002002 - 2007-5-11 12:53:00
==================================
浏览器加载项
[CAdLogic Object]
{11F09AFD-75AD-4E51-AB43-E09E9351CE16} <C:\Program Files\Common Files\CPUSH\cpush.dll, >
[CdnForIE Class]
{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[]
{C74CDF30-68C2-49B4-9918-EBD66B8D9FBF} <C:\WINDOWS\system32\ieqzetetvcyhl.dll, >
[ieshow Class]
{CE7C3CF0-4B15-11D1-ABED-709549C15050} <C:\WINDOWS\ieshow\ieshow.dll, ieshow.cn, Inc.>
[CdnForIE Class]
{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[CAdLogic Object]
{11F09AFD-75AD-4E51-AB43-E09E9351CE16} <C:\Program Files\Common Files\CPUSH\cpush.dll, >
[CdnForIE Class]
{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[]
{C74CDF30-68C2-49B4-9918-EBD66B8D9FBF} <C:\WINDOWS\system32\ieqzetetvcyhl.dll, >
[ieshow Class]
{CE7C3CF0-4B15-11D1-ABED-709549C15050} <C:\WINDOWS\ieshow\ieshow.dll, ieshow.cn, Inc.>
[访问通用网址]
<C:\Program Files\CNNIC\Cdn\cnnic.htm, N/A>
==================================
正在运行的进程
[PID: 388][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 452][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[PID: 476][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\6017BB52.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\winlib .dll] [N/A, ]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\6249A78F.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\kkdj3sdf3.dll] [Microsoft Corporation, ]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 520][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[PID: 532][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[PID: 680][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[PID: 760][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[PID: 800][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[c:\windows\system32\vmqki.dll] [Microsoft Corporation, 5.1.2600.0]
[c:\windows\system32\akkmkcof.dll] [N/A, ]
[PID: 1280][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\KB9269O4.log] [N/A, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\NewInfo.bmp] [N/A, ]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[C:\WINDOWS\system32\6017BB52.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\spdit.dll] [N/A, ]
[C:\WINDOWS\system32\pifmgy.dll] [Microsoft Corporation, 5.01.2900.2180]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[C:\WINDOWS\system32\6249A78F.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\kkdj3sdf3.dll] [Microsoft Corporation, ]
[C:\WINDOWS\system32\winform.dll] [N/A, ]
[C:\WINDOWS\system32\mppdss.dll] [N/A, ]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\DOCUME~1\z\LOCALS~1\Temp\upxdnd.dll] [N/A, ]
[C:\WINDOWS\SYSTEM32\WBEM\EUHSN.DLL] [Microsoft Corporation, 5, 1, 2600, 2709]
[C:\WINDOWS\system32\ieqzetetvcyhl.dll] [, 1.0.0.0]
[PID: 1320][C:\Program Files\CNNIC\Cdn\cdnup.exe] [CNNIC, 2, 5, 0, 8]
[C:\Program Files\CNNIC\Cdn\cdnuplib.dll] [CNNIC, 2, 5, 0, 11]
[C:\Program Files\CNNIC\Cdn\cdnprh.dll] [CNNIC, 2, 4, 0, 7]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[PID: 1428][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[PID: 1604][C:\WINDOWS\system32\kernels32.exe] [N/A, ]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[PID: 1612][C:\WINDOWS\retadpu20.exe] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[PID: 1820][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[C:\DOCUME~1\z\LOCALS~1\Temp\upxdnd.dll] [N/A, ]
[C:\WINDOWS\system32\mppdss.dll] [N/A, ]
[C:\WINDOWS\system32\winform.dll] [N/A, ]
[PID: 1304][C:\WINDOWS\system32\dgd4bs.exe] [N/A, ]
[C:\WINDOWS\system32\MSVBVM60.DLL] [Microsoft Corporation, 6.00.9690]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[PID: 2368][C:\WINDOWS\system32\dgd4bs.exe] [N/A, ]
[C:\WINDOWS\system32\MSVBVM60.DLL] [Microsoft Corporation, 6.00.9690]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[F:\新建文件夹\11\SREn.com] [Smallfrogs Studio, 2.4.12.806]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 1, 0, 11]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[C:\DOCUME~1\z\LOCALS~1\Temp\upxdnd.dll] [N/A, ]
[C:\WINDOWS\system32\mppdss.dll] [N/A, ]
[C:\WINDOWS\system32\winform.dll] [N/A, ]
天月来了 - 2007-5-11 14:51:00
首先建议全格重装系统,如果还想将就处理。
用冰刃(1.2版本)禁止进程创建,
卸除下面进程:
[PID: 1428][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1604][C:\WINDOWS\system32\kernels32.exe] [N/A, ]
[PID: 1612][C:\WINDOWS\retadpu20.exe] [, 1, 0, 0, 1]
[PID: 1304][C:\WINDOWS\system32\dgd4bs.exe] [N/A, ]
[PID: 2368][C:\WINDOWS\system32\dgd4bs.exe] [N/A, ]
卸除插入所有进程里的“.dll”模块。
正在运行的进程
[C:\WINDOWS\system32\6017BB52.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\winlib .dll] [N/A, ]
[C:\WINDOWS\system32\5A7BB4EF.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\6249A78F.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\kkdj3sdf3.dll] [Microsoft Corporation, ]
[c:\windows\system32\vmqki.dll] [Microsoft Corporation, 5.1.2600.0]
[c:\windows\system32\akkmkcof.dll] [N/A, ]
[C:\WINDOWS\KB9269O4.log] [N/A, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll] [N/A, ]
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\NewInfo.bmp] [N/A, ]
[C:\WINDOWS\system32\6017BB52.DLL] [Microsoft Corporation, ]
[C:\WINDOWS\system32\pifmgy.dll] [Microsoft Corporation, 5.01.2900.2180]
[C:\WINDOWS\system32\yfibhp.dll] [Microsoft Corporation, 5, 2, 2265, 3211]
[C:\WINDOWS\system32\yiqmfk67.dll] [, 1, 1, 1, 1013]
[C:\WINDOWS\system32\diyctu44.dll] [, 1, 1, 1, 1008]
[c:\progra~1\vzjv\imwi.dll] [, 1, 0, 0, 6]
[c:\progra~1\vzjv\nrbn.dll] [ , 1, 0, 0, 6]
[C:\WINDOWS\system32\winform.dll] [N/A, ]
[C:\WINDOWS\system32\mppdss.dll] [N/A, ]
[C:\DOCUME~1\z\LOCALS~1\Temp\upxdnd.dll] [N/A, ]
[C:\WINDOWS\SYSTEM32\WBEM\EUHSN.DLL] [Microsoft Corporation, 5, 1, 2600, 2709]
[C:\WINDOWS\system32\ieqzetetvcyhl.dll] [, 1.0.0.0]
[C:\WINDOWS\system32\MSVBVM60.DLL] [Microsoft Corporation, 6.00.9690]
————————————————————————————————————————————————————
用冰刃删除下面文件,即上面提到的模块文件。
C:\WINDOWS\system32\conime.exe
C:\WINDOWS\system32\kernels32.exe
C:\WINDOWS\retadpu20.exe
C:\WINDOWS\system32\dgd4bs.exe
C:\WINDOWS\system32\dgd4bs.exe
C:\WINDOWS\system32\6017BB52.DLL
C:\WINDOWS\system32\winlib .dll
C:\WINDOWS\system32\5A7BB4EF.DLL
C:\WINDOWS\system32\6249A78F.DLL
C:\WINDOWS\system32\kkdj3sdf3.dll
c:\windows\system32\vmqki.dll
c:\windows\system32\akkmkcof.dll
C:\WINDOWS\KB9269O4.log
C:\Program Files\Common Files\Microsoft Shared\MSINFO\03E0F956.dll
C:\Program Files\Common Files\Microsoft Shared\MSINFO\NewInfo.bmp
C:\WINDOWS\system32\6017BB52.DLL
C:\WINDOWS\system32\pifmgy.dll
C:\WINDOWS\system32\yfibhp.dll
C:\WINDOWS\system32\yiqmfk67.dll
C:\WINDOWS\system32\diyctu44.dll
c:\progra~1\vzjv\imwi.dll
c:\progra~1\vzjv\nrbn.dll
C:\WINDOWS\system32\winform.dll
C:\WINDOWS\system32\mppdss.dll
C:\DOCUME~1\z\LOCALS~1\Temp\upxdnd.dll
C:\WINDOWS\SYSTEM32\WBEM\EUHSN.DLL
C:\WINDOWS\system32\ieqzetetvcyhl.dll
C:\WINDOWS\system32\MSVBVM60.DLL
——————————————————————————————————————
用冰刃删除所有磁盘根目录下的下面的文件:
Autorun.inf
rising.exe
——————————————————————————————————————
然后取消冰刃的禁止进程创建,再做6楼的工作,这一切会很累人,很烦的。
估计楼主没法应付,还是重装吧。
呵呵!!!!!!!!!!!!!!!!!!!!
其他文件还不知怎样了呢。
如果死撑着处理了,建议别捣鼓其他盘的任何文件,先将杀毒软件升级到最新版本,然后全盘杀吧。
© 2000 - 2026 Rising Corp. Ltd.