查看: 3626|回复: 13
收起左侧

[病毒样本] 一个下载者下的81个

[复制链接]
qianwenxiang
发表于 2007-10-8 21:10:12 | 显示全部楼层 |阅读模式
晕死 启动六十多个进程 差点没死机

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
发表于 2007-10-8 21:12:46 | 显示全部楼层
54
detected: Trojan program Trojan-Downloader.Win32.Agent.dex        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/setup.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dpo        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ravdh3mon.dat//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dpo        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ravdh3mon.exe//PE_Patch//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.dey        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ravdhmon.dat//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.dey        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ravdhmon.exe
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dpo        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/dahua3.exe//PE_Patch//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.dey        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/dahua.exe
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eaa        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/fengyun.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.edv        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/huaxia.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eck        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/jianghu.exe//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.dex        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/logogo.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ejx        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/menghuan.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dwf        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/menghuan1.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egi        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/moyu.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ecc        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ms.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.efo        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/qiji.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dzs        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/tianlong.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.efq        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/wanmei.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eja        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/wendao.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eiz        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/wulin.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eim        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/zhengtu.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egb        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/zhuxian.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.efq        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/addrgjhelp.dll//UPack
detected: Trojan program Trojan-PSW.Win32.WOW.yv        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/addrmshelp.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eiz        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/avwlbmn.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eiz        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/avwlbst.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egb        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/avzxdmn.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egb        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/avzxdst.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eaa        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kafyeaz.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eaa        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kafyezy.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.edv        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kaqheaz.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.edu        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kaqhezy.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eja        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kawdbaz.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eja        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kawdbzy.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dvw        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kvmxdis.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dwm        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kvmxdma.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ejx        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kvmxeis.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ekw        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/kvmxema.dll
detected: virus Heur.Invader (modification)        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/long.exe
detected: Trojan program Trojan-PSW.Win32.Agent.ri        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/mseam.dll
detected: Trojan program Trojan.Win32.Agent.btk        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/mssock.sys
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ebq        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/qdshm.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ecj        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rarjbpi.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eck        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rarjbtl.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ebz        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ratbfpi.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dzs        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ratbftl.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dsb        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/ravmhmon.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dqp        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rsmycpm.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.dqt        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rsmycsp.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egi        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rsmydpm.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egi        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rsmydsp.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.egs        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rsztcpm.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.eim        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/rsztcsp.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.efo        File: C:\Documents and Settings\Owner\×ÀÃæ\1008.rar/IntelX86.exe//PE_Patch//UPack
nosferatu
头像被屏蔽
发表于 2007-10-8 21:14:48 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\桌面\1008.rar'
C:\Documents and Settings\Administrator\桌面\1008.rar
  [0] Archive type: RAR
  --> setup.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.GOC.1
  --> ravdh3mon.dat
      [DETECTION] Is the Trojan horse TR/PSW.Onlineg.TF.1
  --> ravdh3mon.exe
      [DETECTION] Is the Trojan horse TR/PSW.Onlineg.TF.1
  --> ravdhmon.dat
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.dey.2
  --> ravdhmon.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4189
  --> dahua3.exe
      [DETECTION] Is the Trojan horse TR/PSW.Onlineg.TF.1
  --> dahua.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.4189
  --> fengyun.exe
      [DETECTION] Is the Trojan horse TR/Spy.OnLineGames
  --> huaxia.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.edu
  --> jianghu.exe
      [DETECTION] Is the Trojan horse TR/Drop.Age.14463.A
  --> logogo.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.GOC.1
  --> menghuan.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ejx
  --> menghuan1.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dsb
  --> moyu.exe
      [DETECTION] Is the Trojan horse TR/Agent.15051
  --> ms.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.dmj
  --> qiji.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.efo
  --> tianlong.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dzs.2
  --> wanmei.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.dmj
  --> wendao.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eja
  --> wulin.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eiz
  --> zhengtu.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eim
  --> zhuxian.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.egb
  --> addrgjhelp.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.efq
  --> addrmshelp.dll
      [DETECTION] Is the Trojan horse TR/PSW.Wow.YV
  --> avwlbmn.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eiz.1
  --> avwlbst.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eiz
  --> avzxdmn.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.egb.1
  --> avzxdst.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.egb
  --> kafyeaz.exe
      [DETECTION] Is the Trojan horse TR/Spy.OnLineGames
  --> kafyezy.dll
      [DETECTION] Is the Trojan horse TR/Spy.OnLineGa.Dll
  --> kaqheaz.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.edu
  --> kaqhezy.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.edu
  --> kawdbaz.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eja
  --> kawdbzy.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eja.1
  --> kvmxdis.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dvw
  --> kvmxdma.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dwm
  --> kvmxeis.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ejx
  --> kvmxema.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> long.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> mseam.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.dmj
  --> mssock.sys
      [DETECTION] Is the Trojan horse TR/Agent.btk.1
  --> qdshm.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.dmj
  --> rarjbpi.dll
      [DETECTION] Is the Trojan horse TR/Drop.Age.14463.B
  --> rarjbtl.exe
      [DETECTION] Is the Trojan horse TR/Drop.Age.14463.A
  --> ratbfpi.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ebz
  --> ratbftl.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dzs.2
  --> ravmhmon.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dsb
  --> rsmycpm.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.dqp
  --> rsmycsp.exe
      [DETECTION] Is the Trojan horse TR/Agent.13361
  --> rsmydpm.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.egi
  --> rsmydsp.exe
      [DETECTION] Is the Trojan horse TR/Agent.15051
  --> rsztcpm.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.egs
  --> rsztcsp.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.eim
  --> IntelX86.dll
      [DETECTION] Is the Trojan horse TR/PSW.28672.16
  --> IntelX86.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.efo
      [WARNING]   The file was ignored!


End of the scan: 星期一 2007年10月8日  21:14
Used time: 01:11 min

The scan has been done completely.

      0 Scanning directories
     83 Files were scanned
     53 viruses and/or unwanted programs were found
      2 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     30 Files not concerned
      1 Archives were scanned
      1 Warnings
      0 Notes
FBAV
发表于 2007-10-8 21:19:23 | 显示全部楼层
MicroVita AntiSpyware 100 C
_____________________________________________
                                          
             风暴微塔反间谍
[强力查杀各种Win32位的病毒,木马,蠕虫,恶意软件]                  
                   http://221.10.254.214/
----------------------------------------------
开始扫描……


正在检查启动……
[C:\Documents and Settings\Administrator\桌面\Virus\1008\setup.exe]
                    …………发现Spy!报告: [4] [2] [1]
文件信息:  大小:13686  MD5:e8385e4949fd0ffc3b3eacd2c1896cdd


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ravdh3mon.dat]
                    …………发现Spy!报告: [4] [1]
文件信息:  大小:8012  MD5:ef8739a7390c70a98963577f39af1864


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ravdh3mon.exe]
                    …………发现Spy!报告: [4] [1]
文件信息:  大小:13288  MD5:a5ae247b7647a9ae2fb3fd08f4ff1171


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ravdhmon.dat]
                    …………发现Spy!报告: [4] [2] [1]
文件信息:  大小:11580  MD5:879f7024eed2f6779ec64fbfe366a077


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ravdhmon.exe]
                    …………发现Spy!报告: [4] [2] [1]
文件信息:  大小:17044  MD5:9cf39b94e26ceac8bdd4d30e62f086b1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\dahua3.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:13288  MD5:a5ae247b7647a9ae2fb3fd08f4ff1171


[C:\Documents and Settings\Administrator\桌面\Virus\1008\dahua.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:17044  MD5:9cf39b94e26ceac8bdd4d30e62f086b1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\fengyun.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:13317  MD5:461fc3443dfd86693ea5bb9ded7d6fa3


[C:\Documents and Settings\Administrator\桌面\Virus\1008\huaxia.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:13907  MD5:dd3963247f17c83877a8c88e6da945cb


[C:\Documents and Settings\Administrator\桌面\Virus\1008\jianghu.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:14423  MD5:22c42a641e858abdbf912e4b340389d5


[C:\Documents and Settings\Administrator\桌面\Virus\1008\logogo.exe]
                    …………发现Spy!报告: [4] [2] [1]
文件信息:  大小:13686  MD5:e8385e4949fd0ffc3b3eacd2c1896cdd


[C:\Documents and Settings\Administrator\桌面\Virus\1008\menghuan.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:14421  MD5:f08d9179f048e26717e643c0f27abb9f


[C:\Documents and Settings\Administrator\桌面\Virus\1008\menghuan1.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:20699  MD5:e752907043865fce7c6efef8906fdb92


[C:\Documents and Settings\Administrator\桌面\Virus\1008\moyu.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15045  MD5:9792108e008bfa2bb4766c7749b6d35f


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ms.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:18148  MD5:fde4cd2da8b1e14990bc94f31de40622


[C:\Documents and Settings\Administrator\桌面\Virus\1008\qiji.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:10460  MD5:95da679f6d3b3d6c5b92477e2e5a67f7


[C:\Documents and Settings\Administrator\桌面\Virus\1008\tianlong.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:13810  MD5:403e690745db672fee6647cea3e9eb15


[C:\Documents and Settings\Administrator\桌面\Virus\1008\wanmei.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:16522  MD5:bf0fd47324c51b7eaec9aa7bda657203


[C:\Documents and Settings\Administrator\桌面\Virus\1008\wendao.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:14008  MD5:bf9560d3f04a447766c958cfbdd77342


[C:\Documents and Settings\Administrator\桌面\Virus\1008\wulin.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15056  MD5:94cb9b3c451e30a92c7bb602aceddfa1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\zhengtu.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15327  MD5:bec0243b8700e48bb04beb14ab2f875e


[C:\Documents and Settings\Administrator\桌面\Virus\1008\zhuxian.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15083  MD5:84e0b7c7783784929474baad6f7d08ce


[C:\Documents and Settings\Administrator\桌面\Virus\1008\addrgjhelp.dll]
                    …………发现Spy!报告: [4] [1]
文件信息:  大小:8516  MD5:0788b3534cd98feb68f3ef43be3caab4


[C:\Documents and Settings\Administrator\桌面\Virus\1008\addrmshelp.dll]
                    …………发现Spy!报告: [4] [1]
文件信息:  大小:10065  MD5:111e4b8e747bb44419f030eb34fb88e1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\avwlbmn.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:23118  MD5:b775e4567d16b54741d3dba1e88a1888


[C:\Documents and Settings\Administrator\桌面\Virus\1008\avwlbst.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15056  MD5:94cb9b3c451e30a92c7bb602aceddfa1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\avzxdmn.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:23118  MD5:390908d029b278dd056bdfc324fbeb86


[C:\Documents and Settings\Administrator\桌面\Virus\1008\avzxdst.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15083  MD5:84e0b7c7783784929474baad6f7d08ce


[C:\Documents and Settings\Administrator\桌面\Virus\1008\COMDLG32.OCX]
                    …………发现Spy!报告:[2]
文件信息:  大小:152848  MD5:ab412429f1e5fb9708a8cdea07479099


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kafyeaz.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:13317  MD5:461fc3443dfd86693ea5bb9ded7d6fa3


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kafyezy.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:19036  MD5:80d4fb4b080cbb528cc3f5374556e5a6


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kaqheaz.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:13907  MD5:dd3963247f17c83877a8c88e6da945cb


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kaqhezy.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:20032  MD5:2a75d6926905f599962c74e205ef6046


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kawdbaz.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:14008  MD5:bf9560d3f04a447766c958cfbdd77342


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kawdbzy.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:20058  MD5:737f146040293efda1c7a81dcb9e2cb6


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kvmxdis.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:14194  MD5:82753b508555c1a49ceaebab54277aff


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kvmxdma.dll]
                    …………发现Spy!报告:[6] 注入者[8] HOOK者
文件信息:  大小:20068  MD5:bffe701c4d1330ab0e7dffeee3e93ee1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kvmxeis.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:14421  MD5:f08d9179f048e26717e643c0f27abb9f


[C:\Documents and Settings\Administrator\桌面\Virus\1008\kvmxema.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:20564  MD5:621a584625f0a46c75e334650fe02fc1


[C:\Documents and Settings\Administrator\桌面\Virus\1008\mseam.dll]
                    …………发现Spy!报告: [4]
文件信息:  大小:9325  MD5:359648126d95659e9b99615b666fdda4


[C:\Documents and Settings\Administrator\桌面\Virus\1008\MSINET.OCX]
                    …………发现Spy!报告:[2]
文件信息:  大小:132880  MD5:90a39346e9b67f132ef133725c487ff6


[C:\Documents and Settings\Administrator\桌面\Virus\1008\mssock.sys]
                    …………发现Spy!报告: [4]
文件信息:  大小:5632  MD5:544ce3df3ce75036036cab98dbf1f877


[C:\Documents and Settings\Administrator\桌面\Virus\1008\qdshm.dll]
                    …………发现Spy!报告: [4]
文件信息:  大小:9306  MD5:0783225dac01621df7a4c33edcafe802


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rarjbpi.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:21072  MD5:d42f47b09ef0db065c45f7a639e4e1d8


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rarjbtl.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:14423  MD5:22c42a641e858abdbf912e4b340389d5


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ratbfpi.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:19538  MD5:52afeade54ef024d8a6a73d72bf6c702


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ratbftl.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:13810  MD5:403e690745db672fee6647cea3e9eb15


[C:\Documents and Settings\Administrator\桌面\Virus\1008\ravmhmon.dll]
                    …………发现Spy!报告: [4] [1]
文件信息:  大小:10195  MD5:a609809364d2f92a5e148eeefb1d9abd


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rsmycpm.dll]
                    …………发现Spy!报告:[6] 注入者[8] HOOK者
文件信息:  大小:21072  MD5:e2111826d51f685c2979a64d9e1b3ea4


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rsmycsp.exe]
                    …………发现Spy!报告:[2] [1]
文件信息:  大小:13341  MD5:93718f1ce2b217ce37fc344b4d38a6b6


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rsmydpm.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:22092  MD5:c6097a74cd1248400674529224b4e597


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rsmydsp.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15045  MD5:9792108e008bfa2bb4766c7749b6d35f


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rsztcpm.dll]
                    …………发现Spy!报告: [4] [6] 注入者[8] HOOK者
文件信息:  大小:23122  MD5:fd5f950dbe0a631b44f405257faebfb5


[C:\Documents and Settings\Administrator\桌面\Virus\1008\rsztcsp.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:15327  MD5:bec0243b8700e48bb04beb14ab2f875e


[C:\Documents and Settings\Administrator\桌面\Virus\1008\IntelX86.exe]
                    …………发现Spy!报告:[1]
文件信息:  大小:10460  MD5:95da679f6d3b3d6c5b92477e2e5a67f7


文件数:81   病毒数:55  比重:0.679012345679
OK  扫描完毕!

  ***日志解释
[4] 集中有害分析引擎
[3] 全局系统判断引擎   
[2] 文件特征码引擎
[1] 文件启发式引擎

[ 本帖最后由 FBAV 于 2007-10-8 21:21 编辑 ]
wangjay1980
发表于 2007-10-8 21:20:38 | 显示全部楼层
还有6个可能有问题的,其余的都21个没问题 算是垃圾吧

[ 本帖最后由 wangjay1980 于 2007-10-8 21:25 编辑 ]
qigang
发表于 2007-10-8 21:22:59 | 显示全部楼层

120/23

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Worm.Win32.Agent.vji     
病毒: Trojan.PSW.Win32.XYOnline.jx
病毒: Trojan.PSW.Win32.XYOnline.jx
病毒: Trojan.PSW.Win32.XYOnline.hg
病毒: Trojan.PSW.Win32.OnlineGames.yko
病毒: Trojan.PSW.Win32.OnlineGames.zer
病毒: Trojan.PSW.Win32.XYOnline.ko
病毒: Trojan.PSW.Win32.WoWar.zi
病毒: Trojan.PSW.Win32.OnlineGames.zet
病毒: Trojan.PSW.Win32.WoWar.zo
病毒: Trojan.PSW.Win32.OnlineGames.zdd
病毒: Trojan.PSW.Win32.OnlineGames.zdd
病毒: Trojan.PSW.Win32.QQHX.tqa
病毒: Trojan.PSW.Win32.QQHX.tqj
病毒: Trojan.PSW.Win32.TLOnline.bk
病毒: Trojan.PSW.Win32.XYOnline.kk
病毒: Trojan.PSW.Win32.RocOnline.fa
病毒: Trojan.PSW.Win32.RocOnline.fa

MAC地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:19.44.02
gbwyy
头像被屏蔽
发表于 2007-10-8 21:25:10 | 显示全部楼层
NOD包46个~
wangfeng66
发表于 2007-10-8 21:29:39 | 显示全部楼层
DRWEB  4.44   42报告
qqq000@qq.com
头像被屏蔽
发表于 2007-10-8 21:35:24 | 显示全部楼层

----------
              [凝逸反毒] (http://hi.baidu.com/503165656)
       [凝逸.扫描病毒引擎-日志]       2007.6.9 21:40:49
文件:F:\071009\一个下载者下的81个\setup.exe | 感染:virus [219>20070924_ny0024.axx]3(3.10)
操作:删除文件
文件:F:\071009\一个下载者下的81个\ravdh3mon.dat | 感染:virus [12>20071007_ny0026.axx]2(1.1)
操作:删除文件
文件:F:\071009\一个下载者下的81个\ravdh3mon.exe | 感染:virus [840>20071006_ny0025.axx]3(1.1)
操作:删除文件
文件:F:\071009\一个下载者下的81个\ravdhmon.dat | 感染:virus [5>20071007_ny0026.axx]3(3.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\ravdhmon.exe | 感染:virus [664>20071006_ny0025.axx]3(4.4)
操作:删除文件
文件:F:\071009\一个下载者下的81个\dahua3.exe | 感染:virus [840>20071006_ny0025.axx]3(1.1)
操作:删除文件
文件:F:\071009\一个下载者下的81个\dahua.exe | 感染:virus [664>20071006_ny0025.axx]3(4.4)
操作:删除文件
文件:F:\071009\一个下载者下的81个\huaxia.exe | 感染:virus [727>20071006_ny0025.axx]3(1.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\jianghu.exe | 感染:virus [276>20071007_ny0026.axx]3(3.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\logogo.exe | 感染:virus [219>20070924_ny0024.axx]3(3.10)
操作:删除文件
文件:F:\071009\一个下载者下的81个\menghuan.exe | 感染:virus [262>20071007_ny0026.axx]3(2.5)
操作:删除文件
文件:F:\071009\一个下载者下的81个\menghuan1.exe | 感染:virus [748>20071006_ny0025.axx]3(1.1)
操作:删除文件
文件:F:\071009\一个下载者下的81个\ms.exe | 感染:virus [2157>20071006_ny0025.axx]3(3.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\wanmei.exe | 感染:virus [2068>20071006_ny0025.axx]3(1.1)
操作:删除文件
文件:F:\071009\一个下载者下的81个\wendao.exe | 感染:virus [275>20071007_ny0026.axx]3(3.4)
操作:删除文件
文件:F:\071009\一个下载者下的81个\wulin.exe | 感染:virus [277>20071007_ny0026.axx]3(2.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\zhengtu.exe | 感染:virus [263>20071007_ny0026.axx]3(4.5)
操作:删除文件
文件:F:\071009\一个下载者下的81个\avwlbst.exe | 感染:virus [277>20071007_ny0026.axx]3(2.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\kaqheaz.exe | 感染:virus [727>20071006_ny0025.axx]3(1.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\kawdbaz.exe | 感染:virus [275>20071007_ny0026.axx]3(3.4)
操作:删除文件
文件:F:\071009\一个下载者下的81个\kvmxdis.exe | 感染:virus [1729>20071006_ny0025.axx]3(4.4)
操作:删除文件
文件:F:\071009\一个下载者下的81个\kvmxeis.exe | 感染:virus [262>20071007_ny0026.axx]3(2.5)
操作:删除文件
文件:F:\071009\一个下载者下的81个\rarjbtl.exe | 感染:virus [276>20071007_ny0026.axx]3(3.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\rsmycpm.dll | 感染:virus [1684>20071006_ny0025.axx]3(3.3)
操作:删除文件
文件:F:\071009\一个下载者下的81个\rsmycsp.exe | 感染:virus [1743>20071006_ny0025.axx]3(10.10)
操作:删除文件
文件:F:\071009\一个下载者下的81个\rsztcsp.exe | 感染:virus [263>20071007_ny0026.axx]3(4.5)
操作:删除文件
文件:F:\071009\一个下载者下的81个\qq.exe | 感染:virus [17>20071008_ny0027.axx]3(1.1)
操作:删除文件
扫描完成|病毒:27 文件:82|耗时:27139
----------

[ 本帖最后由 qqq000@qq.com 于 2007-10-8 08:39 编辑 ]
英仔
发表于 2007-10-8 21:36:41 | 显示全部楼层
AVG anti virua54個~~~費爾14個~~光華50個~bd~21個
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-19 09:06 , Processed in 0.165254 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表