Ja typisch.
Sieht erst immer Clean aus , aber wenn man genau hinschaut ( DLL SCAN) dann findet man heraus . dass es doch ein virus ist ;
> gdi32.dll: ExtTextOutA, GetTextExtentPoint32A, SetTextColor, DeleteDC, CreateDIBSection, CreateFontA, GetDeviceCaps, SetBkColor, DeleteObject, SelectObject, CreateCompatibleDC, SetMapMode, SetTextAlign
> kernel32.dll: GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, CreateThread, ExitProcess, VirtualProtect, GetModuleHandleA, Sleep, MulDiv, GetTickCount, QueryPerformanceCounter, GetCurrentProcess, TerminateProcess, InterlockedCompareExchange, InterlockedExchange, SetUnhandledExceptionFilter, IsDebuggerPresent, UnhandledExceptionFilter
> msvcp90.dll: ___D_$basic_ofstream@DU_$char_traits@D@std@@@std@@ QAEXXZ, __0_$basic_ofstream@DU_$char_traits@D@std@@@std@@Q AE@XZ
> msvcr90.dll: _unlock, __clean_type_info_names_internal, _except_handler4_common, _crt_debugger_hook, __CppXcptFilter, _adjust_fdiv, _amsg_exit, _initterm_e, __dllonexit, _encoded_null, free, _malloc_crt, _decode_pointer, _onexit, _lock, _encode_pointer, __2@YAPAXI@Z, malloc, ceil, _initterm
> shell32.dll: ShellExecuteA
> urlmon.dll: URLDownloadToFileA
> user32.dll: GetSystemMetrics, GetAsyncKeyState
Sieht erst immer Clean aus , aber wenn man genau hinschaut ( DLL SCAN) dann findet man heraus . dass es doch ein virus ist ;
> gdi32.dll: ExtTextOutA, GetTextExtentPoint32A, SetTextColor, DeleteDC, CreateDIBSection, CreateFontA, GetDeviceCaps, SetBkColor, DeleteObject, SelectObject, CreateCompatibleDC, SetMapMode, SetTextAlign
> kernel32.dll: GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, CreateThread, ExitProcess, VirtualProtect, GetModuleHandleA, Sleep, MulDiv, GetTickCount, QueryPerformanceCounter, GetCurrentProcess, TerminateProcess, InterlockedCompareExchange, InterlockedExchange, SetUnhandledExceptionFilter, IsDebuggerPresent, UnhandledExceptionFilter
> msvcp90.dll: ___D_$basic_ofstream@DU_$char_traits@D@std@@@std@@ QAEXXZ, __0_$basic_ofstream@DU_$char_traits@D@std@@@std@@Q AE@XZ
> msvcr90.dll: _unlock, __clean_type_info_names_internal, _except_handler4_common, _crt_debugger_hook, __CppXcptFilter, _adjust_fdiv, _amsg_exit, _initterm_e, __dllonexit, _encoded_null, free, _malloc_crt, _decode_pointer, _onexit, _lock, _encode_pointer, __2@YAPAXI@Z, malloc, ceil, _initterm
> shell32.dll: ShellExecuteA
> urlmon.dll: URLDownloadToFileA
> user32.dll: GetSystemMetrics, GetAsyncKeyState