楼主: zane_xzz
收起左侧

[病毒样本] 网马17个

[复制链接]
qigang
发表于 2007-10-15 19:29:47 | 显示全部楼层
兄弟好久没来了吧??咯咯。。
luowei2007
发表于 2007-10-15 19:42:17 | 显示全部楼层
Scanning Log          14个
NOD32 version 2591 (20071014) NT
Command line: E:\download\新建文件夹.rar

Date: 15.10.2007  Time: 19:37:31
Anti-Stealth technology is enabled.
Scanned disks, folders and files: E:\download\新建文件夹.rar
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1630.exe - Win32/PSW.Agent.NEC trojan - was a part of the deleted object
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1631.exe - probably unknown NewHeur_PE virus [7]
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1633.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1634.exe - a variant of Win32/PSW.Legendmir.NEP trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1636.exe - a variant of Win32/PSW.OnLineGames.YA trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1638.exe - probably a variant of Win32/Genetik trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\1639.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163a.exe - probably a variant of Win32/AutoRun.Q worm
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163b.exe - a variant of Win32/PSW.OnLineGames.YA trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163c.exe - probably a variant of Win32/Genetik trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163d.exe - probably unknown NewHeur_PE virus [7]
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163e.exe - a variant of Win32/PSW.OnLineGames.YA trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163g.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
E:\download\新建文件夹.rar ?RAR ?新建文件夹 (2)\163j.exe - Win32/Agent.NEM trojan - was a part of the deleted object
Number of scanned files: 18
Number of threats found: 14
Number of files cleaned: 1
Time of completion: 19:38:03 Total scanning time: 32 sec (00:00:32)

Notes:
[7] File is probably infected with an unknown virus.
xqiafl
发表于 2007-10-15 19:42:39 | 显示全部楼层
我觉得,LZ 把网址发出来,会比较好!
hkt988
发表于 2007-10-15 21:11:50 | 显示全部楼层
扫描进行于:2007-10-15 15:11:10
扫描日志
NOD32版本 2591 (20071014) NT
命令行: D:\下载文件夹\新建文件夹 (2).rar

日期: 15.10.2007  时间:15:11:13
已开启反隐藏功能.
已扫描的磁盘,文件夹及文件:D:\下载文件夹\新建文件夹 (2).rar
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1630.exe - Win32/PSW.Agent.NEC 木马 - 是已删除对象的一部分
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1631.exe - 未查明的 NewHeur_PE 病毒 [7]
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1633.exe - Win32/PSW.OnLineGames.NFL 木马的变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1634.exe - Win32/PSW.Legendmir.NEP 木马的变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1636.exe - Win32/PSW.OnLineGames.YA 木马的变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1638.exe - 可能是 Win32/Genetik 木马 的一个变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\1639.exe - 可能是 Win32/PSW.OnLineGames.NFL 木马 的一个变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163a.exe - 可能是 Win32/AutoRun.Q 蠕虫 的一个变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163b.exe - Win32/PSW.OnLineGames.YA 木马的变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163c.exe - 可能是 Win32/Genetik 木马 的一个变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163d.exe - 未查明的 NewHeur_PE 病毒 [7]
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163e.exe - Win32/PSW.OnLineGames.YA 木马的变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163g.exe - Win32/PSW.OnLineGames.NFL 木马的变种
D:\下载文件夹\新建文件夹 (2).rar >>RAR >>新建文件夹 (2)\163j.exe - Win32/Agent.NEM 木马 - 是已删除对象的一部分
已扫描的文件数目:18
已发现的病毒数目:14
已清除病毒的文件数目:1
完成时间: 15:11:20 总扫描时间:7 秒 (00:00:07)

注意:
[7] 该文件可能感染上未知病毒。
uhthn2002
发表于 2007-10-15 21:17:49 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 550
Paranoia Database - 10482
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\uhthn\Desktop\new

C:\Documents and Settings\uhthn\Desktop\new\1638.exe - Infected Trojan-PSW.OnLineGames.25
C:\Documents and Settings\uhthn\Desktop\new\1639.exe - Infected Trojan-PSW.OnLineGames.8
C:\Documents and Settings\uhthn\Desktop\new\163a.exe - Infected Win32.Trojan-PSW.QQPass.a
C:\Documents and Settings\uhthn\Desktop\new\163b.exe - Infected Trojan-PSW.OnLineGames.43
C:\Documents and Settings\uhthn\Desktop\new\163c.exe - Suspected MalwareDetector:Generic.PSW.3
C:\Documents and Settings\uhthn\Desktop\new\163d.exe - Infected Win32.Trojan-PSW.lmir.2
C:\Documents and Settings\uhthn\Desktop\new\163e.exe - Infected Trojan-PSW.OnLineGames.42
C:\Documents and Settings\uhthn\Desktop\new\163f.exe - Infected Trojan-PSW.OnLineGames.48
C:\Documents and Settings\uhthn\Desktop\new\163g.exe - Infected Trojan-PSW.OnLineGames.43
C:\Documents and Settings\uhthn\Desktop\new\163i.exe - Suspected MalwareDetector:Win32.Generic.PSW.8
C:\Documents and Settings\uhthn\Desktop\new\163j.exe - Infected Backdoor.Agent.6
C:\Documents and Settings\uhthn\Desktop\new\1630.exe - Infected Trojan-PSW.OnLineGames.u
C:\Documents and Settings\uhthn\Desktop\new\1631.exe - Suspected MalwareDetector:Generic.PSW.2
C:\Documents and Settings\uhthn\Desktop\new\1633.exe - Suspected MalwareDetector:Generic.PSW.1
C:\Documents and Settings\uhthn\Desktop\new\1634.exe - Infected Generic.Malware.43389.d07
C:\Documents and Settings\uhthn\Desktop\new\1636.exe - Infected Trojan-PSW.OnLineGames.43
C:\Documents and Settings\uhthn\Desktop\new\1637.exe - Infected Trojan-PSW.OnLineGames.48

17 Files scanned
13 Infected files found
4 Suspected files found
0 Files cured
13 Files deleted
netplaier
发表于 2007-10-15 22:16:46 | 显示全部楼层
--------------------------------------------------------
AVG Anti-Spyware - 扫描报告
---------------------------------------------------------
1634.exe

Downloader.Small

已清除.
163i.exe

Hijacker.Small

已清除.
163c.exe

Trojan.Agent

已清除.
1636.exe

Trojan.OnLineGames.bgr

已清除.
1638.exe

Trojan.OnLineGames.ddw

已清除.
163e.exe

Trojan.OnLineGames.doj

已清除.
共查杀:6项
报告结束
---------------------------------------------------------
Dr.Web 服务器版 - 扫描报告
---------------------------------------------------------
未发现病毒
共查杀:0项
报告结束
---------------------------------------------------------
Kaspersky 7.0 - 扫描报告
---------------------------------------------------------
1630.exe木马程序 Trojan-PSW.Win32.OnLineGames.eqh已删除
1631.exe木马程序 Trojan-PSW.Win32.WOW.aaw已删除
1633.exe木马程序 Trojan-PSW.Win32.OnLineGames.fds已删除
1634.exe木马程序 Trojan-PSW.Win32.OnLineGames.cnf已删除
1636.exe木马程序 Trojan-PSW.Win32.OnLineGames.bgr已删除
1637.exe木马程序 Trojan-PSW.Win32.OnLineGames.fcg已删除
1638.exe木马程序 Trojan-PSW.Win32.OnLineGames.ddw已删除
1639.exe木马程序 Trojan-PSW.Win32.OnLineGames.fbo已删除
163a.exe病毒 Virus.Win32.AutoRun.th已删除
163b.exe木马程序 Trojan-PSW.Win32.OnLineGames.dkt已删除
163c.exe木马程序 Trojan-PSW.Win32.OnLineGames.fdy已删除
163d.exe木马程序 Trojan-PSW.Win32.Lmir.bnl已删除
163e.exe木马程序 Trojan-PSW.Win32.OnLineGames.doj已删除
163f.exe木马程序 Trojan-PSW.Win32.OnLineGames.ejj已删除
163g.exe木马程序 Trojan-PSW.Win32.OnLineGames.fbu已删除
163i.exe木马程序 Backdoor.Win32.Kolmat.d已删除
163j.exe木马程序 Backdoor.Win32.Agent.byx已删除
共查杀:17项
报告结束
xemacs
发表于 2007-10-15 22:22:51 | 显示全部楼层
AVAST 下载时报警

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
micetai
发表于 2007-10-15 22:49:47 | 显示全部楼层
NIS2008 10个Scan Stats:
  Scan Time: 5 seconds
  Scan Options:
  Scan Targets: C:\Users\m\Desktop\新建文件夹 (2).rar
  Counts:
   Total items scanned: 18
   - Files & Directories: 18
   - Registry Entries: 0
   - Processes & Start-up Items: 0
   - Network & Browser Items: 0
   - Other: 0

   Total security risks detected: 10
   Total items resolved: 0
   Total items that require attention: 10
lygl
发表于 2007-10-16 13:04:53 | 显示全部楼层
扫描报告2007年10月16日 13:04:58 - 13:04:59计算机名称: LENOVO-6CED545F
扫描类型: 扫描目标
目标: C:\Documents and Settings\Owner\桌面\17个病毒.rar 结果: 找到 17 恶意软件Trojan-PSW.Win32.OnLineGames.eqh (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1630.exe
Trojan-PSW.Win32.WOW.aaw (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1631.exe
Trojan-PSW.Win32.OnLineGames.fds (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1633.exe
Trojan-PSW.Win32.OnLineGames.cnf (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1634.exe
Trojan-PSW.Win32.OnLineGames.bgr (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1636.exe
Trojan-PSW.Win32.OnLineGames.fcg (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1637.exe
Trojan-PSW.Win32.OnLineGames.ddw (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1638.exe
Trojan-PSW.Win32.OnLineGames.fbo (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\1639.exe
Virus.Win32.AutoRun.th (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163a.exe
Trojan-PSW.Win32.OnLineGames.dkt (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163b.exe
Trojan-PSW.Win32.OnLineGames.fdy (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163c.exe
Trojan-PSW.Win32.Lmir.bnl (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163d.exe
Trojan-PSW.Win32.OnLineGames.doj (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163e.exe
Trojan-PSW.Win32.OnLineGames.ejj (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163f.exe
Trojan-PSW.Win32.OnLineGames.fbu (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163g.exe
Backdoor.Win32.Kolmat.d (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163i.exe
Backdoor.Win32.Agent.byx (病毒)
  • C:\Documents and Settings\Owner\桌面\17个病毒.rar\新建文件夹 (2)\163j.exe
pmj_sh
发表于 2007-10-16 13:56:23 | 显示全部楼层
2007.10.16 05:52:34 {2344} (0110) [1620] Remains infected PSW.Agent.PDJ Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1630.exe
2007.10.16 05:52:34 {2344} (0110) [1620] Remains infected PSW.OnlineGames.NTN Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1631.exe
2007.10.16 05:52:34 {2344} (0110) [1620] Remains infected PSW.OnlineGames.NSP Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1633.exe
2007.10.16 05:52:34 {2344} (0110) [1620] Remains infected PSW.Legendmir.HNE Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1634.exe
2007.10.16 05:52:34 {2344} (0110) [1620] Remains infected PSW.OnlineGames.JOA Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1636.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.OnlineGames.NQT Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1637.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected Generic7.RAD Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1638.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.OnlineGames.NNZ Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\1639.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected Worm/Generic.DVF Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163a.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.OnlineGames.LFI Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163b.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected Generic8.MSI Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163c.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.Legendmir.ILD Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163d.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.OnlineGames.LCZ Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163e.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.OnlineGames.NCK Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163f.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected PSW.OnlineGames.NOC Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163g.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected Generic8.JCW Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163i.exe
2007.10.16 05:52:35 {2344} (0110) [1620] Remains infected Agent.IOP Omited; C:\Documents and Settings\pmj\桌面\VIRUS\tr17.rar:\新建文件夹 (2)\163j.exe
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-19 17:19 , Processed in 0.099971 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表