卡饭论坛's Archiver



EQ2 发表于 2008-8-30 00:13

我的隔离区里面找到的

[:08:][:08:][:08:]不知道质量

hj5abc 发表于 2008-8-30 00:21

[font=Tahoma]Starting the file scan:[/font]

[font=Tahoma]Begin scan in 'G:\vicure'[/font]
[font=Tahoma]G:\vicure\vicure.exe[/font]
[font=Tahoma]      [DETECTION] Is the Trojan horse TR/Dldr.Agent.sos[/font]
[font=Tahoma]      [NOTE]      The file was deleted![/font]
[font=Tahoma]Begin scan in 'G:\Desktop'[/font]
[font=Tahoma]G:\Desktop\dvsetup_smile.exe[/font]
[font=Tahoma]      [DETECTION] Is the Trojan horse TR/Dldr.Agent.buc.1[/font]
[font=Tahoma]      [NOTE]      The file was deleted![/font]
[font=Tahoma]G:\Desktop\pu_setup.exe[/font]
[font=Tahoma]      [DETECTION] Is the Trojan horse TR/Dldr.Agent.jlu[/font]
[font=Tahoma]      [NOTE]      The file was deleted![/font]
[font=Tahoma]G:\Desktop\vicbk.exe[/font]
[font=Tahoma]      [DETECTION] Is the Trojan horse TR/Dldr.Agent.exs.7[/font]
[font=Tahoma]      [NOTE]      The file was deleted![/font]
[font=Tahoma]G:\Desktop\vicrbm2.exe[/font]
[font=Tahoma]      [DETECTION] Is the Trojan horse TR/Dldr.Agent.exs.18[/font]
[font=Tahoma]      [NOTE]      The file was deleted![/font]

尤金卡巴斯基 发表于 2008-8-30 01:55

2008/8/30 1:54:46        已清除        木马程序 Trojan-Downloader.Win32.Agent.buc        G:\Temp\Virus\Desktop.zip/Desktop/dvsetup_smile.exe               
2008/8/30 1:54:46        已清除        木马程序 Trojan-Downloader.Win32.Agent.jlu        G:\Temp\Virus\Desktop.zip/Desktop/pu_setup.exe               
2008/8/30 1:54:46        已清除        木马程序 Trojan-Downloader.Win32.Agent.exs        G:\Temp\Virus\Desktop.zip/Desktop/vicbk.exe               
2008/8/30 1:54:46        已清除        木马程序 Trojan-Downloader.Win32.Agent.exs        G:\Temp\Virus\Desktop.zip/Desktop/vicrbm2.exe               
2008/8/30 1:54:46        已清除        木马程序 Trojan-Downloader.Win32.Agent.sos        G:\Temp\Virus\vicure.zip/vicure.exe//PE_Patch.UPX//UPX

huangxinster 发表于 2008-8-30 07:13

[attach]346950[/attach]
[attach]346951[/attach]

Palkia 发表于 2008-8-30 07:54

C:\Documents and Settings\Administrator\桌面\Desktop.zip>>Desktop\dvsetup_smile.exe        TrojanDownloader.Agent.buc.ksuw        木马        还未处理
C:\Documents and Settings\Administrator\桌面\Desktop.zip>>Desktop\pu_setup.exe        TrojanDownloader.Agent.vsn.jycl        木马        还未处理
C:\Documents and Settings\Administrator\桌面\Desktop.zip>>Desktop\vicbk.exe        TrojanDownloader.Agent.exs.nmgi        木马        还未处理
C:\Documents and Settings\Administrator\桌面\Desktop.zip>>Desktop\vicrbm2.exe        TrojanDownloader.Agent.exs.hmbv        木马        还未处理
C:\Documents and Settings\Administrator\桌面\vicure.zip>>vicure.exe        TrojanDownloader.Agent.sos.lbkx        木马        还未处理

allinwonderi 发表于 2008-8-30 08:45

ArcaVir2008

[Scanning : C:\Download Files]


C:\Download Files\Desktop.zip<ZIP>:dvsetup_smile.exe <- Downloader.Agent.Buc : No action
C:\Download Files\Desktop.zip<ZIP>:pu_setup.exe <- Downloader.Agent.Jlu : No action
C:\Download Files\Desktop.zip<ZIP>:vicbk.exe <- Downloader.Agent.Exs : No action
C:\Download Files\vicure.zip<ZIP>:vicure.exe<UPX>:vicure.exe <- Downloader.Agent.Sos : No action



Scanned objects : 13

Infected objects : 4

allinwonderi 发表于 2008-8-30 08:46

F-Prot 4.4.4

<W32/Downldr2.MGA (确切, not disinfectable)>        C:\Download Files\Desktop.zip->Desktop/dvsetup_smile.exe                  <W32/Trojan2.AFIP (确切, not disinfectable)>        C:\Download Files\Desktop.zip->Desktop/pu_setup.exe
<W32/Downldr2.BBWE (确切, not disinfectable)>        C:\Download Files\Desktop.zip->Desktop/vicbk.exe
<W32/Downldr2.AKTZ (确切, not disinfectable)>        C:\Download Files\Desktop.zip->Desktop/vicrbm2.exe

woai_jolin 发表于 2008-8-30 09:00

Scan Log
Version of virus signature database: 3401 (20080829)
Date: 2008-8-30  Time: 9:01:31
Scanned disks, folders and files: G:\v\Desktop.zip
G:\v\Desktop.zip &raquo; ZIP &raquo; Desktop/dvsetup_smile.exe - probably a variant of Win32/TrojanDownloader.Agent trojan - was a part of the deleted object
G:\v\Desktop.zip &raquo; ZIP &raquo; Desktop/pu_setup.exe - Win32/Adware.PointUrl application - was a part of the deleted object
G:\v\Desktop.zip &raquo; ZIP &raquo; Desktop/vicbk.exe - probably a variant of Win32/TrojanDownloader.Agent trojan - was a part of the deleted object
G:\v\Desktop.zip &raquo; ZIP &raquo; Desktop/vicrbm2.exe - probably a variant of Win32/TrojanDownloader.Agent trojan - was a part of the deleted object
Number of scanned objects: 4
Number of threats found: 4
Number of cleaned objects: 4
Time of completion: 9:01:31  Total scanning time: 0 sec (00:00:00)

woai_jolin 发表于 2008-8-30 09:01

Scan Log
Version of virus signature database: 3401 (20080829)
Date: 2008-8-30  Time: 9:02:04
Scanned disks, folders and files: G:\v\vicure.zip
G:\v\vicure.zip &raquo; ZIP &raquo; vicure.exe - probably a variant of Win32/TrojanDownloader.Agent trojan - was a part of the deleted object
Number of scanned objects: 1
Number of threats found: 1
Number of cleaned objects: 1
Time of completion: 9:02:05  Total scanning time: 1 sec (00:00:01)

sanhu35 发表于 2008-8-30 17:20

看来质量不行[:07:] [:15:] [:16:]

sanhu35 发表于 2008-8-30 17:21

4楼C盘是NTFS吧

qigang 发表于 2008-8-30 19:53

8/2

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.DL.Win32.Agent.buc
病毒: Trojan.DL.Win32.Undef.cu

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.59.52

328397663 发表于 2008-10-26 23:24

回复 1楼 EQ2 的帖子

2008-10-26 23:26:32        Detected: Trojan-Downloader.Win32.Agent.sos        C:\Documents and Settings\Administrator\桌面\vicure.zip/vicure.exe/PE_Patch.UPX/UPX               
2008-10-26 23:26:33        Deleted: Trojan-Downloader.Win32.Agent.sos        C:\Documents and Settings\Administrator\桌面\vicure.zip/vicure.exe               
2008-10-26 23:26:33        Detected: Trojan-Downloader.Win32.Agent.buc        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/dvsetup_smile.exe               
2008-10-26 23:26:33        Deleted: Trojan-Downloader.Win32.Agent.buc        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/dvsetup_smile.exe               
2008-10-26 23:26:33        Detected: Trojan-Downloader.Win32.Agent.jlu        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/pu_setup.exe               
2008-10-26 23:26:33        Deleted: Trojan-Downloader.Win32.Agent.jlu        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/pu_setup.exe               
2008-10-26 23:26:33        Detected: Trojan-Downloader.Win32.Agent.exs        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/vicbk.exe               
2008-10-26 23:26:33        Deleted: Trojan-Downloader.Win32.Agent.exs        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/vicbk.exe               
2008-10-26 23:26:33        Detected: Trojan-Downloader.Win32.Agent.exs        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/vicrbm2.exe               
2008-10-26 23:26:33        Deleted: Trojan-Downloader.Win32.Agent.exs        C:\Documents and Settings\Administrator\桌面\Desktop.zip/Desktop/vicrbm2.exe

liu5678 发表于 2008-11-2 17:40

直接给拦截掉了。。
郁闷。

页: [1]

Powered by Discuz! Archiver 6.1.0  © 2001-2007 Comsenz Inc.