1   1  /  1  页   跳转

C:\WINDOWS\IEXPLOER.EXE

C:\WINDOWS\IEXPLOER.EXE


 附件: 您所在的用户组无法下载或查看附件

解压密码:virus

文件说明符 : C:\WINDOWS\IEXPLOER.EXE
属性 : A---
数字签名:否
PE文件:是
获取文件版本信息大小失败!
创建时间 : 2008-8-19 17:39:56
修改时间 : 2008-8-19 17:39:58
大小 : 3081 字节 3.9 KB
MD5 : 4439c705f4c69994ee31569e22c62902
SHA1: 0BFE0FBC0AC2DCBD7F83A88A3E7C1AEDAD18042E
CRC32: 31966aed

文件 IEXPLOER.EXE 接收于 2008.09.07 10:09:56 (CET)
反病毒引擎版本最后更新扫描结果
AhnLab-V32008.9.6.02008.09.06-
AntiVir7.8.1.282008.09.05HEUR/Crypted
Authentium5.1.0.42008.09.06-
Avast4.8.1195.02008.09.06-
AVG8.0.0.1612008.09.07-
BitDefender7.22008.09.07Trojan.Packed.24790
CAT-QuickHeal9.502008.09.06(Suspicious) - DNAScan
ClamAV0.93.12008.09.07-
DrWeb4.44.0.091702008.09.06-
eSafe7.0.17.02008.09.03Suspicious File
eTrust-Vet31.6.60722008.09.05-
Ewido4.02008.09.06-
F-Prot4.4.4.562008.09.06-
F-Secure8.0.14332.02008.09.07Suspicious_F.gen
Fortinet3.112.0.02008.09.07-
GData192008.09.07-
IkarusT3.1.1.34.02008.09.07-
K7AntiVirus7.10.4432008.09.05-
Kaspersky7.0.0.1252008.09.07-
McAfee53782008.09.05-
Microsoft1.39032008.09.07-
NOD32v234232008.09.06-
Norman5.80.022008.09.05W32/Packed/FSG_2.A
Panda9.0.0.42008.09.06Suspicious file
PCTools4.4.2.02008.09.06Packed/FSG
Prevx1V22008.09.07-
Rising20.60.61.002008.09.07-
Sophos4.33.02008.09.07Mal/Packer
Sunbelt3.1.1610.12008.09.05VIPRE.Suspicious
Symantec102008.09.07-
TheHacker6.3.0.8.0752008.09.06-
TrendMicro8.700.0.10042008.09.05PAK_Generic.001
VBA323.12.8.52008.09.06-
ViRobot2008.9.5.13652008.09.06-
VirusBuster4.5.11.02008.09.06Packed/FSG
Webwasher-Gateway6.6.22008.09.05Heuristic.Crypted


附加信息
File size: 3081 bytes
MD5...: 4439c705f4c69994ee31569e22c62902
SHA1..: 0bfe0fbc0ac2dcbd7f83a88a3e7c1aedad18042e
SHA256: 6f0cf0d5d503cc895fbd7584f4e2bbdca1289c6f6a9575e40c5363ac67f400fa
SHA512: 7008b527b88fc81a6f1d31d54cf3d840e61b38f81ad3271e68cb30ad860480d4
448f2d4f4d0dcf94664529445b0c666ffd715598ceb63bba7b75f4dcb134401b
PEiD..: FSG v2.0 -> bart/xt
TrID..: File type identification
Win32 Executable Generic (67.9%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
Targa bitmap (Original TGA Format) (0.0%)
MS Flight Simulator Aircraft Performance Info (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x400154
timedatestamp.....: 0x21475346 (Fri Sep 11 01:35:02 1987)
machinetype.......: 0x14c (I386)

( 2 sections )
name viradd virsiz rawdsiz ntrpy md5
0x1000 0x4000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
0x5000 0x1000 0xa09 7.65 052a32ad1989cf7f62b795e2f53fca4a

( 1 imports )
> KERNEL32.dll: LoadLibraryA, GetProcAddress

( 0 exports )
packers (Kaspersky): FSG
packers (F-Prot): FSG


用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; Maxthon)
http://blog.csdn.net/purpleendurer

宠辱不惊,笑看堂前花开花落; 去留无意,漫随天外云卷云舒。
分享到:
gototop
 

回复:C:\WINDOWS\IEXPLOER.EXE

文件名:IEXPLOER.EXE
病毒名:Trojan.Clicker.Win32.VB.bhi


您所上报的病毒文件将在瑞星2008的20.61.20版本中处理解决,如遇特殊问题可能会推后几个版本。
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT