瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】偶的电脑中木马呢(高手下的套)偶跪求大侠帮助谢谢!

12   2  /  2  页   跳转

【求助】偶的电脑中木马呢(高手下的套)偶跪求大侠帮助谢谢!

引用:
【sanadayukimura的贴子】【回复“idn520”的帖子】



日志似乎还没有贴全……



请楼主使用下面的两个多引擎扫描器扫描下列文件:
C:\WINNT\system32\wodfamoh.dll
New.sys(搜索一下)
多引擎扫描之Virustotal:


多引擎扫描之Jotti:




请务必将报告贴全。
...........................
gototop
 

对不起大侠们~偶跑去聊天呢~偶认真看呢~马上把压缩(New.sys)的解压用http://virusscan.jotti.org/扫描,也扫描呢(wodfamoh.dll)用http://www.virustotal.com/这个扫描后复制不下来!
-------------------------------------------------

Service load:  0%        100% 

File:  New.sys 
Status:  POSSIBLY INFECTED/MALWARE (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database) (Note: this file was only classified as malware by scanners known to generate more false positives than the average scanner. Do not consider these results definately accurate. Also, because of this, results of this scan will not be recorded in the database.) 
MD5  79b0dd5f393c132f7a84b7dbf85a9f40 
Packers detected:  -
Scanner results 
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
Fortinet  Found PossibleThreat 
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
UNA  Found nothing
VBA32  Found nothing
 
-------------------------------------------------------------
Service load:  0%        100% 

File:  wodfamoh.dll 
Status:  MIGHT BE INFECTED/MALWARE (Sandbox emulation took a long time and/or runtime packers were found, this is suspicious. Normally programs aren't packed and don't force the sandbox into lengthy emulation. Do realize no scanner issued any warning, the file can very well be harmless. Caution is advised, however.) 
MD5  f6a32c18862c55630eaf35111782fbea 
Packers detected:  ASPACK
Scanner results 
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
Fortinet  Found nothing
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
UNA  Found nothing
VBA32  Found nothing
gototop
 

用http://www.virustotal.com/这个扫描后












不知道wodfamoh.dll和New.sys木马还有没有同党
gototop
 

大侠在吗~请帮帮忙吗~大侠一出马~木马全S关!~偶要紧跟大侠,天天跟着大侠奋~学大侠那招天下第一剑~剑荡秋风扫落叶~木马就成呢全落马!~魔法学徒大侠和sanadayukimura米女大侠收偶做徒弟把偶跟着你们奋!
gototop
 

嗨~带壳的灰鸽子还是没找到啊~郁闷啊~灰鸽子木马TMD狗日就象小日本鬼子变态小泉躲在卫生间偷看你JJ便便~  @:b  @:b  @:b  @:b



gototop
 

看不到图

【原创】怎么截图然后发到论坛上啊?
http://219.238.233.252/topic.asp?board=28&artid=5206045
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT