查看: 4587|回复: 21
收起左侧

[病毒样本] 木马群

[复制链接]
小巨蛋
发表于 2007-11-27 21:25:37 | 显示全部楼层 |阅读模式
刚抓的木马群

通过realplayer的漏洞中的
用了我一个小时,才清理干净

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
qigang
发表于 2007-11-27 21:29:23 | 显示全部楼层

43/17

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.GameOnline.aqw
病毒: Trojan.PSW.Win32.GameOnline.aqw
病毒: Trojan.PSW.Win32.GameOnline.apr
病毒: Trojan.PSW.Win32.GameOnline.apv
病毒: Trojan.PSW.Win32.GameOnline.apd
病毒: Trojan.PSW.Win32.GameOnline.apd
病毒: Trojan.PSW.Win32.GameOnline.aqy
病毒: Trojan.PSW.Win32.Woool.c
病毒: Trojan.PSW.Win32.SunOnline.hs
病毒: Trojan.PSW.Win32.SunOnline.hs
病毒: Trojan.PSW.Win32.GameOnline.aqz
病毒: Trojan.PSW.Win32.GameOnline.sf
病毒: Trojan.PSW.Win32.GameOnline.ape
病毒: Trojan.PSW.Win32.GameOnline.ape

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.20.12
Graybird
发表于 2007-11-27 21:29:38 | 显示全部楼层

28

Starting the file scan:

Begin scan in 'E:\Trojan.rar'
E:\Trojan.rar
  [0] Archive type: RAR
  --> Trojan\5FD0EB71.EXE
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
  --> Trojan\auto.exe
      [DETECTION] Is the Trojan horse TR/Crypt.FKM.Gen
  --> Trojan\AVPSrv.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\AVPSrv.exE
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\cmdbcs.dll
      [DETECTION] Is the Trojan horse TR/PSW.27648.1
  --> Trojan\cmdbcs.exe
      [DETECTION] Is the Trojan horse TR/PSW.27648.1
  --> Trojan\DbgHlp32.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Trojan\DbgHlp32.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Trojan\DC167336.DLL
      [DETECTION] Is the Trojan horse TR/Autorun.CA
  --> Trojan\GenProtect.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Trojan\GenProtect.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Trojan\k119616435515.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\Kvsc3.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\Kvsc3.exE
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\LotusHlp.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Trojan\LotusHlp.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Trojan\mppds.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.iqw
  --> Trojan\mppds.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.iqw
  --> Trojan\msccrt.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\msccrt.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\MsIMMs32.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\MsIMMs32.exE
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\MsPrint32D.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Trojan\MsPrint32D.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Trojan\upxdnd.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\upxdnd.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Trojan\WinForm.dll
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Trojan\WinForm.exE
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!


End of the scan: 2007年11月27日  21:29
Used time: 00:32 min

The scan has been done completely.

      0 Scanning directories
     30 Files were scanned
     23 viruses and/or unwanted programs were found
      5 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      7 Files not concerned
      1 Archives were scanned
      0 Warnings
      0 Notes
sam.to
发表于 2007-11-27 21:32:50 | 显示全部楼层
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\AVPSrv.exE
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\cmdbcs.dll
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\cmdbcs.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\DbgHlp32.dll
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\DbgHlp32.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.ivg    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\GenProtect.dll
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.ivg    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\GenProtect.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.hfr    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\k119616435515.exe//ASPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\Kvsc3.exE
已隔離: 病毒 Heur.Invader (修改)    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\LotusHlp.exe//UPack
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\mppds.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\msccrt.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\MsIMMs32.exE
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\MsPrint32D.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\upxdnd.dll
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\upxdnd.exe
已刪除: 特洛伊木馬程式 Trojan-PSW.Win32.OnLineGames.isb    檔案: C:\Documents and Settings\kato9096\桌面\162906\Trojan\WinForm.exE

已杀17个,1个变种,12个没杀,已上报13个
BING126
头像被屏蔽
发表于 2007-11-27 21:37:57 | 显示全部楼层
FS7.10报了16个!
Trojan-PSW.Win32.OnLineGames.isb (病毒)
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\AVPSrv.exE
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\cmdbcs.dll
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\cmdbcs.exe
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\DbgHlp32.dll
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\DbgHlp32.exe
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\Kvsc3.exE
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\mppds.exe
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\msccrt.exe
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\MsIMMs32.exE
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\MsPrint32D.exe
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\upxdnd.dll
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\upxdnd.exe
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\WinForm.exE

Trojan-PSW.Win32.OnLineGames.ivg (病毒)
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\GenProtect.dll
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\GenProtect.exe

Trojan-PSW.Win32.OnLineGames.hfr (病毒)
C:\Documents and Settings\Administrator\桌面\Trojan.rar\Trojan\k119616435515.exe
小巨蛋
 楼主| 发表于 2007-11-27 21:39:18 | 显示全部楼层
  各位 都用杀毒软件
我只装了个360 ,刚中的时候360也被它们禁止了,只好手工杀
chenrui19930
发表于 2007-11-27 21:44:46 | 显示全部楼层
ESS 29个,这些毒我用卡巴时中过,他有备分,所以无法删除,删掉备分就可以了,还有,楼主用ESS吧
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\5FD0EB71.EXE - a variant of Win32/TrojanDownloader.Flux trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\auto.exe - a variant of Win32/TrojanDownloader.Flux trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\autorun.inf - INF/Autorun virus - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\AVPSrv.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\AVPSrv.exE - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\cmdbcs.dll - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\cmdbcs.exe - Win32/PSW.OnLineGames.YA trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\DbgHlp32.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\DbgHlp32.exe - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\DC167336.DLL - a variant of Win32/TrojanDownloader.Flux trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\GenProtect.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\GenProtect.exe - Win32/PSW.OnLineGames.YA trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\k119616435515.exe - Win32/PSW.WOW.WU trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\Kvsc3.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\Kvsc3.exE - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\LotusHlp.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\LotusHlp.exe - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\mppds.dll - a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\mppds.exe - a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\msccrt.dll - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\msccrt.exe - Win32/PSW.OnLineGames.YA trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\MsIMMs32.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\MsIMMs32.exE - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\MsPrint32D.dll - a variant of Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\MsPrint32D.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\upxdnd.dll - Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\upxdnd.exe - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\WinForm.dll - probably a variant of Win32/PSW.OnLineGames.HCV trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar » RAR » Trojan\WinForm.exE - a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
C:\Documents and Settings\我的电脑\桌面\Trojan.rar - multiple threats - deleted - quarantined
uhthn2002
发表于 2007-11-27 23:39:52 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 985
Paranoia Database - 49147
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\Trojan

C:\Documents and Settings\Uhthn\Desktop\Trojan\5FD0EB71.EXE - Infected TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\auto.exe - Infected TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\autorun.inf - Infected GENERIC.MALWARE.871.4E - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\AVPSrv.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\AVPSrv.exE - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\cmdbcs.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\cmdbcs.exe - Infected GENERIC.MALWARE.0C0.43F8 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\DbgHlp32.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\DbgHlp32.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\DC167336.DLL - Infected VIRUS.AUTORUN.4 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\GenProtect.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\GenProtect.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\Trojan\k119616435515.exe - Infected WIN32.TROJAN-PSW.ONLINEGAMES.G - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\Kvsc3.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\Kvsc3.exE - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\LotusHlp.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\LotusHlp.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\Trojan\mppds.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\mppds.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\msccrt.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\msccrt.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\MsIMMs32.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\MsIMMs32.exE - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\MsPrint32D.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\MsPrint32D.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\Trojan\upxdnd.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\upxdnd.exe - Infected GENERIC.MALWARE.204.3EA0 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\WinForm.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\Trojan\WinForm.exE - Suspected TROJAN-PSW.ONLINEGAMES.2

29 Files scanned
19 Infected files found
10 Suspected files found
0 Files disinfected
19 Files deleted
欠妳緈諨
发表于 2007-11-28 00:03:16 | 显示全部楼层
AVAST27

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
啊弥陀佛
发表于 2007-11-28 10:32:06 | 显示全部楼层
微点砍掉



程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\5FD0EB71.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\792405C6.EXE
2) C:\WINDOWS\SYSTEM32\1707E7B.DLL
是否删除木马程序及其衍生物?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\AUTO.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\AVPSRV.EXE
木马程序生成以下文件:
1) C:\WINDOWS\AVPSRV.EXE
2) C:\WINDOWS\SYSTEM32\AVPSRV.DLL
是否删除木马程序及其衍生物?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\AVPSRV.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\CMDBCS.EXE
木马程序生成以下文件:
1) C:\WINDOWS\CMDBCS.EXE
2) C:\WINDOWS\SYSTEM32\CMDBCS.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\DBGHLP32.EXE
木马程序生成以下文件:
1) C:\WINDOWS\DBGHLP32.EXE
2) C:\WINDOWS\SYSTEM32\DBGHLP32.DLL
是否删除木马程序及其衍生物?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\CMDBCS.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\DBGHLP32.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\DC167336.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\GENPROTECT.EXE
木马程序生成以下文件:
1) C:\WINDOWS\GENPROTECT.EXE
2) C:\WINDOWS\SYSTEM32\GENPROTECT.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\K119616435515.EXE
木马程序生成以下文件:
1) C:\WINDOWS\391231L.EXE
2) C:\WINDOWS\391231WL.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\KVSC3.EXE
木马程序生成以下文件:
1) C:\WINDOWS\KVSC3.EXE
2) C:\WINDOWS\SYSTEM32\KVSC3.DLL
是否删除木马程序及其衍生物?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\GENPROTECT.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\KVSC3.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\LOTUSHLP.EXE
木马程序生成以下文件:
1) C:\WINDOWS\LOTUSHLP.EXE
2) C:\WINDOWS\SYSTEM32\LOTUSHLP.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MSCCRT.EXE
木马程序生成以下文件:
1) C:\WINDOWS\MSCCRT.EXE
2) C:\WINDOWS\SYSTEM32\MSCCRT.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MSPRINT32D.EXE
木马程序生成以下文件:
1) C:\WINDOWS\MSPRINT32D.EXE
2) C:\WINDOWS\SYSTEM32\MSPRINT32D.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\WINFORM.EXE
木马程序生成以下文件:
1) C:\WINDOWS\WINFORM.EXE
2) C:\WINDOWS\SYSTEM32\WINFORM.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MPPDS.EXE
木马程序生成以下文件:
1) C:\WINDOWS\MPPDS.EXE
2) C:\WINDOWS\SYSTEM32\MPPDS.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MSIMMS32.EXE
木马程序生成以下文件:
1) C:\WINDOWS\MSIMMS32.EXE
2) C:\WINDOWS\SYSTEM32\MSIMMS32.DLL
是否删除木马程序及其衍生物?

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\UPXDND.EXE
木马程序生成以下文件:
1) C:\WINDOWS\UPXDND.EXE
2) C:\WINDOWS\SYSTEM32\UPXDND.DLL
是否删除木马程序及其衍生物?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\LOTUSHLP.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\UPXDND.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MSPRINT32D.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\WINFORM.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MSCCRT.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MPPDS.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?

木马名称:未知间谍软件
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\TROJAN\TROJAN\MSIMMS32.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-15 01:43 , Processed in 0.142742 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表