查看: 6311|回复: 17
收起左侧

c:\windows\system32\explorer.exe

[复制链接]
peter1123
发表于 2007-4-15 10:29:04 | 显示全部楼层 |阅读模式
AntivirusVersionUpdateResult
AhnLab-V32007.4.14.004.13.2007 [td]no virus found
AntiVir7.3.1.5204.14.2007TR/Crypt.XPACK.Gen
Authentium4.93.804.14.2007 [td]no virus found
Avast4.7.936.004.14.2007 [td]no virus found
AVG7.5.0.44704.15.2007 [td]no virus found
BitDefender7.204.15.2007DeepScan:Generic.Malware.Sdld!!g.AEA22B91
CAT-QuickHeal9.0004.14.2007 [td]no virus found
ClamAVdevel-2007031204.15.2007 [td]no virus found
DrWeb4.3304.14.2007 [td]no virus found
eSafe7.0.15.004.12.2007 [td]no virus found
eTrust-Vet30.7.356704.14.2007 [td]no virus found
Ewido4.004.14.2007 [td]no virus found
FileAdvisor104.15.2007 [td]no virus found
Fortinet2.85.0.004.14.2007suspicious
F-Prot4.3.2.4804.13.2007W32/SecRisk-ProcessPatcher-Sml-based!Maximus
F-Secure6.70.13030.004.14.2007 [td]no virus found
IkarusT3.1.1.504.14.2007Win32.SuspectCrc
Kaspersky4.0.2.2404.15.2007 [td]no virus found
McAfee500904.13.2007 [td]no virus found
Microsoft1.240504.15.2007 [td]no virus found
NOD32v2218704.13.2007probably unknown NewHeur_PE virus
Norman5.80.0204.14.2007 [td]no virus found
Panda9.0.0.404.14.2007Suspicious file
Prevx1V204.15.2007 [td]no virus found
Sophos4.16.004.12.2007 [td]no virus found
Sunbelt2.2.907.004.14.2007 [td]no virus found
Symantec1004.15.2007 [td]no virus found
TheHacker6.1.6.09404.14.2007 [td]no virus found
VBA323.11.304.14.2007 [td]no virus found
VirusBuster4.3.7:904.14.2007 [td]no virus found
Webwasher-Gateway6.0.104.14.2007Trojan.Crypt.XPACK.Gen


可以替代系统shell

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-4-15 10:31:16 | 显示全部楼层

nod32直接报未知的PE病毒,已上报

Scan performed at: 2007-4-15 10:30:37
Scanning Log
NOD32 version 2190 (20070415) NT
Command line: C:\Documents and Settings\EQ2\桌面\virus.zip
Operating memory - is OK

Date: 15.4.2007  Time: 10:30:42
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\virus.zip
C:\Documents and Settings\EQ2\桌面\virus.zip ?ZIP ?expleror.exe.重命名 - probably unknown NewHeur_PE virus [7]
Number of scanned files: 2
Number of threats found: 1
Number of files cleaned: 1
Time of completion: 10:30:42 Total scanning time: 0 sec (00:00:00)

Notes:
[7] File is probably infected with an unknown virus.
蓝色牛仔裤
发表于 2007-4-15 10:31:53 | 显示全部楼层
看这个路径就知道不是什么好东西了吧...

Virus check with AntiVirusKit
Version 16.0.7
Virus signatures of 2007-4-13
Start time: 2007-4-15 10:32
Engine(s): KAV engine (AVK 17.3590), BD-Engine (BD 17.2635)
Heuristic: On
Archives: On
System areas: On

Check system areas...
Check selected directories and files...
Object: expleror.exe.重命名
        In archive: C:\Documents and Settings\Administrator\桌面\virus(2).zip
        Status: Virus detected
        Virus: DeepScan:Generic.Malware.Sdld!!g.AEA22B91 (BD-Engine)
Object: virus(2).zip
        Path: C:\Documents and Settings\Administrator\桌面
        Status: Virus, file deleted
        Virus: DeepScan:Generic.Malware.Sdld!!g.AEA22B91 (BD-Engine)
Analysis complete: 2007-4-15 10:32
    1 files checked
    1 infected files detected
    0 suspected files detected
mofunzone
发表于 2007-4-15 12:27:15 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\morgan\My Documents\virus.zip'
C:\Documents and Settings\morgan\My Documents\
  virus.zip
    [0] Archive type: ZIP
    --> expleror.exe.ÖØÃüÃû
        [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
        [WARNING]   Infected files in archives cannot be repaired!
        [INFO]      The file was deleted!
嘉和
发表于 2007-4-15 14:36:18 | 显示全部楼层
[Scan Report]
GGreat Virus Scan Version=Q8.0
Date=星期日, 四月 15 2007
Time=02:32:22 下午
Path=C:\Do<.???</BOOT
---Dir-------=1
---Files-----=2
---Infected--=1
---Cleaned---=0
[Rabbit/Worm]=C:\Documents and Settings\Administrator\桌面\virus\virus7.zip\expleror.exe.笭韜靡
小飞侠.net
发表于 2007-4-15 15:19:29 | 显示全部楼层

多一个中文滴不报?

McAfee VirusScan for Win32 v5.10.0
Copyright (c) 1992-2005 Networks Associates Technology Inc. All rights reserved.
(408) 988-3832  LICENSED COPY - May 26 2006

Scan engine v5.1.00 for Win32.
Virus data file v4100 created Apr 14 2007
Scanning for 248655 viruses, trojans and variants.
Using c:\Documents and Settings\小飞侠.net\桌面\桌面\McAfee VirusScan\EXTRA.DAT to scan for 0 additional virus(es).



04/15/2007  15:19:17


Options:
"V:\VIRUSDOC20070415\AAA盘V样本\010" /MIME /SUB /UNZIP /ALL /RPTALL /STREAMS /REPORT C:\DOCUME~1\小飞侠.NET\LOCALS~1\TEMP\SCAN.TXT

Scanning V: [V盘]
Scanning V:\VIRUSDOC20070415\AAA盘V样本\010\*.*
V:\VIRUSDOC20070415\AAA盘V样本\010\virus.zip ... is OK.
V:\VIRUSDOC20070415\AAA盘V样本\010\virus.zip\EXPLEROR.EXE.重命名 ... is OK.
V:\VIRUSDOC20070415\AAA盘V样本\010\virus.zip:Zone.Identifier ... is OK.

Summary report on V:\VIRUSDOC20070415\AAA盘V样本\010\*.*
File(s)
        Total files: ...........       3
        Clean: .................       3
        Possibly Infected: .....       0


Time: 00:00.00
llluyan
头像被屏蔽
发表于 2007-4-15 15:49:22 | 显示全部楼层
这个是不是网银大盗
咔吧怎么不报
马力
发表于 2007-4-15 19:48:51 | 显示全部楼层
驱逐舰不报
caocao
发表于 2007-4-15 19:51:54 | 显示全部楼层
KIS 已经可以杀了
已删除: 木马程序 Trojan.Win32.Agent.ajl        文件: D:\Downloads\virus.zip\expleror.exe.重命名
漂泊
发表于 2007-4-15 20:35:19 | 显示全部楼层
已检测到: 木马程序 Trojan.Win32.Agent.ajl        URL: http://bbs.kafan.cn/attachment.php?aid=55358\expleror.exe.重命名    KAV6.0在报
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-11 14:08 , Processed in 0.158955 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表