12
返回列表 发新帖
楼主: jimmyleo
收起左侧

[病毒样本] 28只

[复制链接]
mofunzone
发表于 2008-3-8 13:07:56 | 显示全部楼层
伞8全灭
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\S'
C:\Documents and Settings\Administrator\My Documents\S\
  2008-03-08 11.47.3907f7922635135fb2917a90be2b747494.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3909046b6609b9cb571ed51feadef85f84.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.sqz.2
      [NOTE]      The file was deleted!
  2008-03-08 11.47.390f9398576040f181762fe8759e4d5971.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3920fee6d7eb55881dd30964b7016b6a71.exe
    [0] Archive type: Runtime Packed
    --> Object
        [DETECTION] Is the Trojan horse TR/Onlinegames.rxt
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3935ef422bb8a22d8b4be8bc79bacb2ada.exe
    [0] Archive type: Runtime Packed
    --> Object
        [DETECTION] Is the Trojan horse TR/PSW.Online.agb.2
      [NOTE]      The file was deleted!
  2008-03-08 11.47.393a446354534239eabdd349b9c109d508.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.Online.olm.2
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.393b410d0e00cf06b7e903ca89901237e5.exe
    [0] Archive type: Runtime Packed
    --> Object
      [NOTE]      The file was deleted!
  2008-03-08 11.47.393c2d5e7cc0623e1aa8f247d773d9f7cb.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.soa.13
      [NOTE]      The file was deleted!
  2008-03-08 11.47.393ff52e15154b66829f3343f88438294f.exe
    [0] Archive type: Runtime Packed
    --> Object
        [DETECTION] Is the Trojan horse TR/Dldr.Agent.45056
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3942253a8c49ca04793d8c06cb5c712e14.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3942e897508573c2c4c792de018abb4e54.exe
    [0] Archive type: RSRC
    --> Object
        [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.rxos
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3945c719b307e028d7ed8ca80b0ce41d12.exe
      [DETECTION] Is the Trojan horse TR/PSW.QQpass.avg
      [NOTE]      The file was deleted!
  2008-03-08 11.47.395d900ac2c7812f73906012b492c4a780.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.Online.olm.2
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.395dd96a690a7b83564e5f0474466c86be.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.396d60b6d6bf502c5e7c57fd9c855c59ca.exe
    [0] Archive type: Runtime Packed
    --> Object
      [NOTE]      The file was deleted!
  2008-03-08 11.47.396f7ffda4c1fe8533481f654567d85b55.exe
      [DETECTION] Contains detection pattern of the dropper DR/PSW.OnLineGames.QZL.2
      [NOTE]      The file was deleted!
  2008-03-08 11.47.397952ea5e262d6a93f4af3850f4f8ac29.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.rxqj
            [WARNING]   Infected files in archives cannot be repaired!
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.sqz.1
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.397f5a731244199c7f29623cc1f106b6c4.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.8848
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3985ea3da6334c535ae2770cd202c24f4c.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.3992a777a144a337c32d074aea4d4341e9.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39bea51384e71159efd3a44e1848315f5e.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39c3be0ce69aa678a892b7b228a5e97055.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39cdcd7ebbb8b7395f66ba11498fe94b24.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39d8ab9b7ff1aa1c4f2a2f54c8568b23fb.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39e5628952fbcca5bd4857fbe29a39284c.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39e82dfa9913ef19f6a07539e5cbe33051.exe
      [DETECTION] Is the Trojan horse TR/Drop.Spy.Pca.A.1
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39f71e6a9e65e40e3730077d9233a7b261.exe
      [DETECTION] Is the Trojan horse TR/Proxy.Delf.CA
      [NOTE]      The file was deleted!
  2008-03-08 11.47.39fd33c6f169404dc9099ceef75d9f48e7.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
          [2] Archive type: Runtime Packed
          --> Object
              [DETECTION] Is the Trojan horse TR/PSW.OnLin.8918.A
              [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!


End of the scan: 2008年3月7日  21:07
Used time: 00:05 min

The scan has been done completely.

      1 Scanning directories
     28 Files were scanned
     27 viruses and/or unwanted programs were found
      2 Files were classified as suspicious:
     28 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      0 Archives were scanned
     13 Warnings
     28 Notes
kkgh
发表于 2008-3-8 14:39:55 | 显示全部楼层
瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Trojan.PSW.Win32.GamesOnline.oz
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.Win32.Undef.app   
病毒: Trojan.Win32.StartPage.mcy
病毒: Trojan.PSW.Win32.GameOL.min
病毒: Trojan.PSW.Win32.GamesOnline.pc
病毒: Trojan.PSW.Win32.GameOL.mhi
病毒: Trojan.PSW.Win32.GamesOnline.oe
病毒: Trojan.DL.Win32.Mnless.rq
病毒: Trojan.PSW.Win32.XYOnline.acc
病毒: Trojan.PSW.Win32.Agent.vsk
病毒: Trojan.PSW.Win32.GameOL.mhf
病毒: Trojan.PSW.Win32.XYOnline.acb

用户来源:互联网

软件版本:20.34.50

25个
微点卫士
发表于 2008-3-8 15:02:43 | 显示全部楼层
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39BEA51384E71159EFD3A44E1848315F5E.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\LAIXUHZ.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39D8AB9B7FF1AA1C4F2A2F54C8568B23FB.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\VHQQ.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39E82DFA9913EF19F6A07539E5CBE33051.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\PACKET.DLL
2) C:\WINDOWS.0\SYSTEM32\WANPACKET.DLL
3) C:\WINDOWS.0\SYSTEM32\WPCAP.DLL
4) C:\WINDOWS.0\SYSTEM32\DRIVERS\SVCHOST.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39F71E6A9E65E40E3730077D9233A7B261.EXE
修改注册表项:
HKCU\Software\Microsoft\Internet Explorer\Main\stArT paGe
是否阻止?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39FD33C6F169404DC9099CEEF75D9F48E7.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\SVE.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.393A446354534239EABDD349B9C109D508.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\ZADNEW.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39CDCD7EBBB8B7395F66BA11498FE94B24.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\WSOCKDRV32.EXE
2) C:\WINDOWS.0\SYSTEM32\WSOCKDRV32.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.397952EA5E262D6A93F4AF3850F4F8AC29.EXE
木马程序生成以下文件:
1) C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TMP3F.TMP
2) C:\WINDOWS.0\SYSTEM32\MSOSMHFP00.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3942253A8C49CA04793D8C06CB5C712E14.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\WSOCKDRV32.EXE
2) C:\WINDOWS.0\SYSTEM32\WSOCKDRV32.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3909046B6609B9CB571ED51FEADEF85F84.EXE
木马程序生成以下文件:
1) C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TMP41.TMP
2) C:\WINDOWS.0\SYSTEM32\MSOSDOHS00.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3992A777A144A337C32D074AEA4D4341E9.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\RSQQ.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3985EA3DA6334C535AE2770CD202C24F4C.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3945C719B307E028D7ED8CA80B0CE41D12.EXE
木马程序生成以下文件:
1) C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\WINSYS8K.SYS
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3942E897508573C2C4C792DE018ABB4E54.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\PAHZIJ.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3935EF422BB8A22D8B4BE8BC79BACB2ADA.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3920FEE6D7EB55881DD30964B7016B6A71.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\UPXDND.EXE
2) C:\WINDOWS.0\SYSTEM32\UPXDND.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.3907F7922635135FB2917A90BE2B747494.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\IJOUGIEMNAW.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.397F5A731244199C7F29623CC1F106B6C4.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.396F7FFDA4C1FE8533481F654567D85B55.EXE
木马程序生成以下文件:
1) C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\TMPF4.TMP
2) C:\WINDOWS.0\SYSTEM32\MSOSMHFP00.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.395DD96A690A7B83564E5F0474466C86BE.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\XJXR.DLL
2) C:\WINDOWS.0\SYSTEM32\MSEION.SYS
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.395D900AC2C7812F73906012B492C4A780.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.393FF52E15154B66829F3343F88438294F.EXE
木马程序生成以下文件:
1) C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\~XVID4812.TMP
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.393C2D5E7CC0623E1AA8F247D773D9F7CB.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\FFJACJAC1043.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.390F9398576040F181762FE8759E4D5971.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\SYSTEM32\EOHSOM.DLL
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39F71E6A9E65E40E3730077D9233A7B261.EXE
是否删除木马程序及其衍生物?
程序:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\S\2008-03-08 11.47.39E5628952FBCCA5BD4857FBE29A39284C.EXE
木马程序生成以下文件:
1) C:\WINDOWS.0\AVPSRV.EXE
2) C:\WINDOWS.0\SYSTEM32\AVPSRV.DLL
是否删除木马程序及其衍生物?

有2个没反应
挪威的冬天
发表于 2008-3-8 17:23:17 | 显示全部楼层
金山全杀

病毒        2008-03-08  17:25:46        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3942253a8c49ca04793d8c06cb5c712e14.exe        Win32.Troj.OnlineGamesT.e.94315        清除成功       
病毒        2008-03-08  17:25:46        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3909046b6609b9cb571ed51feadef85f84.exe        Win32.Troj.OnLineGames.ea.94208        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.397952ea5e262d6a93f4af3850f4f8ac29.exe        Win32.Troj.OnLineGames.ea.94208        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3992a777a144a337c32d074aea4d4341e9.exe        Win32.Troj.GamesHackT.gu.94304        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3985ea3da6334c535ae2770cd202c24f4c.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3945c719b307e028d7ed8ca80b0ce41d12.exe        Win32.PSWTroj.QQPass.108696        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3942e897508573c2c4c792de018abb4e54.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3935ef422bb8a22d8b4be8bc79bacb2ada.exe        Win32.Troj.MBER.a.15360        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3920fee6d7eb55881dd30964b7016b6a71.exe        Win32.Troj.OnlineGamesT.ty.98304        清除成功       
病毒        2008-03-08  17:25:45        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.3907f7922635135fb2917a90be2b747494.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:44        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.397f5a731244199c7f29623cc1f106b6c4.exe        Win32.Troj.DownloaderT.to.15360        清除成功       
病毒        2008-03-08  17:25:44        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.396f7ffda4c1fe8533481f654567d85b55.exe        Win32.Troj.OnLineGamesT.ax.94208        清除成功       
病毒        2008-03-08  17:25:44        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.396d60b6d6bf502c5e7c57fd9c855c59ca.exe        Win32.Packed.MaskPE        清除成功       
病毒        2008-03-08  17:25:44        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.395dd96a690a7b83564e5f0474466c86be.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:44        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.395d900ac2c7812f73906012b492c4a780.exe        Win32.Troj.OnlineGamesT.zy.32923        清除成功       
病毒        2008-03-08  17:25:44        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.393ff52e15154b66829f3343f88438294f.exe        Win32.Troj.DwonLoaderT.xy.133203        清除成功       
病毒        2008-03-08  17:25:43        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.393c2d5e7cc0623e1aa8f247d773d9f7cb.exe        Win32.Troj.OnlineGamesT.af.57344        清除成功       
病毒        2008-03-08  17:25:43        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.393b410d0e00cf06b7e903ca89901237e5.exe        Win32.Troj.OnlineGamesT.oy.61440        清除成功       
病毒        2008-03-08  17:25:43        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.393a446354534239eabdd349b9c109d508.exe        Win32.Troj.OnlineGamesT.zy.32923        清除成功       
病毒        2008-03-08  17:25:43        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.390f9398576040f181762fe8759e4d5971.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:42        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39fd33c6f169404dc9099ceef75d9f48e7.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:42        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39f71e6a9e65e40e3730077d9233a7b261.exe        Win32.Packed.MaskPE        清除成功       
病毒        2008-03-08  17:25:42        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39e5628952fbcca5bd4857fbe29a39284c.exe        Win32.Troj.OnlineGamesT.ty.98304        清除成功       
病毒        2008-03-08  17:25:42        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39e82dfa9913ef19f6a07539e5cbe33051.exe        Win32.Hack.MaskPET.a.36864        清除成功       
病毒        2008-03-08  17:25:42        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39d8ab9b7ff1aa1c4f2a2f54c8568b23fb.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:41        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39cdcd7ebbb8b7395f66ba11498fe94b24.exe        Win32.Troj.OnlineGamesT.e.94315        清除成功       
病毒        2008-03-08  17:25:41        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39c3be0ce69aa678a892b7b228a5e97055.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-08  17:25:41        D:\Documents and Settings\Norway's Winter\桌面\s.rar\2008-03-08 11.47.39bea51384e71159efd3a44e1848315f5e.exe        Win32.Troj.OnlineGameT.am.107664        清除成功
cruiyong
发表于 2008-3-8 17:45:34 | 显示全部楼层
NOD32  26个

F:\S.rar > RAR > 2008-03-08 11.47.39bea51384e71159efd3a44e1848315f5e.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.39c3be0ce69aa678a892b7b228a5e97055.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.39cdcd7ebbb8b7395f66ba11498fe94b24.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.39d8ab9b7ff1aa1c4f2a2f54c8568b23fb.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.39e82dfa9913ef19f6a07539e5cbe33051.exe - Win32/Delf.CSN 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.39e5628952fbcca5bd4857fbe29a39284c.exe - Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.39fd33c6f169404dc9099ceef75d9f48e7.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.390f9398576040f181762fe8759e4d5971.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.393a446354534239eabdd349b9c109d508.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.393b410d0e00cf06b7e903ca89901237e5.exe - Win32/PSW.OnLineGames.NML 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.393c2d5e7cc0623e1aa8f247d773d9f7cb.exe - Win32/PSW.OnLineGames.PBQ 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.393ff52e15154b66829f3343f88438294f.exe - 可能是 Win32/Jalous 蠕虫 的变种
F:\S.rar > RAR > 2008-03-08 11.47.395d900ac2c7812f73906012b492c4a780.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.395dd96a690a7b83564e5f0474466c86be.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.396f7ffda4c1fe8533481f654567d85b55.exe - Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.397f5a731244199c7f29623cc1f106b6c4.exe - Win32/TrojanDownloader.Small.NZT 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.3907f7922635135fb2917a90be2b747494.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.3920fee6d7eb55881dd30964b7016b6a71.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.3935ef422bb8a22d8b4be8bc79bacb2ada.exe - Win32/PSW.Agent.NGZ 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.3942e897508573c2c4c792de018abb4e54.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.3945c719b307e028d7ed8ca80b0ce41d12.exe - Win32/PSW.QQPass.AVG 特洛伊木马
F:\S.rar > RAR > 2008-03-08 11.47.3985ea3da6334c535ae2770cd202c24f4c.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.3992a777a144a337c32d074aea4d4341e9.exe - Win32/PSW.OnLineGames.MUG 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.397952ea5e262d6a93f4af3850f4f8ac29.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.3909046b6609b9cb571ed51feadef85f84.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
F:\S.rar > RAR > 2008-03-08 11.47.3942253a8c49ca04793d8c06cb5c712e14.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
yeandwo
发表于 2008-3-8 17:51:00 | 显示全部楼层
江民 26
qigang
发表于 2008-3-8 22:04:29 | 显示全部楼层

63/26

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.GamesOnline.oz
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.Win32.Undef.app   
病毒: Trojan.Win32.StartPage.mcy
病毒: Trojan.PSW.Win32.GameOL.min
病毒: Trojan.PSW.Win32.GamesOnline.pc
病毒: Trojan.PSW.Win32.GameOL.mhi
病毒: Trojan.PSW.Win32.GamesOnline.oe
病毒: Trojan.DL.Win32.Mnless.rq
病毒: Trojan.PSW.Win32.XYOnline.acc
病毒: Trojan.PSW.Win32.Agent.vsk
病毒: Trojan.PSW.Win32.GameOL.mhf
病毒: Trojan.PSW.Win32.GamesOnline.qc
病毒: Trojan.PSW.Win32.XYOnline.acb

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.34.52
woai_jolin
发表于 2008-3-9 00:10:47 | 显示全部楼层
全灭



===================================================================================================
On-demand scanner 7.0.0.10

NSE revision 5.91.10
nvcbin.def revision 5.90.00 of 2008/03/07 16:10:27 (1356064 variants)
nvcmacro.def revision 5.90.00 of 2008/02/04 16:47:24 (20430 variants)
Total number of variants: 1376494
===================================================================================================

       Time  Filename                                                     Virus name
---------------------------------------------------------------------------------------------------

- Scanning drive: G:\
- Scanning system areas of drive: G:\
- Scanning files matching: G:\v\S.rar
       15 ms G:\v\S.rar : 2008-03-08 11.47.39bea51384e71159efd3a44e1848315f5e.exe Trojan W32/OnLineGames.ALKJ ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39c3be0ce69aa678a892b7b228a5e97055.exe Trojan W32/OnLineGames.ALIT ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39cdcd7ebbb8b7395f66ba11498fe94b24.exe Virus W32/Viking.EQ ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39d8ab9b7ff1aa1c4f2a2f54c8568b23fb.exe Trojan W32/OnLineGames.ALLE ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39e82dfa9913ef19f6a07539e5cbe33051.exe Virus W32/Delf.dam ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39e5628952fbcca5bd4857fbe29a39284c.exe Security Risk W32/Suspicious_U.dam ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39f71e6a9e65e40e3730077d9233a7b261.exe Backdoor W32/Delf.BINS ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.39fd33c6f169404dc9099ceef75d9f48e7.exe Trojan W32/OnLineGames.ALHQ ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.390f9398576040f181762fe8759e4d5971.exe Trojan W32/OnLineGames.ALNG ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.393a446354534239eabdd349b9c109d508.exe Trojan W32/OnLineGames.ALTB ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.393b410d0e00cf06b7e903ca89901237e5.exe Security Risk W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.393c2d5e7cc0623e1aa8f247d773d9f7cb.exe Trojan W32/Agent.EKBI ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.393ff52e15154b66829f3343f88438294f.exe Security Risk W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.395d900ac2c7812f73906012b492c4a780.exe Security Risk W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.395dd96a690a7b83564e5f0474466c86be.exe Trojan W32/OnLineGames.ALIP ()
- File G:\v\S.rar quarantined.
      297 ms G:\v\S.rar : 2008-03-08 11.47.396d60b6d6bf502c5e7c57fd9c855c59ca.exe Security Risk Suspicious_F.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.396f7ffda4c1fe8533481f654567d85b55.exe Security Risk W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
       16 ms G:\v\S.rar : 2008-03-08 11.47.397f5a731244199c7f29623cc1f106b6c4.exe Trojan W32/Agent.DXJT ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3907f7922635135fb2917a90be2b747494.exe Trojan W32/OnLineGames.ALIT ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3920fee6d7eb55881dd30964b7016b6a71.exe Virus W32/Viking.EQ ()
- File G:\v\S.rar quarantined.
      688 ms G:\v\S.rar : 2008-03-08 11.47.3935ef422bb8a22d8b4be8bc79bacb2ada.exe Virus W32/Malware ()
- File G:\v\S.rar quarantined.
      171 ms G:\v\S.rar : 2008-03-08 11.47.3942e897508573c2c4c792de018abb4e54.exe Virus W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3945c719b307e028d7ed8ca80b0ce41d12.exe Trojan W32/QQPass.HRK ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3985ea3da6334c535ae2770cd202c24f4c.exe Trojan W32/OnLineGames.ALLI ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3992a777a144a337c32d074aea4d4341e9.exe Trojan W32/OnLineGames.ALRZ ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.397952ea5e262d6a93f4af3850f4f8ac29.exe Security Risk W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3909046b6609b9cb571ed51feadef85f84.exe Security Risk W32/Suspicious_U.gen ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar : 2008-03-08 11.47.3942253a8c49ca04793d8c06cb5c712e14.exe Virus W32/Viking.EQ ()
- File G:\v\S.rar quarantined.
        0 ms G:\v\S.rar                                                  
        0 ms G:\v\S.rar:Zone.Identifier                                 

===================================================================================================

The scanning started: 2008/03/09 00:10:32
               ended: 2008/03/09 00:10:35
Logged on as        : Jason
on hostname         : JASON-PC

Scanning results:
   Total number of files found..............................:      30
   Number of files scanned..................................:      30
   Number of files/directories skipped due to exclude list..:       0
   Number of files that could not be opened.................:       0
   Number of archive files unpacked.........................:       1
   Number of archive files not unpacked.....................:       0
   Number of infections.....................................:      28

Copyright (c) 1993-2007 Norman ASA.
303898443
发表于 2008-3-9 13:42:58 | 显示全部楼层
卡巴325扫出27,全删。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-6 03:16 , Processed in 0.097970 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表