瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 发现不知名病毒??有日志....有样本...

1234   3  /  4  页   跳转

发现不知名病毒??有日志....有样本...

[c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29165]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29157]
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29166]
    [c:\program files\ati technologies\ati.ace\cli.aspect.transcode.local.shared.dll]  [ATI Technologies Inc., 1.2.0.0]
    [c:\program files\ati technologies\ati.ace\atixclib.dll]  [ , 1.0.0.0]
    [c:\program files\ati technologies\ati.ace\cli.aspect.infocentre.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29155]
[PID: 1464][C:\Program Files\ATI Technologies\ATI.ACE\cli.exe]  [ATI Technologies Inc., 1.11.0.0]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_6b89acff\mscorlib.dll]  [N/A, N/A]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_4b21d96c\system.windows.forms.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.implementation.dll]  [ATI Technologies Inc., 1.2.2217.17118]
    [c:\program files\ati technologies\ati.ace\log.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\cli.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\log.foundation.service.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\program files\ati technologies\ati.ace\log.foundation.shared.dll]  [ATI Technologies Inc., 1.2.2147.29163]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_c5a884db\system.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.foundation.xmanifestation.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_78a92810\system.xml.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.component.systemtray.dll]  [ATI Technologies Inc., 1.2.2217.17245]
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\cli.component.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17269]
    [c:\program files\ati technologies\ati.ace\aticccom.dll]  [ATI Technologies Inc., 1.0.0.0]
    [c:\program files\ati technologies\ati.ace\dem.graphics.displaysmanager.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\aem.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\apm.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29156]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_707be252\system.drawing.dll]  [N/A, N/A]
    [C:\WINNT\system32\HYFT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [c:\program files\ati technologies\ati.ace\zh-chs\cli.component.systemtray.resources.dll]  [ATI Technologies Inc., 1.2.2217.17245]
[PID: 1384][D:\TT\TTraveler.exe]  [腾讯公司, 3.1.0.261]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
    [C:\WINNT\system32\HYFT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\kakatool.dll]  [Beijing Rising Technology Co., Ltd., 2, 0, 0, 9]
    [D:\TT\Plugins\QQFloatBar\QQFloatBar4TT2.dll]  [腾讯公司, 1, 1, 0, 5]
    [D:\TT\Plugins\TWeather\TWeather.dll]  [, 1, 0, 0, 3]
    [D:\TT\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 4]
    [C:\WINNT\system32\Macromed\Flash\Flash8b.ocx]  [Macromedia, Inc., 8,0,24,0]
[PID: 1740][F:\系统工具\新建文件夹\sreng2(1)\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\WINNT\system32\HYFT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINNT\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
gototop
 

你删除服务器得先要下载服务器,把服务器的ip改一下,不知道要不要升级,如果有升级最好升级一下。
gototop
 

【回复“勇者乃是我”的帖子】我是菜鳥,
我不清楚你在說什麽,,能不能說清楚一點!
gototop
 

我还是建议你重新安装下系统吧,记得打补丁。
gototop
 

你还是听23楼的话还是重新安装算了,你那里的系统目录被你删得乱七八糟了
gototop
 

引用:
【我是大佬的贴子】【回复“勇者乃是我”的帖子】我是菜鳥,
我不清楚你在說什麽,,能不能說清楚一點!
………………

别轻易重装,发个短消息给水雨树下或我无邪让他帮忙看看吧~
gototop
 

【回复“勇者乃是我”的帖子】是呀,被我删得乱七八糟了,所以我要重装了,你现在高兴了!
gototop
 

引用:
【勇者乃是我的贴子】你删除服务器得先要下载服务器,把服务器的ip改一下,不知道要不要升级,如果有升级最好升级一下。
………………

http://cache41.51.com/photo4/e4/36/yegucheng23/771d5d4b36a811a8965a663938c157a9.jpg

附件附件:

下载次数:194
文件类型:image/pjpeg
文件大小:
上传时间:2006-11-7 11:52:38
描述:
预览信息:EXIF信息



gototop
 

【回复“我是大佬”的帖子】
你啊,我说错了什么啊,我都不知道啊,有病毒就要删,不删你的电脑完了,你干把网站的照片弄出来啊,没事啊,多弄几张凡正不是我的
gototop
 

让我气起来了,以后中毒你就别删,我看你怎么办,我自己也一样,中毒肯定要删的,真让我气死了。我真得有点晕了,算了,以后我来学习不管了,我自己会就行了。
gototop
 
1234   3  /  4  页   跳转
页面顶部
Powered by Discuz!NT