查看: 3308|回复: 17
收起左侧

[病毒样本] 下载者提供的一包

[复制链接]
zzh161
发表于 2008-2-3 02:15:48 | 显示全部楼层 |阅读模式
[oo]
t0=20080221
e0=http://219.153.16.8/m2/1.exe
t1=20080221
e1=http://219.153.16.8/m2/2.exe
t2=20080221
e2=http://219.153.16.8/m2/3.exe
t3=20080221
e3=http://219.153.16.8/m2/4.exe
t4=20080221
e4=http://219.153.16.8/m2/5.exe
t5=20080221
e5=http://219.153.16.8/m2/6.exe
t6=20080221
e6=http://219.153.16.8/m2/7.exe
t7=20080221
e7=http://219.153.16.8/m2/8.exe
t8=20080221
e8=http://219.153.16.8/m2/9.exe
t9=20080221
e9=http://219.153.16.8/m2/10.exe
t10=20080221
e10=http://219.153.16.8/m2/11.exe
t11=20080221
e11=http://219.153.16.8/m2/12.exe
t12=20080221
e12=http://219.153.16.8/m2/13.exe
t13=20080222
e13=http://219.153.16.8/m2/14.exe
t14=20080221
e14=http://219.153.16.8/m2/15.exe
t15=20080221
e15=http://219.153.16.8/m2/16.exe
t16=20080221
e16=http://219.153.16.8/m2/17.exe
t17=20080221
e17=http://219.153.16.8/m2/18.exe
t18=20080221
e18=http://219.153.16.8/m2/19.exe
t19=20080221
e19=http://219.153.16.8/m2/20.exe
t20=20080221
e20=http://219.153.16.8/m2/21.exe
t21=20080221
e21=http://219.153.16.8/m2/22.exe
t22=20080221
e22=http://219.153.16.8/m2/23.exe
t23=20080221
e23=http://219.153.16.8/m2/24.exe
t24=20080221
e24=http://219.153.16.8/m2/25.exe
t25=20080221
e25=http://219.153.16.8/m2/26.exe
t26=20080221
e26=http://219.153.16.8/a11.exe
t27=20080221
e27=http://219.153.16.8/k.exe
t28=20080221
e28=http://219.153.16.8/m2/27.exe


样本:


  瑞星病毒查杀结果报告
清除病毒种类列表:
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.GameOL.ltx
病毒: Trojan.PSW.Win32.XYOnline.abi
病毒: Trojan.PSW.Win32.GameOL.ldd
病毒: Trojan.PSW.Win32.GamesOnline.mn
病毒: Trojan.PSW.Win32.GamesOnline.mh
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.GameOL.lvr
病毒: Worm.Win32.PaBug.GEN     
病毒: Trojan.PSW.Win32.QQGame.GEN
病毒: Trojan.PSW.Win32.QQHX.tvu
病毒: Trojan.Win32.QHost.aep   
病毒: Trojan.PSW.Win32.GameOL.luk
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.LMir.zaj
病毒: Trojan.Win32.Undef.ayo   
病毒: Worm.Win32.VB.zap        
MAC 地址:00:00:00:00:00:00
用户来源:局域网
软件版本:20.29.52

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
woai_jolin
发表于 2008-2-3 02:18:32 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
mofunzone
发表于 2008-2-3 02:20:12 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\malasc.cn.rar'
C:\Documents and Settings\Administrator\My Documents\
  malasc.cn.rar
  malasc.cn.rar:Zone.Identifier
    [0] Archive type: RAR
    --> malasc.cn\1.exe
        [DETECTION] Is the Trojan horse TR/PSW.Online.aav.1
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\10.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.pvk
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\11.exe
        [DETECTION] Is the Trojan horse TR/PSW.Wow.acd
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\12.exe
        [DETECTION] Is the Trojan horse TR/WuDisable.B
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\13.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\14.exe
        [DETECTION] Is the Trojan horse TR/Spy.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\15.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\16.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.243
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\17.exe
        [DETECTION] Is the Trojan horse TR/Dropper.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\18.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\19.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\2.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\20.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\21.exe
        [DETECTION] Contains detection pattern of the worm WORM/Autorun.FF.27
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\22.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.244
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\24.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.qds
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\26.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.pmi.11
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\27.exe
        [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\3.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.prw.15
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\4.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.poc
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\5.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\6.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.pmi.4
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\7.exe
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.pmi.5
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\8.exe
        [DETECTION] Is the Trojan horse TR/Rootkit.Gen
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\9.exe
        [DETECTION] Contains suspicious code HEUR/Malware
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\a11.exe
        [DETECTION] Is the Trojan horse TR/Agent.114688.C
        [WARNING]   Infected files in archives cannot be repaired!
    --> malasc.cn\k.exe
        [DETECTION] Contains code of the Windows virus W32/Downloader.J
        [WARNING]   Infected files in archives cannot be repaired!
        [WARNING]   The file was ignored!


End of the scan: 2008年2月2日  10:20
Used time: 00:06 min

The scan has been done completely.

      0 Scanning directories
     29 Files were scanned
     26 viruses and/or unwanted programs were found
      1 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      3 Files not concerned
      1 Archives were scanned
     28 Warnings
      0 Notes
冷冷
发表于 2008-2-3 02:40:52 | 显示全部楼层
ik
I:\virus\malasc[1].cn.rar:\malasc.cn\1.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\malasc[1].cn.rar:\malasc.cn\10.exe - Suspect code-parts found (Level: 25)
I:\virus\malasc[1].cn.rar:\malasc.cn\11.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\12.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
I:\virus\malasc[1].cn.rar:\malasc.cn\13.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\14.exe - Signature 'Trojan-PWS.Win32.QQPass.hq' found
I:\virus\malasc[1].cn.rar:\malasc.cn\15.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\16.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\malasc[1].cn.rar:\malasc.cn\17.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\malasc[1].cn.rar:\malasc.cn\18.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\19.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\2.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\20.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\21.exe - Signature 'Trojan-Proxy.Win32.Delf.AN' found
I:\virus\malasc[1].cn.rar:\malasc.cn\22.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\malasc[1].cn.rar:\malasc.cn\24.exe - Signature 'Trojan-PWS.Win32.OnLineGames.qds' found
I:\virus\malasc[1].cn.rar:\malasc.cn\26.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\27.exe - Suspect code-parts found (Level: 85)
I:\virus\malasc[1].cn.rar:\malasc.cn\3.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\4.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\malasc[1].cn.rar:\malasc.cn\5.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\6.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\7.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\8.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\malasc[1].cn.rar:\malasc.cn\9.exe - Suspect code-parts found (Level: 25)
I:\virus\malasc[1].cn.rar:\malasc.cn\a11.exe - Signature 'Backdoor.Win32.Delf.cwq' found
I:\virus\malasc[1].cn.rar:\malasc.cn\k.exe - Signature 'Trojan-Downloader.Win32.VB.chb' found
I:\virus\malasc[1].cn.rar

        28 Files scanned
          (1 Archiv with 27 files)
        24 Signatures found
        3 Suspect code-parts found
        Used time: 0:01.969
leonfg
发表于 2008-2-3 03:13:37 | 显示全部楼层
ESET 25
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\1.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\10.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\11.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\12.exe - a variant of Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\13.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\14.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\15.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\16.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\17.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\18.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\19.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\2.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\20.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\21.exe - probably a variant of Win32/AutoRun.Q worm
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\22.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\24.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\26.exe - Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\3.exe - Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\4.exe - a variant of Win32/PSW.OnLineGames.NLY trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\5.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\6.exe - Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\7.exe - Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\8.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\9.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\malasc.cn.rar » RAR » malasc.cn\a11.exe - Win32/NetTool.Agent.NAA application

蜘蛛 19
鱼是一只我
发表于 2008-2-3 09:30:41 | 显示全部楼层
费尔26
卡巴25

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
FBAV
发表于 2008-2-3 09:39:26 | 显示全部楼层
MicroVita AntiSpyware 100 C
_____________________________________________
                                          
             风暴微塔反间谍
[强力查杀各种Win32位的病毒,木马,蠕虫,恶意软件]                  
                   http://221.10.254.214/
----------------------------------------------
开始扫描……


正在检查启动……
[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\1.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:19292  MD5:b9ecfc8e7a973573ac8bb8cc66bb6f3f


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\10.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:12324  MD5:5a380ffe0b8456c7ebcbef09283af519


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\11.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing[5] 下载者
文件信息:  大小:21100  MD5:c5c3509340979ca1a466dd3ab417cb24


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\12.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:15593  MD5:cd5eb7d03574e57e8a27e8d4a1df7288


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\13.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:18084  MD5:e5b611ed380f296d44423d4826f161c5


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\14.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:30720  MD5:cac8fc841e29932931b7673ec95dd0c7


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\15.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:17912  MD5:b5ca4e7012c517ed1415a2925da0aea8


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\16.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:21772  MD5:92aafb938d3c9d2a53b608a03df0f4c5


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\17.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:17867  MD5:f9078f5010724ee777fc8f64a071a4c7


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\18.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:18280  MD5:4a67cbe71910439fde21a8e2e26b73f1


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\19.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:17312  MD5:a38c1504dcab0a0174f0d85ce929f28b


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\2.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:18224  MD5:18be14844aaa2bdfae44ef169ab07e90


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\20.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:22664  MD5:2d458014bda6dcfb693dff4969bd59a1


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\21.exe]
                    …………发现Spy!报告:[2]
文件信息:  大小:34486  MD5:ebda9476c6553c642eb90c709cc62223


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\22.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing[5] 下载者
文件信息:  大小:18014  MD5:8893ee84c30959c974cd0e735f28966c


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\24.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:11717  MD5:58866b31f091ebe7ea1f66d4595e2ecc


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\26.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:17608  MD5:6361f9f0a515ee9de8a1123a61ccc8a0


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\27.exe]
                    …………发现Spy!报告:[1] Win32.Unknow
文件信息:  大小:4844  MD5:297f2f2c97455d66a7dc928c402ec40b


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\3.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:20344  MD5:a015fdf8917f6028b75b9814e060a947


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\4.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:10169  MD5:684d520f887e42ac4e696adf57a3d93d


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\5.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:18408  MD5:ade5dfd9001ab59fe9481a35ee991af2


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\6.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:20968  MD5:2cbce910a809511d6b27e3bd73830008


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\7.exe]
                    …………发现Spy!报告:[2] [1] Win32.F/S.ByDwing
文件信息:  大小:20184  MD5:73c1f9d484040d19a41eb15b9c7f2cd3


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\8.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:23232  MD5:db32e59b6237873d4a65bc3fca883867


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\9.exe]
                    …………发现Spy!报告:[1] Win32.F/S.ByDwing
文件信息:  大小:11832  MD5:4512a52993e2f14fe02ce1b5deb97e53


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\a11.exe]
                    …………发现Spy!报告:[2] [1] Win32.Unknow
文件信息:  大小:254112  MD5:d4e9314d9659b65805cbe96733a253cd


[C:\Documents and Settings\Administrator\桌面\Virus\malasc.cn\malasc.cn\k.exe]
                    …………发现Spy!报告:[2] [1] Win32.Unknow
文件信息:  大小:6708  MD5:67b85aa272a7b42de634f79d1f2f406b


文件数:27   病毒数:27  比重:1
OK  扫描完毕!

  ***日志解释
[4] 集中有害分析引擎
[3] 全局系统判断引擎   
[2] 文件特征码引擎
[1] 文件启发式引擎
wangjay1980
发表于 2008-2-3 10:23:05 | 显示全部楼层

回复 2楼 woai_jolin 的帖子

可以啊,居然用卡8

detected: virus Heur.Trojan.Generic        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\1.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pvk        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\10.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qfv        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\11.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ngd        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\12.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiv        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\13.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.WOW.ald        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\14.exe//PE_Patch.UPX//UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\15.exe//PE_Patch//UPack
detected: Trojan program Trojan.Win32.Vaklik.gq        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\16.exe//UPack//PE_Patch
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qfw        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\17.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiv        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\18.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\19.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\2.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\20.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.QQPass.ati        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\21.exe//UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.prg        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\22.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qds        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\24.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pbp        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\26.exe//PE_Patch//UPack
detected: Trojan program Trojan.Win32.Qhost.aft        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\27.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzh        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\3.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.poc        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\4.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\5.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.poj        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\6.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.poj        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\7.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\8.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qfq        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\9.exe//PE_Patch//UPack//data0000.bin//UPack
detected: Trojan program Backdoor.Win32.Delf.cwq        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\a11.exe//PE_Patch//UPack
detected: Trojan program Trojan-Downloader.Win32.VB.cii        File: C:\Documents and Settings\Owner\×ÀÃæ\malasc.cn.rar/malasc.cn\k.exe
spaceplane
发表于 2008-2-3 10:37:26 | 显示全部楼层
avast 14
挪威的冬天
发表于 2008-2-3 12:44:47 | 显示全部楼层
信息        2008-02-03  12:44:26        您此次查毒共查出25个病毒以及危险代码                       
信息        2008-02-03  12:44:26        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件53个                       
信息        2008-02-03  12:44:26        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-26 11:39 , Processed in 0.148763 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表