瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 救救我!电脑中招了,瑞星杀毒和重装也不管用

1234   2  /  4  页   跳转

救救我!电脑中招了,瑞星杀毒和重装也不管用

如果真的是瑞星杀毒和重装系统也不管用的话,那么可能问题就只可能是出在硬件上,请试着在与主板相关的一些个部件上检查一下如何?
gototop
 

第四部分日志
==================================
正在运行的进程
[PID: 444][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 500][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 524][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 568][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 580][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 760][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 816][e:\Program Files\Rising\Rav\CCenter.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
[PID: 832][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 920][e:\Program Files\Rising\Rav\Ravmond.exe]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 39]
    [e:\Program Files\Rising\Rav\BWList.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 6]
    [e:\Program Files\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [e:\Program Files\Rising\Rav\rfwctrl.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
    [e:\Program Files\Rising\Rav\RsPPsys.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
    [e:\Program Files\Rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [e:\Program Files\Rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
    [e:\Program Files\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [e:\Program Files\Rising\Rav\RsLog.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 20]
    [e:\Program Files\Rising\Rav\HOOKSYS.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 0]
    [e:\Program Files\Rising\Rav\Scanner.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 8]
    [e:\Program Files\Rising\Rav\libload.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 16]
    [e:\Program Files\Rising\Rav\VirusLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
    [e:\Program Files\Rising\Rav\regmon.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 6]
    [e:\Program Files\Rising\Rav\HookWeb.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 1]
    [e:\Program Files\Rising\Rav\MemMon.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 12]
    [e:\Program Files\Rising\Rav\expscan.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [e:\Program Files\Rising\Rav\mPorts.dll]  [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
    [e:\Program Files\Rising\Rav\HookCont.dll]  [Rising, 19, 0, 0, 0]
    [e:\Program Files\Rising\Rav\SpamEng.dll]  [N/A, 18, 0, 0, 6]
    [e:\Program Files\Rising\Rav\engine.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 20]
    [e:\Program Files\Rising\Rav\PostTrt.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 8]
    [e:\Program Files\Rising\Rav\UnExe.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
    [e:\Program Files\Rising\Rav\ScanExec.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 15]
    [e:\Program Files\Rising\Rav\ScanEx.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 30]
    [e:\Program Files\Rising\Rav\ExtFile.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 23]
    [e:\Program Files\Rising\Rav\NvFile.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 11]
    [e:\Program Files\Rising\Rav\ScanMac.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 13]
    [e:\Program Files\Rising\Rav\ScanSct.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 16]
    [e:\Program Files\Rising\Rav\Unpacker.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 17]
    [e:\Program Files\Rising\Rav\ScanPack.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 18]
    [e:\Program Files\Rising\Rav\RsVM.dll]  [N/A, 19, 0, 0, 13]
    [e:\Program Files\Rising\Rav\Uroutine.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 19]
    [e:\Program Files\Rising\Rav\Uscript.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 17]
    [e:\Program Files\Rising\Rav\ExtOLE.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 11]
    [e:\Program Files\Rising\Rav\RsStore.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [e:\Program Files\Rising\Rav\ScanNet.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[PID: 968][e:\program files\rising\rfw\rfwsrv.exe]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 30]
    [e:\program files\rising\rfw\RfwRule.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 3]
    [e:\program files\rising\rfw\rfwlog.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 2]
    [e:\program files\rising\rfw\Rfwdrv.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 9]
    [e:\program files\rising\rfw\MonDrv.dll]  [rs, 1, 0, 0, 4]
    [e:\program files\rising\rfw\ProcLib.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 5]
    [e:\program files\rising\rfw\mPorts.dll]  [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
[PID: 1272][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1468][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1500][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\icm32.dll]  [Microsoft Corporation, 5.1.2600.2709 (xpsp_sp2_gdr.050628-1518)]
    [e:\Program Files\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 7]
    [e:\Program Files\ACDSee\picaview.dll]  [ACD Systems, Ltd., 2, 0, 0, 78]
    [e:\Program Files\ACDSee\PlugIns\IDE_ACDStd.apl]  [ACD Systems, Ltd., 3,0,31,0]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
    [C:\WINDOWS\system32\windhcp.ocx]  [N/A, N/A]
    [C:\WINDOWS\system32\dllwm.dll]  [N/A, N/A]
    [e:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_006.dll]  [Thunder Networking Technologies,LTD, 5, 0, 0, 3]
[PID: 1632][E:\Program Files\Rising\Rav\RavTask.exe]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [E:\Program Files\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [E:\Program Files\Rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [E:\Program Files\Rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
    [E:\Program Files\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
gototop
 

你这日志不全 缺HOSTS以上的 都贴上来
gototop
 

第五部分日志

[PID: 1640][E:\Program Files\Rising\Rfw\rfwmain.exe]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 56]
    [E:\Program Files\Rising\Rfw\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
    [E:\Program Files\Rising\Rfw\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [E:\Program Files\Rising\Rfw\RfwCtrl.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
    [E:\Program Files\Rising\Rfw\RsXML.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [E:\Program Files\Rising\Rfw\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
    [C:\WINDOWS\system32\dllwm.dll]  [N/A, N/A]
[PID: 1676][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
[PID: 1244][E:\Program Files\TM\TMDlls\TM.exe]  [N/A, N/A]
    [E:\Program Files\TM\CoralAssist.DLL]  [Coral Team, 4.5.0 build 20060515]
    [E:\Program Files\TM\CoralQQ.DLL]  [Coral Team, 4.5.4 Build 20061001]
    [E:\Program Files\TM\ipsearcher.dll]  [N/A, 1.0.0.4]
    [E:\Program Files\TM\TMDlls\BasicCtrlDll.dll]  [Tencent, 0, 3, 3, 9]
    [E:\Program Files\TM\TMDlls\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQZip.dll]  [tencent, 0, 3, 2, 4]
    [E:\Program Files\TM\TMDlls\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\BaseUIClass.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\ImageOle.dll]  [TODO: <Company name>, 1.0.0.1]
    [E:\Program Files\TM\TMDlls\QQAPI.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQRes.dll]  [N/A, N/A]
    [E:\Program Files\TM\TMDlls\LoginCtrl.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\npkcntc.dll]  [INCA Internet Co., Ltd., 2005, 9, 1, 1]
    [E:\Program Files\TM\TMDlls\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [E:\Program Files\TM\TMDlls\HostingMgr.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\WizardCtrl.dll]  [Tencent, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQMainFrame.dll]  [TENCENT, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\NewSkin.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\CQQApplication.dll]  [N/A, N/A]
    [E:\Program Files\TM\TMDlls\FrameBar.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\UserRelationWeight.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\CameraDll.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQAllInOne.dll]  [N/A, N/A]
    [E:\Program Files\TM\TMDlls\CommercesMng.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\msdmo.dll]  [N/A, N/A]
    [E:\Program Files\TM\TMDlls\MiscCtrl.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\LongConnection.dll]  [tencent, 0, 3, 3, 8]
    [E:\Program Files\TM\TMDlls\QQSpace.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 0, 3, 0, 43]
    [C:\WINDOWS\system32\SOGOUPY.IME]  [Sohu.com Inc., 1, 5, 0, 0]
    [E:\安装文件\SogouInput\Plugin\SgImeWord.dll]  [, 1, 0, 0, 31]
    [E:\Program Files\TM\TMDlls\GroupConnection.dll]  [Tencent, 0, 3, 3, 5]
    [E:\Program Files\TM\TMDlls\VqqModule.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
    [E:\Program Files\TM\TMDlls\RemoteHelp.dll]  [, 1, 0, 0, 1]
    [E:\Program Files\TM\TMDlls\QQFileTransfer.dll]  [Tencent, 0, 3, 3, 5]
    [E:\Program Files\TM\TMDlls\inplus.dll]  [Tencent, 1.5.0.0]
    [E:\Program Files\TM\TMDlls\ShareFiles.dll]  [N/A, N/A]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
[PID: 1956][C:\DOCUME~1\sailor\LOCALS~1\Temp\MjjiIs.exe]  [N/A, N/A]
[PID: 852][C:\DOCUME~1\sailor\LOCALS~1\Temp\xnhuQD.exe]  [N/A, N/A]
[PID: 1852][C:\DOCUME~1\sailor\LOCALS~1\Temp\esMOrT.exe]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\wlzs.dll]  [N/A, N/A]
[PID: 372][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
[PID: 1628][C:\DOCUME~1\sailor\LOCALS~1\Temp\KatWIR.exe]  [N/A, N/A]
[PID: 1336][C:\DOCUME~1\sailor\LOCALS~1\Temp\xvYMql.exe]  [N/A, N/A]
[PID: 860][C:\DOCUME~1\sailor\LOCALS~1\Temp\XtKJLD.exe]  [N/A, N/A]
[PID: 1984][C:\DOCUME~1\sailor\LOCALS~1\Temp\mh2\iexpl0re.EXE]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]
[PID: 940][C:\DOCUME~1\sailor\LOCALS~1\Temp\Zt2\SVCH0ST.EXE]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
[PID: 1432][C:\DOCUME~1\sailor\LOCALS~1\Temp\vJXWOj.exe]  [N/A, N/A]
[PID: 412][C:\DOCUME~1\sailor\LOCALS~1\Temp\nfrBxX.exe]  [N/A, N/A]
[PID: 492][C:\DOCUME~1\sailor\LOCALS~1\Temp\UVlppo.exe]  [N/A, N/A]
[PID: 1584][C:\Program Files\CNNIC\Cdn\cdnup.exe]  [CNNIC, 2, 5, 0, 6]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdnuplib.dll]  [CNNIC, 2, 5, 0, 5]
    [C:\Program Files\CNNIC\Cdn\cdnprh.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
[PID: 308][C:\WINDOWS\system32\NOTEPAD.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]
[PID: 1264][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
    [C:\Program Files\CNNIC\Cdn\cdnuplib.dll]  [CNNIC, 2, 5, 0, 5]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [e:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_006.dll]  [Thunder Networking Technologies,LTD, 5, 0, 0, 3]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]
    [e:\Program Files\Rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\WINDOWS\system32\SOGOUPY.IME]  [Sohu.com Inc., 1, 5, 0, 0]
    [E:\安装文件\SogouInput\Plugin\SgImeWord.dll]  [, 1, 0, 0, 31]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
    [C:\WINDOWS\system32\dllwm.dll]  [N/A, N/A]
[PID: 1248][C:\DOCUME~1\sailor\LOCALS~1\Temp\EhgfUx.exe]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\zts2.dll]  [N/A, N/A]
[PID: 368][C:\DOCUME~1\sailor\LOCALS~1\Temp\ApUHYG.exe]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\mhs2.dll]  [N/A, N/A]
[PID: 1492][C:\DOCUME~1\sailor\LOCALS~1\Temp\xoZnxx.exe]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\rxzs.dll]  [N/A, N/A]
[PID: 1176][C:\DOCUME~1\sailor\LOCALS~1\Temp\PYRYAD.exe]  [N/A, N/A]
[PID: 3184][C:\DOCUME~1\sailor\LOCALS~1\Temp\HNmDWh.exe]  [N/A, N/A]
[PID: 3192][C:\DOCUME~1\sailor\LOCALS~1\Temp\CMxPUP.exe]  [N/A, N/A]
[PID: 3200][C:\DOCUME~1\sailor\LOCALS~1\Temp\XUnHLt.exe]  [N/A, N/A]
[PID: 3216][C:\DOCUME~1\sailor\LOCALS~1\Temp\shWZct.exe]  [N/A, N/A]
[PID: 2004][C:\DOCUME~1\sailor\LOCALS~1\Temp\KlPLSq.exe]  [N/A, N/A]
[PID: 1552][C:\DOCUME~1\sailor\LOCALS~1\Temp\nwHfDA.exe]  [N/A, N/A]
[PID: 2416][C:\DOCUME~1\sailor\LOCALS~1\Temp\uZcNbz.exe]  [N/A, N/A]
[PID: 2260][C:\DOCUME~1\sailor\LOCALS~1\Temp\dpqIyl.exe]  [N/A, N/A]
    [C:\WINDOWS\system32\windhcp.ocx]  [N/A, N/A]
[PID: 2304][C:\Program Files\svhost32.exe]  [N/A, N/A]
    [C:\WINDOWS\system32\windhcp.ocx]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\g.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\dllwm.dll]  [N/A, N/A]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
[PID: 3544][C:\Documents and Settings\sailor\桌面\sreng2\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\WINDOWS\system32\windhcp.ocx]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 1, 0, 3]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.wmp]  [N/A, N/A]
    [C:\WINDOWS\system32\dllwm.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Ztgx.dll]  [N/A, N/A]
    [C:\DOCUME~1\sailor\LOCALS~1\Temp\Mhgx.dll]  [N/A, N/A]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
gototop
 

都帖完了‘鸟儿天上飞‘你分析一下,谢谢
gototop
 

没有还少  HOSTS上面的全要
gototop
 

2006-12-24,21:16:01

System Repair Engineer 2.2.6.605
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
gototop
 

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1 localhost

==================================
要类似这样的资料 请不要修改
gototop
 

就只有这么多了,还有最后有一个
==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
gototop
 

http://it.rising.com.cn/Channels/Service/2006-11/1163505486d38734.shtml下载这个杀毒  多杀几次 没有的话告诉我
gototop
 
1234   2  /  4  页   跳转
页面顶部
Powered by Discuz!NT