查看: 2573|回复: 11
收起左侧

[病毒样本] 样本~~

[复制链接]
tonger2003
发表于 2007-3-25 16:02:21 | 显示全部楼层 |阅读模式
1

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
电影结束了
发表于 2007-3-25 16:04:11 | 显示全部楼层
File F:\virus6\pe.rar is infected with a variant of Win32/Agent.NEO trojan. The file can be deleted. It is strongly recommended that you back up any crucial data before you proceed.
NOD32
The EQs
发表于 2007-3-25 16:05:06 | 显示全部楼层
Scan performed at: 2007-3-25 16:05:23
Scanning Log
NOD32 version 2143 (20070325) NT
Command line: C:\Documents and Settings\EQ2\桌面\pe.rar
Operating memory - is OK

Date: 25.3.2007  Time: 16:05:28
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\pe.rar
C:\Documents and Settings\EQ2\桌面\pe.rar ?RAR ?pe.exe - a variant of Win32/Agent.NEO trojan
Number of scanned files: 2
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 16:05:29 Total scanning time: 1 sec (00:00:01)
绅博周幸
发表于 2007-3-25 16:05:20 | 显示全部楼层
没啥反映啊
绅博周幸
发表于 2007-3-25 16:12:51 | 显示全部楼层
2007-3-25        1:03:40        已由访问保护规则禁止         MT-16D974393A12\wynn        C:\Documents and Settings\wynn\My Documents\pe.exe        C:\WINDOWS\system32\delme.bat        防病毒爆发控制:将所有共享项设为只读        已阻止的操作: 创建
2007-3-25        1:03:54        已由访问保护规则禁止         MT-16D974393A12\wynn        C:\Documents and Settings\wynn\My Documents\pe.exe        C:\WINDOWS\system32\7F64B518.EXE        通用最大保护:禁止在 Windows 文件夹中创建新的可执行文件        已阻止的操作: 创建
2007-3-25        1:03:54        已由访问保护规则禁止         MT-16D974393A12\wynn        C:\Documents and Settings\wynn\My Documents\pe.exe        C:\WINDOWS\system32\7F64B518T.EXE        通用最大保护:禁止在 Windows 文件夹中创建新的可执行文件        已阻止的操作: 创建

hzq277284
头像被屏蔽
发表于 2007-3-25 16:15:41 | 显示全部楼层
蜘蛛没有反应……
The EQs
发表于 2007-3-25 16:18:16 | 显示全部楼层
AhnLab-V3 2007.3.24.1 03.24.2007  no virus found
AntiVir 7.3.1.44 03.23.2007 TR/Crypt.FKM.Gen
Authentium 4.93.8 03.24.2007  no virus found
Avast 4.7.936.0 03.23.2007 Win32:Agent-ELK
AVG 7.5.0.447 03.24.2007  no virus found
BitDefender 7.2 03.25.2007  no virus found
CAT-QuickHeal 9.00 03.23.2007 (Suspicious) - DNAScan
ClamAV devel-20070312 03.25.2007  no virus found
DrWeb 4.33 03.25.2007  no virus found
eSafe 7.0.14.0 03.22.2007 suspicious Trojan/Worm
eTrust-Vet 30.6.3506 03.23.2007  no virus found
Ewido 4.0 03.24.2007  no virus found
FileAdvisor 1 03.25.2007  no virus found
Fortinet 2.85.0.0 03.25.2007 suspicious
F-Prot 4.3.1.45 03.23.2007  no virus found
F-Secure 6.70.13030.0 03.24.2007  no virus found
Ikarus T3.1.1.3 03.25.2007 Backdoor.Win32.Hupigon.BV
Kaspersky 4.0.2.24 03.25.2007  no virus found
McAfee 4991 03.23.2007  no virus found
Microsoft 1.2306 03.25.2007 VirTool:Win32/Obfuscator.A
NOD32v2 2143 03.25.2007 a variant of Win32/Agent.NEO
Norman 5.80.02 03.23.2007  no virus found
Panda 9.0.0.4 03.24.2007 Suspicious file
Prevx1 V2 03.25.2007  no virus found
Sophos 4.15.0 03.23.2007  no virus found
Sunbelt 2.2.907.0 03.24.2007 VIPRE.Suspicious
Symantec 10 03.25.2007  no virus found
TheHacker 6.1.6.080 03.23.2007  no virus found
UNA 1.83 03.16.2007  no virus found
VBA32 3.11.2 03.24.2007  no virus found
VirusBuster 4.3.7:9 03.24.2007  no virus found
Webwasher-Gateway 6.0.1 03.25.2007 Trojan.Crypt.FKM.Gen


Aditional Information
File size: 27975 bytes
MD5: e078b73cdd66be009941c4e177119675
SHA1: 525a422dcdab16d943b8ea8afda2cda76a5682a3
packers: NsPack
packers: NSPack, PE_Patch
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
solcroft
发表于 2007-3-25 16:39:45 | 显示全部楼层
Cyberhawk

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
mofunzone
发表于 2007-3-25 16:53:26 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\morgan\My Documents\pe.rar'
C:\Documents and Settings\morgan\My Documents\
  pe.rar
    [0] Archive type: RAR
    --> pe.exe
        [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
        [WARNING]   Infected files in archives cannot be repaired!
        [INFO]      The file was deleted!
XinDOS
发表于 2007-3-25 21:18:45 | 显示全部楼层
卡巴没报
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-11 02:20 , Processed in 0.122781 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表