查看: 2256|回复: 4
收起左侧

[病毒样本] 28

[复制链接]
sam.to
发表于 2008-8-12 21:29:10 | 显示全部楼层 |阅读模式
c155b78f3ad58689743f1d10b951f5b9  1.bat3
47ecd1db6de0b55d647f528c8b597494  1.vbs3
4f9af0bc84cc75e6e4ace75393494230  accon.ocx
4f8883bf025f12476c0a4d5fd3bb0072  AutoRun.in2f
448985f7568c384e35e45ba32736dbb8  bhwl.ex3e
0c1d5dd93feb074a273b2c5d988f46fa  clicknote.dll
d0c07e132eeb5239442cf25ad2932cb1  config.ini3
6e77306b784887f7658ca1fdde84776b  default.gif3
20bdbe513df5779ea8cae8d78c620285  DNFchina.exe2
baf848972b5e1de73fc8e43a52ad7afd  encode.dll
8ed24144ddd6aea74b1b319cbd6cae94  info.ini3
0d48224b582a3f24352590ddb5f6ccca  KvaEnt.dat
448985f7568c384e35e45ba32736dbb8  mjiv.exe3
ecdfd79bff03c1b06eeef5d18a1edc65  note.dll
1d7e83bcbec4a122a28f48607fd7940f  noteshow.dll
ba468caf0bcea328b03d6b1a5b3dafbb  only.dll
d6433f386b39ec929e23e1b1813a6fb1  PmpSplt.ax
11d922dec70e1b1e869628b325daf1a9  QQTYSWG.exe3
aa36f7f6923728e73f3443fbb593f929  reg.dll
6c1881a9ce922600d4bb6f825c689b1b  Server.exe2
7d953954bff203c8479af72b3085926f  spidll.dll
9d9b448a1338e746dd1b26763fe25698  versionie[1].swf
6406d0bf10f5f7706639c959662f1deb  vv1dap32.exe3
3d9b8a6d3ca6433807e78f836585275a  vv1dap32.ini2
b11dda9d4bb8bb2292d7721d4199ce09  vv1dap32.zip2
a606bf0803d7f8618f1bba54ccfbf82e  wl8888.ex3e
ae9003d6030ab7825d3657a087bf05e5  ZSTORM.BAT-2921ACF7.pf2
e494f13cdb394101524d40e1f29351e9  zstorm.bat2

已刪除: 特洛伊木馬程式 Backdoor.Win32.Hupigon.cfeh        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\AutoRun.in2f
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.QQPass.dcg        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\bhwl.ex3e//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-GameThief.Win32.WOW.brp        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\DNFchina.exe2
已刪除: 特洛伊木馬程式 Backdoor.Win32.Hupigon.bmaz        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\KvaEnt.dat
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.QQPass.dcg        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\mjiv.exe3//PE_Patch//UPack
已刪除: 特洛伊木馬程式 Trojan-Dropper.Win32.Agent.vlo        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\vv1dap32.exe3
已刪除: 特洛伊木馬程式 Backdoor.Win32.Hupigon.ckvd        檔案: C:\Documents and Settings\kato9096\桌面\新資料夾 (2)\WINDOWS\wl8888.ex3e

卡巴只报7个,不报的已上报!!
Exia 该用户已被删除
发表于 2008-8-12 21:33:02 | 显示全部楼层
Starting the file scan:

Begin scan in 'E:\WINDOWS'
E:\WINDOWS\bhwl.ex3e
    [DETECTION] Is the TR/Crypt.DJ.37 Trojan
    [NOTE]      The file was deleted!
E:\WINDOWS\DNFchina.exe2
    [DETECTION] Is the TR/Drop.Agen.26778.A Trojan
    [NOTE]      The file was deleted!
E:\WINDOWS\KvaEnt.dat
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    [NOTE]      The file was deleted!
E:\WINDOWS\mjiv.exe3
    [DETECTION] Is the TR/Crypt.DJ.37 Trojan
    [NOTE]      The file was deleted!
E:\WINDOWS\Server.exe2
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      The file was deleted!
E:\WINDOWS\vv1dap32.exe3
    [0] Archive type: RSRC
    --> Object
      [DETECTION] Contains recognition pattern of the RKIT/KernelBot.CH root kit
    [NOTE]      The file was deleted!
E:\WINDOWS\wl8888.ex3e
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    [NOTE]      The file was deleted!
E:\WINDOWS\zstorm.bat2
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    [NOTE]      The file was deleted!


End of the scan: 2008年8月12日  21:35
Used time: 00:22 Minute(s)

The scan has been done completely.

      1 Scanning directories
     28 Files were scanned
      8 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      8 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     20 Files not concerned
      0 Archives were scanned
      0 Warnings
      8 Notes
Palkia
发表于 2008-8-12 21:43:16 | 显示全部楼层
病毒        2008-08-12  21:40:49        C:\Documents and Settings\Administrator\桌面\WINDOWS---\WINDOWS\wl8888.ex3e        Win32.Hack.Huigezi.c.690176        隔离成功       
病毒        2008-08-12  21:40:49        C:\Documents and Settings\Administrator\桌面\WINDOWS---\WINDOWS\KvaEnt.dat        Win32.Hack.Huigezi.999424        隔离成功
电影结束了
发表于 2008-8-12 21:59:36 | 显示全部楼层
对象: bhwl.ex3e
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Trojan-PSW.Win32.QQPass.dcg (KAV 引擎), Trojan.Crypt.DJ (BD 引擎)
对象: DNFchina.exe2
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Trojan-GameThief.Win32.WOW.brp (KAV 引擎), Generic.PWStealer.CDF4E561 (BD 引擎)
对象: KvaEnt.dat
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Backdoor.Win32.Hupigon.bmaz (KAV 引擎), Backdoor.Hupigon.ZYM (BD 引擎)
对象: mjiv.exe3
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Trojan-PSW.Win32.QQPass.dcg (KAV 引擎), Trojan.Crypt.DJ (BD 引擎)
对象: Server.exe2
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Generic.Malware.V!bWk!.D55CA942 (BD 引擎)
对象: vv1dap32.exe3
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Trojan-Dropper.Win32.Agent.vlo (KAV 引擎)
对象: wl8888.ex3e
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Backdoor.Win32.Hupigon.ckvd (KAV 引擎), Trojan.Inject.GO (BD 引擎)
对象: zstorm.bat2
路径: F:\WINDOWS---.part2\WINDOWS
Status: 已发现病毒
病毒: Trojan.Inject.GO (BD 引擎)
扫描完成: 2008-8-12 21:58
    已检查 28 个文件
    已发现 8 个染毒文件
qigang
发表于 2008-8-12 22:05:29 | 显示全部楼层

42/4

瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Trojan.DL.Win32.Mnless.atb
病毒: Backdoor.Win32.Gpigeon.2007.ng
病毒: Backdoor.Win32.RWX.sy   

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.57.12
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-14 12:51 , Processed in 0.132511 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表