【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

顯示結果從第 1 筆 到 7 筆,共計 7 筆
  1. #1
    會員 Donna 的大頭照
    註冊日期
    2001-12-09
    所在地區
    光世代100M/100M 50M/10M
    討論區文章
    257

    【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    自己打的,不知到要不要打轉貼阿~~

    http://billtu2002.spaces.live.com/bl...DA53!145.entry



  2. #2
    會員 Donna 的大頭照
    註冊日期
    2001-12-09
    所在地區
    光世代100M/100M 50M/10M
    討論區文章
    257

    回覆: 【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    病毒樣本 下載
    http://cid-603ef3171860da53.skydrive...px/VirusSample


    共有三個rar 壓縮檔案,因為 上傳檔案大小限制,所以切割檔案。
    第二層壓縮檔案 virus.rar 解壓縮密碼 123 ,請小心服用。

  3. #3
    會員 Donna 的大頭照
    註冊日期
    2001-12-09
    所在地區
    光世代100M/100M 50M/10M
    討論區文章
    257

    回覆: 【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    今天花了點時間,重新找到讓我中毒的源檔,有興趣可以下載看看。

    Virus_Password123.rar 密碼 123


    請務必小心。

    然後試試看小紅傘掃的到掃不到

    Avira AntiVir Personal
    Report file date: 2008年5月26日 23:49
    Scanning for 1292650 virus strains and unwanted programs.
    Licensed to: Avira AntiVir PersonalEdition Classic
    Platform: Windows XP
    Windows version: (Service Pack 2) [5.1.2600]
    Boot mode: Normally booted
    Username: Administrator
    Version information:
    BUILD.DAT : 8.1.00.295 16479 Bytes 2008/4/9 16:24:00
    AVSCAN.EXE : 8.1.2.12 311553 Bytes 2008/3/18 03:02:56
    AVSCAN.DLL : 8.1.1.0 53505 Bytes 2008/2/7 02:43:37
    LUKE.DLL : 8.1.2.9 151809 Bytes 2008/2/28 02:41:23
    LUKERES.DLL : 8.1.2.1 12033 Bytes 2008/2/21 02:28:40
    ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007/7/18 04:33:34
    ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 2008/3/7 07:08:58
    ANTIVIR2.VDF : 7.0.4.53 1848832 Bytes 2008/5/17 12:39:34
    ANTIVIR3.VDF : 7.0.4.93 240128 Bytes 2008/5/26 12:38:10
    Engineversion : 8.1.0.46
    AEVDF.DLL : 8.1.0.5 102772 Bytes 2008/2/25 03:58:21
    AESCRIPT.DLL : 8.1.0.33 266618 Bytes 2008/5/24 12:40:10
    AESCN.DLL : 8.1.0.18 119156 Bytes 2008/5/24 12:40:09
    AERDL.DLL : 8.1.0.20 418165 Bytes 2008/5/24 12:40:08
    AEPACK.DLL : 8.1.1.5 364918 Bytes 2008/5/24 12:40:04
    AEOFFICE.DLL : 8.1.0.18 192890 Bytes 2008/5/24 12:40:00
    AEHEUR.DLL : 8.1.0.29 1253750 Bytes 2008/5/24 12:39:57
    AEHELP.DLL : 8.1.0.14 115063 Bytes 2008/5/24 12:39:50
    AEGEN.DLL : 8.1.0.21 303477 Bytes 2008/5/24 12:39:48
    AEEMU.DLL : 8.1.0.6 430451 Bytes 2008/5/24 12:39:44
    AECORE.DLL : 8.1.0.29 168311 Bytes 2008/5/24 12:39:41
    AVWINLL.DLL : 1.0.0.7 14593 Bytes 2008/1/23 11:07:53
    AVPREF.DLL : 8.0.0.1 25857 Bytes 2008/2/18 04:37:50
    AVREP.DLL : 7.0.0.1 155688 Bytes 2007/4/16 07:26:47
    AVREG.DLL : 8.0.0.0 30977 Bytes 2008/1/23 11:07:49
    AVARKT.DLL : 1.0.0.23 307457 Bytes 2008/2/12 02:29:23
    AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 2008/2/28 02:31:31
    SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008/1/22 11:28:02
    SMTPLIB.DLL : 1.2.0.19 28929 Bytes 2008/1/23 11:08:39
    NETNT.DLL : 8.0.0.1 7937 Bytes 2008/1/25 06:05:10
    RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 2008/3/10 08:37:25
    RCTEXT.DLL : 8.0.32.0 86273 Bytes 2008/3/6 06:02:11
    Configuration settings for the scan:
    Jobname..........................: My Documents
    Configuration file...............: c:\program files\avira\antivir personaledition classic\mydocs.avp
    Logging..........................: low
    Primary action...................: interactive
    Secondary action.................: ignore
    Scan master boot sector..........: on
    Scan boot sector.................: on
    Boot sectors.....................: C:,
    Scan memory......................: on
    Process scan.....................: on
    Scan registry....................: on
    Search for rootkits..............: off
    Scan all files...................: Intelligent file selection
    Scan archives....................: on
    Recursion depth..................: 20
    Smart extensions.................: on
    Macro heuristic..................: on
    File heuristic...................: medium
    Start of the scan: 2008年5月26日 23:49
    The scan of running processes will be started
    [刪除部分]
    Starting the file scan:
    Begin scan in 'C:\Documents and Settings\Administrator\My Documents'

    End of the scan: 2008年5月26日 23:52
    Used time: 03:11 min
    The scan has been done completely.
    161 Scanning directories
    4602 Files were scanned
    0 viruses and/or unwanted programs were found
    0 Files were classified as suspicious:
    0 files were deleted
    0 files were repaired
    0 files were moved to quarantine
    0 files were renamed
    0 Files cannot be scanned
    4602 Files not concerned
    1 Archives were scanned
    0 Warnings
    0 Notes

    耶~~~~ 還是掃不到

    更新病毒碼
    26.05.2008 23:54:41 - C:\Program Files\Avira\AntiVir PersonalEdition Classic\antivir3.vdf 7.0.4.93 < 7.0.4.95
    Avira AntiVir Personal
    Report file date: 2008年5月26日 23:56
    Scanning for 1292849 virus strains and unwanted programs.
    Licensed to: Avira AntiVir PersonalEdition Classic
    Platform: Windows XP
    Windows version: (Service Pack 2) [5.1.2600]
    Boot mode: Normally booted
    Username: Administrator
    Version information:
    BUILD.DAT : 8.1.00.295 16479 Bytes 2008/4/9 16:24:00
    AVSCAN.EXE : 8.1.2.12 311553 Bytes 2008/3/18 03:02:56
    AVSCAN.DLL : 8.1.1.0 53505 Bytes 2008/2/7 02:43:37
    LUKE.DLL : 8.1.2.9 151809 Bytes 2008/2/28 02:41:23
    LUKERES.DLL : 8.1.2.1 12033 Bytes 2008/2/21 02:28:40
    ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007/7/18 04:33:34
    ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 2008/3/7 07:08:58
    ANTIVIR2.VDF : 7.0.4.53 1848832 Bytes 2008/5/17 12:39:34
    ANTIVIR3.VDF : 7.0.4.95 243712 Bytes 2008/5/26 15:54:46
    Engineversion : 8.1.0.46
    AEVDF.DLL : 8.1.0.5 102772 Bytes 2008/2/25 03:58:21
    AESCRIPT.DLL : 8.1.0.33 266618 Bytes 2008/5/24 12:40:10
    AESCN.DLL : 8.1.0.18 119156 Bytes 2008/5/24 12:40:09
    AERDL.DLL : 8.1.0.20 418165 Bytes 2008/5/24 12:40:08
    AEPACK.DLL : 8.1.1.5 364918 Bytes 2008/5/24 12:40:04
    AEOFFICE.DLL : 8.1.0.18 192890 Bytes 2008/5/24 12:40:00
    AEHEUR.DLL : 8.1.0.29 1253750 Bytes 2008/5/24 12:39:57
    AEHELP.DLL : 8.1.0.14 115063 Bytes 2008/5/24 12:39:50
    AEGEN.DLL : 8.1.0.21 303477 Bytes 2008/5/24 12:39:48
    AEEMU.DLL : 8.1.0.6 430451 Bytes 2008/5/24 12:39:44
    AECORE.DLL : 8.1.0.29 168311 Bytes 2008/5/24 12:39:41
    AVWINLL.DLL : 1.0.0.7 14593 Bytes 2008/1/23 11:07:53
    AVPREF.DLL : 8.0.0.1 25857 Bytes 2008/2/18 04:37:50
    AVREP.DLL : 7.0.0.1 155688 Bytes 2007/4/16 07:26:47
    AVREG.DLL : 8.0.0.0 30977 Bytes 2008/1/23 11:07:49
    AVARKT.DLL : 1.0.0.23 307457 Bytes 2008/2/12 02:29:23
    AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 2008/2/28 02:31:31
    SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008/1/22 11:28:02
    SMTPLIB.DLL : 1.2.0.19 28929 Bytes 2008/1/23 11:08:39
    NETNT.DLL : 8.0.0.1 7937 Bytes 2008/1/25 06:05:10
    RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 2008/3/10 08:37:25
    RCTEXT.DLL : 8.0.32.0 86273 Bytes 2008/3/6 06:02:11
    Configuration settings for the scan:
    Jobname..........................: My Documents
    Configuration file...............: c:\program files\avira\antivir personaledition classic\mydocs.avp
    Logging..........................: low
    Primary action...................: interactive
    Secondary action.................: ignore
    Scan master boot sector..........: on
    Scan boot sector.................: on
    Boot sectors.....................: C:,
    Scan memory......................: on
    Process scan.....................: on
    Scan registry....................: on
    Search for rootkits..............: off
    Scan all files...................: Intelligent file selection
    Scan archives....................: on
    Recursion depth..................: 20
    Smart extensions.................: on
    Macro heuristic..................: on
    File heuristic...................: medium
    Start of the scan: 2008年5月26日 23:56
    The scan of running processes will be started
    [刪除部分]
    Starting the file scan:
    Begin scan in 'C:\Documents and Settings\Administrator\My Documents'
    C:\Documents and Settings\Administrator\My Documents\USB_Monitor_2.37\USB_Monitor_2.37.exe
    [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QJ
    [WARNING] The file was ignored!


    End of the scan: 2008年5月26日 23:57
    Used time: 01:25 min
    The scan has been done completely.
    161 Scanning directories
    4602 Files were scanned
    1 viruses and/or unwanted programs were found
    0 Files were classified as suspicious:
    0 files were deleted
    0 files were repaired
    0 files were moved to quarantine
    0 files were renamed
    0 Files cannot be scanned
    4601 Files not concerned
    1 Archives were scanned
    1 Warnings
    0 Notes
    呵呵 ~~ 終於掃到了
    附加檔案 附加檔案

  4. #4
    You can call me sexy baby ㄚ一 的大頭照
    註冊日期
    2001-12-20
    所在地區
    小水管
    討論區文章
    1,175

    回覆: 【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    隱藏安裝驅動後會破壞當前的AV




    2008/5/28 W 09:16:09 Setting debug privileges Denied: KLPrivileges/KLPermissionSystem/KLPermissionPrivileges/KLSetDbgPrivilege
    2008/5/28 W 09:16:09 Modification hklm\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system Denied: KLSystemData/KLSystemSecRegKeys/Policies_System
    2008/5/28 W 09:16:09 Modification hkey_users\S-1-5-21-796845957-220523388-725345543-500\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced Denied: KLSystemData/KLSystemSecRegKeys/Policies_Explorer2
    2008/5/28 W 09:16:11 Create C:\WINDOWS\system32\drivers\mdelk.exe Denied: KLSystemData/KLSystemFiles/SystemExe
    2008/5/28 W 09:16:17 Create C:\WINDOWS\system32\drivers\hldrrr.exe Denied: KLSystemData/KLSystemFiles/SystemExe
    Lawliet's blog
    Folding@home with GPGPU集中討論串,大家一起來努力朝著全球制霸的目標邁進!


  5. #5
    미래의 우주독재자 지롱~
    註冊日期
    2007-08-10
    所在地區
    10매가/2매가
    討論區文章
    276

    回覆: 【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    真是凶悍啊,我的小紅傘也是有同樣的情況,把這問題回報給小紅傘官方吧!



  6. #6
    會員
    註冊日期
    2002-06-18
    討論區文章
    20

    生氣 回覆: 【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    我的小紅傘剛更新完病毒碼, 依然是偵測不到.

  7. #7
    會員
    註冊日期
    2005-07-25
    討論區文章
    20

    回覆: 【病毒】會關閉小紅傘的病毒 [DETECTION] Is the Trojan horse TR/Dldr.Bagle.QD

    avira解壓縮時,可掃到

類似的主題

  1. 【病毒定義檔】小紅傘有Beta版的病毒定義檔?
    作者:noeleon930 所在討論版:-- 防 駭 / 防 毒 版
    回覆: 0
    最後發表: 2008-11-22, 11:56 PM
  2. 【病毒】email 附件夾帶病毒, 小紅傘只掃到一個
    作者:pete001 所在討論版:-- 防 駭 / 防 毒 版
    回覆: 5
    最後發表: 2008-10-30, 01:05 PM
  3. 【問題】小紅傘擋的住 21cnyl.com 這隻病毒/蠕蟲 嗎?
    作者:arlona 所在討論版:-- 防 駭 / 防 毒 版
    回覆: 18
    最後發表: 2008-05-21, 12:48 PM
  4. 【軟體求助】求助中了一個越來越多的病毒Trojan Horse
    作者:strawberrygirl 所在討論版:-- HELP ME 電 腦 軟 硬 體 急 救 版
    回覆: 8
    最後發表: 2008-05-15, 08:54 PM
  5. 【求助】我中了Trojan Horse病毒,無法刪除怎麼辦?
    作者:COUNTERSTRIKE 所在討論版:-- 防 駭 / 防 毒 版
    回覆: 6
    最後發表: 2003-06-04, 12:03 AM

 

小紅傘 上傳不到100M

發表文章規則

  • 不可以發表新主題
  • 不可以回覆文章
  • 不可以上傳附加檔案
  • 不可以編輯自己的文章
  •