瑞星卡卡安全论坛
wenoooppp - 2007-8-12 1:37:00
我购买了并安装了瑞星2007下载版后,本想杀毒来着,可结果安装后电脑变得很慢直到电脑死机?怎么回事呀,重新启动也没有用,启动后桌面上图标全没有了
[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
newcenturymoon - 2007-8-12 8:27:00
你电脑里 有病毒 应该
下载 System Repair Engineer,
http://download.kztechs.com/files/sreng2.zip
1 解压缩sreng2.zip
2 运行SREngPS.EXE
3 智能扫描=》扫描=》保存报告
4 把日志中的报告完整拷贝贴上来,不要修改
超级游戏迷 - 2007-8-12 10:04:00
两点疑问,请楼主说明下:
1、在购买安装瑞星2007前,你的机是否安装了其他杀软和防火墙?不会一直是全裸上网吧?安装瑞星2007前是否先卸载已安装的杀软和防火墙?
2、你机的物理内存多大?
wenoooppp - 2007-8-12 10:57:00
首先非常感谢你们的回复!谢谢!
刚装了网络一周时间,对可以说是全祼上网的,没装其它杀毒软件,倒是在购买你们产品前,有下载安装你们的免费产品,可是在我安装你们购买的产品前我都把先前装的卸了
wenoooppp - 2007-8-12 11:39:00
我今天又重新安装了一次瑞星杀毒软件,不知为什么没有那么卡,那么慢了,附件里是我用瑞星查杀到的病毒,麻烦也看看吧
附件:
9214352007812112913.rar
wenoooppp - 2007-8-12 11:43:00
另外我按上面newcenturymoon同志的方法做了一次扫描报告,有空麻烦也看看吧
附件:
9214352007812113301.rar
超级游戏迷 - 2007-8-12 15:59:00
| 引用: |
【wenoooppp的贴子】另外我按上面newcenturymoon同志的方法做了一次扫描报告,有空麻烦也看看吧 ……………… |
不要用附件。
直接手工把日志分段,在这个主题帖下用“回复”一段段完整传上来,不要修改。
PS:这里没有瑞星企业的员工,版主也不例外,因此请不要再用“你们”,很敌意的说哦!
wenoooppp - 2007-8-12 17:29:00
这是我扫描到的病毒(一):
病毒名称处理结果发现日期扫描方式路径文件病毒来源
Worm.Viking.is清除成功2007-01-31 01:45手动扫描Logo1_.exe>>C:\WINDOWS\Logo1_.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:49手动扫描C:\WINDOWS\uninstallrundl132.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:49手动扫描C:\WINDOWSLogo1_.exe本机
Worm.Win32.Viking.viv重新启动计算机后删除文件2007-01-31 01:49手动扫描C:\WINDOWSRichDll.dll本机
Trojan.PSW.Win32.QQPass.qno重新启动计算机后删除文件2007-01-31 01:50手动扫描C:\Program Files\Internet Explorer\PLUGINSSysWin64.Sys本机
Trojan.PSW.Win32.QQPass.qno删除成功2007-01-31 01:50手动扫描C:\Program Files\Internet Explorer\PLUGINSSysWin64.Tao本机
Trojan.PSW.Win32.QQPass.qno删除成功2007-01-31 01:50手动扫描c:\program files\internet explorer\pluginssyswin64.jmp>>upx_c本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\极品五笔unins000.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\WinRARWinRAR.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Winampwinamp.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\WinampUninstWA.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\ACDSeeACDSee.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\ACDSeeACDSee32.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\ACDSeePELite.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\ACDSeeuninstall.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\BitComet\codecCodecCheck.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\BitCometBitComet.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\BitCometXCrashReport.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\BitCometuninst.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\IMEToolimetool.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Real\RealPlayerrealplay.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\金山快译 2005FastAIT.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusLUSETUP.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusDWHWizrd.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusDoScan.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusLDVPREG.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusLuaWrap.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusSavRoam.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusVPDN_LU.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusnlnhook.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec AntiVirusVPC32.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateLUInit.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateLUALL.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateLuComServer_2_6.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateLSETUP.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateNDETECT.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateALUNOTIFY.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateAUPDATE.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Symantec\LiveUpdateSymantecRootInstaller.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Ringz Studio\Storm Codec\UpdateUpdate.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Ringz Studio\Storm CodecStormSet.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Ringz Studio\Storm Codecuninst.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:50手动扫描C:\Program Files\Womsetup.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldKB888111xpsp2.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldAlcmtr.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldAlcWzrd.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldCPLUtl64.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldMicCal.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldRTHDCPL.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldRTLCPL.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldRtlUpd64.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldRtlUpd.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldSkyTel.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldSoundMan.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Realtek\InstallShieldChCfg.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Microsoft Office\OFFICE11EXCEL.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Microsoft Office\OFFICE11WINWORD.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero\UninstallUNNero.exe本机
大庆女人 - 2007-8-12 17:38:00
局域网内有威金病毒,这是一个感染文件的毒,主要通过枚举局域网资源传播。在你的机器上报是Worm.Win32.Viking.viv和Worm.Viking.is。它会下载“QQ通行证”等木马用来窃取用户的隐私,在你的机器上出现的Trojan.PSW.QQPass.qno就是该木马的变种。
威金病毒,需要在网管的机器上装瑞星杀毒软件网络版进行全网查杀才能清除干净。
wenoooppp - 2007-8-12 17:53:00
谢谢,网管???不明白,我现在怎么做?
wenoooppp - 2007-8-12 17:54:00
我扫描到的病毒二:
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Neronero.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\NeroNeroCmd.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\NeroNRESTORE.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero ToolkitCDSpeed.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero ToolkitDriveSpeed.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero ToolkitInfoTool.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero Toolkithwinfo.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero Wave EditorDXEnum.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero Wave EditorWaveEdit.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero SoundTraxSoundTrax.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\WMPBurnWMPBurn.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero BackItUpBackItUp.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero BackItUpNBJ.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\Nero BackItUpNBR.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Program Files\Ahead\CoverDesignerCoverDes.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\VGA\Intel_845Ghkcmd.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\VGA\Intel_845Gigfxcfg.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\VGA\Intel_845Gigfxdiag.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\VGA\Intel_845Gigfxext.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\VGA\Intel_845Gigfxtray.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\VGA\Intel_845Gigfxzoom.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\Sound\SiS7012Uninst2k.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\Sound\CMI8738CMUNINST.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\Sound\CMI8738MIXER.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\modem\ESS_ES2838_2839essspk.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\modem\ESS_ES2838_2839remvess.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\modem\Conexant_HSFHXFSetup.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\modem\Conexant_HCFHXFsetup.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\LAN\IntelPROUnstl.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:51手动扫描C:\Drivers\Camera\301PSETUP.EXE本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1AddEmotion.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1AddPanel.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1AddToNetDisk.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1InsertOnlineState.htm本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1QQ.exe本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\DatTUserInfoQQ.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\DatTempSessionUserInfo.htm本机
Trojan.DL.IEFrame.bg删除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\Datwait.html本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\Datwireless_giftbox.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\DatRTXIndex.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\GroupLive\CacheFileLogeAd.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\GroupLive\CacheFileLogeAd_OK.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\GroupLive\CacheFileProjectLoading.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\GroupLive\CacheFile\index_loge_normalindex.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\QQLive\QLiveQLogeAd.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1\QQLive\QLiveQLogeAd_mini.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1SendMMS.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd1custom_help.htm本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd2AUTOUPEX.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd2NODETOOL.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd2TdxW.exe本机
大庆女人 - 2007-8-12 17:56:00
网管就是你们局域网的管理员的机器.
网络管理员登陆瑞星网站 订购瑞星杀毒软件网络版,安装好,然后用它进行全网查杀,应该可以杀净的.不要去下什么专杀工具,局域网有威金,什么专杀都没用.
wenoooppp - 2007-8-12 17:56:00
我扫描到的病毒三:
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd3\QQGAME\Updateupdate.exe本机
Worm.Win32.Viking.d清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd3\QQGAMEAccel.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd3\QQGAMEQQGame.exe本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd3\QQGAMEQQGameDl.exe本机
Worm.Win32.Viking.d清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd3\QQGAMEUninstall.EXE本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideOver0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideCaOK0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideConn0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideDiff0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideSnIn0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideTips0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\RegGuideExpr0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDList0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDMenu0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDTBar0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDInfo0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDList0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDMenu0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDTBar0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDInfo0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDList0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDMenu0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDTBar0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDInfo0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDList1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDMenu1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDTBar1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\Update\ScanBDInfo1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideOver0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideCaOK0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideConn0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideDiff0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideSnIn0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideTips0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\RegGuideExpr0936.HTM本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDList0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDMenu0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDTBar0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDInfo0936.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDList0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDMenu0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDTBar0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDInfo0950.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDList0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDMenu0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDTBar0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDInfo0932.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDList1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDMenu1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDTBar1252.htm本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\Rav\ScanBDInfo1252.htm本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:52手动扫描D:\Recycled\Dd4\Rising\RavSetup.exe本机
Worm.Win32.Delf.ysy删除成功2007-01-31 01:52手动扫描d:\recycleddd5.exe>>upack0.34本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:54手动扫描D:\软件备份\CorelDraw12_简体中文版\ENGLISHREADME.HTML本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:54手动扫描D:\软件备份\CorelDraw12_简体中文版SETUP.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:54手动扫描D:\软件备份\Photoshop 7.01简体中文版Setup.exe本机
Trojan.DL.IEFrame.bg清除成功2007-01-31 01:54手动扫描D:\软件备份\qq\qq游戏说明_Readme.html本机
Worm.Win32.Viking.d清除成功2007-01-31 01:54手动扫描D:\软件备份\qq\qq游戏QQGame2007Beta1_setup_skycn.EXE本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:54手动扫描E:\RecycledDe1.exe本机
Worm.Win32.Delf.ysy删除成功2007-01-31 01:54手动扫描e:\recycledde1.exe>>upack0.34本机
Trojan.PSW.Win32.QQPass.qno删除成功2007-01-31 01:54手动扫描e:\recycledde2.exe>>upx_c本机
Worm.Win32.Viking.viv清除成功2007-01-31 01:54手动扫描F:\股票招行new_zszq.exe本机
大庆女人 - 2007-8-12 17:57:00
此外Trojan.DL.IEFrame.bg 说明局域网里还有ARP欺骗病毒
网络版杀毒软件可解决
超级游戏迷 - 2007-8-12 17:59:00
建议楼主别再发那些垃圾杀毒日志了,赶快把SRENG日志发上来。
獨乱 - 2007-8-12 18:00:00
晕死 你的电脑这么多病毒 好可怕!!!
wenoooppp - 2007-8-12 18:00:00
不是呀,我是个人家庭电脑用户呀,用的是电信网络服务呀,什么局域网?
大庆女人 - 2007-8-12 18:13:00
Worm.Win32.Viking.d是威金病毒
Worm.Win32.Delf.ysy是它下载的蠕虫
还是尽快在你们局域网的管理员机器上装那个瑞星网络版.
至于网络管理员是谁,问你们企业的人吧.他们大概会告诉你的.
诚恳地说明意见,相信他会同意你.
大庆女人 - 2007-8-12 18:14:00
个人用户的话,下载威金专杀.
wenoooppp - 2007-8-12 18:31:00
[CODE]
2007-01-31,10:59:19
System Repair Engineer 2.5.16.900
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
进程特权扫描
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<vptray><C:\PROGRA~1\SYMANT~1\VPTray.exe> [(Verified)Symantec Corporation]
<NeroFilterCheck><C:\WINDOWS\system32\NeroCheck.exe> [Ahead Software Gmbh]
<NvCplDaemon><; RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<runeip><"C:\Program Files\Rising\AntiSpyware\runiep.exe" /startup> [Beijing Rising Technology Co., Ltd.]
<RavTask><"D:\软件安装文件夹\杀毒软件\Rising\Rav\RavTask.exe" -system> [Beijing Rising Technology Co., Ltd.]
<NvMediaCenter><; RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit> [(Verified)Microsoft Windows Publisher]
<Alcmtr><; ALCMTR.EXE> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<ccApp><; "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"> [(Verified)Symantec Corporation]
<IMJPMIG8.1><; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [(Verified)Microsoft Windows Publisher]
<MSPY2002><; C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC> [(Verified)Microsoft Windows Publisher]
<nwiz><; nwiz.exe /install> []
<PHIME2002A><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [(Verified)Microsoft Windows Publisher]
<PHIME2002ASync><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [(Verified)Microsoft Windows Publisher]
<RTHDCPL><; RTHDCPL.EXE> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
<KKDelay><C:\Program Files\Rising\AntiSpyware\RunOnce.exe> [Beijing Rising Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{40117B96-998D-4D80-8F89-5E9DBD9F3460}><C:\Program Files\Internet Explorer\PLUGINS\SysWin64.Sys> [N/A]
<{AC2DC2EF-5165-40A3-8CDF-41DCA1B0901A}><C:\WINDOWS\system32\shlhook.dll> [Beijing Rising Technology Co., Ltd.]
<{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll> [Beijing Rising Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]
<WinlogonNotify: NavLogon><C:\WINDOWS\system32\NavLogon.dll> [(Verified)Symantec Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
<Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
<NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
<Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser> [(Verified)Microsoft Windows XP Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [N/A]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\蓝天白云.SCR> [Microsoft]
大庆女人 - 2007-8-12 18:33:00
日志不全或未发完...
日志全发,尤其"正在运行的进程"千万不能丢了,即使它很长.
wenoooppp - 2007-8-12 18:34:00
==================================
启动文件夹
N/A
==================================
服务
[Symantec Event Manager / ccEvtMgr][Running/Auto Start]
<"C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"><Symantec Corporation>
[Symantec Password Validation / ccPwdSvc][Stopped/Manual Start]
<"C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"><Symantec Corporation>
[Symantec Settings Manager / ccSetMgr][Running/Auto Start]
<"C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"><Symantec Corporation>
[Symantec AntiVirus Definition Watcher / DefWatch][Running/Auto Start]
<"C:\Program Files\Symantec AntiVirus\DefWatch.exe"><Symantec Corporation>
[Human Interface Device Access / HidServ][Stopped/Disabled]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[LightScribeService Direct Disc Labeling Service / LightScribeService][Running/Auto Start]
<"C:\Program Files\Common Files\LightScribe\LSSrvc.exe"><Hewlett-Packard Company>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
<C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[Rising Process Communication Center / RsCCenter][Running/Auto Start]
<"D:\软件安装文件夹\杀毒软件\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[SavRoam / SavRoam][Stopped/Manual Start]
<"C:\Program Files\Symantec AntiVirus\SavRoam.exe"><symantec>
[Symantec Network Drivers Service / SNDSrvc][Stopped/Manual Start]
<"C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe"><Symantec Corporation>
[Symantec SPBBCSvc / SPBBCSvc][Stopped/Manual Start]
<"C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe"><Symantec Corporation>
[Symantec AntiVirus / Symantec AntiVirus][Running/Auto Start]
<"C:\Program Files\Symantec AntiVirus\Rtvscan.exe"><Symantec Corporation>
==================================
驱动程序
[BIOS / BIOS][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\BIOS.sys><BIOSTAR Group>
[Microsoft UAA Bus Driver for High Definition Audio / HDAudBus][Running/Manual Start]
<system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
<system32\drivers\RtkHDAud.sys><Realtek Semiconductor Corp.>
[NAVENG / NAVENG][Running/Manual Start]
<\??\C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20051004.007\naveng.sys><Symantec Corporation>
[NAVEX15 / NAVEX15][Running/Manual Start]
<\??\C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20051004.007\navex15.sys><Symantec Corporation>
[nv / nv][Running/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[nvata / nvata][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\nvata.sys><NVIDIA Corporation>
[NVIDIA nForce Networking Controller Driver / NVENETFD][Running/Manual Start]
<system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
[NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start]
<system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[RsAntiSpyware / RsAntiSpyware][Running/Boot Start]
<\SystemRoot\system32\drivers\RsBoot.sys><Beijing Rising Technology Co., Ltd.>
[RsNTGDI / RsNTGDI][Running/Boot Start]
<\SystemRoot\system32\Drivers\RsNTGdi.sys><Beijing Rising Technology Co., Ltd.>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
<system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[SAVRT / SAVRT][Running/System Start]
<\??\C:\Program Files\Symantec AntiVirus\savrt.sys><Symantec Corporation>
[SAVRTPEL / SAVRTPEL][Running/System Start]
<\??\C:\Program Files\Symantec AntiVirus\Savrtpel.sys><Symantec Corporation>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><N/A>
[SPBBCDrv / SPBBCDrv][Stopped/Manual Start]
<\??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys><Symantec Corporation>
[SymEvent / SymEvent][Running/Manual Start]
<\??\C:\Program Files\Symantec\SYMEVENT.SYS><Symantec Corporation>
[SYMREDRV / SYMREDRV][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\SYMREDRV.SYS><Symantec Corporation>
[SYMTDI / SYMTDI][Running/System Start]
<\SystemRoot\System32\Drivers\SYMTDI.SYS><Symantec Corporation>
==================================
浏览器加载项
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9d.ocx, Adobe Systems, Inc.>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Microsoft Web 浏览器]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9d.ocx, Adobe Systems, Inc.>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
wenoooppp - 2007-8-12 18:35:00
能问一下日志有什么用吗?
wenoooppp - 2007-8-12 18:36:00
正在运行的进程
[PID: 616 / SYSTEM][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 672 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 712 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\NavLogon.dll] [Symantec Corporation, 10.0.1.1000]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 756 / SYSTEM][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 768 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 920 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 968 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1092 / SYSTEM][D:\软件安装文件夹\杀毒软件\Rising\Rav\CCenter.exe] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
[PID: 1108 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1176 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1316 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1400 / SYSTEM][C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe] [Symantec Corporation, 103.5.4.3]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Common Files\Symantec Shared\ccL35.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll] [Symantec Corporation, 103.5.4.3]
[PID: 1468 / SYSTEM][C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe] [Symantec Corporation, 103.5.4.3]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Common Files\Symantec Shared\ccL35.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] [Symantec Corporation, 103.5.4.3]
[C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\BB.DLL] [Symantec Corporation, 1,5,1,3]
[C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\SPBBCEVT.DLL] [Symantec Corporation, 1,5,1,3]
[C:\Program Files\Common Files\Symantec Shared\ccSet.dll] [Symantec Corporation, 103.5.4.3]
[C:\PROGRA~1\COMMON~1\SYMANT~1\CCSETEVT.DLL] [Symantec Corporation, 103.5.4.3]
[PID: 1572 / User][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.10.9131]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.9131]
[C:\WINDOWS\system32\nvshell.dll] [, ]
[D:\软件安装文件夹\杀毒软件\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\WINDOWS\system32\shlhook.dll] [Beijing Rising Technology Co., Ltd., 4.0.0.9]
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\Program Files\Microsoft Office\OFFICE11\msohev.dll] [Microsoft Corporation, 11.0.5510]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\Common Files\Symantec Shared\SSC\vpshell2.dll] [Symantec Corporation, 10.0.1.1000]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 1712 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[PID: 1876 / User][C:\PROGRA~1\SYMANT~1\VPTray.exe] [Symantec Corporation, 10.0.1.1000]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Symantec AntiVirus\SAVRT32.DLL] [Symantec Corporation, 9.5.0.44]
[C:\Program Files\Symantec AntiVirus\Cliscan.dll] [Symantec Corporation, 10.0.1.1000]
[C:\PROGRA~1\SYMANT~1\NAVNTUTL.DLL] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Symantec AntiVirus\Cliproxy.dll] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 1908 / User][D:\软件安装文件夹\杀毒软件\Rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[D:\软件安装文件夹\杀毒软件\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[D:\软件安装文件夹\杀毒软件\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[D:\软件安装文件夹\杀毒软件\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[D:\软件安装文件夹\杀毒软件\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 1916 / User][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 1452 / User][C:\WINDOWS\system32\RUNDLL32.EXE] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\NvMCTray.DLL] [NVIDIA Corporation, 6.14.10.9131]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.9131]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 1244 / SYSTEM][C:\Program Files\Symantec AntiVirus\DefWatch.exe] [Symantec Corporation, 10.0.1.1000]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 1052 / SYSTEM][C:\Program Files\Common Files\LightScribe\LSSrvc.exe] [Hewlett-Packard Company, 1.4.39.1]
[C:\Program Files\Common Files\LightScribe\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Common Files\LightScribe\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[PID: 1568 / SYSTEM][C:\WINDOWS\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.10.9131]
[PID: 328 / SYSTEM][C:\Program Files\Symantec AntiVirus\Rtvscan.exe] [Symantec Corporation, 10.0.1.1000]
wenoooppp - 2007-8-12 18:38:00
[C:\WINDOWS\system32\CBA.DLL] [LANDesk Software Ltd., 6.12.0.137 E]
[C:\WINDOWS\system32\MsgSys.dll] [LANDesk Software Ltd., 6.12.0.137 E]
[C:\WINDOWS\system32\NTS.dll] [LANDesk Software Ltd., 6.12.0.137 E]
[C:\WINDOWS\system32\PDS.DLL] [LANDesk Software Ltd., 6.12.0.137 E]
[C:\Program Files\Symantec AntiVirus\NAVLU.dll] [Symantec Corporation, 10.0.1.1000]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Symantec AntiVirus\NAVNTUTL.DLL] [Symantec Corporation, 10.0.1.1000]
[c:\program files\common files\symantec shared\ssc\ScsComms.dll] [Symantec Corporation, 10.0.1.1000]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Symantec AntiVirus\I2ldvp3.dll] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\ccL35.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\ccDec.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\decsdk.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2ID.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2Zip.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2SS.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2GZIP.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2CAB.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2LHA.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2ARJ.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2TNEF.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2LZ.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2AMG.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2RAR.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2TAR.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2RTF.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2Text.dll] [Symantec Corporation, 3.02.12.35]
[C:\Program Files\Common Files\Symantec Shared\ccScan.dll] [Symantec Corporation, 103.5.4.3]
[C:\Program Files\Common Files\Symantec Shared\ecmldr32.DLL] [Symantec Corporation, 1.4.0.11]
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20051004.007\ccEraser.dll] [Symantec Corporation, 104.0.0.78]
[C:\Program Files\Symantec AntiVirus\DefUtDCD.dll] [Symantec Corporation, 3.1.13a.0]
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20051004.007\ecmsvr32.dll] [Symantec Corporation, 51.2.0.12]
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20051004.007\NAVEX32a.DLL] [Symantec Corporation, 20051.2.0.18]
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20051004.007\NAVENG32.DLL] [Symantec Corporation, 20051.2.0.18]
[C:\Program Files\Symantec AntiVirus\NAVAP32.DLL] [Symantec Corporation, 9.5.0.44]
[C:\Program Files\Symantec AntiVirus\SAVRT32.DLL] [Symantec Corporation, 9.5.0.44]
[C:\Program Files\Symantec AntiVirus\IMail.dll] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Symantec AntiVirus\NotesExt.dll] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Symantec AntiVirus\vpmsece3.dll] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Symantec AntiVirus\SymProtectStorage.dll] [Symantec Corporation, 10.0.1.1000]
[C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCEvt.dll] [Symantec Corporation, 1,5,1,3]
[PID: 532 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3952 / User][C:\Program Files\Rising\AntiSpyware\runiep.exe] [Beijing Rising Technology Co., Ltd., 4.0.0.18]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 2344 / User][D:\软件安装文件夹\qq\QQ.exe] [TENCENT, 7,0,365,1701]
大庆女人 - 2007-8-12 18:39:00
日志不全.
我都说把"正在运行的进程"这项也发完.
日志上显示出你电脑上有很多文件,高手能识别哪些是正常文件,哪些是该删掉的病毒文件.
还可以下载http://www.rising.com.cn/zsgj/VikingKiller.scr清除威金。
wenoooppp - 2007-8-12 18:39:00
[D:\软件安装文件夹\qq\CoralAssist.dll] [Coral Team, 5.0.0 build 20060829]
[D:\软件安装文件夹\qq\CoralQQ.dll] [Coral Team, 5.0.2 Build 20070716]
[D:\软件安装文件夹\qq\kql.dll] [Coral Team, 5.0.2 build 20070703]
[D:\软件安装文件夹\qq\MSVCP80.dll] [Microsoft Corporation, 8.00.50727.42]
[D:\软件安装文件夹\qq\MSVCR80.dll] [Microsoft Corporation, 8.00.50727.42]
[D:\软件安装文件夹\qq\mfc42.dll] [Microsoft Corporation, 6.00.8665.0]
[D:\软件安装文件夹\qq\ipsearcher.dll] [, 1.0.0.5]
[D:\软件安装文件夹\qq\QQBaseClassInDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQHelperDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\BasicCtrlDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\NoDisturbFilter.cqx] [Coral Team, 1.0]
[D:\软件安装文件夹\qq\ConfigHotkey.cqx] [Coral Team, 1.0]
[D:\软件安装文件夹\qq\RICHED32.DLL] [Microsoft Corporation, 5.00.2134.1]
[D:\软件安装文件夹\qq\RICHED20.dll] [Microsoft Corporation, 5.31.23.1218]
[D:\软件安装文件夹\qq\QQAPI.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\TIMProxy.dll] [tencent, 0, 3, 2, 4]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[D:\软件安装文件夹\qq\AutoReconnect.cqx] [Coral Team, 1.0.0]
[D:\软件安装文件夹\qq\LoginCtrl.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\LoginCtrlRes.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQRes.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQMainFrame.dll] [N/A, ]
[D:\软件安装文件夹\qq\gdiplus.dll] [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
[D:\软件安装文件夹\qq\CQQApplication.dll] [N/A, ]
[D:\软件安装文件夹\qq\FlashAvatarDll.dll] [, 1, 4, 0, 1]
[D:\软件安装文件夹\qq\NewSkin.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\HostingMgr.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\CameraDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\MailSummary.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\CoralHotkey.cqx] [Coral Team, 1.0]
[D:\软件安装文件夹\qq\QQKnowledgeSearch.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQAllInOne.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\SCCore.dll] [TENCENT, 1, 6, 0, 2]
[D:\软件安装文件夹\qq\QQSpace.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\vbscript.dll] [Microsoft Corporation, 5.6.0.7426]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[D:\软件安装文件夹\qq\QQGroupMng.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\UserDefinedHead.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQPlugin.dll] [N/A, ]
[D:\软件安装文件夹\qq\QQConfigPlugin.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQAvatar.dll] [N/A, ]
[D:\软件安装文件夹\qq\QQCustomFace.dll] [N/A, ]
[D:\软件安装文件夹\qq\LongConnection.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QRingMng.dll] [N/A, ]
[D:\软件安装文件夹\qq\PhoneAPI.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\DialerAllinOne.dll] [tencent, 1, 4, 0, 0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
wenoooppp - 2007-8-12 18:40:00
[D:\软件安装文件夹\qq\QQPet.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQSysMsgMng.dll] [N/A, ]
[D:\软件安装文件夹\qq\BQQApplication.dll] [N/A, ]
[D:\软件安装文件夹\qq\PersonalDesktop.dll] [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
[D:\软件安装文件夹\qq\CommercesMng.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQAddr.dll] [深圳市腾讯计算机系统有限公司, 5, 0, 101, 320]
[D:\软件安装文件夹\qq\QQSceneMng.dll] [N/A, ]
[D:\软件安装文件夹\qq\AddrSearch.dll] [腾讯科技(深圳)有限公司, 2, 1, 9, 95]
[C:\WINDOWS\system32\msadp32.acm] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[D:\软件安装文件夹\qq\ImageOle.dll] [TENCENT, 7,0,365,1701]
[PID: 244 / User][D:\软件安装文件夹\qq\TIMPlatform.exe] [TENCENT, 7,0,365,1701]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[D:\软件安装文件夹\qq\TIMProxy.dll] [tencent, 0, 3, 2, 4]
[PID: 2940 / User][D:\软件安装文件夹\qq\QQ.exe] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\CoralAssist.dll] [Coral Team, 5.0.0 build 20060829]
[D:\软件安装文件夹\qq\CoralQQ.dll] [Coral Team, 5.0.2 Build 20070716]
[D:\软件安装文件夹\qq\kql.dll] [Coral Team, 5.0.2 build 20070703]
[D:\软件安装文件夹\qq\MSVCP80.dll] [Microsoft Corporation, 8.00.50727.42]
[D:\软件安装文件夹\qq\MSVCR80.dll] [Microsoft Corporation, 8.00.50727.42]
[D:\软件安装文件夹\qq\mfc42.dll] [Microsoft Corporation, 6.00.8665.0]
[D:\软件安装文件夹\qq\ipsearcher.dll] [, 1.0.0.5]
[D:\软件安装文件夹\qq\QQBaseClassInDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQHelperDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\BasicCtrlDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\NoDisturbFilter.cqx] [Coral Team, 1.0]
[D:\软件安装文件夹\qq\ConfigHotkey.cqx] [Coral Team, 1.0]
[D:\软件安装文件夹\qq\RICHED32.DLL] [Microsoft Corporation, 5.00.2134.1]
[D:\软件安装文件夹\qq\RICHED20.dll] [Microsoft Corporation, 5.31.23.1218]
[D:\软件安装文件夹\qq\QQAPI.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\TIMProxy.dll] [tencent, 0, 3, 2, 4]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[D:\软件安装文件夹\qq\AutoReconnect.cqx] [Coral Team, 1.0.0]
[D:\软件安装文件夹\qq\LoginCtrl.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\LoginCtrlRes.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQRes.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQMainFrame.dll] [N/A, ]
[D:\软件安装文件夹\qq\gdiplus.dll] [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
[D:\软件安装文件夹\qq\CQQApplication.dll] [N/A, ]
[D:\软件安装文件夹\qq\FlashAvatarDll.dll] [, 1, 4, 0, 1]
[D:\软件安装文件夹\qq\NewSkin.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\HostingMgr.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\CameraDll.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\MailSummary.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\CoralHotkey.cqx] [Coral Team, 1.0]
[D:\软件安装文件夹\qq\QQKnowledgeSearch.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQAllInOne.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\SCCore.dll] [TENCENT, 1, 6, 0, 2]
[D:\软件安装文件夹\qq\QQSpace.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\vbscript.dll] [Microsoft Corporation, 5.6.0.7426]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[D:\软件安装文件夹\qq\QQGroupMng.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\UserDefinedHead.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQPlugin.dll] [N/A, ]
[D:\软件安装文件夹\qq\QQConfigPlugin.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQAvatar.dll] [N/A, ]
[D:\软件安装文件夹\qq\QQCustomFace.dll] [N/A, ]
[D:\软件安装文件夹\qq\QRingMng.dll] [N/A, ]
[D:\软件安装文件夹\qq\LongConnection.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\PhoneAPI.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\DialerAllinOne.dll] [tencent, 1, 4, 0, 0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[D:\软件安装文件夹\qq\QQPet.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQSysMsgMng.dll] [N/A, ]
[D:\软件安装文件夹\qq\BQQApplication.dll] [N/A, ]
[D:\软件安装文件夹\qq\PersonalDesktop.dll] [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
[D:\软件安装文件夹\qq\CommercesMng.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQAddr.dll] [深圳市腾讯计算机系统有限公司, 5, 0, 101, 320]
[D:\软件安装文件夹\qq\QQSceneMng.dll] [N/A, ]
[D:\软件安装文件夹\qq\QQOneClick.dll] [TENCENT, 7,0,365,1701]
[C:\WINDOWS\system32\msadp32.acm] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[D:\软件安装文件夹\qq\ImageOle.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQLiveQMng.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\GroupConnection.dll] [TENCENT, 7,0,365,1701]
[C:\WINDOWS\system32\JPWB.IME] [常诚研制, 4.00.950]
[D:\软件安装文件夹\qq\QQZip.dll] [TENCENT, 7,0,365,1701]
[D:\软件安装文件夹\qq\QQMagicFace.dll] [TENCENT, 7,0,365,1701]
[PID: 516 / User][D:\软件备份\杀毒软件\报告\SREngPS.EXE] [Smallfrogs Studio, 2.5.16.900]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[D:\软件备份\杀毒软件\报告\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
[D:\]
[autorun]
open=Hide.exe
[E:\]
[AutoRun]
open=AutoRun.exe
shellexecute=AutoRun.exe
shell\打开(&O)\command=AutoRun.exe
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
进程特权扫描
特殊特权被允许: SeDebugPrivilege [PID = 3952, C:\PROGRAM FILES\RISING\ANTISPYWARE\RUNIEP.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3952, C:\PROGRAM FILES\RISING\ANTISPYWARE\RUNIEP.EXE]
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================
[/CODE]
大庆女人 - 2007-8-12 18:44:00
诺顿没卸载.
请把诺顿先卸载掉再说...
wenoooppp - 2007-8-12 18:57:00
诺顿?怎么卸载掉?到控制面版那删吗
© 2000 - 2026 Rising Corp. Ltd.