查看: 5113|回复: 17
收起左侧

[病毒样本] 被MCAFEE隔离的25个样本

[复制链接]
小邪邪
发表于 2007-5-16 23:52:18 | 显示全部楼层 |阅读模式
都是已被MCAFEE隔离的,大家扫扫看

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-5-16 23:56:34 | 显示全部楼层

nod32还留了两个等偶去上报

Scan performed at: 2007-5-16 23:55:45
Scanning Log
NOD32 version 2271 (20070516) NT
Command line: C:\Documents and Settings\EQ2\桌面\已隔离文件
Operating memory - is OK

Date: 16.5.2007  Time: 23:55:53
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\已隔离文件\
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\0.exe - a variant of Win32/TrojanDownloader.Delf.BHO trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\10.exe - probably a variant of Win32/TrojanDownloader.Delf.BHO trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\1631[1].EXE - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\1632[1].EXE - a variant of Win32/PSW.Legendmir.NEP trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\1634[1].EXE - a variant of Win32/PSW.Agent.NCC trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\1[2].jpg - a variant of Win32/TrojanDownloader.Ani.Gen trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\2[2].jpg - a variant of Win32/TrojanDownloader.Ani.Gen trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\a1[1].jpg - a variant of Win32/TrojanDownloader.Ani.Gen trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\ban[1].js - a variant of Win32/TrojanDownloader.Ani.Gen trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\BT6.EXE - a variant of Win32/PSW.Legendmir.NEP trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\hjjasd[1].jpg - a variant of Win32/TrojanDownloader.Ani.Gen trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\love.exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\love[1].exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\msinfo.exe - a variant of Win32/TrojanDownloader.Delf.BHO trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\NORTON.SYS - a variant of Win32/Rootkit.Vanti.EE trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\nwlookup.exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\PAGEFILE.PIF - probably a variant of Win32/Small.NAV worm
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\pu.exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\qq.exe - probably a variant of Win32/TrojanDownloader.Delf.BHO trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\RichDll.dll - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\rundl132.exe - Win32/Viking.CZ virus - quarantined - unable to clean - deleted
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\srveter.exe - probably a variant of Win32/TrojanDownloader.Delf.BHO trojan
C:\Documents and Settings\EQ2\桌面\已隔离文件\已隔离文件\t[1].js - a variant of Win32/TrojanDownloader.Ani.Gen trojan
Number of scanned files: 25
Number of threats found: 23
Number of files cleaned: 23
Time of completion: 23:56:05 Total scanning time: 12 sec (00:00:12)
wangjay1980
发表于 2007-5-16 23:59:12 | 显示全部楼层
detected: malware Exploit.Win32.IMG-ANI.ac        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\1[2].jpg
detected: malware Exploit.Win32.IMG-ANI.ac        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\2[2].jpg
detected: malware Exploit.Win32.IMG-ANI.k        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\a1[1].jpg
detected: malware Exploit.Win32.IMG-ANI.x        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\ban[1].js
detected: malware Exploit.Win32.IMG-ANI.ac        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\hjjasd[1].jpg
detected: malware Exploit.Win32.IMG-ANI.gen (modification)        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\t[1].js
detected: Trojan program Trojan-Downloader.Win32.Delf.bko        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\10.exe//PE_Patch.NSAnti//NSAnti//PE_Patch.UPX//UPX
detected: Trojan program Trojan-Downloader.Win32.Delf.bjy        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\0.exe//UPack
detected: Trojan program Trojan-Dropper.Win32.Small.axi        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\love.exe//UPack
detected: virus Worm.Win32.Viking.lj        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\pu.exe
detected: virus Trojan.Generic (modification)        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\qq.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rc        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\1631[1].EXE
detected: Trojan program Trojan-PSW.Win32.OnLineGames.es        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\1634[1].EXE
detected: Trojan program Trojan-Dropper.Win32.Small.axi        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\love[1].exe//UPack
detected: Trojan program Trojan-Downloader.Win32.Delf.bjy        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\msinfo.exe//UPack
detected: virus Worm.Win32.Viking.lj        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\nwlookup.exe
detected: Trojan program Trojan.Win32.Pakes.c        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\PAGEFILE.PIF
detected: virus Worm.Win32.Viking.lj        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\RichDll.dll//Petite
detected: virus Worm.Win32.Viking.lj        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\rundl132.exe
detected: virus Trojan.Generic (modification)        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\srveter.exe//UPack
detected: Trojan program Rootkit.Win32.Agent.ez        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\NORTON.SYS
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ta        File: C:\Documents and Settings\Owner\×ÀÃæ\ÒѸôÀëÎļþ.rar/ÒѸôÀëÎļþ\ztso.exe//PE_Patch.NSAnti//NSAnti
harry_chang2003
头像被屏蔽
发表于 2007-5-17 00:00:48 | 显示全部楼层
趨勢已知17
中國病毒碼啟發式:3
Intellitrap技術3隻

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
欠妳緈諨
发表于 2007-5-17 00:17:31 | 显示全部楼层
23

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-5-17 00:18:04 | 显示全部楼层
斯洛伐克和捷克。。。。。
Nblock
发表于 2007-5-17 00:19:20 | 显示全部楼层
原帖由 欠你幸福 于 2007-5-17 00:17 发表
23



avast!  蛮酷的嘛
carlcai
发表于 2007-5-17 00:21:59 | 显示全部楼层
诺顿22个!哈哈
Giggs
发表于 2007-5-17 00:33:53 | 显示全部楼层
Start of the scan: 2007年5月17日  00:32

Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\已隔离文件.rar'
C:\Documents and Settings\Administrator\桌面\已隔离文件.rar
  [0] Archive type: RAR
  --> ÒѸôÀëÎļþ\1[2].jpg
      [DETECTION] Contains signature of the exploits EXP/Ani.Gen
  --> ÒѸôÀëÎļþ\2[2].jpg
      [DETECTION] Contains signature of the exploits EXP/Ani.Gen
  --> ÒѸôÀëÎļþ\a1[1].jpg
      [DETECTION] Contains signature of the exploits EXP/Ani.Gen
  --> ÒѸôÀëÎļþ\ban[1].js
      [DETECTION] Contains signature of the exploits EXP/Ani.Gen
  --> ÒѸôÀëÎļþ\hjjasd[1].jpg
      [DETECTION] Contains signature of the exploits EXP/Ani.Gen
  --> ÒѸôÀëÎļþ\t[1].js
      [DETECTION] Contains signature of the exploits EXP/Ani.Gen
  --> ÒѸôÀëÎļþ\10.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSAnti.Gen
  --> ÒѸôÀëÎļþ\0.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> ÒѸôÀëÎļþ\BT6.EXE
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.ava.1
  --> ÒѸôÀëÎļþ\love.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
  --> ÒѸôÀëÎļþ\pu.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
  --> ÒѸôÀëÎļþ\qq.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> ÒѸôÀëÎļþ\1631[1].EXE
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ES.2150
  --> ÒѸôÀëÎļþ\1632[1].EXE
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.ava.1
  --> ÒѸôÀëÎļþ\1634[1].EXE
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ES.2419
  --> ÒѸôÀëÎļþ\love[1].exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
  --> ÒѸôÀëÎļþ\msinfo.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> ÒѸôÀëÎļþ\nwlookup.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
  --> ÒѸôÀëÎļþ\PAGEFILE.PIF
      [DETECTION] Contains signature of the exploits EXP/IMG.WMF
  --> ÒѸôÀëÎļþ\RichDll.dll
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
  --> ÒѸôÀëÎļþ\rundl132.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.AF.2
  --> ÒѸôÀëÎļþ\srveter.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> ÒѸôÀëÎļþ\NORTON.SYS
      [DETECTION] Is the Trojan horse TR/Rootkit.Vanti.EE
  --> ÒѸôÀëÎļþ\ztso.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSAnti.Gen
      [INFO]      A backup was created as 'c006c8ce.qua'  ( QUARANTINE )
      [INFO]      The file was deleted!


End of the scan: 2007年5月17日  00:32
Used time: 00:08 min

The scan has been done completely.

      0 Scanning directories
     27 Files were scanned
     24 viruses and/or unwanted programs were found
      0 classified as suspicious:
      1 files were deleted
      0 files were repaired
      1 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      3 Files not concerned
      1 Archives were scanned
      0 Warnings
      0 Notes
      0 Hidden objects were found
mofunzone
发表于 2007-5-17 06:19:22 | 显示全部楼层
mcafee把pcflank的防火墙测试的东西都隔离了。。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-12 09:41 , Processed in 0.135041 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表