瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 求救啊,郁闷,难道正版瑞星也不能解决吗?管理来帮帮我!!!

1234   3  /  4  页   跳转

求救啊,郁闷,难道正版瑞星也不能解决吗?管理来帮帮我!!!

[PID: 1932][C:\WINDOWS\CameraFixer.exe]  <><1, 0, 0, 2>
[PID: 1952][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1968][C:\WINDOWS\system32\RUNDLL32.EXE]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\NVMCTRAY.DLL]  <NVIDIA Corporation><6.14.01.4351>
[PID: 2000][C:\Program Files\Rising\Rav\Ravmon.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 1, 17>
    [C:\Program Files\Rising\Rav\RsGuiLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
    [C:\Program Files\Rising\Rav\BWList.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\PngDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 268][C:\WINDOWS\system32\nvsvc32.exe]  <NVIDIA Corporation><6.14.01.4351>
[PID: 684][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1008][C:\WINDOWS\system32\wdfmgr.exe]  <Microsoft Corporation><5.2.3790.1230 built by: dnsrv(bld4act)>
[PID: 1012][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\xunleibho_v8.dll]  <><4, 5, 1, 33>
    [C:\WINDOWS\SVCHOSTQ.DLL]  <N/A><N/A>
gototop
 

[PID: 2164][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3028][C:\Program Files\Rising\Rav\RavStore.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\RSStore.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\libload.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\VirusLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[PID: 1992][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\xunleibho_v8.dll]  <><4, 5, 1, 33>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
    [C:\WINDOWS\system32\macromed\flash\flash.ocx]  <Macromedia, Inc.><8,5,0,246>
[PID: 2320][C:\Program Files\Rising\Rav\RsAgent.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
[PID: 2700][C:\WINDOWS\msagent\AgentSvr.exe]  <Microsoft Corporation><2.00.0.3422>
[PID: 1832][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\xunleibho_v8.dll]  <><4, 5, 1, 33>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
    [C:\WINDOWS\system32\macromed\flash\flash.ocx]  <Macromedia, Inc.><8,5,0,246>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
gototop
 

[PID: 3932][C:\Program Files\Thunder Network\Thunder\ThunderOrg.exe]  <><5.0.0.72>
    [C:\Program Files\Thunder Network\Thunder\UpdateDownload.dll]  <N/A><N/A>
    [C:\Program Files\Thunder Network\Thunder\download_interface.dll]  <N/A><N/A>
    [C:\Program Files\Thunder Network\Thunder\log4cplus.dll]  <N/A><N/A>
    [C:\Program Files\Thunder Network\Thunder\stlport_vc646.dll]  <STLport Consulting, Inc.><4.6.2003.1031>
    [C:\Program Files\Thunder Network\Thunder\historyinfo_manage.dll]  <N/A><N/A>
[PID: 1844][C:\DOCUME~1\张丹\LOCALS~1\Temp\Rar$EX01.890\SREng.exe]  <Smallfrogs Studio><2.0.12.350>
gototop
 

==================================
文件关联
.TXT  Error. [NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

没了,高手帮忙看看怎么解决?为什么瑞星不能解决他?
gototop
 

可以使用联想的一件修复了
gototop
 

我不想用那个,我也没安.恢复了还要从新做系统,我的原来是DOS版的,没别的方法吗?
gototop
 

[SVCHOSTQ / SVCHOSTQ]
<C:\WINDOWS\SVCHOSTQ.exe><N/A>
这项是灰鸽子。参考http://forum.ikaka.com/topic.asp?board=28&artid=7713905处理。
如果是在HijackThis日志中,项目应该会是:
O23 - NT 服务:SVCHOSTQ- Unknown owner -C:\WINDOWS\SVCHOSTQ.exe
gototop
 

HijackThis日志?  是什么意思?我很菜别生气,
gototop
 

晕倒,因为那个帖子是讲怎样参考HijackThis日志中的灰鸽子项目来处理的,所以为了便于你参考,我才告诉你你这只灰鸽子如果是用HijackThis日志来扫的话会看到什么项目,你照着做就行了,就不用再用HijackThis导出日志了。
gototop
 
1234   3  /  4  页   跳转
页面顶部
Powered by Discuz!NT