瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】电脑非常慢,杀毒也杀不出来,请高手帮忙,附日志

12   2  /  2  页   跳转

【求助】电脑非常慢,杀毒也杀不出来,请高手帮忙,附日志

[C:\WINNT\system32\WINMM.dll]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\wdmaud.drv]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\msacm32.drv]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MSACM32.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\msadp32.acm]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\wsock32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\sensapi.dll]  [Microsoft Corporation, 5.00.2195.6627]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6711]
    [C:\WINNT\system32\netapi32.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6680]
    [C:\WINNT\system32\jscript.dll]  [Microsoft Corporation, 5.6.0.6626]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\System32\ntlanman.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\NETUI0.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\NETUI1.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\System32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINNT\system32\schannel.dll]  [Microsoft Corporation, 5.00.2195.6705]
    [C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL]  [Microsoft Corporation, 11.0.5510]
    [C:\WINNT\System32\ddrawex.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\System32\DDRAW.dll]  [Microsoft Corporation, 5.3.0000001.0904 built by: private/Lab06_dev(DXBLD00)]
    [C:\WINNT\System32\DCIMAN32.dll]  [Microsoft Corporation, 5.00.2180.1]
    [C:\WINNT\system32\mshtmled.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\msi.dll]  [Microsoft Corporation, 2.0.2600.1183]
    [C:\Program Files\Common Files\Microsoft Shared\INK\PENCHS.DLL]  [Microsoft Corporation, 1.0.1038.0]
    [C:\WINNT\IME\sptip.dll]  [Microsoft Corporation, 1.00.2409.34 built by: Lab06_N]
    [C:\WINNT\mui\fallback\0804\sptip.dll.mui]  [Microsoft Corporation, 1.00.2409.7 built by: Lab06_N]
    [C:\WINNT\system32\imgutil.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\pngfilt.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINNT\system32\actxprxy.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\plugin.ocx]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\ntshrui.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\ATL.DLL]  [Microsoft Corporation, 3.00.9435]
    [C:\WINNT\system32\PSTOREC.DLL]  [Microsoft Corporation, 5.00.2134.1]
[PID: 960][D:\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\system32\kernel32.dll]  [Microsoft Corporation, 5.00.2195.6688]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6688]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6660]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation, 5.00.3700.6693]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6710]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\oledlg.dll]  [Microsoft Corporation, 1.0]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6661]
    [C:\WINNT\system32\MSASN1.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\WINMM.dll]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\WS2_32.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\RICHED20.DLL]  [Microsoft Corporation, 5.30.23.1215]
    [C:\WINNT\system32\MSCTF.dll]  [Microsoft Corporation, 1.00.2409.34 built by: Lab06_N]
    [C:\WINNT\mui\fallback\0804\msctf.dll.mui]  [Microsoft Corporation, 1.00.2409.7 built by: Lab06_N]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINNT\system32\sfc.dll]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\sfcfiles.dll]  [Microsoft Corporation, 5.00.2195.6717]
    [C:\WINNT\system32\Sensapi.dll]  [Microsoft Corporation, 5.00.2195.6627]
gototop
 

[C:\WINNT\system32\wsock32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6711]
    [C:\WINNT\system32\netapi32.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6680]
    [C:\WINNT\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\wintrust.dll]  [Microsoft Corporation, 5.131.2195.6624]
    [C:\WINNT\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.00.2195.6613]
    [C:\WINNT\system32\rsaenh.dll]  [Microsoft Corporation, 5.00.2195.6611]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINNT\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]
gototop
 

为什么日志会这么长?难道这就是电脑慢的原因?
gototop
 

<upxdnd><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\upxdnd.exe> [N/A]
<load><C:\WINNT\uninstall\rundl132.exe> [N/A]
<winform><C:\WINNT\RUNDLL32.exe> [N/A]

中毒。以上为标志。

[Windows Ins / WindowsDown][Stopped/Auto Start]
<C:\WINNT\system32\servet.exe><N/A>

关闭此服务,删除对应文件。
gototop
 

威金啊 威金

还附带一群的木马

能快么
gototop
 

那怎么办呀?
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT