12
返回列表 发新帖
楼主: promised
收起左侧

[病毒样本] logogogo.exe变种soundmno,及下的64个

[复制链接]
IllusionWing
发表于 2007-12-1 11:37:26 | 显示全部楼层
余下的5个文件貌似都是NetGROUP的过滤玩意儿..
wangfeng66
发表于 2007-12-1 14:05:01 | 显示全部楼层
C:\cab.zip\cab.exe - probably infected with DLOADER.Trojan

下载.RAR   杀52个

DRWEB 4.44
woai_jolin
发表于 2007-12-1 14:30:06 | 显示全部楼层
ACCESS DENIED
The requested URL could not be retrieved

--------------------------------------------------------------------------------

While trying to retrieve the URL: http://bbs.kafan.cn/attachment.php?aid=161640

The folowing error was encountered:

The requested object is INFECTED. The following viruses Rare.Packer were found

Please contact your service provider if you feel this is incorrect.



--------------------------------------------------------------------------------

Generated Sat Dec 01 14:30:21 2007 by Kaspersky Internet Security 8.0 Beta
woai_jolin
发表于 2007-12-1 14:32:40 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
scottxzt
发表于 2007-12-1 14:43:28 | 显示全部楼层
程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\CAB.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM\SOUNDMNO.EXE
是否删除木马程序及其衍生物?
scottxzt
发表于 2007-12-1 14:57:09 | 显示全部楼层
程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00001.EXE
木马程序生成以下文件:
1) C:\WINDOWS\WINFORM.EXE
2) C:\WINDOWS\SYSTEM32\WINFORM.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00002.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\MYAD.NLS
2) C:\MYDJ0J.EXE
是否删除木马程序及其衍生物?程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00005.EXE
木马程序生成以下文件:程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00006.EXE
并生成以下文件:
1) E:\AUTORUN.EXE
2) E:\AUTORUN.INF
3) E:\AUTORUN.EXE

是否删除木马程序及其衍生物?程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00008.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\KAQHKZY.DLL程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00009.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\AVWGHMN.DLL程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00014.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\RATBMPI.DLL
2) C:\WINDOWS\SYSTEM32\RATBMTL.EXE程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00016.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\KAPJEZY.DLL
2) C:\WINDOWS\SYSTEM32\KAPJEAZ.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00017.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\WSJRHZX.DLL
2) C:\WINDOWS\SYSTEM32\WSJRHAX.EXE程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00020.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\AVWLFMN.DLL
2) C:\WINDOWS\SYSTEM32\AVWLFST.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\00026.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM32\WSZJBZX.DLL
2) C:\WINDOWS\SYSTEM32\WSZJBAX.EXE
是否删除木马程序及其衍生物?
木马名称:Backdoor.Win32.Delf.azs

程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\SMSS.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?
木马名称:Backdoor.Win32.Delf.biq

程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\SMSS.COM
是木马程序!
已成功阻止其运行,是否要删除此文件?程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\ARP.EXE
木马程序生成以下文件:
1) C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\MOTOU.EXE
是否删除木马程序及其衍生物?程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\C0NIME.EXE
木马程序生成以下文件:
1) C:\WINDOWS\SYSTEM\C0NIME.EXE
是否删除木马程序及其衍生物?
木马名称:Trojan.Win32.Delf.cgh

程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\INUDHYA.DLL
是木马程序!
已成功阻止其运行,是否要删除此文件?程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\SOUNDMA.EXE
木马程序生成以下文件:
1) C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\INUDHYA.DLL
是否删除木马程序及其衍生物?木马名称:未知木马

程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\MYDJ0J.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?
程序:
C:\DOCUMENTS AND SETTINGS\DELL\桌面\样本\WD.EXE
是否删除木马程序及其衍生物?










是否删除木马程序及其衍生物?


是否删除木马程序及其衍生物?

2) C:\WINDOWS\SYSTEM32\AVWGHST.EXE
是否删除木马程序及其衍生物?

2) C:\WINDOWS\SYSTEM32\KAQHKAZ.EXE
是否删除木马程序及其衍生物?



1) C:\WINDOWS\SYSTEM32\HURSAX.DLL
是否删除木马程序及其衍生物?
flykiss
发表于 2007-12-1 16:42:29 | 显示全部楼层
dr.web 4.44
C:\Documents and Settings\Administrator\桌面\cab.zip\cab.exe - probably infected with DLOADER.Trojan

Archive contains an infected item
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00001.exe - infected with Trojan.PWS.Wsgame.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00002.exe - probably infected with MULDROP.Trojan
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00003.exe - infected with Trojan.PWS.Gamania.5915
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00004.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00005.exe - infected with Trojan.MulDrop.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00006.exe - infected with Win32.HLLW.Autoruner.943
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00007.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00008.exe - infected with Trojan.PWS.Gamania.5974
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00009.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00010.exe - infected with Trojan.PWS.Gamania.6008
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00011.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00012.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00013.exe - infected with Trojan.PWS.Gamania.6021
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00014.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00015.exe - infected with Trojan.PWS.Gamania.5818
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00016.exe - infected with Trojan.PWS.Gamania.6023
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00017.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00019.exe - infected with Trojan.PWS.Gamania.6009
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00020.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00022.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00023.exe - probably infected with MULDROP.Trojan
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00025.exe - infected with Trojan.PWS.Gamania.5920
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\00026.exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\avwghmn.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\avwlfmn.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\avzxjmn.dll - infected with Trojan.PWS.Gamania.6019
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\C0NIME.EXE - probably infected with DLOADER.Trojan
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\dd.exe - probably infected with DLOADER.Trojan
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\kapjezy.dll - infected with Trojan.PWS.Gamania.6023
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\kaqhkzy.dll - infected with Trojan.PWS.Gamania.5975
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\kawdfzy.dll - infected with Trojan.PWS.Gamania.5818
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\kvdxjma.dll - infected with Trojan.PWS.Gamania.6008
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\kvdxsjma.dll - infected with Trojan.PWS.Gamania.5916
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\mhlm.exe - infected with Trojan.PWS.Lineage.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\myad.nls - probably infected with DLOADER.Trojan
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\MYDJ0J.Exe - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\mylm.exe - infected with Trojan.PWS.Lineage.3759
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\raqjfpi.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\rarjepi.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\ratbmpi.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\rsmyipm.dll - infected with BackDoor.Firewall.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\sidjezy.dll - infected with Trojan.PWS.Gamania.6009
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\smss.exe - infected with Trojan.Sniff
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\soundma.exe - infected with Trojan.Inject.509
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\swjqbzc.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\swrcezc.dll - infected with Trojan.PWS.Gamania.5921
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\wd.exe - infected with Trojan.PWS.Lineage.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\WinForm.dll - infected with Trojan.PWS.Wsgame.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\Wn_Sys8x.Sys - infected with Trojan.PWS.Lineage.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\wsjrhzx.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\wsmsezx.dll - infected with Trojan.PWS.Gamania.origin
C:\Documents and Settings\Administrator\桌面\样本.rar\样本\wszjbzx.dll - infected with Trojan.PWS.Gamania.origin

Archive contains 52 infected items (22 infected items not listed)
浪滔天
发表于 2007-12-1 16:49:50 | 显示全部楼层
卡巴 7.0.1.289 BETA 高启发
46个

已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: F:\病毒样本\样本.rar/样本\00009.exe//UPack
已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: F:\病毒样本\样本.rar/样本\00026.exe//UPack
已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: F:\病毒样本\样本.rar/样本\C0NIME.EXE//UPack
已隔离: 病毒 Heur.Trojan.Generic (变种)        文件: F:\病毒样本\样本.rar/样本\MYDJ0J.Exe//UPack
已删除: 病毒 Virus.Win32.AutoRun.ahn        文件: F:\病毒样本\样本.rar/样本\00006.exe//UPX
已删除: 病毒 Virus.Win32.AutoRun.ahn        文件: F:\病毒样本\样本.rar/样本\Wn_Sys8x.Sys
已删除: 木马程序 Backdoor.Win32.Delf.awy        文件: F:\病毒样本\样本.rar/样本\arp.exe//UPack//#//FSG
已删除: 木马程序 Backdoor.Win32.Delf.awy        文件: F:\病毒样本\样本.rar/样本\smss.com//NSPack
已删除: 木马程序 Backdoor.Win32.Delf.awy        文件: F:\病毒样本\样本.rar/样本\smss.exe//FSG
已删除: 木马程序 Backdoor.Win32.PcClient.ie        文件: F:\病毒样本\样本.rar/样本\00007.exe
已删除: 木马程序 Trojan-Downloader.Win32.Small.gwi        文件: F:\病毒样本\样本.rar/样本\wd.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.inb        文件: F:\病毒样本\样本.rar/样本\kawdfzy.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.inp        文件: F:\病毒样本\样本.rar/样本\00015.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ioi        文件: F:\病毒样本\样本.rar/样本\00025.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ioj        文件: F:\病毒样本\样本.rar/样本\swrcezc.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.isb        文件: F:\病毒样本\样本.rar/样本\00001.exe
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.isf        文件: F:\病毒样本\样本.rar/样本\00003.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.isf        文件: F:\病毒样本\样本.rar/样本\kvdxsjma.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.itl        文件: F:\病毒样本\样本.rar/样本\00022.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.itp        文件: F:\病毒样本\样本.rar/样本\swjqbzc.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iuu        文件: F:\病毒样本\样本.rar/样本\00016.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iuu        文件: F:\病毒样本\样本.rar/样本\kapjezy.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iuz        文件: F:\病毒样本\样本.rar/样本\00011.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iuz        文件: F:\病毒样本\样本.rar/样本\rsztmpm.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ive        文件: F:\病毒样本\样本.rar/样本\00017.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ive        文件: F:\病毒样本\样本.rar/样本\wsjrhzx.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ixo        文件: F:\病毒样本\样本.rar/样本\00008.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ixq        文件: F:\病毒样本\样本.rar/样本\kaqhkzy.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ixu        文件: F:\病毒样本\样本.rar/样本\mylm.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iyr        文件: F:\病毒样本\样本.rar/样本\00010.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iys        文件: F:\病毒样本\样本.rar/样本\00013.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iys        文件: F:\病毒样本\样本.rar/样本\00019.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iyy        文件: F:\病毒样本\样本.rar/样本\kvdxjma.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.iyz        文件: F:\病毒样本\样本.rar/样本\sidjezy.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jaf        文件: F:\病毒样本\样本.rar/样本\avzxjmn.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jal        文件: F:\病毒样本\样本.rar/样本\rarjepi.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jas        文件: F:\病毒样本\样本.rar/样本\00020.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jbm        文件: F:\病毒样本\样本.rar/样本\00014.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jbm        文件: F:\病毒样本\样本.rar/样本\ratbmpi.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jcm        文件: F:\病毒样本\样本.rar/样本\00004.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jcm        文件: F:\病毒样本\样本.rar/样本\wsmsezx.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jcs        文件: F:\病毒样本\样本.rar/样本\00012.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jcs        文件: F:\病毒样本\样本.rar/样本\raqjfpi.dll
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jct        文件: F:\病毒样本\样本.rar/样本\00023.exe//UPack
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.jcu        文件: F:\病毒样本\样本.rar/样本\00005.exe//UPack
已删除: 木马程序 Trojan.Win32.Small.uj        文件: F:\病毒样本\样本.rar/样本\mhlm.exe//UPack
qigang
发表于 2007-12-1 20:27:20 | 显示全部楼层

101/56

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Win32.Logogo.j           
病毒: Trojan.PSW.Win32.GameOnline.aux
病毒: Dropper.Win32.Agent.ysd  
病毒: Trojan.PSW.Win32.TLOnline.jjs
病毒: Trojan.PSW.Win32.GameOnline.auw
病毒: Trojan.PSW.Win32.GameOnline.auj
病毒: Worm.Win32.PaBug.ep      
病毒: Trojan.PSW.Win32.XYOnline.ui
病毒: Trojan.PSW.Win32.QQHX.tsi
病毒: Trojan.PSW.Win32.GameOnline.auv
病毒: Trojan.PSW.Win32.XYOnline.ul
病毒: Trojan.PSW.Win32.TLOnline.jjt
病毒: Trojan.PSW.Win32.GameOnline.arq
病毒: Trojan.PSW.Win32.TLOnline.jjw
病毒: Trojan.PSW.Win32.GameOnline.ana
病毒: Trojan.PSW.Win32.QQHX.tsf
病毒: Trojan.PSW.Win32.GameOnline.aum
病毒: Trojan.PSW.Win32.GameOnline.ars
病毒: Trojan.PSW.Win32.SunOnline.hy
病毒: Trojan.PSW.Win32.ZhuXian.ek
病毒: Trojan.PSW.Win32.GameOnline.aqb
病毒: Trojan.Win32.Mnless.zvz  
病毒: Trojan.PSW.Win32.GameOnline.ann
病毒: Trojan.PSW.Win32.GameOnline.auy
病毒: Trojan.PSW.Win32.GameOnline.auv
病毒: Trojan.PSW.Win32.SunOnline.ia
病毒: Trojan.PSW.Win32.GameOnline.arq
病毒: Trojan.PSW.Win32.ZhuXian.ek
病毒: Trojan.PSW.Win32.Mnless.ah
病毒: Trojan.PSW.Win32.SunOnline.ho
病毒: Trojan.PSW.Win32.QQHX.tsi
病毒: Trojan.PSW.Win32.GameOnline.ana
病毒: Trojan.PSW.Win32.XYOnline.ul
病毒: Trojan.PSW.Win32.XYOnline.ug
病毒: Trojan.PSW.Win32.XYOnline.ta
病毒: Trojan.PSW.Win32.GameOnline.avb
病毒: Trojan.PSW.Win32.GameOnline.avb
病毒: Trojan.PSW.Win32.GameOnline.ard
病毒: Trojan.PSW.Win32.SunOnline.hx
病毒: Trojan.PSW.Win32.ZeroOnline.cq
病毒: Trojan.PSW.Win32.TLOnline.jjw
病毒: Trojan.PSW.Win32.GameOnline.auz
病毒: Trojan.PSW.Win32.TLOnline.jjt
病毒: Trojan.PSW.Win32.GameOnline.ars
病毒: Dropper.Agent.fxb        
病毒: Trojan.Spy.Agent.dcq     
病毒: Trojan.DL.Win32.Agent.bxw
病毒: Trojan.PSW.Win32.GameOnline.aqb
病毒: Trojan.PSW.Win32.GameOnline.ani
病毒: Trojan.PSW.Win32.AskTao.er
病毒: Trojan.PSW.Win32.GameOnline.aux
病毒: Worm.Win32.PaBug.ep      
病毒: Trojan.PSW.Win32.GameOnline.aum
病毒: Trojan.PSW.Win32.GameOnline.ava
病毒: Trojan.PSW.Win32.GameOnline.auy

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.20.52
uhthn2002
发表于 2007-12-2 03:35:51 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 985
Paranoia Database - 49298
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\New Folder

C:\Documents and Settings\Uhthn\Desktop\New Folder\cab.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\wsmsezx.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\wszjbzx.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\00001.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder\00002.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00003.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00004.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00005.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00006.exe - Infected WIN32.TROJAN-PSW.QQPASS.A - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\00007.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00008.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00009.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00010.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00011.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00012.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00013.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00014.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00015.exe - Infected TROJAN-PSW.ONLINEGAMES.83 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\00016.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00017.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00019.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00020.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00021.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder\00022.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00023.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00025.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\00026.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\arp.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\avwghmn.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\avwlfmn.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\avzxjmn.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\C0NIME.EXE - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\daemon_mgm.exe - OK
C:\Documents and Settings\Uhthn\Desktop\New Folder\dd.exe - Suspected WIN32.TROJAN-DOWNLOADER (HTTP://...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\gdwmi32.dll - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\host.exe - Suspected MaliciousScope:GENERIC.MALWARE.2
C:\Documents and Settings\Uhthn\Desktop\New Folder\hursax.dll - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\kapjezy.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\kaqhkzy.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\kawdfzy.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\kvdxjma.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\kvdxsjma.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\mhlm.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\myad.nls - Suspected WIN32.BACKDOOR.HUPIGON.5
C:\Documents and Settings\Uhthn\Desktop\New Folder\MYDJ0J.Exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\mylm.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\NetMonInstaller.exe - Suspected TROJAN-DOWNLOADER (HTTP://{REMOVED}/...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\npf_mgm.exe - OK
C:\Documents and Settings\Uhthn\Desktop\New Folder\pthreadVC.dll - OK
C:\Documents and Settings\Uhthn\Desktop\New Folder\raqjfpi.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\rarjepi.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\ratbmpi.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\rpcapd.exe - Suspected WIN32.TROJAN-DOWNLOADER (HTTP://{REMOVED}/...)
C:\Documents and Settings\Uhthn\Desktop\New Folder\rsmyipm.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\rsztmpm.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\sidjezy.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\smss.com - Infected MaliciousScope:TROJAN-DOWNLOADER.AGENT.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\smss.exe - Infected BACKDOOR.DELF.3 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\soundma.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\swjqbzc.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\swrcezc.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\wd.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder\WinForm.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\Wn_Sys8x.Sys - Infected WIN32.TROJAN-PSW.QQPASS.A - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder\wsjrhzx.dll - Infected WIN32.TROJAN-PSW.ONLINEGAMES.AF - Deleted

65 Files scanned
25 Infected files found
37 Suspected files found
0 Files disinfected
25 Files deleted
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-21 19:40 , Processed in 0.088416 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表