着急的等待 - 2009-5-2 11:26:00
用户系统信息:Mozilla/4
.0 (compatible; MSIE 7.0; Windows NT 5.1; CIBA)附件:
SREngLOG.log
着急的等待 - 2009-5-2 11:29:00
今天是第二次出现了,第一次我直接删了。
劫持项也一模一样
夲號ヱ被ジ盜 - 2009-5-2 11:32:00
注册表如下删除
好像是免疫的:default3:
auto.exe是AUTORUN病毒的常用名
pagefile.pif磁碟机的
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\auto.exe]
<IFEO[auto.exe]><AUTOGUARDER GUARDED.> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSDOS.bat]
<IFEO[MSDOS.bat]><AUTOGUARDER GUARDED.> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ntldr.exe]
<IFEO[ntldr.exe]><AUTOGUARDER GUARDED.> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pagefile.pif]
<IFEO[pagefile.pif]><AUTOGUARDER GUARDED.> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sos.exe]
<IFEO[sos.exe]><AUTOGUARDER GUARDED.> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sxs.exe]
<IFEO[sxs.exe]><AUTOGUARDER GUARDED.> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\test.exe]
<IFEO[test.exe]><AUTOGUARDER GUARDED.> [N/A]
着急的等待 - 2009-5-2 11:35:00
原帖由 夲號ヱ被ジ盜 于 2009-5-2 11:32:00 发表
注册表如下删除
好像是免疫的:default3:
auto.exe是AUTORUN病毒的常用名
pagefile.pif磁碟机的
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\auto.exe]
......
那我还删不删?
夲號ヱ被ジ盜 - 2009-5-2 11:39:00
aaccbbdd - 2009-5-2 11:41:00
免疫的
不处理
好像是autorun病毒防御者搞的免疫?
着急的等待 - 2009-5-2 11:43:00
谢谢
CPU_ring0 - 2009-5-2 13:08:00
该用户帖子内容已被屏蔽
© 2000 - 2025 Rising Corp. Ltd.