查看: 3723|回复: 11
收起左侧

[病毒样本] 临睡前再发两个

[复制链接]
The EQs
发表于 2007-3-7 23:06:48 | 显示全部楼层 |阅读模式
1111111111111

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
The EQs
 楼主| 发表于 2007-3-7 23:09:07 | 显示全部楼层
密码:123

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
kp2006
头像被屏蔽
发表于 2007-3-7 23:09:22 | 显示全部楼层
病毒: Trojan-PSW.Win32.OnLineGames.ig
文件: wl.exe
目录: D:\Documents and Settings\Administrator\桌面\三个病毒\三个病毒\wl
进程: [System Process]

病毒: Trojan-PSW.Win32.OnLineGames.es
文件: wsvbs.exe
目录: D:\Documents and Settings\Administrator\桌面\三个病毒\三个病毒\wsvbs
进程: [System Process]

病毒: Trojan-PSW.Win32.OnLineGames.es
文件: zt.exe
目录: D:\Documents and Settings\Administrator\桌面\三个病毒\三个病毒\zt
进程: [System Process]
nicolashuang
头像被屏蔽
发表于 2007-3-7 23:09:26 | 显示全部楼层
咖啡企业版第一个挂,剩下两个杀!
The EQs
 楼主| 发表于 2007-3-7 23:12:06 | 显示全部楼层
Time        Module        Object        Name        Threat        Action        User        Information
2007-3-7 23:12:20        AMON        file        C:\Documents and Settings\EQ2\桌面\三个病毒\三个病毒\三个病毒\wsvbs.exe        Win32/PSW.Agent.NCC trojan        quarantined - deleted - error while cleaning - operation unavailable for this type of object                Event occurred on a newly created file. The file was moved to quarantine. You may close this window.
2007-3-7 23:12:18        AMON        file        C:\Documents and Settings\EQ2\桌面\三个病毒\三个病毒\三个病毒\wl.exe        Win32/PSW.Delf.NEV trojan        quarantined - deleted - error while cleaning - operation unavailable for this type of object        KASPERSK-6C4206\EQ2        Event occurred on a new file created by the application: D:\Program Files\WinRAR\WinRAR.exe. The file was moved to quarantine. You may close this window.
2007-3-7 23:12:15        AMON        file        C:\Documents and Settings\EQ2\桌面\三个病毒\三个病毒\三个病毒\zt.exe        Win32/PSW.Agent.NCV trojan        quarantined - deleted - error while cleaning - operation unavailable for this type of object        KASPERSK-6C4206\EQ2        Event occurred on a new file created by the application: D:\Program Files\WinRAR\WinRAR.exe. The file was moved to quarantine. You may close this window.
mofunzone
发表于 2007-3-7 23:54:51 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\��'
C:\Documents and Settings\Administrator\My Documents\��\
  CS1.5多功能最强作弊器1.7版.exe
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\zt'
C:\Documents and Settings\Administrator\My Documents\zt\
  zt.exe
      [DETECTION] Is the Trojan horse TR/PSW.Agent.NCI
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\wl'
C:\Documents and Settings\Administrator\My Documents\wl\
  wl.exe
      [DETECTION] Is the Trojan horse TR/Delphi.Downloader.Gen
      [WARNING]   The file was ignored!
Begin scan in 'C:\Documents and Settings\Administrator\My Documents\wsvbs'
C:\Documents and Settings\Administrator\My Documents\wsvbs\
  wsvbs.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ES.514
      [WARNING]   The file was ignored!


End of the scan: 2007年3月7日  07:54
Used time: 00:10 min

The scan has been done completely.

      4 Scanning directories
      4 Files were scanned
      3 viruses and/or unwanted programs were found
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      0 Archives were scanned
      3 Warnings
      0 Notes
jlennon
头像被屏蔽
发表于 2007-3-8 11:15:25 | 显示全部楼层
Virus check with AntiVirusKit
Version 17.0.6282
Virus signatures of 3/8/2007
Start time: 3/8/2007 11:14
Engine(s): Engine A (AVK 17.3133), Engine B (AVKB 17.168)
Heuristic: On
Archives: On
System areas: On

Check system areas...
Check selected directories and files...
Object: wl.exe
        Path: C:\Documents and Settings\Administrator\桌面\三个病毒\三个病毒\wl
        Status: Move file into quarantine
        Virus: Win32:Onlinegames-ET [Trj] (Engine B)
Object: wsvbs.exe
        Path: C:\Documents and Settings\Administrator\桌面\三个病毒\三个病毒\wsvbs
        Status: Move file into quarantine
        Virus: Trojan-PSW.Win32.OnLineGames.es (Engine A)
Object: zt.exe
        Path: C:\Documents and Settings\Administrator\桌面\三个病毒\三个病毒\zt
        Status: Move file into quarantine
        Virus: Trojan-PSW.Win32.OnLineGames.es (Engine A)
Analysis complete: 3/8/2007 11:14
    3 files checked
    3 infected files detected
    0 suspected files detected
bridgewr
发表于 2007-3-8 12:32:20 | 显示全部楼层
微点报杀,已知的,那个作弊器微点报了对外访问

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
马力
发表于 2007-3-8 13:14:28 | 显示全部楼层
瑞星全挂
kp2006
头像被屏蔽
发表于 2007-3-8 13:35:38 | 显示全部楼层
瑞星垃圾 果然是x星 其实比金山都不如

我瑞星试了很多样本 没一个杀
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-4-30 07:13 , Processed in 0.154852 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表