查看: 1284|回复: 3
收起左侧

[已解决] 扫描的结果,??将信将疑。

 关闭 [复制链接]
why3030
发表于 2011-7-22 13:06:19 | 显示全部楼层 |阅读模式
本帖最后由 bayern 于 2011-7-22 13:49 编辑

刚装了  电脑疯子的版本,优化后,那个速度真是没话说的。


系统文件  没动系统文件,就是输入法指示器替换成internat.exe

上了几个绿软后,找了几个流氓软件扫描器,没扫到。

又下了Malwarebytes,再扫!   一大堆。。。包括他自己也是流氓。。。。。

无语!!!!!!!!!!


Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org

数据库版本: 7142

Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180

2011-7-22 12:41:32
mbam-log-2011-07-22 (12-41-28).txt

扫描类型: 快速扫描
扫描项目: 134718
扫描用时 59 秒

被感染内存进程数目: 2
被感染内存模块数目: 6
被感染注册表项数目: 19
被感染注册表值数目: 0
被感染注册表数据项数目: 3
被感染文件夹数目: 18
被感染文件数目: 84

被感染内存进程数目:
c:\malwarebytesportable\malwarebytesportable.exe (Dont.Steal.Our.Software.A) -> 3032 -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam.exe (Dont.Steal.Our.Software.A) -> 3104 -> No action taken.

被感染内存模块数目:
c:\soft\Thunder5\ComDlls\xunleibho_now.dll (Trojan.BHO) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamcore.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamnet.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\ssubtmr6.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\vbalsgrid6.ocx (Dont.Steal.Our.Software.A) -> No action taken.

被感染注册表项数目:
HKEY_CLASSES_ROOT\Typelib\{87CA3845-37FE-414C-81CF-E08A7D0F6779} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{988934A4-064B-11D3-BB80-00104B35E7F9} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{802F530B-A8F6-4631-AE49-6BACAAC6373E} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\XunLeiBHO.XDownloadManager.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\XunLeiBHO.XDownloadManager (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\XunLeiBHO.ThunderIEHelper.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\XunLeiBHO.ThunderIEHelper (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{889D2FEB-5411-4565-8998-1DD2C5261283} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{889D2FEB-5411-4565-8998-1DD2C5261283} (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A} (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A} (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A} (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\SSubTimer6.GSubclass (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C5DA1F2B-B2BF-4DFC-BC9A-439133543A67} (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A} (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB} (Dont.Steal.Our.Software.A) -> No action taken.
HKEY_CLASSES_ROOT\vbAcceleratorSGrid6.vbalGrid (Dont.Steal.Our.Software.A) -> No action taken.

被感染注册表值数目:
(未发现有害项目)

被感染注册表数据项数目:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

被感染文件夹数目:
c:\malwarebytesportable (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\AppInfo (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\configuration (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\SysDir (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\SysDir\drivers (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\configuration (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other\Help (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other\Help\images (Dont.Steal.Our.Software.A) -> No action taken.

被感染文件数目:
c:\soft\Thunder5\ComDlls\xunleibho_now.dll (Trojan.BHO) -> No action taken.
c:\WINDOWS\system32\findstr.exe (Malware.Tool) -> No action taken.
c:\documents and settings\why\application data\microsoft\internet explorer\quick launch\启动 internet explorer 浏览器.lnk (Hijack.Trace) -> No action taken.
c:\WINDOWS\internat.exe (Trojan.Agent) -> No action taken.
c:\malwarebytesportable\malwarebytesportable.exe (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\下载安装说明.txt (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\未来软件园-首页.url (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\malwarebytesportable.ini (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\AppInfo\appicon.ico (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\AppInfo\appicon_16.png (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\AppInfo\appicon_32.png (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\AppInfo\appinfo.ini (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\rules.ref (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\configuration\build.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\configuration\config.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\configuration\custom.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\configuration\local.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\defaultdata\malwarebytes\malwarebytes' anti-malware\configuration\news.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\changes.rtf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\license.txt (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam-filter-32.sys (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam-filter-64.sys (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam-ssdt-32.sys (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam.chm (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbam.exe (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamcore.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamext-32.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamext-64.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamgui.exe (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamnet.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\mbamservice.exe (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\ssubtmr6.dll (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\vbalsgrid6.ocx (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\arabic.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\belarusian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\bosnian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\bulgarian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\catalan.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\chinesesi.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\chinesetr.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\croatian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\czech.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\danish.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\dutch.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\english.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\estonian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\finnish.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\french.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\german.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\greek.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\hebrew.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\hungarian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\italian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\korean.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\latvian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\lithuanian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\macedonian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\norwegian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\polish.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\portuguesebr.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\portuguesept.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\romanian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\russian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\serbian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\slovak.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\slovenian.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\spanish.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\swedish.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\turkish.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\App\malwarebytes\languages\vietnamese.lng (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytesportable.ini (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\rules.ref (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\configuration\build.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\configuration\config.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\configuration\custom.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\configuration\local.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Data\malwarebytes\malwarebytes' anti-malware\configuration\news.conf (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other\Help\style.css (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other\Help\images\favicon.ico (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other\Help\images\help_background_footer.png (Dont.Steal.Our.Software.A) -> No action taken.
c:\malwarebytesportable\Other\Help\images\help_background_header.png (Dont.Steal.Our.Software.A) -> No action taken.
c
叮铛浪子
头像被屏蔽
发表于 2011-7-22 15:18:58 | 显示全部楼层
http://bbs.kafan.cn/thread-586034-1-1.html
看完这个贴子,你应该就明白了。
Mr.Tong
发表于 2011-7-22 15:25:21 | 显示全部楼层
。。。从来不用新版的系统,只用MSDN,老版本的ymlf和deepin系统。
lupto
发表于 2011-7-22 15:44:49 | 显示全部楼层
看不懂的路过

只晓得老版系统本身就是一个蜂窝
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-11-2 21:34 , Processed in 0.121246 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表