123   3  /  3  页   跳转

【求助】中了顽固的流氓软件

[C:\WINDOWS\system32\mctet.dll]  [, 5, 3, 1, 120]
    [d:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll]  [Kaspersky Lab, 6.0.0.299]
    [C:\Program Files\Common Files\Ulead Systems\DVD\USIShex.dll]  [Ulead Systems, Inc., 1, 1, 1, 21]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\wsvbs.dll]  [N/A, N/A]
    [c:\program files\internet explorer\plugins\zctyorou.dll]  [, 1, 0, 0, 11]
    [C:\WINDOWS\system32\windhcp.ocx]  [N/A, N/A]
    [c:\program files\internet explorer\plugins\fxprzszp.dll]  [, 1, 0, 0, 11]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
    [D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
[PID: 1704][C:\WINDOWS\system32\taskmgr.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
[PID: 1792][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\Macromed\Common\SwSupport.dll]  [Macromedia, Inc., 10.1r11]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
    [d:\Program Files\Thunder Network\WebThunder\WebThunderBHO_015.dll]  [Thunder Networking Technologies,LTD, 6, 0, 0, 5]
[PID: 1848][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
[PID: 384][C:\WINDOWS\System32\NOTEPAD.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
[PID: 1580][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
[PID: 720][C:\WINDOWS\systom.exe]  [N/A, N/A]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
[PID: 376][d:\Program Files\Thunder Network\WebThunder\WebThunder.exe]  [深圳市迅雷网络技术有限公司, 1, 5, 0, 78]
    [d:\Program Files\Thunder Network\WebThunder\taskmanage.dll]  [Thunder Networking Technologies,LTD, 1, 5, 0, 77]
    [d:\Program Files\Thunder Network\WebThunder\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 11, 3, 24]
    [d:\Program Files\Thunder Network\WebThunder\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 11, 3, 24]
    [d:\Program Files\Thunder Network\WebThunder\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 2, 1, 39]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [d:\Program Files\Thunder Network\WebThunder\historyinfo_manage.dll]  [Thunder Networking Technologies,LTD, 5, 3, 0, 228]
    [d:\Program Files\Thunder Network\WebThunder\UpdateDownload.dll]  [Thunder Networking Technologies,LTD, 1, 0, 1, 8]
    [d:\Program Files\Thunder Network\WebThunder\UpdateExec.dll]  [Thunder Networking Technologies,LTD, 1, 0, 1, 5]
    [d:\Program Files\Thunder Network\WebThunder\iEmbedShell.dll]  [ , 1, 0, 0, 14]
    [d:\Program Files\Thunder Network\WebThunder\iEmbed07.dll]  [ , 3, 1, 0, 58]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\Macromed\Common\SwSupport.dll]  [Macromedia, Inc., 10.1r11]
[PID: 1216][d:\Program Files\WinRAR\WinRAR.exe]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
[PID: 1064][C:\DOCUME~1\xhst\LOCALS~1\Temp\Rar$EX00.593\SREng.EXE]  [Smallfrogs Studio, 2.3.13.690]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\Kav26.dll]  [N/A, N/A]
[PID: 676][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
    [C:\Program Files\Internet Explorer\InfoMs.tdm]  [N/A, N/A]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\Macromed\Common\SwSupport.dll]  [Macromedia, Inc., 10.1r11]
[PID: 1980][C:\WINDOWS\system32\RUNDLL32.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\umtcap.dll]  [, 5.1.1800.2813]
    [C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys]  [N/A, N/A]
[PID: 264][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
N/A

==================================
API HOOK
N/A

==================================

gototop
 

现在剩下的病毒是第一页图片上的几个文件
清理不掉……
gototop
 

这玩艺……已经删除

附件附件:

下载次数:212
文件类型:image/pjpeg
文件大小:
上传时间:2007-2-4 15:22:44
描述:



gototop
 

你的IE给修改的不像样子.....唉
gototop
 

我从来不用ie……用遨游……
另外,刚刚删除了病毒驱动,重起以后又回来了……咋办…………各位大虾
gototop
 

叫一下斑主...
gototop
 

别走啊……
gototop
 

有驱动保护,所有你就算删除了它又会自动恢复,

清除方法参考:

安全模式下.用SRE删除病毒驱动服务,注册表启动项
安全模式下冰刃是不能使用的
用费尔删除文件,或用unlocker1.8.5删除病毒文件
清空IE临时文件夹和temp临时文件夹文件
gototop
 
123   3  /  3  页   跳转
页面顶部
Powered by Discuz!NT