http://www.virscan.org/report/268dac9ce208de31f345464c8a684cf0.htmlVirSCAN.org Scanned Report :
Scanned time : 2008/11/19 22:27:39 (CST)
Scanner results: 77%的杀软(30/39)报告发现病毒
File Name : 0jbnlnu8.rar
File Size : 104002 byte
File Type : RAR archive data, v1d, os
MD5 : 2b6c7cb60ea15c7fe4bdda858393b464
SHA1 : 11f47ccbd0b0f9d21e7be1e3faa34ca6b409fc19
Online report :
http://virscan.org/report/268dac9ce208de31f345464c8a684cf0.htmlScanner Engine Ver Sig Ver Sig Date Time Scan result
a-squared 4.0.0.26 20081119050113 2008-11-19 5.57 Virus.Win32.OnLineGames.EZP!IK
安博士V3 2008.11.20.00 2008.11.20 2008-11-20 1.14 Win-Trojan/OnlineGameHack.117648
AntiVir 7.9.0.34 7.1.0.109 2008-11-19 1.86 TR/Crypt.XPACK.Gen
安天 2.0.18 20081119.1710974 2008-11-19 0.13 Trojan/Win32.OnLineGames.tkwf[GameThief]
Arcavir 1.0.5 200811161554 2008-11-16 1.22 -
Authentium 5.1.1 200811181846 2008-11-18 1.10 W32/Onlinegames.gen (Heuristic)
AVAST! 3.0.1 081118-0 2008-11-18 0.01 Win32:Monga [Trj]
AVG 7.5.52.442 270.9.7/1798 2008-11-18 1.77 -
BitDefender 7.81008.2222477 7.21949 2008-11-19 2.11 Packer.Malware.NSAnti.1
CA (VET) 9.0.0.143 31.6.6217 2008-11-19 11.69 -
ClamAV 0.94.1 8650 2008-11-19 0.03 -
Comodo 2.11 2.0.0.710 2008-11-18 0.46 -
CP Secure 1.1.0.715 2008.11.19 2008-11-19 6.72 Troj.GameThief.W32.OnLineGames.tkwf
Dr.Web 4.44.0.9170 2008.11.19 2008-11-19 3.60 Trojan.Nsanti.Packed
ewido 4.0.0.2 2008.11.19 2008-11-19 3.92 -
F-Prot 4.4.4.56 20081118 2008-11-18 1.08 Possible W32/Onlinegames.gen
F-Secure 5.51.6100 2008.11.19.11 2008-11-19 3.78 Trojan-GameThief.Win32.OnLineGames.tkwf [AVP]
飞塔 2.81-3.117 9.719 2008-11-19 0.75 W32/OnLineGames.SHZB!tr.pws
GData 19.1580/19.113 20081119 2008-11-19 6.48 Trojan-GameThief.Win32.OnLineGames.tkwf [Engine:A]
ViRobot 20081118 2008.11.18 2008-11-18 0.63 Trojan.Win32.PSWIGames.117648
Ikarus T3.1.01.45 2008.11.19.71880 2008-11-19 4.04 Virus.Win32.OnLineGames.EZP
江民杀毒 11.0.706 2008.11.19 2008-11-19 1.70 TrojanSpy.OnLineGames.gmt
卡巴斯基 5.5.10 2008.11.19 2008-11-19 0.03 Trojan-GameThief.Win32.OnLineGames.tkwf
金山毒霸 2008.9.8.18 2008.11.13.23 2008-11-13 0.71 -
迈克菲 5.3.00 5438 2008-11-18 2.56 PWS-Gamania.gen.a
Microsoft 1.4104 2008.11.19 2008-11-19 10.23 PWS:Win32/Frethog.AJ
mks_vir 2.01 2008.11.17 2008-11-17 2.63 Psw.Magania.fnw
Norman 5.93.01 5.93.00 2008-11-18 5.21 Smalltroj.HKHH
熊猫卫士 9.05.01 2008.11.18 2008-11-18 2.52 W32/Lineage.KDR.worm
趋势科技 8.700-1004 5.662.06 2008-11-19 0.02 WORM_ONLINEG.TTV
Quick Heal 10.00 2008.11.19 2008-11-19 0.98 Win32.Packed.Krap.b.3
瑞星 20.0 21.04.22.00 2008-11-19 0.94 -
Sophos 2.80.0 4.35 2008-11-19 1.96 Troj/Agent-HTK
Sunbelt 4474 4474 2008-11-04 2.67 Trojan-GameThief.Win32.OnLineGames.tkwf
赛门铁克 1.3.0.24 20081118.002 2008-11-18 0.08 Trojan.Packed.NsAnti
nProtect 2008-11-19.01 2622489 2008-11-19 3.10 Packer.Malware.NSAnti.1
The Hacker 6.3.1.1 v00158 2008-11-18 0.44 Trojan/OnLineGames.tkwf
VBA32 3.12.8.9 20081119.0840 2008-11-19 1.45 Trojan-GameThief.Win32.OnLineGames.tkwf
VirusBuster 4.5.11.10 10.93.7/671916 2008-11-19 0.91 -
文件名字:0jbnlnu8.exe(在U盘发现)
MD5: 2b6c7cb60ea15c7fe4bdda858393b464
Autorun.inf的内容:
;5Llj4aa1wS4Da0iAojsclC48JaLk7f3i23ndl8w4Ifeslqo4ZdKwalLaJdDo3qdoe23Z4jkawsqqLma07wrjpojJA5Dqk94paK1aKwps55ekrSs20K3silr
[AutoRun]
;fICswqkkea4iUiJ7aK58JLqdwajD2ssrwd8riDDlLAf19d45345wADsDqi47rKqalsfj8l3S3kkw4kos00eo4SacwlwAdkJFk3
open=0jbnlnu8.exe
;A18isaDdk9Losqrd41i4Dwjliwakaj58kwrwekKqw2DlOwdKpq6HcD3s0dAedsJ9fanA522q33aqaiii0akk0k77aL7isSadI4
shell\open\Command=0jbnlnu8.exe
;34LsAsik3L1Lkdfq4dai2iKal7iDkeap72D22331jL4aweI09495oKA4XrrKr0kksr4fe29D
shell\open\Default=1
;3awilsk4awdKldseS74JfLK3Ai3on07ddDs2sLjAwwoooSdf33KAdj4w7irDrKlap33KFDadkA244Lie12CarafAlsLak0i5KLs4oprSk9s5jq9jwwAllZrs5w0o1ka
shell\explore\Command=0jbnlnu8.exe
;7wk4KKLZ3wJisaro42f4ldklAkkkdJd5kssFdr42a3le
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)