史萊姆論壇

史萊姆論壇 (http://forum.slime.com.tw/)
-   一般電腦疑難討論區 (http://forum.slime.com.tw/f17.html)
-   -   很毒ㄚ! (http://forum.slime.com.tw/thread205569.html)

大眼蛙來嚕 2007-05-16 03:22 PM

很毒ㄚ!
 
最近同事中了一個特洛伊病毒,實在有夠毒,狀況是:
不停複製不知名的檔案,將c槽無限擴大,導致硬碟空間不足,只要用防毒軟體掃玩後(安全模式下),會刪除病毒,但重開機後又一直無限複製,c槽磁碟空間又不足了,哪一位高手能解毒,這個連我們公司OP、工程師都沒辦法解決ㄟ!
附上檔案內容!(很長一段,希望大大門有耐心看完)
第一頁

Load Damage Cleanup Template (DCT) "E:\trend\TMRDCT.ptn" (version ) [fail]
Load Damage Cleanup Template (DCT) "E:\trend\tsc.ptn" (version 862) [success]

Complete time : 星期二 五月 15 2007 18:15:54
Execute pattern count(3086), Virus found count(0), Virus clean count(0), Clean failed count(0)

2007-05-15, 18:16:15, An error was detected on "C:\RRUbackups\*.*": 存取被拒。
2007-05-15, 18:16:15, An error was detected on "C:\System Volume Information\*.*": 存取被拒。
2007-05-15, 18:16:20, An error was detected on "E:\System Volume Information\*.*": 存取被拒。
2007-05-15, 18:30:38, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/15/2007 18:16:21
VSAPI Engine Version : 8.000-1001
VSCANTM Version : 1.1-1001
Virus Pattern Version : 467 (187786 Patterns) (2007/05/14) (446700)
Command Line: E:\trend\VSCANTM.BIN /NBPM /S /CLEANALL /DCEGENCLEAN /LAPPEND /LD /LC /LCF /NM /NB /C /ACTIVEACTION=5 C:\*.* /P=E:\trend

C:\Documents and Settings\OFC\桌面\新資料夾 (2)\Ckmp2.8.1.1020超強播放器.exe [PE_LUDER.CH]
C:\Documents and Settings\OFC\桌面\新資料夾 (2)\vobsub_2.23.exe [PE_LUDER.CH]
C:\DRIVERS\MODEM\HXFSETUP.EXE [PE_LUDER.CH]
C:\DRIVERS\NETWORK\PROUNSTL.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\IBMPMSVC.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\PROUNSTL.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\SETUP.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\SETUPW2K.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\TP4SERV.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\TP4UNINS.EXE [PE_LUDER.CH]
C:\DRIVERS\OTHER\_ISDEL.EXE [PE_LUDER.CH]
C:\I386\DRW\DWWIN.EXE [PE_LUDER.CH]
C:\I386\EXPAND.EXE [PE_LUDER.CH]
C:\I386\faxpatch.exe [PE_LUDER.CH]
C:\I386\NETSETUP.EXE [PE_LUDER.CH]
C:\I386\NTSD.EXE [PE_LUDER.CH]
C:\I386\REGEDIT.EXE [PE_LUDER.CH]
C:\I386\SYSPARSE.EXE [PE_LUDER.CH]
C:\I386\TELNET.EXE [PE_LUDER.CH]
C:\I386\WIN9XMIG\FAX\AWDVSTUB.EXE [PE_LUDER.CH]
C:\I386\WIN9XMIG\MAPI\DLL\MKNTFR~1.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\program files\IBM\Access IBM\aibm.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\program files\IBM\Access IBM\ERTS0576.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\program files\IBM\Access IBM\sd.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\program files\IBM\Access IBM\service-info.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\Temp\hhupd.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\Temp\Silent Install Flash Player 7 AX.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\access\Windows\aibmrun.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\Acrobat\adobe.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\Acrobat\MakeLink.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\AIBMMsgCtr\program files\IBM\Messages By IBM\Acpcu.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\AIBMMsgCtr\program files\IBM\Messages By IBM\ibmmessages.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\AIBMMsgCtr\setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\AIBMMsgCtr\System32\AIBMRUN.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\AIBMMsgCtr\Temp\ERTS0921.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\AIBMMsgCtr\Temp\launchBrowser.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\DVDPlay\3rdParty\aspiinst.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\DVDPlay\3rdParty\HHUPD.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\DVDPlay\selfDel.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\HVISION\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\IBMRNR\IBMRNR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\IBM_JRE\MAKELINK.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\IBM_JRE\setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\CDSTART.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\LURegWMI.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\COMMONFI\SYMSHARE\SMNLNCH.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\CCIMSCN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\NAVAPSVC.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\NAVSTUB.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\NAVW32.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\NAVWNT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\OPSCAN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\APP\SAVSCAN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\BOOTWARN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\EXTERNAL\NORTON\CFGWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\IWP\APP\ALEUPDAT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\IWP\APP\NPFMNTOR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAV\OMIGRATE.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\NAVSETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\CCCOMMON\CCCOMMON\CCAPP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\CCCOMMON\CCCOMMON\CCEVTMGR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\CCCOMMON\CCCOMMON\CCLGVIEW.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\CCCOMMON\CCCOMMON\CCPWDSVC.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\CCCOMMON\CCCOMMON\CCSETMGR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\CCCOMMON\CCCOMMON\NMAIN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\EDISK\NED.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\LIVEREG\SYMCSUB.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\LIVEREG\VCCLNUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\LIVEREG\VCSETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SEVINST\SEVINST.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SPBBC\COMMON\SYMSHARE\SPBBC\SPBBCSVC.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SPBBC\COMMON\SYMSHARE\SPBBC\UPDMGR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SYMLNCH\SYMLNCH.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SYMNET\SYMNET\SYMSHARE\IDS\IDSINST.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SYMNET\SYMNET\SYMSHARE\SNDINST.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SYMNET\SYMNET\SYMSHARE\SNDSRVC.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\NORTONAV\SUPPORT\SYMSC\SYMWMIAV\SYMSC\USRPRMPT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\APPS\PCDRWIN\CUI\Setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\PCDRWIN\Diagnostics\Custom\PCDrDvdMinusRw.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\PCDRWIN\Diagnostics\Setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\PCDRWIN\Services\Setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\APPS\PCDRWIN\Setup.exe [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\AEENABLE.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SM_MICRO\WIZARDS\SMWIZARD.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SM_PANEL\SYS\SMAGENT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SM_PANEL\SYS\SMAGENTI.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SM_PANEL\SYS\SMAGENTX.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SM_PANEL\SYS\SMAX4.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SM_PNP\SYS\SMAX4PNP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SYS\CLEANUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\AUDIO\SYS\DSNDUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\CONWIZ\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\APPS\PROSET\W2KWS03\PROSET.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\APPS\SETUP\SETUPBD\W98-WS32\SETUPBD.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\APPS\SNMP\AGENT\W2K-WS32\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\PRO100\WIN2K\PROUNSTL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\PRO100\WS03XP32\PROUNSTL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\PRO1000\WIN2K\PROUNSTL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\ETHINTMT\PRO1000\WS03XP32\PROUNSTL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\EZEJECT\EZEJAPP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\EZEJECT\EZEJTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\EZEJECT\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\EKEYAGT\TPWEBKEY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\EZBTNS\JP\EZICON.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\EZBTNS\JP\EZINIT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\EZBTNS\JP\EZKEY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\FLPTOUCH\WPHKEY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\OSD\COMMON\IBMMRK.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\OSD\COMMON\TPFNF5.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\OSD\COMMON\TPFNF9.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\OSD\COMMON\TPHKMGR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\OSD\COMMON\TPMSGAGT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\OSD\COMMON\TPONSCR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\HOTKEY\ZOOM\TPSCREX.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\IBMPM\IBMPMSVC.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\IBMPM\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\IBMPM\_ISDEL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\KEYCUSTM\SETUP.EXE [PE_LUDER.CH]

大眼蛙來嚕 2007-05-16 03:23 PM

很毒ㄚ~第二頁
 
C:\IBMTOOLS\DRIVERS\MSBTH\ARA\Q323183_WXP_SP2_X86_ARA.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\CHS\Q323183_WXP_SP2_X86_CHS.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\CHT\Q323183_WXP_SP2_X86_CHT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\CSY\Q323183_WXP_SP2_X86_CSY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\DAN\Q323183_WXP_SP2_X86_DAN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\DEU\Q323183_WXP_SP2_X86_DEU.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\ELL\Q323183_WXP_SP2_X86_ELL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\ENU\Q323183_WXP_SP2_X86_ENU.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\ESN\Q323183_WXP_SP2_X86_ESN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\FIN\Q323183_WXP_SP2_X86_FIN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\FRA\Q323183_WXP_SP2_X86_FRA.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\HEB\Q323183_WXP_SP2_X86_HEB.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\HUN\Q323183_WXP_SP2_X86_HUN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\ITA\Q323183_WXP_SP2_X86_ITA.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\JPN\Q323183_WXP_SP2_X86_JPN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\KOR\Q323183_WXP_SP2_X86_KOR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\NLD\Q323183_WXP_SP2_X86_NLD.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\NOR\Q323183_WXP_SP2_X86_NOR.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\PLK\Q323183_WXP_SP2_X86_PLK.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\PTB\Q323183_WXP_SP2_X86_PTB.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\PTG\Q323183_WXP_SP2_X86_PTG.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\RUS\Q323183_WXP_SP2_X86_RUS.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\SVE\Q323183_WXP_SP2_X86_SVE.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\MSBTH\TRK\Q323183_WXP_SP2_X86_TRK.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\DK\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\FI\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\FR\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\GR\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\IT\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\JP\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\NE\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\NO\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\NPDAPLY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\PDIRECT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\SP\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\SV\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\US\NPDTRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PDIRECT\_ISDEL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PKGMGR\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PWRMGR\PWMBTHLP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PWRMGR\PWMIDTSK.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\PWRMGR\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\HXFSETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\NW\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\OCP\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\WIN2KXP\HXFSETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\WIN98\CARPSERV.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\WIN98\HXFSETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\WINNT4\ISDEL.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\SWMDMCNT\WINNT4\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\TRACKPT\SETUPW2K.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\TRACKPT\TP4SERV.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\TRACKPT\TP4UNINS.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\DK\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\DK\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\DK\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\FI\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\FI\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\FI\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\FR\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\FR\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\FR\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\GR\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\GR\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\GR\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\INSTDRVN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\IT\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\IT\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\IT\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\JP\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\JP\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\JP\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\NE\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\NE\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\NE\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\NO\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\NO\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\NO\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SP\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SP\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SP\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SV\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SV\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\SV\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\US\PROFWIZ.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\US\TP98.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\UTILITY\US\TP98TRAY.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\VIDEO\ATICIMUN.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\VIDEO\CPANEL\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\VIDEO\DRIVER\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\VIDEO\FGLMAX\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\VIDEO\PHILDEC\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\VIDEO\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\WLANCX2A\APPS\IPROINST.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\WLANCX2A\DRIVERS\SETUPWLD.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\WLANCX2A\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\DRIVERS\WLLANATH\SETUP.EXE [PE_LUDER.CH]
C:\IBMTOOLS\eGatherer\launcheg.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\INTELINF\infinst_autol.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\W2KUP\Q327081\327081CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\W2KUP\Q327269\327269CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\W2KUP\Q815450\815450CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\W2KUP\Q823642\823642CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\W2KUP\Q824025\824025CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\DOTNET11\dotnetfx.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\DOTNET11\langpack.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\DOTNET11\SP1\Q867460.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q310601\310601CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q311455\311455CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q312826\312826CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q314448\314448CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q314918\314918CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q317087\317087CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q318358\318358CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q318773\318773CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q318872\318872CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q319111\319111CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q323154\323154CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q328345\328345CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q329692\329692CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q821161\821161CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q823837\823837CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q824148\824148CT.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q883517\883517TC.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q883523\883523TC.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q884020\884020TC.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q884868\884868TC.exe [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q885894\885894TC.EXE [PE_LUDER.CH]
C:\IBMTOOLS\OSFIXES\WXPUP\Q889315\889315TC.exe [PE_LUDER.CH]

大眼蛙來嚕 2007-05-16 03:24 PM

很毒ㄚ~第三頁
 
C:\IBMTOOLS\Python22\python.exe [PE_LUDER.CH]
C:\IBMTOOLS\Python22\pythonw.exe [PE_LUDER.CH]
C:\IBMTOOLS\Python22\w9xpopen.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\bmgr32.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\delay.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\ibmbioschk.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\infozip\unzip\funzip.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\infozip\unzip\unzip.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\infozip\zip\zip.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\infozip\zip\zipnote.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\infozip\zip\zipsplit.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\instdrvw.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\logvwr\lv.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\MND\mapdrv.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\MsgBox.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\nspect.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\paapp.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\Psasrv.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\PsaUtil.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RebootHDD.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\apkgmes.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\apubkey.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\auncpw.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\inRR.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\Mailman.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\msgBox.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\reboot.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\RetryOnError.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\status.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\RESCUE\xmltool.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\spi\FCopier.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\spi\reccd.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\spi\rejreccd.exe [PE_LUDER.CH]
C:\IBMTOOLS\utils\spi\runpy.exe [PE_LUDER.CH]
C:\notes\mksyd.exe [PE_LUDER.CH]
C:\notes\naldaemn.exe [PE_LUDER.CH]
C:\notes\namgr.exe [PE_LUDER.CH]
C:\notes\nlctest.exe [PE_LUDER.CH]
C:\notes\nlnotes.exe [PE_LUDER.CH]
C:\notes\nnotesmm.exe [PE_LUDER.CH]
C:\notes\nnsadmin.exe [PE_LUDER.CH]
C:\notes\notes.exe [PE_LUDER.CH]
C:\notes\npop3c.exe [PE_LUDER.CH]
C:\notes\nupdall.exe [PE_LUDER.CH]
C:\notes\nupdate.exe [PE_LUDER.CH]
C:\notes\nwrdaemn.exe [PE_LUDER.CH]
C:\notes\nxpcdmn.exe [PE_LUDER.CH]
C:\NRI\fc_best.exe [PE_LUDER.CH]
C:\NRI\fc_cash.exe [PE_LUDER.CH]
C:\NRI\fc_cashbk.exe [PE_LUDER.CH]
C:\NRI\fc_dytd.exe [PE_LUDER.CH]
C:\NRI\fc_odr.exe [PE_LUDER.CH]
C:\NRI\fc_wktd.exe [PE_LUDER.CH]
C:\NRI\Nassgn95.exe [PE_LUDER.CH]
C:\NRI\NDialup.1st\Nassgn95.exe [PE_LUDER.CH]
C:\NRI\NDialup.1st\ndialup95.exe [PE_LUDER.CH]
C:\NRI\ndialup95.exe [PE_LUDER.CH]
C:\NRI\NDisPrnt.exe [PE_LUDER.CH]
C:\NRI\nfilevw.exe [PE_LUDER.CH]
C:\NRI\Nlaunch.exe [PE_LUDER.CH]
C:\NRI\NLINFO95.exe [PE_LUDER.CH]
C:\NRI\NLOGON95.exe [PE_LUDER.CH]
C:\NRI\nlogsend.exe [PE_LUDER.CH]
C:\NRI\nlogshl.exe [PE_LUDER.CH]
C:\NRI\npcmd95.exe [PE_LUDER.CH]
C:\NRI\NPINST95.exe [PE_LUDER.CH]
C:\NRI\NPINT195.exe [PE_LUDER.CH]
C:\NRI\NPINT295.exe [PE_LUDER.CH]
C:\NRI\npstclr.exe [PE_LUDER.CH]
C:\NRI\npucfm95.exe [PE_LUDER.CH]
C:\NRI\NREGADD.exe [PE_LUDER.CH]
C:\NRI\NREGDEL.exe [PE_LUDER.CH]
C:\NRI\NREGDUMP.exe [PE_LUDER.CH]
C:\NRI\NREGUPDT.exe [PE_LUDER.CH]
C:\NRI\NSetup.exe [PE_LUDER.CH]
C:\NRI\nstartup.exe [PE_LUDER.CH]
C:\NRI\sales.exe [PE_LUDER.CH]
C:\orawin95\BIN\launch80.exe [PE_LUDER.CH]
C:\orawin95\BIN\LXEGEN.EXE [PE_LUDER.CH]
C:\orawin95\BIN\N8A.EXE [PE_LUDER.CH]
C:\orawin95\BIN\N8SW.EXE [PE_LUDER.CH]
C:\orawin95\BIN\NAMESCTL80.EXE [PE_LUDER.CH]
C:\orawin95\BIN\OSSLOGIN.EXE [PE_LUDER.CH]
C:\orawin95\BIN\OTRCFMT.EXE [PE_LUDER.CH]
C:\orawin95\BIN\OTRCREP.EXE [PE_LUDER.CH]
C:\orawin95\BIN\TNSPING80.EXE [PE_LUDER.CH]
C:\orawin95\BIN\TRCASST.EXE [PE_LUDER.CH]
C:\orawin95\BIN\WRAP80.EXE [PE_LUDER.CH]
C:\orawin95\JRE11\bin\java.exe [PE_LUDER.CH]
C:\orawin95\NET80\TNSAPI\BIN\SFINGER.EXE [PE_LUDER.CH]
C:\orawin95\NET80\TNSAPI\BIN\SFINGERD.EXE [PE_LUDER.CH]
C:\orawin95\NET80\TNSAPI\BIN\TFTPD.EXE [PE_LUDER.CH]

大眼蛙來嚕 2007-05-16 03:26 PM

很毒ㄚ~第四頁
 
C:\Program Files\ACD Systems\ACDSee\5.0\ACDSee5.exe [PE_LUDER.CH]
C:\Program Files\ACD Systems\FotoCanvas Lite\2.0\FotoCanvasLite2.exe [PE_LUDER.CH]
C:\Program Files\Adobe\Acrobat 6.0\Reader\AcroRd32.exe [PE_LUDER.CH]
C:\Program Files\Adobe\Acrobat 6.0\Reader\Updater\acroaum.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI Control Panel\atiadaxx.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI Control Panel\atiiprxx.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI Control Panel\atiphexx.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraMD.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraWizard.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\ATI HYDRAVISION\MagnifyFX.exe [PE_LUDER.CH]
C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe [PE_LUDER.CH]
C:\Program Files\Common Files\ACD Systems\IDBSvr.exe [PE_LUDER.CH]
C:\Program Files\Common Files\ACD Systems\PlugIns\DigitaCap.exe [PE_LUDER.CH]
C:\Program Files\Common Files\InstallShield\Driver\7\Intel 32\IDriver.exe [PE_LUDER.CH]
C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe [PE_LUDER.CH]
C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver2.exe [PE_LUDER.CH]
C:\Program Files\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Artgalry\ARTGALRY.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Artgalry\CAG.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Database Replication\WZCNFLCT.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Datamap\MSMAP.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\DW\DW20.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Equation\EQNEDT32.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLPHR.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\MODI\11.0\MSPOCRDC.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\MODI\11.0\MSPSCAN.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\MSInfo\OFFPROV.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOICONS.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLED.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\PhotoEd\PHOTOED.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Repostry\MIGREPV2.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Repostry\REPBROWS.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\VBA\MSQRY32.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\VS7JIT.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\System\MSMAPI\1028\SCANOST.EXE [PE_LUDER.CH]
C:\Program Files\Common Files\System\MSMAPI\1028\SCANPST.EXE [PE_LUDER.CH]
C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_8086&DEV_24C6&SUBSYS_05591014\HXFSetup.exe [PE_LUDER.CH]
C:\Program Files\IBM\Access IBM\ERTS0576.exe [PE_LUDER.CH]
C:\Program Files\IBM\Access IBM\sd.exe [PE_LUDER.CH]
C:\Program Files\IBM\Access IBM\service-info.exe [PE_LUDER.CH]
C:\Program Files\IBM\acp\ERTS0921\ERTS0921.exe [PE_LUDER.CH]
C:\Program Files\IBM\acp\ERTS0921\launchBrowser.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\AIBMRRPC.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\br_check.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\br_funcs.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\burnCd.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\cfgmod.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\ChooseCD.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\ftr.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\getinfo.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\osrestore.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\rcdprep.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\reloadsched.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\rrpcgui.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\rrucmd.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\rrusync.exe [PE_LUDER.CH]
C:\Program Files\IBM\IBM Rapid Restore Ultra\wizrru.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\IBMJavaPlugin142.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\ikeyman.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\JaasLogon.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\java.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\javaw.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\jextract.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\jinstall.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\keytool.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\kinit.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\klist.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\ktab.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\packager.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\policytool.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\rmid.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\rmiregistry.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\tnameserv.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\unregbean.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\bin\wunregbean.exe [PE_LUDER.CH]
C:\Program Files\IBM\Java142\jre\javaws\javaws.exe [PE_LUDER.CH]
C:\Program Files\IBM\Messages By IBM\Acpcu.exe [PE_LUDER.CH]
C:\Program Files\IBM\TVTMessage\TVTMsg.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\PC-Doctor\CUI\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\PC-Doctor\Diagnostics\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\PC-Doctor\Services\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\PC-Doctor\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{1007F41F-7D69-468E-8017-3849A5A973C2}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{1297C681-92D7-40EF-93BF-03F66EC5105C}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{1F7CCFA3-D926-4882-B2A5-A0217ED25597}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{2111B23F-7FDA-4A41-8309-E5A1663CA296}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{22B71A00-4DED-11D4-A5E5-0004AC564F43}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{39DA87A1-0B26-4562-A70C-2A6147366E47}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{3EA9D975-BFDC-4E8E-B88B-0446FBC8CA66}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{43801800-CFEE-11D2-A41B-006097B55AD3}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{58E540F6-0DC1-4FD3-B42B-7A02898DE0D4}\Expand.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{58E540F6-0DC1-4FD3-B42B-7A02898DE0D4}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{9B94BE6F-7CA3-4C40-A266-62667FF746CC}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{9F765BD0-B900-4EDE-A90B-61C8A9E95C42}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{A0E64EBA-8BF0-49FB-90C0-BB3D781A2016}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{BAD59025-5B73-4E12-B789-0028C5A573C2}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{C1A6B23C-438E-4D08-B508-4E830CA8F335}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{E646DCF0-5A68-11D5-B229-002078017FBF}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{FB3ECF00-1BDD-4F3C-8F00-DC1648D918CC}\Setup.exe [PE_LUDER.CH]
C:\Program Files\InstallShield Installation Information\{FC081D4D-DF1B-4CF1-B530-027E4118D846}\Setup.exe [PE_LUDER.CH]

plunderer 2007-05-16 03:27 PM

病毒來源沒查到, 只查到釋放出的檔案
不用再發帖了, 你貼的是防毒軟體查到的被釋出的檔案, 但對根絕來源沒幫助

用 hijackthis
http://www.trendsecure.com/portal/en...ackThis_v2.exe
或 System Repair Engineer
http://www.kztechs.com/sreng/download.html
掃描, 把日誌發上來

大眼蛙來嚕 2007-05-16 03:28 PM

很毒ㄚ~第五頁
 
~太多了用不下,有沒有辦法用檔案上傳ㄚ

大眼蛙來嚕 2007-05-16 03:51 PM

引用:

作者: plunderer (文章 1717429)
病毒來源沒查到, 只查到釋放出的檔案
不用再發帖了, 你貼的是防毒軟體查到的被釋出的檔案, 但對根絕來源沒幫助

用 hijackthis
http://www.trendsecure.com/portal/en...ackThis_v2.exe
或 System Repair Engineer
http://www.kztechs.com/sreng/download.html
掃描, 把日誌發上來

大大
我將logo檔寄出來給您看
http://www.badongo.com/file/3064992http://www.badongo.com/file/3064992

大眼蛙來嚕 2007-05-16 03:55 PM

引用:

作者: 大眼蛙來嚕 (文章 1717443)
大大
我將logo檔寄出來給您看
http://www.badongo.com/file/3064992http://www.badongo.com/file/3064992

大大,我找出來了~病毒名稱如下,聽說是最新的病毒~趨勢尚未有最新病毒碼
病毒名稱:PE_LUDER.CH
檔案路徑:C:\WINDOWS\
檔案名稱:AIBMRUN.EXE

plunderer 2007-05-16 04:10 PM

不是要看防毒軟體掃描的 log :on_72:
是要看 hijackthis 掃描的 log........


防毒用趨勢!?....好自為之吧....

danny_2 2007-05-16 06:15 PM

引用:

作者: 大眼蛙來嚕 (文章 1717421)
不停複製不知名的檔案,將c槽無限擴大,導致硬碟空間

已被植入系統檔,所以會刪除檔案並自動建立檔案回去,
我想問的是《有什麼異常狀況嗎?》

虛虛 2007-05-16 06:28 PM

大大,那不是木馬,木馬不會不斷的複製,看病毒名稱就知道是檔案型病毒,除了複製就是變更以及破壞檔案,是屬於嚴重型病毒,恐怕即使刪除都會有後遺症喔!
一但中這種病毒都會建議重灌系統,當然要修復也是可以只是比較麻煩,需要對作業系統有相當了解以及經驗的人才有可能修復喔!

GaMNiA 2007-05-16 07:31 PM

你中的應該是會不斷的感染 .exe 的病毒,類似熊貓燒香或威金病毒,很難清的乾淨...
就算修復 .exe 檔後,也不見得可以正常執行,建議你重灌吧...

丹楓 2007-05-16 09:07 PM

引用:

作者: plunderer (文章 1717429)
病毒來源沒查到, 只查到釋放出的檔案
不用再發帖了, 你貼的是防毒軟體查到的被釋出的檔案, 但對根絕來源沒幫助

用 hijackthis
http://www.trendsecure.com/portal/en...ackThis_v2.exe
或 System Repair Engineer
http://www.kztechs.com/sreng/download.html
掃描, 把日誌發上來

想請教 Plunderer 大大一下:
hijackthis 以及 System Repair Engineer 此兩套軟體的主要作用為何呢?:on_47:

Living 2007-05-16 09:31 PM

Trend好像還是可以解這個毒 您請參考下列網站資料
http://www.trendmicro.com/vinfo/viru...%2ECH&VSect=Sn

plunderer 2007-05-16 09:43 PM

引用:

作者: 丹楓 (文章 1717599)
想請教 Plunderer 大大一下:
hijackthis 以及 System Repair Engineer 此兩套軟體的主要作用為何呢?:on_47:

很多病毒或木馬即使防毒軟體能查出, 但不能完全清除, 而 HijackThis 及 System Repair Engineer 可以快速掃描電腦並創建一個列表. 這個列表包括如下各項

ActiveX模組
BHOs (瀏覽器幫助物件)
瀏覽器工具條
瀏覽器主語以及預設使用的搜索引擎
Internet Explorer的外掛程式
layered service providers
開機時啟動的程序與服務
代理伺服器

藉由 log 的分析來判斷系統運作是否有異常...只不過分析日誌需要一點系統知識, 一般人不容易看得懂,
也可把 log 貼到專門分析的網站自動分析, 但分析後的提示還是需要用戶自己判斷

但HijackThis 未必能掃描出的所有的系統異常, 即使找到, 部份項目還需其他專門工具來解決問題

System Repair Engineer 顧名思義, 系統修復引擎, 功能比 HijackThis多, 掃描項目及日誌也完整多了, 但也更複雜, 一般人更看不懂

嚴格來說 HijackThis 及 System Repair Engineer 不是針對特定的病毒或木馬, 而是找出系統異常的地方


所有時間均為台北時間。現在的時間是 01:45 AM

Powered by vBulletin® 版本 3.6.8
版權所有 ©2000 - 2024, Jelsoft Enterprises Ltd.

『服務條款』

* 有問題不知道該怎麼解決嗎?請聯絡本站的系統管理員 *


SEO by vBSEO 3.6.1