楼主: 火焰山
收起左侧

[病毒样本] 最惡心的毒網,紅傘報了那么多估計還有漏的

[复制链接]
The EQs
发表于 2007-5-16 22:23:10 | 显示全部楼层
Scan performed at: 2007-5-16 22:19:40
Scanning Log
NOD32 version 2270 (20070516) NT
Command line: C:\Documents and Settings\EQ2\桌面\a
Operating memory - is OK

Date: 16.5.2007  Time: 22:19:44
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\a\
C:\Documents and Settings\EQ2\桌面\a\a\0.exe - a variant of Win32/TrojanDownloader.Delf.BHO trojan
C:\Documents and Settings\EQ2\桌面\a\a\1.exe - a variant of Win32/PSW.Agent.NDF trojan
C:\Documents and Settings\EQ2\桌面\a\a\5.exe - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\a\a\6.exe - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\a\a\7.exe - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\a\a\8.exe - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\a\a\9.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\EQ2\桌面\a\a\bt1.exe - Win32/TrojanDropper.Small.NFH trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\a\a\bt2.exe - Win32/PSW.Agent.NDF trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\a\a\bt3.exe - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\a\a\bt4.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\EQ2\桌面\a\a\bt5.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\EQ2\桌面\a\a\bt6.exe - a variant of Win32/PSW.Legendmir.NEP trojan
C:\Documents and Settings\EQ2\桌面\a\a\bt7.exe - Win32/PSW.Agent.NFF trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\a\a\bt8.exe - a variant of Win32/PSW.Agent.NEW trojan
C:\Documents and Settings\EQ2\桌面\a\a\bt9.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\EQ2\桌面\a\a\love.exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\a\a\pu.exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\a\a\qq.exe - probably a variant of Win32/TrojanDownloader.Delf.BHO trojan
Number of scanned files: 19
Number of threats found: 19
Number of files cleaned: 19
Time of completion: 22:19:46 Total scanning time: 2 sec (00:00:02)

Notes:
[7] File is probably infected with an unknown virus.
mofunzone
发表于 2007-5-16 22:57:12 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\morgan\My Documents\a'
C:\Documents and Settings\morgan\My Documents\a\
  0.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
      [INFO]      The file was deleted!
  1.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [INFO]      The file was deleted!
  5.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [INFO]      The file was deleted!
  6.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.SD.7
      [INFO]      The file was deleted!
  7.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [INFO]      The file was deleted!
  8.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [INFO]      The file was deleted!
  9.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.TE.2
      [INFO]      The file was deleted!
  bt1.exe
      [DETECTION] Is the Trojan horse TR/Agent.nma.2
      [INFO]      The file was deleted!
  bt2.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QH.47
      [INFO]      The file was deleted!
  bt3.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
      [INFO]      The file was deleted!
  bt4.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.SX.18
      [INFO]      The file was deleted!
  bt5.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
      [INFO]      The file was deleted!
  bt6.exe
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.ava.1
      [INFO]      The file was deleted!
  bt7.exe
      [DETECTION] Is the Trojan horse TR/PSW.Nilage.bjp.17
      [INFO]      The file was deleted!
  bt8.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46831c39.qua'!
  bt9.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46841c39.qua'!
  love.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
      [INFO]      The file was deleted!
  pu.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
      [INFO]      The file was deleted!
  qq.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
      [INFO]      The file was deleted!


End of the scan: 2007年5月16日  07:57
Used time: 00:10 min

The scan has been done completely.

      1 Scanning directories
     19 Files were scanned
     19 viruses and/or unwanted programs were found
      2 classified as suspicious:
     17 files were deleted
      0 files were repaired
      2 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -2 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
      0 Hidden objects were found
woai_jolin
发表于 2007-5-19 16:09:09 | 显示全部楼层
6个
jeremy600832
发表于 2007-5-20 10:40:15 | 显示全部楼层
现在好像就一个黑客程序了
伯夷叔齐
发表于 2007-5-20 18:33:48 | 显示全部楼层
原帖由 tracydk 于 2007-5-16 16:03 发表

EAST要是在中国多出几千个EQ2的话,估计还是有希望


nod32现在还在编写企业的歌曲,都写了很多首了,据说还很好听,哪有时间看你上传的病毒....呵呵.
简直玩物丧志,斯洛伐克人的性格还真的......哎.....
Dlamantis
发表于 2007-5-20 19:15:32 | 显示全部楼层
那歌曲哪里有下载啊?
毛强的病毒实际上和好听的歌一样都会让人发狂的
Dlamantis
发表于 2007-5-20 19:17:51 | 显示全部楼层

nod32的歌曲哪里有下载?
实际上好听的歌和厉害的病毒一样都会让人发狂的
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-4 16:46 , Processed in 0.094435 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表