瑞星卡卡安全论坛
Laidess - 2007-7-25 18:35:00
电脑每次启动瑞星都报告发现病毒,名字是rootkit.win32.cell.i
但是每次都自动忽略,查到文件名,但到目录下无该文件
下面是扫上来的日志
瑞星卡卡电脑诊断日志 v1.30 (2007-7-25 18:18:37) 北京瑞星科技股份有限公司
注释: [A]表示该文件存在自启动关联;
[M]表示该文件在内存中;
+ 注册表自运行项目
+ 系统服务
+ HKLM\System\CurrentControlSet\Services
Ati HotKey Poller
[AM] 1. c:\windows\system32\ati2evxx.exe
ATI Technologies Inc.
ATI External Event Utility EXE Module
.text,.rdata,.data,.rsrc,
ATI Smart
[A ] 2. c:\windows\system32\ati2sgag.exe
ATI Smart
.text,.rdata,.data,.rsrc,
AVG Anti-Spyware Guard
[AM] 3. c:\program files\grisoft\avg anti-spyware 7.5\guard.exe
GRISOFT s.r.o.
AVG Anti-Spyware guard
.text,.rdata,.data,.rsrc,
ose
[A ] 4. c:\program files\common files\microsoft shared\source engine\ose.exe
Microsoft Corporation
Office Source Engine
.text,.data,.rsrc,
RfwProxySrv
[A ] 5. c:\program files\rising\rfw\rfwproxy.exe
Beijing Rising Technology Co., Ltd.
Rising Personal Proxy Service
.text,.rdata,.data,.rsrc,
RfwService
[A ] 6. c:\program files\rising\rfw\rfwsrv.exe
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall Service
.text,.rdata,.data,.rsrc,
RsCCenter
[A ] 7. c:\program files\rising\rav\ccenter.exe
Beijing Rising Technology Co., Ltd.
CCenter
.text,.rdata,.data,.rsrc,
RsRavMon
[A ] 8. c:\program files\rising\rav\ravmond.exe
Beijing Rising Technology Co., Ltd.
RavMond
.text,.rdata,.data,.rsrc,
UMWdf
[AM] 9. c:\windows\system32\wdfmgr.exe
Microsoft Corporation
Windows User Mode Driver Manager
.text,.data,.rsrc,
Laidess - 2007-7-25 18:35:00
+ 内核驱动
+ HKLM\System\CurrentControlSet\Services
AmdK8
[A ] 10. c:\windows\system32\drivers\amdk8.sys
Advanced Micro Devices
AMD Processor Driver
.text,.rdata,.data,PAGE,PAGELK,INIT,.rsrc,.reloc,
AVG Anti-Spyware Driver
[A ] 11. c:\program files\grisoft\avg anti-spyware 7.5\guard.sys
.text,.rdata,.data,INIT,.reloc,
AvgAsCln
[A ] 12. c:\windows\system32\drivers\avgascln.sys
GRISOFT, s.r.o.
AVG7 Clean Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
BaseTDI
[A ] 13. c:\windows\system32\drivers\basetdi.sys
Beijing Rising Technology Co., Ltd.
basetdi
.text,.rdata,.data,INIT,.rsrc,.reloc,
ExpScaner
[A ] 14. c:\program files\rising\rav\expscan.sys
ExpScan.sys
.text,.rdata,.data,INIT,.rsrc,.reloc,
HDAudBus
[A ] 15. c:\windows\system32\drivers\hdaudbus.sys
Windows (R) Server 2003 DDK provider
High Definition Audio Bus Driver v1.0a
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
HookCont
[A ] 16. c:\program files\rising\rav\hookcont.sys
Rising
HookCont
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookReg
[A ] 17. c:\program files\rising\rav\hookreg.sys
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookSys
[A ] 18. c:\program files\rising\rav\hooksys.sys
Rising
Hooksys
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookUrl
[A ] 19. c:\program files\rising\rfw\hookurl.sys
Beijing Rising Technology Co., Ltd.
HookUrl
.text,.rdata,.data,INIT,.rsrc,.reloc,
IntcAzAudAddService
[A ] 20. c:\windows\system32\drivers\rtkhdaud.sys
Realtek Semiconductor Corp.
Realtek(r) High Definition Audio Function Driver
.text,CODE,.rdata,.data,.data1,PAGE,INIT,.rsrc,.reloc,
MEMSCAN
[A ] 21. c:\program files\rising\rav\memscan.sys
瑞星软件有限公司
MemScan Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
mProcRs
[A ] 22. c:\program files\rising\rfw\mprocrs.sys
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall mprocrs.sys
.text,.rdata,.data,INIT,.rsrc,.reloc,
Nbf
[A ] 23. c:\windows\system32\drivers\nbf.sys
Microsoft Corporation
NetBEUI Frames Protocol Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
NVENETFD
[A ] 24. c:\windows\system32\drivers\nvenetfd.sys
NVIDIA Corporation
NVIDIA Networking Function Driver.
.text,.rdata,.data,INIT,.rsrc,.reloc,
nvnetbus
[A ] 25. c:\windows\system32\drivers\nvnetbus.sys
NVIDIA Corporation
NVIDIA Networking Bus Driver.
.text,.rdata,.data,INIT,.rsrc,.reloc,
PxHelp20
[A ] 26. c:\windows\system32\drivers\pxhelp20.sys
Sonic Solutions
Px Engine Device Driver for Windows 2000/XP
.text,.rdata,.data,INIT,.rsrc,.reloc,
QKeyService
[A ] 27. c:\windows\system32\keycrypt.sys
Tencent Technology (Shenzhen) Company Limited
KeyCrypt Device Driver
.text,.rdata,.data,.CRT,.STL,INIT,.rsrc,.reloc,
RsAntiSpyware
[A ] 28. c:\windows\system32\drivers\rsboot.sys
Beijing Rising Technology Co., Ltd.
Anti-RootKit Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
RsFwDrv
[A ] 29. c:\program files\rising\rfw\rsfwdrv.sys
Beijing Rising Technology Co., Ltd.
nt_fwdrv
.text,.rdata,.data,INIT,.rsrc,.reloc,
Laidess - 2007-7-25 18:36:00
RsNTGDI
[A ] 30. c:\windows\system32\drivers\rsntgdi.sys
Beijing Rising Technology Co., Ltd.
RsNTGDI
.text,.rdata,INIT,.rsrc,.reloc,
RSPPSYS
[A ] 31. c:\program files\rising\rav\rsppsys.sys
Rising
RSPPSYS.SYS
.text,.rdata,.data,INIT,.rsrc,.reloc,
Secdrv
[A ] 32. c:\windows\system32\drivers\secdrv.sys
Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.
Macrovision SECURITY Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,pnidata,
+ 系统登陆自运行
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
AtiExtEvent
[AM] 33. c:\windows\system32\ati2evxx.dll
ATI Technologies Inc.
ATI External Event Utility DLL Module
.text,.rdata,.data,.rsrc,.reloc,
+ IE浏览器加载模块
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C}
[A ] 34. c:\windows\system32\kakatool.dll
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Toolbar
.text,.rdata,.data,MonitorS,.rsrc,.reloc,
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
{00000000-12C9-4305-82F9-43058F20E8D2}
[AM] 35. c:\program files\tencent\qqdownload\qqiehelper02.dll
腾讯公司
超级旋风下载组件
.text,.rdata,.data,.rsrc,.reloc,
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
[AM] 36. c:\program files\java\jre1.6.0_01\bin\ssv.dll
Sun Microsystems, Inc.
Java(TM) Platform SE binary
.text,.rdata,.data,.rsrc,.reloc,
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
Exec
[A ] 37. c:\program files\tencent\qq\qq.exe
TENCENT
QQ
.text,.rdata,.data,.rsrc,
+ 资源管理器加载模块
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
text/xml
[AM] 38. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll
Microsoft Corporation
Microsoft Office XML MIME Filter
.text,.data,.rsrc,.reloc,
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Handler
mso-offdap
[A ] 39. c:\program files\common files\microsoft shared\web components\10\owc10.dll
Microsoft Corporation
Microsoft Office XP Web Components
.text,.data,.rtext,.bootdat,msoconst,Shared,.rsrc,.reloc,
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
HyperTerminal Icon Ext
[A ] 40. c:\windows\system32\hticons.dll
Hilgraeve, Inc.
HyperTerminal Applet Library
.text,.data,.rsrc,.reloc,
RISING
[A ] 41. c:\windows\system32\ravext.dll
Beijing Rising Technology Co., Ltd.
Rising Shell Ext Module
.text,.rdata,.data,.rsrc,.reloc,
WinRAR shell extension
[A ] 42. c:\program files\winrar\rarext.dll
.text,.data,.tls,.idata,.edata,.rsrc,.reloc,
Microsoft Office HTML Icon Handler
[AM] 43. c:\program files\microsoft office\office11\msohev.dll
Microsoft Corporation
Microsoft Office 2003 component
.text,.data,.rsrc,.reloc,
Web Folders
[A ] 44. c:\program files\common files\microsoft shared\web folders\msonsext.dll
Microsoft Corporation
Microsoft Web Folders
.text,.data,.rsrc,.reloc,
+ 用户登陆自运行项目
+ HKLM\Software\Microsoft\Windows\CurrentVersion\Run
RTHDCPL
[AM] 45. c:\windows\rthdcpl.exe
Realtek Semiconductor Corp.
Realtek HD Audio Control Panel
.text,.data,.tls,.rdata,.idata,.edata,.rsrc,.reloc,
SkyTel
[A ] 46. c:\windows\skytel.exe
Realtek Semiconductor Corp.
Realtek Voice Manager
.text,.data,.tls,.rdata,.idata,.edata,.rsrc,.reloc,
Alcmtr
[A ] 47. c:\windows\alcmtr.exe
Realtek Semiconductor Corp.
Realtek Azalia Audio - Event Monitor
.text,.rdata,.data,.rsrc,
RavTask
[A ] 48. c:\program files\rising\rav\ravtask.exe
Beijing Rising Technology Co., Ltd.
RavTimer
.text,.rdata,.data,.rsrc,
RfwMain
[AM] 49. c:\program files\rising\rfw\rfwmain.exe
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall Main Program
.text,.rdata,.data,.rsrc,
StormCodec_Helper
[A ] 50. c:\program files\ringz studio\storm codec\stormset.exe
.text,.rdata,.data,.ndata,.rsrc,
runeip
[AM] 51. c:\program files\rising\kakatoolbar\runiep.exe
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Monitor
.text,.rdata,.data,.rsrc,
+ 开机执行
+ HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order
BootExecute
[A ] 52. c:\windows\system32\bsmain.exe
Beijing Rising Technology Co., Ltd.
BootScan
.text,.data,.rsrc,.reloc,
[A ] 53. c:\windows\system32\kknative.exe
Beijing Rising Technology Co., Ltd.
NativeAp
.text,.data,.rsrc,.reloc,
+ 映像劫持
+ HKCR\Folder\shell
Super Rabbit CDROM Eject
[A ] 54. c:\program files\super rabbit\magicset\srcd2.exe
Super Rabbit Software
UPX0,UPX1,.rsrc,
+ HKCR\.html
htmlfile\Edit\Command
[A ] 55. c:\program files\microsoft office\office11\msohtmed.exe
Microsoft Corporation
Microsoft Office 2003 component
.text,.data,.rsrc,
htmlfile\Print\Command
[A ] 55. c:\program files\microsoft office\office11\msohtmed.exe
Microsoft Corporation
Microsoft Office 2003 component
.text,.data,.rsrc,
+ HKCR\.htm
htmlfile\Edit\Command
[A ] 55. c:\program files\microsoft office\office11\msohtmed.exe
Microsoft Corporation
Microsoft Office 2003 component
.text,.data,.rsrc,
htmlfile\Print\Command
[A ] 55. c:\program files\microsoft office\office11\msohtmed.exe
Microsoft Corporation
Microsoft Office 2003 component
.text,.data,.rsrc,
+ HKCR\.mp3
Winamp.File\Enqueue\Command
[A ] 56. c:\program files\winamp\winamp.exe
Nullsoft
Winamp
.text,.rdata,.data,.rsrc,.reloc,
Winamp.File\ListBookmark\Command
[A ] 56. c:\program files\winamp\winamp.exe
Nullsoft
Winamp
.text,.rdata,.data,.rsrc,.reloc,
Laidess - 2007-7-25 18:36:00
Winamp.File\open\Command
[A ] 56. c:\program files\winamp\winamp.exe
Nullsoft
Winamp
.text,.rdata,.data,.rsrc,.reloc,
Winamp.File\Play\Command
[A ] 56. c:\program files\winamp\winamp.exe
Nullsoft
Winamp
.text,.rdata,.data,.rsrc,.reloc,
Winamp.File\播放\Command
[A ] 56. c:\program files\winamp\winamp.exe
Nullsoft
Winamp
.text,.rdata,.data,.rsrc,.reloc,
Winamp.File\队列\Command
[A ] 56. c:\program files\winamp\winamp.exe
Nullsoft
Winamp
.text,.rdata,.data,.rsrc,.reloc,
+ 其他自启动项目
+ C:\Documents and Settings\Administrator\「开始」菜单\程序\启动
QQ游戏启动加速程序.lnk
[A ] 57. c:\program files\tencent\qqgame\accel.exe
深圳市腾讯计算机系统有限公司
QQ游戏
.text,.rdata,.data,.rsrc,
+ 正在运行的进程
+ 0000014c(332) RTHDCPL.EXE
00400000[01024000]
[AM] 45. c:\windows\rthdcpl.exe
Realtek Semiconductor Corp.
Realtek HD Audio Control Panel
.text,.data,.tls,.rdata,.idata,.edata,.rsrc,.reloc,
72C80000[00008000]
[ M] 58. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
10000000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 00000198(408) smss.exe
+ 000001d8(472) csrss.exe
+ 000001f8(504) winlogon.exe
10000000[0001D000]
[AM] 33. c:\windows\system32\ati2evxx.dll
ATI Technologies Inc.
ATI External Event Utility DLL Module
.text,.rdata,.data,.rsrc,.reloc,
72C80000[00008000]
[ M] 58. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
+ 00000224(548) services.exe
+ 00000230(560) lsass.exe
+ 000002a0(672) runiep.exe
00400000[00012000]
[AM] 51. c:\program files\rising\kakatoolbar\runiep.exe
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Monitor
.text,.rdata,.data,.rsrc,
00BF0000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 000002d4(724) Ati2evxx.exe
00400000[00072000]
[AM] 1. c:\windows\system32\ati2evxx.exe
ATI Technologies Inc.
ATI External Event Utility EXE Module
.text,.rdata,.data,.rsrc,
00CB0000[00010000]
[ M] 60. c:\windows\system32\ati2edxx.dll
ATI Technologies, Inc.
ati2edxx
.text,.data,.SHAREDS,.rsrc,.reloc,
10000000[0001F000]
[ M] 61. c:\windows\system32\atipdlxx.dll
ATI Technologies, Inc.
ATI Desktop CWDDEDI DLL
.text,.rdata,.data,.rsrc,.reloc,
+ 000002e4(740) svchost.exe
+ 00000338(824) svchost.exe
+ 00000378(888) RfwMain.exe
00400000[00073000]
[AM] 49. c:\program files\rising\rfw\rfwmain.exe
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall Main Program
.text,.rdata,.data,.rsrc,
26600000[0007D000]
[ M] 62. c:\program files\rising\rfw\rsguilib.dll
Beijing Rising Technology Co., Ltd.
Rising GUI Library Loader
.text,.rdata,.data,.rsrc,.reloc,
23700000[0001A000]
[ M] 63. c:\program files\rising\rfw\rscommon.dll
Beijing Rising Technology Co., Ltd.
Rising Common Function Dynamic Link Library
.text,.rdata,.data,.rsrc,.reloc,
10000000[0000F000]
[ M] 64. c:\program files\rising\rfw\rfwctrl.dll
Beijing Rising Technology Co., Ltd.
RfwCtrl DLL
.text,.rdata,.data,.rsrc,.reloc,
23800000[0001A000]
[ M] 65. c:\program files\rising\rfw\rsxml.dll
Beijing Rising Technology Co., Ltd.
RsXML
.text,.rdata,.data,.rsrc,.reloc,
23900000[00031000]
[ M] 66. c:\program files\rising\rfw\pngdll.dll
Beijing Rising Technology Co., Ltd.
Rising .Png File Loader Dynamic Link Library
.text,.rdata,.data,.rsrc,.reloc,
01110000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 0000039c(924) svchost.exe
+ 000003d0(976) ctfmon.exe
10000000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 000003f4(1012) svchost.exe
+ 00000440(1088) Ati2evxx.exe
00400000[00072000]
[AM] 1. c:\windows\system32\ati2evxx.exe
ATI Technologies Inc.
ATI External Event Utility EXE Module
.text,.rdata,.data,.rsrc,
00CB0000[00010000]
[ M] 60. c:\windows\system32\ati2edxx.dll
ATI Technologies, Inc.
ati2edxx
.text,.data,.SHAREDS,.rsrc,.reloc,
10000000[0001F000]
[ M] 61. c:\windows\system32\atipdlxx.dll
ATI Technologies, Inc.
ATI Desktop CWDDEDI DLL
.text,.rdata,.data,.rsrc,.reloc,
00CE0000[0001D000]
[AM] 33. c:\windows\system32\ati2evxx.dll
ATI Technologies Inc.
ATI External Event Utility DLL Module
.text,.rdata,.data,.rsrc,.reloc,
+ 00000548(1352) svchost.exe
+ 000006e0(1760) spoolsv.exe
+ 00000708(1800) Explorer.EXE
10000000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
72C80000[00008000]
[ M] 58. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
+ 00000774(1908) guard.exe
00400000[0004E000]
[AM] 3. c:\program files\grisoft\avg anti-spyware 7.5\guard.exe
GRISOFT s.r.o.
AVG Anti-Spyware guard
.text,.rdata,.data,.rsrc,
10000000[000DE000]
[ M] 67. c:\program files\grisoft\avg anti-spyware 7.5\engine.dll
GRISOFT s.r.o.
AVG Anti-Spyware Scan Engine
.text,.rdata,.data,.rsrc,.reloc,
+ 000007f8(2040) wdfmgr.exe
01000000[0000C000]
[AM] 9. c:\windows\system32\wdfmgr.exe
Microsoft Corporation
Windows User Mode Driver Manager
.text,.data,.rsrc,
+ 000008ec(2284) alg.exe
+ 00000bd8(3032) IEXPLORE.EXE
10060000[0000F000]
[ M] 68. c:\windows\system32\wmiapisrv.dll
.text,.rsrc,.reloc,
10000000[00037000]
[AM] 35. c:\program files\tencent\qqdownload\qqiehelper02.dll
腾讯公司
超级旋风下载组件
.text,.rdata,.data,.rsrc,.reloc,
6D7C0000[00079000]
[AM] 36. c:\program files\java\jre1.6.0_01\bin\ssv.dll
Sun Microsystems, Inc.
Java(TM) Platform SE binary
.text,.rdata,.data,.rsrc,.reloc,
7C340000[00056000]
[ M] 69. c:\program files\java\jre1.6.0_01\bin\msvcr71.dll
Microsoft Corporation
Microsoft? C Runtime Library
.text,.rdata,.data,.rsrc,.reloc,
02410000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
325C0000[00012000]
[AM] 43. c:\program files\microsoft office\office11\msohev.dll
Microsoft Corporation
Microsoft Office 2003 component
.text,.data,.rsrc,.reloc,
02B20000[00019000]
[ M] 70. c:\program files\rising\rav\ravscrch.dll
Beijing Rising Technology Co., Ltd.
RavScrCh Module
.text,.rdata,.data,.rsrc,.reloc,
30000000[002EF000]
[ M] 71. c:\windows\system32\macromed\flash\flash9c.ocx
Adobe Systems, Inc.
Adobe Flash Player 9.0 r45
.text,.rdata,.data,.rsrc,.reloc,
72C80000[00008000]
[ M] 58. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
05C20000[0000B000]
[AM] 38. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll
Microsoft Corporation
Microsoft Office XML MIME Filter
.text,.data,.rsrc,.reloc,
+ 00000c44(3140) Ras.exe
00400000[0013F000]
[ M] 72. c:\program files\rising\kakatoolbar\ras.exe
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware
.text,.rdata,.data,.rsrc,
10060000[0000F000]
[ M] 68. c:\windows\system32\wmiapisrv.dll
.text,.rsrc,.reloc,
00FB0000[000A3000]
[ M] 73. c:\program files\rising\kakatoolbar\rasgui.dll
Beijing Rising Technology Co., Ltd.
RasGUI
.text,.rdata,.data,.rsrc,.reloc,
10000000[0001B000]
[ M] 59. c:\program files\rising\kakatoolbar\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 00000fb4(4020) wuauclt.exe
10060000[0000F000]
[ M] 68. c:\windows\system32\wmiapisrv.dll
.text,.rsrc,.reloc,
Enao2005 - 2007-7-25 19:06:00
找到那个文件具体路径 尝试用XDelBox1.3删除(enao.ys168.com 下载)
Laidess - 2007-7-25 19:09:00
具体路径有,但找不到该文件
不管是安全模式还是DOS下,都找不到
论坛注册太麻烦 - 2007-7-26 7:35:00
小弟的情况一样,望给个说法
1
© 2000 - 2026 Rising Corp. Ltd.