查看: 1985|回复: 9
收起左侧

[病毒样本] qqfzl.com样本,exe文件包1[MD5: 5FC51A 7889E5 8286B2 2DD7C0 58B8A3 3728AF BCA8AC]

[复制链接]
allenhippo
发表于 2007-6-9 14:25:52 | 显示全部楼层 |阅读模式


一共7个文件

[ 本帖最后由 allenhippo 于 2007-6-9 14:35 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-6-9 14:30:28 | 显示全部楼层
Scan performed at: 2007-6-9 14:32:14
Scanning Log
NOD32 version 2320 (20070609) NT
Command line: C:\Documents and Settings\EQ2\桌面\virus.rar
Operating memory - is OK

Date: 9.6.2007  Time: 14:32:19
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\EQ2\桌面\virus.rar
C:\Documents and Settings\EQ2\桌面\virus.rar ?RAR ?10.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\EQ2\桌面\virus.rar ?RAR ?11.exe - probably a variant of Win32/PSW.QQPass.VD trojan
C:\Documents and Settings\EQ2\桌面\virus.rar ?RAR ?7.exe ?RAR ?systemm.exe - Win32/Agent.NEK trojan - was a part of the deleted object
C:\Documents and Settings\EQ2\桌面\virus.rar ?RAR ?down[1].exe - Win32/Delf.BS worm - was a part of the deleted object
C:\Documents and Settings\EQ2\桌面\virus.rar ?RAR ?mhso.exe - Win32/Pacex.Gen virus
C:\Documents and Settings\EQ2\桌面\virus.rar ?RAR ?mydata.exe - a variant of Win32/PSW.Agent.NEW trojan
Number of scanned files: 12
Number of threats found: 6
Number of files cleaned: 1
Time of completion: 14:32:20 Total scanning time: 1 sec (00:00:01)

Notes:
[7] File is probably infected with an unknown virus.
红心王子
发表于 2007-6-9 14:31:43 | 显示全部楼层
费尔

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-6-9 14:31:57 | 显示全部楼层
Demo mode
Command line options:
/r=susp.rpt /ha=3 /collect_suspects /nc /af+ /ar+ /bt- /mr- /ml+ /rw+ /as-
Ctrl-C will terminate program execution

*:
C:\
C:\ABC\virus.rar:<RAR>\10.exe : infected BackDoor.Twin
C:\ABC\virus.rar:<RAR>\11.exe : is suspected of Trojan-Spy.Delf.13
C:\ABC\virus.rar:<RAR>\7.exe:<RAR>\systemm.exe : infected Trojan.Sniff
C:\ABC\virus.rar:<RAR>\down[1].exe : infected Win32.HLLW.Autoruner
C:\ABC\virus.rar:<RAR>\mydata.exe : infected Trojan-PSW.Win32.OnLineGames.qw
Program execution terminated by user


Directories       : 4       Files in archives:      Files on disks:
Archives:                   - total       : 12      - total       : 24
- scanned         : 2       -  scanned    : 12      - scanned     : 23
- contain viruses : 2       -  infected   : 5       - infected    : 1
- deleted         : 0       -  suspicious : 1       - suspicious  : 0

Startup    : 14:33:45 09-06-2007
End        : 14:33:50 09-06-2007
Total time : 00:00:05
终止批处理操作吗(Y/N)?
taihuxian
发表于 2007-6-9 14:32:21 | 显示全部楼层
BitDefender

This web page has been blocked by BitDefender Antivirus Real-time Protection!

The blocked web page included objects that were either infected or likely to be infected with a virus. Your system has NOT been infected.

Trojan.PWS.OnlineGames.AUP
GenPack:Win32.Worm.Delf.NCS
Backdoor.Agent.ALH
Generic.PWStealer.56D124F2
Trojan.PWS.Lmir.AII
rasis
发表于 2007-6-9 14:42:51 | 显示全部楼层
virus.rar
  [0] Archive type: RAR
  --> 10.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
  --> 11.exe
      [DETECTION] Is the Trojan horse TR/PSW.Steal.30823.1
  --> 15.exe
      [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/UPACK). Please verify the origin of the file
  --> 7.exe
      [DETECTION] Contains signature of the dropper DR/Agent.alh.1
      [1] Archive type: RAR SFX (self extracting)
      --> systemm.exe
          [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.alh Backdoor server programs
  --> down[1].exe
      [DETECTION] Is the Trojan horse TR/Dldr.Delf.bkz
  --> mhso.exe
      [DETECTION] Is the Trojan horse TR/Crypt.ULPM.Gen
  --> mydata.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.UF.57
kp2006
头像被屏蔽
发表于 2007-6-9 14:48:53 | 显示全部楼层
挂王avast!报三下 杀两个
wangjay1980
发表于 2007-6-9 14:54:24 | 显示全部楼层
detected: Trojan program Trojan-Downloader.Win32.Small.czl        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\virus.rar/10.exe//NSPack
detected: virus Virus.Win32.AutoRun.bp        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\virus.rar/11.exe//UPX
detected: Trojan program Backdoor.Win32.Agent.alh        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\virus.rar/7.exe//data.rar/systemm.exe//UPack
detected: Trojan program Trojan-Downloader.Win32.Delf.bkz        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\virus.rar/down[1].exe
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qw        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\virus.rar/mydata.exe//PE_Patch//UPack
1688388728
发表于 2007-6-9 19:05:11 | 显示全部楼层
virus

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
tracydk
发表于 2007-6-9 19:14:17 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-4 14:45 , Processed in 0.125143 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表