瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » 【求助】待解决 给你HJ日志
日西瓜霜 - 2007-9-15 12:31:00
Logfile of HijackThis v1.99.1
Scan saved at 12:12:06, on 2007-9-15
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\AntiSpyware\runiep.exe
D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
E:\AVGAntiSpyware-v7.5.1.43\AVGAntiSpyware-v7.5.1.43\AVG Anti-Spyware\avgas.exe
D:\Program Files\360safe\safemon\360Tray.exe
C:\WINDOWS\system32\ctfmon.exe
E:\AVGAntiSpyware-v7.5.1.43\AVGAntiSpyware-v7.5.1.43\AVG Anti-Spyware\guard.exe
d:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\Program Files\Common Files\System\smss.exe
C:\Program Files\Common Files\CTHELPER.EXE
C:\Program Files\Common Files\Microsoft\khalshared\nvsvc64.exe
C:\Program Files\Common Files\Microsoft\khalshared\nvsvc64.exe
C:\Program Files\Common Files\Microsoft\khalshared\rundll128.exe
D:\Program Files\360safe\360safe.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft\CDDRV\webtc.exe
E:\ha_hijackthis_1991\HijackThis.exe

F2 - REG:system.ini: Shell=Explorer.exe C:\PROGRA~1\COMMON~1\Microsoft\CTHELPER.EXE
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\Program Files\BitComet\tools\BitCometBHO_1.1.3.28.dll
O2 - BHO: NavigatMon Class - {B69F34DD-F0F9-42DC-9EDD-957187DA688D} - D:\Program Files\360safe\safemon\safemon.dll
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O4 - HKLM\..\Run: [runeip] "C:\Program Files\Rising\AntiSpyware\runiep.exe" /startup
O4 - HKLM\..\Run: [kav] "d:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "E:\AVGAntiSpyware-v7.5.1.43\AVGAntiSpyware-v7.5.1.43\AVG Anti-Spyware\avgas.exe" /minimized
O4 - HKLM\..\Run: [360Safetray] D:\Program Files\360safe\safemon\360Tray.exe /start
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &使用BitComet下载 - res://D:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &使用BitComet下载全部链接 - res://D:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: &使用BitComet下载本页视频 - res://D:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\getallurl.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - Extra context menu item: 用比特精灵下载(&B) - D:\Program Files\BitSpirit\bsurl.htm
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - E:\浩方对战平台\GameClient.exe
O9 - Extra button: Web反病毒保护 - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - d:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (EditCtrl Class) - https://img.alipay.com/download/1101/aliedit.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{28BBF87F-7A72-47F9-9C41-CA0184D02F60}: NameServer = 202.103.225.68,202.103.224.68
O17 - HKLM\System\CS1\Services\Tcpip\..\{28BBF87F-7A72-47F9-9C41-CA0184D02F60}: NameServer = 202.103.225.68,202.103.224.68
O17 - HKLM\System\CS2\Services\Tcpip\..\{28BBF87F-7A72-47F9-9C41-CA0184D02F60}: NameServer = 202.103.225.68,202.103.224.68
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - E:\AVGAntiSpyware-v7.5.1.43\AVGAntiSpyware-v7.5.1.43\AVG Anti-Spyware\guard.exe
O23 - Service: 卡巴斯基反病毒6.0 (AVP) - Unknown owner - d:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: Intel(R) Matrix Storage S Monitor - Unknown owner - C:\Program Files\Common Files\System\smss.exe

是不是SHELL=。。。里面有问题啊,怎么修复啊

[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
1
查看完整版本: 【求助】待解决 给你HJ日志