标题:
微点报火狐是木马(解决)
[打印本页]
作者:
yuyando
时间:
2007-10-14 12:46
标题:
微点报火狐是木马(解决)
时间 处理结果 木马名称 木马进程名 木马文件创建者
2007-10-14 08:50:50 用户取消 未知木马 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS2A.TMP\NONLOCALIZED\XPCOM_CORE.DLL D:\PROGRAM FILES\FIREFOX-2.0.0.8.ZH-CN.WIN32.INSTALLER.EXE
2007-10-14 08:46:02 处理成功 未知木马 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\QZ4PCVO3.DEFAULT\EXTENSIONS\{77B819FA-95AD-4F2C-AC7C-486B356188A9}\PLUGINS\NPIETAB.DLL C:\PROGRAM FILES\MOZILLA FIREFOX\XPCOM_CORE.DLL
2007-10-14 08:46:02 延时删除 未知木马 C:\PROGRAM FILES\MOZILLA FIREFOX\XPCOM_CORE.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS21.TMP\SETUP.EXE
时间 处理结果 病毒名称 病毒进程名 病毒文件创建者
2007-10-14 11:46:06 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSMA.TMP\NSSCKBI.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS6.TMP\SETUP.EXE
2007-10-14 11:46:05 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSV8.TMP\STARTMENU.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS6.TMP\SETUP.EXE
2007-10-14 11:46:05 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSV8.TMP\INSTALLOPTIONS.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS6.TMP\SETUP.EXE
2007-10-14 11:46:05 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSV8.TMP\SYSTEM.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS6.TMP\SETUP.EXE
2007-10-14 11:46:05 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS6.TMP\SETUP.EXE D:\PROGRAM FILES\FIREFOX SETUP 2.0.0.7.EXE
2007-10-14 11:44:02 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSO5.TMP\NSSCKBI.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE
2007-10-14 11:44:01 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSO5.TMP\FREEBL3.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE
2007-10-14 11:44:01 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSO5.TMP\FIREFOX.EXE C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE
2007-10-14 11:44:01 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSA3.TMP\STARTMENU.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE
2007-10-14 11:44:00 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSA3.TMP\INSTALLOPTIONS.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE
2007-10-14 11:44:00 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSA3.TMP\SYSTEM.DLL C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE
2007-10-14 11:44:00 处理成功 未知病毒 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\7ZS1.TMP\SETUP.EXE D:\PROGRAM FILES\FIREFOX-2.0.0.8.ZH-CN.WIN32.INSTALLER.EXE
2007-10-14 09:52:11 处理成功 未知病毒 D:\PROGRAM FILES\THUNDER\PROGRAM\THUNDER5.EXE
[
Last edited by Legend on 2007-10-18 at 10:51
]
作者:
Legend
时间:
2007-10-14 13:05
谢谢楼主的反馈,请您将微点报警的文件,连同微点技术支持信息,一同发送到
support@micropoint.com.cn
,我们具体分析一下,随信请附上本帖链接,谢谢。
作者:
yuyando
时间:
2007-10-14 14:11
已经把有关的报毒文件给砍了,
作者:
Legend
时间:
2007-10-14 14:13
楼主可以在微点 有害程序隔离中将该文件另存即可。
作者:
Legend
时间:
2007-10-18 10:50
楼主的问题微点已经解决,请等待微点的更新,感谢楼主的反馈,楼主可以先自行将微点所报的文件自行加入微点可信设置中去,
具体设置如下:(微点主界面|安全防护与策略|程序行为实时监控策略|可信程序设置添加即可)
此主题暂做关闭主题处理,如有其他问题,请您另开新帖讨论!
欢迎光临 微点交流论坛 (http://bbs.micropoint.com.cn/)
bbs.micropoint.com.cn