12
返回列表 发新帖
楼主: zzh161
收起左侧

[病毒样本] 一包

[复制链接]
woai_jolin
发表于 2008-2-16 13:04:53 | 显示全部楼层
Scan Log
Version of virus signature database: 2880 (20080215)
Date: 2008/2/16  Time: 13:02:09
Scanned disks, folders and files: G:\v\down.rar
G:\v\down.rar » RAR » 11\a1.exe » FSG v2.0 - is OK
G:\v\down.rar » RAR » 11\a11.exe - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a12.exe - Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a13.exe - Win32/PSW.WOW.WU trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a14.exe - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a16.exe - a variant of Win32/PSW.OnLineGames.GJV trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a17.exe - is OK
G:\v\down.rar » RAR » 11\a18.exe - Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a19.exe - Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a2.exe - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a20.exe - Win32/Delf.CSN trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a22.exe - a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a23.exe - Win32/PSW.OnLineGames.FDY trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a24.exe - a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a25.exe » FSG v2.0 - is OK
G:\v\down.rar » RAR » 11\a3.exe - Win32/PSW.Agent.NGZ trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a4.exe - a variant of Win32/PSW.OnLineGames.NMN trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a5.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a6.exe - Win32/PSW.QQPass.AUQ trojan - was a part of the deleted object
G:\v\down.rar » RAR » 11\a9.exe - a variant of Win32/PSW.OnLineGames.NFL trojan - was a part of the deleted object
Number of scanned objects: 21
Number of threats found: 17
Time of completion: 13:02:13  Total scanning time: 4 sec (00:00:04)
zwl2828
发表于 2008-2-16 14:36:08 | 显示全部楼层

Avira AntiVir

C:\Users\Wesley\Downloads\down.rar
  [0] Archive type: RAR
  --> 11\a1.exe
      [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Hupigon.aqur Backdoor server programs
  --> 11\a11.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.QYF.1
  --> 11\a12.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.QYF.4
  --> 11\a13.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> 11\a14.exe
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> 11\a16.exe
      [DETECTION] Is the Trojan horse TR/PSW.Wow.ajn
  --> 11\a17.exe
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> 11\a18.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.116
  --> 11\a19.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.prw.3
  --> 11\a2.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.qau
  --> 11\a20.exe
      [DETECTION] Is the Trojan horse TR/Proxy.Delf.CA
  --> 11\a22.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.157
  --> 11\a23.exe
      [DETECTION] Is the Trojan horse TR/WuDisable.B
  --> 11\a24.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.256
  --> 11\a25.exe
      [DETECTION] Is the Trojan horse TR/Proxy.Delf.CA
  --> 11\a3.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.x
  --> 11\a4.exe
      [DETECTION] Is the Trojan horse TR/PSW.Delf.anb.1
  --> 11\a5.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.175
  --> 11\a6.exe
      [DETECTION] Is the Trojan horse TR/PSW.QQpass.auq
  --> 11\a9.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ppm.1
挪威的冬天
发表于 2008-2-16 14:42:36 | 显示全部楼层
信息 2008-02-16  14:42:05 您此次查毒共查出16个病毒以及危险代码   
信息 2008-02-16  14:42:05 您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件38个   
信息 2008-02-16  14:42:05 金山毒霸主程序查毒过程结束,查毒方式:命令行查毒   
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a9.exe Win32.Troj.OnlineGamesT.ty.98304 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a5.exe Win32.Troj.OnlineGamesT.ky.151552 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a4.exe Win32.PSWTroj.Delf.110592 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a3.exe Win32.PSWTroj.Agent.4055 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a25.exe Win32.Packed.MaskPE 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a24.exe Win32.Troj.OnlineGamesT.ty.98304 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a23.exe Win32.Troj.AgentT.fm.14452 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a22.exe Win32.Troj.OnlineGamesT.ky.151552 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a20.exe Win32.Hack.MaskPET.a.36864 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a2.exe Win32.Troj.OnlineGamesT.nr.37008 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a19.exe Win32.Troj.OnlineGamesT.nr.37008 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a18.exe Win32.Troj.OnlineGamesT.bo.11680 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a17.exe Win32.PSWTroj.GameOL.126976 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a16.exe Win32.PSWTroj.Agent.81920 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a13.exe Win32.Troj.LmirT.by.9900 跳过,未处理
病毒 2008-02-16  14:42:05 C:\Users\挪威的冬天\Desktop\down.rar\11\a1.exe Win32.Packed.MaskPE 跳过,未处理
挪威的冬天
发表于 2008-2-16 14:45:06 | 显示全部楼层
好像有人发过了
冷冷
发表于 2008-2-16 16:32:09 | 显示全部楼层
蜘蛛 剩1个

a1.exe;I:\virus\11;Trojan.BadDate;;
a11.exe;I:\virus\11;Trojan.PWS.Gamania.7505;;
a12.exe;I:\virus\11;Trojan.PWS.Gamania.7505;;
a13.exe;I:\virus\11;Trojan.PWS.Legmir;;
a14.exe;I:\virus\11;Trojan.PWS.Gamania.7505;;
a16.exe;I:\virus\11;Trojan.MulDrop.10524;;
a17.exe;I:\virus\11;Trojan.PWS.Wsgame.2984;;
a18.exe;I:\virus\11;Trojan.PWS.Wsgame.2787;;
a19.exe;I:\virus\11;Trojan.PWS.Wsgame.3196;;
a2.exe;I:\virus\11;Trojan.PWS.Wsgame.3013;;
a20.exe\data001;I:\virus\11\a20.exe;Trojan.Sniff;;
a20.exe;I:\virus\11;发现压缩文件中有被感染的对象;;
a22.exe;I:\virus\11;Trojan.PWS.Wsgame.2968;;
a23.exe;I:\virus\11;Trojan.PWS.Gamania.6950;;
a24.exe;I:\virus\11;Trojan.PWS.Wsgame.3147;;
a3.exe;I:\virus\11;Trojan.MulDrop.10903;;
a4.exe;I:\virus\11;Trojan.PWS.Gamania.6951;;
a5.exe;I:\virus\11;Trojan.PWS.Wsgame.2986;;
a6.exe;I:\virus\11;Trojan.PWS.Qqpass.885;;
a9.exe;I:\virus\11;Trojan.PWS.Wsgame.3149;;
qigang
发表于 2008-2-16 21:23:45 | 显示全部楼层

50/21

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.Win32.Undef.byj   
病毒: Trojan.PSW.Win32.GameOL.lvx
病毒: Trojan.PSW.Win32.XYOnline.aay
病毒: Trojan.PSW.Win32.GamesOnline.fz
病毒: Trojan.PSW.Win32.Agent.vrp
病毒: Trojan.PSW.Win32.GameOL.lmd
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.XYOnline.abc
病毒: Trojan.PSW.Win32.GameOL.llb
病毒: Trojan.Win32.Undef.app   
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.QQFO.j  
病毒: Trojan.PSW.Win32.QQGame.GEN
病毒: Trojan.Win32.StartPage.mcy
病毒: Trojan.PSW.Win32.XYOnline.abe
病毒: Trojan.PSW.Win32.XYOnline.abe
病毒: Trojan.PSW.Win32.AskTao.gu
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.QQPass.GEN

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.31.50
woai_jolin
发表于 2008-2-16 21:25:30 | 显示全部楼层
"Scan ""Shell extension scan"" was finished."
"Infections found:";"21"
"Infected objects removed or healed";"21"
"Not removed or healed.";"0"
"Spyware found:";"0"
"Spyware removed:";"0"
"Not removed:";"0"
"Warnings count:";"0"
"Information count:";"0"
"Scan started:";"2008年2月16日, 21:22:30"
"Total object scanned:";"21"
"Time needed:";"16 second(s) "
"Errors encountered:";"0"

"Infections"
"File";"Infection";"Result"
"G:\v\down.rar:\11\a1.exe";"Trojan horse BackDoor.Hupigon3.AKOR";"Moved to Virus Vault"
"G:\v\down.rar:\11\a11.exe";"Trojan horse PSW.OnlineGames.AEBW";"Moved to Virus Vault"
"G:\v\down.rar:\11\a12.exe";"Trojan horse PSW.OnlineGames.AEAI";"Moved to Virus Vault"
"G:\v\down.rar:\11\a13.exe";"Trojan horse PSW.Legendmir.JLO";"Moved to Virus Vault"
"G:\v\down.rar:\11\a14.exe";"Trojan horse PSW.OnlineGames.AEDC";"Moved to Virus Vault"
"G:\v\down.rar:\11\a16.exe";"Virus found Win32/PEMask";"Moved to Virus Vault"
"G:\v\down.rar:\11\a17.exe";"Virus found Win32/Heur";"Moved to Virus Vault"
"G:\v\down.rar:\11\a18.exe";"Virus found PSW.OnlineGames";"Moved to Virus Vault"
"G:\v\down.rar:\11\a19.exe";"Trojan horse PSW.OnlineGames.ACUJ";"Moved to Virus Vault"
"G:\v\down.rar:\11\a2.exe";"Trojan horse PSW.OnlineGames.ACEI";"Moved to Virus Vault"
"G:\v\down.rar:\11\a20.exe";"Trojan horse Delf.DTZ";"Moved to Virus Vault"
"G:\v\down.rar:\11\a22.exe";"Virus found PSW.OnlineGames";"Moved to Virus Vault"
"G:\v\down.rar:\11\a23.exe";"Trojan horse PSW.OnlineGames.ABIY";"Moved to Virus Vault"
"G:\v\down.rar:\11\a24.exe";"Virus found PSW.OnlineGames";"Moved to Virus Vault"
"G:\v\down.rar:\11\a25.exe";"Trojan horse Proxy.XTQ";"Moved to Virus Vault"
"G:\v\down.rar:\11\a3.exe";"Trojan horse PSW.Agent.ROK";"Moved to Virus Vault"
"G:\v\down.rar:\11\a4.exe";"Trojan horse PSW.Legendmir.JIG";"Moved to Virus Vault"
"G:\v\down.rar:\11\a5.exe";"Trojan horse PSW.OnlineGames.ACCD";"Moved to Virus Vault"
"G:\v\down.rar:\11\a6.exe";"Trojan horse PSW.Generic5.AJVC";"Moved to Virus Vault"
"G:\v\down.rar:\11\a9.exe";"Trojan horse Generic9.AUTY";"Moved to Virus Vault"
"G:\v\down.rar";"Trojan horse BackDoor.Hupigon3.AKOR";"Moved to Virus Vault"
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-13 06:02 , Processed in 1.517580 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表