查看: 3315|回复: 15
收起左侧

[病毒样本] 06.14 100x

[复制链接]
qianwenxiang
发表于 2008-6-14 20:07:29 | 显示全部楼层 |阅读模式
[#12]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
欠妳緈諨
发表于 2008-6-14 20:29:10 | 显示全部楼层
IKARUS  83
D:\virus\1214D105 - 特征码 'Virus.Win32.Qhost.AYU' 被发现
D:\virus\138B9A53 - 特征码 'Trojan-Downloader.JJZF' 被发现
D:\virus\15B38E55 - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\virus\190AE058
D:\virus\1B396D6 - 特征码 'Virus.Win32.Small.EDU' 被发现
D:\virus\1C7AF265 - 特征码 'Trojan-Downloader.Win32.Banload.ase' 被发现
D:\virus\1F245BAE - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
D:\virus\21BEF9A6 - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\23DA0741 - 特征码 'Backdoor.Win32.PcClient.LH' 被发现
D:\virus\23EC8A58 - 可疑代码段 被发现 (Level: 50)
D:\virus\24D11D81 - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\virus\2579BB1E - 特征码 'Backdoor.Win32.PcClient.LH' 被发现
D:\virus\2606ED4A - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\virus\28EF61FB
D:\virus\2A85C517 - 可疑代码段 被发现 (Level: 120)
D:\virus\2BF78A70 - 特征码 'Virus.Win32.Trojan' 被发现
D:\virus\2C378217 - 特征码 'Trojan-Downloader.Win32.Small.foq' 被发现
D:\virus\2C5BA94B - 特征码 'Trojan-Downloader.Win32.Zlob.ax' 被发现
D:\virus\2F43528A - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\2FBDD505
D:\virus\30B52C70 - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\324BA1E9 - 特征码 'Packer.Malware.NSAnti.AW' 被发现
D:\virus\34E4F8A7 - 特征码 'Backdoor.Win32.PcClient.LH' 被发现
D:\virus\383FDD9E - 特征码 'Trojan-Clicker.Win32.Small.BG' 被发现
D:\virus\40121AE4 - 特征码 'Virus.Win32.Agent.VGV' 被发现
D:\virus\469D911A - 特征码 'Trojan-PWS.Win32.Small.br' 被发现
D:\virus\497F878A - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\4A178360
D:\virus\4C4F397A - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\52CBE84C - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\534ECDE8 - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\54A485AD - 特征码 'Trojan.Crypt.XPACK' 被发现
D:\virus\5557FD59 - 特征码 'Trojan-Downloader.Win32.Agent.rss' 被发现
D:\virus\56462BB7 - 特征码 'Trojan-PWS.OnlineGames.NVI' 被发现
D:\virus\570A2C8D - 可疑代码段 被发现 (Level: 120)
D:\virus\57557D9C - 特征码 'IM-Worm.Win32.Sumom.C' 被发现
D:\virus\5A62B654 - 特征码 'Virus.Win32.Protux.E' 被发现
D:\virus\5A72B7DA
D:\virus\5B019803 - 特征码 'Trojan-PWS.Win32.OnLineGames.alxv' 被发现
D:\virus\5D4A43C3 - 特征码 'Virus.Worm.Win32.AutoRun.dip' 被发现
D:\virus\6193572C - 特征码 'Trojan-Dropper.Win32.Idicaf.B' 被发现
D:\virus\63CBDCF4 - 可疑代码段 被发现 (Level: 20)
D:\virus\685A02BD - 特征码 'Virus.Rootkit.Win32.Ressdt.l' 被发现
D:\virus\6C9D560A - 特征码 'Trojan-PWS.OnlineGames.YYG' 被发现
D:\virus\6D4A4CE - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
D:\virus\70CC8886 - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\761768D7 - 特征码 'Virus.Win32.Agent.JZN' 被发现
D:\virus\7853687E - 可疑代码段 被发现 (Level: 120)
D:\virus\79738634
D:\virus\79939F90
D:\virus\7B467E81 - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\7BB845E3 - 特征码 'Virus.Win32.VB.bu' 被发现
D:\virus\8322AE24 - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\85D29243 - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\897F5987 - 可疑代码段 被发现 (Level: 65)
D:\virus\915261E0 - 特征码 'Packer.Malware.NSAnti.AX' 被发现
D:\virus\924518EB - 可疑代码段 被发现 (Level: 120)
D:\virus\983453FF - 特征码 'Virus.Win32.OnLineGames.DQS' 被发现
D:\virus\9E559260 - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\9EC2AA50
D:\virus\9FC56A0D - 特征码 'Packer.Malware.NSAnti.AO' 被发现
D:\virus\A1371982 - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
D:\virus\A27CB7C2 - 特征码 'Email-Worm.Win32.Agent.fy' 被发现
D:\virus\A3275E62 - 特征码 'Virus.Win32.Agent.SIM' 被发现
D:\virus\A62DA2CF - 特征码 'Trojan.Win32.Porsmi.A' 被发现
D:\virus\A78CAF20
D:\virus\AA341763
D:\virus\AF605581 - 特征码 'Backdoor.Win32.PcClient.JY' 被发现
D:\virus\B0384676 - 特征码 'Virus.Trojan.Win32.Pakes.cfj' 被发现
D:\virus\B1A5D203 - 特征码 'Backdoor.Win32.PcClient.LH' 被发现
D:\virus\B1F5F8A2 - 可疑代码段 被发现 (Level: 80)
D:\virus\B5323BA
D:\virus\BDB87896 - 特征码 'Backdoor.Win32.PcClient.LH' 被发现
D:\virus\BE803D86 - 特征码 'Trojan-Spy.Win32.Bancos.aam' 被发现
D:\virus\BFA40439 - 可疑代码段 被发现 (Level: 120)
D:\virus\CDF4EF9B - 特征码 'Trojan-Downloader.Win32.Small.wyc' 被发现
D:\virus\CF1B4F9:\smss.exe - 特征码 'Trojan-Downloader.Win32.Banload.bej' 被发现
D:\virus\CF1B4F9
D:\virus\D10830B - 特征码 'Trojan-Downloader.Win32.Banload.ase' 被发现
D:\virus\D1428BE
D:\virus\D62C87 - 特征码 'Trojan.Generic' 被发现
D:\virus\DA2E791F - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\DB9DD1DD
D:\virus\DD020255 - 特征码 'Trojan-Downloader.Win32.Small.BIV' 被发现
D:\virus\DE0ABF01 - 特征码 'Virus.Trojan.Win32.Agent.qys' 被发现
D:\virus\E24794FA
D:\virus\E645DE36 - 特征码 'Trojan-Downloader.Win32.Hmir.ws' 被发现
D:\virus\E837ACF3 - 特征码 'Trojan.Win32.BCB.m' 被发现
D:\virus\E9954202 - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\virus\EC67B323 - 特征码 'Trojan-PWS.OnlineGames.YYG' 被发现
D:\virus\F30873BA - 特征码 'Backdoor.Hbeat' 被发现
D:\virus\F590B2FE
D:\virus\F5BDBF71
D:\virus\F61BEB2E - 特征码 'Trojan-Downloader.Win32.Agent.anh' 被发现
D:\virus\F63E6DB4 - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\virus\F6D7BDB9 - 可疑代码段 被发现 (Level: 120)
D:\virus\FA70CA8 - 特征码 'Trojan.Crypt.ULPM' 被发现
D:\virus\FAF8978F - 特征码 'Trojan.Crypt.AV' 被发现
D:\virus\FB20CD46 - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
D:\virus\FDEBBDB7
D:\virus\FED95B50 - 特征码 'Trojan-Spy.Agent.cpb' 被发现

        101 文件被扫描
          (7 压缩档 1 文件)
        73 特征码被侦测
        10 可疑代码段被发现
        耗时: 0:14.703
Joker
发表于 2008-6-14 20:29:27 | 显示全部楼层
红伞剩下

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
aaad2008
发表于 2008-6-14 20:29:32 | 显示全部楼层
avast!
欠妳緈諨
发表于 2008-6-14 20:30:12 | 显示全部楼层
AVK
KAV+AVAST   85

KAV+BD   84

KAV+AVAST+BD    100-9=91


[ 本帖最后由 欠妳緈諨 于 2008-6-14 20:54 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
qigang
发表于 2008-6-14 20:33:34 | 显示全部楼层

147/56

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.VB.fng      
病毒: RootKit.Win32.Small.am   
病毒: Trojan.DL.Agent.gkl      
病毒: RootKit.Win32.Mnless.qf  
病毒: RootKit.Win32.RESSDT.bc  
病毒: Trojan.PSW.Win32.GameOL.nvb
病毒: Trojan.PSW.Win32.GameOL.nsq
病毒: Trojan.PSW.Win32.GameOL.nsu
病毒: Trojan.PSW.Win32.GameOL.nvd
病毒: Packer.Win32.Agent.i     
病毒: Trojan.PSW.Win32.JHOnline.fev
病毒: Trojan.PSW.Win32.JHOnline.fey
病毒: Trojan.PSW.Win32.GameOL.obd
病毒: RootKit.Win32.RESSDT.bf  
病毒: Trojan.PSW.Win32.GameOL.nxf
病毒: Dropper.Win32.Cutwail.t  
病毒: Trojan.PSW.Win32.GameOL.nxh
病毒: Trojan.PSW.Win32.SunOnline.os
病毒: Trojan.PSW.Win32.GamesOnline.adz
病毒: Trojan.Win32.Undef.hek   
病毒: Trojan.Win32.AvKiller.bz
病毒: Packer.Win32.Mian007.a   
病毒: Trojan.PSW.Win32.GameOL.nxl
病毒: Trojan.Win32.Luoxue.i   
病毒: Trojan.PSW.Win32.GameOL.nyk
病毒: Trojan.PSW.Win32.GameOL.nya
病毒: AdWare.Win32.Mnless.fq   
病毒: Trojan.DL.Win32.Undef.ps
病毒: Backdoor.Win32.IRCbot.dir
病毒: Trojan.Win32.DNSChanger.beo
病毒: Trojan.Win32.Crypt.ac   
病毒: Backdoor.Win32.Agent.zwi
病毒: Trojan.PSW.Win32.QQPass.yyq
病毒: Worm.Win32.Detnat.f      
病毒: Backdoor.Win32.Agent.zvz
病毒: Backdoor.Win32.PcClient.eji
病毒: RootKit.Win32.RESSDT.bj  
病毒: RootKit.Win32.RESSDT.ap  
病毒: RootKit.Win32.RESSDT.ap  

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.48.52
ykz1991
发表于 2008-6-14 20:38:27 | 显示全部楼层

39

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
jimmyleo
发表于 2008-6-14 20:46:50 | 显示全部楼层

[ Sat Jun 14 20:39:21 2008 ] Trj/Downloader.MNM     in D:\Download\S\080612UP\2C378217
[ Sat Jun 14 20:39:21 2008 ] Generic Malware        in D:\Download\S\080612UP\685A02BD
[ Sat Jun 14 20:39:34 2008 ] Suspicious file        D:\Download\S\080612UP\FB20CD46
[ Sat Jun 14 20:39:39 2008 ] Suspicious file        D:\Download\S\080612UP\E9954202
[ Sat Jun 14 20:39:43 2008 ] Suspicious file        D:\Download\S\080612UP\2606ED4A
[ Sat Jun 14 20:39:47 2008 ] Suspicious file        D:\Download\S\080612UP\897F5987
[ Sat Jun 14 20:39:48 2008 ] Generic Malware        in D:\Download\S\080612UP\B0384676
[ Sat Jun 14 20:39:49 2008 ] Suspicious file        D:\Download\S\080612UP\F63E6DB4
[ Sat Jun 14 20:39:49 2008 ] Generic Malware        in D:\Download\S\080612UP\A3275E62
[ Sat Jun 14 20:39:49 2008 ] Generic Malware        in D:\Download\S\080612UP\D62C87
[ Sat Jun 14 20:39:51 2008 ] Error scanning file    D:\Download\S\080612UP\9EC2AA50[Insshell.exe]
[ Sat Jun 14 20:39:51 2008 ] Suspicious file        D:\Download\S\080612UP\24D11D81
[ Sat Jun 14 20:39:52 2008 ] Generic Malware        in D:\Download\S\080612UP\5D4A43C3
[ Sat Jun 14 20:39:52 2008 ] Generic Malware        in D:\Download\S\080612UP\B5323BA
[ Sat Jun 14 20:39:53 2008 ] Trj/Agent.EDL          in D:\Download\S\080612UP\BE803D86
[ Sat Jun 14 20:39:53 2008 ] Error scanning file    D:\Download\S\080612UP\F590B2FE[cpush.tmp]
[ Sat Jun 14 20:39:56 2008 ] Generic Malware        in D:\Download\S\080612UP\138B9A53
[ Sat Jun 14 20:39:56 2008 ] Generic Malware        in D:\Download\S\080612UP\E837ACF3
[ Sat Jun 14 20:39:56 2008 ] Malicious Packer       in D:\Download\S\080612UP\5A62B654
[ Sat Jun 14 20:39:58 2008 ] Generic Malware        in D:\Download\S\080612UP\AF605581
[ Sat Jun 14 20:39:58 2008 ] Generic Malware        in D:\Download\S\080612UP\9FC56A0D
[ Sat Jun 14 20:39:58 2008 ] Error scanning file    D:\Download\S\080612UP\190AE058[cpush.tmp]
[ Sat Jun 14 20:39:58 2008 ] Error scanning file    D:\Download\S\080612UP\A78CAF20[cpush.tmp]
[ Sat Jun 14 20:39:59 2008 ] Error scanning file    D:\Download\S\080612UP\2BF78A70[cpush.tmp]
[ Sat Jun 14 20:39:59 2008 ] Adware/ToolbarSogou    in D:\Download\S\080612UP\79939F90[cpush.tmp]
[ Sat Jun 14 20:41:49 2008 ] Trj/Downloader.MNM     in D:\Download\S\080612UP\2C378217
[ Sat Jun 14 20:41:49 2008 ] Generic Malware        in D:\Download\S\080612UP\685A02BD
[ Sat Jun 14 20:41:51 2008 ] Suspicious file        D:\Download\S\080612UP\F61BEB2E
[ Sat Jun 14 20:41:53 2008 ] Suspicious file        D:\Download\S\080612UP\FAF8978F
[ Sat Jun 14 20:41:59 2008 ] Suspicious file        D:\Download\S\080612UP\FB20CD46
[ Sat Jun 14 20:42:03 2008 ] Suspicious file        D:\Download\S\080612UP\A1371982
[ Sat Jun 14 20:42:03 2008 ] Suspicious file        D:\Download\S\080612UP\E9954202
[ Sat Jun 14 20:42:06 2008 ] Suspicious file        D:\Download\S\080612UP\469D911A
[ Sat Jun 14 20:42:06 2008 ] Suspicious file        D:\Download\S\080612UP\2606ED4A
[ Sat Jun 14 20:42:07 2008 ] Suspicious file        D:\Download\S\080612UP\324BA1E9
[ Sat Jun 14 20:42:08 2008 ] Suspicious file        D:\Download\S\080612UP\6C9D560A
[ Sat Jun 14 20:42:08 2008 ] Suspicious file        D:\Download\S\080612UP\915261E0
[ Sat Jun 14 20:42:09 2008 ] Suspicious file        D:\Download\S\080612UP\897F5987
[ Sat Jun 14 20:42:11 2008 ] Suspicious file        D:\Download\S\080612UP\1F245BAE
[ Sat Jun 14 20:42:11 2008 ] Generic Malware        in D:\Download\S\080612UP\B0384676
[ Sat Jun 14 20:42:11 2008 ] Suspicious file        D:\Download\S\080612UP\A62DA2CF
[ Sat Jun 14 20:42:11 2008 ] Suspicious file        D:\Download\S\080612UP\FDEBBDB7
[ Sat Jun 14 20:42:12 2008 ] Suspicious file        D:\Download\S\080612UP\F63E6DB4
[ Sat Jun 14 20:42:12 2008 ] Generic Malware        in D:\Download\S\080612UP\A3275E62
[ Sat Jun 14 20:42:12 2008 ] Generic Malware        in D:\Download\S\080612UP\D62C87
[ Sat Jun 14 20:42:13 2008 ] Error scanning file    D:\Download\S\080612UP\9EC2AA50[Insshell.exe]
[ Sat Jun 14 20:42:13 2008 ] Suspicious file        D:\Download\S\080612UP\24D11D81
[ Sat Jun 14 20:42:13 2008 ] Generic Malware        in D:\Download\S\080612UP\5D4A43C3
[ Sat Jun 14 20:42:13 2008 ] Suspicious file        D:\Download\S\080612UP\6193572C
[ Sat Jun 14 20:42:13 2008 ] Generic Malware        in D:\Download\S\080612UP\B5323BA
[ Sat Jun 14 20:42:13 2008 ] Suspicious file        D:\Download\S\080612UP\DB9DD1DD
[ Sat Jun 14 20:42:14 2008 ] Trj/Agent.EDL          in D:\Download\S\080612UP\BE803D86
[ Sat Jun 14 20:42:14 2008 ] Error scanning file    D:\Download\S\080612UP\F590B2FE[cpush.tmp]
[ Sat Jun 14 20:42:17 2008 ] Generic Malware        in D:\Download\S\080612UP\138B9A53
[ Sat Jun 14 20:42:17 2008 ] Generic Malware        in D:\Download\S\080612UP\E837ACF3
[ Sat Jun 14 20:42:17 2008 ] Suspicious file        D:\Download\S\080612UP\EC67B323
[ Sat Jun 14 20:42:17 2008 ] Malicious Packer       in D:\Download\S\080612UP\5A62B654
[ Sat Jun 14 20:42:17 2008 ] Suspicious file        D:\Download\S\080612UP\FA70CA8
[ Sat Jun 14 20:42:18 2008 ] Generic Malware        in D:\Download\S\080612UP\AF605581
[ Sat Jun 14 20:42:18 2008 ] Generic Malware        in D:\Download\S\080612UP\9FC56A0D
[ Sat Jun 14 20:42:18 2008 ] Error scanning file    D:\Download\S\080612UP\190AE058[cpush.tmp]
[ Sat Jun 14 20:42:19 2008 ] Error scanning file    D:\Download\S\080612UP\A78CAF20[cpush.tmp]
[ Sat Jun 14 20:42:19 2008 ] Error scanning file    D:\Download\S\080612UP\2BF78A70[cpush.tmp]
[ Sat Jun 14 20:42:19 2008 ] Suspicious file        D:\Download\S\080612UP\4A178360
[ Sat Jun 14 20:42:20 2008 ] Adware/ToolbarSogou    in D:\Download\S\080612UP\79939F90[cpush.tmp]
allinwonderi
发表于 2008-6-14 21:14:06 | 显示全部楼层

ArcaVir2008

[Scanning : C:\Documents and Settings\All Users\Documents\Test]


C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:685A02BD <- Trojan.Rootkit.Ressdt.L : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:5B019803 <- Trojan.Psw.Onlinegames.Alxv : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:383FDD9E <- Trojan.Emgr.Ag : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:383FDD9E<PECompact2>:383FDD9E <- Trojan.Emgr.Ag : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:E9954202 <- Trojan.Psw.Onlinegames.Amey : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:E9954202<UPack>:E9954202 <- Trojan.Psw.Onlinegames.Amey : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:E9954202<UPack>:E9954202<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Amfa : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:E9954202<UPack>:E9954202<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Amdt : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:CDF4EF9B<UPX>:CDF4EF9B <- Downloader.Small.Vnk : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:DE0ABF01 <- Trojan.Agent.Qys : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:2606ED4A <- Trojan.Psw.Onlinegames.Amey : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:2606ED4A<UPack>:2606ED4A<DLLRES>:res0.exe <- Trojan.Psw.Wow.Bcf : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:2606ED4A<UPack>:2606ED4A<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Amdt : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:57557D9C <- Variant:Trojan.Vb.Ait : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:A27CB7C2 <- Worm.Agent.Fy : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:A27CB7C2<DLLRES>:EXERESOURCE0.exe <- Trojan.Downloader.Mutant.Acm : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:F5BDBF71 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:F5BDBF71<UPack>:F5BDBF71 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:6C9D560A <- Trojan.Psw.Onlinegames.Anug : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:79738634 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:79738634<UPack>:79738634 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:54A485AD <- Trojan.Proxy.Small.Pj : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:A62DA2CF <- Trojan.Psw.Onlinegames.Alsn : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:A62DA2CF<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Aldz : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:FDEBBDB7 <- Trojan.Psw.Nilage.Csd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:56462BB7 <- Trojan.Psw.Onlinegames.Amvc : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:A3275E62 <- Worm.Autorun.Bnx : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:D62C87 <- Variant:Trojan.Proxy.Small.Mz : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:30B52C70 <- Trojan.Rootkit.Agent.Aqd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:52CBE84C <- Trojan.Rootkit.Agent.Aqd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:497F878A <- Trojan.Rootkit.Agent.Aqd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:534ECDE8 <- Trojan.Rootkit.Agent.Aqd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:8322AE24 <- Trojan.Rootkit.Agent.Aqd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:E645DE36 <- Trojan.Rootkit.Agent.Aqd : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:D1428BE <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:D1428BE<UPack>:D1428BE <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:5D4A43C3 <- Worm.Autorun.Dip : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:6193572C <- Heur.RoundKick : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:6193572C<DLLRES>:file1.exe <- Trojan.Killav.Tg : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:DB9DD1DD <- Variant:Downloader.Botol.H : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:23EC8A58 <- Trojan.Psw.Onlinegames.Alse : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:BE803D86 <- Variant:Trojan.Spy.Bancos.Aam : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:1C7AF265 <- Heur.W32.Generic : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:D10830B <- Heur.W32.Generic : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar<RAR>:138B9A53 <- Trojan.Downloader.Injecter.Rz : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar<RAR>:2C5BA94B <- Downloader.Js.Iframe.T : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar<RAR>:E24794FA<NSIS>:msc03.exe <- Trojan.Downloader.Qqhelper.Bju : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar<RAR>:E24794FA<NSIS>:msc03.exe<DLLRES>:TKHA0.exe <- Trojan.Downloader.Qqhelper.Bju : No action
C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar<RAR>:79939F90<NSIS>:cpush.dll <- Adware.Bho.Agy : No action



Scanned objects : 148

Infected objects : 49

[ 本帖最后由 allinwonderi 于 2008-6-14 21:15 编辑 ]
allinwonderi
发表于 2008-6-14 21:14:27 | 显示全部楼层

F-Prot 4.4.4

[Found possible security risk]     <W32/Heuristic-210!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->CF1B4F9->(RAR)->smss.exe->(RCryptor)
[Found downloader]     <W32/Downloader.A.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->761768D7
[Found virus]     <W32/Downloader.gen10 (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->2C378217
[Found security risk]     <W32/SYStroj.G.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->685A02BD
[Found possible security risk]     <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->15B38E55->(UPack)
[Found possible security risk]     <W32/Heuristic-FSG!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->924518EB
[Found possible security risk]     <W32/Heuristic-FSG!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->570A2C8D
[Found possible security risk]     <W32/Heuristic-FSG!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->F6D7BDB9
[Found possible security risk]     <W32/Heuristic-FSG!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->BFA40439
[Found possible security risk]     <W32/Heuristic-FSG!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->2A85C517
[Found possible security risk]     <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->6D4A4CE->(UPack)
[Found possible security risk]     <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->FB20CD46->(UPack)
[Found possible security risk]     <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->A1371982->(UPack)
[Found security risk]     <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->E9954202
[Found security risk]     <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->DE0ABF01
[Found downloader]     <W32/Banload.B.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->469D911A
[Found security risk]     <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->2606ED4A
[Found security risk]     <W32/Agent.BD.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->A27CB7C2
[Found possible security risk]     <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->F5BDBF71->(UPack)
[Found password stealer]     <W32/OnlineGames.AF.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->324BA1E9
[Found password stealer]     <W32/OnlineGames.AF.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->6C9D560A
[Found password stealer]     <W32/OnlineGames.AF.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->915261E0
[Found security risk]     <W32/Nilage.gen!GSA (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->897F5987->(UPack)
[Found security risk]     <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->79738634->(UPack)
[Found security risk]     <W32/OnlineGames.AK.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->983453FF
[Found security risk]     <W32/D_Downloader!GSA (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->B0384676->(Klone.AF)
[Found possible security risk]     <W32/Heuristic-KPP!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->A62DA2CF
[Found possible security risk]     <W32/Heuristic-166!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->FDEBBDB7
[Found security risk]     <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->F63E6DB4
[Found security risk]     <W32/OnlineGames.AK.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->56462BB7
[Found possible security risk]     <W32/Heuristic-KPP!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->A3275E62->(Klone.AF)
[Found security risk]     <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->D1428BE->exefile->(UPack)
[Found possible security risk]     <W32/Heuristic-210!Eldorado (damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->24D11D81->(UPack)
[Found security risk]     <W32/QQhelper.C.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->5557FD59
[Found virus]     <W32/Dropper.gen6 (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->F30873BA
[Found security risk]     <W32/Virtumonde.T.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->B5323BA
[Found possible virus]     <W32/VB-EMU:VB-Backdoor-HRS-based!Maximus (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->DB9DD1DD->(UPX)
[Found backdoor]     <W32/Backdoor.AJOC (exact, damaged, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->BE803D86
[Found downloader]     <W32/Downloader.J.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->1C7AF265
[Found downloader]     <W32/Downloader.J.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->D10830B
[Found Trojan]     <W32/Trojan2.ASVJ (exact, not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part1.rar->138B9A53->(UPX)
[Found password stealer]     <W32/OnlineGames.AF.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->EC67B323
[Found possible security risk]     <W32/Heuristic-245!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->5A62B654->(PE-Armor)
[Found password stealer]     <W32/OnlineGames.AF.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->FA70CA8
[Found password stealer]     <W32/OnlineGames.F.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->2579BB1E
[Found backdoor]     <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->23DA0741
[Found backdoor]     <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->34E4F8A7
[Found backdoor]     <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->B1A5D203
[Found backdoor]     <W32/PcClient.C.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->BDB87896
[Found password stealer]     <W32/OnlineGames.A.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->AF605581
[Found password stealer]     <W32/OnlineGames.AF.gen!Eldorado (not disinfectable, generic)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->9FC56A0D
[Found possible security risk]     <W32/Heuristic-KPP!Eldorado (not disinfectable)>    C:\Documents and Settings\All Users\Documents\Test\080612up.part2.rar->4A178360

---------------------------------------------------------------------
Scan ended:    2008-6-14, 21:17:02
Duration:    0:00:59

Scan result:

Scanned files:         7
Infected objects:     52
Disinfected objects:     0
Quarantined files:     0
---------------------------------------------------------------------

[ 本帖最后由 allinwonderi 于 2008-6-14 21:17 编辑 ]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-28 21:52 , Processed in 0.137305 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表