楼主: F-Secure
收起左侧

[病毒样本] 发几个很明显的病毒,杀不出来以后就不要用这个杀软扫描了。

[复制链接]
hj5abc
发表于 2007-5-24 20:53:42 | 显示全部楼层

回复 #3 mofunzone 的帖子

NOD32 杀了2个 ..不知道你的NOD32怎么了???

F:\20604.rar ?RAR ?20604.exe<病毒 - Win32/Adware.NewWeb 应用程序> - 是删除目标的一部分
F:\20604.rar ?RAR ?dodolook174.exe ?NSIS ?1043.exe ?NSIS ?acpidisk.sys<病毒 - Win32/Adware.Cinmus 应用程序 变种> - 是删除目标的一部分
真是层层深入啊..

[ 本帖最后由 hj5abc 于 2007-5-24 20:55 编辑 ]
aoyang
头像被屏蔽
发表于 2007-5-24 21:10:05 | 显示全部楼层
[:27:] 费尔扫描一个也没发现,那我该换什么杀软呢,请教楼主
taihuxian
发表于 2007-5-24 21:20:05 | 显示全部楼层

BD报5个

C:\Documents and Settings\Administrator\桌面\20604.rar=>20604.exe        Detected: Adware.NewWeb.DK
C:\Documents and Settings\Administrator\桌面\20604.rar=>20604.exe        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>20604.exe        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>ad_1740.exe=>(NSIS o)=>lzma_solid_nsis0001        Detected: Adware.Boran.EM
C:\Documents and Settings\Administrator\桌面\20604.rar=>ad_1740.exe=>(NSIS o)=>lzma_solid_nsis0001        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>ad_1740.exe=>(NSIS o)=>lzma_solid_nsis0001        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>bind_50417.exe        Infected: Generic.Malware.SWBdld.263EA747
C:\Documents and Settings\Administrator\桌面\20604.rar=>bind_50417.exe        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>bind_50417.exe        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0000        Detected: Adware.Cinmus.GN
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0000        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0000        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0000        Detected: Adware.Cinmus.GN
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0000        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0000        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0002        Detected: Adware.Cinmus.GN
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0002        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0002        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0003        Detected: Adware.Cinmus.GN
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0003        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>dodolook174.exe=>(NSIS o)=>lzma_nsis0002=>(NSIS o)=>lzma_nsis0003        Move failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>3026.exe        Infected: Trojan.Spy.Agent.NDW
C:\Documents and Settings\Administrator\桌面\20604.rar=>3026.exe        Disinfection failed
C:\Documents and Settings\Administrator\桌面\20604.rar=>3026.exe        Move failed
hkt988
发表于 2007-5-25 03:58:48 | 显示全部楼层
deleted: adware not-a-virus:AdWare.Win32.NewWeb.m        File: D:\下载文件夹\20604.rar\20604.exe
deleted: adware not-a-virus:AdWare.Win32.Boran.z        File: D:\下载文件夹\20604.rar\ad_1740.exe/stream/data0001
disinfected: virus Virus.Win32.Downloader.d        File: D:\下载文件夹\20604.rar\bind_50417.exe
deleted: adware not-a-virus:AdWare.Win32.Cinmus.j        File: D:\下载文件夹\20604.rar\dodolook174.exe/data0003/data0003
deleted: adware not-a-virus:AdWare.Win32.Cinmus.j        File: D:\下载文件夹\20604.rar\dodolook174.exe/data0003/data0004
deleted: adware not-a-virus:AdWare.Win32.IEHlpr.e        File: D:\下载文件夹\20604.rar\3026.exe
F-Secure
 楼主| 发表于 2007-5-25 09:03:11 | 显示全部楼层
原帖由 aoyang 于 2007-5-24 21:10 发表
[:27:] 费尔扫描一个也没发现,那我该换什么杀软呢,请教楼主

偶的版本是V7一进去实时监控就报警了,不可能一个都没扫到啊,在下是今天早上升级的。
福田
发表于 2007-5-25 09:16:23 | 显示全部楼层
我的红伞C版只报了一个!

剩下四个AVG报了两个
fireworld
发表于 2007-5-25 13:27:13 | 显示全部楼层
杀了两个 一个广告的貌似他没有杀
Redevil
发表于 2007-5-25 13:29:06 | 显示全部楼层
已检测到: 广告程序 not-a-virus:AdWare.Win32.NewWeb.m        URL: http://bbs.kafan.cn/attachment.php?aid=75133//20604.exe
hzp
发表于 2007-5-25 13:54:11 | 显示全部楼层
让我来看看!
tracydk
发表于 2007-5-25 13:57:37 | 显示全部楼层
Starting the file scan:

Begin scan in 'F:\样本\20604.rar'
F:\样本\20604.rar
  [0] Archive type: RAR
  --> bind_50417.exe
      [DETECTION] Contains code of the Windows virus W32/Downloader.C
      [INFO]      The file was deleted!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-16 03:29 , Processed in 0.091498 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表