查看: 3160|回复: 14
收起左侧

two viruses

[复制链接]
kp2006
头像被屏蔽
发表于 2007-3-14 13:14:38 | 显示全部楼层 |阅读模式
kill them quickly

[ 本帖最后由 kp2006 于 2007-3-14 13:16 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-3-14 13:31:59 | 显示全部楼层
Scan performed at: 2007-3-14 13:31:31
Scanning Log
NOD32 version 2113 (20070313) NT
Command line: C:\Documents and Settings\EQ2\桌面\WINDOWS.rar
Operating memory - is OK

Date: 14.3.2007  Time: 13:31:35
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\WINDOWS.rar
C:\Documents and Settings\EQ2\桌面\WINDOWS.rar ?RAR ?6.rar ?RAR ?6.exe - a variant of Win32/Agent.NAU worm
Number of scanned files: 3
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 13:31:38 Total scanning time: 3 sec (00:00:03)
The EQs
发表于 2007-3-14 13:32:16 | 显示全部楼层
Scan performed at: 2007-3-14 13:31:41
Scanning Log
NOD32 version 2113 (20070313) NT
Command line: C:\Documents and Settings\EQ2\桌面\6.rar
Operating memory - is OK

Date: 14.3.2007  Time: 13:31:45
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\6.rar
C:\Documents and Settings\EQ2\桌面\6.rar ?RAR ?6.exe - a variant of Win32/Agent.NAU worm
Number of scanned files: 2
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 13:31:49 Total scanning time: 4 sec (00:00:04)
mofunzone
发表于 2007-3-14 13:39:19 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\WINDOWS.rar'
C:\Documents and Settings\Administrator\My Documents\
  WINDOWS.rar
    [0] Archive type: RAR
    --> 6.rar
        [1] Archive type: RAR
        --> 6.exe
            [DETECTION] Contains signature of the worm WORM/Agent.T.8
            [WARNING]   Infected files in archives cannot be repaired!
    --> setup.rar
        [1] Archive type: RAR
        --> setup.exe
        [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\6.rar'
C:\Documents and Settings\Administrator\My Documents\
  6.rar
    [0] Archive type: RAR
    --> 6.exe
        [DETECTION] Contains signature of the worm WORM/Agent.T.8
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!
jlennon
头像被屏蔽
发表于 2007-3-14 13:45:35 | 显示全部楼层
Virus check with AntiVirusKit
Version 17.0.6282
Virus signatures of 3/14/2007
Start time: 3/14/2007 13:45
Engine(s): Engine A (AVK 17.3271), Engine B (AVKB 17.172)
Heuristic: On
Archives: On
System areas: On

Check system areas...
Check selected directories and files...
Object: 6.exe
        In archive: C:\Documents and Settings\Administrator\桌面\6.rar
        Status: Virus detected
        Virus: Worm.Win32.Agent.t (Engine A)
Object: 6.exe\[NsPack]\[NsPack]\[NsPack]\[NsPack]\[PECompact]
        In archive: C:\Documents and Settings\Administrator\桌面\6.rar
        Status: Virus detected
        Virus: Win32:Delf-DSR [Wrm] (Engine B)
Object: 6.rar
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Move file into quarantine
        Virus: Worm.Win32.Agent.t (Engine A), Win32:Delf-DSR [Wrm] (2x) (Engine B)
Object: 6.rar 6.exe
        In archive: C:\Documents and Settings\Administrator\桌面\WINDOWS.rar
        Status: Virus detected
        Virus: Worm.Win32.Agent.t (Engine A)
Object: 6.rar\6.exe\[NsPack]\[NsPack]\[NsPack]\[NsPack]\[PECompact]
        In archive: C:\Documents and Settings\Administrator\桌面\WINDOWS.rar
        Status: Virus detected
        Virus: Win32:Delf-DSR [Wrm] (Engine B)
Object: WINDOWS.rar
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Move file into quarantine
        Virus: Worm.Win32.Agent.t (Engine A), Win32:Delf-DSR [Wrm] (2x) (Engine B)
Analysis complete: 3/14/2007 13:45
    2 files checked
    2 infected files detected
    0 suspected files detected
jlennon
头像被屏蔽
发表于 2007-3-14 13:46:22 | 显示全部楼层
Virus check with AntiVirusKit
Version 16.0.7
Virus signatures of 2007-3-13
Start time: 2007-3-14 13:46
Engine(s): KAV engine (AVK 17.3243), BD-Engine (BD 17.2404)
Heuristic: On
Archives: On
System areas: On

Check system areas...
Check selected directories and files...
Object: 6.exe
        In archive: C:\Documents and Settings\Administrator\桌面\6.rar
        Status: Virus detected
        Virus: Worm.Win32.Agent.t (KAV engine), Win32.be..inur (BD-Engine)
Object: 6.rar
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Move file into quarantine
        Virus: Worm.Win32.Agent.t (KAV engine), Win32.be..inur (BD-Engine)
Object: 6.rar 6.exe
        In archive: C:\Documents and Settings\Administrator\桌面\WINDOWS.rar
        Status: Virus detected
        Virus: Worm.Win32.Agent.t (KAV engine)
Object: 6.rar 6.exe
        In archive: C:\Documents and Settings\Administrator\桌面\WINDOWS.rar
        Status: Virus detected
        Virus: Win32.be..inur (BD-Engine)
Object: setup.rar setup.exe
        In archive: C:\Documents and Settings\Administrator\桌面\WINDOWS.rar
        Status: Virus detected
        Virus: Trojan.ree. (BD-Engine)
Object: WINDOWS.rar
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Move file into quarantine
        Virus: Worm.Win32.Agent.t (KAV engine), Win32.be..inur, Trojan.ree. (BD-Engine)
Analysis complete: 2007-3-14 13:46
    2 files checked
    2 infected files detected
    0 suspected files detected
allenhippo
发表于 2007-3-14 13:57:36 | 显示全部楼层
总算见到了norton的启发报:

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
bridgewr
发表于 2007-3-14 14:06:19 | 显示全部楼层
微点

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Misakrina
发表于 2007-3-14 14:33:24 | 显示全部楼层
windows.rar 里面的setup.exe 卡吧 红伞都不报~~
来上上报吧~~
soul20010
发表于 2007-3-14 14:40:32 | 显示全部楼层
Result: 2 malware found
Worm.Win32.Agent.t (virus)
C:\Documents and Settings\ÉÙÁÖ\×ÀÃæ\6.rar\6.exe
C:\Documents and Settings\ÉÙÁÖ\×ÀÃæ\WINDOWS.rar\6.rar\6.exe
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-10 20:09 , Processed in 0.159470 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表