12
返回列表 发新帖
楼主: 6956030
收起左侧

[病毒样本] 请版主关闭此帖!!! 不是本人发的

 关闭 [复制链接]
IllusionWing
发表于 2007-12-9 21:12:20 | 显示全部楼层
68down.exe - 从OD分析看不是下载者,但释放了一个驱动并且改时间还注入
另外一个同上
韩若雪
发表于 2007-12-9 21:20:55 | 显示全部楼层

ESET Smart Security 3的检查结果!!
发现两个病毒

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
uhthn2002
发表于 2007-12-9 23:33:30 | 显示全部楼层
Uhthn Anti-Spyware V3 Alpha
Version - 3.0.0
Standard Database - 1056
Paranoia Database - 49948
Heuristics Analysis - Excessive
Scan in - C:\Documents and Settings\Uhthn\Desktop\New Folder (2)

C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\20[1].exe - Infected WIN32.GENERIC.MALWARE.49F.2400 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\avwghst.exe - Infected TROJAN-PSW.ONLINEGAMES.164 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\CANI6LVZ.htm - Suspected TROJAN-DOWNLOADER.VBS.AGENT.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\comrecfg.exe - OK
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\FTCCompress.dll - Infected TROJAN-PSW.ONLINEGAMES.121 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\GenProtect.exE - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\GenProtect.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass0.exe - Infected TROJAN-PSW.ONLINEGAMES.U - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass1.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass2.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass3.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass4.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass5.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass6.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass7.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass8.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsass9.exe - Infected WIN32.TROJAN-PSW.LMIR.6 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsassa.exe - Infected WIN32.TROJAN-PSW.QQPASS.A - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsassc.exe - Infected GENERIC.MALWARE.4DB.38E2 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsassd.exe - Infected TROJAN-PSW.ONLINEGAMES.164 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsasse.exe - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsassh.exe - Infected WIN32.TROJAN-PSW.ONLINEGAMES.G - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\lsassi.exe - Infected BACKDOOR.DELF.4 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\LYLOADER.EXE - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\LYMANGR.DLL - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\sairfntaio.dll - Suspected MaliciousScope:GENERIC.MALWARE.3
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\SIDJEAZ.EXE - Infected GENERIC.MALWARE.4DB.38E2 - Deleted
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\upxdnd.exe - Suspected TROJAN-PSW.ONLINEGAMES.2
C:\Documents and Settings\Uhthn\Desktop\New Folder (2)\upxdnd.dll - Infected TROJAN-PSW.ONLINEGAMES.43 - Deleted

29 Files scanned
13 Infected files found
15 Suspected files found
0 Files disinfected
13 Files deleted
gogo8989
发表于 2007-12-10 00:53:03 | 显示全部楼层
卡吧给红伞 一样多28个
啊弥陀佛
发表于 2007-12-10 12:00:39 | 显示全部楼层
微点砍掉

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
孤单爱情海
发表于 2007-12-15 17:43:24 | 显示全部楼层
原帖由 gogo8989 于 2007-12-10 00:53 发表
卡吧给红伞 一样多28个

红伞是报了29个!
qigang
发表于 2007-12-15 19:05:46 | 显示全部楼层

4/2

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.Mnless.zyt  
病毒: Trojan.Win32.Mnless.zva  

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.22.51
qigang
发表于 2007-12-15 19:06:38 | 显示全部楼层

回复 6楼 Love=卡巴+费尔 的帖子

44/28

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.DL.Delf.xxb      
病毒: Trojan.PSW.Win32.SunOnline.iv
病毒: Trojan.Win32.Mnless.zgl  
病毒: Trojan.PSW.Win32.SunOnline.it
病毒: Trojan.PSW.Win32.GameOnline.avu
病毒: Trojan.PSW.Win32.GameOnline.zyd
病毒: Dropper.Win32.Agent.yth  
病毒: Trojan.PSW.Win32.OnlineGames.GEN
病毒: Trojan.PSW.Win32.AskTao.fn
病毒: Trojan.Win32.Mnless.zqz  
病毒: Worm.Win32.PaBug.eq      
病毒: Trojan.PSW.Win32.GameOnline.ars
病毒: Trojan.PSW.Win32.QQHX.tsy
病毒: Trojan.PSW.Win32.Woool.c
病毒: Trojan.Mnless.lpi        
病毒: Trojan.PSW.Win32.XYOnline.wa
病毒: Trojan.PSW.Win32.XYOnline.vh
病毒: Trojan.PSW.Win32.SunOnline.it
病毒: Trojan.PSW.Win32.GameOnline.zyq

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.22.51
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-22 21:15 , Processed in 0.092357 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表