On the removal of cmdbcs.exe,wsttrs.exe,msccrt.exe,winform.exe,upxdnd.exe of Trojan Horse Group
Trojan.PSW.OnlineGames.XX related virus
Recently, a lot of people in the Trojan Horse group Cmdbcs.exe,wsttrs.exe,msccrt.exe,winform.exe,upxdnd.exe and so this should be downloaded by Trojans download caused by these are basically some stolen Trojans
General Sreng Log performance is as follows:
Startup project (not necessarily full)
<wsttrs><C:\windows\wsttrs.exe> [Microsoft Corporation]
<svc><c:\docume~1\ user name \locals~1\temp\byetmr.exe> [Microsoft Corporation]
<g1q><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\rundl132.exe> []
<upxdnd><c:\docume~1\ user name \locals~1\temp\upxdnd.exe> [Microsoft Corporation]
<winform><C:\WINDOWS\winform.exe> [n/A]
<ravshell><C:\WINDOWS\system32\SVCH0ST.exe> []
<upxdnd><c:\docume~1\ username \locals~1\temp\upxdnd.exe> [n/A]
<cmdbcs><C:\WINDOWS\cmdbcs.exe> [n/A]
<mppds><C:\WINDOWS\mppds.exe> [n/A]
<nortonq><C:\WINDOWS\nortonq.exe> []
<system><c:\program Files\Common Files\system\updaterun.exe> [n/A] 5 4 p e.c o m
<5cl3v><c:\docume~1\ user name \locals~1\temp\servicer.exe> []
<mppdys><C:\WINDOWS\mppdys.exe> []
<mhsa><c:\docume~1\ user name \locals~1\temp\mhso.exe> []
<msccrt><C:\WINDOWS\msccrt.exe> []
<wgs3><C:\WINDOWS\wgs3.exe> []
<wms3><C:\WINDOWS\wms3.exe> []
<twin><C:\WINDOWS\system32\twunk32.exe> []
<wsttrs><rem C:\windows\wsttrs.exe> []
<wsdttrs><C:\WINDOWS\wsdttrs.exe> []
In fact, the virus is to use the browser to spread the loopholes, everyone in the Internet when the best use of Firefox browser to browse the Web page, the biggest advantage of this browser is security! Firefox browser download Address: http://www.54pe.com/html/caozuoxitong/20070311/9502.html
About the Trojan group Cmdbcs.exe,wsttrs.exe,msccrt.exe,winform.exe,upxdnd.exe and so on clears the body end
Current 1/2 page
12 Next read the full text