木马清除大师831个病毒样本分析报告(Updated at 2008-07-24).
2008-07-24日我们的蜜罐网络一共捕获831个病毒样本,木马病毒以wcnonpe.dll,welyri.dll,rttptibj.dll,offecao.dll,jsnoer.dll, comrsdo.dll,axboqpxa.exe,aybpqcxb.exe,woswelc.dll,tdggrz.dll, tdffdl.dll,,变种数量最大,详细报告如下:
注:以下病毒均可以通过木马清除大师强力查杀,下载地址:http://www.lofocus.com/download
| 文件名 |
大小 |
CRC |
是否加壳 |
变种数量 |
病毒类型 |
| _tmp.bat |
16640bytes |
0X823EBE7A |
否 |
1 |
Password |
| zycdex.dll |
225792bytes |
0X385D3F61 |
否 |
3 |
BackDoor |
| zx[1].exe |
32634bytes |
0XAD217DB1 |
否 |
1 |
Password |
| zsqf.dll |
5202bytes |
0XB202E033 |
是 |
1 |
KeyLogger |
| zsdgff.dll |
225792bytes |
0X9B22BB4D |
否 |
2 |
Trojan |
| zqcabyop.exe |
19543bytes |
0X8A93508B |
是 |
1 |
Trojan |
| zpqaxbyq.exe |
20091bytes |
0XE1E6C6D1 |
是 |
1 |
KeyLogger |
| zpqaxboq.exe |
28072bytes |
0X2207A0B2 |
是 |
1 |
BackDoor |
| zoysj.dat |
19571bytes |
0X322CA6C7 |
是 |
1 |
Password |
| zjpsj.dat |
19259bytes |
0X797E3A81 |
是 |
1 |
Password |
| zgtwfx.dll |
232960bytes |
0XFAD0AE71 |
否 |
1 |
Trojan |
| zefdst.dll |
232960bytes |
0X5F961B15 |
否 |
1 |
Trojan |
| yqpraybz.exe |
20051bytes |
0X6A643B6F |
是 |
1 |
Trojan |
| yoqrxayz.exe |
11776bytes |
0XFD6B6E32 |
否 |
1 |
Trojan |
| yojsj.dat |
26492bytes |
0X279B5D5E |
是 |
1 |
Trojan |
| x[1].exe |
9728bytes |
0X3AE9F5FE |
否 |
1 |
Password |
| xyoqrxay.exe |
20055bytes |
0X3073C0F3 |
是 |
1 |
Trojan |
| wzcfsw.dll |
265216bytes |
0X33BC8C4E |
否 |
1 |
BackDoor |
| wyrsdj.dll |
229376bytes |
0X02AD27AB |
否 |
3 |
BackDoor |
| wyhesm.dll |
232960bytes |
0XBA286229 |
否 |
1 |
Password |
| wrqszl.dll |
232960bytes |
0X4FC787C7 |
否 |
1 |
Trojan |
| wrarsc[1].exe |
9870bytes |
0XBAE3A479 |
否 |
1 |
BackDoor |
| woswelc.dll |
28672bytes |
0X0C1B84F3 |
否 |
2 |
KeyLogger |
| wklsdd.dll |
236544bytes |
0XF2BB682F |
否 |
3 |
BackDoor |
| wfrdvq.dll |
240128bytes |
0X4E3B8D1D |
否 |
1 |
Trojan |
| welyri.dll |
28672bytes |
0X1D23BBCC |
否 |
1 |
KeyLogger |
| wcnonpe.dll |
24576bytes |
0XD68CA79A |
否 |
2 |
Password |
| vssqnn.exe |
31232bytes |
0XBDC51EC3 |
否 |
1 |
Password |
| vgrsj.dat |
22363bytes |
0X5EC473FE |
是 |
1 |
Password |
| update[1].exe |
21880bytes |
0X3DE9C81B |
是 |
6 |
Trojan |
| theralte.dll |
24576bytes |
0XE485CC75 |
否 |
2 |
KeyLogger |
| tdggrz.dll |
218624bytes |
0XD4C7F584 |
否 |
3 |
BackDoor |
| tdfhex.dll |
243712bytes |
0XEFD136CA |
否 |
3 |
BackDoor |
| tdffdl.dll |
229376bytes |
0XCC1ABE32 |
否 |
1 |
KeyLogger |
| SVCH0ST.pif |
17280bytes |
0XB04540E1 |
是 |
5 |
KeyLogger |
| sshsj.dat |
19979bytes |
0X8CA20F29 |
是 |
1 |
Password |
| srtsj.dat |
20127bytes |
0X4A0FF870 |
是 |
1 |
Password |
| sgdewg.dll |
225792bytes |
0X19705ECA |
否 |
3 |
KeyLogger |
| sctzxy.dll |
24576bytes |
0XB0CDAA62 |
否 |
1 |
Password |
| ryzsj.dat |
19367bytes |
0X4C8CD7FC |
是 |
1 |
Trojan |
| rxybzqca.exe |
20587bytes |
0X40FB0352 |
是 |
1 |
Trojan |
| rttptibj.dll |
568608bytes |
0X5EF17FDB |
否 |
1 |
Trojan |
| rlrsj.dat |
22643bytes |
0X093B3715 |
是 |
1 |
BackDoor |
| rflsj.dat |
12800bytes |
0XA11D29E4 |
否 |
1 |
KeyLogger |
| rfdswc.dll |
258048bytes |
0X3AB18D33 |
否 |
1 |
KeyLogger |
| raybpqcx.exe |
19675bytes |
0XF2A25996 |
是 |
1 |
KeyLogger |
| qsssj.dat |
19735bytes |
0X0DBDBABD |
是 |
1 |
KeyLogger |
| qpxayzpq.exe |
11264bytes |
0X19333BED |
否 |
1 |
Trojan |
| qpxaybpq.exe |
9728bytes |
0X8A58CEF9 |
否 |
1 |
Password |
| qjgsj.dat |
19739bytes |
0X6BF4E71E |
是 |
1 |
Password |
| qcabyopr.exe |
21567bytes |
0X3BE94E7F |
是 |
1 |
KeyLogger |
| prxybzqc.exe |
23399bytes |
0X936ACBFD |
是 |
1 |
BackDoor |
| pqaxboqp.exe |
20275bytes |
0X9AC6069F |
是 |
1 |
KeyLogger |
| pedadt.dll |
232960bytes |
0X7B8816F3 |
否 |
1 |
Password |
| pcaxboqp.exe |
20091bytes |
0X56874C09 |
是 |
1 |
Password |
| oqpxayzp.sys |
3328bytes |
0X6EFF8660 |
否 |
1 |
Password |
| oqpxayzp.exe |
22731bytes |
0X234DD2AF |
是 |
1 |
BackDoor |
| onxsj.dat |
21131bytes |
0XCE8AF4D7 |
是 |
1 |
Password |
| offecao.dll |
24576bytes |
0X5181087B |
否 |
2 |
KeyLogger |
| oevsj.dat |
20115bytes |
0X2C2D11B0 |
是 |
1 |
BackDoor |
| ntuser.com |
15360bytes |
0X6852F17F |
否 |
8 |
BackDoor |
| ntpapi.sys |
7808bytes |
0XBF693529 |
否 |
1 |
Password |
| NTNioWmSDK.dll |
21724bytes |
0X3B6DC5C0 |
是 |
1 |
KeyLogger |
| nqzsj.dat |
10752bytes |
0XFAADA31E |
否 |
1 |
Trojan |
| myusemt.dll |
24576bytes |
0X66887B13 |
否 |
2 |
KeyLogger |
| mttwfh.dll |
279552bytes |
0X83108A94 |
否 |
3 |
BackDoor |
| mslsj.dat |
19651bytes |
0X67D5B46A |
是 |
1 |
BackDoor |
| ms06014[1].exe |
9216bytes |
0XD9A0C81C |
否 |
1 |
Password |
| MicroSofts.pif |
19344bytes |
0XF831892E |
是 |
1 |
BackDoor |
| MicroSoft.pif |
14647bytes |
0X8539576E |
是 |
1 |
Trojan |
| mas1[1].exe |
19348bytes |
0XD2331A60 |
是 |
1 |
BackDoor |
| lzlsj.dat |
23335bytes |
0XFFBC27DC |
是 |
1 |
KeyLogger |
| longasus.dll |
24576bytes |
0X9A75A0BA |
否 |
2 |
Password |
| ko[1].exe |
18928bytes |
0X89722DF6 |
是 |
2 |
Password |
| knu32.dll |
35543bytes |
0X3BB87FD1 |
是 |
1 |
Trojan |
| kkk[1].exe |
54128bytes |
0X96BC8B4A |
是 |
1 |
Trojan |
| kgfghd.dll |
232960bytes |
0X7419D6DC |
否 |
3 |
BackDoor |
| jsnoer.dll |
24576bytes |
0X626541CA |
否 |
1 |
KeyLogger |
| joliom.dll |
24576bytes |
0XC6573CCA |
否 |
1 |
Password |
| jhfrxz.dll |
225792bytes |
0X3FE21FCD |
否 |
2 |
Trojan |
| jfrwdh.dll |
229376bytes |
0X4D896029 |
否 |
3 |
BackDoor |
| jfdses.dll |
225792bytes |
0XD16CCCFC |
否 |
1 |
BackDoor |
| jdsaex.dll |
222208bytes |
0X48BC260F |
否 |
3 |
BackDoor |
| jbsg.exe |
7896bytes |
0XF7A319AA |
是 |
1 |
Trojan |
| jbgyer.dll |
225792bytes |
0XCA224458 |
否 |
1 |
Password |
| iqxsj.dat |
19839bytes |
0XD87037FB |
是 |
1 |
BackDoor |
| inasj.dat |
19807bytes |
0X508367C9 |
是 |
1 |
Password |
| hourpx2.dll |
28672bytes |
0XA9FB8F4A |
否 |
1 |
BackDoor |
| hook_pcik.dll |
8704bytes |
0XBE8BEA5C |
否 |
2 |
BackDoor |
| hhrdxd.dll |
240128bytes |
0X958550D9 |
否 |
3 |
Trojan |
| hbhsj.dat |
20103bytes |
0X166AACEB |
是 |
1 |
KeyLogger |
| gxwsj.dat |
19179bytes |
0XA468FB98 |
是 |
1 |
Password |
| googlons.dll |
24576bytes |
0X1131384A |
否 |
1 |
Password |
| gdtsj.dat |
20375bytes |
0X25658413 |
是 |
1 |
BackDoor |
| fsrgeb.dll |
222208bytes |
0X4B50F62A |
否 |
3 |
BackDoor |
| fmcvxy.dll |
240128bytes |
0X59395C02 |
否 |
2 |
Password |
| fbwsj.dat |
19491bytes |
0XA0B2EEFE |
是 |
1 |
BackDoor |
| dscsj.dat |
20571bytes |
0XC9872D8F |
是 |
1 |
KeyLogger |
| dndsaf.dll |
225792bytes |
0X99291B66 |
否 |
3 |
BackDoor |
| ddserh.dll |
272384bytes |
0X816CAECA |
否 |
3 |
BackDoor |
| dbnsj.dat |
16040bytes |
0X510C0861 |
是 |
1 |
Trojan |
| comrsdo.dll |
24576bytes |
0X29EAAFE3 |
否 |
1 |
Trojan |
| cncsj.dat |
21539bytes |
0X8D4FACAA |
是 |
1 |
Password |
| cedafb.dll |
232960bytes |
0X693F7EAB |
否 |
3 |
Trojan |
| Cdaudio.sys |
2784bytes |
0XE8F27594 |
否 |
1 |
BackDoor |
| caxyoqrx.exe |
15737bytes |
0X3A42A6DF |
是 |
1 |
BackDoor |
| cawsj.dat |
20567bytes |
0XE1006884 |
是 |
1 |
Password |
| bzpcaxbo.exe |
9728bytes |
0X984CC587 |
否 |
1 |
BackDoor |
| byqprayb.exe |
19739bytes |
0XD8A04CB0 |
是 |
1 |
Password |
| beep.sys |
16256bytes |
0X257F9947 |
否 |
1 |
Trojan |
| bak[1].css |
21352bytes |
0X8F5AC5E5 |
是 |
12 |
Password |
| bak0[1].css |
19460bytes |
0X1AD4D269 |
是 |
2 |
KeyLogger |
| azjsj.dat |
19991bytes |
0XB1B37075 |
是 |
1 |
BackDoor |
| aybpqcxb.exe |
15072bytes |
0XF281AD51 |
是 |
1 |
Trojan |
| axboqpxa.exe |
19775bytes |
0X32B90CCF |
是 |
1 |
Password |
| awusj.dat |
19579bytes |
0X0F348331 |
是 |
1 |
Password |
| 866203 |
20079bytes |
0XD5D066BE |
是 |
1 |
Trojan |
| 845000 |
10752bytes |
0XD0E6DF46 |
否 |
1 |
Trojan |
| 825828 |
12800bytes |
0X9869719F |
否 |
1 |
BackDoor |
| 806781 |
9728bytes |
0XC844C8BD |
否 |
1 |
Trojan |
| 787703 |
19579bytes |
0X759791AC |
是 |
1 |
Trojan |
| 768562 |
19595bytes |
0X1C911EBF |
是 |
1 |
Password |
| 749390 |
19579bytes |
0XE5C1202F |
是 |
1 |
KeyLogger |
| 730296 |
19763bytes |
0X78B432B2 |
是 |
1 |
Trojan |
| 711234 |
20575bytes |
0XA41A8C5E |
是 |
1 |
Password |
| 6[1].exe |
15360bytes |
0X6852F17F |
否 |
1 |
Password |
| 691953 |
19387bytes |
0X3267EA85 |
是 |
1 |
Password |
| 672390 |
19163bytes |
0X425C50B0 |
是 |
1 |
Trojan |
| 652843 |
5388bytes |
0XD5A8F5A3 |
是 |
1 |
KeyLogger |
| 633437 |
11776bytes |
0XF31E6122 |
否 |
1 |
Trojan |
| 613875 |
20095bytes |
0XF420C178 |
是 |
1 |
Trojan |
| 5[1].exe |
9627bytes |
0X3AFA99D1 |
是 |
1 |
Password |
| 594156 |
19395bytes |
0XF6AAD958 |
是 |
1 |
BackDoor |
| 574156 |
19275bytes |
0X384C6E10 |
是 |
1 |
Password |
| 550234 |
12288bytes |
0X2E0FC759 |
否 |
1 |
Password |
| 530234 |
20543bytes |
0XF752F8C0 |
是 |
1 |
Trojan |
| 510031 |
19687bytes |
0XF84E8AEB |
是 |
1 |
BackDoor |
| 490750 |
19759bytes |
0X92EB981E |
是 |
1 |
Trojan |
| 469609 |
21135bytes |
0X31855CCD |
是 |
1 |
Password |
| 450234 |
13824bytes |
0X8A1C546A |
否 |
1 |
KeyLogger |
| 431062 |
13312bytes |
0X5F145C5E |
否 |
1 |
BackDoor |
| 411968 |
11776bytes |
0X652D2CB4 |
否 |
1 |
BackDoor |
| 392859 |
16896bytes |
0X0F9508C8 |
否 |
1 |
Password |
| 372796 |
37388bytes |
0X2A3C4E9B |
是 |
1 |
BackDoor |
| 352281 |
22759bytes |
0XB3252763 |
是 |
1 |
Password |
| 332937 |
10240bytes |
0X8F5D7181 |
否 |
1 |
Password |
| 313171 |
13824bytes |
0X0367EBD8 |
否 |
1 |
Trojan |
| 291375 |
11264bytes |
0X8A4F9199 |
否 |
1 |
KeyLogger |
| 269500 |
20375bytes |
0XD085B92C |
是 |
1 |
Trojan |
| 249703 |
12800bytes |
0XEFEDF2FB |
否 |
1 |
Password |
| 22[1].exe |
2577bytes |
0X56A62E34 |
是 |
1 |
Password |
| 207609 |
23427bytes |
0X8A89EA19 |
是 |
1 |
Trojan |
| 17[1].exe |
11037bytes |
0X52EC60C4 |
是 |
1 |
KeyLogger |
| 1712328 |
20079bytes |
0XD5D066BE |
是 |
1 |
BackDoor |
| 1693046 |
10752bytes |
0XD0E6DF46 |
否 |
1 |
Password |
| 1673500 |
12800bytes |
0X9869719F |
否 |
1 |
Password |
| 1653875 |
9728bytes |
0XC844C8BD |
否 |
1 |
BackDoor |
| 1628031 |
19579bytes |
0X759791AC |
是 |
1 |
KeyLogger |
| 1604875 |
19595bytes |
0X1C911EBF |
是 |
1 |
Password |
| 15[1].exe |
2577bytes |
0X2EEB4E78 |
是 |
1 |
BackDoor |
| 1585765 |
19579bytes |
0XE5C1202F |
是 |
1 |
BackDoor |
| 1566656 |
19763bytes |
0X78B432B2 |
是 |
1 |
Trojan |
| 1538078 |
20575bytes |
0XA41A8C5E |
是 |
1 |
Trojan |
| 1518390 |
19387bytes |
0X3267EA85 |
是 |
1 |
Password |
| 14[1].exe |
5397bytes |
0X977C965B |
是 |
1 |
Password |
| 1498750 |
19163bytes |
0X425C50B0 |
是 |
1 |
KeyLogger |
| 1479640 |
5388bytes |
0XD5A8F5A3 |
是 |
1 |
BackDoor |
| 1452984 |
11776bytes |
0XF31E6122 |
否 |
1 |
KeyLogger |
| 1433234 |
20095bytes |
0XF420C178 |
是 |
1 |
KeyLogger |
| 1412875 |
19395bytes |
0XF6AAD958 |
是 |
1 |
KeyLogger |
| 1393078 |
19275bytes |
0X384C6E10 |
是 |
1 |
KeyLogger |
| 1373078 |
12288bytes |
0X2E0FC759 |
否 |
1 |
KeyLogger |
| 1349953 |
20543bytes |
0XF752F8C0 |
是 |
1 |
Trojan |
| 1329546 |
19687bytes |
0XF84E8AEB |
是 |
1 |
Password |
| 1310250 |
19759bytes |
0X92EB981E |
是 |
1 |
BackDoor |
| 1290656 |
21135bytes |
0X31855CCD |
是 |
1 |
Password |
| 1262625 |
13824bytes |
0X8A1C546A |
否 |
1 |
Trojan |
| 1242828 |
13312bytes |
0X5F145C5E |
否 |
1 |
Password |
| 1223515 |
11776bytes |
0X652D2CB4 |
否 |
1 |
Password |
| 1204046 |
16896bytes |
0X0F9508C8 |
否 |
1 |
KeyLogger |
| 1171640 |
37388bytes |
0X2A3C4E9B |
是 |
1 |
KeyLogger |
| 1151343 |
22759bytes |
0XB3252763 |
是 |
1 |
Trojan |
| 1130843 |
10240bytes |
0X8F5D7181 |
否 |
1 |
Password |
| 1110171 |
13824bytes |
0X0367EBD8 |
否 |
1 |
BackDoor |
| 1086593 |
11264bytes |
0X8A4F9199 |
否 |
1 |
Trojan |
| 1065468 |
20375bytes |
0XD085B92C |
是 |
1 |
BackDoor |
| 1046000 |
12800bytes |
0XEFEDF2FB |
否 |
1 |
BackDoor |
| 1025781 |
23427bytes |
0X8A89EA19 |
是 |
1 |
KeyLogger |
| 0003269C |
13696bytes |
0XEA368CE2 |
否 |
1 |
Password | |