时间 处理结果 木马名称 木马进程名 木马文件创建者
2007-07-20 08:26:43 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT5.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-20 08:26:43 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KI20LURV\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 23:31:52 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT3.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 23:31:52 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\FZ9UF07F\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 23:08:17 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 23:08:17 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KI20LURV\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 22:45:04 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 22:45:04 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KI20LURV\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 22:02:02 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 22:02:02 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KI20LURV\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 20:45:51 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 20:45:50 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KI20LURV\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 20:28:59 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 20:28:59 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\KI20LURV\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 07:55:55 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT2.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 07:55:55 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\HPFV2AS5\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 07:45:27 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-19 07:45:23 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\7559HX4W\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 21:21:57 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT3.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 21:21:57 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\HPFV2AS5\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 21:06:08 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT2.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 21:06:08 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\7559HX4W\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 20:33:58 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 20:33:58 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 15:09:51 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 15:09:51 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-18 15:09:51 等待用户返回超时 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 22:35:38 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT3.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 22:35:38 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WHR73EN0\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 22:33:05 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT2.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 22:33:05 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 22:27:47 处理成功 Trojan-Downloader.Win32.Small.kdh C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 22:27:47 处理成功 Trojan-Downloader.Win32.Small.kdh C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WHR73EN0\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:42:10 处理成功 Trojan-Downloader.Win32.Small.kdg C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:42:10 处理成功 Trojan-Downloader.Win32.Small.kdg C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:36:50 处理成功 Trojan-Downloader.Win32.Small.kdg C:\WINDOWS\TEMP\VRT9.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:36:50 处理成功 Trojan-Downloader.Win32.Small.kdg C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WHR73EN0\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:30:13 处理成功 Trojan-Downloader.Win32.Small.kdg C:\WINDOWS\TEMP\VRT6.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:30:13 处理成功 Trojan-Downloader.Win32.Small.kdg C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:23:20 处理成功 Trojan-Downloader.Win32.Small.kdg C:\WINDOWS\TEMP\VRT1.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-17 00:23:20 处理成功 Trojan-Downloader.Win32.Small.kdg C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0U5C23RX\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-16 23:33:01 处理成功 Trojan-Downloader.Win32.Small.kdg C:\WINDOWS\TEMP\VRT9.TMP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2007-07-16 23:33:01 处理成功 Trojan-Downloader.Win32.Small.kdg C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WHR73EN0\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[ Last edited by rand0m on 2007-7-20 at 11:19 ]作者: 如风过路 时间: 2007-7-20 11:27 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WHR73EN0\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
Originally posted by 如风过路 at 2007-7-20 11:27:
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WHR73EN0\LOADADV735[1].EXE C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[ Last edited by rand0m on 2007-7-20 at 12:19 ]作者: Legend 时间: 2007-7-20 12:23 “520k的mp6文件夹压缩时说磁盘空间不够,明明那个盘还有1g可用空间。最后把它复制到别处才成功压缩,现在微点安装目录下多出一个0k的mp6.zip和一个0k的mp6.rar,删除时说找不到元素,真是囧啊”
Originally posted by qqq111qqq111 at 2007-7-20 12:01:
试下:[凝逸反毒]的[黑洞]引擎,
(把木马与注册表值加入【自定吞噬】,就能删除)
====木马======
====注册表值==========
===========
1.黑洞吞噬一切启动型病毒
2.吞噬:av终结者.帕虫.随机7/ ...
问题是不知道这个木马是什么,在哪里作者: rand0m 时间: 2007-7-20 12:30
Quote:
Originally posted by Legend at 2007-7-20 12:23:
“520k的mp6文件夹压缩时说磁盘空间不够,明明那个盘还有1g可用空间。最后把它复制到别处才成功压缩,现在微点安装目录下多出一个0k的mp6.zip和一个0k的mp6.rar,删除时说找不到元素,真是囧啊”