查看: 5833|回复: 22
收起左侧

[病毒样本] 63个

[复制链接]
promised
发表于 2008-4-26 12:02:07 | 显示全部楼层 |阅读模式
1

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
aerbeisi
发表于 2008-4-26 12:04:37 | 显示全部楼层
---------------------------------------------------------------------
Scan ended:        2008-4-26, 12:04:21
Duration:        00:00:05

Scan result:

Scanned files:                 63
Infected objects:         57
Disinfected objects:         0
Quarantined files:         0
---------------------------------------------------------------------
Exia 该用户已被删除
发表于 2008-4-26 12:07:39 | 显示全部楼层

62

Starting the file scan:

Begin scan in 'E:\AV\新建文件夹'
E:\AV\新建文件夹\dbhlp32.dlL
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\dionpis.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\DLD.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Agent.wtb.1
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\dndsioc.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fiosectc.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fmbiost.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fmsbbqi.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fmsjhif.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\hefcndy.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\huifitc.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.54
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\interne.exe
      [DETECTION] Is the Trojan horse TR/Dldr.VB.VRF
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\msosdohs00.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abxk
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\msosfmsq00.dll
      [DETECTION] Contains suspicious code HEUR/Malware
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\msosmhfp00.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abtn
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\msosmnsf00.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abxd
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\msosping00.dll
      [DETECTION] Contains suspicious code HEUR/Malware
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\msosptfs00.dll
      [DETECTION] Is the Trojan horse TR/PSW.12377
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\ptshell.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\sfnqpewv.dll
      [DETECTION] Is the Trojan horse TR/Onlinegames.NVI
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\SysWoWa8.dll
      [DETECTION] Is the Trojan horse TR/Dldr.Delphi.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\tciocp32.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.42
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\ticisms.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\WSockDrv32.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.22
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\yuiabct.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\Nt_Sys32.Sys
      [DETECTION] Is the Trojan horse TR/PSW.Steal.44658
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\1.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abtn
      --> Object
          [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aji
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\2.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.27
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\3.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\4.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Delphi.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\bincdwsa.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abtp
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\dbhlp32.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\dionpis.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\dndsioc.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fiosectc.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fmbiost.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fmsbbqi.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\fmsjhif.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\hefcndy.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\huifitc.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.53
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\jaqfsvhx.exe
      [DETECTION] Is the Trojan horse TR/Onlinegames.NVI
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\ptshell.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\tciocp32.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abcr
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\ticisms.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\yuiabct.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\7.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abxk
      --> Object
          [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aji
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\8.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.Steal.44658
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\9.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\19.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.abxd
      --> Object
          [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aji
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\22.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\24.exe
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\25.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/PSW.12377
      --> Object
          [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.ahy
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\26.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.ajp
      [DETECTION] Contains suspicious code HEUR/Malware
      [NOTE]      The fund was classified as suspicious.
      [NOTE]      The file was moved to '4840ab20.qua'!
E:\AV\新建文件夹\28.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Contains detection pattern of the rootkit RKIT/Agent.aji
      [DETECTION] Contains suspicious code HEUR/Malware
      [NOTE]      The fund was classified as suspicious.
      [NOTE]      The file was moved to '4840ab22.qua'!
E:\AV\新建文件夹\29.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
        [2] Archive type: RSRC
        --> Object
            [DETECTION] Contains detection pattern of the SPR/PortScan.I program
        --> Object
            [DETECTION] Is the Trojan horse TR/Dldr.VB.dzy
      --> Object
          [DETECTION] Is the Trojan horse TR/Dldr.VB.VRF
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\30.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
          [DETECTION] Is the Trojan horse TR/Dldr.Agent.mzm
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\31.exe
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\cqavpw0.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\jravpw0.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\zxavpw0.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\SoundMan.exe
  [0] Archive type: RSRC
  --> Object
      [DETECTION] Contains detection pattern of the SPR/PortScan.I program
  --> Object
      [DETECTION] Is the Trojan horse TR/Dldr.VB.dzy
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\anistio.dll
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [NOTE]      The file was deleted!
E:\AV\新建文件夹\bincdwsa.dll
      [DETECTION] Is the Trojan horse TR/PSW.OnlineGames.NVI.46
      [NOTE]      The file was deleted!


End of the scan: 2008年4月26日  12:09
Used time: 00:22 min

The scan has been done completely.

      1 Scanning directories
     63 Files were scanned
     67 viruses and/or unwanted programs were found
      4 Files were classified as suspicious:
     60 files were deleted
      0 files were repaired
      2 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -4 Files not concerned
      0 Archives were scanned
      0 Warnings
     62 Notes
Exia 该用户已被删除
发表于 2008-4-26 12:11:42 | 显示全部楼层
The file 'svchost.exe' has been determined to be 'UNDER ANALYSIS'
wangjay1980
发表于 2008-4-26 12:20:14 | 显示全部楼层
to kl

Hello,

3.exe_ - Trojan-PSW.Win32.OnLineGames.acch,
anistio.dll - Trojan-PSW.Win32.OnLineGames.accg

These files are already detected. Please update your antivirus bases.

31.exe_, interne.exe_, svchost.exe_

No malicious code were found in these files.

bincdwsa.dll - Trojan-PSW.Win32.OnLineGames.xzy,
dbhlp32.dlL - Trojan-PSW.Win32.OnLineGames.yai,
dndsioc.dll - Trojan-PSW.Win32.OnLineGames.yaj,
fiosectc.dll - Trojan-PSW.Win32.OnLineGames.accv,
fmbiost.dll - Trojan-PSW.Win32.OnLineGames.ybi,
fmsjhif.dll - Trojan-PSW.Win32.OnLineGames.ybx,
hefcndy.dll - Trojan-PSW.Win32.OnLineGames.ybz,
jravpw0.dll - Trojan-Downloader.Win32.Agent.nsb,
msosping00.dll - Trojan-PSW.Win32.OnLineGames.ydw,
msosptfs00.dll - Trojan.Win32.Agent.kvh,
ptshell.dll - Trojan-PSW.Win32.OnLineGames.ycn,
sfnqpewv.dll - Trojan-PSW.Win32.OnLineGames.ycl,
tciocp32.dll - Trojan-PSW.Win32.OnLineGames.yca,
ticisms.dll - Trojan-PSW.Win32.OnLineGames.ych

New malicious software was found in these files. Detection will be included in the next update. Thank you for your help.

Please quote all when answering.

--
Best regards, Evgeny Aseev
Virus analyst, Kaspersky Lab.
e-mail: newvirus@kaspersky.com
http://www.kaspersky.com/

http://www.kaspersky.com/virusscanner - free online virus scanner.
http://www.kaspersky.com/helpdesk.html - technical support.


[ 本帖最后由 wangjay1980 于 2008-4-26 20:59 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
挪威的冬天
发表于 2008-4-26 12:24:55 | 显示全部楼层
信息        2008-04-26  12:24:43        您此次查毒清除了43个病毒                       
信息        2008-04-26  12:24:43        您此次查毒共查出43个病毒以及危险代码                       
信息        2008-04-26  12:24:43        您此次查毒共查了内存模块0个,磁盘引导扇区0个,文件107个                       
信息        2008-04-26  12:24:43        金山毒霸主程序查毒过程结束,查毒方式:命令行查毒
平淡
发表于 2008-4-26 12:38:07 | 显示全部楼层

62

F:\病毒\样本.rar>>1.exe        TrojanDropper.Gen.dbcw        木马        还未处理
F:\病毒\样本.rar>>19.exe        TrojanDropper.Gen.gawf        木马        还未处理
F:\病毒\样本.rar>>2.exe        TrojanPSW.OnlineGames.NVI.27.nwsn        木马        还未处理
F:\病毒\样本.rar>>22.exe        Trojan.Cap842421.wgja        木马        还未处理
F:\病毒\样本.rar>>24.exe        TrojanPSW.OnLineGames.aqr.atzt        木马        还未处理
F:\病毒\样本.rar>>25.exe        TrojanDownloader.Nurech.bd.bmqk        木马        还未处理
F:\病毒\样本.rar>>26.exe        TrojanDropper.Gen.wljx        木马        还未处理
F:\病毒\样本.rar>>28.exe        Trojan.Cap842419.vngr        木马        还未处理
F:\病毒\样本.rar>>29.exe        TrojanDropper.Agent.har.jnlk        木马        还未处理
F:\病毒\样本.rar>>3.exe        TrojanSpy.Gen.omde        木马        还未处理
F:\病毒\样本.rar>>30.exe        Trojan.Undef.bbw.myxv        木马        还未处理
F:\病毒\样本.rar>>31.exe        Trojan.Cap842423.nucb        木马        还未处理
F:\病毒\样本.rar>>4.exe        TrojanPSW.OnLineGames.wlu.kjdk        木马        还未处理
F:\病毒\样本.rar>>7.exe        TrojanPSW.GameOL.ndt.ukxp        木马        还未处理
F:\病毒\样本.rar>>8.exe        Trojan.Delphi.Gen.yjem        木马        还未处理
F:\病毒\样本.rar>>9.exe        Trojan.Cap842419.mosg        木马        还未处理
F:\病毒\样本.rar>>anistio.dll        TrojanPSW.GamesOnline.vp.nwwa.dll        木马        还未处理
F:\病毒\样本.rar>>bincdwsa.dll        TrojanPSW.GameOL.nei.jjoj.dll        木马        还未处理
F:\病毒\样本.rar>>bincdwsa.exe        Trojan.Cap84233.gqry        木马        还未处理
F:\病毒\样本.rar>>cqavpw0.dll        TrojanPSW.OnLineGames.abyp.zoby.dll        木马        还未处理
F:\病毒\样本.rar>>dbhlp32.dlL        TrojanPSW.GameOL.nee.mrkj.dll        木马        还未处理
F:\病毒\样本.rar>>dbhlp32.exe        TrojanSpy.Gen.nsbl        木马        还未处理
F:\病毒\样本.rar>>dionpis.dll        TrojanPSW.OnLineGames.abuf.nnzd.dll        木马        还未处理
F:\病毒\样本.rar>>dionpis.exe        TrojanSpy.Gen.jouq        木马        还未处理
F:\病毒\样本.rar>>DLD.exe        Trojan.Cap84240.qwpt        木马        还未处理
F:\病毒\样本.rar>>dndsioc.dll        TrojanPSW.GameOL.ndv.ejkj.dll        木马        还未处理
F:\病毒\样本.rar>>dndsioc.exe        TrojanSpy.Gen.cmdm        木马        还未处理
F:\病毒\样本.rar>>fiosectc.dll        TrojanPSW.GamesOnline.vq.pjyx.dll        木马        还未处理
F:\病毒\样本.rar>>fiosectc.exe        TrojanSpy.Gen.hijl        木马        还未处理
F:\病毒\样本.rar>>fmbiost.dll        TrojanSpy.Gen.bbgu.dll        木马        还未处理
F:\病毒\样本.rar>>fmbiost.exe        Trojan.Cap84253.line        木马        还未处理
F:\病毒\样本.rar>>fmsbbqi.dll        TrojanPSW.OnLineGames.abtw.mwav.dll        木马        还未处理
F:\病毒\样本.rar>>fmsbbqi.exe        TrojanSpy.Gen.recx        木马        还未处理
F:\病毒\样本.rar>>fmsjhif.dll        TrojanPSW.GameOL.ndy.ajrl.dll        木马        还未处理
F:\病毒\样本.rar>>fmsjhif.exe        TrojanSpy.Gen.hrbc        木马        还未处理
F:\病毒\样本.rar>>hefcndy.dll        TrojanSpy.Gen.oezp.dll        木马        还未处理
F:\病毒\样本.rar>>hefcndy.exe        TrojanSpy.Gen.hkej        木马        还未处理
F:\病毒\样本.rar>>huifitc.dll        TrojanPSW.OnLineGames.abzv.lrkn.dll        木马        还未处理
F:\病毒\样本.rar>>huifitc.exe        Trojan.Cap84253.akdc        木马        还未处理
F:\病毒\样本.rar>>interne.exe        TrojanDownloader.VB.ysq.kjzb        木马        还未处理
F:\病毒\样本.rar>>jaqfsvhx.exe        TrojanOnlinegames.NVI.csfz        木马        还未处理
F:\病毒\样本.rar>>msosdohs00.dll        TrojanPSW.GameOL.ndt.ehha.dll        木马        还未处理
F:\病毒\样本.rar>>msosfmsq00.dll        TrojanPSW.GameOL.ndt.fvdh.dll        木马        还未处理
F:\病毒\样本.rar>>msosmhfp00.dll        TrojanPSW.GameOL.ndt.pstm.dll        木马        还未处理
F:\病毒\样本.rar>>msosmnsf00.dll        TrojanPSW.GameOL.ndt.irae.dll        木马        还未处理
F:\病毒\样本.rar>>msosping00.dll        TrojanPSW.QQHX.twm.ajic.dll        木马        还未处理
F:\病毒\样本.rar>>msosptfs00.dll        TrojanPSW.GameOL.mxc.ufah.dll        木马        还未处理
F:\病毒\样本.rar>>Nt_Sys32.Sys        PWSteal.QQGame.odaq.dll        木马        还未处理
F:\病毒\样本.rar>>ptshell.dll        TrojanPSW.GameOL.nej.lzpv.dll        木马        还未处理
F:\病毒\样本.rar>>ptshell.exe        TrojanSpy.Gen.mpik        木马        还未处理
F:\病毒\样本.rar>>sfnqpewv.dll        TrojanPSW.QQSG.dq.wjxp.dll        木马        还未处理
F:\病毒\样本.rar>>SoundMan.exe        Backdoor.Scan.a.vclj        后门        还未处理
F:\病毒\样本.rar>>svchost.exe        W32.Arpiframe.cktv        病毒        还未处理
F:\病毒\样本.rar>>SysWoWa8.dll        TrojanPSW.OnLineGames.abry.qjzy.dll        木马        还未处理
F:\病毒\样本.rar>>tciocp32.dll        TrojanPSW.GameOL.nbd.lcoi.dll        木马        还未处理
F:\病毒\样本.rar>>tciocp32.exe        TrojanPSW.OnLineGames.abcr.wtrk        木马        还未处理
F:\病毒\样本.rar>>ticisms.dll        TrojanPSW.GameOL.nff.mktm.dll        木马        还未处理
F:\病毒\样本.rar>>ticisms.exe        Trojan.Ck88866.Gen.ovwd        木马        还未处理
F:\病毒\样本.rar>>WSockDrv32.dll        TrojanPSW.OnlineGames.NVI.22.itfv.dll        木马        还未处理
F:\病毒\样本.rar>>yuiabct.dll        TrojanPSW.OnLineGames.abwn.cacu.dll        木马        还未处理
F:\病毒\样本.rar>>yuiabct.exe        PWSteal.y.kyqi        木马        还未处理
F:\病毒\样本.rar>>zxavpw0.dll        TrojanPSW.WOW.auv.nzxc.dll        木马        还未处理
残缺的唯美
发表于 2008-4-26 12:52:17 | 显示全部楼层
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » WSockDrv32.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » yuiabct.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » Nt_Sys32.Sys - a variant of Win32/PSW.QQPass.NCZ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 1.exe - probably a variant of Win32/PSW.OnLineGames.NMQ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 2.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 3.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 4.exe - a variant of Win32/PSW.OnLineGames.ZJK trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » bincdwsa.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » dbhlp32.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » dionpis.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » dndsioc.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fiosectc.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fmbiost.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fmsbbqi.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fmsjhif.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » hefcndy.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » huifitc.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » jaqfsvhx.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » ptshell.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » tciocp32.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » ticisms.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » yuiabct.exe - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 7.exe - a variant of Win32/PSW.OnLineGames.NMQ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 8.exe - a variant of Win32/PSW.QQPass.NCZ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 9.exe - a variant of Win32/PSW.OnLineGames.NFN trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 19.exe - probably a variant of Win32/PSW.OnLineGames.NMQ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 22.exe - a variant of Win32/PSW.OnLineGames.NFN trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 24.exe - a variant of Win32/PSW.OnLineGames.NFN trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 25.exe - probably a variant of Win32/PSW.OnLineGames.NMQ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 26.exe - probably a variant of Win32/PSW.OnLineGames.NMQ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 28.exe - probably a variant of Win32/PSW.OnLineGames.NMQ trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » 29.exe - probably unknown NewHeur_PE virus
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » cqavpw0.dll - probably a variant of Win32/PSW.OnLineGames.NFO trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » jravpw0.dll - probably a variant of Win32/PSW.OnLineGames.NFO trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » zxavpw0.dll - probably a variant of Win32/PSW.OnLineGames.NFO trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » SoundMan.exe - probably unknown NewHeur_PE virus
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » anistio.dll - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » bincdwsa.dll - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » dbhlp32.dlL - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » dionpis.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » dndsioc.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fiosectc.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fmbiost.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fmsbbqi.dll - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » fmsjhif.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » hefcndy.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » huifitc.dll - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » interne.exe - probably unknown NewHeur_PE virus
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » msosdohs00.dll - probably a variant of Win32/Genetik trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » msosfmsq00.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » msosmhfp00.dll - probably a variant of Win32/Genetik trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » msosmnsf00.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » msosping00.dll - probably a variant of Win32/Genetik trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » msosptfs00.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » ptshell.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » sfnqpewv.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » SysWoWa8.dll - a variant of Win32/PSW.OnLineGames.GJV trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » tciocp32.dll - probably a variant of Win32/PSW.OnLineGames.NFL trojan
D:\Documents and Settings\EKINCHENG\桌面\样本.rar » RAR » ticisms.dll - a variant of Win32/PSW.OnLineGames.NVW trojan
Palkia
发表于 2008-4-26 12:55:41 | 显示全部楼层

59

C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > WSockDrv32.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > yuiabct.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > Nt_Sys32.Sys - Win32/PSW.QQPass.NCZ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 1.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 2.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 3.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 4.exe - Win32/PSW.OnLineGames.ZJK 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > bincdwsa.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > dbhlp32.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > dionpis.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > dndsioc.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fiosectc.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fmbiost.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fmsbbqi.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fmsjhif.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > hefcndy.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > huifitc.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > jaqfsvhx.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > ptshell.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > tciocp32.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > ticisms.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > yuiabct.exe - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 7.exe - Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 8.exe - Win32/PSW.QQPass.NCZ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 9.exe - Win32/PSW.OnLineGames.NFN 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 19.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 22.exe - Win32/PSW.OnLineGames.NFN 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 24.exe - Win32/PSW.OnLineGames.NFN 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 25.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 26.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 28.exe - 可能是 Win32/PSW.OnLineGames.NMQ 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > 29.exe - 未查明的 NewHeur_PE 病毒
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > cqavpw0.dll - 可能是 Win32/PSW.OnLineGames.NFO 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > jravpw0.dll - 可能是 Win32/PSW.OnLineGames.NFO 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > zxavpw0.dll - 可能是 Win32/PSW.OnLineGames.NFO 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > SoundMan.exe - 未查明的 NewHeur_PE 病毒
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > anistio.dll - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > bincdwsa.dll - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > dbhlp32.dlL - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > dionpis.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > dndsioc.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fiosectc.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fmbiost.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fmsbbqi.dll - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > fmsjhif.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > hefcndy.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > huifitc.dll - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > interne.exe - 未查明的 NewHeur_PE 病毒
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > msosdohs00.dll - 可能是 Win32/Genetik 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > msosfmsq00.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > msosmhfp00.dll - 可能是 Win32/Genetik 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > msosmnsf00.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > msosping00.dll - 可能是 Win32/Genetik 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > msosptfs00.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > ptshell.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > sfnqpewv.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > SysWoWa8.dll - Win32/PSW.OnLineGames.GJV 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > tciocp32.dll - 可能是 Win32/PSW.OnLineGames.NFL 特洛伊木马 的变种
C:\Documents and Settings\Administrator\桌面\样本.rar > RAR > ticisms.dll - Win32/PSW.OnLineGames.NVW 特洛伊木马 的变种
梦想奇迹
发表于 2008-4-26 13:01:14 | 显示全部楼层
小红伞的

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-7-15 13:22 , Processed in 0.125084 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表