查看: 3088|回复: 18
收起左侧

[病毒样本] 找QQ游戏外挂时发现的!

[复制链接]
欠妳緈諨
发表于 2007-11-21 21:52:31 | 显示全部楼层 |阅读模式
找QQ游戏多开补丁时下载的

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Graybird
发表于 2007-11-21 21:53:57 | 显示全部楼层
Starting the file scan:

Begin scan in 'E:\multi_mydown1026.rar'
E:\multi_mydown1026.rar
  [0] Archive type: RAR
  --> multi_mydown1026.exe
      [DETECTION] Contains detection pattern of the dropper DR/Dldr.Small.dca.3
      [INFO]      The file was deleted!
chenrui19930
发表于 2007-11-21 21:54:51 | 显示全部楼层
ESS两个
C:\Documents and Settings\我的电脑\桌面\新建文件夹\multi_mydown1026.rar » RAR » multi_mydown1026.exe » NSIS » 198994020.exe - Win32/TrojanDownloader.Agent.NKZ trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\新建文件夹\multi_mydown1026.rar » RAR » multi_mydown1026.exe » NSIS » bind_40240.exe - Win32/TrojanDownloader.QQHelper trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\新建文件夹\multi_mydown1026.rar » RAR » multi_mydown1026.exe - multiple threats - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\新建文件夹\multi_mydown1026.rar - multiple threats - deleted - quarantined
Nerazzurri
发表于 2007-11-21 22:01:21 | 显示全部楼层

2

deleted: Trojan program Trojan-Downloader.Win32.Small.dca        File: C:\Users\Jack Jones\Desktop\multi_mydown1026.rar/multi_mydown1026.exe//stream//data0006
deleted: Trojan program Trojan-Downloader.Win32.QQHelper.dv        File: C:\Users\Jack Jones\Desktop\multi_mydown1026.rar/multi_mydown1026.exe//stream//data0009
HC303
发表于 2007-11-21 22:09:54 | 显示全部楼层
毒霸只报一个,而且是风险文件。
瑞星报二个。
a3275
发表于 2007-11-21 22:18:52 | 显示全部楼层
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0002        被感染的: Trojan.Downloader.Agent.YFJ
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0002        清除失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0002        移动失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0003        被感染的: Trojan.Downloader.Agent.YFJ
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0003        清除失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0003        移动失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0004        被感染的: Trojan.Downloader.Agent.YFJ
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0004        清除失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0004        移动失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0005        被感染的: Trojan.Downloader.Agent.YFJ
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0005        清除失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0005        移动失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0006        被感染的: Trojan.Downloader.Agent.AQP
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0006        清除失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0006        移动失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0009        被感染的: DeepScan:Generic.Dld.ADL.FDD813F8
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0009        清除失败
C:\Documents and Settings\SEELE-NERV-KID-KH\桌面\multi_mydown1026.rar=>multi_mydown1026.exe=>(NSIS o)=>lzma_solid_nsis0009        移动失败
googlehack
发表于 2007-11-21 23:24:37 | 显示全部楼层
qq病毒?
sam.to
发表于 2007-11-22 11:01:31 | 显示全部楼层
已刪除: 特洛伊木馬程式 Trojan-Downloader.Win32.Small.dca        檔案: C:\Documents and Settings\kato9096\桌面\multi_mydown1026.rar/multi_mydown1026.exe//stream//data0006
已刪除: 特洛伊木馬程式 Trojan-Downloader.Win32.QQHelper.dv        檔案: C:\Documents and Settings\kato9096\桌面\multi_mydown1026.rar/multi_mydown1026.exe//stream//data0009
Roboon
发表于 2007-11-22 18:09:23 | 显示全部楼层
Roboon:是吗?微点漏了
Roboon
发表于 2007-11-22 18:11:33 | 显示全部楼层
Roboon:微点已上报
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-21 17:58 , Processed in 0.129568 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表