[方案] kavo系列變種
c:\autorun.inf
c:\iwjj.com
c:\windows\system32\kavo.exe
c:\windows\system32\kavo0.dll
c:\windows\system32\kavo1.dll
c:\windows\system32\kxvo.exe
c:\windows\system32\kxvo0.dll
c:\windows\system32\kxvo1.dll
c:\windows\system32\tavo.exe
c:\windows\system32\tavo0.dll
c:\windows\system32\tavo1.dll
c:\windows\system32\Bitkv0.dll
c:\windows\system32\jwedsfdo0.dll
c:\windows\system32\jwedsfdo1.dll
破壞網路驅動
c:\windows\system32\drivers\tdi.sys
c:\windows\system32\drivers\psched.sys
c:\windows\system32\drivers\tcpip.sys
j3ewro.exe破壞卡巴斯基驅動 導致無法更新或某些防護出錯
c:\windows\system32\j3ewro.exe
c:\windows\system32\drivers\vga.sys
c:\windows\system32\drivers\klif.sys
寫入每個分割槽
autorun.inf
nw0t1l0d.exe
8tss2gwq.bat
ntdelect.com
--
※ 發信站: 批踢踢實業坊(ptt.cc)
◆ From: 140.130.189.41
推
09/15 17:08, , 1F
09/15 17:08, 1F
→
09/15 17:09, , 2F
09/15 17:09, 2F
推
09/15 17:09, , 3F
09/15 17:09, 3F
推
09/15 20:17, , 4F
09/15 20:17, 4F
推
09/15 20:41, , 5F
09/15 20:41, 5F
→
09/15 20:42, , 6F
09/15 20:42, 6F
→
09/15 20:44, , 7F
09/15 20:44, 7F
→
09/15 20:47, , 8F
09/15 20:47, 8F
討論串 (同標題文章)
AntiVirus 近期熱門文章
PTT數位生活區 即時熱門文章