查看: 1534|回复: 4
收起左侧

[求助] 扫描报告请帮忙看看。。。。

[复制链接]
深度扫描
发表于 2008-8-29 11:56:32 | 显示全部楼层 |阅读模式
打开红伞的扫描报告。。。。谢谢帮看看!



Avira AntiVir Personal
Report file date: 2008年8月29日  09:19

Scanning for 1579284 virus strains and unwanted programs.

Licensed to:      Avira AntiVir PersonalEdition Classic
Serial number:    0000149996-ADJIE-0001
Platform:         Windows XP
Windows version:  (Service Pack 2)  [5.1.2600]
Boot mode:        Normally booted
Username:         SYSTEM
Computer name:    LENOVO-F4A3A614

Version information:
BUILD.DAT     : 8.1.0.331      16934 Bytes   2008-8-12 11:46:00
AVSCAN.EXE    : 8.1.4.7       315649 Bytes   2008-6-26 02:57:53
AVSCAN.DLL    : 8.1.4.0        40705 Bytes   2008-5-26 01:56:40
LUKE.DLL      : 8.1.4.5       164097 Bytes   2008-6-12 06:44:19
LUKERES.DLL   : 8.1.4.0        12033 Bytes   2008-5-26 01:58:52
ANTIVIR0.VDF  : 6.40.0.0    11030528 Bytes   2007-7-18 04:33:34
ANTIVIR1.VDF  : 7.0.5.1      8182784 Bytes   2008-6-24 07:54:15
ANTIVIR2.VDF  : 7.0.6.60     2802176 Bytes   2008-8-24 07:02:34
ANTIVIR3.VDF  : 7.0.6.82      148992 Bytes   2008-8-28 07:02:39
Engineversion : 8.1.1.23  
AEVDF.DLL     : 8.1.0.5       102772 Bytes   2008-2-25 03:58:21
AESCRIPT.DLL  : 8.1.0.68      315770 Bytes   2008-8-28 07:03:14
AESCN.DLL     : 8.1.0.23      119156 Bytes   2008-7-10 06:44:49
AERDL.DLL     : 8.1.0.20      418165 Bytes   2008-4-24 06:37:48
AEPACK.DLL    : 8.1.2.1       364917 Bytes   2008-7-15 06:58:35
AEOFFICE.DLL  : 8.1.0.22      192890 Bytes   2008-8-28 07:03:10
AEHEUR.DLL    : 8.1.0.50     1388918 Bytes   2008-8-28 07:03:05
AEHELP.DLL    : 8.1.0.15      115063 Bytes   2008-7-10 06:44:48
AEGEN.DLL     : 8.1.0.36      315764 Bytes   2008-8-28 07:02:45
AEEMU.DLL     : 8.1.0.7       430452 Bytes   2008-7-31 02:33:21
AECORE.DLL    : 8.1.1.8       172406 Bytes   2008-7-31 02:33:21
AEBB.DLL      : 8.1.0.1        53617 Bytes   2008-7-10 06:44:48
AVWINLL.DLL   : 1.0.0.12       15105 Bytes    2008-7-9 02:40:05
AVPREF.DLL    : 8.0.2.0        38657 Bytes   2008-5-16 03:28:01
AVREP.DLL     : 8.0.0.2        98344 Bytes   2008-8-28 07:02:41
AVREG.DLL     : 8.0.0.1        33537 Bytes    2008-5-9 05:26:40
AVARKT.DLL    : 1.0.0.23      307457 Bytes   2008-2-12 02:29:23
AVEVTLOG.DLL  : 8.0.0.16      119041 Bytes   2008-6-12 06:27:49
SQLITE3.DLL   : 3.3.17.1      339968 Bytes   2008-1-22 11:28:02
SMTPLIB.DLL   : 1.2.0.23       28929 Bytes   2008-6-12 06:49:40
NETNT.DLL     : 8.0.0.1         7937 Bytes   2008-1-25 06:05:10
RCIMAGE.DLL   : 8.0.0.51     2371841 Bytes   2008-6-12 07:48:07
RCTEXT.DLL    : 8.0.52.0       86273 Bytes   2008-6-27 07:34:37

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: repair
Secondary action.................: delete
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, E:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: medium
Skipped files....................: C:\WINDOWS\system32\drivers\KAVSafe.sys,
Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR,

Start of the scan: 2008年8月29日  09:19

Starting search for hidden objects.
'38455' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'TXPlatform.exe' - '1' Module(s) have been scanned
Scan process 'QQ.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'Mctray.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'UdaterUI.exe' - '1' Module(s) have been scanned
Scan process 'shstat.exe' - '1' Module(s) have been scanned
Scan process 'THGuard.exe' - '1' Module(s) have been scanned
Scan process 'arvmon.exe' - '1' Module(s) have been scanned
Scan process 'AntiArp.exe' - '1' Module(s) have been scanned
Scan process 'safeboxTray.exe' - '0' Module(s) have been scanned
Scan process '360tray.exe' - '0' Module(s) have been scanned
Scan process 'DkIcon.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'SvcGuiHlpr.exe' - '1' Module(s) have been scanned
Scan process 'SUService.exe' - '1' Module(s) have been scanned
Scan process 'logmon.exe' - '1' Module(s) have been scanned
Scan process 'AcSvc.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'IUService.exe' - '1' Module(s) have been scanned
Scan process 'tvtsched.exe' - '1' Module(s) have been scanned
Scan process 'rrservice.exe' - '1' Module(s) have been scanned
Scan process 'tvttcsd.exe' - '1' Module(s) have been scanned
Scan process 'TpKmpSvc.exe' - '1' Module(s) have been scanned
Scan process 'TPHDEXLG.exe' - '1' Module(s) have been scanned
Scan process 'tvt_reg_monitor_svc.exe' - '1' Module(s) have been scanned
Scan process 'RegSrvc.exe' - '1' Module(s) have been scanned
Scan process 'naPrdMgr.exe' - '1' Module(s) have been scanned
Scan process 'VsTskMgr.exe' - '1' Module(s) have been scanned
Scan process 'Mcshield.exe' - '1' Module(s) have been scanned
Scan process 'FrameworkService.exe' - '1' Module(s) have been scanned
Scan process 'DkService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'AcPrfMgrSvc.exe' - '1' Module(s) have been scanned
Scan process 'IPSSVC.EXE' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'S24EvMon.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'EvtEng.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'ibmpmsvc.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
54 processes with 54 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
    [INFO]      No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
    [INFO]      No virus was found!
Boot sector 'D:\'
    [INFO]      No virus was found!
Boot sector 'E:\'
    [INFO]      No virus was found!

Starting to scan the registry.
The registry was scanned ( '71' files ).


Starting the file scan:

Begin scan in 'C:\' <Preload>
C:\pagefile.sys
    [WARNING]   The file could not be opened!
Begin scan in 'D:\'
Begin scan in 'E:\'
E:\acad2006\AUTOCAD2006学习视频教程\AUTOCAD2006学习视频教程\AUTOCAD2006学习视频教程\AUTOCAD2006学习\Uninstall.exe
    [DETECTION] Is the TR/Dldr.Delf.anx.1 Trojan
    [NOTE]      A backup was created as '49205a3c.qua'  ( QUARANTINE )
    [NOTE]      Attempting to perform action using the ARK lib.
    [NOTE]      A backup was created as '4dcc8e35.qua'  ( QUARANTINE )
E:\Program Files\Antadis\Translator Internet\Install.exe
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '492a5afc.qua'  ( QUARANTINE )
    [NOTE]      Attempting to perform action using the ARK lib.
    [NOTE]      A backup was created as '4dc09e35.qua'  ( QUARANTINE )
E:\Program Files\Kingsoft Antispy\Backup\KAVSafe.sys
    [DETECTION] Is the TR/Rootkit.Gen Trojan
    [NOTE]      A backup was created as '490d5b6b.qua'  ( QUARANTINE )
    [NOTE]      Attempting to perform action using the ARK lib.
    [NOTE]      A backup was created as '4de69fa4.qua'  ( QUARANTINE )


End of the scan: 2008年8月29日  10:20
Used time:  1:01:02 Hour(s)

The scan has been done completely.

   7491 Scanning directories
436562 Files were scanned
      3 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      6 files were moved to quarantine
      0 files were renamed
      1 Files cannot be scanned
436558 Files not concerned
   8922 Archives were scanned
      1 Warnings
      3 Notes
  38455 Objects were scanned with rootkit scan
      0 Hidden objects were found

[ 本帖最后由 深度扫描 于 2008-8-29 12:01 编辑 ]
fzz8848
头像被屏蔽
发表于 2008-8-29 13:04:19 | 显示全部楼层
Begin scan in 'E:\'
E:\acad2006\AUTOCAD2006学习视频教程\AUTOCAD2006学习视频教程\AUTOCAD2006学习视频教程\AUTOCAD2006学习\Uninstall.exe
    [DETECTION] Is the TR/Dldr.Delf.anx.1 Trojan
    [NOTE]      A backup was created as '49205a3c.qua'  ( QUARANTINE )
    [NOTE]      Attempting to perform action using the ARK lib.
    [NOTE]      A backup was created as '4dcc8e35.qua'  ( QUARANTINE )
E:\Program Files\Antadis\Translator Internet\Install.exe
    [DETECTION] Is the TR/Crypt.CFI.Gen Trojan
    [NOTE]      A backup was created as '492a5afc.qua'  ( QUARANTINE )
    [NOTE]      Attempting to perform action using the ARK lib.
    [NOTE]      A backup was created as '4dc09e35.qua'  ( QUARANTINE )
E:\Program Files\Kingsoft Antispy\Backup\KAVSafe.sys
    [DETECTION] Is the TR/Rootkit.Gen Trojan
    [NOTE]      A backup was created as '490d5b6b.qua'  ( QUARANTINE )
    [NOTE]      Attempting to perform action using the ARK lib.
    [NOTE]      A backup was created as '4de69fa4.qua'  ( QUARANTINE )
E盘的三个东西被隔离
深度扫描
 楼主| 发表于 2008-8-29 13:27:22 | 显示全部楼层
谢谢。。。。。没有被删除吧?
spaceplane
发表于 2008-8-29 13:49:27 | 显示全部楼层
隔离的话,可以恢复
深度扫描
 楼主| 发表于 2008-8-29 13:53:29 | 显示全部楼层
E:\Program Files\Antadis\Translator Internet\Install.exe下的这个文件是干什么的?因为红伞报警,就被我删除了。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-25 05:58 , Processed in 1.042476 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表