edakin.exe我运行后avp马上报C:\WINDOWS\SYSTEM\msdirectx.sys是个rootkit.win32.agent.l病毒。
删edakin.exe后,又用DllCompare查出以下内容:
* DLLCompare Log version()
Files Found that Windows does not See or cannot Access
*Not everything listed here means you are infected!
________________________________________________
C:\WINDOWS\SYSTEM\pfewlq.exe Wed May 5 1999 22:22:00 ..SHR 220,333 215.17 K
C:\PROGRA~1\SYMANTEC\PCANYW~1\PACKAGER\RESOUR~1\0000\Total of file sizes: 171,024,632 bytes 163.10 M
________________________________________________
441 items found: 441 files (1 H/S), 0 directories.
--------------------End log---------------------
运行C:\WINDOWS\SYSTEM\pfewlq.exe 后avp又报同样的病毒。
上上传一下C:\WINDOWS\SYSTEM\pfewlq.exe