x6,KIS7=4
UG (With KPS) = 6UG (Without KPS) = 3 Begin scan in 'E:\Download\x6.rar'
E:\Download\x6.rar
[0] Archive type: RAR
--> Flower.exe
[DETECTION] Contains recognition pattern of the WORM/Nomlur.B.12 worm
--> Ravsys.exe
[DETECTION] Is the TR/Downloader.Gen Trojan
--> schrars.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
--> wdfmgr.exe
[DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
--> Xue.exe
[DETECTION] Contains recognition pattern of the WORM/Nomlur.C.3 worm
--> sbl.sys
[DETECTION] Contains recognition pattern of the WORM/Nomlur.B.13 worm
[NOTE] The file was deleted!
End of the scan: 2008年8月19日星期二 17:29
Used time: 00:09 Minute(s)
The scan has been done completely.
0 Scanning directories
7 Files were scanned
6 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
1 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
0 Files cannot be scanned
1 Files not concerned
1 Archives were scanned
0 Warnings
1 Notes TO KL 无法返回请求的网页
试图访问的网页:
[url]http://bbs.kafan.cn/attachment.php?aid=[/url]
338870&k=9f2f4b7522eb4375d8451d59a5af912
9&t=1219138614
发生下列错误:
请求的对象被感染,发现下列病毒 Worm.Win32.AutoRun.das
如有疑问,请联系您的技术支持
创建日期:
Tue Aug 19 17:37:09 2008
Kaspersky Lab Dr.Web直接殺[:14:]:
[quote]C:\Users\\AppData\Local\Temp\FmZB10mQ.rar.part\Flower.exe - infected with [b]Trojan.Warring[/b][/quote] 正在扫描日志
病毒库版本: 3366 (20080819)
日期: 2008-8-19 时间: 17:43:09
已扫描的磁盘、文件夹和文件: G:\v\x6.rar
G:\v\x6.rar > RAR > Flower.exe - 可能是 Win32/Genetik 特洛伊木马 的变种
G:\v\x6.rar > RAR > Ravsys.exe - 可能是 Win32/Genetik 特洛伊木马 的变种
G:\v\x6.rar > RAR > Xue.exe - 未查明的 NewHeur_PE 病毒 [7]
G:\v\x6.rar > RAR > sbl.sys - Win32/KillAV.NBW 特洛伊木马
已扫描的对象数: 7
发现的威胁数: 4
已清除对象数:0
完成时间: 17:43:27 总扫描时间: 18 秒 (00:00:18)
备注:
[7] 对象可能感染了未知病毒。 2008-8-19 18:23:09 1219141389 Nerazzurri 256 Sign of "Win32:Agent-SIM [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\Flower.exe\[FSG]" file.
2008-8-19 18:23:19 1219141399 Nerazzurri 256 Sign of "Win32:Delf-KWY [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\Ravsys.exe\[ASProtect]\[NsPack]" file.
2008-8-19 18:23:19 1219141399 Nerazzurri 256 Sign of "Win32:Murlo-BV [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\Xue.exe" file.
2008-8-19 18:23:19 1219141399 Nerazzurri 256 Sign of "Win32:Agent-UXM [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\sbl.sys" file. 小A不让下[:10:] McAfee 3个。。 kis2009拦了[:05:] 2008/8/19 22:30:35 已清除 木马程序 Trojan.Win32.Agent.hel G:\Temp\Virus\x6.rar/sbl.sys
2008/8/19 22:30:35 已清除 木马程序 Trojan-Downloader.Win32.Murlo.kc G:\Temp\Virus\x6.rar/Xue.exe//FSG
2008/8/19 22:30:35 已清除 病毒 Worm.Win32.AutoRun.lro G:\Temp\Virus\x6.rar/Ravsys.exe
2008/8/19 22:30:35 已清除 病毒 Worm.Win32.AutoRun.das G:\Temp\Virus\x6.rar/Flower.exe//FSG
[[i] 本帖最后由 尤金卡巴斯基 于 2008-8-19 22:33 编辑 [/i]]
9/4
瑞星病毒查杀结果报告清除病毒种类列表:
病毒: Trojan.PSW.Win32.GameABC.a
病毒: Worm.Win32.Autorun.eqa
病毒: Trojan.DL.Win32.Undef.bc
病毒: RootKit.Win32.SDTHooker.a
MAC 地址:00:11:5B:F3:6D:69
用户来源:互联网
软件版本:20.58.12
页:
[1]