查看: 1680|回复: 9
收起左侧

[病毒样本] banker*16

[复制链接]
woai_jolin
发表于 2008-8-1 14:15:44 | 显示全部楼层
Scan Log
Version of virus signature database: 3316 (20080731)
Date: 2008-8-1  Time: 14:15:13
Scanned disks, folders and files: G:\v\Downloads
G:\v\Downloads\auto.jpg - Win32/Spy.Banker.OYK trojan - cleaned by deleting - quarantined [1]
G:\v\Downloads\daniel.jpg - is OK
G:\v\Downloads\dllhostc.pif » PECompact v2.xx - is OK
G:\v\Downloads\Explorer.xml - is OK
G:\v\Downloads\file_kt.jpg - is OK
G:\v\Downloads\gbiehdst.js » ASPack v2.12 - is OK
G:\v\Downloads\gbplib.js - is OK
G:\v\Downloads\gbppdist.js - is OK
G:\v\Downloads\hork.bmp - a variant of Win32/TrojanDropper.Delf.NFK trojan - cleaned by deleting - quarantined [1]
G:\v\Downloads\imglog.jpg - is OK
G:\v\Downloads\imglog.pif - is OK
G:\v\Downloads\jumper.pif - is OK
G:\v\Downloads\kilador.wmf - Win32/Spy.Banker.OTG trojan - cleaned by deleting - quarantined [1]
G:\v\Downloads\orkut.jpg » PECompact v2.xx - is OK
G:\v\Downloads\process(1).jpg - a variant of Win32/Packed.Themida application - cleaned by deleting - quarantined [1]
G:\v\Downloads\xms.jpg - a variant of Win32/TrojanDropper.Delf.NFK trojan - cleaned by deleting - quarantined [1]
Number of scanned objects: 16
Number of threats found: 5
Number of cleaned objects: 5
Time of completion: 14:15:48  Total scanning time: 35 sec (00:00:35)

Notes:
[1] Object has been deleted as it only contained the virus body.
kkgh
发表于 2008-8-1 14:18:58 | 显示全部楼层
费尔5个

瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Packer.Win32.Mian007.a   
病毒: Packer.Win32.Agent.r     
病毒: Trojan.DL.Win32.Dadobra.ahk
病毒: Trojan.Win32.Xcomp.a     
病毒: Trojan.Spy.Win32.Delf.cfb

用户来源:互联网

软件版本:20.55.40
小邪邪
发表于 2008-8-1 14:20:05 | 显示全部楼层

mcafee:6

电影结束了
 楼主| 发表于 2008-8-1 14:21:51 | 显示全部楼层

IK  AVK 的试试。。。~
Kitman
发表于 2008-8-1 14:26:42 | 显示全部楼层
Begin scan in 'C:\Users\TOSHIBA\Downloads\Downloads'
C:\Users\TOSHIBA\Downloads\Downloads\auto.jpg
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '4906ace4.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\daniel.jpg
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    [NOTE]      A backup was created as '4900acd0.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\dllhostc.pif
      [DETECTION] Contains HEUR/Crypted.E suspicious code
    [NOTE]      A backup was created as '48feacdc.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\Explorer.xml
    [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    [NOTE]      A backup was created as '4902ace8.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\gbiehdst.js
    [DETECTION] Is the TR/Spy.Delf.dhj Trojan
    [NOTE]      A backup was created as '48fbacd2.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\gbplib.js
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      A backup was created as '4902acd2.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\gbppdist.js
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      A backup was created as '4b9407db.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\hork.bmp
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '4904acdf.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\imglog.jpg
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '48f9acdd.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\imglog.pif
    [DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
    [NOTE]      A backup was created as '4a6f008e.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\jumper.pif
    [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    [NOTE]      A backup was created as '48fface5.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\kilador.wmf
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    [NOTE]      A backup was created as '48feacd9.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\orkut.jpg
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '48fdace2.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\process(1).jpg
    [DETECTION] Is the TR/Spy.Banker.Gen Trojan
    [NOTE]      A backup was created as '4901ace3.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\Downloads\xms.jpg
    [DETECTION] Is the TR/Agent.ZR.6 Trojan
    [NOTE]      A backup was created as '4905acde.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2008年8月1日  14:25
Used time: 00:04 Minute(s)

The scan has been done completely.

      1 Scanning directories
     16 Files were scanned
     14 viruses and/or unwanted programs were found
      1 Files were classified as suspicious:
     15 files were deleted
      0 files were repaired
     15 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      0 Archives were scanned
      0 Warnings
     15 Notes
woai_jolin
发表于 2008-8-1 14:26:54 | 显示全部楼层
2008-8-1 14:26:10        Kernel        File  'G:\v\Downloads\jumper.pif' was sent to ESET for analysis.       
2008-8-1 14:24:08        Kernel        File  'G:\v\Downloads\imglog.pif' was sent to ESET for analysis.       
2008-8-1 14:21:26        Kernel        File  'G:\v\Downloads\gbppdist.js' was sent to ESET for analysis.       
2008-8-1 14:21:11        Kernel        File  'G:\v\Downloads\gbplib.js' was sent to ESET for analysis.       
2008-8-1 14:20:51        Kernel        File  'G:\v\Downloads\gbiehdst.js' was sent to ESET for analysis.       
2008-8-1 14:17:21        Kernel        File  'G:\v\Downloads\Explorer.xml' was sent to ESET for analysis.       
2008-8-1 14:16:43        Kernel        File  'G:\v\Downloads\dllhostc.pif' was sent to ESET for analysis.
Kitman
发表于 2008-8-1 14:27:54 | 显示全部楼层

回复 6楼 Kitman 的帖子

The file 'file_kt.jpg' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.
啊弥陀佛
发表于 2008-8-1 14:36:39 | 显示全部楼层
微点拦截
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-7 16:06 , Processed in 0.134773 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表