查看: 5412|回复: 23
收起左侧

[病毒样本] 一群病毒及其衍生物

[复制链接]
gxynx
发表于 2008-3-24 07:29:43 | 显示全部楼层 |阅读模式
为本人电脑所中病毒。有可能是古董。

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
gxynx
 楼主| 发表于 2008-3-24 07:30:39 | 显示全部楼层
有个文件打包错了 ,userinit.exe 这个是系统文件。
挪威的冬天
发表于 2008-3-24 07:53:50 | 显示全部楼层
信息        2008-03-24  07:52:32        您此次查毒清除了30个病毒                       
信息        2008-03-24  07:52:32        您此次查毒共查出31个病毒以及危险代码                       
信息        2008-03-24  07:52:32        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件105个                       
信息        2008-03-24  07:52:32        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒                       
风险程序        2008-03-24  07:52:32        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\qoq.exe        Win32.HackTool.Portscan.i.22528        跳过,未处理       
病毒        2008-03-24  07:52:31        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\zadnew.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:31        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\xdkrcipwm.dll        Win32.PSWTroj.WowT.my.17831        清除成功       
病毒        2008-03-24  07:52:31        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\tzm.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:31        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\tsqc.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:31        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\sve.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:30        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\sauhad.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:30        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\rhs.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:30        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\qvdjryewow.dll        Win32.PSWTroj.WowT.my.17831        清除成功       
病毒        2008-03-24  07:52:30        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\mswmgog32.dll        Win32.Troj.OnLineGamesT.b.20198        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\mseion.sys        Win32.Hack.Mnless.jz.8320        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\mian7.exe        Win32.Troj.LmirT.by.9900        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\mian18.exe        Win32.Troj.OnlineGameT.lf.36864        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\mian17.exe        Win32.Troj.OnlineGameT.am.107664        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\mian11.exe        Win32.Troj.QQPswT.bs.116858        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\laixuhz.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\HHHCompress.dll        Win32.Troj.OnLineGamesT.b.20198        清除成功       
病毒        2008-03-24  07:52:29        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\fCBDCBD1033.exe        Win32.Troj.OnlineGamesT.af.57344        清除成功       
病毒        2008-03-24  07:52:28        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\fCBDCBD1033.dll        Win32.Troj.OnlineGameT.69632        清除成功       
病毒        2008-03-24  07:52:28        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\cuhad.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:28        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\ayVUFVUF1008.exe        Win32.Troj.OnlineGamesT.af.57344        清除成功       
病毒        2008-03-24  07:52:28        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\ayVUFVUF1008.dll        Win32.Troj.OnlineGameT.69632        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\aySADSAD1026.exe        Win32.Troj.OnlineGamesT.af.57344        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\aySADSAD1026.dll        Win32.Troj.OnlineGameT.69632        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\ayPATPAT1019.exe        Win32.Troj.OnlineGamesT.af.57344        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\ayPATPAT1019.dll        Win32.Troj.OnlineGameT.69632        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\ayKAEKAE1050.exe        Win32.Troj.OnlineGamesT.af.57344        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\ayKAEKAE1050.dll        Win32.Troj.OnlineGameT.69632        清除成功       
病毒        2008-03-24  07:52:27        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\awf.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:26        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\atgnehz.dll        Win32.Troj.OnlineGameT.82153        清除成功       
病毒        2008-03-24  07:52:26        D:\Desktop\D½¨Îļt¼D.rar\新建文件夹\684745MM.DLL        Win32.Troj.MirT.md.48433        清除成功
残缺的唯美
发表于 2008-3-24 07:59:46 | 显示全部楼层
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\684745MM.DLL - Win32/PSW.Legendmir.NFF trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\atgnehz.dll - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\AtiSrvn.exe - a variant of Win32/TrojanDownloader.Agent.NWE trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\awf.dll - Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\ayKAEKAE1050.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\ayKAEKAE1050.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\ayPATPAT1019.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\ayPATPAT1019.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\aySADSAD1026.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\aySADSAD1026.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\ayVUFVUF1008.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\ayVUFVUF1008.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\cuhad.dll - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\fCBDCBD1033.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\fCBDCBD1033.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\HHHCompress.dll - a variant of Win32/PSW.OnLineGames.GJV trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\inetin.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\laixuhz.dll - Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\Mess.exe - probably unknown NewHeur_PE virus - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mian11.exe - a variant of Win32/PSW.QQPass.NCZ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mian17.exe - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mian18.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mian25.exe - Win32/VB.NMD trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mian7.exe - probably a variant of Win32/PSW.WOW.WU trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mseion.sys - Win32/PSW.OnLineGames.NFC trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\msosfpids32.sys - a variant of Win32/PSW.OnLineGames.NNE trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\msosmhfp00.dll - a variant of Win32/PSW.OnLineGames.NMQ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\mswmgog32.dll - a variant of Win32/PSW.OnLineGames.GJV trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\qvdjryewow.dll - Win32/PSW.OnLineGames.GJV trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\rhs.dll - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\sauhad.dll - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\sss0.exe - a variant of Win32/TrojanDownloader.Small.OAL trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\sve.dll - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\sysave.exe - a variant of Win32/TrojanDownloader.Small.OAL trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\tsqc.dll - a variant of Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\tzm.dll - Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\WinSys8v.Sys - a variant of Win32/PSW.QQPass.NCZ trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\xdkrcipwm.dll - Win32/PSW.OnLineGames.GJV trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar » RAR » 新建文件夹\zadnew.dll - Win32/PSW.OnLineGames.MUG trojan - was a part of the deleted object
D:\Documents and Settings\EKINCHENG\桌面\新建文件夹.rar - multiple threats - deleted - quarantined
Exia 该用户已被删除
发表于 2008-3-24 08:05:45 | 显示全部楼层

44

Starting the file scan:

Begin scan in 'E:\AVIRA\新建文件夹.rar'
E:\AVIRA\新建文件夹.rar
  [0] Archive type: RAR
  --> н¨Îļþ¼Ð\684745MM.DLL
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> н¨Îļþ¼Ð\atgnehz.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\AtiSrvn.exe
      [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
  --> н¨Îļþ¼Ð\awf.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\ayKAEKAE1050.dll
      [DETECTION] Is the Trojan horse TR/Drop.Agent.jue.1
  --> н¨Îļþ¼Ð\ayKAEKAE1050.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.jue.1
  --> н¨Îļþ¼Ð\ayPATPAT1019.dll
      [DETECTION] Is the Trojan horse TR/Agent.9124
  --> н¨Îļþ¼Ð\ayPATPAT1019.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.13988
  --> н¨Îļþ¼Ð\aySADSAD1026.dll
      [DETECTION] Is the Trojan horse TR/Drop.Agent.jue.1
  --> н¨Îļþ¼Ð\aySADSAD1026.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.jue.1
  --> н¨Îļþ¼Ð\ayVUFVUF1008.dll
      [DETECTION] Is the Trojan horse TR/Drop.Agent.jue.1
  --> н¨Îļþ¼Ð\ayVUFVUF1008.exe
      [DETECTION] Is the Trojan horse TR/Drop.Agent.jue.1
  --> н¨Îļþ¼Ð\comr3260.dll
      [DETECTION] Is the Trojan horse TR/Crypt.NSPM.Gen
  --> н¨Îļþ¼Ð\cuhad.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\en_1072.bin
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> н¨Îļþ¼Ð\fCBDCBD1033.dll
      [DETECTION] Is the Trojan horse TR/Agent.7399
  --> н¨Îļþ¼Ð\fCBDCBD1033.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.ryp.2
  --> н¨Îļþ¼Ð\HHHCompress.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGame.XO
  --> н¨Îļþ¼Ð\inetin.exe
      [DETECTION] Contains detection pattern of the worm WORM/Autorun.dbm
  --> н¨Îļþ¼Ð\laixuhz.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.uil
  --> н¨Îļþ¼Ð\Mess.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð\mian11.exe
      [DETECTION] Contains detection pattern of the dropper DR/Delphi.Gen
  --> н¨Îļþ¼Ð\mian17.exe
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\mian18.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.vwo.12
  --> н¨Îļþ¼Ð\mian23.exe
      [DETECTION] Contains suspicious code HEUR/Crypted
  --> н¨Îļþ¼Ð\mian25.exe
      [DETECTION] Is the Trojan horse TR/Agent.4584.1
  --> н¨Îļþ¼Ð\mian7.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
  --> н¨Îļþ¼Ð\mseion.sys
      [DETECTION] Is the Trojan horse TR/Rootkit.Gen
  --> н¨Îļþ¼Ð\msosfpids32.sys
      [DETECTION] Is the Trojan horse TR/VB.cjq
  --> н¨Îļþ¼Ð\msosiocp.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> н¨Îļþ¼Ð\msosmhfp00.dll
      [DETECTION] Is the Trojan horse TR/PSW.15225
  --> н¨Îļþ¼Ð\mswmgog32.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGame.XO
  --> н¨Îļþ¼Ð\qoq.exe
      [DETECTION] Contains detection pattern of the SPR/PortScan.I program
  --> н¨Îļþ¼Ð\qvdjryewow.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> н¨Îļþ¼Ð\rhs.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\sauhad.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\sss0.exe
      [DETECTION] Is the Trojan horse TR/Agent.23192
  --> н¨Îļþ¼Ð\sve.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\sysave.exe
      [DETECTION] Is the Trojan horse TR/Hijack.Explor.3503
  --> н¨Îļþ¼Ð\tsqc.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\tzm.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
  --> н¨Îļþ¼Ð\WinSys8v.Sys
      [DETECTION] Contains suspicious code HEUR/Malware
  --> н¨Îļþ¼Ð\xdkrcipwm.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
  --> н¨Îļþ¼Ð\zadnew.dll
      [DETECTION] Is the Trojan horse TR/PSW.Online.ddn.2
      [WARNING]   The file was ignored!


End of the scan: 2008年3月24日  08:07
Used time: 00:15 min

The scan has been done completely.

      0 Scanning directories
     70 Files were scanned
     41 viruses and/or unwanted programs were found
      3 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     29 Files not concerned
      1 Archives were scanned
      1 Warnings
      0 Notes

3797647_uninsep.bat112 ByteUNDER ANALYSIS
3797648~DFF873.tmp16 KBUNDER ANALYSIS
3797649atgnehz.cfg280 ByteUNDER ANALYSIS
3797650AutoRuns.exe580 KBUNDER ANALYSIS
3797651awf.cfg280 ByteUNDER ANALYSIS
3796597bai.BAT321 ByteUNDER ANALYSIS
3797652bai.VBS926 ByteUNDER ANALYSIS
3797653cuhad.cfg280 ByteUNDER ANALYSIS
3797654ip.txt36 ByteUNDER ANALYSIS
3797655laixuhz.cfg280 ByteUNDER ANALYSIS
3797656msosdohs.dat256 ByteUNDER ANALYSIS
3797657msosmhfp.dat256 ByteUNDER ANALYSIS
3797658por.aed6.06 KBUNDER ANALYSIS
3797659rhs.cfg280 ByteUNDER ANALYSIS
3797660sauhad.cfg144 ByteUNDER ANALYSIS
3797661sve.cfg144 ByteUNDER ANALYSIS

3797665sys.bat90 ByteUNDER ANALYSIS
3797666SysWin7s.Jmp32.61 KBUNDER ANALYSIS
3797667tsqc.cfg280 ByteUNDER ANALYSIS
3797668ttjj1.ini3 ByteUNDER ANALYSIS
3797669tzm.cfg144 ByteUNDER ANALYSIS
738123userinit.exe24.5 KBKNOWN CLEAN
3797670xdfntt.cfg280 ByteUNDER ANALYSIS
3797671xfgnxfn.cfg280 ByteUNDER ANALYSIS
3797672zadnew.cfg280 ByteUNDER ANALYSIS

3个启发

3797674 Mess.exe 5.44 KB UNDER ANALYSIS
3797675 WinSys8v.Sys 47.11 KB UNDER ANALYSIS
3797676 mian23.exe 21.32 KB UNDER ANALYSIS


[ 本帖最后由 Exia 于 2008-3-24 08:22 编辑 ]
The EQs
发表于 2008-3-24 08:14:25 | 显示全部楼层
有很多大小为字节的。。。。。。
The EQs
发表于 2008-3-24 08:42:38 | 显示全部楼层
又发现EAV的一个bug。。。。。最近发现的bug真多。。。
aribeth199
发表于 2008-3-24 09:50:08 | 显示全部楼层
detected: Trojan program Trojan-PSW.Win32.OnLineGames.rnh        URL: http://bbs.kafan.cn/attachment.php?aid=224569//н¨Îļþ¼Ð/684745MM.DLL
曲中求
发表于 2008-3-24 10:26:04 | 显示全部楼层
Scan Log
Version of virus signature database: 2967 (20080321)
Date: 2008-3-24  Time: 10:23:45
Scanned disks, folders and files: E:\病毒\新建文件夹.rar
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\684745MM.DLL - Win32/PSW.Legendmir.NFF trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\atgnehz.dll - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\AtiSrvn.exe - a variant of Win32/TrojanDownloader.Agent.NWE trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\awf.dll - Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\ayKAEKAE1050.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\ayKAEKAE1050.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\ayPATPAT1019.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\ayPATPAT1019.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\aySADSAD1026.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\aySADSAD1026.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\ayVUFVUF1008.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\ayVUFVUF1008.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\cuhad.dll - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\fCBDCBD1033.dll - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\fCBDCBD1033.exe - a variant of Win32/PSW.OnLineGames.PBQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\HHHCompress.dll - a variant of Win32/PSW.OnLineGames.GJV trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\inetin.exe - probably unknown NewHeur_PE virus [7]
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\laixuhz.dll - Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\Mess.exe - probably unknown NewHeur_PE virus [7]
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mian11.exe - a variant of Win32/PSW.QQPass.NCZ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mian17.exe - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mian18.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mian25.exe - Win32/VB.NMD trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mian7.exe - probably a variant of Win32/PSW.WOW.WU trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mseion.sys - Win32/PSW.OnLineGames.NFC trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\msosfpids32.sys - a variant of Win32/PSW.OnLineGames.NNE trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\msosmhfp00.dll - a variant of Win32/PSW.OnLineGames.NMQ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\mswmgog32.dll - a variant of Win32/PSW.OnLineGames.GJV trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\qvdjryewow.dll - Win32/PSW.OnLineGames.GJV trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\rhs.dll - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\sauhad.dll - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\sss0.exe - a variant of Win32/TrojanDownloader.Small.OAL trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\sve.dll - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\sysave.exe - a variant of Win32/TrojanDownloader.Small.OAL trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\tsqc.dll - a variant of Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\tzm.dll - Win32/PSW.OnLineGames.MUG trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\WinSys8v.Sys - a variant of Win32/PSW.QQPass.NCZ trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\xdkrcipwm.dll - Win32/PSW.OnLineGames.GJV trojan
E:\病毒\新建文件夹.rar » RAR » 新建文件夹\zadnew.dll - Win32/PSW.OnLineGames.MUG trojan
Number of scanned objects: 69
Number of threats found: 39
Time of completion: 10:24:04  Total scanning time: 19 sec (00:00:19)

Notes:
[7] Object is probably infected with an unknown virus.
fpx_123
发表于 2008-3-24 10:26:53 | 显示全部楼层
下载收藏啦 哈哈
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-5 23:17 , Processed in 0.145273 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表