查看: 2270|回复: 4
收起左侧

[已解决] 高手幫助看看, 這些是否木馬程式

 关闭 [复制链接]
kwanami
发表于 2014-6-27 11:18:31 | 显示全部楼层 |阅读模式
本帖最后由 kwanami 于 2014-6-27 22:31 编辑

剛剛用 malwarebytes 掃瞄出來的
似乎和 Systweak RegClean Pro , Advanced System Protector 等程式有關
不過這些程式已經刪除了(之前是不小心安裝了的)



Folders: 13
Adware.InstallBrain, C:\ProgramData\IBUpdaterService, No Action By User, [ea00b9c27209ab8b2a35bf015fa46e92],
PUP.Optional.SpeedAnalysis3.A, C:\Users\Owner\AppData\Roaming\SpeedAnalysis3, [5a90dd9e9cdf73c34da141aee41fd729],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\2.1.1000.12150,  [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates,, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\2.1.1000.12150,[9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\Backup,[9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\Logs, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro, [7773760545367bbb69fbccc78082748c],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1, [7773760545367bbb69fbccc78082748c],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\Partial Backups,  [7773760545367bbb69fbccc78082748c],


Files: 28
Adware.InstallBrain, C:\ProgramData\IBUpdaterService\repository.xml,  [ea00b9c27209ab8b2a35bf015fa46e92],
PUP.Optional.SpeedAnalysis3.A, C:\Users\Owner\AppData\Roaming\SpeedAnalysis3\speedanalysis03.crx,  [5a90dd9e9cdf73c34da141aee41fd729],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\AddonSafelist,  [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\log.xslt, , [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\completedatabase.db, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Cookies.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\DigSign.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\FilePaths.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\FileSignature.bin,[8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Folders.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Md5.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\Registry.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\SetupSign.bin, N[8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\signatures\StrSetupSign.bin, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1545mupdate.zip,[8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1545update.zip, [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1546update.zip,  [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\1547update.zip,
PUP.Optional.AdvancedSystemProtector.A, C:\ProgramData\Systweak\Advanced System Protector\updates\914completedatabase.zip,  [8763fd7e22596acc23a151412ad8b947],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\ASPStartupManagerErrorLog.txt, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\QDetail.db, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\Settings.db, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\2.1.1000.12150\ASPLog.txt, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\Logs\log_20-10-13_01-49-46.xml, [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.AdvancedSystemProtector.A, C:\Users\Owner\AppData\Roaming\Systweak\Advanced System Protector\Logs\SMLog.xml, N [9a501f5c4338b0869d27a3ef0ef4a957],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\log_10-20-2013.log, [7773760545367bbb69fbccc78082748c],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\log_10-21-2013.log, [7773760545367bbb69fbccc78082748c],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\traditionalcn_rcp_zh-tw.dat,[7773760545367bbb69fbccc78082748c],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\Partial Backups\00000001.rmx, [7773760545367bbb69fbccc78082748c],
PUP.Optional.RegCleanerPro.A, C:\Users\Owner\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\Partial Backups\00000001.rxb, [7773760545367bbb69fbccc78082748c],

謝謝  
黑鹰99
发表于 2014-6-27 11:30:07 | 显示全部楼层
Systweak RegClean Pro , Advanced System Protector 这两个东西是不是在论坛软件区下载的?
kwanami
 楼主| 发表于 2014-6-27 14:29:12 | 显示全部楼层
黑鹰99 发表于 2014-6-27 11:30
Systweak RegClean Pro , Advanced System Protector 这两个东西是不是在论坛软件区下载的?

不是啊 ! 是安裝其他程式時, 被綑綁安裝的....
我剛才再刪除了這些程式的殘留資料夾後
再掃瞄一次, 只剩下這4個疑似木馬檔案


Folders: 2

Adware.InstallBrain, C:\ProgramData\IBUpdaterService,  [6e7c8deefb80fd399ecd5967fd06bf41],

PUP.Optional.SpeedAnalysis3.A, C:\Users\Owner\AppData\Roaming\SpeedAnalysis3,  [bb2fb7c40c6ff24426d4a6490ff46898],

Files: 2

Adware.InstallBrain, C:\ProgramData\IBUpdaterService\repository.xml,  [6e7c8deefb80fd399ecd5967fd06bf41],

PUP.Optional.SpeedAnalysis3.A, C:\Users\Owner\AppData\Roaming\SpeedAnalysis3\speedanalysis03.crx, , [bb2fb7c40c6ff24426d4a6490ff46898],
黑鹰99
发表于 2014-6-27 14:39:16 | 显示全部楼层
kwanami 发表于 2014-6-27 14:29
不是啊 ! 是安裝其他程式時, 被綑綁安裝的....
我剛才再刪除了這些程式的殘留資料夾後
再掃瞄一次, 只 ...

那就继续删除呗!什么软件这么厉害,捆绑那么多玩意?
kwanami
 楼主| 发表于 2014-6-27 22:31:13 | 显示全部楼层
全部隔離了
Malwarebytes 確實不錯
留下備用
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-10 23:50 , Processed in 0.117598 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表