瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 求助:同一个广告不断弹出[附日志]

1   1  /  1  页   跳转

求助:同一个广告不断弹出[附日志]

求助:同一个广告不断弹出[附日志]

这两天,打开QQ空间时就会弹出一个铃声下载的广告。添加到黑名单也没用。已经拦截了近70个了。
麻烦高手抽点空帮我看一下。麻烦各位了!谢谢!

Logfile of HijackThis v1.99.1
Scan saved at:7:03:17, on 2006-7-21
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
D:\Program Files\jj4\jjsvr4.exe
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\DrvMon.exe
D:\Program Files\QQ.exe
D:\Program Files\364139429\TMDlls\TIMPlatform.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Downloads\ha_hijackthis\HijackThis.exe

R3 - URLSearchHook: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}? - (no file)
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - D:\PROGRA~1\FLASHGET\jccatch.dll
O2 - BHO: (no name) - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7}? - (no file)
O2 - BHO: (no name) - {3E422F49-1566-40D3-B43D-077EF739AC32}? - (no file)
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD}? - (no file)
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162}? - (no file)
O2 - BHO: (no name) - {6E28339B-7A2A-47B6-AEB2-197004272379}? - (no file)
O2 - BHO: (no name) - {A9930D97-9CF0-42A0-A10D-4F28836579D5} - D:\PROGRA~1\KuGoo3\KUGOO3~1.OCX
O2 - BHO: (no name) - {BA2325ED-F9EB-4830-8FCE-0BC35B16969B}? - (no file)
O3 - Toolbar: (no name) - {406F94F0-504F-4a40-8DFD-58B0666ABEBD}? - (no file)
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\KakaTool.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - Toolbar: BitComet工具栏 - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - D:\Program Files\BitComet\BitCometBar\BitCometBar0.5.dll
O3 - Toolbar: (no name) - {7A38130D-BEB7-4d60-BE7A-4C4AB6A85CD1}? - (no file)
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [Soltek] C:\WINDOWS\system32\autorun.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [DAEMON Tools-1033] "D:\千夜抄\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\RunOnce: [RavStub] "C:\Program Files\Rising\Rav\ravstub.exe" /RUNONCE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [bgswitch] C:\WINDOWS\system32\bgswitch.exe
O4 - HKCU\..\Run: [pyjj] D:\Program Files\jj4\jjsvr4.exe
O4 - HKCU\..\Run: [DrvMon.exe] C:\WINDOWS\system32\DrvMon.exe
O4 - Startup: 腾讯QQ.lnk = D:\Program Files\QQ.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\Program Files\AddToNetDisk.htm
O8 - Extra context menu item: 使用KuGoo3下载(&K) - D:\Program Files\KuGoo3\KuGoo3DownX.htm
O8 - Extra context menu item: 使用网际快车下载 - D:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - D:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\Program Files\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Program Files\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\Program Files\SendMMS.htm
O9 - Extra button: 分享视频,分享快乐 - {6096E38F-5AC1-4391-8EC2-75DFA92FB32F}? - http://www.56.com/leilei@union/ (file missing)
O9 - Extra button: 番茄花园 - {6096E38F-5AC1-4391-8EC4-75DFA92FB32F}? - http://www.tomatolei.com (file missing)
O9 - Extra 'Tools' menuitem: 番茄花园 - {6096E38F-5AC1-4391-8EC4-75DFA92FB32F}? - http://www.tomatolei.com (file missing)
O9 - Extra button: 易趣购物 - {BE9C13C3-9E46-4db1-BC05-BD8DA44599F2}? - http://adfarm.mediaplex.com/ad/ck/4080-22910-9640-151?cn=song;icon;hp&mpro=http://www.ebay.com.cn (file missing)
O9 - Extra 'Tools' menuitem: 易趣购物 - {BE9C13C3-9E46-4db1-BC05-BD8DA44599F2}? - http://adfarm.mediaplex.com/ad/ck/4080-22910-9640-151?cn=song;icon;hp&mpro=http://www.ebay.com.cn (file missing)
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\QQ.EXE
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Program Files\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Program Files\QQIEHelper.dll
O11 - Options group: [!CNS]  网络实名
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe



再次感谢!
最后编辑2006-07-21 13:09:10
分享到:
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at:9:18:02, on 2006-7-21
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
D:\Program Files\jj4\jjsvr4.exe
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\DrvMon.exe
D:\Program Files\QQ.exe
D:\Program Files\364139429\TMDlls\TIMPlatform.exe
C:\Program Files\Rising\Rav\RsAgent.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Downloads\ha_hijackthis\HijackThis.exe

R3 - URLSearchHook: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - D:\PROGRA~1\FLASHGET\jccatch.dll
O3 - Toolbar: (no name) - {406F94F0-504F-4a40-8DFD-58B0666ABEBD}? - (no file)
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\KakaTool.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - Toolbar: BitComet工具栏 - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - D:\Program Files\BitComet\BitCometBar\BitCometBar0.5.dll
O3 - Toolbar: (no name) - {7A38130D-BEB7-4d60-BE7A-4C4AB6A85CD1}? - (no file)
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [Soltek] C:\WINDOWS\system32\autorun.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [DAEMON Tools-1033] "D:\千夜抄\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\RunOnce: [RavStub] "C:\Program Files\Rising\Rav\ravstub.exe" /RUNONCE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [bgswitch] C:\WINDOWS\system32\bgswitch.exe
O4 - HKCU\..\Run: [pyjj] D:\Program Files\jj4\jjsvr4.exe
O4 - Startup: 腾讯QQ.lnk = D:\Program Files\QQ.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\Program Files\AddToNetDisk.htm
O8 - Extra context menu item: 使用KuGoo3下载(&K) - D:\Program Files\KuGoo3\KuGoo3DownX.htm
O8 - Extra context menu item: 使用网际快车下载 - D:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - D:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\Program Files\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Program Files\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\Program Files\SendMMS.htm
O9 - Extra button: 分享视频,分享快乐 - {6096E38F-5AC1-4391-8EC2-75DFA92FB32F}? - http://www.56.com/leilei@union/ (file missing)
O9 - Extra button: 番茄花园 - {6096E38F-5AC1-4391-8EC4-75DFA92FB32F}? - http://www.tomatolei.com (file missing)
O9 - Extra 'Tools' menuitem: 番茄花园 - {6096E38F-5AC1-4391-8EC4-75DFA92FB32F}? - http://www.tomatolei.com (file missing)
O9 - Extra button: 易趣购物 - {BE9C13C3-9E46-4db1-BC05-BD8DA44599F2}? - http://adfarm.mediaplex.com/ad/ck/4080-22910-9640-151?cn=song;icon;hp&mpro=http://www.ebay.com.cn (file missing)
O9 - Extra 'Tools' menuitem: 易趣购物 - {BE9C13C3-9E46-4db1-BC05-BD8DA44599F2}? - http://adfarm.mediaplex.com/ad/ck/4080-22910-9640-151?cn=song;icon;hp&mpro=http://www.ebay.com.cn (file missing)
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\QQ.EXE
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Program Files\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Program Files\QQIEHelper.dll
O11 - Options group: [!CNS]  网络实名
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe




这是操作后的日志

貌似两个无法修复。

请教该怎么办呀。。。

谢谢~~~~麻烦您啦~~~~
gototop
 

有么有人告诉我到底该怎么样啊。。。谢谢
gototop
 

STATUS: FINISHEDComplete scanning result of "autorun.exe", received in VirusTotal at 07.21.2006, 06:36:35 (CET).

Antivirus Version Update Result
AntiVir 6.35.0.21 07.20.2006  no virus found
Authentium 4.93.8 07.20.2006  no virus found
Avast 4.7.844.0 07.19.2006  no virus found
AVG 386 07.20.2006  no virus found
BitDefender 7.2 07.21.2006  no virus found
CAT-QuickHeal 8.00 07.20.2006  no virus found
ClamAV devel-20060426 07.20.2006  no virus found
DrWeb 4.33 07.20.2006  no virus found
eTrust-InoculateIT 23.72.74 07.20.2006  no virus found
eTrust-Vet 12.6.2303 07.20.2006  no virus found
Ewido 4.0 07.20.2006  no virus found
Fortinet 2.77.0.0 07.20.2006  no virus found
F-Prot 3.16f 07.20.2006  no virus found
F-Prot4 4.2.1.29 07.20.2006  no virus found
Ikarus 0.2.65.0 07.20.2006  no virus found
Kaspersky 4.0.2.24 07.21.2006  no virus found
McAfee 4811 07.20.2006  no virus found
Microsoft 1.1508 07.21.2006  no virus found
NOD32v2 1.1671 07.20.2006  no virus found
Norman 5.90.23 07.20.2006  no virus found
Panda 9.0.0.4 07.20.2006  no virus found
Sophos 4.07.0 07.21.2006  no virus found
Symantec 8.0 07.21.2006  no virus found
TheHacker 5.9.8.179 07.21.2006  no virus found
UNA 1.83 07.20.2006  no virus found
VBA32 3.11.0 07.20.2006  no virus found
VirusBuster 4.3.7:9 07.20.2006 no virus found


Aditional Information
File size: 61440 bytes
MD5: 3a9bcde21a8d27f0c4b7f43615e0e821
SHA1: ab56a0f2a9791ca37c56d13527e79f2189d595a9

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
gototop
 

STATUS: FINISHEDComplete scanning result of "jjsvr4.exe", received in VirusTotal at 07.21.2006, 06:43:35 (CET).

Antivirus Version Update Result
AntiVir 6.35.0.21 07.20.2006  no virus found
Authentium 4.93.8 07.20.2006  no virus found
Avast 4.7.844.0 07.19.2006  no virus found
AVG 386 07.20.2006  no virus found
BitDefender 7.2 07.21.2006  no virus found
CAT-QuickHeal 8.00 07.20.2006  no virus found
ClamAV devel-20060426 07.20.2006  no virus found
DrWeb 4.33 07.20.2006  no virus found
eTrust-InoculateIT 23.72.74 07.20.2006  no virus found
eTrust-Vet 12.6.2303 07.20.2006  no virus found
Ewido 4.0 07.20.2006  no virus found
Fortinet 2.77.0.0 07.20.2006  no virus found
F-Prot 3.16f 07.20.2006  no virus found
F-Prot4 4.2.1.29 07.20.2006  no virus found
Ikarus 0.2.65.0 07.20.2006  no virus found
Kaspersky 4.0.2.24 07.21.2006  no virus found
McAfee 4811 07.20.2006  no virus found
Microsoft 1.1508 07.21.2006  no virus found
NOD32v2 1.1671 07.20.2006  no virus found
Norman 5.90.23 07.20.2006  no virus found
Panda 9.0.0.4 07.20.2006  no virus found
Sophos 4.07.0 07.21.2006  no virus found
Symantec 8.0 07.21.2006  no virus found
TheHacker 5.9.8.179 07.21.2006  no virus found
UNA 1.83 07.20.2006  no virus found
VBA32 3.11.0 07.20.2006  no virus found
VirusBuster 4.3.7:9 07.20.2006 no virus found


Aditional Information
File size: 454656 bytes
MD5: bc44e7d7539e66407759a6e49ccc1723
SHA1: c3f5b4f7f8d515ade320f676124e8857fdaa5509

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
gototop
 

STATUS: FINISHEDComplete scanning result of "NPDocBox.dll", received in VirusTotal at 07.21.2006, 06:47:24 (CET).

Antivirus Version Update Result
AntiVir 6.35.0.21 07.20.2006  no virus found
Authentium 4.93.8 07.20.2006  no virus found
Avast 4.7.844.0 07.19.2006  no virus found
AVG 386 07.20.2006  no virus found
BitDefender 7.2 07.21.2006  no virus found
CAT-QuickHeal 8.00 07.20.2006  no virus found
ClamAV devel-20060426 07.20.2006  no virus found
DrWeb 4.33 07.20.2006  no virus found
eTrust-InoculateIT 23.72.74 07.20.2006  no virus found
eTrust-Vet 12.6.2303 07.20.2006  no virus found
Ewido 4.0 07.20.2006  no virus found
Fortinet 2.77.0.0 07.20.2006  no virus found
F-Prot 3.16f 07.20.2006  no virus found
F-Prot4 4.2.1.29 07.20.2006  no virus found
Ikarus 0.2.65.0 07.21.2006  no virus found
Kaspersky 4.0.2.24 07.21.2006  no virus found
McAfee 4811 07.20.2006  no virus found
Microsoft 1.1508 07.21.2006  no virus found
NOD32v2 1.1671 07.20.2006  no virus found
Norman 5.90.23 07.20.2006  no virus found
Panda 9.0.0.4 07.20.2006  no virus found
Sophos 4.07.0 07.21.2006  no virus found
Symantec 8.0 07.21.2006  no virus found
TheHacker 5.9.8.179 07.21.2006  no virus found
UNA 1.83 07.20.2006  no virus found
VBA32 3.11.0 07.20.2006  no virus found
VirusBuster 4.3.7:9 07.20.2006 no virus found


Aditional Information
File size: 225280 bytes
MD5: 0cbe3e4166a08fc379eabf532b4efe18
SHA1: 60393d907efd8decdb227438f7c1787f2a348062

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
gototop
 

Service load:  0%        100% 

File:  autorun.exe 
Status:  OK 
MD5  3a9bcde21a8d27f0c4b7f43615e0e821 
Packers detected:  -
Scanner results 
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
Fortinet  Found nothing
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
UNA  Found nothing
VirusBuster  Found nothing
VBA32  Found nothing
 
gototop
 

Service load:  0%        100% 

File:  jjsvr4.exe 
Status:  OK 
MD5  bc44e7d7539e66407759a6e49ccc1723 
Packers detected:  -
Scanner results 
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
Fortinet  Found nothing
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
UNA  Found nothing
VirusBuster  Found nothing
VBA32  Found nothing
gototop
 

Service load:  0%        100% 

File:  NPDocBox.dll 
Status:  OK (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database) 
MD5  0cbe3e4166a08fc379eabf532b4efe18 
Packers detected:  -
Scanner results 
AntiVir  Found nothing
ArcaVir  Found nothing
Avast  Found nothing
AVG Antivirus  Found nothing
BitDefender  Found nothing
ClamAV  Found nothing
Dr.Web  Found nothing
F-Prot Antivirus  Found nothing
Fortinet  Found nothing
Kaspersky Anti-Virus  Found nothing
NOD32  Found nothing
Norman Virus Control  Found nothing
UNA  Found nothing
VirusBuster  Found nothing
VBA32  Found nothing
gototop
 

全贴上来了。直接复制的,没用截图。版主这样行不?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT