C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\F.EXE
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\05DFC8TZ\X2[1].EXE
截获的病毒样本,上报给世界杀毒网,世界42款杀软,31款报毒。
以下是日志:
创建时间 文件名 创建者
2010-07-16 23:53:12 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\F.EXE C:\PROGRAM FILES\CHINANET\VNETCLIENT.EXE
2010-07-16 23:53:02 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\05DFC8TZ\X2[1].EXE C:\PROGRAM FILES\CHINANET\VNETCLIENT.EXE
2010-07-16 23:36:06 C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\IS-069EI.TMP\BAIDUBAR_3.EXE C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\IS-AP3OM.TMP\NEOIMAGING3.1.2.93.TMP