查看: 3352|回复: 11
收起左侧

[病毒样本] 《一起看吧被google怀疑挂马》第二部

[复制链接]
will
发表于 2008-11-12 16:19:24 | 显示全部楼层 |阅读模式
第一部见:http://bbs.kafan.cn/thread-365732-1-1.html

h**p://59.34.197.63/exe1/ce.css

连接到http://59.34.197.63/asp.txt

下载30只:
h××p://59.34.197.63/list/bt01.exe
h××p://59.34.197.63/list/bt02.exe
h××p://59.34.197.63/list/bt03.exe
h××p://59.34.197.63/list/bt04.exe
h××p://59.34.197.63/list/bt05.exe
h××p://59.34.197.63/list/bt06.exe
h××p://59.34.197.63/list/bt07.exe
h××p://59.34.197.63/list/bt08.exe
h××p://59.34.197.63/list/bt09.exe
h××p://59.34.197.63/list/bt10.exe
h××p://59.34.197.63/list/bt11.exe
h××p://59.34.197.63/list/bt12.exe
h××p://59.34.197.63/list/bt13.exe
h××p://59.34.197.63/list/bt14.exe
h××p://59.34.197.63/list/bt15.exe
h××p://59.34.197.63/list/bt16.exe
h××p://59.34.197.63/list/bt17.exe
h××p://59.34.197.63/list/bt18.exe
h××p://59.34.197.63/list/bt19.exe
h××p://59.34.197.63/list/bt20.exe
h××p://59.34.197.63/list/bt21.exe
h××p://59.34.197.63/list/bt22.exe
h××p://59.34.197.63/list/bt24.exe
h××p://59.34.197.63/list/bt25.exe
h××p://59.34.197.63/list/bt26.exe
h××p://59.34.197.63/list/bt27.exe
h××p://59.34.197.63/list/bt29.exe
h××p://59.34.197.63/list/bt30.exe
h××p://59.34.197.63/list/bt31.exe
h××p://59.34.197.63/list/bt33.exe


  Total Command-Line Scanner Report
-------------------------------------------------------------------------
  Report for Jiangmin Command-Line Scanner :

  bt01.exe ----- TrojanSpy.OnLineGames.fbd  
  bt02.exe ----- TrojanSpy.Magania.fdp  
  bt03.exe ----- TrojanSpy.Magania.fdp  
  bt04.exe ----- TrojanSpy.OnLineGames.fbd  
  bt05.exe ----- TrojanSpy.OnLineGames.iyq  
  bt06.exe ----- TrojanSpy.OnLineGames.jfg  
  bt07.exe ----- TrojanSpy.Magania.fdp  
  bt09.exe ----- TrojanSpy.OnLineGames.euu  
  bt10.exe ----- TrojanSpy.OnLineGames.euu  
  bt11.exe ----- TrojanSpy.OnLineGames.euu  
  bt12.exe ----- TrojanSpy.OnLineGames.euu  
  bt13.exe ----- TrojanSpy.OnLineGames.euu  
  bt14.exe ----- TrojanSpy.OnLineGames.euu  
  bt15.exe ----- TrojanSpy.OnLineGames.euu  
  bt16.exe ----- TrojanSpy.OnLineGames.euu  
  bt17.exe ----- TrojanSpy.OnLineGames.euu  
  bt18.exe ----- TrojanSpy.OnLineGames.euu  
  bt19.exe ----- TrojanSpy.OnLineGames.euu  
  bt20.exe ----- TrojanSpy.OnLineGames.euu  
  bt21.exe ----- TrojanSpy.OnLineGames.euu  
  bt22.exe ----- TrojanSpy.OnLineGames.euu  
  bt24.exe ----- TrojanSpy.OnLineGames.euu  
  bt25.exe ----- TrojanSpy.OnLineGames.euu  
  bt26.exe ----- TrojanSpy.OnLineGames.euu  
  bt27.exe ----- TrojanSpy.OnLineGames.euu  
  bt29.exe ----- TrojanSpy.OnLineGames.euu  
  bt30.exe ----- TrojanSpy.OnLineGames.euu  
  bt31.exe ----- TrojanSpy.OnLineGames.euu  
  bt33.exe ----- TrojanSpy.OnLineGames.jlp  
  ce.css ----- TrojanDropper.Agent.qhd  
  jiocs.dll ----- TrojanDownloader.ACVE.ag  
  lklosd.sys ----- Trojan/KillAV.rv  

  Jiangmin found 32 detections in 33 files.
-------------------------------------------------------------------------
  Task done @ 2008/11/12 三 16:18:02.90


江民检出32   样本包总数  33

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
aerbeisi
发表于 2008-11-12 16:21:20 | 显示全部楼层

NOD32 31个

will
 楼主| 发表于 2008-11-12 16:22:46 | 显示全部楼层

Multi Command-Line Scanner Report
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt01.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: AFE4482CEDEAB8EFA99CF3871C4077E8   

A-squared ----- Trojan-PWS.Win32.Agent.hf!IK    
Avast ----- Win32:Trojan-gen {Other}    
Avg ----- PSW.OnlineGames.BGEE     
Antivir ----- TR/PSW.Magania.dx    
BitDefender ----- Trojan.PWS.Agent.SGC    
ClamWin ----- Trojan.Starter-12    
Dr.Web ----- Trojan.MulDrop.23001    
Eset ----- a variant of Win32/PSW.OnLineGames.NRF trojan    
Ikarus ----- Trojan-PWS.Win32.Agent.hf    
Jiangmin ----- TrojanSpy.OnLineGames.fbd    
Kaspersky ----- Trojan-GameThief.Win32.Magania.gen    
Kingsoft ----- Win32.Troj.OnlineGames.fd.118837    
Vba32 ----- Trojan-GameThief.Win32.Magania.gen    

*** 13/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt02.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 3C5BCC56463D289358BF72FB5AD5A4F1   

A-squared ----- Trojan-PWS.Win32.Agent.hf!IK    
Avast ----- Nothing   
Avg ----- PSW.Generic6.APYO     
Antivir ----- TR/PSW.Magania.dx    
BitDefender ----- Trojan.PWS.Agent.SGC    
ClamWin ----- Trojan.Starter-12    
Dr.Web ----- Trojan.MulDrop.23001    
Eset ----- a variant of Win32/PSW.OnLineGames.NRF trojan    
Ikarus ----- Trojan-PWS.Win32.Agent.hf    
Jiangmin ----- TrojanSpy.Magania.fdp    
Kaspersky ----- Trojan-GameThief.Win32.Magania.gen    
Kingsoft ----- Win32.Troj.OnlineGamesT.fd.119081    
Vba32 ----- Trojan-GameThief.Win32.Magania.gen    

*** 12/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt03.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 38235C95BD56DAAF2E1BCECC9ABC9EA1   

A-squared ----- Trojan-GameThief.Win32.Magania!IK    
Avast ----- Win32:Trojan-gen {Other}    
Avg ----- PSW.Generic6.APVW     
Antivir ----- TR/PSW.Magania.dx    
BitDefender ----- Trojan.PWS.Agent.SGC    
ClamWin ----- Trojan.Starter-12    
Dr.Web ----- Trojan.MulDrop.23001    
Eset ----- a variant of Win32/PSW.OnLineGames.NRF trojan    
Ikarus ----- Trojan-GameThief.Win32.Magania    
Jiangmin ----- TrojanSpy.Magania.fdp    
Kaspersky ----- Trojan-GameThief.Win32.Magania.gen    
Kingsoft ----- Win32.Troj.OnlineGamesT.fd.119081    
Vba32 ----- Trojan-GameThief.Win32.Magania.gen    

*** 13/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt04.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: FD780C1034381478A966DCF51A404287   

A-squared ----- Trojan-PWS.Win32.Agent.hf!IK    
Avast ----- Win32:Trojan-gen {Other}    
Avg ----- PSW.OnlineGames.BFZD     
Antivir ----- TR/PSW.O.tqly.16765    
BitDefender ----- Trojan.PWS.Agent.SGC    
ClamWin ----- Trojan.Starter-12    
Dr.Web ----- Trojan.PWS.Wsgame.8235    
Eset ----- a variant of Win32/PSW.OnLineGames.NRF trojan    
Ikarus ----- Trojan-PWS.Win32.Agent.hf    
Jiangmin ----- TrojanSpy.OnLineGames.fbd    
Kaspersky ----- Trojan-GameThief.Win32.OnLineGames.tqly    
Kingsoft ----- Win32.Troj.OnlineGames.fd.118885    
Vba32 ----- Trojan-GameThief.Win32.OnLineGames.tqly    

*** 13/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt05.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: A920E268B2B79027380068D6CAC865D1   

A-squared ----- Trojan-GameThief.Win32.OnLineGames!IK    
Avast ----- Nothing   
Avg ----- Generic11.BIJF     
Antivir ----- TR/Dropper.Gen    
BitDefender ----- Trojan.PWS.OnlineGames.AABK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Gamania.15713    
Eset ----- a variant of Win32/TrojanDropper.Agent.NMA trojan    
Ikarus ----- Trojan-GameThief.Win32.OnLineGames    
Jiangmin ----- TrojanSpy.OnLineGames.iyq    
Kaspersky ----- Trojan-GameThief.Win32.OnLineGames.trdy    
Kingsoft ----- Nothing   
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt06.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: C2F50D5A2D2184F000FB6904055B50BD   

A-squared ----- Trojan-PWS.Win32.Agent.hf!IK    
Avast ----- Win32:Trojan-gen {Other}    
Avg ----- PSW.OnlineGames.BFZD     
Antivir ----- TR/PSW.O.tqly.16765    
BitDefender ----- Trojan.PWS.Agent.SGC    
ClamWin ----- Trojan.Starter-12    
Dr.Web ----- Trojan.PWS.Wsgame.8235    
Eset ----- a variant of Win32/PSW.OnLineGames.NRF trojan    
Ikarus ----- Trojan-PWS.Win32.Agent.hf    
Jiangmin ----- TrojanSpy.OnLineGames.jfg    
Kaspersky ----- Trojan-GameThief.Win32.OnLineGames.tqly    
Kingsoft ----- Win32.PSWTroj.OnLineGames.114688    
Vba32 ----- Trojan-GameThief.Win32.OnLineGames.tqly    

*** 13/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt07.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: BCFC272CC660B975E2483247F59C2714   

A-squared ----- Trojan-PWS.Win32.Agent.hf!IK    
Avast ----- Nothing   
Avg ----- PSW.OnlineGames.BGPJ     
Antivir ----- TR/PSW.Magania.dx    
BitDefender ----- Trojan.PWS.Agent.SGC    
ClamWin ----- Trojan.Starter-12    
Dr.Web ----- Trojan.MulDrop.23001    
Eset ----- a variant of Win32/PSW.OnLineGames.NRF trojan    
Ikarus ----- Trojan-PWS.Win32.Agent.hf    
Jiangmin ----- TrojanSpy.Magania.fdp    
Kaspersky ----- Trojan-GameThief.Win32.Magania.gen    
Kingsoft ----- Win32.Troj.OnlineGamesT.fd.119081    
Vba32 ----- Trojan-GameThief.Win32.Magania.gen    

*** 12/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt08.exe   
Type: Win32 Executable Generic / Extension: .EXE   
MD5 Hash: B05361391D6F5292EA5DF84285D3B162   

A-squared ----- Trojan.Flystudio.AI!IK    
Avast ----- Nothing   
Avg ----- PSW.Ldpinch.11.BQ     
Antivir ----- TR/Dropper.Gen    
BitDefender ----- Trojan.Dropper.SPO    
ClamWin ----- PUA.Packed.NPack-2    
Dr.Web ----- Trojan.PWS.Gamania.15981    
Eset ----- a variant of Win32/PSW.Legendmir.NGG trojan    
Ikarus ----- Trojan.Flystudio.AI    
Jiangmin ----- Nothing   
Kaspersky ----- Heur.Trojan.Generic    
Kingsoft ----- Nothing   
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt09.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 6C55FF7CC209DB3E2A55ADD49909CDFE   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:Rootkit-gen [Rtk]    
Avg ----- Dropper.Agent.KUE     
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan-Dropper.Win32.Agent.zen    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Trojan-Dropper.Win32.Agent.zen    

*** 12/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt10.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 78CF6EA0B3D03FB77B5F23DD5C0385D1   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- MULDROP.Trojan    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan.Win32.Agent.amtx    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 10/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt11.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: A98E86D39C154DBE3C2263602261E501   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt12.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 7F3D1B264BC52778CC316FA2D780A955   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:Rootkit-gen [Rtk]    
Avg ----- Dropper.Agent.KQI     
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan-Dropper.Win32.Agent.zen    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Trojan-Dropper.Win32.Agent.zen    

*** 12/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt13.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 7A97111295D455939D3EB0C72415C809   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- MULDROP.Trojan    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan.Win32.Agent.amtx    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 10/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt14.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 373815893262190372401E9C574A3F58   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:Agent-ACMH [Drp]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- MULDROP.Trojan    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan.Win32.Agent.amtx    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 10/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt15.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 74F107787891806CD03D54AD7BA05A7F   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt16.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 9A0FD1BAD6FD17295FFD1D2636FAECC5   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt17.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 1E7DC5C22A2BB918D76DD6B2FD286783   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt18.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 58DBB47B88B3C51774302A13646D6DF6   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt19.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: DE270B680C9C1E5F7845ADDF7E652F1D   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt20.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 764B6E17AA82BCE0F1FFB56BAD5120CB   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt21.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 779396A9E83E704301D195341AC45F70   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt22.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 751A402DD2791121DAB98A59E5AE622E   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt24.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 2C4525E625BAD31070F086A874774B03   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt25.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: F82161B6AB237D4C6EFEA78A86801383   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt26.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: BC0904BB18C8C970310F208E2CA18A3D   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- MULDROP.Trojan    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan.Win32.Agent.amtx    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 10/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt27.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 28EB9D12DE58C76912D3931FA1C7BB92   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt29.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: D6704CEA1DD82F45A29A9E54464C6065   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt30.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 570E51BBA42C5EDA788716F463664DFE   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.27    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Nothing   
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt31.exe   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: 88657540CA49BED9378D8B09FF58E86F   

A-squared ----- Win32.SuspectCrc!IK    
Avast ----- Win32:OnLineGames-FDQ [Trj]    
Avg ----- Nothing   
Antivir ----- TR/Spy.Gen    
BitDefender ----- Trojan.Dropper.OnlineGames.CK    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Siggen.29    
Eset ----- a variant of Win32/PSW.OnLineGames.NRD trojan    
Ikarus ----- Win32.SuspectCrc    
Jiangmin ----- TrojanSpy.OnLineGames.euu    
Kaspersky ----- Trojan.Win32.Agent.amtx    
Kingsoft ----- Win32.Troj.OnlineGamesT.vy.90588    
Vba32 ----- Nothing   

*** 10/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\bt33.exe   
Type: UPX compressed Win32 Executable / Extension: .EXE   
MD5 Hash: 18956AB742236A2501417881D36B09D6   

A-squared ----- Trojan-PWS.Win32.QQPass.dzq!IK    
Avast ----- Win32:OnLineGames-BSI [Trj]    
Avg ----- PSW.Delf.CEY     
Antivir ----- TR/ATRAPS.Gen    
BitDefender ----- Trojan.PWS.YIR    
ClamWin ----- Nothing   
Dr.Web ----- Trojan.PWS.Lineage.4897    
Eset ----- probably a variant of Win32/PSW.Delf.NLZ trojan    
Ikarus ----- Trojan-PWS.Win32.QQPass.dzq    
Jiangmin ----- TrojanSpy.OnLineGames.jlp    
Kaspersky ----- Trojan-PSW.Win32.QQPass.dzq    
Kingsoft ----- Win32.Troj.QQPswT.bs.116858    
Vba32 ----- Trojan-PSW.Win32.QQPass.dzq    

*** 12/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\ce.css   
Type: DOS Executable Generic / Extension: .EXE   
MD5 Hash: C43762564C613C2842BD96EAB9E1EF81   

A-squared ----- Trojan-PWS.Win32.Agent.hf!IK    
Avast ----- Win32:Trojan-gen {Other}    
Avg ----- Win32/Small.FB     
Antivir ----- TR/Dldr.Agent.albp    
BitDefender ----- Trojan.Downloader.JLCQ    
ClamWin ----- Trojan.Crypt-41    
Dr.Web ----- Trojan.MulDrop.20788    
Eset ----- probably a variant of Win32/Genetik trojan    
Ikarus ----- Trojan-PWS.Win32.Agent.hf    
Jiangmin ----- TrojanDropper.Agent.qhd    
Kaspersky ----- Trojan-Dropper.Win32.Agent.yjl    
Kingsoft ----- Win32.Troj.DropRootKitT.rt.131072    
Vba32 ----- Trojan-Dropper.Win32.Agent.yjl    

*** 13/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\jiocs.dll   
Type: Win32 Executable MS Visual C++ / Extension: .EXE   
MD5 Hash: C6E2AAC4B8DDCBD234C440963214332D   

A-squared ----- Trojan-Downloader.Win32.ACVE.ba!IK    
Avast ----- Win32:KillAV-JG [Trj]    
Avg ----- Agent_r.DN     
Antivir ----- TR/Dldr.ACVE.BA    
BitDefender ----- Trojan.Inject.SJ    
ClamWin ----- Nothing   
Dr.Web ----- Nothing   
Eset ----- Nothing   
Ikarus ----- Trojan-Downloader.Win32.ACVE.ba    
Jiangmin ----- TrojanDownloader.ACVE.ag    
Kaspersky ----- Trojan-Downloader.Win32.ACVE.ba    
Kingsoft ----- Win32.TrojDownloader.ACVE.ba.45568    
Vba32 ----- Nothing   

*** 9/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   
D:\Desk\Samples\Collect\MCLS\lklosd.sys   
Type: Generic Win/DOS Executable / Extension: .EXE   
MD5 Hash: 5D9C18C2E95074BBACE6FC41DCEC5F1E   

A-squared ----- Virus.Win32.KillAV.JG!IK    
Avast ----- Win32:KillAV-JG [Trj]    
Avg ----- Small.ASV     
Antivir ----- TR/Killav.auf    
BitDefender ----- Trojan.KillAV.PA    
ClamWin ----- Nothing   
Dr.Web ----- Nothing   
Eset ----- Nothing   
Ikarus ----- Virus.Win32.KillAV.JG    
Jiangmin ----- Trojan/KillAV.rv    
Kaspersky ----- Trojan.Win32.KillAV.auf    
Kingsoft ----- Win32.TrojDownloader.Mnless.49152    
Vba32 ----- Trojan.Win32.KillAV.auf    

*** 10/13 antivirus engines found virus in this file ***   
-------------------------------------------------------------------------   

Task done @ 2008/11/12 三 16:21:52.89   
fzz8848
头像被屏蔽
发表于 2008-11-12 16:23:30 | 显示全部楼层
红伞全灭
The scan has been done completely.

      1 Scanning directories
     33 Files were scanned
     35 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
     33 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -2 Files not concerned
      0 Archives were scanned
      0 Warnings
     33 Notes
will
 楼主| 发表于 2008-11-12 16:26:20 | 显示全部楼层
貌似这次更新针对卡巴免杀了几个
feihongtian 该用户已被删除
发表于 2008-11-12 17:01:19 | 显示全部楼层
scan          18/33
sandbox    15

加的壳一样,悲剧了
Scanning Engines:
F-Secure AVP: 7.00.171, 2008-11-12
F-Secure Hydra: 2.08.8110, 2008-11-12

Result: 18 malware found
Trojan-GameThief.Win32.Magania.gen (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt01.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt02.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt03.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt07.exe Action: deleted
Trojan-GameThief.Win32.OnLineGames.tqly (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt04.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt06.exe Action: deleted
Trojan-GameThief.Win32.OnLineGames.trdy (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt05.exe Action: deleted
Trojan-Dropper.Win32.Agent.zen (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt09.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt12.exe Action: deleted
Trojan.Win32.Agent.amtx (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt10.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt13.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt14.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt26.exe Action: deleted
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt31.exe Action: deleted
Trojan-PSW.Win32.QQPass.dzq (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\bt33.exe Action: deleted
Trojan-Dropper.Win32.Agent.yjl (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\ce.css Action: deleted
Trojan-Downloader.Win32.ACVE.ba (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\jiocs.dll Action: deleted
Trojan.Win32.KillAV.auf (virus)
C:\Documents and Settings\sk\桌面\virusrun\081112\MCLS\lklosd.sys Action: deleted

[ 本帖最后由 feihongtian 于 2008-11-12 17:10 编辑 ]
sam.to
发表于 2008-11-12 17:12:00 | 显示全部楼层
上报15个到卡巴...
无尽藏海
发表于 2008-11-12 17:20:11 | 显示全部楼层
Scan Stats:
  Scan Time: 3 seconds
  Scan Options:
  Scan Targets: D:\Virus\MCLS(2).zip
  Counts:
   Total items scanned: 35
   - Files & Directories: 35
   - Registry Entries: 0
   - Processes & Start-up Items: 0
   - Network & Browser Items: 0
   - Other: 0
   - Trusted Files: 0
   - Skipped Files: 0

   Total security risks detected: 32
   Total items resolved: 32
   Total items that require attention: 0
wangjay1980
发表于 2008-11-12 21:12:27 | 显示全部楼层
2008-11-12 JAY21:11:37        Untreated        Trojan program        Trojan.Win32.KillAV.auf        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/lklosd.sys        Postponed       
2008-11-12 JAY21:11:37        Untreated        Trojan program        Trojan-Downloader.Win32.ACVE.ba        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/jiocs.dll        Postponed       
2008-11-12 JAY21:11:37        Untreated        Trojan program        Trojan-Dropper.Win32.Agent.yjl        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/ce.css/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:36        Untreated        Trojan program        Trojan-PSW.Win32.QQPass.dzq        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt33.exe/PE_Patch.UPX/UPX        Postponed       
2008-11-12 JAY21:11:36        Untreated        Trojan program        Trojan.Win32.Agent.amtx        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt31.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:36        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt30.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:36        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt29.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:36        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt27.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:35        Untreated        Trojan program        Trojan.Win32.Agent.amtx        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt26.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:35        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt25.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:35        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt24.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:35        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt22.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:35        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt21.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:34        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt20.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:34        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt19.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:34        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt18.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:34        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt17.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:33        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt16.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:33        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt15.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:33        Untreated        Trojan program        Trojan.Win32.Agent.amtx        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt14.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:33        Untreated        Trojan program        Trojan.Win32.Agent.amtx        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt13.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:32        Untreated        Trojan program        Trojan-Dropper.Win32.Agent.zen        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt12.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:32        Untreated        Trojan program        Heur.Trojan.Generic        High        Partial        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt11.exe/PE_Patch/UPack/data0000/UPack        Postponed       
2008-11-12 JAY21:11:32        Untreated        Trojan program        Trojan.Win32.Agent.amtx        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt10.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:31        Untreated        Trojan program        Trojan-Dropper.Win32.Agent.zen        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt09.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:31        Untreated        Trojan program        Heur.Trojan.Generic        High        Probably        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt08.exe/NSPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.Magania.gen        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt07.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.OnLineGames.tqly        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt06.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.OnLineGames.trdy        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt05.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.OnLineGames.tqly        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt04.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.Magania.gen        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt03.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.Magania.gen        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt02.exe/PE_Patch/UPack        Postponed       
2008-11-12 JAY21:11:15        Untreated        Trojan program        Trojan-GameThief.Win32.Magania.gen        High        Exact        C:\Documents and Settings\Owner\桌面\MCLS.zip/MCLS/bt01.exe/PE_Patch/UPack        Postponed

评分

参与人数 1人气 +1 收起 理由
kato9096 + 1 感谢測試,欢迎常来: )

查看全部评分

allinwonderi
发表于 2008-11-12 21:25:53 | 显示全部楼层

Norman Virus Control 5.99



[ 本帖最后由 allinwonderi 于 2008-11-12 21:26 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-15 04:35 , Processed in 0.129447 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表