楼主: sam.to
收起左侧

[病毒样本] 28个全新木馬

[复制链接]
zhaohk
发表于 2008-9-1 15:21:32 | 显示全部楼层
楼主不厚道,为什么要设置下载权限呀!!!!
古滇牛仔
发表于 2008-9-1 15:51:57 | 显示全部楼层
样本区还来个阅读权限,郁闷。
yuanliu 该用户已被删除
发表于 2008-9-1 16:23:14 | 显示全部楼层
2008-9-1 16:21:12    已完成任务            
2008-9-1 16:21:12    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\upkk.exe96/NSPack        
2008-9-1 16:21:11    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up23.exe96        
2008-9-1 16:21:11    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up23.exe96        
2008-9-1 16:21:11    已检测到: Trojan-GameThief.Win32.OnLineGames.tarc    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up23.exe96/#        
2008-9-1 16:21:11    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up22.exe96        
2008-9-1 16:21:11    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up22.exe96        
2008-9-1 16:21:11    已检测到: Trojan-GameThief.Win32.OnLineGames.taqz    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up22.exe96/#        
2008-9-1 16:21:11    已删除: Trojan-GameThief.Win32.Magania.aays    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up18.exe96        
2008-9-1 16:18:55    已检测到: Trojan-GameThief.Win32.Magania.aays    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up18.exe96/#        
2008-9-1 16:18:55    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up07.exe96        
2008-9-1 16:18:55    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up07.exe96        
2008-9-1 16:18:55    已检测到: Trojan-GameThief.Win32.OnLineGames.syyl    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up07.exe96/#        
2008-9-1 16:18:55    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up05.exe96        
2008-9-1 16:18:54    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\up04.exe96        
2008-9-1 16:18:53    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\lvse01.exe96        
2008-9-1 16:18:53    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\lvse01.exe96        
2008-9-1 16:18:53    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\lvse01.exe96        
2008-9-1 16:18:53    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\lvse01.exe96        
2008-9-1 16:18:49    已检测到: Trojan-GameThief.Win32.OnLineGames.taqn    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\lvse01.exe96/#        
2008-9-1 16:18:40    已删除: Trojan-GameThief.Win32.OnLineGames.tarp    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa9.exe96        
2008-9-1 16:18:40    已检测到: Trojan-GameThief.Win32.OnLineGames.tarp    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa9.exe96        
2008-9-1 16:18:39    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa8.exe96        
2008-9-1 16:18:39    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa8.exe96        
2008-9-1 16:18:39    已检测到: Trojan-GameThief.Win32.OnLineGames.syyl    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa8.exe96/#        
2008-9-1 16:18:35    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa34.exe96        
2008-9-1 16:18:35    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa34.exe96        
2008-9-1 16:18:35    已检测到: Trojan-GameThief.Win32.OnLineGames.synh    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa34.exe96/#        
2008-9-1 16:18:34    已删除: Trojan-GameThief.Win32.OnLineGames.tarh    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa29.exe96        
2008-9-1 16:18:34    已检测到: Trojan-GameThief.Win32.OnLineGames.tarh    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa29.exe96        
2008-9-1 16:18:34    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa26.exe96        
2008-9-1 16:18:34    已删除: Trojan-GameThief.Win32.OnLineGames.tare    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa25.exe96        
2008-9-1 16:18:34    已检测到: Trojan-GameThief.Win32.OnLineGames.tare    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa25.exe96        
2008-9-1 16:18:34    已删除: Trojan-GameThief.Win32.OnLineGames.tard    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa23.exe96        
2008-9-1 16:18:34    已检测到: Trojan-GameThief.Win32.OnLineGames.tard    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa23.exe96        
2008-9-1 16:18:34    已删除: Trojan-GameThief.Win32.OnLineGames.tarb    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa22.exe96        
2008-9-1 16:18:34    已检测到: Trojan-GameThief.Win32.OnLineGames.tarb    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa22.exe96        
2008-9-1 16:18:34    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa21.exe96        
2008-9-1 16:18:33    已删除: Trojan-GameThief.Win32.OnLineGames.tara    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa17.exe96        
2008-9-1 16:18:33    已检测到: Trojan-GameThief.Win32.OnLineGames.tara    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa17.exe96        
2008-9-1 16:18:33    已删除: Trojan-GameThief.Win32.OnLineGames.taqy    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa16.exe96        
2008-9-1 16:18:33    已检测到: Trojan-GameThief.Win32.OnLineGames.taqy    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa16.exe96        
2008-9-1 16:18:33    已删除: Trojan-GameThief.Win32.OnLineGames.taqx    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa15.exe96        
2008-9-1 16:18:33    已检测到: Trojan-GameThief.Win32.OnLineGames.taqx    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\aa15.exe96        
2008-9-1 16:18:33    已删除: Trojan-GameThief.Win32.Magania.ablp    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\9.exe96        
2008-9-1 16:16:03    已检测到: Trojan-GameThief.Win32.Magania.ablp    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\9.exe96/#        
2008-9-1 16:16:03    已删除: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\7.exe96        
2008-9-1 16:16:03    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\7.exe96        
2008-9-1 16:16:03    已检测到: Trojan-GameThief.Win32.OnLineGames.syyl    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\7.exe96/#        
2008-9-1 16:16:03    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\20.exe96        
2008-9-1 16:16:02    已检测到: Heur.Trojan.Generic    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\2.exe96        
2008-9-1 16:16:02    已删除: Trojan-GameThief.Win32.Magania.ablp    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\16(1).exe96        
2008-9-1 16:13:56    已检测到: Trojan-GameThief.Win32.Magania.ablp    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\16(1).exe96/#        
2008-9-1 16:13:56    已删除: Trojan-GameThief.Win32.OnLineGames.taqf    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\14.exe96        
2008-9-1 16:11:36    已检测到: Trojan-GameThief.Win32.OnLineGames.taqf    C:\Documents and Settings\Owner.LENOVO-73E3485B\桌面\5454512.rar/5454512\14.exe96/#        
2008-9-1 16:11:34    已启动任务
yuanliu 该用户已被删除
发表于 2008-9-1 16:25:24 | 显示全部楼层
在卡巴运行过程中一度cpu100%,很是卡机!很厉害!我用了启发!看来杀马能力也很强!
palfan
发表于 2008-9-1 16:26:19 | 显示全部楼层

回复 34楼 yuanliu 的帖子

估计你是遇到Bug了。。。。
yuanliu 该用户已被删除
发表于 2008-9-1 16:29:45 | 显示全部楼层
卡巴杀过后,avg干掉两个
yuanliu 该用户已被删除
发表于 2008-9-1 16:34:37 | 显示全部楼层
原帖由 palfan 于 2008-9-1 16:26 发表
估计你是遇到Bug了。。。。

估计差不多!过了几分钟,终于提示我如下图:
sam.to
 楼主| 发表于 2008-9-1 17:05:23 | 显示全部楼层
卡巴未回信,但升級后报11,但有17不报
碧水寒潭
发表于 2008-9-1 17:53:02 | 显示全部楼层
Start of the scan: 2008年9月1日  17:52

Starting the file scan:

Begin scan in 'C:\Documents and Settings\acer\桌面\样本'
C:\Documents and Settings\acer\桌面\样本\5454512.rar
C:\Documents and Settings\acer\桌面\样本\5454512.rar
    [0] Archive type: RAR
      --> 5454512\2.exe96
          [DETECTION] Is the TR/PSW.Online.bin Trojan
    --> 5454512\20.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\7.exe96
      [DETECTION] Is the TR/Onlinegames.ssol Trojan
    --> 5454512\aa15.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\aa16.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
      --> 5454512\aa17.exe96
          [DETECTION] Is the TR/PSW.OnLineGa.aqq Trojan
    --> 5454512\aa21.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\aa22.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\aa25.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
      --> 5454512\aa29.exe96
          [DETECTION] Is the TR/PSW.Online.tdz Trojan
    --> 5454512\aa34.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\aa5.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\aa8.exe96
      [DETECTION] Is the TR/Onlinegames.ssol Trojan
    --> 5454512\aa9.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\lvse01.exe96
      [DETECTION] Is the TR/Drop.Small.btd Trojan
      --> 5454512\up04.exe96
          [DETECTION] Is the TR/PSW.Online.bin Trojan
    --> 5454512\up07.exe96
      [DETECTION] Is the TR/Onlinegames.ssol Trojan
    --> 5454512\up22.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
    --> 5454512\up23.exe96
      [DETECTION] Is the TR/Dropper.Gen Trojan
      --> 5454512\upkk.exe96
          [DETECTION] Is the TR/ATRAPS.Gen Trojan
    --> 5454512\yun.exe96
      [DETECTION] Is the TR/AntiHosts.Gen Trojan
    [NOTE]      The file was deleted!


End of the scan: 2008年9月1日  17:52
Used time: 00:11 Minute(s)

The scan has been done completely.

      1 Scanning directories
     29 Files were scanned
     28 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      1 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      0 Warnings
      1 Notes
htyhzd 该用户已被删除
发表于 2008-9-2 09:11:29 | 显示全部楼层

更新之后23个

结果: 找到 23 恶意软件
Trojan-GameThief.Win32.Magania.abls (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\16(1).exe96
Trojan-GameThief.Win32.OnLineGames.taus (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\2.exe96
Trojan-GameThief.Win32.OnLineGames.tauo (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\20.exe96
Trojan-GameThief.Win32.OnLineGames.taup (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\7.exe96
Trojan-PSW:W32/OnlineGames.TJL (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa15.exe96
Trojan-PSW:W32/OnlineGames.TJD (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa16.exe96
Trojan-PSW:W32/OnlineGames.TJJ (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa17.exe96
Trojan-GameThief.Win32.OnLineGames.tart (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa21.exe96
Trojan-PSW:W32/OnlineGames.TJB (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa22.exe96
Trojan-PSW:W32/OnlineGames.TJI (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa23.exe96
Trojan-PSW:W32/OnlineGames.TJK (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa25.exe96
Trojan-GameThief.Win32.OnLineGames.taum (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa26.exe96
Trojan-PSW:W32/OnlineGames.TJM (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa29.exe96
Trojan-GameThief.Win32.OnLineGames.tauq (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa34.exe96
Trojan-PSW:W32/OnlineGames.TJP (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa5.exe96
Trojan-GameThief.Win32.OnLineGames.taur (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa8.exe96
Trojan-PSW:W32/OnlineGames.TJF (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\aa9.exe96
Trojan-Dropper.Win32.Small.bwh (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\lvse01.exe96
Trojan-GameThief.Win32.OnLineGames.tauu (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\up04.exe96
Trojan-GameThief.Win32.OnLineGames.tauv (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\up05.exe96
Trojan-GameThief.Win32.OnLineGames.taut (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\up07.exe96
Trojan-GameThief.Win32.OnLineGames.tatj (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\up22.exe96
Trojan-GameThief.Win32.OnLineGames.taug (病毒)
C:\Documents and Settings\htyhzd\桌面\5454512.rar\5454512\up23.exe96
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-4-27 18:42 , Processed in 0.090348 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表