查看: 2849|回复: 10
收起左侧

[已解决] 紧急求助:被一个垃圾病毒连续攻击!

 关闭 [复制链接]
景圣临
发表于 2007-1-14 11:22:28 | 显示全部楼层 |阅读模式
从昨天开始,这个流氓攻击我多少次了。重启都没用。用卡巴、AVG扫没结果,也没可疑进程。
最恶心的是,一被它攻击,很多网页开不了,卡巴也升不了级了,卡在0.0Xkb/s,平常都10多的。
怎么解决?




2007-1-12 17:50:30 Intrusion.Generic.format-string.exploit! Attacker's IP address: 58.211.236.168. Protocol/service: TCP on local port 1687. Time: 2007-1-12 17:50:30
2007-1-12 17:51:54 Intrusion.Generic.format-string.exploit! Attacker's IP address: 61.135.163.220. Protocol/service: TCP on local port 2057. Time: 2007-1-12 17:51:54
2007-1-12 17:52:39 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 2144. Time: 2007-1-12 17:52:39
2007-1-12 17:56:49 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 2578. Time: 2007-1-12 17:56:49
2007-1-12 17:59:53 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1086. Time: 2007-1-12 17:59:53
2007-1-12 17:59:58 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 1242. Time: 2007-1-12 17:59:58
2007-1-12 18:02:22 Intrusion.Generic.format-string.exploit! Attacker's IP address: 58.211.236.168. Protocol/service: TCP on local port 1923. Time: 2007-1-12 18:02:22
2007-1-12 18:09:28 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 3084. Time: 2007-1-12 18:09:28
2007-1-12 18:13:49 Intrusion.Generic.format-string.exploit! Attacker's IP address: 202.108.22.43. Protocol/service: TCP on local port 3303. Time: 2007-1-12 18:13:49
2007-1-12 18:24:38 Intrusion.Generic.format-string.exploit! Attacker's IP address: 221.130.184.96. Protocol/service: TCP on local port 3723. Time: 2007-1-12 18:24:38
2007-1-12 18:25:46 Intrusion.Generic.format-string.exploit! Attacker's IP address: 61.135.163.220. Protocol/service: TCP on local port 3830. Time: 2007-1-12 18:25:46
2007-1-13 11:55:21 Intrusion.Generic.format-string.exploit! Attacker's IP address: 202.108.22.5. Protocol/service: TCP on local port 1838. Time: 2007-1-13 11:55:21
2007-1-13 11:55:30 Intrusion.Generic.format-string.exploit! Attacker's IP address: 192.168.125.176. Protocol/service: TCP on local port 1838. Time: 2007-1-13 11:55:30
2007-1-13 13:01:03 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1090. Time: 2007-1-13 13:01:03
2007-1-13 13:01:06 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 1183. Time: 2007-1-13 13:01:06
2007-1-13 13:22:33 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 2734. Time: 2007-1-13 13:22:33
2007-1-13 13:32:26 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 2990. Time: 2007-1-13 13:32:26
2007-1-13 15:16:46 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 3374. Time: 2007-1-13 15:16:46
2007-1-13 17:28:31 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 3467. Time: 2007-1-13 17:28:31
2007-1-13 17:29:20 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 3588. Time: 2007-1-13 17:29:20
2007-1-13 18:44:51 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 3652. Time: 2007-1-13 18:44:51
2007-1-13 19:42:12 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1130. Time: 2007-1-13 19:42:12
2007-1-13 19:42:23 Intrusion.Generic.format-string.exploit! Attacker's IP address: 61.135.163.220. Protocol/service: TCP on local port 1434. Time: 2007-1-13 19:42:23
2007-1-13 19:42:25 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 1477. Time: 2007-1-13 19:42:25
2007-1-13 20:24:06 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1834. Time: 2007-1-13 20:24:06
2007-1-13 20:24:10 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 1912. Time: 2007-1-13 20:24:10
2007-1-13 21:12:46 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 2886. Time: 2007-1-13 21:12:46
2007-1-13 21:17:54 Intrusion.Generic.format-string.exploit! Attacker's IP address: 202.165.98.251. Protocol/service: TCP on local port 3489. Time: 2007-1-13 21:17:54
2007-1-13 21:30:32 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 4908. Time: 2007-1-13 21:30:32
2007-1-13 21:32:27 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1105. Time: 2007-1-13 21:32:27
2007-1-13 21:34:20 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 1923. Time: 2007-1-13 21:34:20
2007-1-13 21:37:36 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 2306. Time: 2007-1-13 21:37:36
2007-1-13 21:56:16 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 4081. Time: 2007-1-13 21:56:16
2007-1-13 21:57:22 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 4221. Time: 2007-1-13 21:57:22
2007-1-13 21:57:25 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 4227. Time: 2007-1-13 21:57:25
2007-1-13 22:06:45 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1129. Time: 2007-1-13 22:06:45
2007-1-13 22:07:37 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 1437. Time: 2007-1-13 22:07:37
2007-1-13 22:08:45 Intrusion.Generic.format-string.exploit! Attacker's IP address: 219.146.128.110. Protocol/service: TCP on local port 1527. Time: 2007-1-13 22:08:45
2007-1-13 22:39:19 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 2214. Time: 2007-1-13 22:39:19
2007-1-13 22:39:40 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 2327. Time: 2007-1-13 22:39:40
2007-1-13 22:40:10 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 2390. Time: 2007-1-13 22:40:10
2007-1-13 22:42:28 Intrusion.Generic.format-string.exploit! Attacker's IP address: 72.14.253.91. Protocol/service: TCP on local port 3038. Time: 2007-1-13 22:42:28
2007-1-13 22:43:18 Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 3420. Time: 2007-1-13 22:43:18
2007-1-13 22:44:48 Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 3720. Time: 2007-1-13 22:44:48
2007-1-14 9:54:15    Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 1106. Time: 2007-1-14 9:54:15
2007-1-14 9:54:26    Intrusion.Generic.format-string.exploit! Attacker's IP address: 202.108.22.43. Protocol/service: TCP on local port 1287. Time: 2007-1-14 9:54:26
2007-1-14 9:54:35    Intrusion.Generic.format-string.exploit! Attacker's IP address: 192.168.124.215. Protocol/service: TCP on local port 1287. Time: 2007-1-14 9:54:35
2007-1-14 10:01:06    Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 1828. Time: 2007-1-14 10:01:06
2007-1-14 10:18:07    Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 2130. Time: 2007-1-14 10:18:07
2007-1-14 11:14:33    Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 3182. Time: 2007-1-14 11:14:33
2007-1-14 11:16:43    Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.172.179.111. Protocol/service: TCP on local port 3378. Time: 2007-1-14 11:16:43
2007-1-14 11:16:55    Intrusion.Generic.format-string.exploit! Attacker's IP address: 60.190.144.20. Protocol/service: TCP on local port 3446. Time: 2007-1-14 11:16:55
2007-1-14 11:18:13    Intrusion.Generic.format-string.exploit! Attacker's IP address: 202.100.202.28. Protocol/service: TCP on local port 3588. Time: 2007-1-14 11:18:13
2007-1-14 11:18:44    Intrusion.Generic.format-string.exploit! Attacker's IP address: 211.136.108.143. Protocol/service: TCP on local port 3625. Time: 2007-1-14 11:18:44
2007-1-14 11:21:55    Intrusion.Generic.format-string.exploit! Attacker's IP address: 221.130.184.96. Protocol/service: TCP on local port 4043. Time: 2007-1-14 11:21:55






以为打补丁就能解决,把我俄罗斯破解的xp1的补丁打全了(除xp2,共66个),然后登陆时提示输激活码,全输0过了,然后就抱错。只能点暂不激活。

30天以后就完了!

能否告诉我撤消哪个补丁就行了?


[ 本帖最后由 景圣临 于 2007-1-14 12:33 编辑 ]
景圣临
 楼主| 发表于 2007-1-14 11:33:36 | 显示全部楼层
以为打补丁就能解决,把我俄罗斯破解的xp1的补丁打全了(除xp2,共66个),然后登陆时提示输激活码,全输0过了,然后就抱错。只能点暂不激活。

30天以后就完了!

能否告诉我撤消哪个补丁就行了?
xnthc
发表于 2007-1-14 11:39:52 | 显示全部楼层
还在用SP1
晕,改用SP2吧,
景圣临
 楼主| 发表于 2007-1-14 11:42:04 | 显示全部楼层
SP2速度太慢。占内存爆多。
撤消哪个补丁才能还原?
xnthc
发表于 2007-1-14 12:01:04 | 显示全部楼层
载张图看看!!!
jimmyleo
发表于 2007-1-14 12:06:37 | 显示全部楼层
e 连SP2都不安全了
最新的07-04补丁可以解决
xnthc
发表于 2007-1-14 12:07:29 | 显示全部楼层
参考
方法一:如果您的操作系统已经提示您的系统已经更新需要激活,那您就点马上激活的对话框,在激活的方式里选择电话激活,国家可任选。在输入ID的地方共有7个空白区域,全部填写入401111或000000,再点下一步,就可以完成激活了。

方法二:如果在以上的操作中提示“您输入的电话不存在”或者是“您输入的是无效的电话”,可以去www.ayxz.com网站去下载一款名叫“俄罗斯电话”的小软件,按照提示进行操作即可。
其中的提示为:
1、把setupreg.hiv复制到c:\\windows\\system32目录下。
2、重启计算机按F8进入安装模式,以管理员身份登录,运行winxp_crk.exe后重启,进入XP。
2、在激活的方式里选择电话激活、国家可任选。在输入ID的地方共有7个空白区域,全部填写入401111或000000,再点下一步,就可以完成激活了。
3、完成激活后可以继续到MS的网站继续升级WinXP的。
朋友切记,不可以进行其中的第三步了,否则您又会陷入更大的困境,即:情况三。

方法三:如果以上两种方法都不能帮您激活系统,那你的系统应该已经升到了windows Update V5版,这就需要您打开“控制面板”,将“Windows XP Service Pack 2”程序删除,恢复到升级前的系统,依次用以上两种方法对您的系统进行激活。

方法四:如果朋友您的系统已经无法打开,请不要着急,可以在“安全模式”下进行操作,即是:在起动计算机时按F8进入“安全模式”(注意:中间可能会有一步让您选择的过程,只要您按下提示继续的键就可以了,不需要进行任何设置的),在“安全模式”下进行以上的操作。
参考
景圣临
 楼主| 发表于 2007-1-14 12:33:08 | 显示全部楼层
万分感谢楼上,用法2已全部解决。
sunvensun
发表于 2007-1-14 12:34:26 | 显示全部楼层
攻击很正常啊,取消报警就行,眼不见心不烦
景圣临
 楼主| 发表于 2007-1-14 12:43:20 | 显示全部楼层
这次的攻击很恶劣。
受害者很多,都有我这样的现象。
终于免去重装系统的厄运了。
有个叫KB839643的补丁打不上怎么回事?
是我的Directx已经修正了吗?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-23 09:32 , Processed in 0.124080 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表