查看: 2625|回复: 14
收起左侧

[求助] 小红伞V9误报严重

[复制链接]
SONGLEI
发表于 2009-3-19 15:56:25 | 显示全部楼层 |阅读模式
刚装了小红伞,升级完扫描2分钟内发现20个文件非系统文件,本人用的电脑公司特别版的盗版盘,之前用卡巴和小红伞V8都没有病毒,详细情况如下:
Initiating scan of system files:
NOT signed -> 'C:\WINDOWS\system32\svchost.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\winlogon.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\explorer.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\smss.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\wininet.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\wsock32.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\ws2_32.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\services.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\lsass.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\csrss.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\drivers\kbdclass.sys'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\spoolsv.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\alg.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
Signed -> 'C:\WINDOWS\system32\wuauclt.exe'
NOT signed -> 'C:\WINDOWS\system32\advapi32.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\user32.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\gdi32.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\kernel32.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\ntdll.DLL'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\ntoskrnl.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
NOT signed -> 'C:\WINDOWS\system32\ctfmon.exe'
    [DETECTION] Contains HEUR/Modified.SystemFile suspicious code
    [WARNING]   The file was ignored!
heroboy0923
发表于 2009-3-19 16:31:23 | 显示全部楼层
1. 你的扫描设置勾选了“Integrity checking of system files”
2. 你的系统不是原版的
Sebastian
发表于 2009-3-19 16:32:20 | 显示全部楼层
请使用正版系统~
play32
发表于 2009-3-19 16:34:04 | 显示全部楼层
各大杀毒软件支持正版操作系统了哎
yurius
发表于 2009-3-19 16:35:49 | 显示全部楼层
话说这个英文Modified.SystemFile有这么难吗,你自己都知道是非系统文件而且是盗版盘。。。
mj9151
发表于 2009-3-19 16:37:13 | 显示全部楼层
重装系统吧,盗版的系统可不好。楼主还好意思说红伞误报!

[ 本帖最后由 mj9151 于 2009-3-19 16:38 编辑 ]
fengliuyedao
发表于 2009-3-19 16:39:22 | 显示全部楼层
难道卡饭大部分都用的正版系统???
olivercmz
头像被屏蔽
发表于 2009-3-19 16:46:25 | 显示全部楼层
昨天升级到V9后杀毒, 依旧没查到......
春天华尔兹
发表于 2009-3-19 16:48:43 | 显示全部楼层
没有楼主说的情况发生
Beloved
发表于 2009-3-19 17:10:10 | 显示全部楼层
原帖由 fengliuyedao 于 2009-3-19 16:39 发表
难道卡饭大部分都用的正版系统???

1,楼主的好像没报毒吧,我看都是 Warning,警告啊

2,楼主扫描怎么设置的?


我昨晚 V9 全盘扫描,和 V8 一样,还是 2 个Warning,警告

没报毒啊,
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-10-18 07:14 , Processed in 0.120425 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表