查看: 3475|回复: 20
收起左侧

[病毒样本] 病毒样本

[复制链接]
wowoo
发表于 2007-4-6 17:24:44 | 显示全部楼层 |阅读模式
小红伞挂了

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
pamier2001
发表于 2007-4-6 17:28:38 | 显示全部楼层
对象: firewall.exe
        病毒: DeepScan:Generic.Sdbot.C517DDC1 (BD 引擎)
对象: winamp.exe
        病毒: Backdoor.Win32.VanBot.ax (KAV 引擎), Backdoor.SDBot.VanBot.A (BD 引擎)
promised
发表于 2007-4-6 17:30:58 | 显示全部楼层
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at:        17:30:54 2007-4-6

+ Scan result:        



E:\20070404病毒样本.rar/virus\winamp.exe -> Backdoor.VanBot.ax : No action taken.


::Report end

[ 本帖最后由 promised 于 2007-4-6 17:32 编辑 ]
风野胤
发表于 2007-4-6 17:31:52 | 显示全部楼层
扫描日志
NOD32 版本 2170 (20070405) NT
命令行: C:\Documents and Settings\fengyeyin\桌面\ ?
?20070404病毒样本.rar
NOD32.EXE CRC 校验检查: 状态正常
d:\Program Files\Eset\nod32.exe - 正常
扫描内存: 未执行(选项禁用)
扫描 MBR 和引导扇区: 未执行(选项禁用)
日期: 2007年4月6日  时间: 17:31:38
反 Rookits 技术已启用。
已扫描磁盘、文件夹和文件: C:\Documents and Settings\ ?
?fengyeyin\桌面\20070404病毒样本.rar
C:\Documents and Settings\fengyeyin\桌面\20070404病毒样本. ?
?rar ?RAR ?virus\firewall.exe - Win32/Poebot 木马 变种
C:\Documents and Settings\fengyeyin\桌面\20070404病毒样本. ?
?rar ?RAR ?virus\StartFireWall.exe - 正常
C:\Documents and Settings\fengyeyin\桌面\20070404病毒样本. ?
?rar ?RAR ?virus\winamp.exe - Win32/Poebot 木马
C:\Documents and Settings\fengyeyin\桌面\20070404病毒样本. ?
?rar:Zone.Identifier - 正常
已扫描文件数量: 4
已发现病毒数量: 2
完成时间: 17:31:40 总共扫描时间: 2 秒 (00:00:02)
龙井茶
发表于 2007-4-6 17:33:17 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\20070404病毒样本.rar'
C:\Documents and Settings\Administrator\桌面\20070404病毒样本.rar
  [0] Archive type: RAR
  --> virus\firewall.exe
      [DETECTION] Contains signature of the worm WORM/Sdbot.91940
  --> virus\winamp.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/VanBot.AX.45 Backdoor server programs
      [INFO]      A backup was created as '4646143e.qua'  ( QUARANTINE )
      [INFO]      The file was deleted!
龙井茶
发表于 2007-4-6 17:34:08 | 显示全部楼层
我的红伞怎么就没象楼主说的那样挂了呢?
jlennon
头像被屏蔽
发表于 2007-4-6 17:35:32 | 显示全部楼层
2007-4-6 17:33:27        eAmon        file        C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$VR00.203\20070404病毒样本[1].rar\virus\firewall.exe        a variant of Win32/Poebot trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a file modified by the application: C:\Program Files\WinRAR\WinRAR.exe.
-------------------------------------------------------------------------------------------------------------------------------
2007-4-6 17:33:29        eAmon        file        C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$VR00.203\20070404病毒样本[1].rar\virus\winamp.exe        Win32/Poebot trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred on a file modified by the application: C:\Program Files\WinRAR\WinRAR.exe.
蓝色牛仔裤
发表于 2007-4-6 17:38:08 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\20070404病毒样本.rar'
C:\Documents and Settings\Administrator\桌面\
  20070404病毒样本.rar
    [0] Archive type: RAR
    --> virus\firewall.exe
        [DETECTION] Contains signature of the worm WORM/Sdbot.91940
        [WARNING]   Infected files in archives cannot be repaired!
    --> virus\StartFireWall.exe
    --> virus\winamp.exe
        [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/VanBot.AX.45 Backdoor server programs
        [WARNING]   Infected files in archives cannot be repaired!
        [INFO]      The file was deleted!
The EQs
发表于 2007-4-6 17:47:37 | 显示全部楼层
Scan performed at: 2007-4-6 17:47:51
Scanning Log
NOD32 version 2170 (20070405) NT
Command line: C:\Documents and Settings\EQ2\桌面\20070404病毒样本.rar
Operating memory - is OK

Date: 6.4.2007  Time: 17:47:55
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\20070404病毒样本.rar
C:\Documents and Settings\EQ2\桌面\20070404病毒样本.rar ?RAR ?virus\firewall.exe - a variant of Win32/Poebot trojan
C:\Documents and Settings\EQ2\桌面\20070404病毒样本.rar ?RAR ?virus\winamp.exe - Win32/Poebot trojan - was a part of the deleted object
Number of scanned files: 4
Number of threats found: 2
Number of files cleaned: 1
Time of completion: 17:47:57 Total scanning time: 2 sec (00:00:02)
soul20010
发表于 2007-4-6 17:56:26 | 显示全部楼层
BD10
20070404病毒样本.rar=>virus\firewall.exe        Infected: DeepScan:Generic.Sdbot.C517DDC1
20070404病毒样本.rar=>virus\winamp.exe        Infected: Backdoor.SDBot.VanBot.A
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-11 09:12 , Processed in 0.137790 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表