木马清除大师772个病毒样本分析报告(Updated at 2008-05-06).
2008-05-06日我们的蜜罐网络一共捕获772个病毒样本,木马病毒以 15[1].exe,bak[1].css,ctfmon.exe,fdght.dll,lofsajbo.dll, mndscsrv.dll,msosmhfp00.dll,msosmsp2p32.sys, ntuser.com,oohxbbyt.dll,变种数量最大,详细报告如下:
注:以下病毒均可以通过木马清除大师强力查杀,下载地址:http://www.lofocus.com/download
| 文件名 |
大小 |
CRC |
是否加壳 |
变种数量 |
病毒类型 |
| ~tmp4029.exe |
23618bytes |
0XAA685AF0 |
否 |
1 |
Password |
| ~tmp330.exe |
23618bytes |
0XAA685AF0 |
否 |
1 |
Password |
| ~tmp1097.exe |
23584bytes |
0X5336DE7B |
否 |
1 |
Trojan |
| ~Temp3260.tmp |
1408bytes |
0X5652F15B |
是 |
1 |
Trojan |
| ~06.tmp |
10496bytes |
0X0B5E407E |
否 |
1 |
KeyLogger |
| _qosec5.msi |
19106bytes |
0XBB0A7B7D |
是 |
1 |
KeyLogger |
| _qosec4.msi |
16528bytes |
0X3119D719 |
否 |
1 |
Password |
| _qosec3.msi |
18908bytes |
0X571D7B5C |
是 |
1 |
BackDoor |
| _qosec2.msi |
19354bytes |
0X9DF5EFEA |
是 |
1 |
Trojan |
| _qosec1.msi |
19110bytes |
0X0CCA23C5 |
是 |
1 |
Trojan |
| _qosec0.msi |
1536bytes |
0X6CEE38FC |
否 |
1 |
Password |
| zzz.sys |
10880bytes |
0X33E2F002 |
否 |
1 |
Trojan |
| zyzxeime.dll |
536324bytes |
0XE3E188B5 |
否 |
4 |
Trojan |
| zywmcime.dll |
536836bytes |
0X5D24EE40 |
否 |
2 |
BackDoor |
| zxmsawin.dll |
535812bytes |
0X5D671D09 |
否 |
4 |
Password |
| zxcsahlp.exe |
14212bytes |
0X8283B6D4 |
是 |
2 |
Password |
| zscqahlp.exe |
14418bytes |
0X7D7CF9A7 |
是 |
2 |
KeyLogger |
| zptlbsys.dll |
535300bytes |
0X11FA25C4 |
否 |
3 |
BackDoor |
| zjydcx.dll |
211456bytes |
0XEB9FE404 |
否 |
1 |
KeyLogger |
| zaztamsn.exe |
15311bytes |
0X90BC870D |
是 |
1 |
BackDoor |
| yzztemsn.dll |
534276bytes |
0X7EFC67A5 |
否 |
1 |
BackDoor |
| yzztdmsn.dll |
534276bytes |
0X71CE411A |
否 |
1 |
Trojan |
| yxcsbhlp.dll |
532740bytes |
0X0B68F968 |
否 |
3 |
KeyLogger |
| ywtlgfl.dll |
9955bytes |
0XABC2EDB8 |
是 |
1 |
Trojan |
| ywg32.dll |
4332bytes |
0X5743DE2D |
是 |
1 |
BackDoor |
| ypcqchlp.dll |
532228bytes |
0XD2A8672E |
否 |
5 |
KeyLogger |
| XNGAnti.sys |
2816bytes |
0X20A2D8DF |
否 |
1 |
BackDoor |
| xdfntt.dll |
31000bytes |
0X17E7D211 |
否 |
1 |
KeyLogger |
| X7349.com |
149010bytes |
0X04B65FA7 |
否 |
1 |
KeyLogger |
| wzpeatsd.dll |
31000bytes |
0X7F2EAFD8 |
否 |
2 |
Password |
| wyhesm.dll |
222208bytes |
0X59240F2F |
否 |
1 |
Trojan |
| WSockDrv32.exe |
19236bytes |
0X4BE9AD4C |
是 |
1 |
KeyLogger |
| WSockDrv32.dll |
33036bytes |
0X01B5046C |
否 |
1 |
BackDoor |
| WinSys16.Sys |
48245bytes |
0XB650DA0B |
否 |
1 |
BackDoor |
| usbhdd.sys |
2944bytes |
0X40BFDD2C |
否 |
2 |
KeyLogger |
| urlcatch.dll |
36864bytes |
0XB70E0EFF |
否 |
1 |
BackDoor |
| update.exe |
76309bytes |
0XD04ACF57 |
是 |
2 |
KeyLogger |
| ttVUFVUF1011.dll |
6796bytes |
0XEBE4DBA1 |
是 |
1 |
BackDoor |
| ttQACQAC1038.dll |
7296bytes |
0X15D4E559 |
是 |
1 |
KeyLogger |
| ttNNBNNB1047.dll |
7023bytes |
0X3CD621CF |
是 |
1 |
Password |
| tpfsajbo.exe |
14737bytes |
0XD8BE5B6C |
是 |
2 |
Password |
| toayvl.dll |
218624bytes |
0X9D0F18A1 |
否 |
1 |
KeyLogger |
| tkctil.dll |
218624bytes |
0X0F95EAEC |
否 |
1 |
KeyLogger |
| ticisms.exe |
20541bytes |
0X38E5CC87 |
是 |
2 |
BackDoor |
| ticisms.dll |
31512bytes |
0X3428CEAB |
否 |
2 |
Password |
| s[1].exe |
1408bytes |
0X5652F15B |
是 |
1 |
KeyLogger |
| SysWmWaV.dll |
18797bytes |
0XB0857713 |
是 |
1 |
KeyLogger |
| System76.Ins |
24627bytes |
0XDECC6B4E |
否 |
1 |
Trojan |
| syscheck.exe |
1968bytes |
0X55918990 |
是 |
1 |
KeyLogger |
| svcos[1].exe |
20657bytes |
0X22AC2B06 |
是 |
1 |
BackDoor |
| svchost.exe |
11432bytes |
0XB030A83E |
是 |
1 |
Trojan |
| SVCH0ST.pif |
21555bytes |
0X5B931EDF |
否 |
1 |
KeyLogger |
| sperls.dll |
7168bytes |
0X316C7345 |
否 |
2 |
Password |
| soundma.exe |
51042bytes |
0XDC7E30F6 |
是 |
1 |
Trojan |
| smpdtg.dll |
215040bytes |
0XCDE4BC8F |
否 |
1 |
KeyLogger |
| sicfkg.dll |
215040bytes |
0X5A2E81B6 |
否 |
1 |
BackDoor |
| sehhter.dll |
26392bytes |
0X2DFE52FF |
否 |
1 |
BackDoor |
| sefawe.dll |
8192bytes |
0XB329A3B8 |
否 |
1 |
Trojan |
| rdthr.dll |
33048bytes |
0X8E405F81 |
否 |
1 |
Password |
| qqxyd.dll |
17920bytes |
0X899D55CD |
否 |
1 |
BackDoor |
| qq.exe |
32885bytes |
0XF55FEDC1 |
否 |
1 |
KeyLogger |
| ptjhchlp.dll |
533764bytes |
0X12CBDFB8 |
否 |
1 |
Trojan |
| pjjxadwd.dll |
534276bytes |
0X2E35685F |
否 |
1 |
Trojan |
| ozfycbyt.dll |
533252bytes |
0XF39376E1 |
否 |
1 |
Trojan |
| oohxbbyt.dll |
536324bytes |
0X246A8DEE |
否 |
3 |
KeyLogger |
| OLD19F.tmp |
1415680bytes |
0X50E14CCB |
否 |
1 |
KeyLogger |
| ntuser.com |
23072bytes |
0X3497FBCF |
否 |
4 |
Trojan |
| ntdfdisk.sys |
4160bytes |
0X0B391C16 |
否 |
2 |
Password |
| njritc.dll |
28816bytes |
0X6A7D9BEF |
否 |
2 |
Trojan |
| muiyky.dll |
222208bytes |
0XFD45527B |
否 |
1 |
BackDoor |
| msosping00.dll |
9803bytes |
0X711DDDFF |
是 |
1 |
KeyLogger |
| msosmsp2p32.sys |
3072bytes |
0X5A4D2758 |
否 |
3 |
Trojan |
| msosmsfpfis64.sys |
2560bytes |
0X8D38EB04 |
否 |
2 |
Password |
| msosmnsf00.dll |
13031bytes |
0XF036807B |
是 |
2 |
Trojan |
| msosmhfp00.dll |
14489bytes |
0XB2E61405 |
是 |
3 |
Trojan |
| msosiocp.dll |
6784bytes |
0XB055C30C |
是 |
1 |
Trojan |
| msosfmsq00.dll |
10402bytes |
0X40353173 |
是 |
1 |
BackDoor |
| msosdohs00.dll |
13804bytes |
0X74E9678A |
是 |
2 |
Password |
| MSDOS.bat |
14984bytes |
0X48E2E8B0 |
是 |
1 |
Trojan |
| mndscsrv.dll |
532740bytes |
0X0A479DA7 |
否 |
4 |
Password |
| MicroSoft.pif |
7936bytes |
0XDFC72E33 |
是 |
1 |
BackDoor |
| mfchlp64.exe |
17005bytes |
0X989EAE13 |
是 |
1 |
KeyLogger |
| mfchlp64.dll |
26888bytes |
0X4E73953E |
否 |
1 |
Password |
| mc29.tmp |
2560bytes |
0X192F5E43 |
否 |
1 |
BackDoor |
| lofsajbo.dll |
533764bytes |
0XC88D70CC |
否 |
4 |
KeyLogger |
| lmmh.exe |
13804bytes |
0X2267A8AC |
是 |
1 |
Trojan |
| ljenkdzz.exe |
20597bytes |
0X66BCB12F |
是 |
2 |
Password |
| jbhxabyt.exe |
15697bytes |
0X5B280E7F |
是 |
2 |
Trojan |
| isdsasrv.exe |
14180bytes |
0X78D17658 |
是 |
2 |
KeyLogger |
| inudhya.dll |
95744bytes |
0XF7E92E9E |
否 |
1 |
Password |
| iebar23.0.dll |
450560bytes |
0X6C1571F7 |
否 |
1 |
Password |
| huifitc.exe |
16737bytes |
0X5FFC0420 |
是 |
1 |
BackDoor |
| huifitc.dll |
41240bytes |
0XD868641C |
否 |
1 |
BackDoor |
| host.exe |
5872bytes |
0XCEAB8B3F |
是 |
1 |
KeyLogger |
| hfjg.dll |
28440bytes |
0XCC2BB576 |
否 |
1 |
Password |
| gjjte.dll |
28440bytes |
0XC379693C |
否 |
1 |
BackDoor |
| game.exe |
30188bytes |
0XF7280E77 |
是 |
1 |
Password |
| fmsjhif.exe |
19749bytes |
0X5798FBCA |
是 |
1 |
BackDoor |
| fmsjhif.dll |
29976bytes |
0XD5C89E62 |
否 |
1 |
BackDoor |
| fmsiocps.exe |
20949bytes |
0XDD8D8DEB |
是 |
1 |
Trojan |
| fmsiocps.dll |
32540bytes |
0XB578DA4E |
否 |
1 |
BackDoor |
| fjnbv.dll |
26256bytes |
0XB5B2208F |
否 |
1 |
KeyLogger |
| fiosectc.exe |
20461bytes |
0XA97CD515 |
是 |
1 |
KeyLogger |
| fiosectc.dll |
31516bytes |
0X28F90016 |
否 |
1 |
Trojan |
| fdght.dll |
8192bytes |
0XF10FDFA4 |
否 |
4 |
Password |
| dqWLVWLV1012.dll |
10991bytes |
0XD827A410 |
是 |
1 |
Trojan |
| dqFKKFKK1063.dll |
9842bytes |
0X99D78309 |
是 |
1 |
KeyLogger |
| down[10].exe |
23618bytes |
0XAA685AF0 |
否 |
1 |
KeyLogger |
| dionpis.exe |
20101bytes |
0X8D19034A |
是 |
1 |
Password |
| dionpis.dll |
30492bytes |
0X2E378F7A |
否 |
1 |
Password |
| dgxsrr.dll |
27928bytes |
0XB08F758B |
否 |
1 |
Trojan |
| dfhtrhy.dll |
31512bytes |
0X0D404401 |
否 |
1 |
KeyLogger |
| dat55.tmp |
15191bytes |
0X96DA564F |
是 |
1 |
KeyLogger |
| ctfmon.exe |
5036bytes |
0X08DD3541 |
是 |
4 |
KeyLogger |
| csrss[1].exe |
43885bytes |
0X0E8AA99A |
否 |
1 |
Trojan |
| crugd.dll |
42640bytes |
0X1B52EC1E |
否 |
1 |
BackDoor |
| coopen_setup_100047[1].exe |
32164bytes |
0X2E3BA401 |
否 |
1 |
Password |
| clfmon.exe |
19020bytes |
0XC5A31F37 |
是 |
1 |
Password |
| cedafb.dll |
222208bytes |
0X4C9E0515 |
否 |
1 |
KeyLogger |
| BoBo_ActiveX_V3[1].ocx |
791136bytes |
0X667F1D32 |
否 |
1 |
Password |
| bincdwsa.exe |
16693bytes |
0X229A61BA |
是 |
1 |
Password |
| bincdwsa.dll |
25872bytes |
0X75C4084A |
否 |
1 |
KeyLogger |
| bhomgr.dll |
126976bytes |
0X5A09468E |
否 |
1 |
KeyLogger |
| beep.sys |
10301bytes |
0X87775250 |
否 |
1 |
KeyLogger |
| barhelp24.0.dll |
265216bytes |
0XFE2BC92A |
否 |
1 |
BackDoor |
| bak[1].css |
13308bytes |
0X84685153 |
是 |
3 |
Trojan |
| azzxaime.exe |
15656bytes |
0X1FD5247F |
是 |
2 |
BackDoor |
| axmsawin.exe |
15741bytes |
0X77A65065 |
是 |
2 |
BackDoor |
| autolive.dll |
98304bytes |
0X8BB67F35 |
否 |
1 |
KeyLogger |
| atloader.dll |
36864bytes |
0XAAED1AB7 |
否 |
1 |
BackDoor |
| arp111.exe |
282624bytes |
0X81CB63E3 |
否 |
1 |
Password |
| anistio.exE |
16137bytes |
0X8C5FFB1B |
是 |
1 |
BackDoor |
| anistio.dll |
24860bytes |
0X8A83F8F7 |
否 |
1 |
KeyLogger |
| aitlasys.exe |
15353bytes |
0X1DF90060 |
是 |
2 |
BackDoor |
| adx.dll |
32768bytes |
0XB9D4AE93 |
否 |
1 |
Password |
| a014[1].exe |
1968bytes |
0X55918990 |
是 |
1 |
KeyLogger |
| 9[1].exe |
18610bytes |
0X7A3C6F47 |
是 |
1 |
Password |
| 8[1].exe |
20605bytes |
0X61958E78 |
是 |
1 |
Password |
| 8.exe |
15959bytes |
0X5FA4FEA8 |
是 |
1 |
KeyLogger |
| 7[1].exe |
23696bytes |
0X1DB22390 |
否 |
3 |
Trojan |
| 6[1].exe |
18712bytes |
0X85397E2A |
否 |
2 |
BackDoor |
| 6.exe |
14418bytes |
0X09F05B6D |
是 |
1 |
Password |
| 5[1].exe |
18200bytes |
0XCB44FF1F |
否 |
1 |
Trojan |
| 5.exe |
15282bytes |
0X60D011BE |
是 |
1 |
KeyLogger |
| 4[1].exe |
16664bytes |
0X25C2997C |
否 |
3 |
BackDoor |
| 4.exe |
19461bytes |
0X1901A34C |
是 |
1 |
BackDoor |
| 3[1].exe |
18712bytes |
0X85397E2A |
否 |
1 |
BackDoor |
| 360tray.exe |
28672bytes |
0X3F587103 |
否 |
1 |
Password |
| 3.exe |
15741bytes |
0X5D521207 |
是 |
1 |
KeyLogger |
| 25.ext |
16016bytes |
0X7B61E2F4 |
否 |
1 |
KeyLogger |
| 24.ext |
16664bytes |
0X856288D6 |
否 |
1 |
Password |
| 21.ext |
17688bytes |
0X94E2C94C |
否 |
1 |
Password |
| 20.exe |
15656bytes |
0XD4DFE087 |
是 |
1 |
KeyLogger |
| 2.exe |
15353bytes |
0X768EF0B9 |
是 |
1 |
BackDoor |
| 1[1].exe |
20605bytes |
0XF13C7B5F |
是 |
2 |
Trojan |
| 19.exe |
20605bytes |
0X23706E60 |
是 |
1 |
KeyLogger |
| 17.exe |
14571bytes |
0X98C01DE0 |
是 |
1 |
KeyLogger |
| 16[1].exe |
13016bytes |
0X9533E5C4 |
是 |
2 |
KeyLogger |
| 16.exe |
14737bytes |
0XEA15FAC3 |
是 |
1 |
Password |
| 15[1].exe |
18834bytes |
0X341D336C |
是 |
3 |
Password |
| 15.tmp |
20480bytes |
0X8669BC3E |
否 |
1 |
Trojan |
| 15.exe |
14180bytes |
0X413E4341 |
是 |
1 |
BackDoor |
| 14[1].exe |
18654bytes |
0X0BABD71F |
是 |
2 |
BackDoor |
| 14.tmp |
34064bytes |
0X7D6820E0 |
否 |
1 |
BackDoor |
| 14.exe |
18581bytes |
0X8FEAF29A |
是 |
1 |
Password |
| 13.exe |
14286bytes |
0XAEA6C6EA |
是 |
1 |
Trojan |
| 12.exe |
14893bytes |
0X087720F9 |
是 |
1 |
Password |
| 11.exe |
14208bytes |
0X81768BDA |
是 |
1 |
Password |
| 10[1].exe |
18466bytes |
0X2F8259CC |
是 |
1 |
Trojan |
| 10.exe |
15697bytes |
0XA2984B81 |
是 |
1 |
KeyLogger |
| 0[1].exe |
24948bytes |
0X01FF4440 |
是 |
2 |
Password |
| 014[1].exe |
23717bytes |
0XB6EA58C4 |
是 |
1 |
BackDoor |
| 0014[1].exe |
15042bytes |
0X8CDA294B |
是 |
1 |
Trojan |
| 00042.exe |
14737bytes |
0XEE260C23 |
是 |
1 |
Trojan |
| 00041.exe |
15869bytes |
0XBACC00D9 |
是 |
1 |
KeyLogger |
| 00040.exe |
15241bytes |
0XE6C7053F |
是 |
1 |
BackDoor |
| 00036.exe |
11700bytes |
0X248C7481 |
是 |
1 |
BackDoor |
| 00035.exe |
18769bytes |
0X9BF5B462 |
是 |
1 |
Trojan |
| 00031.exe |
14854bytes |
0X21FE81F1 |
是 |
1 |
Trojan |
| 00021.exe |
12240bytes |
0X68150E24 |
是 |
1 |
Trojan |
| 00020.exe |
14063bytes |
0XE1977874 |
是 |
1 |
KeyLogger |
| 00019.exe |
15656bytes |
0X576960DD |
是 |
1 |
Password |
| 00016.exe |
15959bytes |
0XC6F927D7 |
是 |
1 |
Password |
| 00015.exe |
11963bytes |
0XD73EB5D0 |
是 |
1 |
KeyLogger |
| 00014.exe |
19003bytes |
0X52B4976C |
是 |
1 |
KeyLogger |
| 00006.exe |
15741bytes |
0XFF0D8FA7 |
是 |
1 |
KeyLogger |
| 00004.exe |
17738bytes |
0XA3BD81A0 |
是 |
1 |
BackDoor |
| 00003.exe |
14180bytes |
0X3F375063 |
是 |
1 |
BackDoor |
| 00002.exe |
19633bytes |
0X92DE215A |
是 |
1 |
Password |
| 00001.exe |
20605bytes |
0X43C08D8B |
是 |
1 |
BackDoor |
| 0.exe |
19024bytes |
0X9AC59684 |
是 |
2 |
BackDoor | |