12
返回列表 发新帖
楼主: qianwenxiang
收起左侧

[病毒样本] 47个

[复制链接]
ballakay
发表于 2008-1-29 18:11:09 | 显示全部楼层
Scanning Report
29 January 2008 18:10:37 - 18:10:40
Computer name: PUMA-PC
Scanning type: Scan target
Target: C:\Users\Administrator\Desktop\system32.part1.rar C:\Users\Administrator\Desktop\system32.part2.rar


--------------------------------------------------------------------------------

Result: 20 malware found
Trojan-PSW.Win32.OnLineGames.nmc (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\msepion.sys
C:\Users\Administrator\Desktop\system32.part1.rar\auhad.dll
C:\Users\Administrator\Desktop\system32.part1.rar\xy.exe
Trojan-PSW.Win32.OnLineGames.psa (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\cs.exe
C:\Users\Administrator\Desktop\system32.part1.rar\IGB_CQSJ_1023.exe
Trojan-Downloader.Win32.Agent.ibh (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\~Fa93.tmp
Trojan-PSW.Win32.OnLineGames.pou (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\pt.exe
C:\Users\Administrator\Desktop\system32.part1.rar\QAA_XPTYJ_1007.exe
Trojan-Downloader.Win32.Agent.hrl (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\1.exe
Trojan-PSW.Win32.OnLineGames.pml (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\uyom.dll
Trojan-PSW.Win32.OnLineGames.pry (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\qj.exe
Trojan-PSW.Win32.OnLineGames.pbp (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\my.exe
C:\Users\Administrator\Desktop\system32.part1.rar\mh.exe
Trojan-PSW.Win32.OnLineGames.psy (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\nauhgnem.dll
Trojan-Downloader.Win32.Agent.gbh (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\csrss.exe
Trojan-PSW.Win32.QQPass.asz (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\qq.exe
Trojan-PSW.Win32.QQPass.ata (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\Wn_Sys8x.Sys
Trojan-Spy.Win32.Agent.qd (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\iexplore.exe
Backdoor.Win32.Vipdataend.en (virus)
C:\Users\Administrator\Desktop\system32.part1.rar\Rpcs.dll
Trojan-Downloader.Win32.Agent.hqv (virus)
C:\Users\Administrator\Desktop\system32.part2.rar\puid.sys




--------------------------------------------------------------------------------

Statistics
Scanned:
Files: 48
Not scanned: 0
Result:
Viruses: 20
Spyware: 0
Suspicious items: 0
Riskware: 0
Actions:
Disinfected: 0
Renamed: 0
Deleted: 0
Quarantined: 0
Failed: 0
Boot Sectors:
Scanned: 0
Infected: 0
Suspicious items: 0
Disinfected: 0
傻猪猪米走鸡
发表于 2008-1-29 19:11:33 | 显示全部楼层
Scan Log
Version of virus signature database: 2830 (20080129)
Date: 2008-1-29  Time: 19:16:22
Scanned disks, folders and files: E:\virus\system32
E:\virus\system32\1.exe - probably a variant of Win32/Genetik trojan
E:\virus\system32\11.exe - is OK
E:\virus\system32\5.exe » RAR » 11.exe - is OK
E:\virus\system32\5.exe » RAR » 1.bat - is OK
E:\virus\system32\5.exe » RAR » 1.vbs - is OK
E:\virus\system32\5.exe » RAR » knlps.exe » ASPack v2.12 - is OK
E:\virus\system32\5.exe » RAR » knlps.sys - is OK
E:\virus\system32\ANSMTP.dll - is OK
E:\virus\system32\auhad.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
E:\virus\system32\autonomy.tmp - is OK
E:\virus\system32\cs.exe - is OK
E:\virus\system32\csrss.exe - Win32/Agent.NNA trojan
E:\virus\system32\eww.exe - is OK
E:\virus\system32\ewwie.dll - is OK
E:\virus\system32\ewwsetup.exe » UPX v12_m2 - is OK
E:\virus\system32\hx.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\virus\system32\iexplore.exe - Win32/Spy.Agent.QD trojan
E:\virus\system32\IGB_CQSJ_1023.dll - is OK
E:\virus\system32\IGB_CQSJ_1023.exe - is OK
E:\virus\system32\ijiq.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
E:\virus\system32\knlps.exe » ASPack v2.12 - is OK
E:\virus\system32\knlps.sys - is OK
E:\virus\system32\mh.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\virus\system32\msepion.sys - Win32/PSW.OnLineGames.NFC trojan
E:\virus\system32\my.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\virus\system32\nauhgnem.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
E:\virus\system32\oehk.dll - is OK
E:\virus\system32\oesrv.exe - is OK
E:\virus\system32\PasswordDLL.dll » UPX v12_m2_dll - is OK
E:\virus\system32\pt.exe - is OK
E:\virus\system32\puid.sys - a variant of Win32/TrojanDownloader.Small.HLV trojan
E:\virus\system32\QAA_XPTYJ_1007.dll - is OK
E:\virus\system32\QAA_XPTYJ_1007.exe - is OK
E:\virus\system32\qj.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\virus\system32\qq.exe - Win32/PSW.QQPass.NCV trojan
E:\virus\system32\Rpcs.dll - probably a variant of Win32/Delf trojan
E:\virus\system32\Rpcs.exe - is OK
E:\virus\system32\Setup.exe » UPX v12_m2 - is OK
E:\virus\system32\SVCHOST.exe - probably a variant of Win32/Obfuscated trojan
E:\virus\system32\Sy_Win7k.Jmp - is OK
E:\virus\system32\tl.exe - probably a variant of Win32/Genetik trojan
E:\virus\system32\tllt.dll - probably a variant of Win32/Genetik trojan
E:\virus\system32\uyom.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
E:\virus\system32\wd.exe - is OK
E:\virus\system32\wddw.dll - is OK
E:\virus\system32\Wn_Sys8x.Sys - Win32/AutoRun.Q worm
E:\virus\system32\xhqq.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
E:\virus\system32\xy.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\virus\system32\_Setupx.dll - is OK
E:\virus\system32\~DF9292.tmp - is OK
E:\virus\system32\~Fa93.tmp - is OK
Number of scanned objects: 51
Number of threats found: 21
Time of completion: 19:16:37  Total scanning time: 15 sec (00:00:15)
傻猪猪米走鸡
发表于 2008-1-29 19:22:48 | 显示全部楼层

几经辛苦终于把剩余的上报了……

2008-1-29 19:27:48        Kernel        File  'E:\virus\system32.rar' was sent to ESET for analysis.
shuai3352
发表于 2008-1-29 19:25:48 | 显示全部楼层
扫描进行于:2008-1-29 19:23:55
日期: 29.1.2008  时间:19:24:14
已扫描的磁盘,文件夹及文件:D:\system32\
D:\system32\msepion.sys - Win32/PSW.OnLineGames.NFC 木马 - 已删除
D:\system32\1.exe - probably a variant of Win32/Genetik 木马
D:\system32\xhqq.dll - a variant of Win32/PSW.OnLineGames.NLH 木马
D:\system32\ijiq.dll - a variant of Win32/PSW.OnLineGames.NLH 木马
D:\system32\uyom.dll - a variant of Win32/PSW.OnLineGames.NLH 木马
D:\system32\tllt.dll - probably a variant of Win32/Genetik 木马
D:\system32\tl.exe - probably a variant of Win32/Genetik 木马
D:\system32\hx.exe - a variant of Win32/PSW.OnLineGames.MUG 木马
D:\system32\qj.exe - a variant of Win32/PSW.OnLineGames.MUG 木马
D:\system32\my.exe - a variant of Win32/PSW.OnLineGames.MUG 木马
D:\system32\auhad.dll - a variant of Win32/PSW.OnLineGames.NLH 木马
D:\system32\nauhgnem.dll - a variant of Win32/PSW.OnLineGames.NLH 木马
D:\system32\xy.exe - a variant of Win32/PSW.OnLineGames.MUG 木马
D:\system32\mh.exe - a variant of Win32/PSW.OnLineGames.MUG 木马
D:\system32\csrss.exe - Win32/Agent.NNA 木马 - 已删除
D:\system32\qq.exe - Win32/PSW.QQPass.NCV 木马 - 已删除
D:\system32\Wn_Sys8x.Sys - Win32/AutoRun.Q 蠕虫 - 已删除
D:\system32\iexplore.exe - Win32/Spy.Agent.QD 木马 - 已删除
D:\system32\Rpcs.dll - probably a variant of Win32/Delf 木马
D:\system32\SVCHOST.exe - probably a variant of Win32/Obfuscated 木马
D:\system32\puid.sys - a variant of Win32/TrojanDownloader.Small.HLV 木马
已扫描的文件数目:51
已发现的病毒数目:21
已清除病毒的文件数目:21
完成时间: 19:24:34 总扫描时间:20 秒 (00:00:20)


我的nod32只查出21个
qigang
发表于 2008-1-29 19:40:28 | 显示全部楼层

90/24

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.Woool.m
病毒: RootKit.Win32.Mnless.fq  
病毒: Trojan.PSW.Win32.GameOL.lrt
病毒: Trojan.PSW.Win32.GameOL.lrr
病毒: Trojan.Win32.Undef.bzj   
病毒: Trojan.PSW.Win32.QQHX.tvy
病毒: Trojan.PSW.Win32.GameOL.lsd
病毒: Trojan.PSW.Win32.GameOL.lqx
病毒: Trojan.PSW.Win32.XYOnline.abc
病毒: Trojan.PSW.Win32.QQHX.tvu
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.GamesOnline.lb
病毒: Trojan.PSW.Win32.QQGame.bq
病毒: Trojan.Win32.Undef.bfe   
病毒: Worm.Win32.PaBug.GEN     
病毒: Trojan.Spy.Agent.cro     
病毒: Backdoor.Jusi.ao         
病毒: Trojan.PSW.Win32.GamesOnline.lk

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.29.12
as098
发表于 2008-1-29 19:48:56 | 显示全部楼层
ess 21 个
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-19 14:25 , Processed in 0.093063 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表