查看: 3086|回复: 11
收起左侧

[病毒样本] servhost(一小包)

[复制链接]
一派胡言
发表于 2007-4-30 18:06:10 | 显示全部楼层 |阅读模式
抓的几个,来尝尝。



本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
moonsilver
发表于 2007-4-30 18:09:44 | 显示全部楼层
1

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
yzt1004
发表于 2007-4-30 18:11:28 | 显示全部楼层
卡7全干了,包括一个启发
KAV-Longhorn
发表于 2007-4-30 18:16:03 | 显示全部楼层
红伞全干,三个启发

Starting the file scan:

Begin scan in 'C:\Documents and Settings\FEAR\My Documents\Downloads\Compressed\servhost.rar'
C:\Documents and Settings\FEAR\My Documents\Downloads\Compressed\servhost.rar
  [0] Archive type: RAR
  --> nwiztlbb.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> systemm.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> system2.jmp
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dii.31
  --> System64.sys
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dii.32
  --> ~tmp.tmp
      [DETECTION] Is the Trojan horse TR/PSW.Steal.27532.1
  --> Kvsc3.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ES.2116
  --> mppds.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QQ.19
  --> msccrt.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> servhost.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.NB.148
  --> winform.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.NB.136
      [INFO]      The file was moved to '46a7c227.qua'!
scottxzt
发表于 2007-4-30 18:20:53 | 显示全部楼层
servhost.rar\nwiztlbb.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Probably MULDROP.Trojan;;
servhost.rar\systemm.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.Sniff;;
servhost.rar\system2.jmp;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Qqpass.615;;
servhost.rar\System64.sys;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Qqpass.617;;
servhost.rar\~tmp.tmp;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Gamania;;
servhost.rar\Kvsc3.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Probably BACKDOOR.Trojan;;
servhost.rar\mppds.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Wsgame;;
servhost.rar\msccrt.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Wsgame;;
servhost.rar\servhost.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Wsgame;;
servhost.rar\winform.exe;D:\Documents and Settings\dell\桌面\servhost.rar;Trojan.PWS.Wsgame;;
servhost.rar;D:\Documents and Settings\dell\桌面;Archive contains infected objects;;
promised
发表于 2007-4-30 18:33:07 | 显示全部楼层
通杀

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
伯夷叔齐
发表于 2007-4-30 19:10:46 | 显示全部楼层
egin scan in 'D:\servhost.rar'
D:\servhost.rar
  [0] Archive type: RAR
  --> nwiztlbb.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> systemm.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> system2.jmp
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dii.31
  --> System64.sys
      [DETECTION] Is the Trojan horse TR/Dldr.Small.dii.32
  --> ~tmp.tmp
      [DETECTION] Is the Trojan horse TR/PSW.Steal.27532.1
  --> Kvsc3.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.ES.2116
  --> mppds.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QQ.19
  --> msccrt.exe
      [DETECTION] Contains suspicious code HEUR/Malware
  --> servhost.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.NB.148
  --> winform.exe
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.NB.136
      [WARNING]   The file was ignored!

End of the scan: 2007年4月30日  19:11
Used time: 00:14 min
The scan has been done completely.
      0 Scanning directories
     12 Files were scanned
     10 viruses and/or unwanted programs were found
solid_van
发表于 2007-4-30 21:11:34 | 显示全部楼层
nod32杀了9个,放了systemm.exe这个 今天在这边表现强差人意啊
KJLCN
发表于 2007-4-30 21:23:49 | 显示全部楼层
CA挂了……
不过Dr.Web好点

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
alleynsun
发表于 2007-4-30 21:31:00 | 显示全部楼层
我来贴金山的~~~

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-11 21:53 , Processed in 0.136148 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表