查看: 3315|回复: 19
收起左侧

[病毒样本] 毒包又来了

[复制链接]
1993yixin
发表于 2008-2-16 22:00:56 | 显示全部楼层 |阅读模式
看错了,只有30多个

[ 本帖最后由 1993yixin 于 2008-2-16 22:10 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
allinwonderi
发表于 2008-2-16 22:02:32 | 显示全部楼层
[Scanning : C:\Test]


C:\Test\WINDOWS.rar<RAR>:~tmp7143.exe <- Heur.Win32.I : No action
C:\Test\WINDOWS.rar<RAR>:~tmp7143.exe<UPack>:~tmp7143.exe<DLLRES>:res0.exe <- Trojan.Downloader.Agent.Iop : No action
C:\Test\WINDOWS.rar<RAR>:IGB_WD_1029.exe <- Heur.Win32.I : No action
C:\Test\WINDOWS.rar<RAR>:WinForm.exE<UPack>:WinForm.exE<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qyv : No action
C:\Test\WINDOWS.rar<RAR>:cuhad.dll<UPack>:cuhad.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qxo : No action
C:\Test\WINDOWS.rar<RAR>:cuhad.dll<UPack>:cuhad.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Qzd : No action
C:\Test\WINDOWS.rar<RAR>:cuhad.dll<UPack>:cuhad.dll<DLLRES>:res2.exe <- Trojan.Psw.Onlinegames.Rds : No action
C:\Test\WINDOWS.rar<RAR>:HHHCompress.dll <- Trojan.Psw.Nilage.Bya : No action
C:\Test\WINDOWS.rar<RAR>:HHHCompress.dll<UPX>:HHHCompress.dll<DLLRES>:DATEINFO0.exe <- Trojan.Psw.Nilage.Bxy : No action
C:\Test\WINDOWS.rar<RAR>:HHHCompress.dll<UPX>:HHHCompress.dll<DLLRES>:DATEINFO0.exe<UPack>:DATEINFO0.exe <- Trojan.Psw.Nilage.Bxy : No action
C:\Test\WINDOWS.rar<RAR>:hjiq.dll<UPack>:hjiq.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qiv : No action
C:\Test\WINDOWS.rar<RAR>:hjiq.dll<UPack>:hjiq.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Qiv : No action
C:\Test\WINDOWS.rar<RAR>:knaixnauhuoyizqq.dll <- Trojan.Psw.Onlinegames.Qos : No action
C:\Test\WINDOWS.rar<RAR>:knaixnauhuoyizqq.dll<UPack>:knaixnauhuoyizqq.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qoz : No action
C:\Test\WINDOWS.rar<RAR>:knaixnauhuoyizqq.dll<UPack>:knaixnauhuoyizqq.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Qoz : No action
C:\Test\WINDOWS.rar<RAR>:mshxxbb32.dll<FSG>:mshxxbb32.dll<DLLRES>:DATEINFO0.exe <- Trojan.Psw.Nilage.Byy : No action
C:\Test\WINDOWS.rar<RAR>:mswmkkk32.dll<UPX>:mswmkkk32.dll<DLLRES>:DATEINFO0.exe <- Trojan.Psw.Onlinegames.Qzh : No action
C:\Test\WINDOWS.rar<RAR>:naijihzeuyouhz.dll<UPack>:naijihzeuyouhz.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qha : No action
C:\Test\WINDOWS.rar<RAR>:naijihzeuyouhz.dll<UPack>:naijihzeuyouhz.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Pzi : No action
C:\Test\WINDOWS.rar<RAR>:naijoad.dll<UPack>:naijoad.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qha : No action
C:\Test\WINDOWS.rar<RAR>:naijoad.dll<UPack>:naijoad.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Pzi : No action
C:\Test\WINDOWS.rar<RAR>:niluw.dll<UPack>:niluw.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qha : No action
C:\Test\WINDOWS.rar<RAR>:niluw.dll<UPack>:niluw.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Pzi : No action
C:\Test\WINDOWS.rar<RAR>:oqnauhc.dll <- Trojan.Psw.Onlinegames.Rch : No action
C:\Test\WINDOWS.rar<RAR>:qlihzouhgnfe.dll <- Trojan.Psw.Onlinegames.Rdo : No action
C:\Test\WINDOWS.rar<RAR>:sauhad.dll<UPack>:sauhad.dll<DLLRES>:res2.exe <- Trojan.Psw.Onlinegames.Rds : No action
C:\Test\WINDOWS.rar<RAR>:shiiqpozx.dll <- Trojan.Psw.Nilage.Byy : No action
C:\Test\WINDOWS.rar<RAR>:tsqc.dll<UPack>:tsqc.dll<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Qnq : No action
C:\Test\WINDOWS.rar<RAR>:tsqc.dll<UPack>:tsqc.dll<DLLRES>:res1.exe <- Trojan.Psw.Onlinegames.Qnr : No action
C:\Test\WINDOWS.rar<RAR>:vjhdfytwm.dll <- Trojan.Psw.Onlinegames.Qzh : No action
C:\Test\WINDOWS.rar<RAR>:WinForm.dll <- Trojan.Psw.Onlinegames.Qyv : No action
C:\Test\WINDOWS.rar<RAR>:xjxr.dll<UPack>:xjxr.dll<DLLRES>:res2.exe <- Trojan.Psw.Onlinegames.Rds : No action
C:\Test\WINDOWS.rar<RAR>:yoljiebwow.dll <- Trojan.Psw.Nilage.Bxy : No action
C:\Test\WINDOWS.rar<RAR>:yoljiebwow.dll<UPack>:yoljiebwow.dll <- Trojan.Psw.Nilage.Bxy : No action
C:\Test\WINDOWS.rar<RAR>:msepion.sys <- Trojan.Psw.Onlinegames.Rds : No action



Scanned objects : 129

Infected objects : 35
woai_jolin
发表于 2008-2-16 22:03:04 | 显示全部楼层
"Scan ""Shell extension scan"" was finished."
"Infections found:";"33"
"Infected objects removed or healed";"0"
"Not removed or healed.";"33"
"Spyware found:";"0"
"Spyware removed:";"0"
"Not removed:";"0"
"Warnings count:";"0"
"Information count:";"0"
"Scan started:";"2008年2月16日, 21:59:57"
"Total object scanned:";"52"
"Time needed:";"27 second(s) "
"Errors encountered:";"0"

"Infections"
"File";"Infection";"Result"
"G:\v\WINDOWS.rar:\WINDOWS\~tmp7143.exe";"Trojan horse Downloader.Agent.14.AW";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\dxygzwdk.exe";"Trojan horse PSW.OnlineGames.ADBU";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\IGB_WD_1029.exe";"Trojan horse PSW.OnlineGames.AEEB";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\mpfuszccp.exe";"Trojan horse PSW.OnlineGames.ADBU";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\upxdnd.exe";"Trojan horse PSW.OnlineGames.ADYT";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\WinForm.exE";"Virus found PSW.OnlineGames";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\cuhad.dll";"Trojan horse PSW.OnlineGames.AECR";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\gnolnait.dll";"Trojan horse PSW.Generic5.AJWA";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\HHHCompress.dll";"Virus found Win32/PEMask";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\hjiq.dll";"Trojan horse PSW.Generic5.AIJT";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\IGB_WD_1029.dll";"Trojan horse PSW.Generic5.AJWR";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\knaixnauhuoyizqq.dll";"Trojan horse PSW.OnlineGames.ADNB";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\ldzxwymg.dll";"Trojan horse PSW.OnlineGames.ADBV";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\mshxxbb32.dll";"Virus found Win32/PEMask";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\mswmkkk32.dll";"Virus found Win32/PEMask";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\naijihzeuyouhz.dll";"Trojan horse PSW.Generic5.AIHY";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\naijoad.dll";"Trojan horse PSW.Generic5.AIFH";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\niluw.dll";"Trojan horse PSW.OnlineGames.ADBZ";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\oqnauhc.dll";"Trojan horse PSW.Generic5.AJWC";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\pahzij.dll";"Trojan horse PSW.OnlineGames.AECC";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\qlihzouhgnfe.dll";"Trojan horse PSW.Generic5.AJWF";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\sauhad.dll";"Trojan horse PSW.OnlineGames.AEDN";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\shiiqpozx.dll";"Virus found Win32/PEMask";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\sve.dll";"Trojan horse PSW.OnlineGames.AEBJ";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\tsqc.dll";"Trojan horse PSW.Generic5.AIPN";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\upxdnd.dll";"Trojan horse PSW.OnlineGames.ADYS";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\vhqq.dll";"Trojan horse PSW.Generic5.AJXH";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\vjhdfytwm.dll";"Virus found Win32/PEMask";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\WinForm.dll";"Trojan horse PSW.OnlineGames.ADRV";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\xjxr.dll";"Trojan horse PSW.OnlineGames.AECN";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\yoljiebwow.dll";"Virus found Win32/PEMask";"Infected"
"G:\v\WINDOWS.rar:\WINDOWS\system32\msepion.sys";"Trojan horse PSW.OnlineGames.ADYL";"Infected"
"G:\v\WINDOWS.rar";"Trojan horse Downloader.Agent.14.AW";"Infected"
无尽藏海
发表于 2008-2-16 22:03:05 | 显示全部楼层
Scan Log
Version of virus signature database: 2880 (20080215)
Date: 2008-2-16  Time: 22:02:26
Scanned disks, folders and files: F:\virus\WINDOWS.rar
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\~tmp7143.exe - Win32/TrojanDownloader.Agent.NVH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\dxygzwdk.exe - a variant of Win32/PSW.OnLineGames.NLY trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\IGB_WD_1029.exe - Win32/PSW.OnLineGames.PBQ trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\mpfuszccp.exe - a variant of Win32/PSW.OnLineGames.NLY trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\upxdnd.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\WinForm.exE - a variant of Win32/PSW.OnLineGames.NFL trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\cuhad.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\gnolnait.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\HHHCompress.dll - a variant of Win32/PSW.OnLineGames.GJV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\hjiq.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\IGB_WD_1029.dll - Win32/PSW.OnLineGames.PBQ trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\knaixnauhuoyizqq.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\ldzxwymg.dll - a variant of Win32/PSW.OnLineGames.NLY trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\mshxxbb32.dll - a variant of Win32/PSW.OnLineGames.GJV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\mswmkkk32.dll - a variant of Win32/PSW.OnLineGames.GJV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\naijihzeuyouhz.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\naijoad.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\niluw.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\oqnauhc.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\pahzij.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\qlihzouhgnfe.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\sauhad.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\shiiqpozx.dll - Win32/PSW.OnLineGames.GJV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\sve.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\tsqc.dll - Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\upxdnd.dll - Win32/PSW.OnLineGames.HCV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\vhqq.dll - a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\vjhdfytwm.dll - probably a variant of Win32/PSW.OnLineGames.GJV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\WinForm.dll - Win32/PSW.OnLineGames.NFL trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\xjxr.dll - probably a variant of Win32/PSW.OnLineGames.NLH trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\yoljiebwow.dll - Win32/PSW.OnLineGames.GJV trojan
F:\virus\WINDOWS.rar &raquo; RAR &raquo; WINDOWS\system32\msepion.sys - Win32/PSW.OnLineGames.NFC trojan
Number of scanned objects: 51
Number of threats found: 32
Time of completion: 22:02:38  Total scanning time: 12 sec (00:00:12)
wangjay1980
发表于 2008-2-16 22:05:49 | 显示全部楼层
31                剩    2个 (其中一个可能是微软的) TO KL

detected: Trojan program Trojan-PSW.Win32.OnLineGames.qpe        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\~tmp7143.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qss        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\dxygzwdk.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rdz        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\IGB_WD_1029.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qss        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\mpfuszccp.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qox        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\upxdnd.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qpw        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\WinForm.exE//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rgb        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\cuhad.dll//UPack
detected: Trojan program Trojan-PSW.Win32.Nilage.bya        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\HHHCompress.dll//PE_Patch.UPX//UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qiw        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\hjiq.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rdy        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\IGB_WD_1029.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qos        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\knaixnauhuoyizqq.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qsy        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\ldzxwymg.dll//UPack
detected: Trojan program Trojan.Win32.Pakes.bzp        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\mshxxbb32.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qzh        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\mswmkkk32.dll//PE_Patch.UPX//UPX
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qis        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\naijihzeuyouhz.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qit        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\naijoad.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qml        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\niluw.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rch        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\oqnauhc.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rft        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\pahzij.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rdo        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\qlihzouhgnfe.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rcg        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\sauhad.dll//UPack
detected: Trojan program Trojan-PSW.Win32.Nilage.byy        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\shiiqpozx.dll//UPack//PE_Patch.MaskPE
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rcv        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\sve.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qxu        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\tsqc.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qoh        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\upxdnd.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rfv        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\vhqq.dll//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qzh        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\vjhdfytwm.dll//UPack//PE_Patch.MaskPE
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qyv        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\WinForm.dll
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rfm        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\xjxr.dll//UPack
detected: Trojan program Trojan-PSW.Win32.Nilage.bxy        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\yoljiebwow.dll//UPack//PE_Patch.MaskPE
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rfd        File: C:\Documents and Settings\Owner\×&Agrave;&Atilde;&aelig;\WINDOWS.rar/WINDOWS\system32\msepion.sys

[ 本帖最后由 wangjay1980 于 2008-2-16 22:10 编辑 ]
hshhua01
发表于 2008-2-16 22:07:06 | 显示全部楼层
红伞33

[ 本帖最后由 hshhua01 于 2008-2-16 22:08 编辑 ]
无尽藏海
发表于 2008-2-16 22:08:26 | 显示全部楼层
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\~tmp7143.exe->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\~tmp7143.exe->(UPack)
[Found possible security risk]         <W32/Heuristic-114!Eldorado (damaged, not disinfectable)>        F:\virus\WINDOWS2\WINDOWS\dxygzwdk.exe->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\dxygzwdk.exe->(UPack)
[Found security risk]         <W32/Agent.M.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\IGB_WD_1029.exe->exefile->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\IGB_WD_1029.exe->exefile->(UPack)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\cuhad.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\cuhad.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\gnolnait.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\gnolnait.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\hjiq.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\hjiq.dll->(UPack)
[Found security risk]         <W32/Agent.M.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\IGB_WD_1029.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\IGB_WD_1029.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\knaixnauhuoyizqq.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\knaixnauhuoyizqq.dll->(UPack)
[Found security risk]         <W32/OnlineGames.B.gen!GSA (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\midimapcb.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\midimapcb.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\naijihzeuyouhz.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\naijihzeuyouhz.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\naijoad.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\naijoad.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\niluw.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\niluw.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\oqnauhc.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\oqnauhc.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\pahzij.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\pahzij.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\qlihzouhgnfe.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\qlihzouhgnfe.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\sauhad.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\sauhad.dll->(UPack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (damaged, not disinfectable)>        F:\virus\WINDOWS2\WINDOWS\system32\shiiqpozx.dll->(UPack)->(PE_Patch.MaskPE)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\shiiqpozx.dll->(UPack)->(PE_Patch.MaskPE)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\sve.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\sve.dll->(UPack)
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\tsqc.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\tsqc.dll->(UPack)
[Found security risk]         <W32/OnlineGames.C.gen!GSA (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\upxdnd.dll
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\upxdnd.dll
[Found security risk]         <W32/OnlineGames.Q.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\vhqq.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\vhqq.dll->(UPack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (damaged, not disinfectable)>        F:\virus\WINDOWS2\WINDOWS\system32\vjhdfytwm.dll->(UPack)->(PE_Patch.MaskPE)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\vjhdfytwm.dll->(UPack)->(PE_Patch.MaskPE)
[Found security risk]         <W32/OnlineGames.C.gen!GSA (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\WinForm.dll
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\WinForm.dll
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\xjxr.dll->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\xjxr.dll->(UPack)
[Found possible security risk]         <W32/Heuristic-162!Eldorado (damaged, not disinfectable)>        F:\virus\WINDOWS2\WINDOWS\system32\yoljiebwow.dll->(UPack)->(PE_Patch.MaskPE)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\yoljiebwow.dll->(UPack)->(PE_Patch.MaskPE)
[Found security risk]         <W32/OnlineGames.L.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\system32\msepion.sys
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\system32\msepion.sys
[Found possible security risk]         <W32/Heuristic-114!Eldorado (damaged, not disinfectable)>        F:\virus\WINDOWS2\WINDOWS\mpfuszccp.exe->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\mpfuszccp.exe->(UPack)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\upxdnd.exe
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\upxdnd.exe
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\WinForm.exE->(UPack)
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\WinForm.exE->(UPack)
[Found security risk]         <W32/Agent.M.gen!Eldorado (not disinfectable, generic)>        F:\virus\WINDOWS2\WINDOWS\ldzxwymg.dll
[Quarantined]        F:\virus\WINDOWS2\WINDOWS\ldzxwymg.dll

---------------------------------------------------------------------
Scan ended:        2008-2-16, 22:07:42
Duration:        0:00:09

Scan result:

Scanned files:                 51
Infected objects:         30
Disinfected objects:         0
Quarantined files:         30
wolffshen
发表于 2008-2-16 22:08:28 | 显示全部楼层
新的就4个,其他的都已经发过了的

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
悠柚
发表于 2008-2-16 22:08:46 | 显示全部楼层
McAfee+avast! 还剩了9个
悠柚
发表于 2008-2-16 22:09:58 | 显示全部楼层
最后红伞清理战场,还剩了2个文件
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-13 15:22 , Processed in 0.135799 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表