§ë½Z¤@Äý > ¹L©¹°O¿ý > ÂsÄý¤º®e
¤¤¤Fbackdoor¬r
¤é´Á¡G2006/05/02 13:57
¯d¨¥ªÌ¡Gmok

§Ú®a¹q¸£ (¨t²Î¬°Windows XP, ¤w¸ËNorton), ³Ìªñ¤¤¤F¤@ºØ¦W¬°backdoor.haxdoorªº¯f¬r. §Ú¤w¨Ì¨¬Norton«ü¥Ü, ¥ý¦æ "Disabling System Restore" ¤S¦b Safe Mode ªºª¬ºA¤U¶i¦æ±½´y, ¥u¯à°»´ú¨ì¤@¥÷¦WºÙ¬° "pptp32.dll" ªºÀɮרü¨ì¦¹¯f¬r·P¬V, ¦h¦¸¹Á¸Õ¤]¤£¯à­×´_, ·Qª½±µ§âÀɮקR°£¤]¤£¦¨¥\. Å¥»¡³oºØ¯f¬r¥i¥H°½¨ú§Aºô¤Wªº­Ó¤H¸ê®Æ, ÄÝ°ª«×­·ÀI¯f¬r.

(¤j­ú) (¤j­ú)

§Úªº¹q¸£ª¾ÃÑÄݦ³­­¤½¥q. ½Ð±Ð³oùØ°ª©ú, ¦³¦ó°ª¨£©M¸Ñ±Ï¤èªk?? (ªí±¡11) (ªí±¡11)

Page: [1] [2] < ¦^¤W¤@­¶

Re: ¤¤¤Fbackdoor¬r ( No.4 )
¤é´Á¡G2006/05/02 23:58
¯d¨¥ªÌ¡G¦Ñ¤T

¯ª¯ª¨s³ºÃä¬ì¥X¨­¬[©O¡H­S¶º³£ËÝ«l¬J¡I (¨I«ä) (¨I«ä) (¨I«ä) (¨I«ä) (¨I«ä)

Re: ¤¤¤Fbackdoor¬r ( No.5 )
¤é´Á¡G2006/05/03 08:31
¯d¨¥ªÌ¡Gmok

JOEJOE,
Thanks for your help.
The "killing" process is still not successful as the subkeys "debug" and "MPR Services" can't be found in the left pane.
Please advise how to disable the "hidden" option of "system files ¤Î ¤wª¾ÂX®i¦W" if this step is required?

Re: ¤¤¤Fbackdoor¬r ( No.6 )
¤é´Á¡G2006/05/03 13:59
¯d¨¥ªÌ¡GJOEJOE

mok,

You are supposed on a Chinese Platform.
¥´¶}¸ê·½ºÞ²z¾¹¡A¤u¨ã - ¸ê®Æ§¨¿ï¶µ - À˵ø¡A§â "ÁôÂäwª¾Àɮתº°ÆÀɦW" ¤Î "¤£Åã¥ÜÁôÂêºÀɮפθê®Æ§¨" ¨º¨Ç tik ¥h±¼¡C(§Y¤£­n¿ï¥¦¡AÅý¥¦ªÅ¥Õ) ¦A«ö "­«³]©Ò¦³¸ê¤F§¨" -- ½T©w¡C (·íµM¡A¸Ñ¨M°ÝÃD«á¡A¥i¥H restore ­ì¨Óªº³]©w)

"Killing" manually is however a tough measure, I seldom recommand such a measure unless the auto-killing function of your Norton doesn't apply. Becasuse improper change to the system registration log could probably be a risk.

For handy sake, you may simply input "debugg" and "testservices" in the search field of your "Regedit", (¤p¤ß¬O debugg, ¤£¬O debug, §ä¨ì«áÁÙ­n²Ó¬Ý¾ã­Ó string ¬O§_¬Û²Å¤~§R°£¡A¦]¬°«Ü¥i¯à¤£¥u¤@­Óstring ¬O³¡¤À¬Û²Åªº¡A«ö F3 µ¥©ó next, Ä~Äò·j¡C)

In case you find no matching words as stated, don't worry, just proceed to the "last step" ---- searching files in RED and delete. (Using normal search function, not search in regedit).

Be all measures resulted in vain, pls don't bother to re-install your system. I'll mail you with an alternative which ¤j¤T¤Ú¦±¤Í¡Asuffered much more than you as ¨­¤¤©_¬r, got recovered eventually. Pls. don't worry. :)

Re: ¤¤¤Fbackdoor¬r ( No.7 )
¤é´Á¡G2006/05/12 16:11
¯d¨¥ªÌ¡G¤p¤B¤B
¹q¶l¡Gbg881007@yahoo.com.hk

joejoe
JOEJOE:
§Úªº¸£¶Ìo¥ª§r,µL³íÀYÅ¥§^¨ì¤S¿ý§^¨ìºq,¶Ð°£jetAudio¦A¤U¸ü®ÉRecording¸ÌSourceÅܪťÕ,
ÉN±o¿ï¾Ü,ÂIºâ,¨D¨DÀ°¦£,ÁÂÁÂ!





(¤j­ú) (¤j­ú) (ªí±¡26) (ªí±¡26) (ªí±¡26) (ªí±¡26) (ªí±¡26)

Re: ¤¤¤Fbackdoor¬r ( No.8 )
¤é´Á¡G2006/05/15 00:31
¯d¨¥ªÌ¡GJOEJOE

¤p¤B¤B,

½Ð§A¥ý§i¶D§Ú¡A°£¤F§A©Ò»¡ªº "Recording¸ÌSourceÅܪťÕ, ÉN±o¿ï¾Ü" ¤§¥~¡A
Window Media Player ¤Î Real Player ¯à¥¿±`¼½©ñ¶Ü?

Re: ¤¤¤Fbackdoor¬r ( No.9 )
¤é´Á¡G2006/05/15 01:02
¯d¨¥ªÌ¡G¤p¤B¤B
¹q¶l¡Gbg881007@yahoo.com.hk

JOEJOE:
¦hÁ§AªÖÂЧÚ,©Ò»¡¨â¥\¯à³£Å¥¤£¨ì.
(ªí±¡22) (ªí±¡22)

Re: ¤¤¤Fbackdoor¬r ( No.10 )
¤é´Á¡G2006/05/15 01:20
¯d¨¥ªÌ¡GJOEJOE

¤p¤B¤B:

§A©Ò»¡ªº "¶Ð°£jetAudio"¡A¤£ª¾¬Oª½±µ©ñ¨ì©U§£±í¡AÁÙ¬O¸g¹L¥¿±`ªº "Uninstall" µ{§Ç¡H (½Ðª`·N¦³§_§â wave "mute" ¤F)?
¤£ºÞ¬O­þºØ¤]¦n¡A§A²{¦b¬O¤°»ò¤]Å¥¤£¨ì¡C«Ü¥i¯à¬Owindows ªº media driver ·í®Éµ¹´À´«¤F¦Ó¨S¦³¦Û°Ê¦^´_¡C ³Ìª½±µ¤F·íªº¤èªk¡A¬O­«¸Ë¤@¹M Windows Media Player, °_½X·|¥ý¥O§AÅ¥¨ìÁn­µ¡C
¤U¤@¨Bµ¥§A¸Ë§¹¦A»¡¦n¶Ü?

Re: ¤¤¤Fbackdoor¬r ( No.11 )
¤é´Á¡G2006/05/15 02:44
¯d¨¥ªÌ¡G¤p¤B¤B

JOEJOE:
§Ú¤w¸ò§AÁ¿­«¸Ë,­Ó¸£§¹¦¨¥¿±`µf,¦³µf¤H¥Í¼Ö½ì°Õ,¯u«Y­ø¸ÓÅÎ.
(¦n!) (ªí±¡33) (ªí±¡22)

Re: ¤¤¤Fbackdoor¬r ( No.12 )
¤é´Á¡G2006/05/29 14:28
¯d¨¥ªÌ¡Gcoffeebreak_818

Joe,
§A¸Ü­ø¦n¥Î Norton Anti virus ,¨º»ò§A«Øij¥Î¤°»ò±þ¬r³n¥ó? (³ß®®)

Re: ¤¤¤Fbackdoor¬r ( No.13 )
¤é´Á¡G2006/06/03 15:15
¯d¨¥ªÌ¡GJOEJOE

coffeebreak_818,

Norton ¬O¦WºØ¤j²Â¶H¡A¨ä¥\¯àªº±j¤jµL¥i¸mºÃ¡A¦ý¬y©óÅQ¹D¡A¤@¯ë¥Î®a¥²­n®É·Q¹ý©³¨ø¸ü«Ü§xÃø¡CNorton »P Pc-cillin ³£¬O¤@¬yªº¥~°ê±þ¬r³n¥ó¡C

Re: ¤¤¤Fbackdoor¬r ( No.14 )
¤é´Á¡G2006/10/13 18:16
¯d¨¥ªÌ¡Gkj
¹q¶l¡Gkelshj@hotmail.com

§Ú¦Ó®a°Ý°ÝÃD¥ò¦³ÉN¤H·|À³§Ú¬[??

§Ú¤§«e¤¤¥ª°¦¤ì°¨ : W32 looked:AO¡A·d¨ìwindow media player (10¦P11³£¸Õ¹L) ¼½mp3·|¨«­µ!! (²b«Ymp3¥ý¦³¨Æ¡Awma ¦PwavªG³£³£ÉN¡A¦P¤@­Ómp3 file §Ú¥Îitunes ¼½³£«YÉN¨Æªº¡C)
­è­è¥Îkaspersky scan¹L¤@¦¸¦¨³¡¹q¸£¡A¤w¸g¶Ð®Íd ¬r¡A¦ý¨«­µ°ÝÃD¤´µM¦s¦b¡A¤w¸gupdate¨ì³Ì·swmp 11¡A¦³«§¿ìªk¥ý¥i¥H·dµfÕi (¤j­ú)??
¦³ÉN¤H¦^³£¦n¡A­ø¸Ó®Í¤j®a¥ý~

Re: ¤¤¤Fbackdoor¬r ( No.15 )
¤é´Á¡G2006/10/13 20:33
¯d¨¥ªÌ¡GJOEJOE

kj,

ÄY®æ¤ÀÃþªº¸Ü¡AW32.Looked.AO ¬O¤@ºØ "ºôµ¸Ä¯ÂÎ" (Net Worm)¡C³oºØįÂίf¬r·P¬V Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP ¨t²Î¡A¯uªº¬OµL¤@­Æ§K¡C¥¦­°§C¨t²Î¦w¥þ³]¸m¡A·P¬V¥»¦a©Mºôµ¸¦@¨É¥Ø¿ý¤¤ªº¥i°õ¦æ¤å¥ó¡A¤U¸ü¶Ç¼½¨ä¥L¯f¬r¤å¥ó¡A·í¦¬¨ì¡B¥´¶}¦¹¯f¬r«á¡A¦³¥H¤U²{¹³: ½Æ»s¦Û¨­¨ìwindows¥Ø¿ý¤U¬° rundl132.exe ©M Logo1_.exe¡A¥Í¦¨¤å¥ó Dll.dll¡A¨Ã¤U¸ü¶Ç¼½¨ä¥L¯f¬r¤å¥ó¡C

¥Î Norton ªºªB¤Í½Ð¯d·N¡ANorton ¥u±N "W32.Looked.AO" §x©ó¹jÂ÷°Ï¡A­n¬O¤£°µ¦n¶i¤@¨B¦w¥þ±¹¬Iªº¸Ü¡A¤£¤[¤S·|·P¬V¡C¥Ñ©ó"W32.Looked.AO" Äݩ󰪦M¡A©Ò¥HMS ·¥¬°­«µø¡AXP ¥Î¤á¥u­n¤U¸ü windows xp KB917537 ªº updated patch. ´N¤@³Ò¥Ã¶h¤F¡C

¥Ñ©ó kj ´£¤Î WMP 11, ©Ò¥H¤p§Ì°²³]¨ä©Ò¥ÎªºÀ³¬O XP ¥­¥x¡C¾Úª¾ "W32.Looked.AO" ÁöµM¤ï¬r¡A¦ý¤£·|¥ª¥k MP3 ªº­µ½è¡C«Ü¥i¯à¬O±þ¬r¹Lµ{¤¤ "±þ¿ù¨}¥Á"¡AWMP ©Ò¥Îªº mp3 decoder ¨ü¨ì¤zÂZ¦Ó¤w¡C½Ð¨ì WMP ªº download centre ¤U¸ü¤@­Ó mp3 decoder ©ñ¤J system32 ªº¥Ø¿ý¤U¥H´À´«­ì¨Óªº´N¥i¥H¤F¡C

¦pªG±zı±o¤W­z´£Ä³¤£ª¾¦p¦ó¤J¤âªº¸Ü¡A¥i¥H±Ä¨ú¥t¤@¿ìªk¡G¦b control panel ¸Ì­±¥ý¹ý©³ Uninstall WMP, Reboot, ¦A­«¸Ë WMP 10/11. ¦p¦¹¤@¨Ó¡A¦³Ãöªº media drivers ´N·|¤ñ³æ¾Ì "upgrade WMP" ¨Ó±o§óformal. ¯¬±z¦n¹B!

Re: ¤¤¤Fbackdoor¬r ( No.16 )
¤é´Á¡G2007/05/18 14:38
¯d¨¥ªÌ¡G+00
¹q¶l¡Gzheng0085@126.com

(ªí±¡23) (ªí±¡11) (ªí±¡23) (ªí±¡23) (ªí±¡23)

Re: ¤¤¤Fbackdoor¬r ( No.17 )
¤é´Á¡G2007/05/18 16:01
¯d¨¥ªÌ¡G123456
¹q¶l¡G414734564@qq.com

(¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¤j­ú) (¼««ã) (¼««ã)

Re: ¤¤¤Fbackdoor¬r ( No.19 )
¤é´Á¡G2008/02/21 09:31
¯d¨¥ªÌ¡Gªì­ô

¤S¨«±oLu (ªí±¡37) (ªí±¡37)

Page: [1] [2] < ¦^¤W¤@­¶



- ªü¥ß¸f¦±¤Ñ¦a -

Án©ú

ªü¥ß¸f¦±¤Ñ¦a(¥H¤UºÙ¥»ºô)©Ò¦³¯d¨¥°Ï¬O¥H§Y®É¤W¸ü¯d¨¥ªº¤è¦¡¹B§@¡A¥»ºô¹ï©Ò¦³¯d¨¥ªº¯u¹ê©Ê¡B§¹¾ã©Ê¤Î¥ß³õ¡A¤£­t¥ô¦óªk«ß³d¥ô¡C¦Ó¤@¤Á¯d¨¥¤§¨¥½×¥u¥Nªí¯d¨¥ªÌ­Ó¤H·N¨£¡A¨Ã«D¥»ºô¤§¥ß³õ¡AŪªÌ¤£À³«H¿à¤º®e¡A¨ÃÀ³¦Û¦æ§PÂ_¤º®e¤§¯u¹ê©Ê¡AŪªÌ­Y¦]«H¿à¯d¨¥¦Ó©Û­P¥ô¦ó·l¥¢¡A¥»ºô·§¤£­t³d¡C ¥Ñ©ó©Ò¦³¯d¨¥°Ï¨ü¨ì¡u§Y®É¤W¸ü¯d¨¥¡v¹B§@¤è¦¡©Ò³W­­¡A¬G¤£¯à§¹¥þºÊ¹î©Ò¦³¯d¨¥¡A­YŪªÌµo²{¦³¯d¨¥¥X²{°ÝÃD©Î¯A¤Î¥ô¦ó«IÅv¦æ¬°¡A½ÐÁpµ¸¥»ºô¡C¥»ºô¦³Åv§R°£¥ô¦ó¯d¨¥¤Î©Úµ´¥ô¦ó¤H¤h¤W¸ü¯d¨¥¡A¦P®É¥ç¦³¤£§R°£¯d¨¥ªºÅv§Q¡C¤Á¤Å¼¶¼g²Ê¨¥Â©»y¡B½ÚÁ½¡B´è¬V¦â±¡¼É¤O©Î¤H¨­§ðÀ»ªº¨¥½×¡A¥ç¤£¥i¤W¸ü¥ô¦ó«IÅv¤å³¹¡A·Ó¤ù¡A¦±µü¡A¿ý­µ¤Î¼v¤ù¡A·q½Ð¦Û«ß¡C