查看: 3314|回复: 20
收起左侧

[病毒样本] 下载者下的一包… 30只…

[复制链接]
will
发表于 2008-2-3 02:25:29 | 显示全部楼层 |阅读模式
貌似比较老了~  

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
woai_jolin
发表于 2008-2-3 02:31:07 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
mofunzone
发表于 2008-2-3 02:31:38 | 显示全部楼层
漏掉1个。。
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\Sample'
C:\Documents and Settings\Administrator\My Documents\Sample\
  Trj_080203_aaa1.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.x
      [INFO]      The file was deleted!
  Trj_080203_aaa10.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa11.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.prw.4
      [INFO]      The file was deleted!
  Trj_080203_aaa12.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa13.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.qds
      [INFO]      The file was deleted!
  Trj_080203_aaa14.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa15.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa16.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ozu.8
      [INFO]      The file was deleted!
  Trj_080203_aaa17.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa18.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa19.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.12211
      [INFO]      The file was deleted!
  Trj_080203_aaa2.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa20.exe
      [DETECTION] Is the Trojan horse TR/WuDisable.B
      [INFO]      The file was deleted!
  Trj_080203_aaa21.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa22.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '480eb774.qua'!
  Trj_080203_aaa23.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa24.exe
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.31860
      [INFO]      The file was deleted!
  Trj_080203_aaa25.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '49acc4e5.qua'!
  Trj_080203_aaa26.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa3.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa4.exe
      [DETECTION] Is the Trojan horse TR/FWDisable.42528
      [INFO]      The file was deleted!
  Trj_080203_aaa5.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa6.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa7.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  Trj_080203_aaa8.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '480eb776.qua'!
  Trj_080203_aaa9.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
      [INFO]      The file was deleted!
  Trj_080203_aati32srv.sys
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.iaj.1
      [INFO]      The file was deleted!
  Trj_080203_amm.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  Trj_080203_apcihdd2.sys
  Trj_080203_auserinit.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.iaj.2
      [INFO]      The file was deleted!


End of the scan: 2008年2月2日  10:31
Used time: 00:04 min

The scan has been done completely.

      1 Scanning directories
     30 Files were scanned
     26 viruses and/or unwanted programs were found
      3 Files were classified as suspicious:
     26 files were deleted
      0 files were repaired
      3 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      4 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
mofunzone
发表于 2008-2-3 02:32:47 | 显示全部楼层

回复 2楼 woai_jolin 的帖子

卡巴那记数问题可大了。。
woai_jolin
发表于 2008-2-3 02:34:14 | 显示全部楼层
原帖由 mofunzone 于 2008-2-3 02:32 发表
卡巴那记数问题可大了。。

有同感
mofunzone
发表于 2008-2-3 02:38:30 | 显示全部楼层

回复 5楼 woai_jolin 的帖子

我感觉我现在能理解为什么wangjay同学的卡巴20分钟11w了
靠的就是这个30个文件扫成180多个,整整多了6倍。。。
冷冷
发表于 2008-2-3 02:43:14 | 显示全部楼层
IK
I:\virus\test\Sample\Trj_080203_aaa1.exe - Signature 'Virus.Win32.OnLineGames.SR' found
I:\virus\test\Sample\Trj_080203_aaa10.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\Sample\Trj_080203_aaa11.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\Sample\Trj_080203_aaa12.exe - Signature 'Trojan-PWS.Win32.Delf.ix' found
I:\virus\test\Sample\Trj_080203_aaa13.exe - Signature 'Trojan-PWS.Win32.OnLineGames.qds' found
I:\virus\test\Sample\Trj_080203_aaa14.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\Sample\Trj_080203_aaa15.exe - Signature 'Trojan-PWS.Win32.Agent.jp' found
I:\virus\test\Sample\Trj_080203_aaa16.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\Sample\Trj_080203_aaa17.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\Sample\Trj_080203_aaa18.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\Sample\Trj_080203_aaa19.exe - Suspect code-parts found (Level: 25)
I:\virus\test\Sample\Trj_080203_aaa2.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\Sample\Trj_080203_aaa20.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
I:\virus\test\Sample\Trj_080203_aaa21.exe - Signature 'Trojan-PWS.Win32.Agent.jp' found
I:\virus\test\Sample\Trj_080203_aaa22.exe - Suspect code-parts found (Level: 25)
I:\virus\test\Sample\Trj_080203_aaa23.exe - Signature 'Trojan-PWS.Win32.QQPass.hq' found
I:\virus\test\Sample\Trj_080203_aaa24.exe - Suspect code-parts found (Level: 25)
I:\virus\test\Sample\Trj_080203_aaa25.exe - Suspect code-parts found (Level: 5)
I:\virus\test\Sample\Trj_080203_aaa26.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\Sample\Trj_080203_aaa3.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\Sample\Trj_080203_aaa4.exe - Signature 'Trojan-Spy.Win32.Delf.uv' found
I:\virus\test\Sample\Trj_080203_aaa5.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\Sample\Trj_080203_aaa6.exe - Signature 'Trojan-PWS.Win32.Delf.ix' found
I:\virus\test\Sample\Trj_080203_aaa7.exe - Signature 'Trojan-PWS.Win32.Agent.jp' found
I:\virus\test\Sample\Trj_080203_aaa8.exe - Signature 'Trojan-Spy.Win32.Agent.hz' found
I:\virus\test\Sample\Trj_080203_aaa9.exe - Signature 'Trojan-Spy.Win32.Delf.PD' found
I:\virus\test\Sample\Trj_080203_aati32srv.sys - Signature 'Trojan-Downloader.Win32.Agent.iaj' found
I:\virus\test\Sample\Trj_080203_amm.exe - Signature 'Trojan-Downloader.Win32.Zlob.and' found
I:\virus\test\Sample\Trj_080203_apcihdd2.sys
I:\virus\test\Sample\Trj_080203_auserinit.exe - Signature 'Trojan-Downloader.Win32.Agent.iaj' found
30 Files scanned
   (0 Archives with 0 files)
25 Signatures found
4 Suspect code-parts found
Used time: 0:01.547

[ 本帖最后由 冷_冷 于 2008-2-3 02:45 编辑 ]
leonfg
发表于 2008-2-3 03:10:30 | 显示全部楼层
ESET 28
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa1.exe - Win32/PSW.Agent.NGZ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa10.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa11.exe - Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa12.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa13.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa14.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa15.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa16.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa17.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa18.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa19.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa2.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa20.exe - Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa21.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa22.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa23.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa24.exe - Win32/TrojanDropper.VB.NCQ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa25.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa26.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa3.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa4.exe - Win32/PSW.OnLineGames.FDY trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa5.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa6.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa7.exe - a variant of Win32/PSW.OnLineGames.GJV trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa8.exe - a variant of Win32/PSW.OnLineGames.NLY trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aaa9.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_aati32srv.sys - Win32/TrojanDownloader.Agent.IAJ trojan
C:\Documents and Settings\GUNDAM\桌面\Sample\Sample\Trj_080203_auserinit.exe - Win32/TrojanDownloader.Agent.IAJ trojan

蜘蛛 19
碧水寒潭
发表于 2008-2-3 08:59:21 | 显示全部楼层
Start of the scan: 2008年2月3日  08:58

Starting the file scan:

Begin scan in 'I:\样本'
I:\样本\Sample[1].part1.rar
  [0] Archive type: RAR
  --> Sample\Trj_080203_aaa1.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.x
  --> Sample\Trj_080203_aaa10.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Sample\Trj_080203_aaa11.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.prw.4
  --> Sample\Trj_080203_aaa12.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Sample\Trj_080203_aaa13.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.qds
  --> Sample\Trj_080203_aaa14.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> Sample\Trj_080203_aaa15.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Sample\Trj_080203_aaa16.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ozu.8
  --> Sample\Trj_080203_aaa17.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> Sample\Trj_080203_aaa18.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> Sample\Trj_080203_aaa19.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.12211
  --> Sample\Trj_080203_aaa2.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Sample\Trj_080203_aaa20.exe
      [DETECTION] Is the Trojan horse TR/WuDisable.B
  --> Sample\Trj_080203_aaa21.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Sample\Trj_080203_aaa22.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Sample\Trj_080203_aaa23.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Sample\Trj_080203_aaa24.exe
      [DETECTION] Is the Trojan horse TR/PSW.Lmir.31860
  --> Sample\Trj_080203_aaa25.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> Sample\Trj_080203_aaa26.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> Sample\Trj_080203_aaa3.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Sample\Trj_080203_aaa4.exe
      [DETECTION] Is the Trojan horse TR/FWDisable.42528
  --> Sample\Trj_080203_aaa5.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Sample\Trj_080203_aaa6.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Sample\Trj_080203_aaa7.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> Sample\Trj_080203_aaa8.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was deleted!
I:\样本\Sample[1].part2.rar
  [0] Archive type: RAR
  --> Sample\Trj_080203_aati32srv.sys
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.iaj.1
  --> Sample\Trj_080203_amm.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
  --> Sample\Trj_080203_auserinit.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.iaj.2
      [INFO]      The file was deleted!


End of the scan: 2008年2月3日  08:58
Used time: 00:25 min

The scan has been done completely.

      1 Scanning directories
     31 Files were scanned
     25 viruses and/or unwanted programs were found
      3 Files were classified as suspicious:
      2 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      6 Files not concerned
      2 Archives were scanned
      0 Warnings
      0 Notes
wangjay1980
发表于 2008-2-3 10:26:55 | 显示全部楼层
原帖由 mofunzone 于 2008-2-3 02:38 发表
我感觉我现在能理解为什么wangjay同学的卡巴20分钟11w了
靠的就是这个30个文件扫成180多个,整整多了6倍。。。


呵呵,小孩就是小孩,挺好玩的

detected: Trojan program Trojan-PSW.Win32.OnLineGames.pup File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa1.exe
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qjl File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa10.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pvm File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa11.exe//PE_Patch//UPack
detected: Trojan program Trojan.Win32.Pakes.bzp File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa12.exe
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qds File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa13.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiv File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa14.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.Nilage.byx File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa15.exe//PE_Patch.UPX//UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ozu File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa16.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiv File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa17.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiv File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa18.exe//PE_Patch//UPack
detected: Trojan program Trojan-Dropper.Win32.Agent.ebc File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa19.exe//PE_Patch//UPack
detected: virus Heur.Trojan.Generic File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa2.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.oee File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa20.exe//UPack
detected: virus Heur.Invader (modification) File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa21.exe//PE_Patch.UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qhd File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa22.exe//PE_Patch//UPack//data0000.bin//UPack
detected: Trojan program Trojan-PSW.Win32.WOW.ald File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa23.exe//PE_Patch.UPX//UPX
detected: Trojan program Trojan-Dropper.Win32.VB.yf File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa24.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qjn File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa25.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiv File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa26.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.php File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa3.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.odx File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa4.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qfw File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa5.exe//UPack
detected: Trojan program Trojan.Win32.Pakes.bzp File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa6.exe
detected: virus Heur.Invader (modification) File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa7.exe//PE_Patch.UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qjj File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa8.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.pzl File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aaa9.exe//PE_Patch//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.iaj File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_aati32srv.sys
detected: Trojan program Trojan-Downloader.Win32.Agent.ibm File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_amm.exe//PE_Patch//UPack
detected: Trojan program Trojan-Downloader.Win32.Agent.iaj File: C:\Documents and Settings\Owner\×ÀÃæ\Sample\Trj_080203_auserinit.exe//PE_Patch//UPack

[ 本帖最后由 wangjay1980 于 2008-2-3 11:17 编辑 ]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-26 11:25 , Processed in 0.147533 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表