12   2  /  2  页   跳转

【求助】请问这是什么病毒

C:\WINDOWS\RUNDLL32.EXE
这个路径上的RUNDLL32.EXE好像不太正常~~~
gototop
 

影子巡警你好
有什么好办法吗?不是说有事找警察吗?
谢谢
gototop
 

用Autoruns保存一个日志发上来
日志保存方法:选择File->Save菜单项
保存日志时注意选择Options->Hide Microsoft Entries菜单项(设置了这项后点工具栏的刷新按钮)

工具的下载、使用参考http://forum.ikaka.com/topic.asp?board=28&artid=7318038
gototop
 

请至少装一个能杀毒的杀毒软件,这是安全意识问题
连路径也不知道,你想让我们怎么帮你解决?
gototop
 

【全球免费在线查毒链接】推荐
http://forum.ikaka.com/topic.asp?board=28&artid=6788853

用这个链接里的免费查毒查一下~~~
如果查出毒的话,是可以显示病毒路径的(试下看看吧~~~)
日志里只看出那个Rundll32.exe 好像 有点问题 ,,
gototop
 

先谢谢您
偶去查一下
gototop
 

麻烦各位看下 谢谢ProcessPIDCPUDescriptionCompany Name
CCENTER.EXE0xFFFE451FCCenterrising
DDHELP.EXE0xFFF98433Microsoft DirectX HelperMicrosoft Corporation
EXPLORER.EXE0xFFFECB8F0.20Windows ExplorerMicrosoft Corporation
FILMSG.EXE0xFFFB3F1B费尔消息服务费尔安全实验室
Idle0x055.83System Idle Process
IEXPLORE.EXE0xFFFAA8EF22.33Microsoft Internet ExplorerMicrosoft Corporation
IEXPLORE.EXE0xFFFA623B9.89Microsoft Internet ExplorerMicrosoft Corporation
INTERNAT.EXE0xFFFCD617Keyboard Language Indicator AppletMicrosoft Corporation
KERNEL32.DLL0xFF0F5E271.27Win32 Kernel core componentMicrosoft Corporation
mmtask.tsk0xFFFEEC8FMultimedia background task support moduleMicrosoft Corporation
MPREXE.EXE0xFFFFE167WIN32 Network Interface Service ProcessMicrosoft Corporation
MSGSRV32.EXE0xFFFF9337Windows 32-bit VxD Message ServerMicrosoft Corporation
PROCEXP.EXE0xFFFA76EB6.07Sysinternals Process ExplorerSysinternals
PSTORES.EXE0xFFF9E04BProtected storage serverMicrosoft Corporation
RAVMON.EXE0xFFFE2F231.86RavMon Rising realtime monitor Beijing Rising Technology Co., Ltd.
RAVMOND.EXE0xFFFE55C72.45RavMonBeijing Rising Technology Co., Ltd.
RAVTIMER.EXE0xFFFC422F0.10RavTimerBeijing Rising Technology Co., Ltd.
REALSCHED.EXE0xFFFCF703RealNetworks SchedulerRealNetworks, Inc.
RPCSS.EXE0xFFFD75C7Distributed COM ServicesMicrosoft Corporation
SYSTRAY.EXE0xFFFCA40FSystem Tray AppletMicrosoft Corporation
WMIEXE.EXE0xFFFBD093WMI service exe housingMicrosoft Corporation

Process: Procexp Pid: FFFFFFFE

TypeName

gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT