查看: 2876|回复: 12
收起左侧

[病毒样本] 来一些,不知道有人发过没有

[复制链接]
sdbsky
发表于 2007-4-30 18:10:10 | 显示全部楼层 |阅读模式
过RS...............

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
scottxzt
发表于 2007-4-30 18:14:00 | 显示全部楼层
virus.rar\SOUND.exe;D:\Documents and Settings\dell\桌面\virus.rar;Probably BACKDOOR.Trojan;;
virus.rar\SVCHOTS.exe;D:\Documents and Settings\dell\桌面\virus.rar;Trojan.PWS.Wsgame;;
virus.rar\ADOBESVC.exe;D:\Documents and Settings\dell\桌面\virus.rar;Trojan.PWS.Wsgame;;
virus.rar\MSTCS.exe;D:\Documents and Settings\dell\桌面\virus.rar;Trojan.PWS.Legmir.906;;
virus.rar\DATSC.exe;D:\Documents and Settings\dell\桌面\virus.rar;Probably BACKDOOR.Trojan;;
virus.rar\INETINF.exe;D:\Documents and Settings\dell\桌面\virus.rar;Trojan.PWS.Wsgame;;
virus.rar\AVG.exe;D:\Documents and Settings\dell\桌面\virus.rar;Probably BACKDOOR.Trojan;;
virus.rar\LSASSS.exe;D:\Documents and Settings\dell\桌面\virus.rar;Trojan.MulDrop.5762;;
SMSSS.exe\systemt.exe;D:\Documents and Settings\dell\桌面\virus.rar\SMSSS.exe;Trojan.Onlyone;;
SMSSS.exe;D:\Documents and Settings\dell\桌面\virus.rar;Archive contains infected objects;;
virus.rar\SPOOLVS.exe;D:\Documents and Settings\dell\桌面\virus.rar;Probably MULDROP.Trojan;;
virus.rar;D:\Documents and Settings\dell\桌面;Archive contains infected objects;;
promised
发表于 2007-4-30 18:18:28 | 显示全部楼层
原帖由 scottxzt 于 2007-4-30 18:14 发表
virus.rar\SOUND.exe;D:\Documents and Settings\dell\桌面\virus.rar;Probably BACKDOOR.Trojan;;
virus.rar\SVCHOTS.exe;D:\Documents and Settings\dell\桌面\virus.rar;Trojan.PWS.Wsgame;;
virus.rar\AD ...


TrustPort Antivirus:
12:47:26 (0110) [1603] Deleted Generic.Malware.Sdld!gPWS.6668D739 Deleted; D:\virus\SOUND.exe
2007.04.30 12:47:28 (0110) [1603] Deleted Trojan.OnLineGames.es Deleted; D:\virus\SVCHOTS.exe
2007.04.30 12:47:29 (0110) [1603] Deleted Trojan.OnLineGames.es Deleted; D:\virus\ADOBESVC.exe
2007.04.30 12:47:46 (0110) [1603] Deleted Trojan.PWS.OnLineGames.ARI Deleted; D:\virus\DATSC.exe
2007.04.30 12:47:48 (0110) [1603] Deleted Generic.Malware.SdldPWS.DFA3D50F Deleted; D:\virus\INETINF.exe
2007.04.30 12:47:49 (0110) [1603] Deleted Generic.Malware.SgPWS.A2CF5445 Deleted; D:\virus\AVG.exe
2007.04.30 12:47:50 (0110) [1603] Deleted Trojan.OnLineGames.hu Deleted; D:\virus\LSASSS.exe
2007.04.30 12:47:53 (0110) [1623] Quarantine BackDoor.Agent.ELV Quarantine; D:\virus\SMSSS.exe:\systemt.exe
2007.04.30 12:47:54 (0110) [1602] Quarantined BackDoor.Agent.ELV Quarantined; D:\virus\SMSSS.exe
2007.04.30 12:47:55 (0110) [1603] Deleted Trojan.OnLineGames.ql Deleted; D:\virus\SPOOLVS.exe
2007.04.30 12:47:55 (010F) [0] OK Report created
2007.04.30 12:48:37 (010A) [1603] Deleted On-Demand Scanner finished

[ 本帖最后由 promised 于 2007-4-30 20:49 编辑 ]
电影结束了
发表于 2007-4-30 18:20:56 | 显示全部楼层
Scan performed at: 2007-4-30 18:20:30
Scanning Log
NOD32 version 2230 (20070430) NT
Command line: F:\virus\virus.rar
C:\Program Files\Eset\nod32.exe - is OK
Operating memory - is OK
MBR sector of the 1. physical disk - is OK
Active boot sector of the 1. physical disk - is OK - Error reading disk sectorError reading disk sectorError reading disk sectorError reading disk sector

Date: 30.4.2007  Time: 18:20:37
Anti-Stealth technology is enabled.
Scanned disks, folders and files: F:\virus\virus.rar
F:\virus\virus.rar ?RAR ?SOUND.exe - a variant of Win32/PSW.Agent.NCC trojan
F:\virus\virus.rar ?RAR ?SVCHOTS.exe - a variant of Win32/PSW.Agent.NCC trojan
F:\virus\virus.rar ?RAR ?ADOBESVC.exe - probably unknown NewHeur_PE virus [7]
F:\virus\virus.rar ?RAR ?MSTCS.exe - is OK
F:\virus\virus.rar ?RAR ?DATSC.exe - a variant of Win32/PSW.Agent.NCC trojan
F:\virus\virus.rar ?RAR ?INETINF.exe - a variant of Win32/PSW.Agent.NDF trojan
F:\virus\virus.rar ?RAR ?AVG.exe - probably a variant of Win32/PSW.Agent.NCC trojan
F:\virus\virus.rar ?RAR ?LSASSS.exe - error opening (Access denied) [4]
F:\virus\virus.rar ?RAR ?SMSSS.exe - Win32/Agent.ALH trojan
F:\virus\virus.rar ?RAR ?SPOOLVS.exe - probably a variant of Win32/Genetik trojan
Number of scanned files: 10
Number of threats found: 8
Number of active threats: 1
Time of completion: 18:20:48 Total scanning time: 11 sec (00:00:11)

Notes:
[4] File cannot be opened. It may be in use by another application or operating system.
[7] File is probably infected with an unknown virus.
tracydk
发表于 2007-4-30 18:28:18 | 显示全部楼层
10个病毒

Starting the file scan:

Begin scan in 'F:\样本\virus.rar'
F:\样本\virus.rar
  [0] Archive type: RAR
  --> SOUND.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> SVCHOTS.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> ADOBESVC.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ES.2061
  --> DATSC.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> INETINF.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> AVG.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LSASSS.exe
      [DETECTION] Contains signature of the dropper DR/Delphi.Gen
  --> SMSSS.exe
      [DETECTION] Is the Trojan horse TR/Drop.Delf.aom
      [1] Archive type: RAR SFX (self extracting)
      --> systemt.exe
          [DETECTION] Is the Trojan horse TR/Spy.Agent.QP.1
  --> SPOOLVS.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QL.3
      [INFO]      The file was deleted!
黑衣~魂
发表于 2007-4-30 19:55:35 | 显示全部楼层
咖啡過一
McAfee 已自動封鎖並移除 特洛伊病毒。

詳細資料
偵測: PWS-LegMir.gen.b (ED) (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-桌面\SOUND.exe

偵測: PWS-LegMir.gen.b (ED) (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\SVCHOTS.exe

偵測: PWS-LegMir.gen.b (ED) (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\ADOBESVC.exe

偵測: PWS-LegMir.gen.b (ED) (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\DATSC.exe

偵測: PWS-LegMir.gen.b (ED) (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\INETINF.exe

偵測: PWS-LegMir.gen.b (ED) (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\AVG.exe

偵測: PWS-Gamania.dr (特洛伊病毒), PWS-Gamania.dr (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\LSASSS.exe

偵測: Generic Dropper.w (特洛伊病毒), Generic Dropper.w (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\SMSSS.exe

偵測: New Malware.n (特洛伊病毒)
檔案路徑: C:\Documents and Settings\all.HOME-\桌面\SPOOLVS.exe
wangjay1980
发表于 2007-4-30 20:08:39 | 显示全部楼层
卡巴杀
scottxzt
发表于 2007-4-30 20:30:39 | 显示全部楼层

回复 #3 promised 的帖子

没有吧

[ 本帖最后由 scottxzt 于 2007-4-30 20:37 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-4-30 20:45:36 | 显示全部楼层
原帖由 电影结束了 于 2007-4-30 18:20 发表
Scan performed at: 2007-4-30 18:20:30
Scanning Log
NOD32 version 2230 (20070430) NT
Command line: F:\virus\virus.rar
C:\Program Files\Eset\nod32.exe - is OK
Operating memory - is OK
MBR sec ...

F:\virus\virus.rar ?RAR ?LSASSS.exe - error opening (Access denied) [4]
证明你的NOD32出问题了
KJLCN
发表于 2007-4-30 21:33:57 | 显示全部楼层
CA居然全部排除………………
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-11 21:52 , Processed in 0.119247 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表