123
返回列表 发新帖
楼主: bridgewr
收起左侧

[病毒样本] 据说是昨天的机器狗

[复制链接]
悠柚
发表于 2008-4-25 21:32:50 | 显示全部楼层
AVG 8.0 FREE
"D:\TDdownload\2008424224055.rar:\fiosectc.exe";"Trojan horse PSW.OnlineGames.AMKB";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar:\fmsjhif.exe";"Trojan horse PSW.OnlineGames.ALQB";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar:\leqgczlu.exe";"Trojan horse PSW.OnlineGames.ALGK";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar:\ticisms.exe";"Trojan horse PSW.OnlineGames.ALQF";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar:\bincdwsa.exe";"Trojan horse PSW.Generic6.FZC";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar:\dbhlp32.exe";"Trojan horse PSW.Generic6.GRH";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar:\dionpis.exe";"Trojan horse PSW.Generic6.FZT";"Moved to Virus Vault"
"D:\TDdownload\2008424224055.rar";"Trojan horse PSW.OnlineGames.AMKB";"Moved to Virus Vault"
qwer9909
发表于 2008-4-25 22:25:23 | 显示全部楼层
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>fiosectc.exe        TrojanSpy.Gen.nkax        木马        还未处理
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>fmsjhif.exe        TrojanSpy.Gen.wfwz        木马        还未处理
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>leqgczlu.exe        TrojanPSW.GameOL.GEN.jdfk        木马        还未处理
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>ticisms.exe        TrojanSpy.Gen.zmgl        木马        还未处理
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>bincdwsa.exe        Trojan.Cap84233.gqry        木马        还未处理
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>dbhlp32.exe        TrojanSpy.Gen.nsbl        木马        还未处理
C:\Documents and Settings\Administrator\桌面\2008424224055.rar>>dionpis.exe        TrojanSpy.Gen.jouq        木马        还未处理
a3275
发表于 2008-4-25 22:56:40 | 显示全部楼层
结果: 发现7个恶意软件
Trojan-PSW.Win32.OnLineGames.abtq (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\fiosectc.exe
Trojan-PSW.Win32.OnLineGames.abij (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\fmsjhif.exe
Trojan-PSW.Win32.OnLineGames.abah (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\leqgczlu.exe
Trojan-PSW.Win32.OnLineGames.abin (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\ticisms.exe
Trojan-PSW.Win32.OnLineGames.abtp (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\bincdwsa.exe
Trojan-PSW.Win32.OnLineGames.abtl (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\dbhlp32.exe
Trojan-PSW.Win32.OnLineGames.abue (病毒)
C:\Documents and Settings\Last One\桌面\2008424224055.rar\dionpis.exe
ztly159
发表于 2008-4-25 22:59:49 | 显示全部楼层
小A

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
天山倦鸟
发表于 2008-4-25 23:18:26 | 显示全部楼层
  第一次用微点,居然静悄悄的当作什么都不知道,郁闷
oNe1127
发表于 2008-5-26 18:21:34 | 显示全部楼层
不知道呢
woai_jolin
发表于 2008-5-26 18:32:23 | 显示全部楼层
Time        Module        Object        Name        Threat        Action        User        Information
2008/5/26 18:32:05        DMON        archive        http://bbs.kafan.cn/attachment.p ... 35&t=1211797831        multiple infiltrations        quarantined - deleted        Jason-PC\Jason
allinwonderi
发表于 2008-5-26 18:35:14 | 显示全部楼层

ArcaVir2008

很老
[Scanning : C:\Documents and Settings\All Users\Documents\Test]


C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:fiosectc.exe<FSG>:fiosectc.exe <- Trojan.Psw.Onlinegames.Abtq : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:fiosectc.exe<FSG>:fiosectc.exe<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Acmg : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:fmsjhif.exe<FSG>:fmsjhif.exe <- Trojan.Psw.Onlinegames.Abij : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:leqgczlu.exe<UPX>:leqgczlu.exe <- Trojan.Psw.Onlinegames.Abah : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:ticisms.exe<FSG>:ticisms.exe <- Trojan.Psw.Onlinegames.Abin : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:ticisms.exe<FSG>:ticisms.exe<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Abrw : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:bincdwsa.exe<FSG>:bincdwsa.exe <- Trojan.Psw.Onlinegames.Abtp : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:bincdwsa.exe<FSG>:bincdwsa.exe<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Xzy : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:dbhlp32.exe<FSG>:dbhlp32.exe <- Trojan.Psw.Onlinegames.Abtl : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:dbhlp32.exe<FSG>:dbhlp32.exe<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Abtl : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:dionpis.exe<FSG>:dionpis.exe <- Trojan.Psw.Onlinegames.Abue : No action
C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar<RAR>:dionpis.exe<FSG>:dionpis.exe<DLLRES>:res0.exe <- Trojan.Psw.Onlinegames.Abuf : No action



Scanned objects : 22

Infected objects : 12
allinwonderi
发表于 2008-5-26 18:35:40 | 显示全部楼层

F-Prot 4.4.4

[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->fiosectc.exe->(FSG)
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->fmsjhif.exe->(FSG)
[Found virus]         <W32/PWStealer.OHE (not disinfectable)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->leqgczlu.exe->(UPX)
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->ticisms.exe->(FSG)
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->bincdwsa.exe->(FSG)
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->dbhlp32.exe->(FSG)
[Found security risk]         <W32/Injector.A.gen!Eldorado (not disinfectable, generic)>        C:\Documents and Settings\All Users\Documents\Test\2008424224055.rar->dionpis.exe->(FSG)

---------------------------------------------------------------------
Scan ended:        2008-5-26, 18:35:28
Duration:        0:00:00

Scan result:

Scanned files:                 6
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-12-21 21:41 , Processed in 0.087720 second(s), 3 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表