查看: 1782|回复: 8
收起左侧

[病毒样本] 来一些

[复制链接]
bjfhj
发表于 2009-4-22 12:02:23 | 显示全部楼层 |阅读模式
http://www.9651.net.cn/xin.txt

http://www.9607.net.cn/youxi/0.exe
http://www.9607.net.cn/youxi/1.exe
http://www.9607.net.cn/youxi/2.exe
http://www.9607.net.cn/youxi/3.exe
http://www.9607.net.cn/youxi/4.exe
http://www.9607.net.cn/youxi/5.exe
http://www.9607.net.cn/youxi/6.exe
http://www.9607.net.cn/youxi/7.exe
http://www.9607.net.cn/youxi/8.exe
http://www.9607.net.cn/youxi/9.exe
http://www.9607.net.cn/youxi/10.exe
http://www.9607.net.cn/youxi/11.exe
http://www.9607.net.cn/youxi/12.exe
http://www.9607.net.cn/youxi/13.exe
http://www.9607.net.cn/youxi/14.exe
http://www.9607.net.cn/youxi/15.exe
http://www.9607.net.cn/youxi/16.exe
http://www.9607.net.cn/youxi/17.exe
http://www.9607.net.cn/youxi/18.exe
http://www.9607.net.cn/youxi/19.exe
http://www.9607.net.cn/youxi/20.exe
http://www.9607.net.cn/youxi/21.exe
http://www.9607.net.cn/youxi/22.exe
http://www.9607.net.cn/youxi/23.exe
http://www.9607.net.cn/youxi/24.exe
http://www.9607.net.cn/youxi/25.exe
http://www.9607.net.cn/youxi/26.exe
http://www.9607.net.cn/youxi/27.exe
http://www.9607.net.cn/youxi/new/shengji.exe
328397663
发表于 2009-4-22 12:13:36 | 显示全部楼层


部分无法下载.

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wrq
发表于 2009-4-22 12:15:52 | 显示全部楼层
When accessing data from the URL, "http://bbs.kafan.cn/attachment.php?aid=518797&k=68de0925f92a1520e6bef0d572cb219e&t=1240373716"
a virus or unwanted program 'TR/PSW.Online.nua.2' [trojan] was found.
Action taken: Blocked file
凝逸反毒
发表于 2009-4-22 12:30:44 | 显示全部楼层
凝逸反毒  ok:0|毒:44|末知:0|47/48|每秒2个文件
Sebastian
发表于 2009-4-22 14:50:12 | 显示全部楼层

回复 2楼 328397663 的帖子

Starting the file scan:

Begin scan in 'D:\kafan\新建文件夹 (2)'
D:\kafan\新建文件夹 (2)\1.exe
    --> Object
      [DETECTION] Is the TR/PSW.Online.nua.2 Trojan
    [NOTE]      A backup was created as '4a53be13.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\10.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
        [DETECTION] Is the TR/PSW.Zosernam.C.2 Trojan
      --> Object
        [DETECTION] Is the TR/PSW.Online.nua.2 Trojan
    [NOTE]      A backup was created as '4a1cbe15.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\11.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a1cbe16.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\13.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
        [DETECTION] Is the TR/PSW.Zosernam.C.2 Trojan
      --> Object
        [DETECTION] Is the TR/PSW.Online.nua.2 Trojan
    [NOTE]      A backup was created as '4a1cbe18.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\15.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a1cbe1a.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\16.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
        [DETECTION] Is the TR/PSW.Zosernam.C.2 Trojan
      --> Object
        [DETECTION] Is the TR/PSW.OnlineGames.uwlh Trojan
    [NOTE]      A backup was created as '4a1cbe1b.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\17.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a1cbe1c.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\18.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a1cbe1d.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\19.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a1cbe1e.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\2.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a53be14.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\21.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a1cbe17.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\22.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
        [DETECTION] Is the TR/PSW.Online.nua.2 Trojan
    [DETECTION] Contains HEUR/Malware suspicious code
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      A backup was created as '4a1cbe19.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\23.exe
    --> Object
      [1] Archive type: RSRC
      --> Object
        [DETECTION] Is the TR/PSW.Zosernam.C.2 Trojan
      --> Object
        [DETECTION] Is the TR/PSW.Online.nua.2 Trojan
    [NOTE]      A backup was created as '4b660bfb.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\24.exe
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      A backup was created as '4b660bfc.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\25.exe
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      A backup was created as '4b660bfd.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\26.exe
    [DETECTION] Is the TR/Dropper.Gen Trojan
    [NOTE]      A backup was created as '4b660bfe.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\3.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a53be15.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\4.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4b290bf6.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\5.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a53be17.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\6.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4b290bf8.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\7.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a53be19.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\8.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4a53be16.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\9.exe
    [DETECTION] Is the TR/Hijacker.Gen Trojan
    [NOTE]      A backup was created as '4b290bf7.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
D:\kafan\新建文件夹 (2)\shengji.exe
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '4a53be50.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2009年4月22日  14:49
Used time: 00:03 Minute(s)

The scan has been done completely.

      1 Scanned directories
     24 Files were scanned
     28 Viruses and/or unwanted programs were found
      1 Files were classified as suspicious
     24 files were deleted
      0 Viruses and unwanted programs were repaired
     24 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
     -5 Files not concerned
      0 Archives were scanned
      0 Warnings
     24 Notes
黑衣~魂
发表于 2009-4-22 15:21:05 | 显示全部楼层
DR.WEB KILL ALL

1.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.origin;Deleted.;
10.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.origin;Deleted.;
22.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.origin;Deleted.;
shengji.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.origin;Deleted.;
22.exe\data002;D:\Documents and Settings\Administrator\桌面\tr\22.exe;Trojan.PWS.Wsgame.11288;;
10.exe\data002;D:\Documents and Settings\Administrator\桌面\tr\10.exe;Trojan.PWS.Wsgame.11223;;
23.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.11210;Deleted.;
16.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.11178;Deleted.;
13.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wsgame.11177;Deleted.;
25.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.PWS.Wow.1296;Deleted.;
26.exe\data001;D:\Documents and Settings\Administrator\桌面\tr\26.exe;Trojan.PWS.Gamania.18447;;
24.exe;D:\Documents and Settings\Administrator\桌面\tr;Trojan.MulDrop.31217;Deleted.;
11.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
15.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
17.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
18.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
19.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
2.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
21.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
3.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
4.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
5.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
6.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
7.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
8.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
9.exe;D:\Documents and Settings\Administrator\桌面\tr;Probably MULDROP.Trojan;Renamed.;
10.exe;D:\Documents and Settings\Administrator\桌面\tr;Container contains infected objects;Invalid path to file ;
22.exe;D:\Documents and Settings\Administrator\桌面\tr;Container contains infected objects;Invalid path to file ;
26.exe;D:\Documents and Settings\Administrator\桌面\tr;Container contains infected objects;Deleted.;
kw1129
发表于 2009-4-22 16:55:12 | 显示全部楼层
NOD4扫描到24只
kingmuro
头像被屏蔽
发表于 2009-4-22 17:35:23 | 显示全部楼层

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
尤金卡巴斯基
发表于 2009-4-22 23:06:52 | 显示全部楼层
Kaspersky Kill All

2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blvm        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/1.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.uwjz        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/10.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blxb        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/11.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.uwek        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/13.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwr        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/15.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.uweg        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/16.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-Downloader.Win32.Agent.brqe        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/17.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwr        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/18.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwr        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/19.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwl        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/2.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blxb        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/21.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blvs        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/22.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blvn        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/23.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.WOW.lhj        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/24.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.WOW.ihh        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/25.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.WOW.iex        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/26.exe               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwl        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/3.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blws        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/4.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blws        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/5.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blxa        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/6.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blws        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/7.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blws        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/8.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwl        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/9.exe//PE_Patch.UPX//UPX               
2009/4/22 23:05:35        已清除        木马程序 Trojan-GameThief.Win32.OnLineGames.blwz        G:\Temp\Virus\下载物.zip/新建文件夹 (2)/shengji.exe//UPack
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-11-7 12:22 , Processed in 0.125431 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表