AVG:
扫描:miss;
双击:实机双击,IDP击杀之。(好厉害,改密码还加驱,虽然IDP干掉了它的一大堆衍生物,但还是密码还是被修改了。。。。。。)
"";"IDP.ALEXA.51, C:\Users\killer\Desktop\cf卡bug不掉血补丁.exe";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\wbem\WMIC.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net1.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net1.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net1.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net1.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Windows\System32\net1.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", C:\Users\killer\Desktop\Qx2.sys";"Deleted, Moved to Virus Vault";"File or Directory";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SYSTEM\CONTROLSET001\SERVICES\HIDEME";"Deleted";"Registry key";"2016/2/19, 21:23:56"
"";", C:\Users\killer\Desktop\cf卡bug不掉血补丁.exe";"Object was blocked";"Process";"2016/2/19, 21:23:56"
"";", HKEY_USERS\S-1-5-21-540828005-2055914412-3868506426-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM";"Deleted, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_USERS\S-1-5-21-540828005-2055914412-3868506426-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER";"Deleted, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_USERS\S-1-5-21-540828005-2055914412-3868506426-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM\\DISABLETASKMGR";"Deleted";"Registry value";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SCRFILE\SHELL\OPEN\COMMAND";"Healed, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\PIFFILE\SHELL\OPEN\COMMAND";"Healed, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\COMFILE\SHELL\OPEN\COMMAND";"Healed, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\BATFILE\SHELL\OPEN\COMMAND";"Healed, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CMDFILE\SHELL\OPEN\COMMAND";"Healed, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
"";", HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\EXEFILE\SHELL\OPEN\COMMAND";"Healed, Moved to Virus Vault";"Registry key";"2016/2/19, 21:23:56"
|