12
返回列表 发新帖
楼主: 492052134
收起左侧

[病毒样本] 1个过卡巴

[复制链接]
mofunzone
发表于 2008-2-9 14:08:23 | 显示全部楼层

回复 9楼 PC0amera 的帖子

给你的评价就是,犹如你的签名,菜鸟成长中

Starting the file scan:

Begin scan in 'C:\TDDOWNLOAD\614.exe'
C:\TDDOWNLOAD\
  614.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ppu
      [INFO]      The file was deleted!
sharkkong
头像被屏蔽
发表于 2008-2-9 14:28:37 | 显示全部楼层
ACCESS DENIED
The requested URL could not be retrieved

--------------------------------------------------------------------------------

While trying to retrieve the URL: http://20080203.service-google.cn/614.exe

The folowing error was encountered:

The requested object is INFECTED. The following viruses Trojan-PSW.Win32.OnLineGames.ppu were found

Please contact your service provider if you feel this is incorrect.



--------------------------------------------------------------------------------

Generated Sat Feb 09 14:27:45 2008 by Kaspersky Anti-Virus 7.0
Palkia
发表于 2008-2-9 14:29:45 | 显示全部楼层
木马名称:Trojan-PSW.Win32.OLGames.jqu

程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\614.EXE
是木马程序!
已成功阻止其运行,是否要删除此文件?
woai_jolin
发表于 2008-2-9 15:16:23 | 显示全部楼层
=============================================================================
Dr.Web(R) Scanner for Windows v4.44.2 (4.44.2.11261)
(c) 1992-2007 Igor Daniloff. All rights reserved.
Log generated on: 2008-02-09, 15:15:57 [Administrator]
Command-line: "E:\DrWeb\DrWeb32W.Exe" /ARN /HA /OK /UPN /TM- /AL /SS- /SD /SHELL /TB-
Operating system:Windows XP Professional x86 (Build 2600), Service Pack 2
=============================================================================
DwShield started
Engine version: 4.44 (4.44.0.09170)
Engine API version: 2.02
[Virus database] E:\DrWeb\drwtoday.vdb - 789 virus records
[Virus database] E:\DrWeb\drw44425.vdb - 3609 virus records
[Virus database] E:\DrWeb\drw44424.vdb - 7770 virus records
[Virus database] E:\DrWeb\drw44423.vdb - 4210 virus records
[Virus database] E:\DrWeb\drw44422.vdb - 1010 virus records
[Virus database] E:\DrWeb\drw44421.vdb - 421 virus records
[Virus database] E:\DrWeb\drw44420.vdb - 1306 virus records
[Virus database] E:\DrWeb\drw44419.vdb - 1234 virus records
[Virus database] E:\DrWeb\drw44418.vdb - 1238 virus records
[Virus database] E:\DrWeb\drw44417.vdb - 4406 virus records
[Virus database] E:\DrWeb\drw44416.vdb - 7847 virus records
[Virus database] E:\DrWeb\drw44415.vdb - 6014 virus records
[Virus database] E:\DrWeb\drw44414.vdb - 804 virus records
[Virus database] E:\DrWeb\drw44413.vdb - 5020 virus records
[Virus database] E:\DrWeb\drw44412.vdb - 1565 virus records
[Virus database] E:\DrWeb\drw44411.vdb - 1582 virus records
[Virus database] E:\DrWeb\drw44410.vdb - 1131 virus records
[Virus database] E:\DrWeb\drw44409.vdb - 2303 virus records
[Virus database] E:\DrWeb\drw44408.vdb - 3904 virus records
[Virus database] E:\DrWeb\drw44407.vdb - 2456 virus records
[Virus database] E:\DrWeb\drw44406.vdb - 4411 virus records
[Virus database] E:\DrWeb\drw44405.vdb - 1311 virus records
[Virus database] E:\DrWeb\drw44404.vdb - 2486 virus records
[Virus database] E:\DrWeb\drw44403.vdb - 4462 virus records
[Virus database] E:\DrWeb\drw44402.vdb - 94 virus records
[Virus database] E:\DrWeb\drw44401.vdb - 557 virus records
[Virus database] E:\DrWeb\drw44400.vdb - 945 virus records
[Virus database] E:\DrWeb\drwebase.vdb - 209466 virus records
[Virus database] E:\DrWeb\dwrtoday.vdb - 296 virus records
[Virus database] E:\DrWeb\dwntoday.vdb - 161 virus records
[Virus database] E:\DrWeb\dwn44402.vdb - 814 virus records
[Virus database] E:\DrWeb\dwn44401.vdb - 698 virus records
[Virus database] E:\DrWeb\drwrisky.vdb - 2747 virus records
[Virus database] E:\DrWeb\drwnasty.vdb - 13534 virus records
Total virus records: 300601
Key file: E:\DrWeb\drwdemo.key
License key number: 0010092936
Registered to: Dr.Web CureIt Project
License key activates on: 2007-02-05
License key expires on: 2010-02-11
Master Boot Record HDD1 - Ok
Active OS/2 or WinNT Boot Sector HDD1 - Ok

[Scan path] G:\v\614.exe
>G:\v\614.exe infected with Trojan.DownLoader.45214
G:\v\614.exe:Zone.Identifier - Ok

-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 4
Infected objects found: 1
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Cured: 0
Deleted: 0
Renamed: 0
Moved: 0
Ignored: 0
Scan speed: 8 Kb/s
Scan time: 00:00:00
-----------------------------------------------------------------------------

G:\v\614.exe - deleted

=============================================================================
Total session statistics
=============================================================================
Objects scanned: 4
Infected objects found: 1
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Cured: 0
Deleted: 1
Renamed: 0
Moved: 0
Ignored: 0
Scan speed: 8 Kb/s
Scan time: 00:00:00
=============================================================================
挪威的冬天
发表于 2008-2-9 16:13:15 | 显示全部楼层
病毒        2008-02-09  16:12:27        病毒在文件C:\Users\挪威的冬天\Desktop\614.exe.download中        Win32.PSWTroj.OnLineGames.98304        处理成功(操作:删除)
j4908
发表于 2008-2-9 17:17:42 | 显示全部楼层
看看是什么!!
qigang
发表于 2008-2-9 19:15:16 | 显示全部楼层

回复 8楼 spaceplane 的帖子

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.OnlineGames.GEN

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.30.40

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
qigang
发表于 2008-2-9 19:16:39 | 显示全部楼层

2/0

rising20.30.40未认得!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-3 19:41 , Processed in 0.108058 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表