瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » 为何现在流行HijackThis,不用SRE呢,我觉得SRE扫描详细!
阿杜QQ - 2006-5-11 18:03:00
希望高人说说H 和sre的区别,我决的SRE扫描完整!
baohe - 2006-5-11 18:07:00
引用:
【阿杜QQ的贴子】希望高人说说H 和sre的区别,我决的SRE扫描完整!
...........................

的确——SRE扫描完整,但我看着头晕!内容太多。
其实,还有一个不错的工具——autoruns。瑞星防火墙中也带这个工具。隐去微软的项目后,内容要简洁得多。看着也舒服些。
不知为什么没什么人用。
yanmings - 2006-5-11 18:07:00
hijackthis操作较简单,日志也不复杂
sre能把人看晕
阿杜QQ - 2006-5-11 18:10:00
有人说H 能发现鸽子,SRE不能是真的吗?
baohe - 2006-5-11 20:51:00
引用:
【阿杜QQ的贴子】有人说H 能发现鸽子,SRE不能是真的吗?
...........................

瞎说
阿杜QQ - 2006-5-11 20:59:00
为何H 扫描的那么少,SRE扫描的很多啊
baohe - 2006-5-11 21:12:00
引用:
【阿杜QQ的贴子】为何H 扫描的那么少,SRE扫描的很多啊
...........................

能否扫到灰鸽子,不是以日志的内容多少来论的。
阿杜QQ - 2006-5-11 21:14:00
哪个能更方便发现鸽子?
baohe - 2006-5-11 21:17:00
【回复“阿杜QQ”的帖子】
内容少的
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run           

+ AddrPlus3        TENCENT    c:\program files\tencent\adplus\stup.exe

+ KAVPersonal50    Kaspersky Anti-Virus GUI Part    Kaspersky Lab    c:\program files\kaspersky lab\kaspersky anti-virus personal pro\kav.exe

+ RunShadowTip    ShadowTip    PowerShadow    c:\windows\system32\shadow\shadowtip.exe

C:\Documents and Settings\All Users\「开始」菜单\程序\启动           

+ Adobe Gamma Loader.lnk    Adobe Gamma Loader    Adobe Systems, Inc.    c:\program files\common files\adobe\calibration\adobe gamma loader.exe

C:\Documents and Settings\baohelin\「开始」菜单\程序\启动           

+ 腾讯QQ.lnk    QQ    TENCENT    c:\program files\tencent\qq\qq.exe

HKCU\Software\Microsoft\Windows\CurrentVersion\Run           

+ AMonitor    eTrust Activity Monitor    Computer Associates International, Inc.    c:\program files\tiny firewall pro\amon.exe

+ HijackThis startup scan    HijackThis    Soeperman Enterprises Ltd.    c:\program files\hijackthis.exe

+ IDMan    Internet Download Manager Application (IDM)    Internet Download Manager Corp., Tonec Inc.     c:\program files\internet download manager\idman.exe

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved           

+ HyperTerminal Icon Ext    HyperTerminal Applet Library    Hilgraeve, Inc.    c:\windows\system32\hticons.dll

+ SnagIt    SnagIt Add-in for Internet Explorer    TechSmith Corporation    c:\program files\techsmith\snagit 7\snagitieaddin.dll

+ ssaddr.dll        Tencent    c:\program files\tencent\adplus\ssaddr.dll

+ ssaddr.dll        Tencent    c:\program files\tencent\adplus\ssaddr.dll

+ ssaddr.dll        Tencent    c:\program files\tencent\adplus\ssaddr.dll

+ TuneUp Shredder Shell Context Menu Extension    TuneUp Shredder Shell Extension    TuneUp Software GmbH    c:\program files\tuneup utilities 2004\sdshelex.dll

+ WinRAR shell extension            c:\program files\winrar\rarext.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects           

+ HelperObject Class    SnagIt Browser Helper Object for Internet Explorer    TechSmith Corporation    c:\program files\techsmith\snagit 7\snagitbho.dll

+ IDMIEHlprObj Class    IDMIECC Module    Internet Download Manager Corp., Tonec Inc.    c:\program files\internet download manager\idmiecc.dll

+ IeCatch2 Class    jccatch Module    Amaze Soft    c:\program files\flashget\jccatch.dll

+ QQBrowserHelperObject Class    QQIEHelper Module    深圳市腾讯计算机系统有限公司    c:\program files\tencent\qq\qqiehelper.dll

HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks           

+ ssaddr.dll        Tencent    c:\program files\tencent\adplus\ssaddr.dll

HKLM\Software\Microsoft\Internet Explorer\Toolbar           

+ FlashGet Bar    FlashGet IE Bar    Amaze Soft    c:\program files\flashget\fgiebar.dll

+ snagitieaddin.dll    SnagIt Add-in for Internet Explorer    TechSmith Corporation    c:\program files\techsmith\snagit 7\snagitieaddin.dll

HKLM\Software\Microsoft\Internet Explorer\Extensions           

+ &FlashGet    FlashGet    Amaze Soft    c:\program files\flashget\flashget.exe

+ 腾讯QQ    QQ    TENCENT    c:\program files\tencent\qq\qq.exe

Task Scheduler           

+ 1-Click Maintenance.job    TuneUp System Optimizer    TuneUp Software GmbH    c:\program files\tuneup utilities 2004\systemoptimizer.exe

HKLM\System\CurrentControlSet\Services           

+ kavsvc    Kaspersky Anti-Virus Service    Kaspersky Lab    c:\program files\kaspersky lab\kaspersky anti-virus personal pro\kavsvc.exe

+ ShadowSystemService            c:\windows\system32\shadow\shadowservice.exe

+ UmxAgent    eTrust Event Manager    Computer Associates International, Inc.    c:\program files\tiny firewall pro\umxagent.exe

+ UmxCfg    eTrust Configuration Engine    Computer Associates International, Inc.    c:\program files\common files\pfshared\umxcfg.exe

+ UmxFwHlp    eTrust Firewall User-Mode Helper    Computer Associates International, Inc.    c:\program files\tiny firewall pro\umxfwhlp.exe

+ UmxLU    Live Update Monitor    Tiny Software, Inc.    c:\program files\common files\pfshared\umxlu.exe

+ UmxPol    eTrust FW Policy Manager Service    Computer Associates International, Inc.    c:\program files\common files\pfshared\umxpol.exe

HKLM\System\CurrentControlSet\Services           

+ ac97intc    Intel(r) Integrated Controller Hub Audio Driver    Intel Corporation    c:\windows\system32\drivers\ac97intc.sys

+ Kl1    Kaspersky Anti-Hacker Only Driver    Kaspersky Lab    c:\windows\system32\drivers\kl1.sys

+ Klif    spuper-ptor    Kaspersky Labs    c:\windows\system32\drivers\klif.sys

+ Klmc    Kaspersky Anti-Virus Mail Checker Proxy    Kaspersky Lab    c:\windows\system32\drivers\klmc.sys

+ KmxAgent    eTrust Agent driver    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxagent.sys

+ KmxBiG    eTrust Integrity Guard driver    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxbig.sys

+ KmxCfg    KMX - Configuration Cache    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxcfg.sys

+ KmxFile    eTrust File Guard driver    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxfile.sys

+ KmxFw    eTrust firewall security engine    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxfw.sys

+ KmxIds    TPF: IDS engine plug-in    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxids.sys

+ KmxNdis    eTrust NDIS filter    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxndis.sys

+ KmxSbx    eTrust Registry, Spawning and Devices Guard driver    Computer Associates International, Inc.    c:\windows\system32\drivers\kmxsbx.sys

+ ltmodem5    LT Windows Modem    LT    c:\windows\system32\drivers\ltmdmnt.sys

+ npkcrypt    nProtect KeyCrypt Driver    INCA Internet Co., Ltd.    c:\program files\tencent\qq\npkcrypt.sys

+ npkcusb    nProtect KeyCrypt Driver    INCA Internet Co., Ltd.    c:\program files\tencent\qq\npkcusb.sys

+ nv    NVIDIA Compatible Windows 2000 Miniport Driver, Version 56.73     NVIDIA Corporation    c:\windows\system32\drivers\nv4_mini.sys

+ Ptilink    Direct Parallel Link Driver    Parallel Technologies, Inc.    c:\windows\system32\drivers\ptilink.sys

+ rtl8139    Realtek RTL8139 NDIS 5.0 Driver    Realtek Semiconductor Corporation    c:\windows\system32\drivers\rtl8139.sys

+ safemon    System Safety Monitor 2.0 extension for Windows security layer    System Safety Limited    c:\windows\system32\drivers\safemon.sys

+ SVKP            File not found: C:\windows\system32\SVKP.sys

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls           

+ UmxSbxExw.dll    User mode executive module helper DLL    Computer Associates International, Inc.    c:\windows\system32\umxsbxexw.dll

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify           

+ PFW    UmxWNP    Computer Associates International, Inc.    c:\windows\system32\umxwnp.dll

+ System Safety Monitor    System Safety Winlogon Notification    System Safety Limited    c:\windows\system32\ssmwinlogonex.dll

baohe - 2006-5-11 21:22:00
【回复“阿杜QQ”的帖子】
内容多的第一部分
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit

+ C:\windows\system32\userinit.exeUserinit Logon ApplicationMicrosoft Corporationc:\windows\system32\userinit.exe

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell

+ Explorer.exeWindows ExplorerMicrosoft Corporationc:\windows\explorer.exe

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

+ AddrPlus3TENCENTc:\program files\tencent\adplus\stup.exe

+ KAVPersonal50Kaspersky Anti-Virus GUI PartKaspersky Labc:\program files\kaspersky lab\kaspersky anti-virus personal pro\kav.exe

+ PHIME2002A微軟新注音輸入法 2002aMicrosoft Corporationc:\windows\system32\ime\tintlgnt\tintsetp.exe

+ PHIME2002ASync微軟新注音輸入法 2002aMicrosoft Corporationc:\windows\system32\ime\tintlgnt\tintsetp.exe

+ RunShadowTipShadowTipPowerShadowc:\windows\system32\shadow\shadowtip.exe

C:\Documents and Settings\All Users\「开始」菜单\程序\启动

+ Adobe Gamma Loader.lnkAdobe Gamma LoaderAdobe Systems, Inc.c:\program files\common files\adobe\calibration\adobe gamma loader.exe

C:\Documents and Settings\baohelin\「开始」菜单\程序\启动

+ 腾讯QQ.lnkQQTENCENTc:\program files\tencent\qq\qq.exe

HKCU\Software\Microsoft\Windows\CurrentVersion\Run

+ AMonitoreTrust Activity MonitorComputer Associates International, Inc.c:\program files\tiny firewall pro\amon.exe

+ ctfmon.exeCTF LoaderMicrosoft Corporationc:\windows\system32\ctfmon.exe

+ HijackThis startup scanHijackThisSoeperman Enterprises Ltd.c:\program files\hijackthis.exe

+ IDManInternet Download Manager Application (IDM)Internet Download Manager Corp., Tonec Inc. c:\program files\internet download manager\idman.exe

HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components

+ Internet ExplorerWindows NT User Data Migration ToolMicrosoft Corporationc:\windows\system32\shmgrate.exe

+ Internet Explorer 6IE 5.0 Per-User Install UtilityMicrosoft Corporationc:\windows\system32\ie4uinit.exe

+ Microsoft Outlook Express 6Outlook Express Setup LibraryMicrosoft Corporationc:\program files\outlook express\setup50.exe

+ Microsoft Windows Media PlayerMicrosoft Windows Media Player 安装实用程序Microsoft Corporationc:\windows\inf\unregmp2.exe

+ Microsoft Windows Media PlayerADVPACKMicrosoft Corporationc:\windows\system32\advpack.dll

+ NetMeeting 3.01ADVPACKMicrosoft Corporationc:\windows\system32\advpack.dll

+ Outlook ExpressWindows NT User Data Migration ToolMicrosoft Corporationc:\windows\system32\shmgrate.exe

+ Themes SetupMicrosoft(C) Register ServerMicrosoft Corporationc:\windows\system32\regsvr32.exe

+ Windows Messenger 4.7ADVPACKMicrosoft Corporationc:\windows\system32\advpack.dll

+ Windows 桌面更新Microsoft(C) Register ServerMicrosoft Corporationc:\windows\system32\regsvr32.exe

+ 通讯簿 6Outlook Express Setup LibraryMicrosoft Corporationc:\program files\outlook express\setup50.exe

+ 浏览器自定义组件Microsoft Internet Explorer Customization DLLMicrosoft Corporationc:\windows\system32\iedkcs32.dll

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler

+ Browseui 预加载程序Shell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll
baohe - 2006-5-11 21:22:00
+ Directory Context Menu VerbsDirectory Service Common UIMicrosoft Corporationc:\windows\system32\dsuiext.dll

+ Directory Object FindDirectory Service FindMicrosoft Corporationc:\windows\system32\dsquery.dll

+ Directory Property UIDirectory Service Common UIMicrosoft Corporationc:\windows\system32\dsuiext.dll

+ Directory Query UIDirectory Service FindMicrosoft Corporationc:\windows\system32\dsquery.dll

+ Directory Start/Search FindDirectory Service FindMicrosoft Corporationc:\windows\system32\dsquery.dll

+ Disk Copy ExtensionWindows DiskCopyMicrosoft Corporationc:\windows\system32\diskcopy.dll

+ Disk Quota UIWindows Shell Disk Quota UI DLLMicrosoft Corporationc:\windows\system32\dskquoui.dll

+ Display Adapter CPL ExtensionAdvanced display adapter propertiesMicrosoft Corporationc:\windows\system32\deskadp.dll

+ Display Monitor CPL ExtensionAdvanced display monitor propertiesMicrosoft Corporationc:\windows\system32\deskmon.dll

+ Display TroubleShoot CPL ExtensionAdvanced display performance propertiesMicrosoft Corporationc:\windows\system32\deskperf.dll

+ DS Security PageDirectory Service Security UIMicrosoft Corporationc:\windows\system32\dssec.dll

+ Extensions Manager FolderExtensions ManagerMicrosoft Corporationc:\windows\system32\extmgr.dll

+ Favorites BandShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ FTP Folders WebviewMicrosoft Internet Explorer FTP Folder Shell ExtensionMicrosoft Corporationc:\windows\system32\msieftp.dll

+ GDI+ 文件缩略图解压缩程序Windows 图片和传真查看器Microsoft Corporationc:\windows\system32\shimgvw.dll

+ HTML 缩略图的解压缩程序Windows 图片和传真查看器Microsoft Corporationc:\windows\system32\shimgvw.dll

+ HyperTerminal Icon ExtHyperTerminal Applet LibraryHilgraeve, Inc.c:\windows\system32\hticons.dll

+ ICC 配置文件Microsoft Color Matching System User Interface DLLMicrosoft Corporationc:\windows\system32\icmui.dll

+ ICM 打印机管理Microsoft Color Matching System User Interface DLLMicrosoft Corporationc:\windows\system32\icmui.dll

+ ICM 监视器管理Microsoft Color Matching System User Interface DLLMicrosoft Corporationc:\windows\system32\icmui.dll

+ ICM 扫描仪管理Microsoft Color Matching System User Interface DLLMicrosoft Corporationc:\windows\system32\icmui.dll

+ IE4 套件初始屏幕Shell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Installed Apps EnumeratorShell Application ManagerMicrosoft Corporationc:\windows\system32\appwiz.cpl

+ InternetShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ InternetShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Internet Name SpaceShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Internet 临时文件Shell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Internet 临时文件Shell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ InternetShortcutShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ ISFBand OCShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Microsoft Agent Character Property Sheet HandlerMicrosoft Agent Property Sheet HandlerMicrosoft Corporationc:\windows\msagent\agentpsh.dll

+ Microsoft AutoCompleteShell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Microsoft Browser ArchitectureShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Microsoft BrowserBandShell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Microsoft DocProp Inplace Calendar ControlMicrosoft DocProp Shell ExtMicrosoft Corporationc:\windows\system32\docprop2.dll

+ Microsoft DocProp Inplace Droplist Combo ControlMicrosoft DocProp Shell ExtMicrosoft Corporationc:\windows\system32\docprop2.dll

+ Microsoft DocProp Inplace Edit Box ControlMicrosoft DocProp Shell ExtMicrosoft Corporationc:\windows\system32\docprop2.dll

+ Microsoft DocProp Inplace ML Edit Box ControlMicrosoft DocProp Shell ExtMicrosoft Corporationc:\windows\system32\docprop2.dll

+ Microsoft DocProp Inplace Time ControlMicrosoft DocProp Shell ExtMicrosoft Corporationc:\windows\system32\docprop2.dll

+ Microsoft DocProp Shell ExtMicrosoft DocProp Shell ExtMicrosoft Corporationc:\windows\system32\docprop2.dll

+ Microsoft Internet 工具栏Shell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Microsoft Office HTML Icon HandlerMicrosoft Office 2003 componentMicrosoft Corporationc:\program files\microsoft office\office11\msohev.dll

+ Microsoft Url History 服务Shell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Microsoft Url 搜索挂接Shell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Microsoft 多个自动完成列表容器Shell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Microsoft 历史自动完成列表Shell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Microsoft 数据链接Microsoft Data Access - OLE DB Core ServicesMicrosoft Corporationc:\program files\common files\system\ole db\oledb32.dll

+ Microsoft 外壳文件夹自动完成列表Shell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Midi Properties HandlerMedia File Property Extractor Shell ExtensionMicrosoft Corporationc:\windows\system32\shmedia.dll

+ MMC Icon HandlerMMC Shell Extension DLLMicrosoft Corporationc:\windows\system32\mmcshext.dll

+ MRU 自动完成列表Shell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Multimedia File Property SheetControl Panel Drivers AppletMicrosoft Corporationc:\windows\system32\mmsys.cpl

+ MyDocs Copy HookMy Documents Folder UIMicrosoft Corporationc:\windows\system32\mydocs.dll

+ MyDocs Drop TargetMy Documents Folder UIMicrosoft Corporationc:\windows\system32\mydocs.dll

+ MyDocs PropertiesMy Documents Folder UIMicrosoft Corporationc:\windows\system32\mydocs.dll

+ NTFS Security PageSecurity Shell ExtensionMicrosoft Corporationc:\windows\system32\rshx32.dll

+ Offline Files Folder OptionsClient Side Caching UIMicrosoft Corporationc:\windows\system32\cscui.dll

+ Offline Files MenuClient Side Caching UIMicrosoft Corporationc:\windows\system32\cscui.dll

+ OLE Docfile Property PageOLE DocFile Property PageMicrosoft Corporationc:\windows\system32\docprop.dll

+ PlusPack CPL ExtensionWindows Theme APIMicrosoft Corporationc:\windows\system32\themeui.dll

+ PostAgentWeb Site MonitorMicrosoft Corporationc:\windows\system32\webcheck.dll

+ Printers Security PageSecurity Shell ExtensionMicrosoft Corporationc:\windows\system32\rshx32.dll

+ Remote Sessions CPL ExtensionRemote Sessions CPL ExtensionMicrosoft Corporationc:\windows\system32\remotepg.dll

+ Search Assistant OCShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Sendmail serviceSend MailMicrosoft Corporationc:\windows\system32\sendmail.dll

+ Sendmail serviceSend MailMicrosoft Corporationc:\windows\system32\sendmail.dll

+ Set Program Access and DefaultsShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Shell Application ManagerShell Application ManagerMicrosoft Corporationc:\windows\system32\appwiz.cpl

+ Shell Automation Inproc ServiceShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Shell Band Site MenuShell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ Shell DocObject ViewerShell Doc Object and Control LibraryMicrosoft Corporationc:\windows\system32\shdocvw.dll

+ Shell extensions for Microsoft Windows Network objectsNetwork object shell UIMicrosoft Corporationc:\windows\system32\ntlanui2.dll

+ Shell extensions for sharingShell extensions for sharingMicrosoft Corporationc:\windows\system32\ntshrui.dll

+ Shell extensions for sharingShell extensions for sharingMicrosoft Corporationc:\windows\system32\ntshrui.dll

+ Shell Image Data FactoryWindows 图片和传真查看器Microsoft Corporationc:\windows\system32\shimgvw.dll

+ Shell Image Property HandlerWindows 图片和传真查看器Microsoft Corporationc:\windows\system32\shimgvw.dll

+ Shell Image VerbsWindows 图片和传真查看器Microsoft Corporationc:\windows\system32\shimgvw.dll

+ Shell properties for a DS objectDirectory Service FindMicrosoft Corporationc:\windows\system32\dsquery.dll

+ Shell Scrap DataHandlerShell scrap object handlerMicrosoft Corporationc:\windows\system32\shscrap.dll

+ Shell Search BandShell Browser UI LibraryMicrosoft Corporationc:\windows\system32\browseui.dll

+ SnagItSnagIt Add-in for Internet ExplorerTechSmith Corporationc:\program files\techsmith\snagit 7\snagitieaddin.dll

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll
baohe - 2006-5-11 21:25:00
多得都发不上来了!!

其实,这是用同一个工具在同一个系统扫的日志。
内容多的就好?
阿杜QQ - 2006-5-11 21:34:00
baohe ,其实灰鸽子很简单,你知道灰鸽子工作室吗,他们博士做了一块系统监控工具,所以鸽子很简单就杀死了,嘻嘻,不过没人敢等了他们网站,所以大家不知道!
baohe - 2006-5-11 21:36:00
引用:
【阿杜QQ的贴子】baohe ,其实灰鸽子很简单,你知道灰鸽子工作室吗,他们博士做了一块系统监控工具,所以鸽子很简单就杀死了,嘻嘻,不过没人敢等了他们网站,所以大家不知道!
...........................

简单?
你玩儿过鸽子没?
玩儿过几个?
自己动手宰过几个?
系统监控工具?
阿杜QQ - 2006-5-11 21:40:00
当然不是检测工具,你想想灰鸽子工作室做的软件,肯定能准确发现鸽子,基本任何软件作不到!在厉害的人,有的鸽子有发现不了即使扫描工具
baohe - 2006-5-11 21:42:00
引用:
【阿杜QQ的贴子】当然不是检测工具,你想想灰鸽子工作室做的软件,肯定能准确发现鸽子,基本任何软件作不到!在厉害的人,有的鸽子有发现不了即使扫描工具
...........................

灰鸽子工作室那些东西我都玩儿过。
不像你说的那么神。
阿杜QQ - 2006-5-11 21:44:00


        你知道fint ?
1
查看完整版本: 为何现在流行HijackThis,不用SRE呢,我觉得SRE扫描详细!