查看: 3782|回复: 17
收起左侧

[病毒样本] 请版主关闭此帖!!! 不是本人发的

 关闭 [复制链接]
6956030
发表于 2007-12-9 20:17:28 | 显示全部楼层 |阅读模式
不是本人发的  大家不要下载附件

郁闷呢   发现2个帖子都不是我发的  但ID却是我的ID 怎么回事啊   郁闷

[ 本帖最后由 6956030 于 2007-12-15 12:39 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
Graybird
发表于 2007-12-9 20:18:57 | 显示全部楼层
Starting the file scan:

Begin scan in 'E:\新建 WinRAR 压缩文件.rar'
E:\新建 WinRAR 压缩文件.rar
  [0] Archive type: RAR
  --> 68down.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> ghgh.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.45056
      [WARNING]   The file was ignored!
残缺的唯美
发表于 2007-12-9 20:19:03 | 显示全部楼层
Result: 2 malware found
Worm.Win32.Downloader.cg (virus)
G:\Users\Administrator\Desktop\н¨ WinRAR ѹËõÎļþ.rar\68down.exe
Worm.Win32.Downloader.bs (virus)
G:\Users\Administrator\Desktop\н¨ WinRAR ѹËõÎļþ.rar\ghgh.exe

貌似很老
6956030
 楼主| 发表于 2007-12-9 20:20:39 | 显示全部楼层
没猜错是机器狗来的 但这个下载者我不知道怎么解出连接
HC303
发表于 2007-12-9 20:27:17 | 显示全部楼层
毒霸和瑞星都杀这两个东西。
Love=卡巴+费尔
发表于 2007-12-9 20:33:43 | 显示全部楼层
下了一堆。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
6956030
 楼主| 发表于 2007-12-9 20:49:40 | 显示全部楼层
谢谢6楼的

但2个下载者应该还有个没运行到
Graybird
发表于 2007-12-9 20:52:03 | 显示全部楼层

回复 6楼 Love=卡巴+费尔 的帖子

Starting the file scan:

Begin scan in 'E:\abc.zip'
E:\abc.zip
  [0] Archive type: ZIP
  --> 20[1].exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> avwghst.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> comrecfg.exe
      [DETECTION] Contains detection pattern of the worm WORM/Downloader.BW
  --> FTCCompress.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> GenProtect.exE
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.iqw
  --> GenProtect.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.iqw
  --> lsass0.exe
      [DETECTION] Is the Trojan horse TR/PSW.Online.agb.2
  --> lsass1.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGa.iqw
  --> lsass2.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> lsass3.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLi.iiu.1.A
  --> lsass4.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> lsass5.exe
      [DETECTION] Is the Trojan horse TR/PSW.27648.5
  --> lsass6.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.jpv.1
  --> lsass7.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> lsass8.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.jlw.2
  --> lsass9.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> lsassa.exe
      [DETECTION] Is the Trojan horse TR/PSW.QQpass.ana
  --> lsassc.exe
      [DETECTION] Is the Trojan horse TR/FWDisable.22884
  --> lsassd.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> lsasse.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.jro
  --> lsassh.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> lsassi.exe
      [DETECTION] Is the Trojan horse TR/Drop.Spy.Pca.A.1
  --> LYLOADER.EXE
      [DETECTION] Is the Trojan horse TR/PSW.Online.agb.2
  --> LYMANGR.DLL
      [DETECTION] Is the Trojan horse TR/PSW.Online.agb.2
  --> sairfntaio.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> SIDJEAZ.EXE
      [DETECTION] Is the Trojan horse TR/FWDisable.22884
  --> upxdnd.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> upxdnd.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [WARNING]   The file was ignored!


End of the scan: 2007年12月9日  20:52
Used time: 00:25 min

The scan has been done completely.

      0 Scanning directories
     30 Files were scanned
     28 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      2 Files not concerned
      1 Archives were scanned
      1 Warnings
      0 Notes
gho
发表于 2007-12-9 20:58:54 | 显示全部楼层
C:\Documents and Settings\gho\桌面\68down.exe        New Malware.aj (Trojan)
2007-12-9        20:58:15        Moved (Clean failed because the file isn't cleanable)         WHUT-D9067E\gho        WinRAR.exe        C:\Documents and Settings\gho\桌面\ghgh.exe        New Malware.aj (Trojan)
挪威的冬天
发表于 2007-12-9 21:07:12 | 显示全部楼层
信息        2007-12-09  21:07:02        您此次查毒共查出25个病毒以及危险代码                       
信息        2007-12-09  21:07:02        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件42个                       
信息        2007-12-09  21:07:02        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒                       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\upxdnd.dll        Win32.Troj.OnlineGamesT.ip.28160        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\upxdnd.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\SIDJEAZ.EXE        Win32.Troj.AgentT.fm.14452        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\sairfntaio.dll        Win32.PSWTroj.WowT.my.17831        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\LYMANGR.DLL        Win32.Troj.OnlineGames.jx.61440        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsassi.exe        Win32.Hack.Delf.407040        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsassh.exe        Win32.PSWTroj.OnLineGames.49664        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsasse.exe        Win32.Troj.OnLineGamesT.gp.15597        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsassd.exe        Win32.Troj.AgentT.fm.14452        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsassc.exe        Win32.Troj.AgentT.fm.14452        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsassa.exe        Win32.PSWTroj.QQPass.106614        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass9.exe        Win32.Troj.OnlineGames.ie.22228        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass8.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass7.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass6.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass5.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass4.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\lsass2.exe        Win32.Troj.OnLineGamesT.gr.2637        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\GenProtect.dll        Win32.Troj.OnlineGames.jb.134144        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\FTCCompress.dll        Win32.Troj.WoWT.zy.110592        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\comrecfg.exe        Win32.Troj.DwonLoaderT.xy.133203        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\avwghst.exe        Win32.Troj.AgentT.fm.14452        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\abc.zip\20[1].exe        Win32.TrojDownloader.SMW.A.8242        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\新建 WinRAR 压缩文件.rar\ghgh.exe        Win32.Troj.DownArpT.xo.135168        跳过,未处理       
病毒        2007-12-09  21:07:02        C:\Documents and Settings\Norways Winter\桌面\新建 WinRAR 压缩文件.rar\68down.exe        Win32.Troj.DwonLoaderT.xy.133203        跳过,未处理
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-22 21:03 , Processed in 0.137359 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表