新发现,病毒有时一直访问网络,但具体什么进程去执行的没发现.至少我没看到异常进程.以下是路由上截获的一些信息
Mar/11/2007 22:34:17 [FW] **Drop Packet** IP/TCP 222.77.187.113:80->192.168.1.100:7090
Mar/11/2007 22:34:16 [FW] **Drop Packet** IP/TCP 211.154.44.236:5353->192.168.1.100:8950
Mar/11/2007 22:34:16 [FW] **Drop Packet** IP/TCP 219.133.62.122:80->192.168.1.100:34619
Mar/11/2007 22:34:15 [FW] **Drop Packet** IP/TCP 219.133.40.11:80->192.168.1.100:5584
Mar/11/2007 22:34:15 [FW] **Drop Packet** IP/TCP 58.60.11.52:80->192.168.1.100:15912
Mar/11/2007 22:34:14 [FW] **Drop Packet** IP/TCP 219.133.40.11:80->192.168.1.100:5469
Mar/11/2007 22:34:14 [FW] **Drop Packet** IP/TCP 58.218.201.146:80->192.168.1.100:25967
Mar/11/2007 22:34:14 [FW] **Drop Packet** IP/TCP 58.218.201.146:80->192.168.1.100:25967
Mar/11/2007 22:34:14 [FW] **Drop Packet** IP/TCP 58.218.201.146:80->192.168.1.100:25967
Mar/11/2007 22:34:14 [FW] **Drop Packet** IP/TCP 211.154.44.236:5353->192.168.1.100:50003
Mar/11/2007 22:34:13 [FW] **Drop Packet** IP/TCP 211.154.44.236:5353->192.168.1.100:49906
Mar/11/2007 22:34:05 [FW] **Drop Packet** IP/TCP 219.133.40.11:80->192.168.1.100:4521
Mar/11/2007 22:34:05 [FW] **Drop Packet** IP/TCP 211.154.44.236:5353->192.168.1.100:49063
Mar/11/2007 22:34:05 [FW] **Drop Packet** IP/TCP 219.133.40.11:80->192.168.1.100:4488
Mar/11/2007 22:34:05 [FW] **Drop Packet** IP/TCP 58.211.77.137:80->192.168.1.100:23696
Mar/11/2007 22:34:05 [FW] **Drop Packet** IP/TCP 58.211.77.137:80->192.168.1.100:23696
Mar/11/2007 22:34:05 [FW] **Drop Packet** IP/TCP 211.154.44.236:5353->192.168.1.100:49040
Mar/11/2007 22:34:04 [FW] **Drop Packet** IP/TCP 219.133.62.122:80->192.168.1.100:33394
Mar/11/2007 22:34:03 [FW] **Drop Packet** IP/UDP 58.60.14.46:8000->192.168.1.100:40231
Mar/11/2007 22:34:01 [FW] **Drop Packet** IP/TCP 121.11.71.64:80->192.168.1.100:2946