banner

[Rule] Rules  [Home] Main Forum  [Portal] Portal  
[Members] Member Listing  [Statistics] Statistics  [Search] Search  [Reading Room] Reading Room 
[Register] Register  
[Login] Loginhttp  | https  ]
 
Forum Index Thảo luận virus, trojan, spyware, worm... Nhờ mọi người check hộ em xem có virut không  XML
  [Analyzing]   Nhờ mọi người check hộ em xem có virut không 04/11/2011 12:34:47 (+0700) | #1 | 249512
votinh13
Member

[Minus]    0    [Plus]
Joined: 11/02/2011 01:43:31
Messages: 8
Offline
[Profile] [PM]
Em gửi log của TCPViewer, nhờ mọi người xem giùm.
http://www.mediafire.com/?awjjhe2p3wn1g02
Máy này là ncomputing server nên có nhiều user đang sử dụng
Em xin cám ơn.
[Up] [Print Copy]
  [Analyzing]   Nhờ mọi người check hộ em xem có virut không 14/11/2011 12:05:29 (+0700) | #2 | 249893
votinh13
Member

[Minus]    0    [Plus]
Joined: 11/02/2011 01:43:31
Messages: 8
Offline
[Profile] [PM]
Tình trạng: hay bị mất logoff ở start menu, đến khi em vào gpedit.msc lấy lại thì lại được.Thi Thoảng tự dưng nó mất.
Mọi người xem giùm mình nhé


System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.159 3945 ESTABLISHED 25 327,190 196,165 6
firefox.exe 11904 TCP WIN-09HPTRG0G3C 49431 localhost 12080 ESTABLISHED 1 2,424 4 1,486 755 2
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 49432 207.46.124.62 http ESTABLISHED 1 2,424 2 1,486 755 1
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 49431 ESTABLISHED 4 1,486 2 3,884 755 2
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.232 4312 ESTABLISHED 5 1,387 116 48,576 810 1,550 2 4
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.222 2651 ESTABLISHED 12 363
firefox.exe 12520 TCP WIN-09HPTRG0G3C 61178 localhost 61179 ESTABLISHED 111 111 16 16
firefox.exe 12520 TCP WIN-09HPTRG0G3C 61183 localhost 61184 ESTABLISHED 18 18
firefox.exe 11904 TCP WIN-09HPTRG0G3C 49222 localhost 49223 ESTABLISHED 3 3 1 1
Skype.exe 6620 TCP WIN-09HPTRG0G3C http WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 876 TCP WIN-09HPTRG0G3C epmap WIN-09HPTRG0G3C 0 LISTENING
System 4 TCP win-09hptrg0g3c.buv.edu.vn netbios-ssn WIN-09HPTRG0G3C 0 LISTENING
Skype.exe 6620 TCP WIN-09HPTRG0G3C https WIN-09HPTRG0G3C 0 LISTENING
dsm_om_connsvc32.exe 1860 TCP WIN-09HPTRG0G3C 1311 WIN-09HPTRG0G3C 0 LISTENING
vmms.exe 2096 TCP WIN-09HPTRG0G3C 2179 WIN-09HPTRG0G3C 0 LISTENING
Skype.exe 7368 TCP WIN-09HPTRG0G3C 2687 WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 1888 TCP WIN-09HPTRG0G3C ms-wbt-server WIN-09HPTRG0G3C 0 LISTENING
NCWTService.exe 2040 TCP WIN-09HPTRG0G3C 3681 WIN-09HPTRG0G3C 0 LISTENING
NCWTService.exe 2040 TCP WIN-09HPTRG0G3C 3682 WIN-09HPTRG0G3C 0 LISTENING
NCWTService.exe 2040 TCP WIN-09HPTRG0G3C 3683 WIN-09HPTRG0G3C 0 LISTENING
NCWTService.exe 2040 TCP WIN-09HPTRG0G3C 3684 WIN-09HPTRG0G3C 0 LISTENING
aswMaiSv.exe 3168 TCP WIN-09HPTRG0G3C 12025 WIN-09HPTRG0G3C 0 LISTENING
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 WIN-09HPTRG0G3C 0 LISTENING
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 58558 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 60956 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62371 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62373 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62378 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62379 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62395 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62397 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62855 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 62916 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 63500 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 63570 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 63621 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64320 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64449 ESTABLISHED
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64481 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64483 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64488 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64489 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64490 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64491 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64492 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64493 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64500 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64502 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64504 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64506 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64508 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64509 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64512 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64514 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64516 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64518 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64520 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64521 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64522 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64523 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64524 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64525 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64533 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64534 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64539 TIME_WAIT
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64674 ESTABLISHED
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64542 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64545 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64547 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64549 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64551 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64553 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64555 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64557 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64560 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64561 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64562 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64566 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64567 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64568 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64572 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64574 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64575 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64577 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64580 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64581 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64584 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64586 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64588 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64594 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64596 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64598 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64599 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64600 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64601 TIME_WAIT
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64617 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64625 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64635 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64637 ESTABLISHED
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64641 TIME_WAIT
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64654 TIME_WAIT
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64656 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64659 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64661 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64663 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64665 ESTABLISHED
aswWebSv.exe 3100 TCP WIN-09HPTRG0G3C 12080 localhost 64667 ESTABLISHED
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64669 TIME_WAIT
aswMaiSv.exe 3168 TCP WIN-09HPTRG0G3C 12110 WIN-09HPTRG0G3C 0 LISTENING
aswMaiSv.exe 3168 TCP WIN-09HPTRG0G3C 12119 WIN-09HPTRG0G3C 0 LISTENING
aswMaiSv.exe 3168 TCP WIN-09HPTRG0G3C 12143 WIN-09HPTRG0G3C 0 LISTENING
System 4 TCP WIN-09HPTRG0G3C 27605 WIN-09HPTRG0G3C 0 LISTENING
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.161 3477 ESTABLISHED
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.157 3765 ESTABLISHED
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.62 4258 ESTABLISHED
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.188 4742 ESTABLISHED
System 4 TCP win-09hptrg0g3c.buv.edu.vn 27605 192.168.15.154 4925 ESTABLISHED
Skype.exe 6620 TCP WIN-09HPTRG0G3C 40521 WIN-09HPTRG0G3C 0 LISTENING
wininit.exe 560 TCP WIN-09HPTRG0G3C 49152 WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 964 TCP WIN-09HPTRG0G3C 49153 WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 1008 TCP WIN-09HPTRG0G3C 49154 WIN-09HPTRG0G3C 0 LISTENING
lsass.exe 664 TCP WIN-09HPTRG0G3C 49155 WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 1912 TCP WIN-09HPTRG0G3C 49156 WIN-09HPTRG0G3C 0 LISTENING
services.exe 656 TCP WIN-09HPTRG0G3C 49188 WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 3136 TCP WIN-09HPTRG0G3C 49203 WIN-09HPTRG0G3C 0 LISTENING
firefox.exe 11904 TCP WIN-09HPTRG0G3C 49223 localhost 49222 ESTABLISHED 3 3 1 1
firefox.exe 11904 TCP WIN-09HPTRG0G3C 49224 localhost 49225 ESTABLISHED
firefox.exe 11904 TCP WIN-09HPTRG0G3C 49225 localhost 49224 ESTABLISHED
System 4 TCP win-09hptrg0g3c.buv.edu.vn 49711 192.168.15.22 microsoft-ds ESTABLISHED
iexplore.exe 3440 TCP WIN-09HPTRG0G3C 49758 WIN-09HPTRG0G3C 0 LISTENING
YahooMessenger.exe 5648 TCP WIN-09HPTRG0G3C 49952 localhost 49953 ESTABLISHED
YahooMessenger.exe 5648 TCP WIN-09HPTRG0G3C 49953 localhost 49952 ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 50272 localhost 50273 ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 50273 localhost 50272 ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 50276 localhost 50277 ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 50277 localhost 50276 ESTABLISHED
Skype.exe 6620 TCP win-09hptrg0g3c.buv.edu.vn 50724 149.5.45.253 43027 ESTABLISHED
Skype.exe 6620 TCP win-09hptrg0g3c.buv.edu.vn 53395 213.146.189.204 12350 ESTABLISHED
YahooMessenger.exe 7668 TCP WIN-09HPTRG0G3C 54824 localhost 54825 ESTABLISHED
YahooMessenger.exe 7668 TCP WIN-09HPTRG0G3C 54825 localhost 54824 ESTABLISHED
YahooMessenger.exe 7668 TCP win-09hptrg0g3c.buv.edu.vn 54829 98.136.48.36 5050 ESTABLISHED
YahooMessenger.exe 7668 TCP WIN-09HPTRG0G3C 54839 localhost 54840 ESTABLISHED
YahooMessenger.exe 7668 TCP WIN-09HPTRG0G3C 54840 localhost 54839 ESTABLISHED
YahooMessenger.exe 7668 TCP win-09hptrg0g3c.buv.edu.vn 54841 98.137.130.64 5050 ESTABLISHED
rundll32.exe 9368 TCP win-09hptrg0g3c.buv.edu.vn 54876 74.125.71.83 https CLOSE_WAIT
chrome.exe 11248 TCP win-09hptrg0g3c.buv.edu.vn 57564 74.125.71.17 https ESTABLISHED
chrome.exe 11248 TCP WIN-09HPTRG0G3C 58558 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 58559 60.254.175.73 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 60956 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 60957 69.63.180.46 http ESTABLISHED
OUTLOOK.EXE 13268 TCP win-09hptrg0g3c.buv.edu.vn 61129 74.125.71.83 https ESTABLISHED
OUTLOOK.EXE 10840 TCP win-09hptrg0g3c.buv.edu.vn 61169 74.125.127.109 imaps ESTABLISHED
firefox.exe 12520 TCP WIN-09HPTRG0G3C 61179 localhost 61178 ESTABLISHED 111 111 16 16
firefox.exe 12520 TCP WIN-09HPTRG0G3C 61184 localhost 61183 ESTABLISHED 17 17
YahooMessenger.exe 5648 TCP win-09hptrg0g3c.buv.edu.vn 62366 98.136.48.66 5050 ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62371 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 62372 123.30.53.19 http ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62373 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 62374 64.233.183.138 http ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62378 localhost 12080 ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62379 localhost 12080 ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62395 localhost 12080 ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62397 localhost 12080 ESTABLISHED
YahooMessenger.exe 5648 TCP WIN-09HPTRG0G3C 62634 localhost 62635 ESTABLISHED
YahooMessenger.exe 5648 TCP WIN-09HPTRG0G3C 62635 localhost 62634 ESTABLISHED
YahooMessenger.exe 5648 TCP win-09hptrg0g3c.buv.edu.vn 62636 98.137.130.105 http ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 62855 localhost 12080 ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 62916 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 62917 60.254.175.73 http ESTABLISHED
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63062 74.125.71.19 https TIME_WAIT
firefox.exe 5208 TCP WIN-09HPTRG0G3C 63500 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 63501 60.254.175.73 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 63570 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 63571 118.214.191.97 http ESTABLISHED
firefox.exe 5208 TCP win-09hptrg0g3c.buv.edu.vn 63576 74.125.71.19 https ESTABLISHED
opera.exe 7132 TCP WIN-09HPTRG0G3C 63621 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 63622 123.30.53.19 http ESTABLISHED
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63866 117.104.135.51 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63924 123.30.53.15 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63926 123.30.53.15 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63936 123.30.53.15 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63938 123.30.53.15 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63965 123.30.53.18 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 63966 123.30.53.18 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64017 123.30.53.18 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64018 123.30.53.18 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64088 74.125.71.104 http TIME_WAIT
chrome.exe 11248 TCP win-09hptrg0g3c.buv.edu.vn 64180 74.125.71.138 https ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64320 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64321 118.214.190.121 http ESTABLISHED
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64425 118.214.190.169 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64439 118.214.191.36 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64441 60.254.175.73 http TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64443 64.233.183.138 http TIME_WAIT
chrome.exe 11248 TCP WIN-09HPTRG0G3C 64449 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64450 69.63.180.48 http ESTABLISHED
Skype.exe 7368 TCP win-09hptrg0g3c.buv.edu.vn 64463 118.170.203.184 2067 ESTABLISHED
Skype.exe 7368 TCP win-09hptrg0g3c.buv.edu.vn 64465 78.141.177.89 12350 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64484 222.255.27.197 http CLOSE_WAIT
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64526 222.255.27.197 http CLOSE_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64536 222.255.27.194 http TIME_WAIT
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64537 222.255.27.197 http CLOSE_WAIT
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64538 222.255.27.197 http CLOSE_WAIT
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64559 222.255.27.197 http CLOSE_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64610 42.98.146.23 9238 TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64614 83.85.134.165 4840 TIME_WAIT
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64615 213.146.189.201 12350 TIME_WAIT
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64617 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64618 123.30.53.15 http ESTABLISHED
Skype.exe 7368 TCP win-09hptrg0g3c.buv.edu.vn 64620 213.146.189.201 12350 ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64625 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64626 123.30.53.15 http ESTABLISHED
[System Process] 0 TCP win-09hptrg0g3c.buv.edu.vn 64629 199.7.55.72 http TIME_WAIT
Skype.exe 7368 TCP win-09hptrg0g3c.buv.edu.vn 64631 192.168.15.199 42989 ESTABLISHED
chrome.exe 11248 TCP WIN-09HPTRG0G3C 64635 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64636 74.125.71.138 http ESTABLISHED
chrome.exe 11248 TCP WIN-09HPTRG0G3C 64637 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64638 64.233.183.102 http ESTABLISHED
firefox.exe 5208 TCP win-09hptrg0g3c.buv.edu.vn 64647 74.125.71.19 https ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64656 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64657 118.214.191.36 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64659 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64660 60.254.131.64 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64661 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64662 118.214.190.169 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64663 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64664 117.104.135.59 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64665 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64666 118.214.191.99 http ESTABLISHED
firefox.exe 5208 TCP WIN-09HPTRG0G3C 64667 localhost 12080 ESTABLISHED
aswWebSv.exe 3100 TCP win-09hptrg0g3c.buv.edu.vn 64668 203.106.85.206 http ESTABLISHED
System 4 TCP WIN-09HPTRG0G3C microsoft-ds WIN-09HPTRG0G3C 0 LISTENING
System 4 TCP WIN-09HPTRG0G3C 5817 WIN-09HPTRG0G3C 0 LISTENING
System 4 TCP WIN-09HPTRG0G3C 47001 WIN-09HPTRG0G3C 0 LISTENING
svchost.exe 324 UDP WIN-09HPTRG0G3C ntp * *
System 4 UDP win-09hptrg0g3c.buv.edu.vn netbios-ns * *
System 4 UDP win-09hptrg0g3c.buv.edu.vn netbios-dgm * *
Skype.exe 6620 UDP WIN-09HPTRG0G3C https * *
svchost.exe 1008 UDP WIN-09HPTRG0G3C isakmp * *
BOOTSRV.EXE 2396 UDP WIN-09HPTRG0G3C 1283 * *
opera.exe 7132 UDP win-09hptrg0g3c.buv.edu.vn ssdp * *
Skype.exe 7368 UDP WIN-09HPTRG0G3C 2687 * *
svchost.exe 1008 UDP WIN-09HPTRG0G3C ipsec-msft * *
svchost.exe 644 UDP WIN-09HPTRG0G3C llmnr * *
orbitnet.exe 12588 UDP WIN-09HPTRG0G3C 20129 * *
Skype.exe 6620 UDP WIN-09HPTRG0G3C 40521 * *
svchost.exe 1888 UDP WIN-09HPTRG0G3C 49245 * *
lsass.exe 664 UDP WIN-09HPTRG0G3C 50016 * *
YahooMessenger.exe 5648 UDP WIN-09HPTRG0G3C 50202 * *
iexplore.exe 3440 UDP WIN-09HPTRG0G3C 50693 * *
Skype.exe 7368 UDP WIN-09HPTRG0G3C 50695 * *
TeamViewer_Desktop.exe 13192 UDP WIN-09HPTRG0G3C 51568 * *
vmms.exe 2096 UDP WIN-09HPTRG0G3C 51569 * *
svchost.exe 1912 UDP WIN-09HPTRG0G3C 52097 * *
YahooMessenger.exe 7668 UDP WIN-09HPTRG0G3C 55941 * *
iexplore.exe 5216 UDP WIN-09HPTRG0G3C 56354 * *
opera.exe 7132 UDP win-09hptrg0g3c.buv.edu.vn 58022 * *
Skype.exe 9032 UDP WIN-09HPTRG0G3C 59429 * *
TeamViewer_Desktop.exe 4760 UDP WIN-09HPTRG0G3C 59672 * *
Skype.exe 6620 UDP WIN-09HPTRG0G3C 60139 * *
TeamViewer.exe 13096 UDP WIN-09HPTRG0G3C 60197 * *
Skype.exe 7368 UDP WIN-09HPTRG0G3C 60350 * *
svchost.exe 1008 UDP WIN-09HPTRG0G3C 62497 * *
Skype.exe 6620 UDP WIN-09HPTRG0G3C 62675 * *
spoolsv.exe 1532 UDP WIN-09HPTRG0G3C 64238 * *
TeamViewer.exe 6588 UDP WIN-09HPTRG0G3C 64639 * *
svchost.exe 644 UDP WIN-09HPTRG0G3C 65526 * *
svchost.exe 876 TCPV6 [0:0:0:0:0:0:0:0] epmap [0:0:0:0:0:0:0:0] 0 LISTENING
System 4 TCPV6 [0:0:0:0:0:0:0:0] microsoft-ds [0:0:0:0:0:0:0:0] 0 LISTENING
dsm_om_connsvc32.exe 1860 TCPV6 [0:0:0:0:0:0:0:0] 1311 [0:0:0:0:0:0:0:0] 0 LISTENING
vmms.exe 2096 TCPV6 [0:0:0:0:0:0:0:0] 2179 [0:0:0:0:0:0:0:0] 0 LISTENING
svchost.exe 1888 TCPV6 [0:0:0:0:0:0:0:0] ms-wbt-server [0:0:0:0:0:0:0:0] 0 LISTENING
NCWTService.exe 2040 TCPV6 [0:0:0:0:0:0:0:0] 3681 [0:0:0:0:0:0:0:0] 0 LISTENING
NCWTService.exe 2040 TCPV6 [0:0:0:0:0:0:0:0] 3682 [0:0:0:0:0:0:0:0] 0 LISTENING
NCWTService.exe 2040 TCPV6 [0:0:0:0:0:0:0:0] 3683 [0:0:0:0:0:0:0:0] 0 LISTENING
NCWTService.exe 2040 TCPV6 [0:0:0:0:0:0:0:0] 3684 [0:0:0:0:0:0:0:0] 0 LISTENING
System 4 TCPV6 [0:0:0:0:0:0:0:0] 5817 [0:0:0:0:0:0:0:0] 0 LISTENING
System 4 TCPV6 [0:0:0:0:0:0:0:0] 47001 [0:0:0:0:0:0:0:0] 0 LISTENING
wininit.exe 560 TCPV6 [0:0:0:0:0:0:0:0] 49152 [0:0:0:0:0:0:0:0] 0 LISTENING
svchost.exe 964 TCPV6 [0:0:0:0:0:0:0:0] 49153 [0:0:0:0:0:0:0:0] 0 LISTENING
svchost.exe 1008 TCPV6 [0:0:0:0:0:0:0:0] 49154 [0:0:0:0:0:0:0:0] 0 LISTENING
lsass.exe 664 TCPV6 [0:0:0:0:0:0:0:0] 49155 [0:0:0:0:0:0:0:0] 0 LISTENING
svchost.exe 1912 TCPV6 [0:0:0:0:0:0:0:0] 49156 [0:0:0:0:0:0:0:0] 0 LISTENING
services.exe 656 TCPV6 [0:0:0:0:0:0:0:0] 49188 [0:0:0:0:0:0:0:0] 0 LISTENING
svchost.exe 3136 TCPV6 [0:0:0:0:0:0:0:0] 49203 [0:0:0:0:0:0:0:0] 0 LISTENING
svchost.exe 324 UDPV6 [0:0:0:0:0:0:0:0] 123 * *
svchost.exe 1008 UDPV6 [0:0:0:0:0:0:0:0] 500 * *
svchost.exe 1008 UDPV6 [0:0:0:0:0:0:0:0] 4500 * *
System 4 TCPV6 [0:0:0:0:0:0:0:1] microsoft-ds [0:0:0:0:0:0:0:1] 64673 ESTABLISHED
System 4 TCPV6 [0:0:0:0:0:0:0:1] 64673 [0:0:0:0:0:0:0:1] microsoft-ds ESTABLISHED
[System Process] 0 TCP WIN-09HPTRG0G3C 12080 localhost 64541 TIME_WAIT

THANKS
[Up] [Print Copy]
  [Analyzing]   Nhờ mọi người check hộ em xem có virut không 14/11/2011 13:14:36 (+0700) | #3 | 249899
[Avatar]
bolzano_1989
Journalist

[Minus]    0    [Plus]
Joined: 30/01/2007 12:49:15
Messages: 1406
Offline
[Profile] [PM]
Bạn chỉ gửi một log TCPView như thế thì sẽ khó tìm được sự giúp đỡ lắm.
Bạn có thể qua forum của CMC, thực hiện theo hướng dẫn sau để tìm trợ giúp diệt virus:

Hướng dẫn nhận trợ giúp diệt virus nhanh từ diễn đàn CMCLab Support
http://support.cmclab.net/vn/anti-virus-services/huong-dan-nhan-tro-giup-diet-virus-nhanh-tu-dien-dan-cmclab-support/

Nếu bạn gửi log ở HVA forum thì vui lòng gửi tin nhắn riêng cho mình là bạn đã gửi log ở HVA forum để mình kịp thời theo dõi.
Kiểm tra các file bạn nghi ngờ có virus:
http://goo.gl/m3Fb6C
http://goo.gl/EqaZt
http://goo.gl/gEF8e
Nhận mẫu virus qua FB: http://goo.gl/70Xo23
HVA Malware Response Team: kiemtravirus@gmail.com
Trợ giúp diệt virus: http://goo.gl/2bqxY
[Up] [Print Copy]
[digg] [delicious] [google] [yahoo] [technorati] [reddit] [stumbleupon]
Go to: 
 Users currently in here 
1 Anonymous

Powered by JForum - Extended by HVAOnline
 hvaonline.net  |  hvaforum.net  |  hvazone.net  |  hvanews.net  |  vnhacker.org
1999 - 2013 © v2012|0504|218|