楼主: fatezero
收起左侧

[病毒样本] qvod&other[update_629-638][567L]

  [复制链接]
jayavira
发表于 2010-4-25 17:44:19 | 显示全部楼层
47-58
ess kill9个

http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar        多个威胁        连接中断 - 已隔离        通过应用程序访问 web 时检测到威胁: E:\谷歌浏览器\chrome.exe.
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 7467F9AA3491D7AFD514ADC53B36D633        Win32/AutoRun.Delf.EP 蠕虫 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 7467F9AA3491D7AFD514ADC53B36D633 > RAR > Server.exe        Win32/AutoRun.Delf.EP 蠕虫 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > C8A7CA17C5556355C5EBC1CF0E138024        Win32/AutoRun.Delf.EP 蠕虫 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > C8A7CA17C5556355C5EBC1CF0E138024 > RAR > Server.exe        Win32/AutoRun.Delf.EP 蠕虫 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 25781762839D6E4268C62026C795CF98        可能是 Win32/AutoRun.Delf.EP 蠕虫 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 25781762839D6E4268C62026C795CF98 > RAR > Server.exe        可能是 Win32/AutoRun.Delf.EP 蠕虫 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 6EB2EE938D8008CC1F67C320150CD26D        Win32/Kryptik.DTG 特洛伊木马 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 0149A3FFD62F19BC9D1E86DBBDA5655F        Win32/Kryptik.DTG 特洛伊木马 的变种               
http://tc1.vdisk.cn/file/D1/D1FD ... ECFA9A645?47-58.rar > RAR > 283D4E00840C843AF8024ABEC7572168        Win32/TrojanDropper.Agent.NYS 特洛伊木马
ablhr
发表于 2010-4-25 19:33:33 | 显示全部楼层
47-58
2x to avast,8x to forti
mofunzone
发表于 2010-4-26 08:30:31 | 显示全部楼层
up to 58
fatezero
 楼主| 发表于 2010-4-26 10:30:17 | 显示全部楼层
更新
jayavira
发表于 2010-4-26 10:33:07 | 显示全部楼层
59-62
ess kill2个

http://bbs.kafan.cn/attachment.p ... EFNM3poTmtGVUJVMGc=        多个威胁        连接中断 - 已隔离        通过应用程序访问 web 时检测到威胁: E:\谷歌浏览器\chrome.exe.
http://bbs.kafan.cn/attachment.p ... EFNM3poTmtGVUJVMGc= > RAR > D0CD19805A17DF9407228B13A1C20CA5        Win32/TrojanDownloader.Agent.PTF 特洛伊木马 的变种               
http://bbs.kafan.cn/attachment.p ... EFNM3poTmtGVUJVMGc= > RAR > D0CD19805A17DF9407228B13A1C20CA5 > CAB > QVOD播~1.EXE        Win32/TrojanDownloader.Agent.PTF 特洛伊木马 的变种               
http://bbs.kafan.cn/attachment.p ... EFNM3poTmtGVUJVMGc= > RAR > 7BB033A4F27FB89D6CD1CCD449F2DF85        Win32/Kryptik.DTG 特洛伊木马 的变种
mofunzone
发表于 2010-4-26 17:24:26 | 显示全部楼层
up to 62

Beginning disinfection:
C:\Users\morgan\Desktop\59-62\D0CD19805A17DF9407228B13A1C20CA5
    [DETECTION] Is the TR/Agent.AOMW Trojan
    [WARNING]   The file was ignored!
C:\Users\morgan\Desktop\59-62\9BFA90FF7FB258F89312D3BC5E26D97E
    [DETECTION] Is the TR/Agent.AOMW Trojan
    [WARNING]   The file was ignored!
C:\Users\morgan\Desktop\59-62\817F955D5AB7AFF0FD0A6A8AD5C684C9
    [DETECTION] Contains HEUR/Malware suspicious code
    [WARNING]   The file was ignored!
C:\Users\morgan\Desktop\59-62\7BB033A4F27FB89D6CD1CCD449F2DF85
    [DETECTION] Contains recognition pattern of the DR/MicroJoiner.Gen dropper
    [WARNING]   The file was ignored!


End of the scan: 2010年4月26日  02:21
Used time: 00:00 Minute(s)

The scan has been done completely.

      1 Scanned directories
      8 Files were scanned
      4 Viruses and/or unwanted programs were found
      1 Files were classified as suspicious
      0 files were deleted
      0 Viruses and unwanted programs were repaired
      0 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
      3 Files not concerned
      2 Archives were scanned
      4 Warnings
      0 Notes
JusT.Like
发表于 2010-4-26 17:25:33 | 显示全部楼层
Wirus: MemScan:Trojan.Agent.AOMW (2x) (Engine A), Win32:Downloader-DGG [Trj], Win32:Malware-gen (2x), Win32:Geral [Trj] (5x), Win32:Dogrobot-C [Rtk], Win32:Microjoin-DE [Trj] (Engine B)

Wirus wykryty podczas wczytywania zawartosci strony sieci Web.

Adres: bbs.kafan.cn
ablhr
发表于 2010-4-26 19:46:45 | 显示全部楼层
59-62
avast kill all,3x to forti
jason_jiang
发表于 2010-4-26 19:51:05 | 显示全部楼层
59-62
2x to autovin(panda)
d4875163
发表于 2010-4-26 20:00:30 | 显示全部楼层
微点  GD 都杀掉了!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-2-4 17:56 , Processed in 0.100369 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表