查看: 3541|回复: 12
收起左侧

[病毒样本] 调节口味2,下载的东西x56

[复制链接]
IllusionWing
发表于 2008-7-29 16:04:03 | 显示全部楼层 |阅读模式
..最近迷上Downloader了...
卡巴漏3个
i3ni.dll
a-squared3.5.0.222008.07.282008-07-28-
2.697
安博士V32008.07.29.012008.07.292008-07-29-
0.968
AntiVir7.8.1.127.0.5.1832008-07-29TR/Spy.Gen
2.151
Arcavir1.0.52008072810392008-07-28-
1.188
AVAST!3.0.1080728-02008-07-28Win32:Agent-JZN [Trj]
0.007
AVG7.5.51.442270.5.6/15782008-07-28-
1.500
BitDefender7.60825.14088797.202462008-07-29-
2.644
CA (VET)9.0.0.14331.6.59912008-07-29Win32/Eldorado!generic trojan.
0.750
ClamAV0.93.378742008-07-29-
0.039
Comodo2.112.0.0.6002008-07-29-
0.465
CP Secure1.1.0.7152008.07.292008-07-29-
5.617
Dr.Web4.44.0.91702008.07.292008-07-29-
3.025
ewido4.0.0.22008.07.282008-07-28-
2.560
F-Prot4.4.4.56200807282008-07-28W32/Downloader.A.gen!Eldorado (generic, not disinfectable)
1.014
F-Secure5.51.61002008.07.28.062008-07-28-
0.049
飞塔2.81-3.119.3622008-07-29W32/Agnet.LMN!tr.dldr
2.640
ViRobot200807282008.07.282008-07-28-
0.409
IkarusT3.1.01.342008.07.29.711802008-07-29Virus.Win32.Agent.JZN
3.019
江民杀毒11.0.7062008.07.292008-07-29-
1.136
卡巴斯基5.5.102008.07.292008-07-29-
0.043
金山毒霸2008.1.14.152008.7.28.172008-07-28-
0.823
迈克菲5.2.0053482008-07-28-
2.221
Microsoft1.38062008.07.292008-07-29Backdoor:Win32/Farfli.A.dll
4.965
mks_vir2.012008.07.282008-07-28-
2.489
Norman5.93.015.93.002008-07-28-
4.637
熊猫卫士9.05.012008.07.282008-07-28-
1.994
趋势科技8.700-10045.440.012008-07-28-
0.026
Quick Heal9.502008.07.282008-07-28-
1.631
瑞星20.020.55.11.002008-07-29-
0.735
Sophos2.75.44.312008-07-29Mal/Behav-010
1.964
Sunbelt3.1.1536.121662008-07-25-
0.392
赛门铁克1.3.0.2420080728.0032008-07-28-
0.052
nProtect2008-07-28.0017215812008-07-28-
3.216
The Hacker6.2.96v003892008-07-24-
0.392
VBA323.12.8.120080728.08032008-07-28-
1.121
VirusBuster4.5.11.1010.82.25/5968812008-07-28Backdoor.Ferfli.Gen.3
0.860

rpicj.sys
a-squared3.5.0.222008.07.282008-07-28-
2.963
AntiVir7.8.1.127.0.5.1832008-07-29-
2.123
Arcavir1.0.52008072810392008-07-28-
1.187
AVAST!3.0.1080728-02008-07-28Win32:Hmir-F [Trj]
0.004
AVG7.5.51.442270.5.6/15782008-07-28Rootkit-Agent.AE
1.477
BitDefender7.60825.14088797.202462008-07-29Backdoor.Farfli.AB
2.628
CA (VET)9.0.0.14331.6.59912008-07-29-
0.583
ClamAV0.93.378742008-07-29-
0.012
Comodo2.112.0.0.6002008-07-29-
1.850
CP Secure1.1.0.7152008.07.292008-07-29-
5.587
Dr.Web4.44.0.91702008.07.292008-07-29-
3.027
ewido4.0.0.22008.07.282008-07-28-
2.634
F-Prot4.4.4.56200807282008-07-28-
0.989
F-Secure5.51.61002008.07.28.062008-07-28-
0.034
IkarusT3.1.01.342008.07.29.711802008-07-29Trojan-Downloader.Win32.Agent.bbb
3.015
Microsoft1.38062008.07.292008-07-29Trojan:WinNT/Farli.C!sys
4.108
mks_vir2.012008.07.282008-07-28-
2.589
Norman5.93.015.93.002008-07-28-
4.563
nProtect2008-07-28.0017215812008-07-28Backdoor.Farfli.AB
3.206
Quick Heal9.502008.07.282008-07-28-
1.683
Sophos2.75.44.312008-07-29-
1.923
Sunbelt3.1.1536.121662008-07-25-
0.418
The Hacker6.2.96v003892008-07-24-
0.422
VBA323.12.8.120080728.08032008-07-28-
1.122
ViRobot200807282008.07.282008-07-28-
0.430
VirusBuster4.5.11.1010.82.25/5968812008-07-28Rootkit.Farfli.Gen
0.907
卡巴斯基5.5.102008.07.292008-07-29-
0.028
安博士V32008.07.29.012008.07.292008-07-29-
0.856
江民杀毒11.0.7062008.07.292008-07-29-
1.172
熊猫卫士9.05.012008.07.282008-07-28-
1.996
瑞星20.020.55.11.002008-07-29-
0.732
赛门铁克1.3.0.2420080728.0032008-07-28-
0.249
趋势科技8.700-10045.440.012008-07-28-
0.023
迈克菲5.2.0053482008-07-28-
2.235
金山毒霸2008.1.14.152008.7.28.172008-07-28-
0.564
飞塔2.81-3.119.3622008-07-29-
1.628

60qs6u1qe.sys
a-squared3.5.0.222008.07.282008-07-28-
2.860
AntiVir7.8.1.127.0.5.1832008-07-29TR/Rootkit.Gen
2.123
Arcavir1.0.52008072810392008-07-28-
1.204
AVAST!3.0.1080728-02008-07-28-
0.659
AVG7.5.51.442270.5.6/15782008-07-28-
1.499
BitDefender7.60825.14088797.202462008-07-29Backdoor.Farfli.AB
2.632
CA (VET)9.0.0.14331.6.59912008-07-29-
0.681
ClamAV0.93.378742008-07-29-
0.015
Comodo2.112.0.0.6002008-07-29-
0.416
CP Secure1.1.0.7152008.07.292008-07-29-
5.604
Dr.Web4.44.0.91702008.07.292008-07-29-
3.122
ewido4.0.0.22008.07.282008-07-28-
2.480
F-Prot4.4.4.56200807282008-07-28W32/Agent.BN.gen!Eldorado (generic, not disinfectable)
0.986
F-Secure5.51.61002008.07.28.062008-07-28-
2.807
IkarusT3.1.01.342008.07.29.711802008-07-29Trojan-Downloader.Win32.Agent.bbb
3.013
Microsoft1.38062008.07.292008-07-29VirTool:WinNT/Livuto.gen!A
4.079
mks_vir2.012008.07.282008-07-28-
2.538
Norman5.93.015.93.002008-07-28-
4.625
nProtect2008-07-28.0017215812008-07-28Backdoor.Farfli.AB
3.223
Quick Heal9.502008.07.282008-07-28-
1.675
Sophos2.75.44.312008-07-29-
1.949
Sunbelt3.1.1536.121662008-07-25-
0.497
The Hacker6.2.96v003892008-07-24-
0.422
VBA323.12.8.120080728.08032008-07-28-
1.131
ViRobot200807282008.07.282008-07-28-
0.398
VirusBuster4.5.11.1010.82.25/5968812008-07-28-
0.821
卡巴斯基5.5.102008.07.292008-07-29-
0.027
安博士V32008.07.29.012008.07.292008-07-29-
0.843
江民杀毒11.0.7062008.07.292008-07-29-
1.130
熊猫卫士9.05.012008.07.282008-07-28-
2.050
瑞星20.020.55.11.002008-07-29-
0.737
赛门铁克1.3.0.2420080728.0032008-07-28-
0.203
趋势科技8.700-10045.440.012008-07-28-
0.028
迈克菲5.2.0053482008-07-28-
2.232
金山毒霸2008.1.14.152008.7.28.172008-07-28-
0.559
飞塔2.81-3.119.3622008-07-29-
1.635
欠妳緈諨
发表于 2008-7-29 16:05:28 | 显示全部楼层
avast!  52


[ 本帖最后由 欠妳緈諨 于 2008-7-29 16:08 编辑 ]
IllusionWing
 楼主| 发表于 2008-7-29 16:06:50 | 显示全部楼层

回复 2楼 欠妳緈諨 的帖子

...这回保证都是PE
lsyer
发表于 2008-7-29 16:07:02 | 显示全部楼层
C:\Documents and Settings\Administrator\桌面\生成物x56\1.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\10.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\12.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\13.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\14.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\15.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\16.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\17.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\18.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\19.gif
      [DETECTION] Is the TR/PSW.OnL.BJ.24576 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\2.gif
      [DETECTION] Is the TR/PSW.Online.bin Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\20.gif
      --> Object
        [1] Archive type: RSRC
        --> Object
          [DETECTION] Is the TR/Spy.Agent.djv.1 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\21.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\22.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\23.gif
      [DETECTION] Is the TR/PSW.Online.tdz Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\24.gif
      [DETECTION] Is the TR/PSW.Online.tdb Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\25.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\27.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\28.gif
      [DETECTION] Is the TR/Spy.Agent.dhh Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\29.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\3.gif
      [DETECTION] Is the TR/PSW.Online.Osh.2 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\30.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\32.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\4.gif
      --> Object
        [1] Archive type: RSRC
        --> Object
          [DETECTION] Is the TR/Agent.vro.9 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\6.gif
      --> Object
        [1] Archive type: RSRC
        --> Object
          [DETECTION] Is the TR/Spy.Agent.dhi.8 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\60qs6u1qe.sys
    [DETECTION] Is the TR/Rootkit.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\7.gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\8.gif
      --> Object
        [1] Archive type: RSRC
        --> Object
          [DETECTION] Is the TR/Agent.ugd.11 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\9.gif
      [DETECTION] Is the TR/PSW.OnLineGa.aqq Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\A[1].gif
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\B.gif
      [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\C.gif
      [DETECTION] Is the TR/Crypt.XDR.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\cedafb.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\D.gif
    [DETECTION] Is the TR/Drop.Trew.1 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\ddserh.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\eth8023.sys
    [DETECTION] Is the TR/Spy.FtpSend.A.1 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\fmcvxy.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\fsrgeb.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\hhrdxd.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\i3ni.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\IsDrv122.sys
    [DETECTION] Is the TR/Rootkit.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\jfrwdh.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\jhfrxz.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\linkinfo.dll
    [DETECTION] Contains recognition pattern of the W32/Rectix.A Windows virus
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\lphc1swj0e3a7.exe
    [DETECTION] Is the TR/Fakealert.UT.9 Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\pphc1swj0e3a7.exe
    [DETECTION] Is the TR/Fakealert.AG Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\sgdewg.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\tdfhex.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\tdggrz.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\winsxp.exe
    [DETECTION] Contains a recognition pattern of the (harmful) BDS/Hupigon.Gen back-door program
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\XP-E79E1A77.EXE
    [DETECTION] Is the TR/FlyStudio.BU Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\zgtwfx.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\zsdgff.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!
C:\Documents and Settings\Administrator\桌面\生成物x56\zycdex.dll
    [DETECTION] Is the TR/Spy.Gen Trojan
    [NOTE]      The file was deleted!


End of the scan: 2008年7月29日  16:06
Used time: 00:24 Minute(s)

The scan has been done completely.

      1 Scanning directories
     56 Files were scanned
     54 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     54 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      2 Files not concerned
      0 Archives were scanned
      0 Warnings
     54 Notes
欠妳緈諨
发表于 2008-7-29 16:07:23 | 显示全部楼层

回复 3楼 gankeyu 的帖子

IK   53
D:\病毒测试\临时解压\1.gif - 特征码 'Virus.Win32.Agent.ZRP' 被发现
D:\病毒测试\临时解压\10.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\12.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\13.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\14.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\15.gif - 特征码 'Trojan-PWS.OnlineGames.ZAY' 被发现
D:\病毒测试\临时解压\16.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\17.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\18.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\19.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\2.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\20.gif - 特征码 'Trojan-GameThief.Win32.OnLineGames.shim' 被发现
D:\病毒测试\临时解压\21.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\22.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\23.gif
D:\病毒测试\临时解压\24.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\25.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\27.gif - 特征码 'Virus.Win32.Agent.ZRP' 被发现
D:\病毒测试\临时解压\28.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\29.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\3.gif - 特征码 'Virus.Trojan.Win32.Agent.udd' 被发现
D:\病毒测试\临时解压\30.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\32.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\4.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\6.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shig' 被发现
D:\病毒测试\临时解压\60qs6u1qe.sys - 特征码 'Trojan-Downloader.Win32.Agent.bbb' 被发现
D:\病毒测试\临时解压\7.gif - 特征码 'Trojan-Downloader.Win32.Zlob.and' 被发现
D:\病毒测试\临时解压\8.gif - 特征码 'Virus.Win32.Agent.ZRP' 被发现
D:\病毒测试\临时解压\9.gif - 特征码 'Virus.Trojan.GameThief.Win32.OnLineGames.shhw' 被发现
D:\病毒测试\临时解压\A[1].gif
D:\病毒测试\临时解压\B.gif - 特征码 'Virus.Win32.Alman.a' 被发现
D:\病毒测试\临时解压\C.gif - 特征码 'Trojan-Downloader.Win32.Small.xwr' 被发现
D:\病毒测试\临时解压\cedafb.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alfp' 被发现
D:\病毒测试\临时解压\D.gif - 特征码 'Trojan.Generic' 被发现
D:\病毒测试\临时解压\ddserh.dll - 特征码 'Backdoor.Win32.NetCrack.13.b' 被发现
D:\病毒测试\临时解压\eth8023.sys - 特征码 'Trojan-Spy.Win32.FtpSend.a' 被发现
D:\病毒测试\临时解压\fmcvxy.dll - 特征码 'Backdoor.Win32.NetCrack.13.b' 被发现
D:\病毒测试\临时解压\Framdee.ttf
D:\病毒测试\临时解压\fsrgeb.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现
D:\病毒测试\临时解压\hhrdxd.dll - 特征码 'Backdoor.Win32.NetCrack.13.b' 被发现
D:\病毒测试\临时解压\i3ni.dll - 特征码 'Virus.Win32.Agent.JZN' 被发现
D:\病毒测试\临时解压\IsDrv122.sys - 特征码 'Virus.Win32.Alman.b' 被发现
D:\病毒测试\临时解压\jfrwdh.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现
D:\病毒测试\临时解压\jhfrxz.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现
D:\病毒测试\临时解压\linkinfo.dll - 特征码 'Trojan-Downloader.Win32.Agent.erl' 被发现
D:\病毒测试\临时解压\lphc1swj0e3a7.exe - 特征码 'Trojan.Fakealert.UT' 被发现
D:\病毒测试\临时解压\pphc1swj0e3a7.exe - 特征码 'Trojan.Fakealert.TR' 被发现
D:\病毒测试\临时解压\rpicj.sys - 特征码 'Trojan-Downloader.Win32.Agent.bbb' 被发现
D:\病毒测试\临时解压\sgdewg.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现
D:\病毒测试\临时解压\tdfhex.dll - 特征码 'Backdoor.Win32.NetCrack.13.b' 被发现
D:\病毒测试\临时解压\tdggrz.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现
D:\病毒测试\临时解压\winsxp.exe - 特征码 'Backdoor.Hupigon' 被发现
D:\病毒测试\临时解压\XP-E79E1A77.EXE - 特征码 'Generic.Trojan.Flystudio.AI' 被发现
D:\病毒测试\临时解压\zgtwfx.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alfp' 被发现
D:\病毒测试\临时解压\zsdgff.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现
D:\病毒测试\临时解压\zycdex.dll - 特征码 'Trojan-PWS.Win32.OnLineGames.alrf' 被发现

        56 文件被扫描
          (0 压缩档 0 文件)
        53 特征码被侦测
        0 可疑代码段被发现
        耗时: 0:08.853
wangjay1980
发表于 2008-7-29 16:11:37 | 显示全部楼层
TO KL
barbara
发表于 2008-7-29 16:11:37 | 显示全部楼层
e...

[ 本帖最后由 barbara 于 2008-7-29 16:13 编辑 ]
kkgh
发表于 2008-7-29 16:13:28 | 显示全部楼层
费尔53个

瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: Trojan.PSW.Win32.GameOL.owf
病毒: Trojan.PSW.Win32.GameOL.ott
病毒: Trojan.PSW.Win32.GameOL.oek
病毒: Trojan.PSW.Win32.GameOL.ovi
病毒: Trojan.PSW.Win32.GameOL.osq
病毒: Trojan.PSW.Win32.GameOL.oum
病毒: Worm.Win32.Magistr.c     
病毒: Trojan.DL.Win32.Undef.wm
病毒: Trojan.Win32.Undef.ive   

用户来源:互联网

软件版本:20.55.11

28个
woai_jolin
发表于 2008-7-29 16:30:07 | 显示全部楼层
Scan Log
Version of virus signature database: 3305 (20080729)
Date: 2008-7-29  Time: 16:29:51
Scanned disks, folders and files: G:\v\生成物x56
G:\v\生成物x56\1.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\10.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\12.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\13.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\14.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\15.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\16.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\17.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\18.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\19.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\2.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\20.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\21.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\22.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\23.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\24.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\25.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\27.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\28.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\29.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\3.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\30.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\32.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\4.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\6.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\60qs6u1qe.sys - probably a variant of Win32/Rootkit.Agent.NBQ trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\7.gif - probably a variant of Win32/PSW.OnLineGames.NML trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\8.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\9.gif - a variant of Win32/PSW.OnLineGames.NXI trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\A[1].gif - is OK
G:\v\生成物x56\B.gif - Win32/Alman.NAD virus - deleted - quarantined
G:\v\生成物x56\C.gif - Win32/Agent.NXM trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\cedafb.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\D.gif - is OK
G:\v\生成物x56\ddserh.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\eth8023.sys - Win32/Spy.FtpSend.B trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\fmcvxy.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\Framdee.ttf - is OK
G:\v\生成物x56\fsrgeb.dll - Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\hhrdxd.dll - Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\i3ni.dll - a variant of Win32/BHO.NDW trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\IsDrv122.sys - Win32/Alman.NAD virus - deleted - quarantined
G:\v\生成物x56\jfrwdh.dll - Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\jhfrxz.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\linkinfo.dll - Win32/Alman.NAD virus - deleted - quarantined
G:\v\生成物x56\lphc1swj0e3a7.exe - Win32/TrojanDownloader.FakeAlert.DR trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\pphc1swj0e3a7.exe - Win32/Adware.WinFixer application - cleaned by deleting - quarantined [1]
G:\v\生成物x56\rpicj.sys - a variant of Win32/Rootkit.Agent.NGD trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\sgdewg.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\tdfhex.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\tdggrz.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\winsxp.exe - is OK
G:\v\生成物x56\XP-E79E1A77.EXE - is OK
G:\v\生成物x56\zgtwfx.dll - Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\zsdgff.dll - Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
G:\v\生成物x56\zycdex.dll - a variant of Win32/PSW.OnLineGames.NOA trojan - cleaned by deleting - quarantined [1]
Number of scanned objects: 56
Number of threats found: 51
Number of cleaned objects: 51
Time of completion: 16:29:59  Total scanning time: 8 sec (00:00:08)

Notes:
[1] Object has been deleted as it only contained the virus body.
woai_jolin
发表于 2008-7-29 16:32:24 | 显示全部楼层
2008-7-29 16:31:59        Kernel        File  'G:\v\0729\A[1].gif' was sent to ESET for analysis.       
2008-7-29 16:31:52        Kernel        File  'G:\v\0729\Framdee.ttf' was sent to ESET for analysis.       
2008-7-29 16:31:48        Kernel        File  'G:\v\0729\e11skDi7u.dll' was sent to ESET for analysis.       
2008-7-29 16:31:23        Kernel        File  'G:\v\0729\at_uni.exe' was sent to ESET for analysis.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-1 05:45 , Processed in 0.136346 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表