1   1  /  1  页   跳转

[求助] 急死人,svahost.exe是病毒吗

急死人,svahost.exe是病毒吗

svahost.exe是病毒吗



为什么在电脑启动时总是自动弹出svahost.exe文件?烦人得很!!!
注:
1.我用超级兔子和迅雷助理将svahost.exe启动项禁止了的,我不希望这个文件自动启动。
2.svahost.exe文件所在路是:C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\ThunderDisabled


最后编辑达信 最后编辑于 2010-06-16 17:26:49
分享到:
gototop
 

回复:急死人,svahost.exe是病毒吗

C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\RsAutorunsDisabled
gototop
 

回复:急死人,svahost.exe是病毒吗

可疑文件,把文件找到上报网站检测:http://mailcenter.rising.com.cn/FileCheck/
gototop
 

回复:急死人,svahost.exe是病毒吗

文件打包传上来看看
ThunderDisabled
名字很不和谐
gototop
 

回复: 急死人,svahost.exe是病毒吗



引用:
原帖由 木马bbbb 于 2010-6-16 17:58:00 发表
可疑文件,把文件找到上报网站检测:[url=http://mailcenter.rising.co已经将svahost.exe文件上传至:http://mailcenter.rising.com.cn/FileCheck/ m.cn/FileCheck/]http://mailcenter.rising.co已经将svahost.exe文件上传至:http://mailcenter.rising.com.cn/FileCheck/ m.cn/FileCheck/[/url]
gototop
 

回复:急死人,svahost.exe是病毒吗

已经将svahost.exe文件上传至:http://mailcenter.rising.com.cn/FileCheck/
gototop
 

回复:急死人,svahost.exe是病毒吗

上报编号是什么
还有这些扫描网站试试
http://www.virustotal.com/zh-cn/
http://www.virscan.org/
掀起你的头盖骨来,让我看看你的眼~~
电信是个黑心厂商,一天劫持我几十遍
gototop
 

回复:急死人,svahost.exe是病毒吗

文件 ______.rar 接收于 2010.06.18 14:52:29 (UTC)反病毒引擎 版本 最后更新 扫描结果
a-squared 5.0.0.26 2010.06.18 -
AhnLab-V3 2010.06.18.05 2010.06.18 -
AntiVir 8.2.2.6 2010.06.18 -
Antiy-AVL 2.0.3.7 2010.06.18 -
Authentium 5.2.0.5 2010.06.18 -
Avast 4.8.1351.0 2010.06.18 -
Avast5 5.0.332.0 2010.06.18 -
AVG 9.0.0.787 2010.06.18 -
BitDefender 7.2 2010.06.18 -
CAT-QuickHeal 10.00 2010.06.18 -
ClamAV 0.96.0.3-git 2010.06.18 -
Comodo 5142 2010.06.18 -
DrWeb 5.0.2.03300 2010.06.18 Trojan.LowZones.2429
eSafe 7.0.17.0 2010.06.17 -
eTrust-Vet 36.1.7646 2010.06.18 -
F-Prot 4.6.1.107 2010.06.17 -
F-Secure 9.0.15370.0 2010.06.18 -
Fortinet 4.1.133.0 2010.06.18 -
GData 21 2010.06.18 -
Ikarus T3.1.1.84.0 2010.06.18 -
Jiangmin 13.0.900 2010.06.15 -
Kaspersky 7.0.0.125 2010.06.18 -
McAfee 5.400.0.1158 2010.06.18 -
McAfee-GW-Edition 2010.1 2010.06.18 -
Microsoft 1.5902 2010.06.18 -
NOD32 5207 2010.06.18 -
Norman 6.05.06 2010.06.17 -
nProtect 2010-06-18.01 2010.06.18 -
Panda 10.0.2.7 2010.06.18 -
PCTools 7.0.3.5 2010.06.18 -
Prevx 3.0 2010.06.18 High Risk Cloaked Malware
Rising 22.52.04.04 2010.06.18 -
Sophos 4.54.0 2010.06.18 -
Sunbelt 6466 2010.06.18 -
Symantec 20101.1.0.89 2010.06.18 -
TheHacker 6.5.2.0.300 2010.06.18 -
TrendMicro 9.120.0.1004 2010.06.18 -
TrendMicro-HouseCall 9.120.0.1004 2010.06.18 -
VBA32 3.12.12.5 2010.06.18 -
ViRobot 2010.6.14.3884 2010.06.18 -
VirusBuster 5.0.27.0 2010.06.18 -

附加信息
File size: 8362 bytes
MD5...: 35ee4e98366354fc59319550a1b8ec3a
SHA1..: d438aa3015d5280b53b58355f7dd6c157cc389d2
SHA256: 8b691dd0dd4fa36ee8ba0ecb25aaa61bbd0df40f1b0c8c76042305e6aa72b8ad
ssdeep: 192:uUVD7y1PR2JQ2R8mt/osecTLFOXP3kSDxDGYA9/O:jFsPkJQ2HycHF4PpDxD<BR>Q9W<BR>
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set<BR>-
pdfid.: -
trid..: RAR Archive (83.3%)<BR>REALbasic Project (16.6%)
Symantec Reputation Network: Suspicious.Insight http://www.symantec.com/security_response/writeup.jsp?docid=2010-021223-0550-99
<a href='http://info.prevx.com/aboutprogramtext.asp?PX5=5B958BBA00B7D9636064005001C0E6001442531F' target='_blank'>http://info.prevx.com/aboutprogramtext.asp?PX5=5B958BBA00B7D9636064005001C0E6001442531F<;/a>
sigcheck:<BR>publisher....: n/a<BR>copyright....: n/a<BR>product......: n/a<BR>description..: n/a<BR>original name: n/a<BR>internal name: n/a<BR>file version.: n/a<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>


<table border="1"><tr><td colspan="4">文件 ______.rar 接收于 2010.06.18 14:52:29 (UTC)</td></tr><tr><td>反病毒引擎</td><td>版本</td><td>最后更新</td><td>扫描结果</td</tr><tr><td>a-squared</td><td>5.0.0.26</td><td>2010.06.18</td><td>-</td</tr><tr><td>AhnLab-V3</td><td>2010.06.18.05</td><td>2010.06.18</td><td>-</td</tr><tr><td>AntiVir</td><td>8.2.2.6</td><td>2010.06.18</td><td>-</td</tr><tr><td>Antiy-AVL</td><td>2.0.3.7</td><td>2010.06.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.2.0.5</td><td>2010.06.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1351.0</td><td>2010.06.18</td><td>-</td</tr><tr><td>Avast5</td><td>5.0.332.0</td><td>2010.06.18</td><td>-</td</tr><tr><td>AVG</td><td>9.0.0.787</td><td>2010.06.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2010.06.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>10.00</td><td>2010.06.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.96.0.3-git</td><td>2010.06.18</td><td>-</td</tr><tr><td>Comodo</td><td>5142</td><td>2010.06.18</td><td>-</td</tr><tr><td>DrWeb</td><td>5.0.2.03300</td><td>2010.06.18</td><td style="color: red;">Trojan.LowZones.2429</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2010.06.17</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>36.1.7646</td><td>2010.06.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.6.1.107</td><td>2010.06.17</td><td>-</td</tr><tr><td>F-Secure</td><td>9.0.15370.0</td><td>2010.06.18</td><td>-</td</tr><tr><td>Fortinet</td><td>4.1.133.0</td><td>2010.06.18</td><td>-</td</tr><tr><td>GData</td><td>21</td><td>2010.06.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.84.0</td><td>2010.06.18</td><td>-</td</tr><tr><td>Jiangmin</td><td>13.0.900</td><td>2010.06.15</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2010.06.18</td><td>-</td</tr><tr><td>McAfee</td><td>5.400.0.1158</td><td>2010.06.18</td><td>-</td</tr><tr><td>McAfee-GW-Edition</td><td>2010.1</td><td>2010.06.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.5902</td><td>2010.06.18</td><td>-</td</tr><tr><td>NOD32</td><td>5207</td><td>2010.06.18</td><td>-</td</tr><tr><td>Norman</td><td>6.05.06</td><td>2010.06.17</td><td>-</td</tr><tr><td>nProtect</td><td>2010-06-18.01</td><td>2010.06.18</td><td>-</td</tr><tr><td>Panda</td><td>10.0.2.7</td><td>2010.06.18</td><td>-</td</tr><tr><td>PCTools</td><td>7.0.3.5</td><td>2010.06.18</td><td>-</td</tr><tr><td>Prevx</td><td>3.0</td><td>2010.06.18</td><td style="color: red;">High Risk Cloaked Malware</td</tr><tr><td>Rising</td><td>22.52.04.04</td><td>2010.06.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.54.0</td><td>2010.06.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>6466</td><td>2010.06.18</td><td>-</td</tr><tr><td>Symantec</td><td>20101.1.0.89</td><td>2010.06.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.5.2.0.300</td><td>2010.06.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>9.120.0.1004</td><td>2010.06.18</td><td>-</td</tr><tr><td>TrendMicro-HouseCall</td><td>9.120.0.1004</td><td>2010.06.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.12.5</td><td>2010.06.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2010.6.14.3884</td><td>2010.06.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>5.0.27.0</td><td>2010.06.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">附加信息</td></tr><tr><td colspan="4">File size: 8362 bytes</td></tr><tr><td colspan="4">MD5...: 35ee4e98366354fc59319550a1b8ec3a</td></tr><tr><td colspan="4">SHA1..: d438aa3015d5280b53b58355f7dd6c157cc389d2</td></tr><tr><td colspan="4">SHA256: 8b691dd0dd4fa36ee8ba0ecb25aaa61bbd0df40f1b0c8c76042305e6aa72b8ad</td></tr><tr><td colspan="4">ssdeep: 192:uUVD7y1PR2JQ2R8mt/osecTLFOXP3kSDxDGYA9/O:jFsPkJQ2HycHF4PpDxD<BR>Q9W<BR></td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr><tr><td colspan="4">RDS...: NSRL Reference Data Set<BR>-</td></tr><tr><td colspan="4">pdfid.: -</td></tr><tr><td colspan="4">trid..: RAR Archive (83.3%)<BR>REALbasic Project (16.6%)</td></tr><tr><td colspan="4">Symantec Reputation Network: Suspicious.Insight http://www.symantec.com/security_response/writeup.jsp?docid=2010-021223-0550-99</td></tr><tr><td colspan="4"><a href='http://info.prevx.com/aboutprogramtext.asp?PX5=5B958BBA00B7D9636064005001C0E6001442531F' target='_blank'>http://info.prevx.com/aboutprogramtext.asp?PX5=5B958BBA00B7D9636064005001C0E6001442531F<;/a></td></tr><tr><td colspan="4">sigcheck:<BR>publisher....: n/a<BR>copyright....: n/a<BR>product......: n/a<BR>description..: n/a<BR>original name: n/a<BR>internal name: n/a<BR>file version.: n/a<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR></td></tr></table>
gototop
 

回复:急死人,svahost.exe是病毒吗

文件发这里看看
百年以后,你的墓碑旁 刻着的名字不是我
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT