查看: 1926|回复: 7
收起左侧

[病毒样本] List(2)

[复制链接]
qigang
发表于 2008-8-4 21:14:50 | 显示全部楼层 |阅读模式
地址:http://aboutdr.cn/uk.txt


350
http://tta.netfeei.cn/aoo1.exe
http://tta.netfeei.cn/aoo2.exe
http://tta.netfeei.cn/aoo3.exe
http://tta.netfeei.cn/aoo4.exe
http://tta.netfeei.cn/aoo5.exe
http://ttb.netfeei.cn/aoo6.exe
http://ttb.netfeei.cn/aoo7.exe
http://ttb.netfeei.cn/aoo8.exe
http://ttb.netfeei.cn/aoo9.exe
http://ttb.netfeei.cn/aoo10.exe
http://ttc.netfeei.cn/aoo11.exe
http://ttc.netfeei.cn/aoo12.exe
http://ttc.netfeei.cn/aoo13.exe
http://ttc.netfeei.cn/aoo14.exe
http://ttc.netfeei.cn/aoo15.exe
http://ttc.netfeei.cn/aoo16.exe
http://ttd.netfeei.cn/aoo17.exe
http://ttd.netfeei.cn/aoo18.exe
http://ttd.netfeei.cn/aoo19.exe
http://ttd.netfeei.cn/aoo20.exe
http://ttd.netfeei.cn/aoo21.exe



17-21未能下载!




瑞星病毒查杀结果报告

清除病毒种类列表:
病毒: RootKit.Win32.Undef.jc   
病毒: Trojan.PSW.Win32.GameOL.pam
病毒: Trojan.PSW.Win32.GameOL.oek
病毒: Trojan.PSW.Win32.GameOL.pal
病毒: Trojan.PSW.Win32.GameOL.ott
病毒: Trojan.PSW.Win32.GameOL.paq
病毒: Trojan.PSW.Win32.GameOL.ozr

MAC 地址:00:11:5B:F3:6D:69

用户来源:互联网

软件版本:20.56.02
sltgr
发表于 2008-8-4 21:16:41 | 显示全部楼层
已删除: 木马程序 Trojan-PSW.Win32.OnLineGames.ahro        文件: C:\Users\Niya\Downloads\virus.rar/aoo1.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo10.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo11.exe//PE_Patch//UPack
已删除: 木马程序 Trojan.Win32.Agent.sav        文件: C:\Users\Niya\Downloads\virus.rar/aoo12.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.smnv        文件: C:\Users\Niya\Downloads\virus.rar/aoo13.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo14.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.shhv        文件: C:\Users\Niya\Downloads\virus.rar/aoo15.exe//PE_Patch.UPX//UPX
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo16.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.smjn        文件: C:\Users\Niya\Downloads\virus.rar/aoo2.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo3.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo4.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.smnv        文件: C:\Users\Niya\Downloads\virus.rar/aoo5.exe//PE_Patch//UPack
已删除: 木马程序 Trojan.Win32.Agent.von        文件: C:\Users\Niya\Downloads\virus.rar/aoo6.exe//#
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.smnv        文件: C:\Users\Niya\Downloads\virus.rar/aoo7.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.slzl        文件: C:\Users\Niya\Downloads\virus.rar/aoo8.exe//PE_Patch//UPack
已删除: 木马程序 Trojan-GameThief.Win32.OnLineGames.smjn        文件: C:\Users\Niya\Downloads\virus.rar/aoo9.exe//PE_Patch//UPack
zwl2828
发表于 2008-8-4 21:45:23 | 显示全部楼层

ESET Smart Security

C:\Users\Wesley\Downloads\virus.rar » RAR » aoo1.exe - a variant of Win32/PSW.Legendmir.NFX trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo10.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo11.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo12.exe - a variant of Win32/PSW.OnLineGames.NXI trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo13.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo14.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo15.exe - a variant of Win32/PSW.OnLineGames.NXI trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo16.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo2.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo3.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo4.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo5.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo6.exe - a variant of Win32/PSW.OnLineGames.NXI trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo7.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo8.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
C:\Users\Wesley\Downloads\virus.rar » RAR » aoo9.exe - probably a variant of Win32/PSW.OnLineGames.NML trojan
电影结束了
发表于 2008-8-4 21:58:55 | 显示全部楼层

全灭咯~
allinwonderi
发表于 2008-8-4 22:00:23 | 显示全部楼层

Norman Virus Control 5.99

Nerazzurri
发表于 2008-8-4 22:01:26 | 显示全部楼层

16

2008-8-4        22:00:34        1217858434        Nerazzurri        184        Sign of "Win32:Trojan-gen {Other}" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo1.exe\[Upack]\[Embedded#02070]\[Embedded#19270]" file.  
2008-8-4        22:00:36        1217858436        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo10.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:36        1217858436        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo11.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:Agent-ZRP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo12.exe\[UPX]\[Embedded#4060]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo13.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo14.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:Agent-ZRP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo15.exe\[UPX]\[Embedded#4060]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo16.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo2.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo3.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo4.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo5.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:Agent-ZRP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo6.exe\[UPX]\[Embedded#4060]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo7.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo8.exe\[Upack]\[Embedded#4080]" file.  
2008-8-4        22:00:37        1217858437        Nerazzurri        184        Sign of "Win32:OnLineGames-DQP [Trj]" has been found in "C:\Documents and Settings\Nerazzurri\桌面\virus.rar\aoo9.exe\[Upack]\[Embedded#4080]" file.
Nerazzurri
发表于 2008-8-4 22:02:17 | 显示全部楼层

16

Begin scan in 'C:\Documents and Settings\Nerazzurri\桌面\virus.rar'
C:\Documents and Settings\Nerazzurri\桌面\virus.rar
    [0] Archive type: RAR
    --> aoo1.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo10.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo11.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
      --> aoo12.exe
        --> Object
          [2] Archive type: RSRC
          --> Object
            [DETECTION] Is the TR/Agent.28672.104 Trojan
    --> aoo13.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo14.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
      --> aoo15.exe
          [DETECTION] Is the TR/Spy.Agent.dhh Trojan
    --> aoo16.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo2.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo3.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo4.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo5.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
      --> aoo6.exe
          [DETECTION] Is the TR/PSW.Online.Osh.2 Trojan
    --> aoo7.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo8.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> aoo9.exe
      [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      The file was deleted!
Palkia
发表于 2008-8-4 22:40:24 | 显示全部楼层
金山 清空
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-3 21:28 , Processed in 0.159414 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表