瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 Backdoor.Gpigeon.ugu这个IE病毒请教高手怎么每次开机都提示

1   1  /  1  页   跳转

Backdoor.Gpigeon.ugu这个IE病毒请教高手怎么每次开机都提示

Backdoor.Gpigeon.ugu这个IE病毒请教高手怎么每次开机都提示

瑞星病毒查杀结果报告

提交者:Rav
系统版本:Microsoft Windows XP Professional
补丁版本:Service Pack 2 Build 2600
IE版本:6.0.2900.2180
MAC地址:00:13:D3:17:23:1C
IP地址:192.168.0.1

本次扫描文件数:  452 个
本次扫描时间:  10 秒
发现病毒种类:  1 种
查杀病毒种类:  1 种

未清除病毒种类列表:

发现病毒种类列表:
病毒: Backdoor.Gpigeon.ugu      次数: 1   
以上是用瑞星查的结果~每次开机都能查到该病毒,系统都说清除完毕,但是重启又有了~
曾用过瑞星灰鸽子专杀工具杀,居然提示找不到病毒郁闷,请高手指点怎么清楚它~
还有我现在每次开机进到开始进入桌面那个画面时都会跳出个乱码对话框,不知道什么东西~用MSCONFIG看也没可疑启动项 启动项里就启动了个ADSL自动拨号 和显卡优化,还有就是瑞星杀毒~
最后编辑2006-01-12 12:09:45
分享到:
gototop
 

【回复“掵锺註錠”的帖子】
我的也是这个情况,我贴一下我的LOG
HijackThis_815汉化版扫描日志 V1.99.1
保存于 10:29:29, 日期 2006-1-12
操作系统: Windows XP SP1 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP1 (6.00.2800.1106)

当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\Explorer.EXE
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Documents and Settings\sheng\桌面\4842302005817230232\HijackThis1991zww.exe

O1 - Hosts: <html>
O1 - Hosts: <head>
O1 - Hosts: <meta name="GENERATOR" content="Microsoft FrontPage 5.0">
O1 - Hosts: <meta name="ProgId" content="FrontPage.Editor.Document">
O1 - Hosts: <meta http-equiv="Content-Type" content="text/html; charset=gb2312">
O1 - Hosts: </head>
O1 - Hosts: <body bgcolor="#000000">
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="770" align="center" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <table height="20" cellSpacing="0" cellPadding="0" width="750" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="748" height="1" style="font-size: 12px">
O1 - Hosts: <img height="12" src="images/vod.gif" width="750" border="0"></td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="748" height="52" style="font-size: 12px">
O1 - Hosts: <div align="center">
O1 - Hosts: <center>
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="752" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n155.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n156.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n157.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n158.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n159.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n160.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img height="60" src="images/n161.jpg" width="80" border="0"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n162.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px"><br>
O1 - Hosts: <img src="images/n163.jpg" border="0" width="80" height="60">
O1 - Hosts: <font size="2" style="font-size: 12px; font-family: 宋体; text-decoration: none" color="#ffffff">
O1 - Hosts:  </font></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </center>
O1 - Hosts: </div>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="748" height="1" style="font-size: 12px">
O1 - Hosts: <img height="12" src="images/vod.gif" width="750" border="0"></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="770" align="center" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px"><br>
O1 - Hosts: <p align="center">
O1 - Hosts: <font color="#ffff00" size="3" style="font-size: 12px; font-family: 宋体; text-decoration: none">
O1 - Hosts: 由于注册人数过多,显示不正常请刷新本页</font><img src="images/input.gif" width="700" height="80"></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="770" align="center" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td vAlign="top" width="210" rowSpan="4" style="font-size: 12px">
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="100%" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <img src="images/l.jpg" width="198" height="457"></td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px"> </td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <div align="center">
O1 - Hosts: </div>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </td>
O1 - Hosts: <td background="images/mobile.gif" height="50" style="font-size: 12px"> </td>
O1 - Hosts: <td vAlign="top" width="210" rowSpan="4" style="font-size: 12px">
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="100%" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <img src="images/r.jpg" width="198" height="457"></td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px"> </td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <div align="center">
O1 - Hosts: </div>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O3 - IE工具栏增项: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - 启动项HKLM\\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [internat.exe] internat.exe
O4 - 启动项HKLM\\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - 启动项HKLM\\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - 启动项HKLM\\Run: [RfwMain] "c:\program files\rising\rfw\rfwmain.exe" -startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O9 - 浏览器额外的按钮: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - 浏览器额外的“工具”菜单项: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - 浏览器额外的按钮: (no name) - {e1fc9760-7b95-49cd-80b9-8c9e41017b93} - (no file)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0B6E50E6-AED7-4408-B40F-1A5A3ACB373F}: NameServer = 202.96.128.68
O17 - HKLM\System\CS1\Services\Tcpip\..\{0B6E50E6-AED7-4408-B40F-1A5A3ACB373F}: NameServer = 202.96.128.68
O17 - HKLM\System\CS2\Services\Tcpip\..\{0B6E50E6-AED7-4408-B40F-1A5A3ACB373F}: NameServer = 202.96.128.68
O23 - NT 服务: internet systemrundll - Unknown owner - C:\WINDOWS\systemrundll.exe
O23 - NT 服务: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe




下面是ICESWORD的LOG
杀毒前:进程:

System Idle Process
System
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\RavMon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\RavMonD.exe
C:\Program Files\Rising\Rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\explorer.exe
D:\33\IceSword1[1].12\IceSword\IceSword.exe
C:\Program Files\Rising\Rfw\rfwmain.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE


请版主同志帮忙解决我们的问题
gototop
 

引用:
【Qccqcc的贴子】【回复“掵锺註錠”的帖子】
我的也是这个情况,我贴一下我的LOG
HijackThis_815汉化版扫描日志 V1.99.1
保存于 10:29:29, 日期 2006-1-12
操作系统: Windows XP SP1 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP1 (6.00.2800.1106)

当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\Explorer.EXE
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Documents and Settings\sheng\桌面\4842302005817230232\HijackThis1991zww.exe

O1 - Hosts: <html>
O1 - Hosts: <head>
O1 - Hosts: <meta name="GENERATOR" content="Microsoft FrontPage 5.0">
O1 - Hosts: <meta name="ProgId" content="FrontPage.Editor.Document">
O1 - Hosts: <meta http-equiv="Content-Type" content="text/html; charset=gb2312">
O1 - Hosts: </head>
O1 - Hosts: <body bgcolor="#000000">
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="770" align="center" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <table height="20" cellSpacing="0" cellPadding="0" width="750" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="748" height="1" style="font-size: 12px">
O1 - Hosts: <img height="12" src="images/vod.gif" width="750" border="0"></td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="748" height="52" style="font-size: 12px">
O1 - Hosts: <div align="center">
O1 - Hosts: <center>
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="752" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n155.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n156.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n157.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n158.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n159.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n160.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img height="60" src="images/n161.jpg" width="80" border="0"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px">
O1 - Hosts: <img src="images/n162.jpg" border="0" width="80" height="60"> </td>
O1 - Hosts: <td width="125" style="font-size: 12px"><br>
O1 - Hosts: <img src="images/n163.jpg" border="0" width="80" height="60">
O1 - Hosts: <font size="2" style="font-size: 12px; font-family: 宋体; text-decoration: none" color="#ffffff">
O1 - Hosts:  </font></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </center>
O1 - Hosts: </div>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td width="748" height="1" style="font-size: 12px">
O1 - Hosts: <img height="12" src="images/vod.gif" width="750" border="0"></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="770" align="center" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px"><br>
O1 - Hosts: <p align="center">
O1 - Hosts: <font color="#ffff00" size="3" style="font-size: 12px; font-family: 宋体; text-decoration: none">
O1 - Hosts: 由于注册人数过多,显示不正常请刷新本页</font><img src="images/input.gif" width="700" height="80"></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="770" align="center" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td vAlign="top" width="210" rowSpan="4" style="font-size: 12px">
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="100%" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <img src="images/l.jpg" width="198" height="457"></td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px"> </td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <div align="center">
O1 - Hosts: </div>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </td>
O1 - Hosts: <td background="images/mobile.gif" height="50" style="font-size: 12px"> </td>
O1 - Hosts: <td vAlign="top" width="210" rowSpan="4" style="font-size: 12px">
O1 - Hosts: <table cellSpacing="0" cellPadding="0" width="100%" border="0" style="font-size: 12pt">
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <img src="images/r.jpg" width="198" height="457"></td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px"> </td>
O1 - Hosts: </tr>
O1 - Hosts: <tr style="font-size: 12pt">
O1 - Hosts: <td style="font-size: 12px">
O1 - Hosts: <div align="center">
O1 - Hosts: </div>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: </td>
O1 - Hosts: </tr>
O3 - IE工具栏增项: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - 启动项HKLM\\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [internat.exe] internat.exe
O4 - 启动项HKLM\\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - 启动项HKLM\\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - 启动项HKLM\\Run: [RfwMain] "c:\program files\rising\rfw\rfwmain.exe" -startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O9 - 浏览器额外的按钮: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - 浏览器额外的“工具”菜单项: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - 浏览器额外的按钮: (no name) - {e1fc9760-7b95-49cd-80b9-8c9e41017b93} - (no file)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0B6E50E6-AED7-4408-B40F-1A5A3ACB373F}: NameServer = 202.96.128.68
O17 - HKLM\System\CS1\Services\Tcpip\..\{0B6E50E6-AED7-4408-B40F-1A5A3ACB373F}: NameServer = 202.96.128.68
O17 - HKLM\System\CS2\Services\Tcpip\..\{0B6E50E6-AED7-4408-B40F-1A5A3ACB373F}: NameServer = 202.96.128.68
O23 - NT 服务: internet systemrundll - Unknown owner - C:\WINDOWS\systemrundll.exe
O23 - NT 服务: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe




下面是ICESWORD的LOG
杀毒前:进程:

System Idle Process
System
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\RavMon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\RavMonD.exe
C:\Program Files\Rising\Rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\explorer.exe
D:\33\IceSword1[1].12\IceSword\IceSword.exe
C:\Program Files\Rising\Rfw\rfwmain.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE


请版主同志帮忙解决我们的问题
...........................


问下,你这个报告在哪找出来的?我找不到这个报告。。。。
gototop
 

木马杀客刚刚杀了这些病毒呀
gototop
 

【回复“掵锺註錠”的帖子】
瑞星可以退休了~下次我改用木马克星杀了~
这是刚下载的盗版木马克星杀的情况~
c:\documents and settings\qzt\桌面\iparmor\木马克星(iparmor)最新升级器(绝对好用)1.72\iparmor updater.exe 发现木马.
木马已经清除
c:\windows\rsvpe.exe 怀疑为灰鸽子木马2
C:\WINDOWS\RSVPE.exe 发现木马:tro2005-9-5-server,780288
C:\WINDOWS\RSVPE.exe木马已经清除.
C:\WINDOWS\system32\DisSoft.dll 怀疑为传奇木马
C:\WINDOWS\system32\GLIEDown2.dll 发现广告程序:tro2005-11-3-adware-GLIEDown2,106496
C:\WINDOWS\system32\GLIEDown2.dll广告已经清除.
C:\ 扫描完成.
扫描耗间:0:09:55
D:\Program Files\eNation\eShut\baidu.exe 发现广告程序:tro2005-7-9-adware-in124,232707
D:\Program Files\eNation\eShut\baidu.exe广告已经清除.
木马中分离地址:undll32 "%s"
D:\Program Files\eNation\eShut\baidu.exe 发现广告程序:tro2005-7-13-adware-setup_baidu,232704
请重新启动计算机,才能彻底清除
木马中分离地址:undll32 "%s"
D:\ 扫描完成.
扫描耗间:0:02:29
E:\ 扫描完成.
扫描耗间:0:02:23
F:\ 扫描完成.
扫描耗间:0:00:14
G:\ 扫描完成.
扫描耗间:0:00:00
H:\ 扫描完成.
扫描耗间:0:00:07

刚才经朋友介绍下载了最新版的木马克星 并成功清楚原贴讲的病毒,就连启动出现对话框也彻底清除了,建议2楼用户也用木马克星杀杀看,说不定有意外的惊喜~!
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT