终于又有时间来搞了,我的机子现在的问题就是我的D盘在我的电脑面版里面不能双击打开,只能选择右键菜单打开!提示是:Windows无法找到pagefile.pif。打开“文件”类型的文件需要该程序。(注:我的XP组件里没有截图器,只能口述了,不好意思)和一打开文件类型的文件就会弹出一个警告对话框,具体内容太长了,不复述了,大概意思是说Windows找不到所在路径的文件的意思。请问我该怎样解决这两个问题,是不是和文件关联有关,但我用了System Repair Engineer、Regfix和瑞星注册表修复工具等工具修了也无济于事。请各位老大和懂的朋友告之,还有杀毒的问题,现在我还未重装,但我今天开机时在XP下用HJ扫了一下又多了一项06但我那以前的Logo出来对了一下是正常的,一般我的杀毒在我没有尝试双击我的电脑D盘盘符和打开D盘它在重启之后都显示正常,一旦我打开D盘之后,一会就提醒我“提示保护最低级,要检测脚本阻断程序”。可能是D盘还有毒吧!还有就是baohe老大要我找的怀疑病毒文件可能被杀毒清了或者修改了名称找不到了!请各位老大帮帮我先解决了前面的第1、2点问题先吧!再来一份今天的XP下HJ的扫描和一份昨天的98下的HJ扫描,请各位帮忙分析分析,谢谢!
今天的XP下的HJ扫描,如下:
HijackThis_815汉化版扫描日志 V1.99.1
保存于 14:40:15, 日期 2006-5-24
操作系统: Windows XP (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 (6.00.2600.0000)
当前运行的进程:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\csrss.exe
D:\WINDOWS\SYSTEM32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\PavProt.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Panda Software\熊猫卫士钛金版2005\APVXDWIN.EXE
D:\WINDOWS\System32\ctfmon.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\Firewall\PavFires.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\PavFnSvr.exe
D:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\pavsrv51.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\AVENGINE.EXE
D:\Program Files\Panda Software\熊猫卫士钛金版2005\prevsrv.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\PsImSvc.exe
D:\Program Files\Panda Software\熊猫卫士钛金版2005\WebProxy.exe
D:\Program Files\VnetClient1.6\VnetClient.exe
D:\Program Files\Internet Explorer\IEXPLORE.EXE
F:\应用程序\HijachThis V1.99.2汉化版\HijackThis1991zww.exe
O2 - BHO: (no name) - {54EBD53A-9BC1-480B-966A-843A333CA162} - (no file)
O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - (no file)
O4 - 启动项HKLM\\Run: [APVXDWIN] "D:\Program Files\Panda Software\熊猫卫士钛金版2005\APVXDWIN.EXE" /s
O4 - 启动项HKLM\\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] ;"D:\Program Files\Messenger\msmsgs.exe" /background
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O10 - Broken Internet access because of LSP provider 'd:\program files\panda software\
O16 - DPF: {371B29D9-4563-4E7F-B93D-F85ED5682ABC} (CoRaise Player
Object) - http://202.104.212.55/tsplay/tsplay.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F756EE17-4486-48C5-97DF-7151D41ADE90}: NameServer = 202.96.128.86 202.96.128.166
O20 - Winlogon Notify: System Safety Monitor - D:\WINDOWS\SYSTEM32\SSMWinlogonEx.dll
O23 - NT 服务: Panda Firewall Service (PAVFIRES) - Panda Software - D:\Program Files\Panda Software\熊猫卫士钛金版2005\Firewall\PavFires.exe
O23 - NT 服务: Panda Function Service (PAVFNSVR) - Panda Software - D:\Program Files\Panda Software\熊猫卫士钛金版2005\PavFnSvr.exe
O23 - NT 服务: Panda PavProt (PavProt) - Panda Software - D:\Program Files\Panda Software\熊猫卫士钛金版2005\PavProt.exe
O23 - NT 服务: Panda Process Protection Service (PavPrSrv) - Panda Software - D:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
O23 - NT 服务: Panda anti-virus service (PAVSRV) - Panda Software - D:\Program Files\Panda Software\熊猫卫士钛金版2005\pavsrv51.exe
O23 - NT 服务: Panda Preventium+ Service (PREVSRV) - Panda Software - D:\Program Files\Panda Software\熊猫卫士钛金版2005\prevsrv.exe
O23 - NT 服务: Panda IManager Service (PSIMSVC) - Panda Software Internacional - D:\Program Files\Panda Software\熊猫卫士钛金版2005\PsImSvc.exe
-----------------------------------------------------------
昨天的98下的HJ扫描,如下:
HijackThis_815汉化版扫描日志 V1.99.1
保存于 17:41:36, 日期 06-5-23
操作系统: Windows 98 SE (Win9x 4.10.2222A)
浏览器: Internet Explorer v5.00 (5.00.2614.3500)
当前运行的进程:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\PAVFNSVR.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\PSIMSVC.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\FIREWALL\PAVFIRES.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\PAVPROT9.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\PREVSRV.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\APVXDWIN.EXE
C:\WINDOWS\SYSTEM\INTERNAT.EXE
C:\杀毒工具集\SYSTEM SAFETY MONITOR\SYSSAFE.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\WEBPROXY.EXE
C:\WINDOWS\SYSTEM\RNAAPP.EXE
C:\WINDOWS\SYSTEM\TAPISRV.EXE
C:\PROGRAM FILES\HIJACHTHIS V1.99.1.2汉化版\HIJACKTHIS1991ZWW.EXE
O4 - 启动项HKLM\\Run: [APVXDWIN] "C:\Program Files\Panda Software\熊猫卫士钛金版2005\APVXDWIN.EXE" /s
O4 - 启动项HKLM\\Run: [internat.exe] internat.exe
O4 - 启动项HKLM\\Run: [SystemSafetyMonitor] C:\杀毒工具集\SYSTEM SAFETY MONITOR\SYSSAFE.EXE
O4 - 启动项HKLM\\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - 启动项HKLM\\RunServices: [SchedulingAgent] C:\WINDOWS\SYSTEM\mstask.exe
O4 - 启动项HKLM\\RunServices: [PAVFNSVR] "C:\Program Files\Panda Software\熊猫卫士钛金版2005\PavFnSvr.exe"
O4 - 启动项HKLM\\RunServices: [PSIMSVC] "C:\Program Files\Panda Software\熊猫卫士钛金版2005\PSIMSVC.exe"
O4 - 启动项HKLM\\RunServices: [PAVFIRES] "C:\Program Files\Panda Software\熊猫卫士钛金版2005\Firewall\PavFires.exe"
O4 - 启动项HKLM\\RunServices: [Pavprot9] "C:\Program Files\Panda Software\熊猫卫士钛金版2005\Pavprot9.exe"
O4 - 启动项HKLM\\RunServices: [Panda Preventium+ Service] "C:\PROGRAM FILES\PANDA SOFTWARE\熊猫卫士钛金版2005\PREVSRV.EXE"
O4 - 启动项HKLM\\RunServices: [PavProc] "C:\Program Files\Common Files\Panda Software\PavShld\PavPrS9x.exe"
O9 - 浏览器额外的按钮: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - 浏览器额外的“工具”菜单项: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O10 - Broken Internet access because of LSP provider 'c:\program files\panda software\
O14 - IERESET.INF: SEARCH_PAGE_URL=
O14 - IERESET.INF: START_PAGE_URL=
O16 - DPF: {371B29D9-4563-4E7F-B93D-F85ED5682ABC} (CoRaise Player
Object) - http://202.104.212.55/tsplay/tsplay.cab