查看: 3904|回复: 25
收起左侧

[病毒样本] 一大包新货

[复制链接]
gzg
发表于 2007-9-7 19:17:23 | 显示全部楼层 |阅读模式
大家扫扫看

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
FBAV
发表于 2007-9-7 19:18:48 | 显示全部楼层
MicroVita AntiSpyware 100 C
_____________________________________________
                                          
             风暴微塔反间谍
[强力查杀各种Win32位的病毒,木马,蠕虫,恶意软件]                  
                   http://221.10.254.214/
----------------------------------------------
开始扫描……

正在检查启动……
[C:\Documents and Settings\Administrator\桌面\virus\IG\LAONPK.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\WNUUVO.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\3.EXE]
                    …………引擎[3]发现Suspicious file
[C:\Documents and Settings\Administrator\桌面\virus\IG\3.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\YYWPTE.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\ZTMINS.EXE]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\IG\IG.exe]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\4.EXE]
                    …………引擎[3]发现Suspicious file
[C:\Documents and Settings\Administrator\桌面\virus\IG\AUTORUN.EXE]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\ZXHINS.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\NSLOOKUPI.EXE]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\NSLOOKUPI.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\JZIINS.EXE]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\IG\JZIINS.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\WLHINS.EXE]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\IG\WLHINS.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\NTSOKELE.EXE]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\IG\SYSWIN64.JMP]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\IG\WINSYS64.SYS]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\LYMANGR.DLL]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\MSDEG32.DLL]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\WINSYS64.TAO]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\LYLOADER.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
[C:\Documents and Settings\Administrator\桌面\virus\IG\A.EXE]
                    …………特征码引擎[1]发现病毒
[C:\Documents and Settings\Administrator\桌面\virus\IG\AUTORUN.INF]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\SERT.EXE]
                    …………引擎[3]发现Suspicious File
[C:\Documents and Settings\Administrator\桌面\virus\IG\DISKMAN32.EXE]
                    …………引擎[2]发现病毒:Win32.Unknow
文件数:36   病毒数:31  比重:0.8611111111111
OK  扫描完毕!

[ 本帖最后由 FBAV 于 2007-9-7 19:20 编辑 ]
曲中求
发表于 2007-9-7 19:19:54 | 显示全部楼层
32.。。。

Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\IG[1].part1'
C:\Documents and Settings\Administrator\桌面\IG[1].part1\3.EXE
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\4.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\A.EXE
      [DETECTION] Is the Trojan horse TR/Crypt.XDR.Gen
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\AUTORUN.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\BSLRIA.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\DISKMAN32.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\DISKMAN32.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\FAVIUP.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\IG.exe
      [DETECTION] Contains detection pattern of the dropper DR/Delphi.Gen
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\JZIINS.EXE
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.bjx
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\JZIPRI.DLL
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.aki
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\LAONPK.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\LYLOADER.EXE
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\LYMANGR.DLL
      [DETECTION] Is the Trojan horse TR/PSW.OnLine.agb.2
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\MSDEG32.DLL
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\NSLOOKUPI.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Agent.alh.25 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\NTSOKELE.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Kolmat.B.11 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\NUHJNK.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\SERT.EXE
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4117
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\SYSWIN64.JMP
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\WDKBNN.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\WINSYS64.SYS
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\WINSYS64.TAO
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\WLHINS.EXE
      [DETECTION] Is the Trojan horse TR/Spy.Delf.UV.125
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\WLHPRI.DLL
      [DETECTION] Is the Trojan horse TR/Spy.Delf.UV.128
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\WNUUVO.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\YOETSY.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\YYWPTE.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\ZTMINS.EXE
      [DETECTION] Is the Trojan horse TR/Agent.12521
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\ZTMPRI.DLL
      [DETECTION] Is the Trojan horse TR/Agent.19497.1
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\ZXHINS.EXE
      [DETECTION] Is the Trojan horse TR/Agent.12412
      [WARNING]   The file was ignored!
C:\Documents and Settings\Administrator\桌面\IG[1].part1\ZXHPRI.DLL
      [DETECTION] Is the Trojan horse TR/Spy.Delf.YH
      [WARNING]   The file was ignored!


End of the scan: 2007年9月7日  19:19
Used time: 00:10 min

The scan has been done completely.

      1 Scanning directories
     36 Files were scanned
     31 viruses and/or unwanted programs were found
      1 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      5 Files not concerned
      0 Archives were scanned
     32 Warnings
      0 Notes
qigang
发表于 2007-9-7 19:20:50 | 显示全部楼层

33/14

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.OnlineGames.ydh
病毒: Trojan.PSW.Win32.QQPass.tqq
病毒: Trojan.PSW.Win32.OnlineGames.ybe
病毒: Trojan.PSW.Win32.ZeroOnline.ag
病毒: Trojan.PSW.Win32.XYOnline.gy
病毒: Trojan.PSW.Win32.XYOnline.gy
病毒: Trojan.PSW.Win32.XYOnline.gy
病毒: Trojan.PSW.Win32.WorldOnline.kl
病毒: Trojan.PSW.Win32.OnlineGames.xxh
病毒: Trojan.PSW.Win32.OnlineGames.xwm

MAC地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:19.39.42
红心王子
发表于 2007-9-7 19:21:28 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\IG.part1.rar'
C:\Documents and Settings\Administrator\桌面\IG.part1.rar
  [0] Archive type: RAR
  --> LAONPK.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> WNUUVO.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> 3.EXE
      [DETECTION] Contains suspicious code HEUR/Malware
  --> YYWPTE.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> DISKMAN32.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> ZTMINS.EXE
      [DETECTION] Is the Trojan horse TR/Agent.12521
  --> ZTMPRI.DLL
      [DETECTION] Is the Trojan horse TR/Agent.19497.1
  --> ZXHPRI.DLL
      [DETECTION] Is the Trojan horse TR/Spy.Delf.YH
  --> IG.exe
      [DETECTION] Contains detection pattern of the dropper DR/Delphi.Gen
  --> 4.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
  --> AUTORUN.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
  --> ZXHINS.EXE
      [DETECTION] Is the Trojan horse TR/Agent.12412
  --> BSLRIA.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> FAVIUP.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> NUHJNK.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> WDKBNN.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> YOETSY.DLL
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
  --> NSLOOKUPI.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Agent.alh.25 Backdoor server programs
  --> JZIINS.EXE
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.bjx
  --> JZIPRI.DLL
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.aki
  --> WLHINS.EXE
      [DETECTION] Is the Trojan horse TR/Spy.Delf.UV.125
  --> WLHPRI.DLL
      [DETECTION] Is the Trojan horse TR/Spy.Delf.UV.128
  --> NTSOKELE.EXE
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Kolmat.B.11 Backdoor server programs
  --> SYSWIN64.JMP
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
  --> WINSYS64.SYS
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
  --> LYMANGR.DLL
      [DETECTION] Is the Trojan horse TR/PSW.OnLine.agb.2
  --> MSDEG32.DLL
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> WINSYS64.TAO
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/WinterLove.BJ.1 Backdoor server programs
  --> LYLOADER.EXE
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
Begin scan in 'C:\Documents and Settings\Administrator\桌面\IG.part2.rar'
C:\Documents and Settings\Administrator\桌面\IG.part2.rar
  [0] Archive type: RAR
  --> SERT.EXE
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4117
  --> DISKMAN32.EXE
      [DETECTION] Is the Trojan horse TR/Dldr.Zlob.cdg.5
      [INFO]      The file was deleted!


End of the scan: 2007年9月7日  19:21
Used time: 00:18 min

The scan has been done completely.

      0 Scanning directories
     37 Files were scanned
     30 viruses and/or unwanted programs were found
      1 Files were classified as suspicious:
      2 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      7 Files not concerned
      2 Archives were scanned
      0 Warnings
      0 Notes
平淡
发表于 2007-9-7 19:24:20 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
ssy275
发表于 2007-9-7 19:27:30 | 显示全部楼层
结果: 找到 31恶意软件
Trojan-Downloader.Win32.Zlob.cdg (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\LAONPK.EXE
C:\Documents and Settings\ssy\桌面\IG.part1.rar\WNUUVO.EXE
C:\Documents and Settings\ssy\桌面\IG.part1.rar\YYWPTE.EXE
C:\Documents and Settings\ssy\桌面\IG.part1.rar\DISKMAN32.DLL
C:\Documents and Settings\ssy\桌面\IG.part1.rar\BSLRIA.DLL
C:\Documents and Settings\ssy\桌面\IG.part1.rar\FAVIUP.DLL
C:\Documents and Settings\ssy\桌面\IG.part1.rar\NUHJNK.DLL
C:\Documents and Settings\ssy\桌面\IG.part1.rar\WDKBNN.DLL
C:\Documents and Settings\ssy\桌面\IG.part1.rar\YOETSY.DLL
Trojan-PSW.Win32.OnLineGames.ajd (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\ZTMINS.EXE
Trojan-PSW.Win32.OnLineGames.yn (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\ZTMPRI.DLL
Trojan-Spy.Win32.Delf.yh (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\ZXHPRI.DLL
C:\Documents and Settings\ssy\桌面\IG.part1.rar\ZXHINS.EXE
Trojan-PSW.Win32.WOW.vd (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\IG.exe
Backdoor.Win32.WinterLove.bi (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\4.EXE
C:\Documents and Settings\ssy\桌面\IG.part1.rar\AUTORUN.EXE
C:\Documents and Settings\ssy\桌面\IG.part1.rar\SYSWIN64.JMP
Backdoor.Win32.Agent.alh (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\NSLOOKUPI.EXE
Trojan-PSW.Win32.Lmir.bjx (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\JZIINS.EXE
Trojan-PSW.Win32.OnLineGames.aki (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\JZIPRI.DLL
Trojan-Spy.Win32.Delf.uv (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\WLHINS.EXE
C:\Documents and Settings\ssy\桌面\IG.part1.rar\WLHPRI.DLL
Backdoor.Win32.Kolmat.b (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\NTSOKELE.EXE
Backdoor.Win32.WinterLove.bj (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\WINSYS64.SYS
C:\Documents and Settings\ssy\桌面\IG.part1.rar\WINSYS64.TAO
Trojan-PSW.Win32.OnLineGames.bmu (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\LYMANGR.DLL
Trojan-PSW.Win32.OnLineGames.bmv (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\MSDEG32.DLL
Trojan-PSW.Win32.OnLineGames.bmt (病毒)
C:\Documents and Settings\ssy\桌面\IG.part1.rar\LYLOADER.EXE
欠妳緈諨
发表于 2007-9-7 19:31:37 | 显示全部楼层
26

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
xjw_1990
发表于 2007-9-7 19:31:43 | 显示全部楼层
卡巴杀了31个~
电影结束了
发表于 2007-9-7 19:33:49 | 显示全部楼层
Scan performed at: 2007-9-7 19:32:34
Scanning Log
NOD32 version 2512 (20070907) NT
Command line: D:\a.rar
C:\Program Files\Eset\nod32.exe - is OK

Date: 7.9.2007  Time: 19:32:35
Anti-Stealth technology is enabled.
Scanned disks, folders and files: D:\a.rar
D:\a.rar ?RAR ?3.EXE - probably unknown NewHeur_PE virus [7]
D:\a.rar ?RAR ?4.EXE - a variant of Win32/AutoRun.Q worm
D:\a.rar ?RAR ?A.EXE - a variant of Win32/PSW.Legendmir.NEP trojan
D:\a.rar ?RAR ?AUTORUN.EXE - a variant of Win32/AutoRun.Q worm
D:\a.rar ?RAR ?AUTORUN.INF - is OK
D:\a.rar ?RAR ?BSLRIA.DLL - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?DELETEME.BAT - is OK
D:\a.rar ?RAR ?DISKMAN32.DLL - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?DISKMAN32.EXE - a variant of Win32/PSW.OnLineGames.YA trojan
D:\a.rar ?RAR ?FAVIUP.DLL - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?IG.exe - probably unknown NewHeur_PE virus [7]
D:\a.rar ?RAR ?JZIINS.EXE - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?JZIPRI.DLL - a variant of Win32/PSW.OnLineGames.NEN trojan
D:\a.rar ?RAR ?LAONPK.EXE - a variant of Win32/PSW.OnLineGames.YA trojan
D:\a.rar ?RAR ?LYLOADER.EXE - a variant of Win32/PSW.Agent.NEC trojan
D:\a.rar ?RAR ?LYMANGR.DLL - is OK
D:\a.rar ?RAR ?MSDEG32.DLL - is OK
D:\a.rar ?RAR ?NSLOOKUPI.EXE - Win32/Agent.NEM trojan
D:\a.rar ?RAR ?NTSOKELE.EXE - Win32/Delf.NGD trojan
D:\a.rar ?RAR ?NUHJNK.DLL - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?SERT.EXE - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?SYSWIN64.JMP - a variant of Win32/AutoRun.Q worm
D:\a.rar ?RAR ?WDKBNN.DLL - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?WINSYS64.SYS - a variant of Win32/AutoRun.Q worm
D:\a.rar ?RAR ?WINSYS64.TAO - a variant of Win32/AutoRun.Q worm
D:\a.rar ?RAR ?WLHINS.EXE - probably a variant of Win32/PSW.OnLineGames.NEN trojan
D:\a.rar ?RAR ?WLHPRI.DLL - probably a variant of Win32/PSW.OnLineGames.NEN trojan
D:\a.rar ?RAR ?WNUUVO.EXE - a variant of Win32/PSW.OnLineGames.YA trojan
D:\a.rar ?RAR ?YOETSY.DLL - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?YYWPTE.EXE - a variant of Win32/PSW.OnLineGames.YA trojan
D:\a.rar ?RAR ?ZTMINI.DLL - is OK
D:\a.rar ?RAR ?ZTMINS.EXE - probably a variant of Win32/Genetik trojan
D:\a.rar ?RAR ?ZTMPRI.DLL - probably a variant of Win32/PSW.OnLineGames.NEN trojan
D:\a.rar ?RAR ?ZXGINI.DLL - is OK
D:\a.rar ?RAR ?ZXHINS.EXE - probably a variant of Win32/PSW.OnLineGames.NEN trojan
D:\a.rar ?RAR ?ZXHPRI.DLL - probably a variant of Win32/PSW.OnLineGames.NEN trojan
Number of scanned files: 37
Number of threats found: 30
Number of active threats: 1
Time of completion: 19:32:42 Total scanning time: 7 sec (00:00:07)

Notes:
[7] File is probably infected with an unknown virus.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-3-1 10:30 , Processed in 0.082914 second(s), 2 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表