Win32.Troj.Small.ab This is a trojan download, used to download and execute Trojans. Influence system has win9x/winnt.
Virus alias: TROJAN-DOWNLOADER.WIN32.SMALL.ABT[AVP]
Processing time:
Threat Level: ★
Chinese name:
Virus type: Trojan Horse
Impact System: WIN9X/WINNT
Virus behavior:
1. Create a fi
Spread of ARP virus websites such as Trojan. psw. win32.onlinegames. gen
Original endurer1st-
The virus adds code to the webpage:/------/
1 hxxp: // A ** D *. 1 ** 02 ** 4.mo *. CN/Shui **/4.htmCode included:/------/
1.1 hxxp: // www. I ** mm ** M * QM. ***. CN/h.htm contains the Code:/------/
1.1.1 hxxp: // 0 ** 867*5. Se * r ** Vice-Google. ***. CN/VIP/cn3100.h
; Delphi --- Virus. Win32.Induc. a [Anti infection solution]; By: ZzAge; BBS: http://www.52pojie.cn; Blog: http://hi.baidu.com/zzageRecently, this virus has ignited. A lot of formal software written by delphi won the prize ....Infected with the SysConst. dcu file of Delphi, the compiled programs are infected... but the virus
Virus. win32.autorun. Xu is infected with a traffic violation query webpage.EndurerOriginal2007-10-26 th1Version
The problem lies in the counter code used by the webpage:/------/
Check out the code of hxxp: // www. H * C ** JJ ** d.com/wfcx/count/online.asp:/---Document. write ("---/There are so many things to be hung up ~
I found hxxp: // W ***. 7 *** 373 * 4.cn/reg.htm? A. Code:/------/
Hxxp: // W **. 7 *
The netizen encountered Trojan. DL. win32.agent. yqv and suspected it was ARP virus transmission.
EndurerOriginal1Version
A netizen sent an email saying that when he is using a computer to browse the webpage, rising will prompt to discover the virus after a while:/---Virus name processing result found date path Fil
Trojan download win32.trojdownloader.delf.114688 virus behavior:
The virus is a trojan download, which downloads other viruses from the Internet to the client's machine and runs it. The virus runs the epigenetic derivation of a DLL file into the system directory.
1. Generate Files
%windir%\system32\downdll.dll
2. Mod
After writing "worm. win32.vb. after the FW analysis and cleanup plan, I did not expect to write special bans. However, many people have mentioned this virus these days. If I solve it one by one, I am not busy! The scope of infection is quite large! I have previously written an article "vbs programming to build your own virus exclusive tool". vbs is a little fami
The trojan that took me a day to solve is really hard to find.
1. We found that the c: \ windows \ system32 \ 30pzg8d. dll file was infected with Trojan. DL. win32.hmir. HL but it could not be deleted, so we had to force it through the ice blade icesword.
3. Restart after deletion. rundll prompts that the 30pzg8d. dll module cannot be found, indicating that there are services or startup items that are calling 30pzg8d. dll.
4. Search for rundll
EndurerOriginal1Version
Today, a friend said his computer could not be connected to the crowd to play games. Let me help you. The friend's computer system was newly installed with Win 2000, without any patches. It was installed with Kingsoft drug overlord and Kingsoft network hacker. Start lianzhongProgramThe Kingsoft website will pop up the inquiry window, the friend does not understand this stuff, so if he chooses not to allow, he will not be able to play the game.
During system patching, hi
Virus name (in Chinese):
Virus alias: TROJAN-PSW.WIN32.FOLIN.A[AVP]
Threat Level: ★★☆☆☆
Virus type: Trojan Horse program
Virus Length: 20818
Impact System: WIN9X\WINNT
Virus behavior:
This is a boast West tour Trojan virus,
. use the ShellExecute method of the Application Object Q.
Wpt8.vbeThe content is a VBScript. The function is to use a custom decryption function./---Function R (k)S = Split (k ,"@")T = ""For I _ = 0 to ubound (s)T = T + CHR (eval (S (I _)))NextR = TEnd Function---/Decrypt and execute the value of variable t.The value of the decrypted variable t is a VBScript, which can be downloaded using Microsoft. XMLHTTP, ADODB. Stream, and SCR using pting. FileSystemObject.Hxxp: // 11 **** 8. IMG **. PP **
Virus alias:
Processing time:
Threat Level: ★
Chinese name:
Virus type: Trojan Horse
Impact System: WIN9X/WINNT/WIN2K/WINXP/WIN2003
Virus behavior:
Writing tools: VB, Aspack compression
Infection conditions: User accidentally run, or through a floppy disk
Seizure conditions: Users are not careful to run
System Modifications:
The MagicCall.exe th
Each time you start the machine, you are prompted that the C:\windows\system32\wwjod.dll load fails and access is denied.
Use Sreng to start Project-WIN32 services and application deletion
[Kljs_server/kljs] [Stopped/disabled]
Driver deletion
[RAGQ/RAGQM] [Running/boot Start]
System repair-Browser add-in deletion
[Aprona Class]
{557B9038-FC87-453C-8B08-32D85F46EAC4}
Delete files after restarting your computer
C:\WINDOWS\system32\3721Search.dll
C
Virus name (Chinese): Tablet head virus
Alias:
Threat Level: ★★☆☆☆
Virus type: Hacker program
Virus Length: 151808
Impact System: WIN9X\WINNT
Virus behavior:
This is a backdoor virus, the
Win32.loader. C, Trojan. psw. win32.gameonline, Trojan. psw. win32.asktao, etc. 2
EndurerOriginal1Version
Check that the last modification time of the EXE file on other disks except drive C is similar, and the file size increases, such as hijackthis 1.99.1 English version. The normal size is 218,112 bytes, the 223,585 byte after infection should be infected. No w
Rootkit. win32.gamehack. Gen, Trojan. psw. win32.gameol. Gen, and rootkit. win32.mnless
EndurerOriginal2008-03-051Version
Today, a netizen said that his computer suddenly became very slow yesterday afternoon, so he had to force the shutdown. Today, there was a black window flashing when he started the system. He detected some viruses with rising, but the system r
Rootkit. win32.agent, Trojan. psw. win32.gameonline, Trojan. win32.mnless, etc. 2
EndurerOriginal1Version
There were a lot of things during this time and there was no time for remote assistance. Let the netizens handle them as follows:
Restart your computer to the safe mode with network connection,Use WinRAR to delete E:/autorun. inf and E:/autorun.exe. It is str
Encounter psw. win32.wowar, Trojan. win32.mnless, Trojan. immsg. win32.tbmsg, etc.
EndurerOriginal1Version
A netizen said rising in his computer often prompts to discover viruses and asked him to help him remotely via QQ.
Check the record history of rising and export a segment:/---Virus name processing result scan meth
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.