查看: 4113|回复: 19
收起左侧

[已鉴定] 抛个毒网tv.mymtv335.cn

 关闭 [复制链接]
ask5
发表于 2008-2-9 16:44:18 | 显示全部楼层 |阅读模式
Log is generated by FreShow.
[wide]http://tv.mymtv335.cn/index.htm
        [frame]http://tv.mymtv335.cn/ChinasB.htm
            [frame]http://tv.mymtv335.cn/ZVipb.htm
                [frame]http://tv.mymtv335.cn/reader.htm
                [frame]http://tv.mymtv335.cn/QvodPlay.htm
                [frame]http://tv.mymtv335.cn/xp07004.htm
                    [object]http://tv.mymtv335.cn/svcoss.exe

其他的不会了


[ 本帖最后由 ask5 于 2008-2-9 16:45 编辑 ]
Graybird
发表于 2008-2-9 16:46:16 | 显示全部楼层
Starting the file scan:

Begin scan in 'E:\virus\svcoss.exe'
E:\virus\svcoss.exe
      [DETECTION] Is the Trojan horse TR/Spy.Delf.ayb
      [INFO]      The file was deleted!
tanlimo
发表于 2008-2-9 17:13:54 | 显示全部楼层
QvodPlay.htm和xp07004.htm都是svcoss.exe

reader.htm实在看不懂。
jimmyleo
发表于 2008-2-9 17:27:03 | 显示全部楼层
reader 第一层为jsencode
FreShow暂时不行 Malzilla可以
http://tv.mymtv335.cn/svcoss.exe
woai_jolin
发表于 2008-2-9 17:29:58 | 显示全部楼层
=============================================================================
Dr.Web(R) Scanner for Windows v4.44.2 (4.44.2.11261)
(c) 1992-2007 Igor Daniloff. All rights reserved.
Log generated on: 2008-02-09, 17:29:34 [Administrator]
Command-line: "E:\DrWeb\DrWeb32W.Exe" /ARN /HA /OK /UPN /TM- /AL /SS- /SD /SHELL /TB-
Operating system:Windows XP Professional x86 (Build 2600), Service Pack 2
=============================================================================
DwShield started
Engine version: 4.44 (4.44.0.09170)
Engine API version: 2.02
[Virus database] E:\DrWeb\drwtoday.vdb - 789 virus records
[Virus database] E:\DrWeb\drw44425.vdb - 3609 virus records
[Virus database] E:\DrWeb\drw44424.vdb - 7770 virus records
[Virus database] E:\DrWeb\drw44423.vdb - 4210 virus records
[Virus database] E:\DrWeb\drw44422.vdb - 1010 virus records
[Virus database] E:\DrWeb\drw44421.vdb - 421 virus records
[Virus database] E:\DrWeb\drw44420.vdb - 1306 virus records
[Virus database] E:\DrWeb\drw44419.vdb - 1234 virus records
[Virus database] E:\DrWeb\drw44418.vdb - 1238 virus records
[Virus database] E:\DrWeb\drw44417.vdb - 4406 virus records
[Virus database] E:\DrWeb\drw44416.vdb - 7847 virus records
[Virus database] E:\DrWeb\drw44415.vdb - 6014 virus records
[Virus database] E:\DrWeb\drw44414.vdb - 804 virus records
[Virus database] E:\DrWeb\drw44413.vdb - 5020 virus records
[Virus database] E:\DrWeb\drw44412.vdb - 1565 virus records
[Virus database] E:\DrWeb\drw44411.vdb - 1582 virus records
[Virus database] E:\DrWeb\drw44410.vdb - 1131 virus records
[Virus database] E:\DrWeb\drw44409.vdb - 2303 virus records
[Virus database] E:\DrWeb\drw44408.vdb - 3904 virus records
[Virus database] E:\DrWeb\drw44407.vdb - 2456 virus records
[Virus database] E:\DrWeb\drw44406.vdb - 4411 virus records
[Virus database] E:\DrWeb\drw44405.vdb - 1311 virus records
[Virus database] E:\DrWeb\drw44404.vdb - 2486 virus records
[Virus database] E:\DrWeb\drw44403.vdb - 4462 virus records
[Virus database] E:\DrWeb\drw44402.vdb - 94 virus records
[Virus database] E:\DrWeb\drw44401.vdb - 557 virus records
[Virus database] E:\DrWeb\drw44400.vdb - 945 virus records
[Virus database] E:\DrWeb\drwebase.vdb - 209466 virus records
[Virus database] E:\DrWeb\dwrtoday.vdb - 296 virus records
[Virus database] E:\DrWeb\dwntoday.vdb - 161 virus records
[Virus database] E:\DrWeb\dwn44402.vdb - 814 virus records
[Virus database] E:\DrWeb\dwn44401.vdb - 698 virus records
[Virus database] E:\DrWeb\drwrisky.vdb - 2747 virus records
[Virus database] E:\DrWeb\drwnasty.vdb - 13534 virus records
Total virus records: 300601
Key file: E:\DrWeb\drwdemo.key
License key number: 0010092936
Registered to: Dr.Web CureIt Project
License key activates on: 2007-02-05
License key expires on: 2010-02-11
Master Boot Record HDD1 - Ok
Active OS/2 or WinNT Boot Sector HDD1 - Ok

[Scan path] G:\v\svcoss.exe
>>G:\v\svcoss.exe infected with Trojan.PWS.Gamania.origin
G:\v\svcoss.exe:Zone.Identifier - Ok

-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 4
Infected objects found: 1
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Cured: 0
Deleted: 0
Renamed: 0
Moved: 0
Ignored: 0
Scan speed: 24 Kb/s
Scan time: 00:00:00
-----------------------------------------------------------------------------

G:\v\svcoss.exe - deleted

=============================================================================
Total session statistics
=============================================================================
Objects scanned: 4
Infected objects found: 1
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Cured: 0
Deleted: 1
Renamed: 0
Moved: 0
Ignored: 0
Scan speed: 24 Kb/s
Scan time: 00:00:00
=============================================================================
tsiliang
发表于 2008-2-9 17:30:47 | 显示全部楼层
这种网址也太明显了
tracydk
发表于 2008-2-9 17:32:41 | 显示全部楼层
1.GIF
无尽藏海
发表于 2008-2-9 17:44:08 | 显示全部楼层
F:\virus\svcoss.exe - probably a variant of Win32/Genetik trojan
冷冷
发表于 2008-2-9 17:48:28 | 显示全部楼层
IK
I:\virus\svcoss.exe - Signature 'Trojan-Spy.Win32.Delf.PG' found

        1 File scanned
          (0 Archives with 0 files)
        1 Signature found
        0 Suspect code-parts found
        Used time: 0:00.188
dikex
发表于 2008-2-9 17:55:40 | 显示全部楼层
还有个vip.js呢

Log is generated by FreShow.
    [script]http://tv.mymtv335.cn/vip.js
        [frame]http://tv.mymtv335.cn/real.gif
            [object]http://tv.mymtv335.cn/svcoss.exe
        [frame]http://tv.mymtv335.cn/xpkk.gif
            [object]http://tv.mymtv335.cn/svcoss.exe
        [frame]http://tv.mymtv335.cn/baidu.gif
            [object]http://tv.mymtv335.cn/svcoss.cab
        [frame]http://tv.mymtv335.cn/tok.gif
            [object]http://tv.mymtv335.cn/svcoss.exe
        [frame]http://tv.mymtv335.cn/xplz.gif
            [object]http://tv.mymtv335.cn/svcoss.exe
        [frame]http://tv.mymtv335.cn/xpbf.gif
            [object]http://tv.mymtv335.cn/svcoss.exe
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-15 01:54 , Processed in 0.130418 second(s), 20 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表