楼主: qianwenxiang
收起左侧

[病毒样本] 毒网更新1(28x)

[复制链接]
uhthn2002
发表于 2007-11-3 21:45:31 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 803
Paranoia Database - 48490
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\New Folder

C:\Documents and Settings\Uhthn\Desktop\New Folder\Avast Virus Cleaner Tool crack.exe - Suspected WIN32.TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\immortal_20070525.exe - Suspected TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\kcehc_eicooc20070702(1).exe - Suspected TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\PR.exe - Suspected TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa1.exe - Infected WIN32.GENERIC.MALWARE.49F.2400 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\csrss32.exe - Infected TROJAN-CLICKER.SMALL.1 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\user4.exe - Infected TROJAN-DOWNLOADER.SMALL.B - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\wr-1-682.exe - Suspected TROJAN-DOWNLOADER (HTTP://{REMOVED}/...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\down.exe - Infected MaliciousScope:TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\1.exe - Infected GENERIC.MALWARE.1D8.3315 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa11.exe - Infected GENERIC.MALWARE.023.335C - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa2.exe - Infected GENERIC.MALWARE.A93.347C - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\Vml.exe - Infected MaliciousScope:TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\vip.exe - Infected MaliciousScope:TROJAN-DOWNLOADER.AGENT.25 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa17.exe - Infected TROJAN-PSW.ONLINEGAMES.48 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\explorer2.exe - Infected TROJAN.LOWZONES.A - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\102.exe - Infected TROJAN-PSW.ONLINEGAMES.48 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\109.exe - Infected TROJAN-PSW.ONLINEGAMES.48 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa18.exe - Infected TROJAN-PSW.ONLINEGAMES.48 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\112.exe - Infected TROJAN-PSW.ONLINEGAMES.72 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa14.exe - Infected GENERIC.MALWARE.185.3AA8 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\106.exe - Infected TROJAN-PSW.ONLINEGAMES.73 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa4.exe - Infected GENERIC.MALWARE.B8E.3B89 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\101.exe - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa9.exe - Infected GENERIC.MALWARE.EF9.3DD4 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\113.exe - Infected TROJAN-PSW.ONLINEGAMES.48 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\L2.exe - Suspected TROJAN-DOWNLOADER (HTTP://{REMOVED}/...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\aa8.exe - Suspected TROJAN-PSW.ONLINEGAMES.2

28 Files scanned
21 Infected files found
7 Suspected files found
0 Files disinfected
21 Files deleted
碧水寒潭
发表于 2007-11-3 22:15:52 | 显示全部楼层
Start of the scan: 2007年11月3日  22:14

Starting the file scan:

Begin scan in 'H:\AV-TEST'
H:\AV-TEST\Update1.rar
  [0] Archive type: RAR
  --> Avast Virus Cleaner Tool crack.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> immortal_20070525.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.AAAB
  --> kcehc_eicooc20070702(1).exe
      [DETECTION] Is the Trojan horse TR/Click.MNB
  --> PR.exe
      [DETECTION] Is the Trojan horse TR/Dialer.PN.298
  --> aa1.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> csrss32.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> user4.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dxm.4
  --> wr-1-682.exe
      [DETECTION] Is the Trojan horse TR/Crypt.ULPM.Gen
  --> down.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> 1.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Zhidao
  --> aa11.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> aa2.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Vml.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> vip.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.eai
  --> aa17.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.fei
  --> explorer2.exe
      [DETECTION] Is the Trojan horse TR/Agent.14336.17
  --> 102.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ges
  --> 109.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.fnn
  --> aa18.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.fnn
  --> 112.exe
      [DETECTION] Is the Trojan horse TR/FWDisable.22620.1
  --> aa14.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.giy
  --> 106.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.gey
  --> aa4.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.giz
  --> 101.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> aa9.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> 113.exe
      [DETECTION] Is the Trojan horse TR/PSW.Wow.acd
  --> L2.exe
      [DETECTION] Is the Trojan horse TR/Crypt.PEC2X.Gen
  --> aa8.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!


End of the scan: 2007年11月3日  22:15
Used time: 00:15 min

The scan has been done completely.

      1 Scanning directories
     29 Files were scanned
     28 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      0 Warnings
      0 Notes
woai_jolin
发表于 2007-11-3 22:57:53 | 显示全部楼层
Scan Log
Version of virus signature database: 2636 (20071103)
Date: 2007-11-3  Time: 22:58:30
Scanned disks, folders and files: G:\V\Update1.rar
Number of scanned objects: 29
Number of threats found: 25
Time of completion: 22:58:35  Total scanning time: 5 sec (00:00:05)
Notes:
[7] Object is probably infected with an unknown virus.
chenrui19930
发表于 2007-11-4 08:15:48 | 显示全部楼层
ESS25个
roys
发表于 2007-11-4 10:24:11 | 显示全部楼层
小红伞28个病毒……
Start of the scan: 2007年11月4日  10:23

Starting the file scan:

Begin scan in 'C:\Downloads\Update1.rar'
C:\Downloads\Update1.rar
  [0] Archive type: RAR
  --> Avast Virus Cleaner Tool crack.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> immortal_20070525.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.AAAB
  --> kcehc_eicooc20070702(1).exe
      [DETECTION] Is the Trojan horse TR/Click.MNB
  --> PR.exe
      [DETECTION] Is the Trojan horse TR/Dialer.PN.298
  --> aa1.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> csrss32.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> user4.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dxm.4
  --> wr-1-682.exe
      [DETECTION] Is the Trojan horse TR/Crypt.ULPM.Gen
  --> down.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> 1.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Zhidao
  --> aa11.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> aa2.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Vml.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> vip.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.eai
  --> aa17.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.fei
  --> explorer2.exe
      [DETECTION] Is the Trojan horse TR/Agent.14336.17
  --> 102.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ges
  --> 109.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.fnn
  --> aa18.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.fnn
  --> 112.exe
      [DETECTION] Is the Trojan horse TR/FWDisable.22620.1
  --> aa14.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.giy
  --> 106.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.gey
  --> aa4.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.giz
  --> 101.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> aa9.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> 113.exe
      [DETECTION] Is the Trojan horse TR/PSW.Wow.acd
  --> L2.exe
      [DETECTION] Is the Trojan horse TR/Crypt.PEC2X.Gen
  --> aa8.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!


End of the scan: 2007年11月4日  10:23
Used time: 00:13 min

The scan has been done completely.
pmj_sh
发表于 2007-11-4 14:05:32 | 显示全部楼层
检测到病毒: Trojan-Downloader.Win32.Delf.amb, Trojan-Downloader.Win32.Small.eyw, Trojan-Downloader.Win32.Tiny.id, Trojan.Win32.Dialer.pn, Trojan-Downloader.Win32.Delf.aas, Trojan-Clicker.Win32.Small.kj, Trojan-Downloader.Win32.Small.fgr, Trojan-Downloader.Win32.Small.gll, Trojan-Downloader.Win32.Small.fvu, Trojan-Downloader.Win32.Agent.buv, Trojan-PSW.Win32.OnLineGames.grr, Trojan-PSW.Win32.OnLineGames.grp, not-a-virus:NetTool.Win32.Agent.b, Trojan-Downloader.Win32.Agent.eai, Trojan-PSW.Win32.OnLineGames.gtg (5x), Trojan.Win32.LowZones.ek, Trojan-PSW.Win32.OnLineGames.fzb, Trojan-PSW.Win32.OnLineGames.giv (2x), Trojan-PSW.Win32.OnLineGames.get, Trojan-PSW.Win32.OnLineGames.gaa, Trojan-PSW.Win32.OnLineGames.gro, Trojan.Win32.Dialer.qn, Trojan-PSW.Win32.OnLineGames.gti
文件: Update1[1].rar
pmj_sh
发表于 2007-11-4 14:41:21 | 显示全部楼层
Object: 1.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Agent.buv (Engine A)
Object: 101.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gaa (Engine A)
Object: 102.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gtg (Engine A)
Object: 106.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.get (Engine A)
Object: 109.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gtg (Engine A)
Object: 112.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.fzb (Engine A)
Object: 113.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gtg (Engine A)
Object: aa1.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Delf.aas (Engine A)
Object: aa11.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.grr (Engine A)
Object: aa14.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.giv (Engine A)
Object: aa17.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gtg (Engine A)
Object: aa18.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gtg (Engine A)
Object: aa2.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.grp (Engine A)
Object: aa4.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.giv (Engine A)
Object: aa8.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gti (Engine A)
Object: aa9.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-PSW.Win32.OnLineGames.gro (Engine A)
Object: Avast Virus Cleaner Tool crack.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Delf.amb (Engine A)
Object: csrss32.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Clicker.Win32.Small.kj (Engine A)
Object: down.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Small.fvu (Engine A)
Object: explorer2.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan.Win32.LowZones.ek (Engine A)
Object: immortal_20070525.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Small.eyw (Engine A)
Object: kcehc_eicooc20070702(1).exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Tiny.id (Engine A)
Object: L2.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Dialer found
        Dialler: Trojan.Win32.Dialer.qn (Engine A)
Object: PR.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Dialer found
        Dialler: Trojan.Win32.Dialer.pn (Engine A)
Object: user4.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Small.fgr (Engine A)
Object: vip.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Agent.eai (Engine A)
Object: Vml.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: not-a-virus:NetTool.Win32.Agent.b (Engine A)
Object: wr-1-682.exe
        Path: C:\Documents and Settings\Jimmy\桌面\Update1
        Status: Virus detected
        Virus: Trojan-Downloader.Win32.Small.gll (Engine A)
Analysis complete: 11/4/2007 14:39
    28 files checked
    28 infected files detected
    0 suspected files detected

忘记不上AVK07的报告了,小a候补,28个全部砍掉!
taopaolang1982
发表于 2007-11-4 14:43:09 | 显示全部楼层
Scan Log
Version of virus signature database: 2636 (20071103)
Date: 2007-11-4  Time: 14:41:39
Scanned disks, folders and files: C:\Documents and Settings\Administrator\桌面\Update1.rar
Number of scanned objects: 28
Number of threats found: 25
Time of completion: 14:41:42  Total scanning time: 3 sec (00:00:03)
Notes:
[7] Object is probably infected with an unknown virus.
kkgh
发表于 2007-11-4 19:34:51 | 显示全部楼层
瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Trojan.DL.MNless.cq      
病毒: Trojan.DL.Win32.Agent.bn
病毒: Trojan.DL.Win32.Tiny.id  
病毒: Trojan.DL.Small.vbu      
病毒: Trojan.DL.Delf.xxb      
病毒: Trojan.Clicker.Win32.Small.kj
病毒: Trojan.DL.Win32.Agent.xes
病毒: Trojan.Win32.Agent.vxe   
病毒: Worm.Win32.Delf.dy      
病毒: Trojan.PSW.Win32.GameOnline.se
病毒: Trojan.PSW.Win32.GameOnline.tz
病毒: Trojan.Win32.Agent.vmq   
病毒: Trojan.DL.Win32.VB.yjg   
病毒: Trojan.PSW.Win32.DJOnline.x
病毒: Trojan.Win32.Agent.ymg   
病毒: Trojan.PSW.Win32.GameOnline.kt
病毒: Trojan.PSW.Win32.GameOnline.fa
病毒: Trojan.PSW.Win32.GameOnline.jh
病毒: Trojan.PSW.Win32.GameOnline.np
病毒: Trojan.PSW.Win32.GameOnline.ks
病毒: Trojan.PSW.Win32.GameOnline.kv
病毒: Trojan.PSW.Win32.GameOnline.ua
病毒: Trojan.PSW.Win32.WoWar.adg
病毒: Trojan.PSW.Win32.RBLand.bp

用户来源:互联网

软件版本:20.16.62
瑞星26个
曲中求
发表于 2007-11-5 19:06:57 | 显示全部楼层
咖啡22个。。。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-18 06:39 , Processed in 0.093187 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表