Results 1 to 25 of 41
Thread: ! (Welchia)
Hybrid View
-
20th August 2003 15:34 #1
! (Welchia)
, . (Welchia), .
(Welchia)!
http://www.symantec.com/avcenter/FixWelch.exe
:
The service "RpcPatch" is viral. It is deleted.
The service "RpcTftpd" is viral. It is deleted.
The process "DLLHOST.EXE" is viral. It is terminated.
The tool has deleted the viral file "C:\WINNT\system32\wins\DLLHOST.EXE" .
The file "C:\WINNT\System32\wins\svchost.exe" is deleted.
W32.Welchia.Worm has been successfully removed
from your computer!
Here is the report:
The total number of the scanned files: 50363
The number of deleted files: 2
The number of repaired files: 0
The number of viral processes terminated: 1
The number of viral services deleted: 2
The number of registry entries fixed: 0
Last edited by Kiko; 20th August 2003 at 17:21.
-
20th August 2003 15:49 #2
Not Affected Software:
Microsoft Windows Server 2003
...
-
20th August 2003 19:56 #3
, :
: Lex.BG <>: Lex.BG users <>: VIRUS WARRNING: Zdraweite,
Lex.bg Wi uwedomqwa za razprostranenieto po elektronna poshta na virus s ime
Sobig.F, koito zarazqwa sistemi s instaliran Windows 9.x/ME/NT/2000/XP.
Virusyt se razprostranqwa po e-mail pod formata na prikachen file. Pismata
koito se poluchavat imat subject ot vida: "RE: <suobshtenie> ", kato
"<suobshtenie>" moze da e proizvolna posledowatelnost ot dumi, ili ot vida
"your acount <bukvi>",obiknoveno 8 malki latinski simvola.
Za da ste absolutno sigurni 4e Sobig.F ne e dostignal do Washiq komputyr,
prowerete dali ste polu4ili e-mail s goreposo4enite harakteristiki.
Ako eventualno ste polu4ili podobno pismo NE
aktiwiraite prika4eniq file, iztriite syob6tenieto i
se uwerete, 4e ste go premahnali i ot papkata Deleted items.
Poveche informaciq za na4inite, po koito mojete da se predpazite ot silnata
wirusna ataka i za towa kak da po4istite virusa, mojete da namerite na adres:
http://www.computel.bg/docs.php?list=virus.
Ekipyt na Lex.bg
-------
. , ... ... ..."Do you understand life, Master?"
"Of course not. I know a few things. I love learning. I have tried to understand this world. I listen to everyone. I put to one side what seems doubtful and I am cautious about the rest."
Gore Vidal
Creation
-
21st August 2003 10:23 #4
-
21st August 2003 15:27 #5
-
21st August 2003 20:29 #6
-
21st August 2003 21:00 #7.
-
22nd August 2003 09:31 #8
-
22nd August 2003 10:59 #9
, "-" "' "! " " ( I-net "KB823980" -) , " "
?!
- .4K Xtreme GraphiX|Intel Intel Core i7 920@4000MHz|ASUS P6T Deluxe V2|3x2GB Apacer 1333@1600MHz DDR3|1x74GB WD Raptor 10Krpm/1x640GB WD 7.2Krpm|ASUS GeForce 8800GTX 768MB GDDR3|Chieftec DG-01/Chieftec CFT-1200G-DF 1.2KW|SB X-Fi Platinium|LiteON 16H5S
-
23rd August 2003 19:47 #10
-
23rd August 2003 20:05 #11Wireless-a!Originally posted by delian
, . Wireless-a - . .
.
-
23rd August 2003 20:37 #12
-
24th August 2003 09:24 #13
-
25th August 2003 17:35 #14Registered User
Join Date: Mar:2003
Location:
Posts: 200
Svetlix> . DOS. - . , , , FTP ( Floppy Transfer Protocol)
, "" , "" Win* 
PeaceBus station is the place where bus stops. Train station is the place where train stops. n my desk I have WORKSTATION...
-
27th August 2003 01:25 #15
-
27th August 2003 09:55 #16
Re: ! (Welchia)
"C:\WINNT\System32\wins\svchost.exe"
?
Task manager- .
(Welchia) ? .
-
27th August 2003 10:02 #17
-
28th August 2003 08:52 #18Originally posted by delian
-. , .
, . ... ... NortonAntivirus Corporate Edition - Update-, ZoneAlarmPro - Windows 2003 Server.
-
28th August 2003 09:25 #19
-
28th August 2003 23:22 #20
Stinger. .log :
~~~~~~~~~~~~~~~~~
Scan initiated on Fri Aug 29 22:57:42 2003
Number of clean files: 394 ( C
Scan initiated on Fri Aug 29 22:58:13 2003
Number of clean files: 40650 ( D: E: F
~~~~~~~~~~~~~~~~~
,
- ( C:, ). ...
-
29th August 2003 09:17 #21
-
29th August 2003 10:02 #22
OK
Thanks
P.S.
Windows Server 2003 services ... . svchost.exe . . Task manager-. . 6-7 , . , . , offtopic .
Last edited by tomcat; 29th August 2003 at 10:09.
-
2nd September 2003 00:55 #23
-
2nd September 2003 10:14 #24
-
6th September 2003 23:53 #25
2003 6 Symantec Antivirus Corporate Server AutoUpdate ;-)
The Real Net - The Real Internet Provider
http://www.trnnet.tk




Reply With Quote

7th May 2023, 16:02 in PC