查看: 7779|回复: 29
收起左侧

[病毒样本] 豪华大礼包,总有你不报的,准备上报吧。。

[复制链接]
mofunzone
发表于 2007-2-1 17:47:59 | 显示全部楼层 |阅读模式
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\ntsutil.rar'
C:\Documents and Settings\Administrator\My Documents\
  ntsutil.rar
    [0] Archive type: RAR
    --> ntsutil\ntsutil.exe
        [DETECTION] Is the Trojan horse TR/Dldr.Small.eeb.2
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\sp2gdr.rar'
C:\Documents and Settings\Administrator\My Documents\
  sp2gdr.rar
    [0] Archive type: RAR
    --> sp2gdr\jgdw400.dll
        [WARNING]   The archive is encrypted
        [WARNING]   The archive is encrypted
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\!KillBox.rar'
C:\Documents and Settings\Administrator\My Documents\
  !KillBox.rar
    [0] Archive type: RAR
    --> !KillBox\!KillBox\Logs\kb.log
    --> !KillBox\!KillBox\mhs2.exe
        [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> !KillBox\!KillBox\rundl132.exe
        [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> !KillBox\!KillBox\twunk32.exe
        [DETECTION] Is the Trojan horse TR/Agent.20136.1
        [WARNING]   Infected files in archives cannot be repaired!
    --> !KillBox\!KillBox\zts2.exe
        [DETECTION] Is the Trojan horse TR/PSW.Lineage.Q.18
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\2_.rar'
C:\Documents and Settings\Administrator\My Documents\
  2_.rar
    [0] Archive type: RAR
    --> 2_\2_.exe
        [DETECTION] Is the Trojan horse TR/Favadd.AV.1
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\aaa.rar'
C:\Documents and Settings\Administrator\My Documents\
  aaa.rar
    [0] Archive type: RAR
    --> aaa\ACCESSIBLEMARSHAL.DLL
    --> aaa\FIREFOX_INST.DLL
    --> aaa\FOXPLUS.EXE
    --> aaa\INSTALLOPTIONS.DLL
    --> aaa\SYSTEM.DLL
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\C.rar'
C:\Documents and Settings\Administrator\My Documents\
  C.rar
    [0] Archive type: RAR
    --> C\C.exe
        [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\fbjah.rar'
C:\Documents and Settings\Administrator\My Documents\
  fbjah.rar
    [0] Archive type: RAR
    --> fbjah\fbjah.exe
        [DETECTION] Contains signature of the Ad- or Spyware ADSPY/IEHlpr.O.12
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\feiai.rar'
C:\Documents and Settings\Administrator\My Documents\
  feiai.rar
    [0] Archive type: RAR
    --> feiai\058682D3909BF7AF[1].EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.ahj.83 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\1[1].exe
        [DETECTION] Is the Trojan horse TR/Agent.SA.2
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\2[1].EXE
        [DETECTION] Is the Trojan horse TR/PSW.QQPass.TE
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\4[1].EXE
    --> feiai\9[1].EXE
        [DETECTION] Contains signature of the worm WORM/Viking.O.2
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\ASDE.exe
        [DETECTION] Is the Trojan horse TR/Agent.SA.2
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\C3206459(2).EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.ahj.83 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\C3206459.EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.ahj.83 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\C3206459T.EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.ahj.83 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\G0LD.COM
    --> feiai\GZ[1].EXE
        [DETECTION] Is the Trojan horse TR/Crypt.NSAnti.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\G[1].EXE
        [DETECTION] Is the Trojan horse TR/PSW.QQPass.HB.38
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\HSK[1].EXE
        [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/Dumped). Please verify the origin of the file
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\INDEX0[1].EXE
        [DETECTION] Contains suspicious code HEUR/Crypted
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\OUTSXVLF.DLL
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.aex.41 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\PRGZVOON.DLL
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.aex.41 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\QJJPVSYA.DLL
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.aex.41 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\RRWL.EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.aex.40 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\SETUP[1].EXE
        [DETECTION] Is the Trojan horse TR/Agent.5648
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\SVCHOST(2).EXE
        [DETECTION] Is the Trojan horse TR/PSW.QQPass.TE
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\SVCHOST(4).EXE
        [DETECTION] Is the Trojan horse TR/Hijack.Explor.1411
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\SVCHOST.EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Hupigon.Gen Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\SVCHOST0.EXE
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.ahj.83 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\SVKP.SYS
    --> feiai\SYSINFO.DLL
        [DETECTION] Contains signature of the worm WORM/Viking.O.2
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\TCSAFE.EXE
        [DETECTION] Is the Trojan horse TR/Agent.5648
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\TPXHST32.EXE
        [DETECTION] Is the Trojan horse TR/Agent.5648
        [WARNING]   Infected files in archives cannot be repaired!
    --> feiai\ZXGRZNDS.DLL
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.aex.41 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\h.rar'
C:\Documents and Settings\Administrator\My Documents\
  h.rar
    [0] Archive type: RAR
    --> h\h.exe
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Hupigon.ALV Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\ie7update.rar'
C:\Documents and Settings\Administrator\My Documents\
  ie7update.rar
    [0] Archive type: RAR
    --> ie7update\2_.exe
        [DETECTION] Is the Trojan horse TR/Favadd.AV.1
        [WARNING]   Infected files in archives cannot be repaired!
    --> ie7update\ie7update.exe
        [DETECTION] Is the Trojan horse TR/Favadd.AV
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!


End of the scan: 2007年2月1日  01:46
Used time: 00:33 min

The scan has been done completely.

      0 Scanning directories
     55 Files were scanned
     36 viruses and/or unwanted programs were found
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     19 Files not concerned
     10 Archives were scanned
     46 Warnings
      0 Notes

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hsjj2005
发表于 2007-2-1 17:56:36 | 显示全部楼层
费尔杀掉38个,一共有几个啊?

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
mofunzone
 楼主| 发表于 2007-2-1 17:58:51 | 显示全部楼层
我也不知道,哈哈
hsjj2005
发表于 2007-2-1 17:58:55 | 显示全部楼层
卡巴目前时间32个。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
hsjj2005
发表于 2007-2-1 18:00:56 | 显示全部楼层
估计这个毒包包小红伞干起来最厉害了。不知还有哪个会破红伞记录?楼下继续啊!先回家了。
flash_card
头像被屏蔽
发表于 2007-2-1 18:02:40 | 显示全部楼层
卡巴报有30个,直接DEL的还有几个.
mofunzone
 楼主| 发表于 2007-2-1 18:03:30 | 显示全部楼层
费尔有38个呀。。
早就超过雨伞36个了。。
kp2006
头像被屏蔽
发表于 2007-2-1 18:16:56 | 显示全部楼层
nod32 26

C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar >>RAR >>!KillBox\!KillBox\mhs2.exe - Win32/PSW.Agent.NBJ trojan
C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar >>RAR >>!KillBox\!KillBox\rundl132.exe - Win32/Viking.CH virus
C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar >>RAR >>!KillBox\!KillBox\twunk32.exe - a variant of Win32/PSW.Legendmir.NEF trojan
C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar >>RAR >>!KillBox\!KillBox\zts2.exe - Win32/PSW.Agent.NBJ trojan
C:\Documents and Settings\Administrator\桌面\My Documents\2_.rar >>RAR >>2_\2_.exe - 未查明的 NewHeur_PE virus [7]
C:\Documents and Settings\Administrator\桌面\My Documents\C.rar >>RAR >>C\C.exe - Win32/Agent.AIR trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\058682D3909BF7AF[1].EXE - a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\1[1].EXE - a variant of Win32/PSW.Agent.NBN trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\2[1].EXE - probably a variant of Win32/PSW.QQShou.EH trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\9[1].EXE - probably a variant of Win32/PSW.QQShou.EP trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\ASDE.EXE - a variant of Win32/PSW.Agent.NBN trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\C3206459(2).EXE - a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\C3206459.EXE - a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\C3206459T.EXE - a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\G[1].EXE - probably a variant of Win32/PSW.QQShou.EH trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\RRWL.EXE - a variant of Win32/PSW.Agent.NBN trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\SETUP[1].EXE - Win32/TrojanDownloader.VB.NIM trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\SVCHOST(2).EXE - probably a variant of Win32/PSW.QQShou.EH trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\SVCHOST(4).EXE - 未查明的 NewHeur_PE virus [7]
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\SVCHOST0.EXE - a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\SYSINFO.DLL - probably a variant of Win32/PSW.QQShou.EP trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\TCSAFE.EXE - Win32/TrojanDownloader.VB.NIM trojan
C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar >>RAR >>feiai\TPXHST32.EXE - Win32/TrojanDownloader.VB.NIM trojan
C:\Documents and Settings\Administrator\桌面\My Documents\h.rar >>RAR >>h\h.exe - a variant of Win32/Agent.AAC trojan
C:\Documents and Settings\Administrator\桌面\My Documents\ie7update.rar >>RAR >>ie7update\2_.exe - 未查明的 NewHeur_PE virus [7]
C:\Documents and Settings\Administrator\桌面\My Documents\ie7update.rar >>RAR >>ie7update\ie7update.exe - 未查明的 NewHeur_PE virus [7]
kp2006
头像被屏蔽
发表于 2007-2-1 18:18:34 | 显示全部楼层
kv 36

在 C:\Documents and Settings\Administrator\桌面\My Documents\2_.rar->2_\2_.exe 中发现 Trojan/StartPage.oj 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar->!KillBox\!KillBox\mhs2.exe 中发现 Worm/Viking.rf 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar->!KillBox\!KillBox\rundl132.exe 中发现 Worm/Viking.ci 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar->!KillBox\!KillBox\twunk32.exe 中发现 TrojanDownloader.Agent.fuo 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\!KillBox.rar->!KillBox\!KillBox\zts2.exe 中发现 Trojan/PSW.GamePass.wb 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\C.rar->C\C.exe 中发现 Worm/Viking.rz 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\fbjah.rar->fbjah\fbjah.exe 中发现 Trojan/Agent.bpl 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\h.rar->h\h.exe 中发现 Trojan/StartPage.oi 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\058682D3909BF7AF[1].EXE 中发现 Trojan/PopWin.ba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\ie7update.rar->ie7update\2_.exe 中发现 Trojan/StartPage.oj 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\1[1].EXE 中发现 TrojanDropper.Agent.afr 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\2[1].EXE 中发现 Backdoor/Huigezi.evi 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\9[1].EXE 中发现 Trojan/PSW.QQPass.cba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\ie7update.rar->ie7update\ie7update.exe 中发现 Trojan/StartPage.oj 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\ASDE.EXE 中发现 TrojanDropper.Agent.afr 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\ntsutil.rar->ntsutil\ntsutil.exe 中发现 TrojanDownloader.Small.hav 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\C3206459(2).EXE 中发现 Trojan/PopWin.ba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\C3206459.EXE 中发现 Trojan/PopWin.ba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\C3206459T.EXE 中发现 Trojan/PopWin.ba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\GZ[1].EXE 中发现 Backdoor/Huigezi.2006.eim 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\G[1].EXE 中发现 Trojan/PSW.GamePass.wv 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\HSK[1].EXE 中发现 Backdoor/Agent.gqy 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\INDEX0[1].EXE 中发现 Backdoor/Huigezi.2006.eim 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\OUTSXVLF.DLL 中发现 Trojan/PSW.Wanmei.e 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\PRGZVOON.DLL 中发现 Trojan/PSW.Wanmei.e 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\QJJPVSYA.DLL 中发现 Trojan/PSW.Wanmei.e 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\RRWL.EXE 中发现 Trojan/PSW.GamePass.tw 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\SETUP[1].EXE 中发现 TrojanDownloader.TpxVip.d 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\SVCHOST(2).EXE 中发现 Backdoor/Huigezi.evi 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\SVCHOST(4).EXE 中发现 Backdoor/Agent.hyc 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\SVCHOST.EXE 中发现 Backdoor/Huigezi.evi 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\SVCHOST0.EXE 中发现 Trojan/PopWin.ba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\SYSINFO.DLL 中发现 Trojan/PSW.QQPass.cba 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\TCSAFE.EXE 中发现 TrojanDownloader.TpxVip.d 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\TPXHST32.EXE 中发现 TrojanDownloader.TpxVip.d 病毒, 发现病毒
在 C:\Documents and Settings\Administrator\桌面\My Documents\feiai.rar->feiai\ZXGRZNDS.DLL 中发现 Trojan/PSW.Wanmei.e 病毒, 发现病毒
正常结束。

扫描结果:
                 文件数 :550                                 病毒体 :36        
                   删除 :0                                     解毒 :0         
    扫描速度(千字节/秒) :5953                              扫描时间 :00:00:26
    扫描文件速度(个/秒) :21
alleynsun
发表于 2007-2-1 18:22:09 | 显示全部楼层
瑞星报毒33个....
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-26 14:59 , Processed in 0.142112 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表