查看: 1998|回复: 3
收起左侧

[求助] 请教如何看扫描结果报告?

[复制链接]
Geoman
发表于 2007-12-19 21:26:43 | 显示全部楼层 |阅读模式
以下是部分扫描报告文件:
Start scanning boot sectors:
Boot sector 'C:\'
      [NOTE]      No virus was found!
Boot sector 'D:\'
      [NOTE]      No virus was found!
Boot sector 'E:\'
      [NOTE]      No virus was found!
Boot sector 'F:\'
      [NOTE]      No virus was found!

Starting to scan the registry.
The registry was scanned ( '39' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\hiberfil.sys
      [WARNING]   The file could not be opened!
C:\Documents and Settings\wzp\桌面\driver.rar
  [0] Archive type: RAR
  --> driver\dogsetup.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '47d0d6d6.qua'!
C:\Documents and Settings\wzp\桌面\driver\dogsetup.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '47ced6d4.qua'!
C:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP38\A0009041.dll
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
C:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP43\A0011674.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
C:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP63\A0018437.exe
  [0] Archive type: RAR SFX (self extracting)
  --> hgz.exe
      [DETECTION] Is the Trojan horse TR/Drop.BaiduBar.A
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
C:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP66\A0020115.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
C:\WINDOWS\Downloaded Program Files\CnsDtu.dll
      [DETECTION] Is the Trojan horse TR/Spy.CNSMin
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
C:\WINDOWS\system32\cns.dll
      [DETECTION] Is the Trojan horse TR/Dldr.Baido
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
C:\WINDOWS\system32\cns.exe
      [DETECTION] Is the Trojan horse TR/Dldr.Baido
      [INFO]      The file was moved to '47dadd18.qua'!
Begin scan in 'D:\'
D:\pagefile.sys
      [WARNING]   The file could not be opened!
Begin scan in 'E:\' <新加卷>
E:\应用程序安装文件\99169Mtv在线下载.rar
  [0] Archive type: RAR
  --> ÔÚÏßMTVÈÎÎÒÏÂ.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [INFO]      The file was moved to '4798df2d.qua'!
E:\应用程序安装文件\专业软件\yantu5.11\crack\ShiZheng.exe
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
E:\应用程序安装文件\专业软件\yant5.11-db\ShiZheng.exe
      [DETECTION] Contains suspicious code HEUR/Crypted
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
E:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP42\A0009350.EXE
      [DETECTION] Contains detection pattern of the LittleRed virus
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
E:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP42\A0009351.EXE
      [DETECTION] Contains detection pattern of the LittleRed virus
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
E:\Recycled\De1.rar
      [DETECTION] The file contains an executable. This, however, is disguised by a harmless file extension (HIDDENEXT/Worm.Gen)
      [INFO]      The file was moved to '4798e626.qua'!
Begin scan in 'F:\' <新加卷>


End of the scan: 2007年12月18日  23:32
Used time:  1:19:18 min

The scan has been canceled!

   5439 Scanning directories
449445 Files were scanned
      6 viruses and/or unwanted programs were found
      9 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      5 files were moved to quarantine
      0 files were renamed
      2 Files cannot be scanned
449439 Files not concerned
   3596 Archives were scanned
     13 Warnings
     43 Notes
请问下面的是什么病毒文件,系统上根本没这个路径?
C:\System Volume Information\_restore{75C08FAA-7B2E-429B-87D8-64B32E23ACAF}\RP43\A0011674.exe
      [DETECTION] Contains suspicious code HEUR/Malware
      [WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!
ngh55
发表于 2007-12-19 21:30:07 | 显示全部楼层
C:\System Volume Information\_restore
在系统恢复中,可用winrar 来看。
ngh55
发表于 2007-12-19 21:36:50 | 显示全部楼层
[WARNING]   An error has occurred and the file was not deleted. ErrorID: 16003
      [WARNING]   The file could not be deleted!

伞警告这个文件没能删除。
可在我的电脑 属性 系统还原   先关闭系统还原后再重新启用系统还原就会自动删除以前的所有还原点建立新的还原点。
hahacomcn
发表于 2007-12-20 10:09:13 | 显示全部楼层
是在系统还原区里面的,,可以先关闭系统还原,,然后重启。

再用红伞扫描删除病毒,,再备份。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-30 01:39 , Processed in 0.121536 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表