activeX in FireFox?
ik heb btw met kaspersky pro 5.0 trail gescand, jezus wat duurt dat scannen lang daarmee i.v.m. mcafee, hij vind 16 virussen (waaronder 9 nieuwe virussen, via java, in een .jar bestand)
, maar ik heb mijn twijfels.
kaspersky zeurt over sevices.exe:
c:\windows\system32\dllcache\win32\services.exe Is a trojan Backdoor.Win32.Iroffer.b.
die ook een actief proces is.
maar ik weet nou niet of het echt een virus is, als het in de map c:\windows\system32 staat was het iig geen virus. en mcafee zei dat het gewoon een unwanted prog was.
het lukt me ook niet om services.exe te verwijderen.
hier ga ik dus eerst op zoek naar.
log van kaspersky:
code:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
| Task: Scan My Computer
Statistics:
Task start time: 09-03-05 0:44:15
Task completion time: 09-03-05 1:42:32
Objects scanned: 147918
Viruses detected: 16
Disinfected: 0
Quarantined: 0
Settings:
Scan scope: My Computer
Protection level: User-defined settings
Scan: all objects
Infected objects: prompt user for action when the scan is completed
Suspicious objects: prompt user for action when the scan is completed
Exclusions: none
Trusted riskware: is not specified
Disk boot sectors: scan
Embedded OLE-objects: scan
Alternate NTFS data streams: scan
Mail databases: do not scan
E-mail format files: do not scan
Packed objects: scan
Self-extracting archives: scan
Archives: scan
Maximum size of archives: 8 MB
iChecker(tm): use
iStreams(tm): use
Maximum time allowed
for object processing: 60 sec
Report:
Object Event Duration
Memory object services.exe\services.exe Is a trojan Backdoor.Win32.Iroffer.b. 09-03-05 0:45:16
Memory object services.exe\services.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 0:45:16
c:\windows\system32\dllcache\win32\services.exe Is a trojan Backdoor.Win32.Iroffer.b. 09-03-05 0:45:16
c:\windows\system32\dllcache\win32\services.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 0:45:16
Mem0ory object csrss.exe\csrss.exe Is a riskware not-a-virus:RiskWare.FTP.Serv-U.4100. 09-03-05 0:45:20
Memory object csrss.exe\csrss.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 0:45:20
c:\windows\system32\dllcache\win32\csrss.exe Is a riskware not-a-virus:RiskWare.FTP.Serv-U.4100. 09-03-05 0:45:20
c:\windows\system32\dllcache\win32\csrss.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 0:45:20
C:\axexx.chm/on-line.exe Is a trojan Trojan.Win32.Dialer.ce. 09-03-05 0:46:29
C:\axexx.chm Is a trojan Trojan.Win32.Dialer.ce. 09-03-05 0:46:29
C:\axexx.chm Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 0:46:29
C:\Program Files\DVD2SVCD\D2SRoBa350.exe/data0007 Is a riskware not-a-virus:RiskWare.Tool.Processor.20. 09-03-05 1:20:35
C:\Program Files\DVD2SVCD\D2SRoBa350.exe Is a riskware not-a-virus:RiskWare.Tool.Processor.20. 09-03-05 1:20:37
C:\Program Files\DVD2SVCD\D2SRoBa350.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:20:37
C:\Program Files\mIRC\mirc.exe Is a riskware not-a-virus:RiskWare.mIRC.6.16. 09-03-05 1:26:34
C:\Program Files\mIRC\mirc.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:26:36
C:\Program Files\Serv-U\ServUAdmin.exe Is a riskware not-a-virus:RiskWare.FTP.Serv-U.5201. 09-03-05 1:27:27
C:\Program Files\Serv-U\ServUAdmin.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:27:27
C:\Program Files\Serv-U\ServUTray.exe Is a riskware not-a-virus:RiskWare.FTP.Serv-U.5201. 09-03-05 1:27:27
C:\Program Files\Serv-U\ServUTray.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:27:27
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\GetAccess.class Is a trojan Trojan.Java.ClassLoader.c. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\GetAccess.class Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\InsecureClassLoader.class Is a malicious program Exploit.Java.Bytverify. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\InsecureClassLoader.class Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\Dummy.class Is a trojan Trojan.Java.ClassLoader.Dummy.a. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\Dummy.class Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\Installer.class Is a trojan Trojan-Downloader.Java.OpenConnection.v. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip\Installer.class Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:28:47
C:\Recycled\javapi\v1.0\jar\classload.jar-7660c386-7a04580d.zip Is a trojan Trojan-Downloader.Java.OpenConnection.v. 09-03-05 1:28:47
C:\WINDOWS\system32\dllcache\win32\csrss.exe Is a riskware not-a-virus:RiskWare.FTP.Serv-U.4100. 09-03-05 1:35:10
C:\WINDOWS\system32\dllcache\win32\csrss.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:35:10
C:\WINDOWS\system32\dllcache\win32\services.exe Is a trojan Backdoor.Win32.Iroffer.b. 09-03-05 1:35:10
C:\WINDOWS\system32\dllcache\win32\services.exe Could not be disinfected. Reason: disinfection postponed until the scan is complete. 09-03-05 1:35:10 |
edit: ow scannen duurde maar 1 uur?? na 20min was ie pas op 4% wazig. en ja ik zorg ervoor dat sun java zijn bestanden naar de prullenbak schrijft.
@henk007: ok dat ga ik dan ook maar proberen
@ een of andere moderator: kan je de topictitel wat duidelijker maken : THX
[
Voor 83% gewijzigd door
Verwijderd op 10-03-2005 11:44
]