楼主: 金剑
收起左侧

[病毒样本] TATATATATAT

[复制链接]
欠妳緈諨
发表于 2007-6-22 21:36:27 | 显示全部楼层
AVAST15个

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
promised
发表于 2007-6-22 22:06:36 | 显示全部楼层
18个
C:\ABC\新建文件夹\...\1.exe_病毒_病毒 : infected Trojan-PSW.Win32.OnLineGames.wq
C:\ABC\...\cmdbcs.dll_病毒_病毒 : infected MalwareScope.Trojan-PSW.Game.1
C:\ABC\新建文件夹\...\cmdbcs.exe_病毒 : infected MalwareScope.Trojan-PSW.Game.3
C:\ABC\...\mh104.dll_病毒_病毒 : infected MalwareScope.Trojan-PSW.Game.9
C:\ABC\新建文件夹\...\MOSOU.dll_病毒_病毒 : is suspected of Downloader.Small.160
C:\ABC\新建文件夹\...\mosou.exe_病毒 : is suspected of Downloader.Small.160
C:\ABC\...\msccrt.dll_病毒_病毒 : infected MalwareScope.Trojan-PSW.Game.12
C:\ABC\新建文件夹\...\msccrt.exe_病毒 : infected MalwareScope.Trojan-PSW.Game.3
C:\ABC\...\nwizAsktao.dll_病毒_病毒 : infected Trojan-PSW.Win32.OnLineGames.ql
C:\ABC\...\nwizAsktao.exe_病毒_病毒 : infected Trojan-PSW.Win32.OnLineGames.sl
C:\ABC\...\nwizqjsj.dll_病毒_病毒 : is suspected of Downloader.Small.160
C:\ABC\新建文件夹\...\nwizqjsj.exe_病毒 : is suspected of Downloader.Small.160
C:\ABC\...\nwizzhuxians.dll_病毒_病毒 : is suspected of Downloader.Small.160
C:\ABC\新建文件夹\...\rdxtpb.exe_病毒 : infected Trojan-PSW.Win32.OnLineGames.wn
C:\ABC\...\soyybb.exe_病毒_病毒_病毒 : infected Trojan-PSW.Win32.OnLineGames.wn
C:\ABC\...\tjqevn.exe_病毒_病毒_病毒 : infected Trojan-PSW.Win32.OnLineGames.wk
C:\ABC\新建文件夹\新建文件夹\unvise32.exe_病毒 : infected Virus.Win32.Alman.A
C:\ABC\...\upxdnd.dll_病毒_病毒 : infected MalwareScope.Trojan-PSW.Game.12
scottxzt
发表于 2007-6-22 22:11:41 | 显示全部楼层
D:\Documents and Settings\dell\桌面\新建文件夹\cmdbcs.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\cmdbcs.exe_病毒
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\dll.exe_病毒_病毒.Vir
      [DETECTION] Is the Trojan horse TR/Drop.Flystud.B.19
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\mh104.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\MOSOU.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegam.SL
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\mosou.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegam.SL
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\nwizAsktao.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QL.68
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\nwizAsktao.exe_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.SL.9
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\nwizqjsj.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\nwizqjsj.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\nwizzhuxians.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\rdxtpb.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Wsgame.AN
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\soyybb.exe_病毒_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Wsgame.AN
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\SVCH0ST.exe_病毒_病毒
      [DETECTION] Is the Trojan horse TR/Drop.Flystud.B.19
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\tjqevn.exe_病毒_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.WK
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\unvise32.exe_病毒
      [DETECTION] Contains code of the Windows virus W32/Almanahe.A
      [WARNING]   The file was ignored!
D:\Documents and Settings\dell\桌面\新建文件夹\upxdnd.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   The file was ignored!


End of the scan: 2007年6月22日  22:15
Used time: 00:24 min

The scan has been done completely.

      1 Scanning directories
     20 Files were scanned
     17 viruses and/or unwanted programs were found
scottxzt
发表于 2007-6-22 22:19:43 | 显示全部楼层
还有3个上报了。
Whkroran
发表于 2007-6-23 01:35:56 | 显示全部楼层
detected: Trojan program Trojan-PSW.Win32.OnLineGames.sl        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\mosou.exe_²¡¶¾
detected: Trojan program Trojan-PSW.Win32.OnLineGames.wq        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\1.exe_²¡¶¾_²¡¶¾
detected: Trojan program Trojan-PSW.Win32.OnLineGames.sl        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\MOSOU.dll_²¡¶¾_²¡¶¾
detected: Trojan program Trojan-PSW.Win32.OnLineGames.ql        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\nwizAsktao.dll_²¡¶¾_²¡¶¾
detected: Trojan program Trojan-PSW.Win32.OnLineGames.sl        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\nwizAsktao.exe_²¡¶¾_²¡¶¾//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.qw        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\nwizqjsj.dll_²¡¶¾_²¡¶¾
detected: virus Trojan.Generic (modification)        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\nwizqjsj.exe_²¡¶¾//PE_Patch//UPack
detected: Trojan program Trojan-PSW.Win32.OnLineGames.wn        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\rdxtpb.exe_²¡¶¾
detected: Trojan program Trojan-PSW.Win32.OnLineGames.wn        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\soyybb.exe_²¡¶¾_²¡¶¾_²¡¶¾
detected: Trojan program Trojan-PSW.Win32.OnLineGames.wk        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\tjqevn.exe_²¡¶¾_²¡¶¾_²¡¶¾
detected: virus Virus.Win32.Alman.a        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\unvise32.exe_²¡¶¾
detected: virus Invader (modification)        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\cmdbcs.exe_²¡¶¾
detected: virus Invader (modification)        File: E:\Virus sample\н¨Îļþ¼Ð[1].part1.rar/н¨Îļþ¼Ð\msccrt.exe_²¡¶¾//PE_Patch//UPack
detected: Trojan program Virus.Win32.Alman.a        File: E:\Virus sample\н¨Îļþ¼Ð[1].part2.rar
detected: Trojan program Virus.Win32.Alman.a        File: E:\Virus sample\н¨Îļþ¼Ð[1].part3.rar
taihuxian
发表于 2007-6-23 05:43:46 | 显示全部楼层
Virus: Win32:Onlinegames-ACS [Trj], Win32:Onlinegames-ACD [Trj], Win32:Onlinegames-AEA [Trj]

Virus found while downloading Web content.

Address: bbs.kafan.cn
taihuxian
发表于 2007-6-23 05:44:27 | 显示全部楼层
Virus: Trojan-PSW.Win32.OnLineGames.sl (2x), Trojan-PSW.Win32.OnLineGames.ql, Trojan-PSW.Win32.OnLineGames.qw (2x)

Virus found while downloading Web content.

Address: bbs.kafan.cn
taihuxian
发表于 2007-6-23 05:44:48 | 显示全部楼层
Virus: Win32:Onlinegames-ACD [Trj] (5x), Win32:Alman-B, Win32:Onlinegames-AEA [Trj]

Virus found while downloading Web content.

Address: bbs.kafan.cn
ay24
头像被屏蔽
发表于 2007-6-24 01:28:19 | 显示全部楼层
楼主太厉害,怎么和费尔的文字说明一模一样,还好改了几个字。随便找个图来比一比,好象是一样的。


[ 本帖最后由 ay24 于 2007-6-24 01:36 编辑 ]
mofunzone
发表于 2007-6-24 03:32:18 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Documents and Settings\Administrator\My Documents\新建文件夹'
C:\Documents and Settings\Administrator\My Documents\新建文件夹\新建文件夹\
  1.exe_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.WQ.23
      [INFO]      The file was deleted!
  cmdbcs.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46e176c4.qua'!
  cmdbcs.exe_病毒
      [DETECTION] Is the Trojan horse TR/Dropper.Gen
      [INFO]      The file was deleted!
  dll.exe_病毒_病毒.Vir
      [DETECTION] Is the Trojan horse TR/Drop.Flystud.B.19
      [INFO]      The file was deleted!
  mh104.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  MOSOU.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegam.SL
      [INFO]      The file was deleted!
  mosou.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegam.SL
      [INFO]      The file was deleted!
  msccrt.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46e076cc.qua'!
  msccrt.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Onlinegames.AYK.72
      [INFO]      The file was deleted!
  nwizAsktao.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.QL.68
      [INFO]      The file was deleted!
  nwizAsktao.exe_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.SL.9
      [INFO]      The file was deleted!
  nwizqjsj.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46e676d1.qua'!
  nwizqjsj.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGam.QW
      [INFO]      The file was deleted!
  nwizzhuxians.dll_病毒_病毒
      [DETECTION] Is the Trojan horse TR/Spy.Gen
      [INFO]      The file was deleted!
  rdxtpb.exe_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Wsgame.AN
      [INFO]      The file was deleted!
  soyybb.exe_病毒_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.Wsgame.AN
      [INFO]      The file was deleted!
  SVCH0ST.exe_病毒_病毒
      [DETECTION] Is the Trojan horse TR/Drop.Flystud.B.19
      [INFO]      The file was deleted!
  tjqevn.exe_病毒_病毒_病毒
      [DETECTION] Is the Trojan horse TR/PSW.OnLineGames.WK
      [INFO]      The file was deleted!
  unvise32.exe_病毒
      [DETECTION] Contains code of the Windows virus W32/Almanahe.A
      [INFO]      The file was deleted!
  upxdnd.dll_病毒_病毒
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '46f576cc.qua'!


End of the scan: 2007年6月23日  12:37
Used time: 00:11 min

The scan has been done completely.

      2 Scanning directories
     20 Files were scanned
     20 viruses and/or unwanted programs were found
      4 classified as suspicious:
     16 files were deleted
      0 files were repaired
      4 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
     -4 Files not concerned
      0 Archives were scanned
      0 Warnings
      0 Notes
      0 Hidden objects were found
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-10 12:13 , Processed in 0.084385 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表