查看: 7789|回复: 22
收起左侧

[新手上路] 今天WD升级明显安装两次……

[复制链接]
ELOHIM
发表于 2015-3-26 08:56:16 | 显示全部楼层 |阅读模式
本帖最后由 ELOHIM 于 2015-3-26 09:08 编辑


果不其然,
网络检查系统定义版本: 114.1.0.0

@驭龙 提供一下升级信息吧……

[mw_shl_code=css,true][03/26/15-08:53:54] Signature update - files received: Engine version: 2.1.11502.0; Signature version = 114.1.0.0
[03/26/15-08:53:54] --Signature list start--
[03/26/15-08:53:54] [On ] Sig {2e008210-b6b9-405f-84b5-94a468eab6f7} Other:Win/AdflyClickFraud.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {387dc41e-eceb-4349-a1bb-cc732ee16366} Other:Win/AdknowledgeClick.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {d95ffcc7-0cea-4961-af6f-f08956649a19} Other:Win/BalamidB.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {d5921cd5-02e5-467f-a704-f9a832a613ca} Other:Win/BalamidA.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {98fc2ed0-1a01-4940-8895-b782084dfc24} Other:Win/Beebone.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {0ba185cf-007f-468f-b01e-e83c6f60a829} Other:Win/BIFROSE.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {54d50bad-f698-4ff9-9a53-1f678bd39a48} Other:Win/BingAdClick.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {69055c7c-acc5-4b54-9821-09138dec7d5b} Other:Win/BladabindiCustom!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f224a29c-29c7-4d94-9063-cf1ae837856d} Other:Win/Caphaw.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {60a54817-6315-4ffa-aee4-a51eefb054a0} Other:Win/CLEAMAN.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {881bed77-cdb1-4501-a6e7-7a1ec579984c} Other:Win/Clodow.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {42126365-43d2-4443-819d-9e7beb124489} Other:Win/Crowti.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {c0af4a50-8911-436c-830f-797b419b55b0} Other:Win/CYCBOT.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {c04d8bf1-79a7-4f2c-9a7e-55efeedae8ff} Other:Win/Dimegup.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {3c5ed7df-ff67-475c-9a2f-19dfc3f5a0ff} Other:Win/Dorkbot.A.IRC!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {193aedbe-238b-4708-ae81-0b5667175923} Other:Win/Etumbot.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {530607d9-8e4d-44c2-91da-4951e9c11550} Other:Win/FAKEPAV.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {e43c8ce3-4ab0-4c32-a59d-7a6f57a0e379} Other:Win/FAREIT.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {56248e94-e893-4be5-b9bb-df158d93d7ad} Other:Win/FleercivetIdleFraud.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f2579c2b-59b1-4918-9aed-da75c192721b} Other:Win/Gatak.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {8b890dcf-113f-4bcb-b200-ac55e9b160d2} Other:Win/GenericIrc.A.IRC!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {5ba89bf8-426c-4bcc-b371-82f4b246ffa2} Other:Win/Gingplog.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {c6442852-815c-44b7-953b-06a060d617c3} Other:Win/GingplogDropper.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f3c5a901-58f4-4357-b1f2-fa27b8080c0c} Other:Win/GROZLEX.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {21d87a46-1d28-410c-91c7-f4aa8fc02c84} Other:Win/Guplof.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {fad62e2d-5c87-4294-b281-2f1a82ab1eea} Other:Win/HARNIG.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {ed4aa3ca-40fb-409a-9294-77699e69f349} Other:Win/HOTBAR.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {4fefea43-6a1b-4429-8b63-bc6fea62a77b} Other:Win/HTTPDos.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {8ad316ec-cb68-4b13-ac04-4e2421deafb4} Other:Win/HttpsGeneric.HTTPS!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {9d51d4d3-107a-452d-a316-521f667d2ce9} Other:Win/Jenxcus.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {829c21c6-0714-4edb-a5b5-386beca031fa} Other:Win/LOLYDA.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {3cde1961-7c88-4d7e-9b6e-b71a73cfaa6e} Other:Win/MiurefIdleFraud.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {0d81f25a-0b4f-417f-b8f7-40a3d25fd943} Other:Win/MYFWUS.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {e8a58c94-796f-42cd-a65c-99d8d225887d} Other:Win/Neogif.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {994f3f86-2b92-4ef1-9bbb-807b9c8cfe3e} Other:Win/Nivdort.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {3d1d4073-91cd-4a5c-ab57-f924e3eb6790} Other:Win/Nuqel.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {3c3256a0-400e-4f4a-bacd-93d97ceebf5c} Other:Win/Nymaim.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {64766320-0ca6-4173-a4dc-ca8d7eb81d0d} Other:Win/PAMESEG.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {fcb641ac-05e4-47da-834b-c24a9b594f42} Other:Win32/Phorpiex.A.IRC!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {5e91f64b-60ef-4a54-b981-843a4f4bddb3} Other:Win/Pstinb.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {fd922c8e-8fa3-4824-9897-d6ed83c4de58} Other:Win/Proslikefan.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f0ef2eaf-a20d-4b40-91fd-5a472c315905} Other:Win/PulickCnC.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {1a5bb1d1-1c8d-4b8a-b5a1-af6dee0d3ef9} Other:Win/Rebhip.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {ee554259-e92b-4528-902a-9f72675795e2} Other:Win/RevetonPayments.Custom!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {75741923-115e-463d-bbc7-19b3a7e5bc51} Other:Win/RopestIdleFraud.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {7e8aa7cc-a30d-4bba-9533-0a65d3118a16} Other:Win/SoftPulse.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {373d12f3-533e-4665-9ebf-f96836aecadc} Other:Win/SteamStealer.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {283a88ad-33d0-4cba-bb71-02543118b196} Other:Win/TeschCustom.Tesch!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {04cc148e-e83a-4569-a891-cc89318ccaf2} Other:Win/RAMNIT.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {8972f0cf-f447-478c-beb1-88f4eee96908} Other:Win/RAMNIT.CUSTOM!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {91bb65e2-2c89-4d35-ae78-8c9f189cdc57} Other:Win/RENOS.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {db9aeca3-583f-466a-aafd-e2039bd3adfc} Other:Win/SIMDA.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {0751ede2-b4a7-41e0-8980-d253abbb665e} Other:Win/SIREFEF.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f87a26b0-4176-4c03-80bc-02d57bc27074} Other:Win/Sisbot.A.IRC!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {16e6088b-ab72-434d-8cc2-d51fdfe0dfa3} Other:Win/SWIZZOR.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {8e766363-34db-4ca1-996f-6b8792135e6e} Other:Win/Upatre.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {42adef00-e84a-4e31-9dff-4e195855a49a} Other:Win/URLAwareness.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {b39d3eb2-473f-40bd-b92e-3a541950b674} Other:Win/TestSig.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {089edc48-38d7-4165-bf41-bcaaba06f180} Other:Win/TEDROO.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {86040ae3-5ff0-4368-a6db-b4f25a38b38c} Other:Win/ViknokCnC.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {672f7fe9-e909-4424-97dc-a4062f8b35bb} Other:Win/VOBFUS.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {56a9c37d-c665-4d95-a1e4-4fb00afee93a} Other:Win/VUNDO.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f5a8ca50-4ba6-453c-9af0-c3cfac70bf1d} Other:Win/WALEDAC.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {ecfaaf2a-e527-4537-90de-32af3a723440} Other:Win/WINWEBSEC.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {198df45f-dc5a-408d-b8e2-7671b67fa535} Other:Win/WuCall.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {7819b4af-3b7d-47c4-999a-3e0254739da1} Other:Win/XTRAT.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {17b5a0b2-7d7e-40a2-848b-c09a9a84c3b9} Other:Win/ZBOT.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {7d299124-5ed1-4be4-942f-07b7aa8a9d7c} Other:Win/ZEGOST.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {6e4d2f4c-2d44-4aa8-8857-514cc2eec83b} Other:Win/ZegostTcpStreamCustom!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {078d1c6d-456a-40c5-95ff-e710e0e67f22} Other:Win/ZWANGI.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {284c3520-fcd8-44a5-82ed-297ba7d4808c} Other:Win/Malagent.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {47d6ccfc-14df-4325-8e6e-ab70f33f63f3} Other:Win/Tuscrape.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {894cf0e5-c2b7-4dfc-ad6e-018e7107d527} Other:Win/Ogimant.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {24eda918-dfa6-4e7a-badc-7b85dd20a145} Other:Win/WinntiCert.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {b9081acb-1b80-4744-a758-c1585ce4b7a3} Other:Win/BingAds.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {1140e991-b12f-4511-a01b-7cd2c55a1551} Other:Win/AppNexusClick.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {1344db11-1bc3-4378-bae4-f093441aeb3e} Other:Win/AppNexusMobile.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {c8e694f4-eb43-4ccd-8bf2-a7efbc9fddaf} Other:Win/AppNexusImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {b5867063-a23c-47d7-a0a1-39a976130206} Other:Win/DoubleClickClick.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {1bd8f392-9dd6-4340-9e58-c8e6ce28f916} Other:Win/DoubleClickImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {cedfcb75-51cb-4f5c-9f4f-3513109e087b} Other:Win/DoubleClickMob.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {2be18879-e1b2-421d-bd58-ba1d7f002b89} Other:Win/MobileGenImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {52f5922e-c33c-408e-b194-577a310a2ada} Other:Win/RubiconImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {c9b7e661-c818-4177-bc9a-273e5958c073} Other:Win/GoogleClick.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {baa3b342-2486-4877-92a3-fd2ac75205d3} Other:Win/GoogleImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {59a97b9d-b9f4-49d2-8e07-f6aab66e3d05} Other:Win/YahooClick.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {f60d9da0-2863-49c5-98ee-672cd92df19a} Other:Win/YahooImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {14e0ea00-37fe-4109-bd78-1cef72adf272} Other:Win/SimplifiCollect.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {5b419168-2f04-4346-8bbd-cc673b6a4797} Other:Win/SimplifiImp.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] [On ] Sig {30ec694c-88fe-4c8f-a3de-c53d971fcfb9} Other:Win/SimplifiClk.HTTP.HTTP!NIS-0000-0000 -
[03/26/15-08:53:54] --Signature list end--
[03/26/15-08:53:54] Signatures: Total: 90;  Enabled: 90
[03/26/15-08:53:54] Active signature breakdown: BM: 90; ZeroDay-Block: 0; ZeroDay-Detect: 0; ZeroDay-Detect-Inline: 0
[03/26/15-08:53:54] New engine version=2.1.11502.0; New signature version=114.1.0.0
[03/26/15-08:53:54] Successfully loaded new definitions, Any signature active (0/1): ZeroDay=0, BM=1
[03/26/15-08:53:54] At least one signature is active
[03/26/15-08:53:54] Already connected to the driver
[03/26/15-08:53:54] Load Definitions completed successfully.[/mw_shl_code]
驭龙
发表于 2015-3-26 09:03:20 | 显示全部楼层
我先工作一会,中午分析
ELOHIM
 楼主| 发表于 2015-3-26 09:07:49 | 显示全部楼层
驭龙 发表于 2015-3-26 09:03
我先工作一会,中午分析

我把日志贴上,你帮忙看一下具体的哦!~~
驭龙
发表于 2015-3-26 09:27:49 | 显示全部楼层
本帖最后由 驭龙 于 2015-3-26 09:32 编辑
ELOHIM 发表于 2015-3-26 09:07
我把日志贴上,你帮忙看一下具体的哦!~~


这次定义没有更新,依然是之前.88的90条网络行为实时监控定义,只是合并了基础库与增量更新库,这次最重要的是半年没有更新的网络检查系统引擎更新了,这个已经是半年没有更新了
ELOHIM
 楼主| 发表于 2015-3-26 09:44:44 | 显示全部楼层
驭龙 发表于 2015-3-26 09:27
这次定义没有更新,依然是之前.88的90条网络行为实时监控定义,只是合并了基础库与增量更新库,这次最 ...


卡饭没有赞的按钮……
驭龙
发表于 2015-3-26 09:56:59 | 显示全部楼层
ELOHIM 发表于 2015-3-26 09:44
卡饭没有赞的按钮……

不怕,我不在乎那些,要不然就去玩微博了,不过我不喜欢微博微信神马的,哈哈。

不过遗憾的是新NIS引擎,毫无新功能变化,只是优化基础代码,其它没有了,这次可能就是为了合并基础库和增量更新库吧,小失望一下
wudiwusuowei
头像被屏蔽
发表于 2015-3-26 10:04:00 来自手机 | 显示全部楼层
驭龙 发表于 2015-3-26 09:56
不怕,我不在乎那些,要不然就去玩微博了,不过我不喜欢微博微信神马的,哈哈。

不过遗憾的是新NIS引 ...

scep有隐藏任务栏图标的功能吗?mcafee和symantec的企业版都可以隐藏任务栏的图标。
wudiwusuowei
头像被屏蔽
发表于 2015-3-26 10:05:40 来自手机 | 显示全部楼层
驭龙 发表于 2015-3-26 09:56
不怕,我不在乎那些,要不然就去玩微博了,不过我不喜欢微博微信神马的,哈哈。

不过遗憾的是新NIS引 ...

说实话,俺不喜欢看到任务栏的图标,只希望有wd没有的右键扫描。
驭龙
发表于 2015-3-26 10:12:27 | 显示全部楼层
wudiwusuowei 发表于 2015-3-26 10:04
scep有隐藏任务栏图标的功能吗?mcafee和symantec的企业版都可以隐藏任务栏的图标。

没有,不过可以通过任务栏隐藏
ELOHIM
 楼主| 发表于 2015-3-26 12:50:46 | 显示全部楼层
驭龙 发表于 2015-3-26 09:56
不怕,我不在乎那些,要不然就去玩微博了,不过我不喜欢微博微信神马的,哈哈。

不过遗憾的是新NIS引 ...

大动作太大,扯一下会疼。
神不知鬼不觉才好。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-28 00:35 , Processed in 0.135526 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表