查看: 3499|回复: 14
收起左侧

[病毒样本] 上个大礼包,md5内详,实在是多。

[复制链接]
一派胡言
发表于 2007-6-28 22:27:22 | 显示全部楼层 |阅读模式
[MD5: 48DCA2 AD89B9 C8A9F4 9E55E8 180420 86BC00 A9E9AD C626FA 03BD91 21B59C 38958C FD452C 01BDBF 1CFD2B F120F7 3100A3 CA01A4 FA2F98 AB652D DA4D55 FC2D5A DA9747 3510AF 7A89EE DEE3B5 12AA2D F318C1 3BD06C 0A478E 962838 47BE67]



本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +10 收起 理由
绅博周幸 + 10 求助请到求助区

查看全部评分

woai_jolin
发表于 2007-6-28 22:31:55 | 显示全部楼层
除了dll还有个tfsaa.crr没报
其他全报
2007/6/28 22:27:48        eAmon        file        D:\病毒上报\LYLOADER\WINDEBUG.EXE        probably a variant of Win32/Genetik trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:45        eAmon        file        D:\病毒上报\LYLOADER\GDI32.EXE        probably a variant of Win32/Genetik trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:43        eAmon        file        D:\病毒上报\LYLOADER\ZTINETZT.EXE        probably a variant of Win32/PSW.OnLineGames.RC trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:41        eAmon        file        D:\病毒上报\LYLOADER\LYLOADER.EXE        a variant of Win32/PSW.Agent.NEC trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:38        eAmon        file        D:\病毒上报\LYLOADER\MSDEBUG.DLL        a variant of Win32/Agent.NIK trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:36        eAmon        file        D:\病毒上报\LYLOADER\WINDHCP.OCX        a variant of Win32/Agent.NIK trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:34        eAmon        file        D:\病毒上报\LYLOADER\MSDEG32.DLL        probably a variant of Win32/PSW.Agent.NEC trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:32        eAmon        file        D:\病毒上报\LYLOADER\NETSRVCS.DLL        a variant of Win32/Agent.NIK trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:30        eAmon        file        D:\病毒上报\LYLOADER\MM[1].EXE        a variant of Win32/PSW.Delf.NHI trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:27        eAmon        file        D:\病毒上报\LYLOADER\WM.EXE        probably a variant of Win32/PSW.OnLineGames.NAV trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:25        eAmon        file        D:\病毒上报\LYLOADER\RAVWM.EXE        probably a variant of Win32/PSW.OnLineGames.NAV trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:23        eAmon        file        D:\病毒上报\LYLOADER\QQ.EXE        probably a variant of Win32/PSW.QQPass.VD trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:21        eAmon        file        D:\病毒上报\LYLOADER\JH.EXE        a variant of Win32/Agent.NIK trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:18        eAmon        file        D:\病毒上报\LYLOADER\SYSTEMM.EXE        Win32/Agent.NEM trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:16        eAmon        file        D:\病毒上报\LYLOADER\NWIZASKTAO.EXE        a variant of Win32/PSW.Agent.NEW trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:14        eAmon        file        D:\病毒上报\LYLOADER\NWIZASKTAO.DLL        Win32/PSW.OnLineGames.QL trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:12        eAmon        file        D:\病毒上报\LYLOADER\NWIZTLBU.EXE        a variant of Win32/PSW.Agent.NEW trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:10        eAmon        file        D:\病毒上报\LYLOADER\WMIAPISRV.DLL        a variant of Win32/Agent.NIK trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:27:04        eAmon        file        D:\病毒上报\LYLOADER\RAVWM624.dll        a variant of Win32/PSW.OnLineGames.NAV trojan        cleaned by deleting - quarantined                Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2007/6/28 22:27:03        eAmon        file        D:\病毒上报\LYLOADER\visin.exe        probably unknown NewHeur_PE virus        deleted - quarantined                Event occurred on a new file created by the application: C:\Program Files\WinRAR\WinRAR.exe.
2007/6/28 22:27:00        eAmon        file        D:\病毒上报\LYLOADER\NWIZWLWZS.EXE        a variant of Win32/PSW.Agent.NEW trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:26:58        eAmon        file        D:\病毒上报\LYLOADER\ZTINETZT.DLL        Win32/PSW.OnLineGames.NBP trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:26:56        eAmon        file        D:\病毒上报\LYLOADER\NWIZDH.EXE        a variant of Win32/PSW.OnLineGames.RC trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
2007/6/28 22:26:52        eAmon        file        D:\病毒上报\LYLOADER\DH2104.DLL        Win32/PSW.OnLineGames.NCJ trojan        cleaned by deleting - quarantined        NT AUTHORITY\SYSTEM        Event occurred during an attempt to access the file by the application: C:\Program Files\Micropoint\MPSVC2.exe.
小邪邪
发表于 2007-6-28 22:34:54 | 显示全部楼层
AVK杀36个,AVK+MCAFEE杀38个
tracydk
发表于 2007-6-28 22:39:08 | 显示全部楼层

红伞36个

Starting the file scan:

Begin scan in 'F:\病毒样本\LYLOADER.part1.rar'
F:\病毒样本\LYLOADER.part1.rar
  [0] Archive type: RAR
  --> LYLOADER\dh2104.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\nwizdh.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
  --> LYLOADER\ztinetzt.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QW.162
  --> LYLOADER\nwizwlwzs.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> LYLOADER\nwizwlwzs.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
  --> LYLOADER\visin.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
  --> LYLOADER\RAVWM624.dll
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> LYLOADER\TIMHost.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\GetsFile.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\GetsFiles.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\hjtdx.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\SvTime.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\tfsaa.ccr
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\wgfdl.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\whgdm.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\wkjbj.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\wkufd.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\zerwx.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\WMIApiSrv.dll
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegames.AYD.41
  --> LYLOADER\nwiztlbb.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\nwiztlbu.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
  --> LYLOADER\nwizAsktao.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> LYLOADER\nwizAsktao.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
  --> LYLOADER\systemm.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.alh.7 Backdoor server programs
      [INFO]      The file was deleted!
Begin scan in 'F:\病毒样本\LYLOADER.part2.rar'
F:\病毒样本\LYLOADER.part2.rar
  [0] Archive type: RAR
  --> LYLOADER\jh.exe
      [DETECTION] Is the Trojan horse TR/Agent.abf.1057
  --> LYLOADER\qq.exe
      [DETECTION] Is the Trojan horse TR/PSW.QQPass.WM.14
  --> LYLOADER\RAVWM.EXE
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> LYLOADER\wm.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> LYLOADER\mm[1].exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.QC.40
  --> LYLOADER\LYMANGR.DLL
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\MSDEG32.DLL
      [DETECTION] File has been compressed with an unusual runtime compression tool (PCK/UPACK). Please verify the origin of the file
  --> LYLOADER\msdebug.dll
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegames.AYD.173
  --> LYLOADER\LYLOADER.EXE
      [DETECTION] Contains suspicious code HEUR/Malware
  --> LYLOADER\ztinetzt.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
  --> LYLOADER\gdi32.exe
      [DETECTION] Contains signature of the dropper DR/Delphi.Gen
  --> LYLOADER\WinDebug.exe
      [DETECTION] Contains signature of the dropper DR/Delphi.Gen
      [INFO]      The file was deleted!
1688388728
发表于 2007-6-28 22:39:38 | 显示全部楼层
扫描病毒日志记录
版本 17.0.6353
双引擎反病毒签名 6/28/2007
开始时间: 6/28/2007 22:38
引擎: A 引擎 (AVK 17.5712), B 引擎 (AVKB 17.277)
高启发式: 打开
压缩文件: 打开
系统区域: 打开

扫描系统区域...
扫描所选择的目录和文件...
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\GetsFile.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: GetsFile.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\GetsFiles.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: GetsFiles.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\hjtdx.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: hjtdx.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: jh.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan.Win32.Agent.abf (A 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\LYLOADER.EXE
        Status: 已发现病毒
        病毒: Win32:OnLineGames-SS [Trj] (B 引擎)
对象: LYLOADER.EXE
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-SS [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\LYMANGR.DLL
        Status: 已发现病毒
        病毒: Win32:OnLineGames-ST [Trj] (B 引擎)
对象: LYMANGR.DLL
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-ST [Trj] (B 引擎)
对象: mm[1].exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.Delf.qc (A 引擎)
对象: [PECompact]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\msdebug.dll
        Status: 已发现病毒
        病毒: Win32:Agent-HJW [Trj] (B 引擎)
对象: msdebug.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:Agent-HJW [Trj] (B 引擎)
对象: [PECompact]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\netsrvcs.dll
        Status: 已发现病毒
        病毒: Win32:Agent-HJW [Trj] (B 引擎)
对象: netsrvcs.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:Agent-HJW [Trj] (B 引擎)
对象: nwizAsktao.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.ql (A 引擎)
对象: nwizAsktao.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.sl (A 引擎)
对象: nwizdh.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.Nilage.bjp (A 引擎)
对象: nwiztlbb.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.xg (A 引擎)
对象: nwiztlbu.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.sl (A 引擎)
对象: nwizwlwzs.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.zr (A 引擎)
对象: nwizwlwzs.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.zr (A 引擎)
对象: qq.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.QQPass.wm (A 引擎)
对象: RAVWM.EXE
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.Nilage.ach (A 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\RAVWM624.dll
        Status: 已发现病毒
        病毒: Win32:Delf-DNR [Trj] (B 引擎)
对象: RAVWM624.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:Delf-DNR [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\SvTime.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: SvTime.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: systemm.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Backdoor.Win32.Agent.alh (A 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\tfsaa.ccr
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: tfsaa.ccr
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: TIMHost.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.yr (A 引擎)
对象: visin.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-Downloader.Win32.Small.czl (A 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\wgfdl.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: wgfdl.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\whgdm.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: whgdm.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: [PECompact]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\windhcp.ocx
        Status: 已发现病毒
        病毒: Win32:Agent-HJW [Trj] (B 引擎)
对象: windhcp.ocx
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:Agent-HJW [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\wkjbj.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: wkjbj.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\wkufd.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: wkufd.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: wm.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.Nilage.ach (A 引擎)
对象: WMIApiSrv.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:WOW-EJ [Trj] (B 引擎)
对象: [Upack]
        在压缩档案里: E:\病毒库\LYLOADER\LYLOADER\zerwx.dll
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: zerwx.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Win32:OnLineGames-AIR [Trj] (B 引擎)
对象: ztinetzt.dll
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.qw (A 引擎)
对象: ztinetzt.exe
        路径: E:\病毒库\LYLOADER\LYLOADER
        Status: 已发现病毒
        病毒: Trojan-PSW.Win32.OnLineGames.qw (A 引擎)
扫描完成: 6/28/2007 22:38
    已检查 42 个文件
    已发现 34 个染毒文件
    发现 0 个可疑文件
Giggs
发表于 2007-6-28 22:44:15 | 显示全部楼层
卡7才29个
yashoo
头像被屏蔽
发表于 2007-6-28 22:47:34 | 显示全部楼层
咖啡25个。。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
一派胡言
 楼主| 发表于 2007-6-28 22:48:44 | 显示全部楼层
我的kv2007才杀了22个, 睡觉了
蓝色牛仔裤
发表于 2007-6-28 23:01:20 | 显示全部楼层
蜘蛛也是29个。。


本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-6-28 23:16:27 | 显示全部楼层
38个
C:/ABC/\LYLOADER\LYLOADER\dh2104.dll - Signature 'Trojan-PWS.Win32.OnLineGames.qw' found
C:/ABC/\LYLOADER\LYLOADER\gdi32.exe - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\GdiSPidGen.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\GetsFile.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\GetsFiles.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\hjtdx.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\jh.exe - Signature 'Trojan-PWS.OnlineGames.AYD' found
C:/ABC/\LYLOADER\LYLOADER\LYLOADER.EXE - Signature 'Trojan-Downloader.Win32.Zlob.and' found
C:/ABC/\LYLOADER\LYLOADER\LYMANGR.DLL - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\mm[1].exe - Signature 'Trojan-Spy.Win32.Delf.PG' found
C:/ABC/\LYLOADER\LYLOADER\msdebug.dll - Signature 'Trojan-PWS.OnlineGames.AYD' found
C:/ABC/\LYLOADER\LYLOADER\MSDEG32.DLL - Signature 'Trojan-PWS.Win32.Small.br' found
C:/ABC/\LYLOADER\LYLOADER\netsrvcs.dll - Suspect code-parts found (Level: 85)
C:/ABC/\LYLOADER\LYLOADER\nwizAsktao.dll - Signature 'Trojan-PWS.Win32.OnLineGames.ql' found
C:/ABC/\LYLOADER\LYLOADER\nwizAsktao.exe - Signature 'Trojan-PWS.Win32.OnLineGames.sl' found
C:/ABC/\LYLOADER\LYLOADER\nwizdh.exe - Signature 'Trojan-PWS.Win32.Nilage.bjp' found
C:/ABC/\LYLOADER\LYLOADER\nwiztlbb.dll - Signature 'Trojan-PWS.Win32.OnLineGames.qw' found
C:/ABC/\LYLOADER\LYLOADER\nwiztlbu.exe - Signature 'Trojan-PWS.Win32.Nilage.bjp' found
C:/ABC/\LYLOADER\LYLOADER\nwizwlwzs.dll - Signature 'Trojan-PWS.Win32.OnLineGames.sl' found
C:/ABC/\LYLOADER\LYLOADER\nwizwlwzs.exe - Signature 'Trojan-PWS.Win32.OnLineGames.sl' found
C:/ABC/\LYLOADER\LYLOADER\Packet.dll
C:/ABC/\LYLOADER\LYLOADER\qq.exe - Signature 'Generic.PWStealer' found
C:/ABC/\LYLOADER\LYLOADER\RAVWM.EXE - Signature 'MalwareScope.Trojan-PWS.Game.16' found
C:/ABC/\LYLOADER\LYLOADER\RAVWM624.dll - Signature 'Trojan-PWS.Win32.Small.br' found
C:/ABC/\LYLOADER\LYLOADER\SvTime.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\systemm.exe - Signature 'Trojan-Downloader.Win32.Zlob.and' found
C:/ABC/\LYLOADER\LYLOADER\tfsaa.ccr - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\TIMHost.dll
C:/ABC/\LYLOADER\LYLOADER\visin.exe - Signature 'Backdoor.Win32.PcClient.GV' found
C:/ABC/\LYLOADER\LYLOADER\WanPacket.dll
C:/ABC/\LYLOADER\LYLOADER\wgfdl.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\whgdm.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\WinDebug.exe - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\windhcp.ocx - Signature 'Trojan.Win32.Agent.abf' found
C:/ABC/\LYLOADER\LYLOADER\wkjbj.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\wkufd.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\wm.exe - Signature 'MalwareScope.Trojan-PWS.Game.16' found
C:/ABC/\LYLOADER\LYLOADER\WMIApiSrv.dll - Signature 'Trojan-PWS.OnlineGames.AYD' found
C:/ABC/\LYLOADER\LYLOADER\wpcap.dll
C:/ABC/\LYLOADER\LYLOADER\zerwx.dll - Signature 'Trojan-Dropper.Win32.Agent.ane' found
C:/ABC/\LYLOADER\LYLOADER\ztinetzt.dll - Signature 'Trojan-PWS.Win32.OnLineGames.qw' found
C:/ABC/\LYLOADER\LYLOADER\ztinetzt.exe - Signature 'Trojan-PWS.Win32.Nilage.bjp' found

        42 Files scanned
          (0 Archives with 0 files)
        37 Signatures found
        1 Suspect code-part found
        Used time: 0:00.843
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-10 19:29 , Processed in 0.122675 second(s), 20 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表