查看: 1895|回复: 8
收起左侧

[病毒样本] 12X

[复制链接]
Palkia
发表于 2008-12-19 21:57:10 | 显示全部楼层 |阅读模式


ris 0~

已上报

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
luxiao200888
发表于 2008-12-19 21:58:42 | 显示全部楼层

to avira

avira
Begin scan in 'C:\Documents and Settings\Owner\桌面\新建文件夹'
C:\Documents and Settings\Owner\桌面\新建文件夹\79AA79471194CB7045C03C97D618103F
    [DETECTION] Is the TR/Agent.ajvg.1 Trojan
C:\Documents and Settings\Owner\桌面\新建文件夹\85BC4E65D01FA5DA0586464D5E5A6D2D
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Backdoor.Gen back-door program
C:\Documents and Settings\Owner\桌面\新建文件夹\8F955D579DE7647082E25F64ADB9F7A7
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Backdoor.Gen back-door program
C:\Documents and Settings\Owner\桌面\新建文件夹\B561BA89C4D87335711435CFE8182302
    [DETECTION] Is the TR/Agent.331776.2 Trojan
C:\Documents and Settings\Owner\桌面\新建文件夹\B817BA7D0A2F52BFA64E4A9799B34F1D
    [DETECTION] Contains recognition pattern of the ADSPY/Comet.BR adware or spyware
C:\Documents and Settings\Owner\桌面\新建文件夹\DF67AE14DCE2D9B544FDD9C09ADC02F8
    [DETECTION] Is the TR/Spy.Banker.Gen Trojan
C:\Documents and Settings\Owner\桌面\新建文件夹\DF7221C6B17267110BBA9BCFDB72FA22
    [DETECTION] Is the TR/Crypt.FKM.Gen Trojan

Beginning disinfection:
C:\Documents and Settings\Owner\桌面\新建文件夹\79AA79471194CB7045C03C97D618103F
    [DETECTION] Is the TR/Agent.ajvg.1 Trojan
    [NOTE]      The file was moved to '498ca9e1.qua'!
C:\Documents and Settings\Owner\桌面\新建文件夹\85BC4E65D01FA5DA0586464D5E5A6D2D
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Backdoor.Gen back-door program
    [NOTE]      The file was moved to '498da9dd.qua'!
C:\Documents and Settings\Owner\桌面\新建文件夹\8F955D579DE7647082E25F64ADB9F7A7
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Backdoor.Gen back-door program
    [NOTE]      The file was moved to '4984a9ee.qua'!
C:\Documents and Settings\Owner\桌面\新建文件夹\B561BA89C4D87335711435CFE8182302
    [DETECTION] Is the TR/Agent.331776.2 Trojan
    [NOTE]      The file was moved to '4981a9dd.qua'!
C:\Documents and Settings\Owner\桌面\新建文件夹\B817BA7D0A2F52BFA64E4A9799B34F1D
    [DETECTION] Contains recognition pattern of the ADSPY/Comet.BR adware or spyware
    [NOTE]      The file was moved to '497ca9e0.qua'!
C:\Documents and Settings\Owner\桌面\新建文件夹\DF67AE14DCE2D9B544FDD9C09ADC02F8
    [DETECTION] Is the TR/Spy.Banker.Gen Trojan
    [NOTE]      The file was moved to '4981a9ee.qua'!
C:\Documents and Settings\Owner\桌面\新建文件夹\DF7221C6B17267110BBA9BCFDB72FA22
    [DETECTION] Is the TR/Crypt.FKM.Gen Trojan
    [NOTE]      The file was moved to '4982a9ee.qua'!





25214669         5AAAA267A2D12990833C...9A         60.5 KB         CLEAN
25215289         8497059DB9F7E09D673C...5A         144.38 KB         MALWARE
25215290         91A686C08FEEEBEC9738...9C         362.5 KB         MALWARE
25215291         AA1DE5CFB8882C5B5F37...87         1.12 KB         UNDER ANALYSIS
25215248         B04176E5D6ABFDB038AA...1D         61.5 KB         MALWARE

[ 本帖最后由 luxiao200888 于 2008-12-19 22:02 编辑 ]
wangjay1980
发表于 2008-12-19 22:05:54 | 显示全部楼层
可疑 TO KL
su-tt
发表于 2008-12-19 22:21:34 | 显示全部楼层
C:\Documents and Settings\Administrator\桌面\virus.rar > RAR > DF67AE14DCE2D9B544FDD9C09ADC02F8 - Win32/Spy.Delf.NOE 特洛伊木马
C:\Documents and Settings\Administrator\桌面\virus.rar > RAR > 91A686C08FEEEBEC9738DFC5E8C8AF9C - Win32/Spy.Delf.NOG 特洛伊木马
C:\Documents and Settings\Administrator\桌面\virus.rar > RAR > 79AA79471194CB7045C03C97D618103F - Win32/Agent.AJVG 特洛伊木马
C:\Documents and Settings\Administrator\桌面\virus.rar > RAR > 8497059DB9F7E09D673C1FE2B1BAEF5A > NSIS > 47.exe > NSIS > 龏
FLogo
发表于 2008-12-20 10:13:39 | 显示全部楼层
有5个没有后缀名的文件,卡巴怎么杀不出来呀...
orpro
发表于 2008-12-20 10:33:57 | 显示全部楼层
EVA3.0只杀出10个,2个查不出
bjfhj
发表于 2008-12-20 14:12:55 | 显示全部楼层
使用G DATA AntiVirus检测
版本 19.1.0.0 (2008/10/29)
病毒特征库日期 2008/12/20
开始时间: 2008/12/20 14:11
引擎: 引擎A (AVA 19.2613), 引擎B (AVB 19.151)
启发式: 开启
档案文件: 开启
系统区域: 开启
检测rootkits: 开启

检测系统区域...
检测以下目录和文件:
  C:\Documents and Settings\Administrator\桌面\virus\

对象: 5AAAA267A2D12990833CBAC510E5EC9A
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Trojan.Generic.1222447 (引擎 A)
对象: 91A686C08FEEEBEC9738DFC5E8C8AF9C
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Trojan.Crypt.Delf.X (引擎 A)
对象: 79AA79471194CB7045C03C97D618103F
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Trojan.Agent.AKXM (引擎 A)
对象: B561BA89C4D87335711435CFE8182302
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Trojan.Generic.689540 (引擎 A)
对象: B817BA7D0A2F52BFA64E4A9799B34F1D
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Application.Generic.21784 (引擎 A)
对象: DF7221C6B17267110BBA9BCFDB72FA22
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Win32:Trojan-gen {Other} (引擎 B)
对象: 85BC4E65D01FA5DA0586464D5E5A6D2D
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: Trojan.Generic.1242903 (引擎 A)
对象: 8497059DB9F7E09D673C1FE2B1BAEF5A
        路径: C:\Documents and Settings\Administrator\桌面\virus
        状态: 病毒,文件被删除
        病毒: DeepScan:Generic.Adw.Cinmus.2.E8144529 (引擎 A)

扫描完成于: 2008/12/20 14:12
    12个文件已检测
    8个受感染文件已发现
    0个可疑文件已发现
4186878
发表于 2008-12-20 14:15:18 | 显示全部楼层
Win32:Adware-gen [Adw]
BING126
头像被屏蔽
发表于 2008-12-20 21:33:42 | 显示全部楼层
McAfee 报了9个。。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-9-19 16:12 , Processed in 0.303477 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表