卡饭论坛's Archiver



gankeyu 发表于 2008-8-19 17:27

x6,KIS7=4

UG (With KPS) = 6
UG (Without KPS) = 3

fzz8848 发表于 2008-8-19 17:29

Begin scan in 'E:\Download\x6.rar'
E:\Download\x6.rar
    [0] Archive type: RAR
    --> Flower.exe
      [DETECTION] Contains recognition pattern of the WORM/Nomlur.B.12 worm
    --> Ravsys.exe
      [DETECTION] Is the TR/Downloader.Gen Trojan
    --> schrars.exe
      [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    --> wdfmgr.exe
      [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    --> Xue.exe
      [DETECTION] Contains recognition pattern of the WORM/Nomlur.C.3 worm
    --> sbl.sys
      [DETECTION] Contains recognition pattern of the WORM/Nomlur.B.13 worm
    [NOTE]      The file was deleted!


End of the scan: 2008年8月19日星期二  17:29
Used time: 00:09 Minute(s)

The scan has been done completely.

      0 Scanning directories
      7 Files were scanned
      6 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      0 Warnings
      1 Notes

syfwxmh 发表于 2008-8-19 17:34

TO KL

卡巴007 发表于 2008-8-19 17:38

无法返回请求的网页

试图访问的网页:

[url]http://bbs.kafan.cn/attachment.php?aid=[/url]
338870&k=9f2f4b7522eb4375d8451d59a5af912
9&t=1219138614

发生下列错误:

请求的对象被感染,发现下列病毒 Worm.Win32.AutoRun.das


如有疑问,请联系您的技术支持
创建日期:
Tue Aug 19 17:37:09 2008
Kaspersky Lab

kemisoka 发表于 2008-8-19 17:41

Dr.Web直接殺[:14:]:
[quote]C:\Users\\AppData\Local\Temp\FmZB10mQ.rar.part\Flower.exe - infected with [b]Trojan.Warring[/b][/quote]

woai_jolin 发表于 2008-8-19 17:43

正在扫描日志
病毒库版本: 3366 (20080819)
日期: 2008-8-19  时间: 17:43:09
已扫描的磁盘、文件夹和文件: G:\v\x6.rar
G:\v\x6.rar > RAR > Flower.exe - 可能是 Win32/Genetik 特洛伊木马 的变种
G:\v\x6.rar > RAR > Ravsys.exe - 可能是 Win32/Genetik 特洛伊木马 的变种
G:\v\x6.rar > RAR > Xue.exe - 未查明的 NewHeur_PE 病毒 [7]
G:\v\x6.rar > RAR > sbl.sys - Win32/KillAV.NBW 特洛伊木马
已扫描的对象数: 7
发现的威胁数: 4
已清除对象数:0
完成时间: 17:43:27  总扫描时间: 18 秒 (00:00:18)

备注:
[7] 对象可能感染了未知病毒。

Nerazzurri 发表于 2008-8-19 18:24

2008-8-19        18:23:09        1219141389        Nerazzurri        256        Sign of "Win32:Agent-SIM [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\Flower.exe\[FSG]" file.  
2008-8-19        18:23:19        1219141399        Nerazzurri        256        Sign of "Win32:Delf-KWY [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\Ravsys.exe\[ASProtect]\[NsPack]" file.  
2008-8-19        18:23:19        1219141399        Nerazzurri        256        Sign of "Win32:Murlo-BV [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\Xue.exe" file.  
2008-8-19        18:23:19        1219141399        Nerazzurri        256        Sign of "Win32:Agent-UXM [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\x6.rar\sbl.sys" file.

wyyzaw 发表于 2008-8-19 20:14

小A不让下[:10:]

BING126 发表于 2008-8-19 20:22

McAfee   3个。。

ktyv 发表于 2008-8-19 20:47

kis2009拦了[:05:]

尤金卡巴斯基 发表于 2008-8-19 22:31

2008/8/19 22:30:35        已清除        木马程序 Trojan.Win32.Agent.hel        G:\Temp\Virus\x6.rar/sbl.sys               
2008/8/19 22:30:35        已清除        木马程序 Trojan-Downloader.Win32.Murlo.kc        G:\Temp\Virus\x6.rar/Xue.exe//FSG
2008/8/19 22:30:35        已清除        病毒 Worm.Win32.AutoRun.lro G:\Temp\Virus\x6.rar/Ravsys.exe  
2008/8/19 22:30:35        已清除        病毒 Worm.Win32.AutoRun.das G:\Temp\Virus\x6.rar/Flower.exe//FSG

[[i] 本帖最后由 尤金卡巴斯基 于 2008-8-19 22:33 编辑 [/i]]

qigang 发表于 2008-8-19 22:34

9/4

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.GameABC.a
病毒: Worm.Win32.Autorun.eqa   
病毒: Trojan.DL.Win32.Undef.bc
病毒: RootKit.Win32.SDTHooker.a

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.58.12

页: [1]

Powered by Discuz! Archiver 6.1.0  © 2001-2007 Comsenz Inc.