1   1  /  1  页   跳转

9999999999999999999999999

9999999999999999999999999

未知家族病毒分析
扫描结果:
C:\DOCUME~1\jihua\LOCALS~1\Temp\ctflsv.exe --> 与 Trojan.PSW.LMir 76%相似.


系统活动进程
C:\WINDOWS\CFTMON.EXE
C:\WINDOWS\SYSTEM32\MSACM32.DRV
C:\WINDOWS\SYSTEM32\WMZOS.DLL

C:\PROGRAM FILES\RISING\ANTISPYWARE\RUNIEP.EXE
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEP_CTRL.DLL
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS

F:\杀毒\RISING\RFW\RFWMAIN.EXE
F:\杀毒\RISING\RFW\RSGUILIB.DLL
F:\杀毒\RISING\RFW\RSCOMMON.DLL
F:\杀毒\RISING\RFW\RFWCTRL.DLL
F:\杀毒\RISING\RFW\RSXML.DLL
F:\杀毒\RISING\RFW\PNGDLL.DLL
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
C:\WINDOWS\SYSTEM32\LGSYL.DLL
C:\WINDOWS\SYSTEM32\LGSYZR.DLL
C:\WINDOWS\SYSTEM32\WMZOS.DLL
C:\WINDOWS\SYSTEM32\GJZOS.DLL
C:\WINDOWS\SYSTEM32\MSXOS.DLL

C:\WINDOWS\SYSTEM32\CTFMON.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

C:\WINDOWS\SYSTEM32\SMSS.EXE
C:\DOCUME~1\JIHUA\LOCALS~1\TEMP\CTFLSV.EXE
C:\DOCUME~1\JIHUA\LOCALS~1\TEMP\5EE.DLL
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
C:\WINDOWS\SYSTEM32\LGSYL.DLL
C:\WINDOWS\SYSTEM32\LGSYZR.DLL
C:\WINDOWS\SYSTEM32\WMZOS.DLL
C:\WINDOWS\SYSTEM32\GJZOS.DLL
C:\WINDOWS\SYSTEM32\MSXOS.DLL
C:\DOCUME~1\JIHUA\LOCALS~1\TEMP\PACKET.DLL
C:\DOCUME~1\JIHUA\LOCALS~1\TEMP\WANPACKET.DLL
C:\DOCUME~1\JIHUA\LOCALS~1\TEMP\NPPTOOLS.DLL

C:\WINDOWS\CRASOS.EXE
C:\WINDOWS\SYSTEM32\MSXOS.DLL

C:\WINDOWS\C0NIME.EXE
C:\WINDOWS\SYSTEM32\GJZOS.DLL

C:\WINDOWS\SYSTEM32\CSRSS.EXE
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
C:\WINDOWS\SYSTEM32\ATI2EVXX.DLL
C:\WINDOWS\SYSTEM32\MSACM32.DRV

C:\WINDOWS\SYSTEM32\SERVICES.EXE
C:\WINDOWS\SYSTEM32\LSASS.EXE
C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
C:\WINDOWS\SYSTEM32\ATI2EDXX.DLL

C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\IEXP1ORE.EXE
C:\WINDOWS\SYSTEM32\LGSYZR.DLL

C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\WINLOG0N.EXE
C:\WINDOWS\SYSTEM32\LGSYL.DLL
C:\WINDOWS\SYSTEM32\LGSYZR.DLL
C:\WINDOWS\SYSTEM32\WMZOS.DLL
C:\WINDOWS\SYSTEM32\GJZOS.DLL
C:\WINDOWS\SYSTEM32\MSXOS.DLL

C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\IEXPL0RE.EXE
C:\WINDOWS\SYSTEM32\MSACM32.DRV

C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\CONIME.EXE
F:\杀毒\RISING\RFW\RFWSRV.EXE
最后编辑2007-03-12 21:18:16
分享到:
gototop
 

F:\杀毒\RISING\RFW\RFWRULE.DLL
F:\杀毒\RISING\RFW\RFWLOG.DLL
F:\杀毒\RISING\RFW\RFWDRV.DLL
F:\杀毒\RISING\RFW\PSAPI.DLL
F:\杀毒\RISING\RFW\MONDRV.DLL
F:\杀毒\RISING\RFW\PROCLIB.DLL
F:\杀毒\RISING\RFW\MPORTS.DLL

C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
C:\WINDOWS\SYSTEM32\ATI2EDXX.DLL
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS

C:\WINDOWS\EXPLORER.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
C:\WINDOWS\SYSTEM32\MSACM32.DRV
C:\WINDOWS\SYSTEM32\WMZOS.DLL
C:\WINDOWS\SYSTEM32\GJZOS.DLL
C:\WINDOWS\SYSTEM32\MSXOS.DLL
C:\WINDOWS\SYSTEM32\LGSYZR.DLL
C:\WINDOWS\SYSTEM32\LGSYL.DLL
F:\杀毒\RISING\RAV\RSCOMMON.DLL
F:\讯雷\COMDLLS\XUNLEIBHO_007.DLL

C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
F:\讯雷\COMDLLS\XUNLEIBHO_007.DLL
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
C:\WINDOWS\SYSTEM32\LGSYL.DLL
C:\WINDOWS\SYSTEM32\LGSYZR.DLL
C:\WINDOWS\SYSTEM32\WMZOS.DLL
C:\WINDOWS\SYSTEM32\GJZOS.DLL
C:\WINDOWS\SYSTEM32\MSXOS.DLL
C:\WINDOWS\SYSTEM32\MSACM32.DRV
F:\杀毒\RISING\RAV\RAVSCRCH.DLL
F:\讯雷\COMDLLS\THUNDERAGENT_007.DLL

C:\PROGRAM FILES\ANALOG DEVICES\CORE\SMAX4PNP.EXE
C:\PROGRAM FILES\ANALOG DEVICES\CORE\SMWDMIF.DLL
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\WINDOWS\SYSTEM32\MSACM32.DRV
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAX4.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\WINDOWS\SYSTEM32\MSACM32.DRV
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\PLUGINS\SYSTEMKB.SYS
C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPDSXX.DLL
C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS
C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPDXXX.DLL
C:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT