木马病毒:W32.Sality.AB 分析

豆豆网   技术应用频道   2008年01月22日    社区交流

内容摘要:W32.Sality.AB 是个 W32 病毒,长度 57,344 字节,感染 Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Vista, Windows XP 系统 ,它感染计算机中的可执行文件

  KAVSVCUI.

  KMAILMON.

  KPFWSVC.

  KWATCH.

  LOCKDOWN2000.

  LOGWATNT.

  LUALL.

  LUCOMSERVER.

  LUUPDATE.

  MCAGENT.

  MCMNHDLR.

  MCREGWIZ.

  MCUPDATE.

  MCVSSHLD.

  MINILOG.

  MYAGTSVC.

  MYAGTTRY.

  NAVAPSVC.

  NAVAPW32.

  NAVLU32.

  NAVW32.

  NEOWATCHLOG.

  NEOWATCHTRAY.

  NISSERV

  NISUM.

  NMAIN.

  NOD32

  NOD32.

  NORMIST.

  NOTSTART.

  NPAVTRAY.

  NPFMNTOR.

  NPFMSG.

  NPROTECT.

  NSCHED32.

  NSMDTR.

  NSSSERV.

  NSSTRAY.

  NTRTSCAN.

  NTXCONFIG.

  NUPGRADE.

  NVC95.

  NVCOD.

  NVCTE.

  NVCUT.

  NWSERVICE.

  OFCPFWSVC.

  OUTPOST.

  PAV.

  PAVFIRES.

  PAVFNSVR.

  PAVKRE.

  PAVPROT.

  PAVPROXY.

  PAVPRSRV.

  PAVSRV51.

  PAVSS.

  PCCGUIDE.

  PCCIOMON.

  PCCNTMON.

  PCCPFW.

  PCCTLCOM.

  PCTAV.

  PERSFW.

  PERTSK.

  PERVAC.

  PNMSRV.

  POP3TRAP.

  POPROXY.

  PREVSRV.

  PSIMSVC.

  QHM32.

  QHONLINE.

  QHONSVC.

  QHPF.

  QHWSCSVC.

  RAVMON.

  RAVTIMER.

  REALMON.

  REALMON95.

  RFWMAIN.

  RTVSCAN.

  RTVSCN95.

  RULAUNCH.

  SAVADMINSERVICE.

  SAVMAIN.

  SAVPROGRESS.

  SAVSCAN.

  SCAN32.

  SCANNINGPROCESS.

  SCHED.

  SDHELP.

来源:光华反病毒    责编:豆豆技术应用

正在加载评论...