查看: 1902|回复: 9
收起左侧

[病毒样本] 下载者-16个

[复制链接]
冷冷
发表于 2008-3-13 22:55:05 | 显示全部楼层 |阅读模式
htp://123.wwwwool.cn/update.txt
[MAIN]
VERSION=2008-2-3
[URL]
1=htp://222.73.247.201/mh.exe
2=htp://222.73.247.201/qj.exe
3=htp://222.73.247.201/tl.exe
4=htp://222.73.247.202/dh3.exe
5=htp://222.73.247.202/huaxia.exe
6=htp://222.73.247.202/qqsg.exe
7=htp://222.73.254.67/my.exe
8=htp://222.73.254.67/fh.exe
9=htp://222.73.254.67/zyhx.exe
10=htp://61.129.45.132/zt.exe
11=htp://61.129.45.132/dh2.exe
12=htp://220.189.255.29/zy.exe
13=htp://220.189.255.29/wow.exe
14=htp://220.189.255.29/wl.exe
15=htp://220.189.255.29/wd.exe
16=htp://220.189.255.29/jh.exe

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
发表于 2008-3-13 23:03:29 | 显示全部楼层
16 TO KL
detected: Trojan program Trojan-PSW.Win32.OnLineGames.suq        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/zyhx.exe//UPack
detected: Trojan program Trojan.Win32.Vaklik.mn        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/dh2.exe//UPack//PE_Patch
detected: Trojan program Trojan.Win32.Vaklik.ot        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/dh3.exe//UPack
detected: Trojan program Trojan.Win32.Vaklik.ns        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/fh.exe//UPack//PE_Patch
detected: Trojan program Trojan-PSW.Win32.OnLineGames.sol        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/huaxia.exe//UPack
detected: Trojan program Trojan.Win32.Vaklik.nz        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/jh.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.tde        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/mh.exe//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.spx        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/my.exe//UPack
detected: Trojan program Trojan.Win32.Vaklik.nb        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/qj.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.som        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/qqsg.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.sbm        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/tl.exe//UPack
detected: Trojan program Trojan.Win32.KillAV.pg        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/wd.exe//UPack//PE_Patch
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ucj        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/wl.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.scr        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/wow.exe//UPack
detected: virus Heur.Trojan.Generic (modification)        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/zt.exe//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.sck        File: C:\Documents and Settings\Owner\×ÀÃæ\list.rar/zy.exe//UPack//PE_Patch
The EQs
发表于 2008-3-13 23:05:32 | 显示全部楼层

全灭

C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » zyhx.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » dh2.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » dh3.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » fh.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » huaxia.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » jh.exe - a variant of Win32/PSW.OnLineGames.YA trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » mh.exe - probably a variant of Win32/PSW.OnLineGames.NMQ trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » my.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » qj.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » qqsg.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » tl.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » wd.exe - a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » wl.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » wow.exe - Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » zt.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
C:\Documents and Settings\Don johnson\桌面\list.rar » RAR » zy.exe - Win32/PSW.OnLineGames.NFL trojan
qigang
发表于 2008-3-13 23:10:32 | 显示全部楼层

33/16

瑞星病毒查杀结果报告

清除病毒种类列表:

病毒: Trojan.PSW.Win32.QQGame.GEN
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.GameOL.mdz
病毒: Trojan.PSW.Win32.GameOL.mjw
病毒: Trojan.PSW.Win32.GameOL.GEN
病毒: Trojan.PSW.Win32.GameOL.mes

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.35.32
rodneyxp2002
发表于 2008-3-13 23:30:47 | 显示全部楼层
费尔都全认识
微点全灭之,大部分为已知,3个报未知。
sanhu35
发表于 2008-3-13 23:38:08 | 显示全部楼层
红伞 全灭

End of the scan: 2008年3月13日星期四  23:37
Used time: 00:04 min

The scan has been done completely.

      1 Scanning directories
     16 Files were scanned
     16 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     16 files were deleted
      0 files were repaired
     16 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      0 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
jick117
发表于 2008-3-13 23:45:16 | 显示全部楼层
Virus: Trojan-PSW.Win32.OnLineGames.suq, Trojan.Win32.Vaklik.mn, Trojan.Win32.Vaklik.ot, Trojan.Win32.Vaklik.ns, Trojan-PSW.Win32.OnLineGames.sol, Trojan.Win32.Vaklik.nz, Trojan-PSW.Win32.OnLineGames.tde, Trojan-PSW.Win32.OnLineGames.spx, Trojan.Win32.Vaklik.nb, Trojan-PSW.Win32.OnLineGames.som, Trojan-PSW.Win32.OnLineGames.sbm, Trojan.Win32.KillAV.pg, Trojan-PSW.Win32.OnLineGames.ucj, Trojan-PSW.Win32.OnLineGames.scr, Trojan-PSW.Win32.OnLineGames.sck
File: list[1].rar
Directory: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\SXYHO3AZ
Process: IEXPLORE.EXE
mofunzone
发表于 2008-3-13 23:50:23 | 显示全部楼层
v8全灭
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\list'
C:\Documents and Settings\Administrator\My Documents\list\
  dh2.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.430
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  dh3.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.445
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  fh.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
  huaxia.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.sol
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  jh.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.spf
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  mh.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.tjq
            [WARNING]   Infected files in archives cannot be repaired!
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.tkz
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  my.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
  qj.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NSR.403
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  qqsg.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.som.1
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  tl.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
  wd.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.tip
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!
  wl.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
  wow.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
  zt.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
  zy.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
  zyhx.exe
    [0] Archive type: Runtime Packed
      --> Object
        [1] Archive type: RSRC
        --> Object
            [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.suq
            [WARNING]   Infected files in archives cannot be repaired!
      [NOTE]      The file was deleted!


End of the scan: 2008年3月13日  08:50
Used time: 00:04 min

The scan has been done completely.

      1 Scanning directories
     16 Files were scanned
     17 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     16 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -1 Files not concerned
      0 Archives were scanned
     10 Warnings
     16 Notes
allinwonderi
发表于 2008-3-14 21:14:46 | 显示全部楼层
-----------------------------SCAN REPORT-----------------------------
F-PROT Antivirus for Windows

Antivirus Scanning Engine version number: 4.4.2
Virus signature file from: 2008-3-14, 4:01

Scan name: Virus Tester
Path to scan: C:\Documents and Settings\All Users\Documents\Test\|

Normal scan
Also scan: Inside subfolders, Compressed files, Streams

Scan started: 2008-3-14, 21:14:05
---------------------------------------------------------------------

[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->zyhx.exe->(UPack)
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->dh2.exe->(UPack)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->dh3.exe
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->fh.exe->(UPack)
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->huaxia.exe->(UPack)
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->jh.exe->(UPack)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->mh.exe->(embedded)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->my.exe
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->qj.exe
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->qqsg.exe
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->tl.exe->(UPack)
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->wd.exe->(UPack)
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->wl.exe
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->wow.exe
[Found security risk]         <W32/Agent.L.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->zt.exe
[Found security risk]         <W32/OnlineGames.F.gen!GSA (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\list.rar->zy.exe->(UPack)


---------------------------------------------------------------------
Scan ended:        2008-3-14, 21:14:13
Duration:        0:00:08

Scan result:

Scanned files:                 1
Infected objects:         16
Disinfected objects:         0
Quarantined files:         0
---------------------------------------------------------------------
雨宫优子
发表于 2008-3-14 21:22:52 | 显示全部楼层
NOD32全灭之!
很不错!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-1 19:34 , Processed in 0.139789 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表