查看: 5432|回复: 15
收起左侧

[病毒样本] 34个

[复制链接]
promised
发表于 2007-9-5 21:13:19 | 显示全部楼层 |阅读模式
[MD5: 176F3E 8A533E D08F8C 213FE8 89485C E3F69E FADF4B 1D39A7 E446F1 67B903 3C4EBA 14E676 16658F B68DB3 B4638D 20D874 661EC5 9F2024 9FD487 C07E73 CB055C 11621C E59886 CEB6F4 FF5467 10F81B 8A1E1F 5A6771 1AE939 9DBB47 F49472 81EA3E 889A75 A85C21]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
 楼主| 发表于 2007-9-5 21:13:24 | 显示全部楼层
C:\ABC\avwlamn.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\avwsamn.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\avzxamn.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\dhepri.dll - 特征码 'Trojan-Downloader.Agent.YJA' 被发现
C:\ABC\hnuajpvafk.dll - 特征码 'Trojan-PWS.Win32.Small.br' 被发现
C:\ABC\jzipri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\kapjazy.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\kaqhczy.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\kvdxama.dll - 特征码 'Trojan-Downloader.Agent.YJA' 被发现
C:\ABC\kvmxbma.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\myhpri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\NewTemp.bak - 特征码 'Trojan-PWS.Win32.Delf.mc' 被发现
C:\ABC\NewTemp.dll - 特征码 'Virus.Win32.AutoRun.am' 被发现
C:\ABC\nslkupi.exe - 特征码 'Trojan-PWS.Win32.Agent.jp' 被发现
C:\ABC\qjhpri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\raqjapi.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\rarjapi.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\ratbapi.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\ravcqmon.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\ravdthxmon.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\ravmsmon.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\ravmymon.exe - 特征码 'BehavesLikeWin32.ExplorerHijack' 被发现
C:\ABC\ravwdmon.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\ravzxmon.exe - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
C:\ABC\rsjzapm.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\rsmyapm.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\rsztapm.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\SysWin64.Jmp - 特征码 'Trojan-Proxy.Win32.Delf.AN' 被发现
C:\ABC\tlvpri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\upxdnd.dll - 特征码 'Generic.PWS.Games.4' 被发现
C:\ABC\wddpri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\wggpri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现
C:\ABC\WinSys64.Sys - 特征码 'Trojan-Proxy.Win32.Delf.AN' 被发现
C:\ABC\zxipri.dll - 特征码 'Trojan-Spy.Win32.Delf.uv' 被发现

        34 文件被扫描
          (0 压缩档 0 文件)
        34 特征码被侦测
        0 可疑代码段被发现
        耗时: 0:00.484
qigang
发表于 2007-9-5 21:20:36 | 显示全部楼层

45/23

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.OnlineGames.yaz
病毒: Trojan.PSW.Win32.OnlineGames.yft
病毒: Trojan.PSW.Win32.AskTao.bo
病毒: Trojan.PSW.Win32.OnlineGames.yew
病毒: Trojan.PSW.Win32.OnlineGames.ycn
病毒: Hack.Win32.ArpCheater.d  
病毒: Trojan.PSW.QQPass.tnm   
病毒: Trojan.PSW.QQPass.tnm   
病毒: Trojan.PSW.Win32.OnlineGames.yer
病毒: Trojan.PSW.Win32.ZhuXian.av
病毒: Trojan.PSW.Win32.YBOnline.ak
病毒: Trojan.PSW.Win32.ZeroOnline.am
病毒: Trojan.PSW.Win32.XYOnline.hd
病毒: Trojan.PSW.Win32.OnlineGames.yfd
病毒: Trojan.PSW.Win32.OnlineGames.ygt
病毒: Trojan.PSW.Win32.Agent.vcd
病毒: Trojan.PSW.Win32.OnlineGames.xym
病毒: Trojan.PSW.Win32.RocOnline.cx
病毒: Trojan.PSW.Win32.SunOnline.bn
病毒: Trojan.PSW.Win32.XYOnline.gs
病毒: Trojan.PSW.Win32.ZeroOnline.ah
病毒: Trojan.PSW.Win32.NPSword.a
病毒: Trojan.PSW.Win32.OnlineGames.yfi

MAC地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:19.39.22
残缺的唯美
发表于 2007-9-5 21:23:12 | 显示全部楼层
--> tlvpri.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao.6
  --> upxdnd.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> wddpri.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao.10
  --> wggpri.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao.14
  --> zxipri.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao
  --> nslkupi.exe
      [DETECTION] Contains a signature of the (dangerous) backdoor program BDS/Agent.alh.33 Backdoor server programs
  --> SysWin64.Jmp
      [DETECTION] Contains signature of the worm WORM/QQPass.Q
  --> WinSys64.Sys
      [DETECTION] Contains signature of the worm WORM/QQPass.Q
  --> ravdthxmon.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.bla
  --> ravwdmon.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4166
  --> ratbapi.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> ravcqmon.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> ravmsmon.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> ravmymon.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> ravzxmon.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> kvdxama.dll
      [DETECTION] Is the Trojan horse TR/Agent.17494.1
  --> rarjapi.dll
      [DETECTION] Is the Trojan horse TR/Agent.18012
  --> rsjzapm.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.bmj
  --> kvmxbma.dll
      [DETECTION] Is the Trojan horse TR/Agent.19530
  --> raqjapi.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> avzxamn.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao.26
  --> avwlamn.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> rsmyapm.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.acg
  --> NewTemp.bak
      [DETECTION] Contains signature of the worm WORM/QQPass.A
  --> NewTemp.dll
      [DETECTION] Contains signature of the worm WORM/QQPass.A
  --> myhpri.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.bjk
  --> qjhpri.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao.12
  --> avwsamn.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> dhepri.dll
      [DETECTION] Is the Trojan horse TR/Agent.16940
  --> hnuajpvafk.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> jzipri.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.aao.11
  --> kapjazy.dll
      [DETECTION] Is the Trojan horse TR/PSW.Agent.PL.1
  --> kaqhczy.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> rsztapm.dll
      [DETECTION] Is the Trojan horse TR/Spy.Delf.acg.1
      [INFO]      A backup was created as '470d14ce.qua'  ( QUARANTINE )
      [INFO]      The file was deleted!

全杀
残缺的唯美
发表于 2007-9-5 21:32:40 | 显示全部楼层
诺顿14个
微点卫士
发表于 2007-9-5 21:43:23 | 显示全部楼层
微点:
蠕虫名称:Worm.Win32.QQPass.x

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\SYSWIN64.JMP
是蠕虫程序!
已成功阻止其运行,是否要删除此文件?
木马名称:Trojan-PSW.Win32.OnLineGames.jsx

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\RAVDTHXMON.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?
木马名称:Trojan-PSW.Win32.OnLineGames.jzp

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\RAVWDMON.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?
蠕虫名称:Worm.Win32.QQPass.o

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\NEWTEMP.BAK
是蠕虫程序!
已成功阻止其运行,是否要删除此文件?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\RAVCQMON.EXE
木马程序生成以下文件:
1) C:\PROGRAM FILES\NETMEETING\RAVCQMON.EXE
2) C:\PROGRAM FILES\NETMEETING\RAVCQMON.DAT
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\RAVMYMON.EXE
木马程序生成以下文件:
1) C:\PROGRAM FILES\NETMEETING\RAVMYMON.EXE
2) C:\PROGRAM FILES\NETMEETING\RAVMYMON.DAT
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\RAVMSMON.EXE
木马程序生成以下文件:
1) C:\PROGRAM FILES\NETMEETING\RAVMSMON.EXE
2) C:\PROGRAM FILES\NETMEETING\RAVMSMON.DAT
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\样本\RAVZXMON.EXE
木马程序生成以下文件:
1) C:\PROGRAM FILES\NETMEETING\RAVZXMON.EXE
2) C:\PROGRAM FILES\NETMEETING\RAVZXMON.DAT
是否删除木马程序及其衍生物?

[ 本帖最后由 微点卫士 于 2007-9-5 21:44 编辑 ]
欠妳緈諨
发表于 2007-9-5 21:50:14 | 显示全部楼层
avast18个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
发表于 2007-9-5 21:52:16 | 显示全部楼层
Scan performed at: 2007-9-5 21:51:52
Scanning Log
NOD32 version 2507 (20070905) NT
Command line: C:\Documents and Settings\Don johnson\桌面\样本.rar
Operating memory - is OK

Date: 5.9.2007  Time: 21:51:55
Anti-Stealth technology is enabled.
Scanned disks, folders and files: C:\Documents and Settings\Don johnson\桌面\样本.rar
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?tlvpri.dll - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?upxdnd.dll - probably a variant of Win32/Genetik trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?wddpri.dll - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?zxipri.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?nslkupi.exe - Win32/Agent.NEM trojan - was a part of the deleted object
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?SysWin64.Jmp - a variant of Win32/AutoRun.Q worm
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?WinSys64.Sys - a variant of Win32/AutoRun.Q worm
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ravdthxmon.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ravwdmon.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ratbapi.dll - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ravcqmon.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ravmsmon.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ravmymon.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?ravzxmon.exe - probably a variant of Win32/PSW.OnLineGames.NEP trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?kvdxama.dll - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?rarjapi.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?rsjzapm.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?kvmxbma.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?rsmyapm.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?NewTemp.bak - probably a variant of Win32/PSW.Delf.NHI trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?NewTemp.dll - probably a variant of Win32/PSW.OnLineGames.NBR trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?myhpri.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?avwsamn.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?dhepri.dll - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?hnuajpvafk.dll - a variant of Win32/PSW.WOW.UT trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?jzipri.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?kaqhczy.dll - a variant of Win32/PSW.OnLineGames.NEN trojan
C:\Documents and Settings\Don johnson\桌面\样本.rar ?RAR ?rsztapm.dll - probably a variant of Win32/PSW.OnLineGames.NEN trojan
Number of scanned files: 35
Number of threats found: 28
Number of files cleaned: 1
Time of completion: 21:51:58 Total scanning time: 3 sec (00:00:03)
uhthn2002
发表于 2007-9-5 22:50:20 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Paranoia Database - 3247
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\uhthn\Desktop\New Folder

C:\Documents and Settings\uhthn\Desktop\New Folder\tlvpri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\upxdnd.dll - Suspicious of Trojan-PSW.OnLineGames.1
C:\Documents and Settings\uhthn\Desktop\New Folder\wddpri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\wggpri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\zxipri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\nslkupi.exe - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\SysWin64.Jmp - Infected with Win32.PDB-1885 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\WinSys64.Sys - Suspicious of Win32.Trojan-PSW.QQPass.1
C:\Documents and Settings\uhthn\Desktop\New Folder\ravdthxmon.exe - Infected with PDB-969 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\ravwdmon.exe - Infected with PDB-1773 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\ratbapi.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\ravcqmon.exe - Infected with PDB-1597 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\ravmsmon.exe - Infected with PDB-2470 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\ravmymon.exe - Infected with PDB-2547 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\ravzxmon.exe - Infected with PDB-1778 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\kvdxama.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\rarjapi.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\rsjzapm.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\kvmxbma.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\raqjapi.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\avzxamn.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\avwlamn.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\rsmyapm.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\NewTemp.bak - Infected with Win32.PDB-643 Malware program - Deleted
C:\Documents and Settings\uhthn\Desktop\New Folder\NewTemp.dll - Suspicious of Win32.Trojan-PSW.Game.1
C:\Documents and Settings\uhthn\Desktop\New Folder\myhpri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\qjhpri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\avwsamn.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\dhepri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\hnuajpvafk.dll - Suspicious of Trojan-PSW.Game.3
C:\Documents and Settings\uhthn\Desktop\New Folder\jzipri.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\kapjazy.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\kaqhczy.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3
C:\Documents and Settings\uhthn\Desktop\New Folder\rsztapm.dll - Suspicious of Win32.Trojan-PSW.OnLineGames.3

34 Files scanned
8 Infected files found
26 Suspicious files found
0 Files cured
8 Files deleted
浪滔天
发表于 2007-9-5 23:37:56 | 显示全部楼层
卡巴 7.0.0.125 高启发
29个

已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: D:\样本\ravzxmon.exe//PE_Patch//UPack
已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: D:\样本\ravmsmon.exe//PE_Patch//UPack
已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: D:\样本\ravcqmon.exe//PE_Patch//UPack
已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: D:\样本\ravmymon.exe
已删除: 病毒 Worm.Win32.QQPass.a        文件: D:\样本\NewTemp.bak//PE_Patch.UPX//UPX
已删除: 病毒 Worm.Win32.QQPass.a        文件: D:\样本\NewTemp.dll//PE_Patch.UPX//UPX
已删除: 病毒 Worm.Win32.QQPass.q        文件: D:\样本\WinSys64.Sys
已删除: 病毒 Worm.Win32.QQPass.q        文件: D:\样本\SysWin64.Jmp//UPX
已删除: 木马程序 Backdoor.Win32.Agent.alh        文件: D:\样本\nslkupi.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.Agent.pl        文件: D:\样本\kapjazy.dll
已删除: 木马程序 Trojan-PSW.Win32.Delf.zm        文件: D:\样本\kvmxbma.dll
已删除: 木马程序 Trojan-PSW.Win32.Delf.zn        文件: D:\样本\avwlamn.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bjk        文件: D:\样本\myhpri.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bjs        文件: D:\样本\zxipri.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bla        文件: D:\样本\ravdthxmon.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bln        文件: D:\样本\hnuajpvafk.dll//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bmj        文件: D:\样本\rsjzapm.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bmk        文件: D:\样本\upxdnd.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bot        文件: D:\样本\kvdxama.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bou        文件: D:\样本\kaqhczy.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.bow        文件: D:\样本\raqjapi.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.aao        文件: D:\样本\wddpri.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.aao        文件: D:\样本\qjhpri.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.aao        文件: D:\样本\jzipri.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.aao        文件: D:\样本\tlvpri.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.acg        文件: D:\样本\rsmyapm.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.acg        文件: D:\样本\rsztapm.dll
已删除: 木马程序 Trojan-Spy.Win32.Delf.ach        文件: D:\样本\wggpri.dll
已删除: 木马程序 Trojan.Win32.Agent.bfj        文件: D:\样本\ravwdmon.exe//PE_Patch//UPack
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-16 12:01 , Processed in 0.146509 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表