查看: 3305|回复: 12
收起左侧

[病毒样本] 一大包垃圾病毒

[复制链接]
gzg
发表于 2007-9-5 19:27:12 | 显示全部楼层 |阅读模式
大家扫啊

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-9-5 19:42:26 | 显示全部楼层
C:\ABC\新建文件夹\01mh.exe - 特征码 'Trojan-PWS.Win32.OnLineGames.wp' 被发现
C:\ABC\新建文件夹\02jh.exe - 特征码 'Generic.Onlinegames.1' 被发现
C:\ABC\新建文件夹\03ms.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\新建文件夹\04wl.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\05gj.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\06qj.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\07zx.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\08zt.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\新建文件夹\1.exe - 特征码 'Generic.PWS.Games.3' 被发现
C:\ABC\新建文件夹\10.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\11.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\12.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\13.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\14.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\15.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\16.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\17.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\18.exe - 特征码 'Trojan-PWS.Win32.OnLineGames.wp' 被发现
C:\ABC\新建文件夹\19.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\2.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\20.exe - 特征码 'Virus.Win32.Crypt.VA' 被发现
C:\ABC\新建文件夹\3.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\4.exe - 特征码 'MalwareScope.Trojan-PWS.Game.3' 被发现
C:\ABC\新建文件夹\5.exe - 特征码 'Trojan-Dropper.Win32.Agent.ane' 被发现
C:\ABC\新建文件夹\6.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\新建文件夹\7.exe - 特征码 'Trojan-PWS.Win32.OnLineGames.wp' 被发现
C:\ABC\新建文件夹\8.exe - 特征码 'Trojan-PWS.Win32.OnLineGames.bjo' 被发现
C:\ABC\新建文件夹\9.exe - 特征码 'Generic.PWS.WoW' 被发现
C:\ABC\新建文件夹\cao.exe - 特征码 'Generic.Popwin' 被发现
C:\ABC\新建文件夹\Chajian_005.exe - 特征码 'Trojan-Downloader.Win32.Agent.bno' 被发现
C:\ABC\新建文件夹\sysgoo.exe - 特征码 'Trojan.Win32.Agent.ala' 被发现
C:\ABC\新建文件夹\vip.exe - 特征码 'Trojan-PWS.Win32.Delf.mc' 被发现
C:\ABC\新建文件夹\www.exe - 特征码 'Trojan-PWS.Win32.QQPass.pb' 被发现

        33 文件被扫描
          (0 压缩档 0 文件)
        33 特征码被侦测
        0 可疑代码段被发现
        耗时: 0:00.688
浪滔天
发表于 2007-9-5 20:42:15 | 显示全部楼层
卡巴 7.0.0.125 高启发
32个

已隔离: 病毒 Heur.Invader (变种)        文件: D:\新建文件夹[1]\18.exe//PE_Patch.UPX
已删除: 病毒 Virus.Win32.AutoRun.hw        文件: D:\新建文件夹[1]\www.exe//PE_Patch.UPX//UPX
已删除: 病毒 Worm.Win32.QQPass.c        文件: D:\新建文件夹[1]\vip.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Backdoor.Win32.Agent.bex        文件: D:\新建文件夹[1]\cao.exe//ASPack
已删除: 木马程序 Trojan-Downloader.Win32.Agent.ctx        文件: D:\新建文件夹[1]\Chajian_005.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Trojan-Downloader.Win32.Small.czl        文件: D:\新建文件夹[1]\20.exe//NSPack
已删除: 木马程序 Trojan-Dropper.Win32.Agent.aqq        文件: D:\新建文件夹[1]\16.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.Agent.pl        文件: D:\新建文件夹[1]\14.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.akc        文件: D:\新建文件夹[1]\05gj.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.aqw        文件: D:\新建文件夹[1]\6.exe//#
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bdo        文件: D:\新建文件夹[1]\12.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bgr        文件: D:\新建文件夹[1]\7.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bjo        文件: D:\新建文件夹[1]\8.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.blb        文件: D:\新建文件夹[1]\2.exe
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.blx        文件: D:\新建文件夹[1]\06qj.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.blx        文件: D:\新建文件夹[1]\11.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bmj        文件: D:\新建文件夹[1]\13.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bms        文件: D:\新建文件夹[1]\1.exe
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bnb        文件: D:\新建文件夹[1]\08zt.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bng        文件: D:\新建文件夹[1]\01mh.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bnk        文件: D:\新建文件夹[1]\02jh.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bnx        文件: D:\新建文件夹[1]\4.exe
已删除: 木马程序 Trojan-PSW.Win32.WOW.sa        文件: D:\新建文件夹[1]\9.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.WOW.uy        文件: D:\新建文件夹[1]\03ms.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-Spy.Win32.Delf.abi        文件: D:\新建文件夹[1]\19.exe
已删除: 木马程序 Trojan-Spy.Win32.Delf.abi        文件: D:\新建文件夹[1]\3.exe
已删除: 木马程序 Trojan-Spy.Win32.Delf.ach        文件: D:\新建文件夹[1]\10.exe//UPack
已删除: 木马程序 Trojan-Spy.Win32.Delf.aci        文件: D:\新建文件夹[1]\5.exe//UPack
已删除: 木马程序 Trojan-Spy.Win32.Delf.uh        文件: D:\新建文件夹[1]\07zx.exe//UPack
已删除: 木马程序 Trojan-Spy.Win32.Delf.uh        文件: D:\新建文件夹[1]\04wl.exe//UPack
已删除: 木马程序 Trojan-Spy.Win32.Delf.uh        文件: D:\新建文件夹[1]\17.exe//UPack
已删除: 木马程序 Trojan.Win32.FlyStudio.ai        文件: D:\新建文件夹[1]\sysgoo.exe//script.fly
The EQs
发表于 2007-9-5 22:07:23 | 显示全部楼层
Scan performed at: 2007-9-5 22:06:32
Scanning Log
NOD32 version 2507 (20070905) NT
Command line: C:\Documents and Settings\Don johnson\桌面\新建文件夹
Operating memory - is OK

Date: 5.9.2007  Time: 22:06:35
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\Don johnson\桌面\新建文件夹\
C:\Documents and Settings\Don johnson\桌面\新建文件夹\01mh.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\02jh.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\03ms.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\04wl.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\05gj.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\06qj.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\07zx.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\08zt.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\1.exe - a variant of Win32/PSW.Agent.NEC trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\10.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\11.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\12.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\13.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\14.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\15.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\16.exe - Win32/Agent.NEM trojan - quarantined - unable to clean - deleted
C:\Documents and Settings\Don johnson\桌面\新建文件夹\17.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\18.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\19.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\2.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\20.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\3.exe - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\4.exe - probably a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\5.exe - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\6.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\7.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\8.exe - a variant of Win32/PSW.Legendmir.NEP trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\9.exe - probably unknown NewHeur_PE virus [7]
C:\Documents and Settings\Don johnson\桌面\新建文件夹\cao.exe - probably a variant of Win32/Agent.NEO trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\vip.exe - probably a variant of Win32/PSW.Delf.NHI trojan
C:\Documents and Settings\Don johnson\桌面\新建文件夹\www.exe - probably a variant of Win32/Genetik trojan
Number of scanned files: 33
Number of threats found: 31
Number of files cleaned: 31
Time of completion: 22:06:45 Total scanning time: 10 sec (00:00:10)

Notes:
[7] File is probably infected with an unknown virus.
uhthn2002
发表于 2007-9-5 22:43:01 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Paranoia Database - 3196
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\uhthn\Desktop\New Folder

C:\Documents and Settings\uhthn\Desktop\New Folder\12.exe - Infected with PDB-1056 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\13.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\14.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\15.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\16.exe - Infected with PDB-307 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\17.exe - Infected with PDB-3136 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\18.exe - Suspicious of Trojan-PSW.Game.1
C:\Documents and Settings\uhthn\Desktop\New Folder\19.exe - Infected with PDB-1440 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\20.exe - Infected with MalwareSpy.PDB-2559 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\cao.exe - Suspicious of Trojan-PSW.Game.8
C:\Documents and Settings\uhthn\Desktop\New Folder\Chajian_005.exe - Infected with PDB-1570 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\vip.exe - Infected with Win32.PDB-1694 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\www.exe - Suspicious of Win32.Trojan-PSW.Game.1
C:\Documents and Settings\uhthn\Desktop\New Folder\sysgoo.exe - Suspicious of Trojan-Downloader.VB.1
C:\Documents and Settings\uhthn\Desktop\New Folder\9.exe - Infected with PDB-1469 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\1.exe - Suspicious of Trojan-PSW.OnLineGames.2
C:\Documents and Settings\uhthn\Desktop\New Folder\01mh.exe - Suspicious of Trojan-PSW.Game.1
C:\Documents and Settings\uhthn\Desktop\New Folder\2.exe - Infected with PDB-2358 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\02jh.exe - Suspicious of Trojan-PSW.Game.1
C:\Documents and Settings\uhthn\Desktop\New Folder\3.exe - Infected with PDB-1320 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\03ms.exe - Suspicious of Trojan-PSW.OnLineGames.2
C:\Documents and Settings\uhthn\Desktop\New Folder\4.exe - Infected with PDB-2686 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\04wl.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\5.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\05gj.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\6.exe - Suspicious of Trojan-PSW.OnLineGames.2
C:\Documents and Settings\uhthn\Desktop\New Folder\06qj.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\7.exe - Infected with PDB-477 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\07zx.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\8.exe - Infected with PDB-3176 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\08zt.exe - Suspicious of Trojan-PSW.OnLineGames.2
C:\Documents and Settings\uhthn\Desktop\New Folder\10.exe - Infected with PDB-2077 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\11.exe - Suspicious of Trojan-PSW.Game.3

33 Files scanned
14 Infected files found
19 Suspicious files found
0 Files cured
14 Files deleted
mofunzone
发表于 2007-9-5 22:50:42 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\
  01mh.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  02jh.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGame.YF
      [INFO]      The file was deleted!
  03ms.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4163
      [INFO]      The file was deleted!
  04wl.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agen.26778.A
      [INFO]      The file was deleted!
  05gj.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agen.26778.A
      [INFO]      The file was deleted!
  06qj.exe
      [DETECTION] Is the Trojan horse TR/Agent.12767
      [INFO]      The file was deleted!
  07zx.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agen.26778.A
      [INFO]      The file was deleted!
  08zt.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '4758c26f.qua'!
  1.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  10.exe
      [DETECTION] Is the Trojan horse TR/Spy.Delf.acb
      [INFO]      The file was deleted!
  11.exe
      [DETECTION] Is the Trojan horse TR/Agent.12767
      [INFO]      The file was deleted!
  12.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agen.26778.A
      [INFO]      The file was deleted!
  13.exe
      [DETECTION] Is the Trojan horse TR/Agent.12580
      [INFO]      The file was deleted!
  14.exe
      [DETECTION] Is the Trojan horse TR/PSW.Agent.PL
      [INFO]      The file was deleted!
  15.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '470cc26c.qua'!
  16.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.alh.37 Backdoor server programs
      [INFO]      The file was deleted!
  17.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agen.26778.A
      [INFO]      The file was deleted!
  18.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  19.exe
      [DETECTION] Is the Trojan horse TR/Agent.12366
      [INFO]      The file was deleted!
  2.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.blb
      [INFO]      The file was deleted!
  20.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
      [INFO]      The file was deleted!
  3.exe
      [DETECTION] Is the Trojan horse TR/Spy.Delf.abi.1
      [INFO]      The file was deleted!
  4.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  5.exe
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aci
      [INFO]      The file was deleted!
  6.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.aqw
      [INFO]      The file was deleted!
  7.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLine.bds.1
      [INFO]      The file was deleted!
  8.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
      [INFO]      The file was deleted!
  9.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agen.26778.A
      [INFO]      The file was deleted!
  cao.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Exaal.45056 Backdoor server programs
      [INFO]      The file was deleted!
  Chajian_005.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4158
      [INFO]      The file was deleted!
  sysgoo.exe
  vip.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.WH.13
      [INFO]      The file was deleted!
  www.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
      [INFO]      The file was deleted!


End of the scan: 2007年9月5日  07:50
Used time: 00:06 min

The scan has been done completely.

      1 Scanning directories
     33 Files were scanned
     32 viruses and/or unwanted programs were found
      2 classified as suspicious:
     30 files were deleted
      0 files were repaired
      2 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -1 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
      0 Hidden objects were found
googlehack
发表于 2007-9-5 23:01:01 | 显示全部楼层

6楼的签名

6楼的签名真有意思,病毒为什么怕2008?
红心王子
发表于 2007-9-6 09:47:58 | 显示全部楼层
江民杀毒软件报告文件

        北京江民新科技术有限公司

        扫描引擎 11.00.700
        病毒库日期 2007-09-05
        更新日期 2007-09-06

扫描目标 C:\Documents and Settings\Administrator\桌面\新建文件夹\

开始时间 2007-09-06 09:47:13

在 C:\Documents and Settings\Administrator\桌面\新建文件夹\13.exe 中发现 Trojan/Agent.ori 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\14.exe 中发现 Trojan/PSW.Agent.dxj 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\12.exe 中发现 Trojan/PSW.GamePass.xpp 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\16.exe 中发现 Backdoor/Agent.vbc 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\17.exe 中发现 Trojan/PSW.GamePass.wud 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\19.exe 中发现 TrojanDownloader.Agent.okx 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\18.exe 中发现 Trojan/PSW.GamePass.yej 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\20.exe 中发现 Trojan/PSW.GamePass.uoy 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\cao.exe 中发现 Trojan/Agent.oux 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\Chajian_005.exe 中发现 TrojanDownloader.Agent.osd 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\vip.exe 中发现 Trojan/PSW.Delf.ahk 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\www.exe 中发现 Trojan/DiskAutorun.oi 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\01mh.exe 中发现 Trojan/PSW.GamePass.ycz 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\2.exe 中发现 TrojanSpy.Delf.akt 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\02jh.exe 中发现 Trojan/PSW.OnLineGames.fdh 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\3.exe 中发现 TrojanSpy.Delf.aju 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\5.exe 中发现 Trojan/PSW.Agent.dxh 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\04wl.exe 中发现 Trojan/PSW.GamePass.xnj 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\6.exe 中发现 Trojan/PSW.OnLineGames.faw 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\05gj.exe 中发现 Trojan/PSW.GamePass.xie 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\06qj.exe 中发现 Trojan/PSW.GamePass.ybs 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\7.exe 中发现 Trojan/PSW.GamePass.xxa 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\8.exe 中发现 Trojan/PSW.OnLineGames.ffe 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\07zx.exe 中发现 Trojan/PSW.GamePass.xig 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\10.exe 中发现 TrojanSpy.Delf.akx 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\11.exe 中发现 Trojan/PSW.GamePass.ybs 病毒, 已删除
在 C:\Documents and Settings\Administrator\桌面\新建文件夹\9.exe 中发现 Trojan/PSW.GamePass.wub 病毒, 已删除
正常结束。

扫描结果:
                 文件数 :541                                 病毒体 :27        
                   删除 :27                                    解毒 :0         
    扫描速度(千字节/秒) :12512                             扫描时间 :00:00:12
    扫描文件速度(个/秒) :45
qqq000@qq.com
头像被屏蔽
发表于 2007-9-6 10:45:26 | 显示全部楼层
[凝逸反毒]病毒:32 文件:33


----------
              [凝逸反毒] (http://hi.baidu.com/503165656)
       [凝逸.扫描病毒引擎-日志]       2007.9.6 10:43:5
文件:F:\070906\新建文件夹[1]\12.exe | 感染:Trojan.PWS.Gamania.3686 [169>20070830_ny0012.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\13.exe | 感染:virus [580>20070906_ny0013.axx]3(1.6)
操作:删除文件
文件:F:\070906\新建文件夹[1]\14.exe | 感染:virus [578>20070906_ny0013.axx]3(1.2)
操作:删除文件
文件:F:\070906\新建文件夹[1]\15.exe | 感染:virus [576>20070906_ny0013.axx]3(1.5)
操作:删除文件
文件:F:\070906\新建文件夹[1]\16.exe | 感染:virus [513>20070819_ny0008.axx]3(1.3)
操作:删除文件
文件:F:\070906\新建文件夹[1]\17.exe | 感染:virus [514>20070819_ny0008.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\18.exe | 感染:Trojan.PWS.Gamania.3897 [160>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\19.exe | 感染:virus [720>20070830_ny0012.axx]3(2.4)
操作:删除文件
文件:F:\070906\新建文件夹[1]\20.exe | 感染:BackDoor.Twin [262>20070816_ny0006.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\cao.exe | 感染:BINARYRES [15>20070906_ny0013.axx]3(1.4)
操作:删除文件
文件:F:\070906\新建文件夹[1]\Chajian_005.exe | 感染:virus [641>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\vip.exe | 感染:Win32.HLLW.Autoruner.249 [10>20070822_ny0010.axx]3(2.4)
操作:删除文件
文件:F:\070906\新建文件夹[1]\www.exe | 感染:BackDoor.WebDor [44>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\1.exe | 感染:MULDROP.Trojan [36>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\01mh.exe | 感染:Trojan.PWS.Wsgame.1198 [13>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\2.exe | 感染:virus [596>20070906_ny0013.axx]3(3.8)
操作:删除文件
文件:F:\070906\新建文件夹[1]\02jh.exe | 感染:Trojan.PWS.Gamania.3869 [567>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\3.exe | 感染:virus [615>20070906_ny0013.axx]3(2.7)
操作:删除文件
文件:F:\070906\新建文件夹[1]\03ms.exe | 感染:BACKDOOR.Trojan [10>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\4.exe | 感染:BINARYRES [27>20070906_ny0013.axx]3(1.3)
操作:删除文件
文件:F:\070906\新建文件夹[1]\04wl.exe | 感染:Trojan.PWS.Gamania.3710 [17>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\5.exe | 感染:virus [577>20070906_ny0013.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\05gj.exe | 感染:Trojan.PWS.Gamania.3553 [566>20070906_ny0013.axx]3(2.2)
操作:删除文件
文件:F:\070906\新建文件夹[1]\6.exe | 感染:MULDROP.Trojan [192>20070830_ny0012.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\06qj.exe | 感染:virus [1165>20070906_ny0013.axx]3(3.3)
操作:删除文件
文件:F:\070906\新建文件夹[1]\7.exe | 感染:BINARYRES [439>20070830_ny0012.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\07zx.exe | 感染:Trojan.PWS.Gamania.3662 [16>20070906_ny0013.axx]3(2.2)
操作:删除文件
文件:F:\070906\新建文件夹[1]\8.exe | 感染:virus [587>20070906_ny0013.axx]3(1.2)
操作:删除文件
文件:F:\070906\新建文件夹[1]\08zt.exe | 感染:BACKDOOR.Trojan [9>20070906_ny0013.axx]3(1.2)
操作:删除文件
文件:F:\070906\新建文件夹[1]\9.exe | 感染:Trojan.PWS.Gamania.3451 [216>20070819_ny0008.axx]3(1.1)
操作:删除文件
文件:F:\070906\新建文件夹[1]\10.exe | 感染:virus [579>20070906_ny0013.axx]3(1.3)
操作:删除文件
文件:F:\070906\新建文件夹[1]\11.exe | 感染:virus [581>20070906_ny0013.axx]3(1.3)
操作:删除文件
扫描完成|病毒:32 文件:33|耗时:15812
----------

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
小飞侠.net
发表于 2007-9-8 17:56:53 | 显示全部楼层
McAfee VirusScan for Win32 v5.20.0
Copyright (c) 1992-2005 Networks Associates Technology Inc. All rights reserved.
(408) 988-3832  LICENSED COPY - Jun  5 2007

Scan engine v5.2.00 for Win32.
Virus data file v5115 created Sep 07 2007
Scanning for 318301 viruses, trojans and variants.
Using c:\Documents and Settings\小飞侠.net\桌面\桌面\McAfee VirusScan\EXTRA.DAT to scan for 0 additional virus(es).



09/08/2007  17:54:51


Options:
"V:\VIRUSDOC20070908\065" /MIME /SUB /UNZIP /ALL /RPTALL /RPTCOR /RPTERR /STREAMS /REPORT C:\DOCUME~1\小飞侠.NET\LOCALS~1\TEMP\SCAN.TXT /PROGRAM /ANALYZE /MAILBOX

Scanning V: [V盘]
Scanning V:\VIRUSDOC20070908\065\*.*
V:\VIRUSDOC20070908\065\新建文件夹[1].rar ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\01MH.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\01MH.EXE\01MH.EXE ... Found the PWS-Zhengtu trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\02JH.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\02JH.EXE\02JH.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\02JH.EXE\02JH.EXE\00004060.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\03MS.EXE ... Found trojan or variant New Malware.aj !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\04WL.EXE ... Found the PWS-WoW trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\05GJ.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\06QJ.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\07ZX.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\08ZT.EXE ... Found trojan or variant New Malware.aj !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\1.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\1.EXE\00000c80.EXE ... Found trojan or variant New Malware.aj !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\10.EXE ... Found the PWS-OnlineGames.f trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\11.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\12.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\13.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\14.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\15.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\16.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\17.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\18.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\18.EXE\18.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\18.EXE\18.EXE\00004060.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\19.EXE ... Found the PWS-OnlineGames.f trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\2.EXE ... Found the PWS-OnlineGames.f trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\20.EXE ... Found the Downloader.gen.a trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\3.EXE ... Found the PWS-OnlineGames.f trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\4.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\4.EXE\00001a60.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\5.EXE ... Found trojan or variant New Malware.n !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\6.EXE ... Found trojan or variant New Malware.aj !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\7.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\7.EXE\7.EXE ... Found the PWS-Zhengtu trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\8.EXE ... Found the PWS-Mmorpg.gen trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\9.EXE ... Found the PWS-WoW trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CAO.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CAO.EXE\CAO.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CHAJIAN_005.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CHAJIAN_005.EXE\CHAJIAN_005.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CHAJIAN_005.EXE\CHAJIAN_005.EXE\00016000.EXE ... Found virus or variant New Win32.s !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CHAJIAN_005.EXE\CHAJIAN_005.EXE\0000b080.EXE ... Found trojan or variant New Malware.aj !!!
        Please send a copy of the file to McAfee
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CHAJIAN_005.EXE\CHAJIAN_005.EXE\00006180.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\CHAJIAN_005.EXE\CHAJIAN_005.EXE\00006180.EXE\00006180.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\SYSGOO.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\VIP.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\VIP.EXE\VIP.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\VIP.EXE\VIP.EXE\000090f0.EXE ... is OK.
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\VIP.EXE\VIP.EXE\000090f0.EXE\000090f0.EXE ... Found the PWS-QQPass.dll trojan !!!
V:\VIRUSDOC20070908\065\新建文件夹[1].rar\WWW.EXE ... Found the Generic.dx trojan !!!

Summary report on V:\VIRUSDOC20070908\065\*.*
File(s)
        Total files: ...........      51
        Clean: .................      22
        Possibly Infected: .....      29


Time: 00:00.08

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-5 16:44 , Processed in 0.129917 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表