacked] 'Packed.Unknown.e8f8' was found in 'E:\VirusStore\20080607C\13571E6E'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\1858742A'.

[SusPacked] 'Packed.Unknown.c265' was found in 'E:\VirusStore\20080607C\1AAF17B0'.

[SusPacked] 'Packed.Unknown.9a53' was found in 'E:\VirusStore\20080607C\24E9FBC8'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\29D3EACE'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\2CA579B1'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\2D16939E'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\2D19A8F0'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\2F494FAD'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\368DF5A2'.

[STML] 'SL.Trojan.RootkitDropper' was found in 'E:\VirusStore\20080607C\37AC264F'.

[SusPacked] 'Packed.Unknown.fb68' was found in 'E:\VirusStore\20080607C\39FB068D'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\3A2F9B9C//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\3AE69D45//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\45451048//UPX'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\47EBB81A'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\4A65E016'.

[STMT] 'ST.Trojan.Win32.Agent.nbl' was found in 'E:\VirusStore\20080607C\4A6B764B'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\4E7E868B'.

[SmartSearch] 'Heur.SSDTModify' was found in 'E:\VirusStore\20080607C\4F941EF9'.

[SusPacked] 'Packed.Generic.UPack' was found in 'E:\VirusStore\20080607C\5015D72C'.

[STML] 'SL.Trojan.RootkitDropper' was found in 'E:\VirusStore\20080607C\5147906B'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\5428349//UPX'.

[SusPacked] 'Packed.Generic.Unknown.2' was found in 'E:\VirusStore\20080607C\55D0BC1D'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\5A78A3BE'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\5D02B9A4//UPX'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\5E15999F'.

[SusPacked] 'Packed.Unknown.ca53' was found in 'E:\VirusStore\20080607C\6014D6E7'.

[SmartSearch] 'Heur.Downloader' was found in 'E:\VirusStore\20080607C\64AE2310'.

[SusPacked] 'Packed.Generic.UPack' was found in 'E:\VirusStore\20080607C\68D695DA'.

[SusPacked] 'Packed.Generic.UPack' was found in 'E:\VirusStore\20080607C\68D9F6C1'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\6A746952'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\6D775E04//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\6DE5D511//UPX'.

[SusPacked] 'Packed.Unknown.Modified' was found in 'E:\VirusStore\20080607C\6F9973FD'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\7100C0DF'.

[SusPacked] 'Packed.Unknown.28aa' was found in 'E:\VirusStore\20080607C\71091F0B'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\72CE4DFC//UPX'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\739AC812'.

[SusPacked] 'Packed.Unknown.9a53' was found in 'E:\VirusStore\20080607C\76ABF267'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\79CF3530//UPX'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\7A01C916'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\7CB13B81'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\7D3F381E//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\7DA7D4ED//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\7E7465CF//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\855821D3//UPX'.

[SusPacked] 'Packed.Unknown.7b99' was found in 'E:\VirusStore\20080607C\8ADC7D0A'.

[SusPacked] 'Packed.Unknown.e8f8' was found in 'E:\VirusStore\20080607C\965C548D'.

[iGene] 'iGene.KillAV' was found in 'E:\VirusStore\20080607C\9849130E'.

[SusPacked] 'Packed.Unknown.Modified' was found in 'E:\VirusStore\20080607C\9A222D44'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\A01473F0'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\A03495E4'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\A4DDE476'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\A4E42008'.

[SusPacked] 'Packed.Unknown.c034' was found in 'E:\VirusStore\20080607C\ADA462C'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\B14FD43F'.

[iGene] 'iGene.KillAV' was found in 'E:\VirusStore\20080607C\B3732C45'.

[SusPacked] 'Packed.Unknown.f6d8' was found in 'E:\VirusStore\20080607C\B5A941A5'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\B5C5ECC0//UPX'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\B8AFEEEC//UPX'.

[SusPacked] 'Packed.Unknown.6def' was found in 'E:\VirusStore\20080607C\BA48E62A'.

[SusPacked] 'Packed.Unknown.Modified' was found in 'E:\VirusStore\20080607C\C55B5C61'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\CD9D245B'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\CF588112'.

[SusPacked] 'Packed.Unknown.9a53' was found in 'E:\VirusStore\20080607C\DE6D3122'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\DF37409//UPX'.

[SmartSearch] 'Heur.IATEncrypted' was found in 'E:\VirusStore\20080607C\E05EB776'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\E24A4A02//UPX'.

[SusPacked] 'Packed.Unknown.c9f7' was found in 'E:\VirusStore\20080607C\E48B4B3F'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\E6E5FB6E//UPX'.

[SusPacked] 'Packed.UPX.Modified.1' was found in 'E:\VirusStore\20080607C\E8D0C734'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\E929AE4D'.

[SusPacked] 'Packed.Unknown.3054' was found in 'E:\VirusStore\20080607C\ECD64B3D'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\F0325CFD'.

[SusPacked] 'Packed.Generic.Modified' was found in 'E:\VirusStore\20080607C\F21E25DC'.

[KBDetect] 'Binder.HyperDetect' was found in 'E:\VirusStore\20080607C\F4D7E41E'.

[SusPacked] 'Packed.Generic.UPack' was found in 'E:\VirusStore\20080607C\F9F9EF3B'.

[SmartSearch] 'Heur.IATEncrypted' was found in 'E:\VirusStore\20080607C\FEAF52CC'.

79 virus(es) were found in 118 file(s).
欠妳緈諨
发表于 2008-6-7 22:50:42 | 显示全部楼层

回复 3楼 qianwenxiang 的帖子

版主该该升级下avast!了,最新的杀63

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
yunhan123
发表于 2008-6-7 22:52:12 | 显示全部楼层
信息        2008-06-07  22:52:08        您此次查毒清除了70个病毒                       
信息        2008-06-07  22:52:08        您此次查毒共查出70个病毒以及危险代码                       
信息        2008-06-07  22:52:08        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件141个                       
信息        2008-06-07  22:52:08        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-16 00:24 , Processed in 0.086420 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表