12   1  /  2  页   跳转

在线等待,附日志

在线等待,附日志

Logfile of Kaka v2. 0. 0. 8 Scan Module v2. 0. 0. 1
Scan saved at 08:34:02, on 2006-05-01
Platform: Microsoft Windows XP Personal  (Build 2600)
MSIE: Internet Explorer v6.00  (6.00.2600.0000 (xpclient.010817-1148))


Running processes:
[smss.exe]
CommandLine =

[csrss.exe]
CommandLine = C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16

[winlogon.exe]
CommandLine = winlogon.exe

[services.exe]
CommandLine = C:\WINDOWS\system32\services.exe

[lsass.exe]
CommandLine = C:\WINDOWS\system32\lsass.exe

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k rpcss

[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k netsvcs

[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k NetworkService

[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k LocalService

[spoolsv.exe]
CommandLine = C:\WINDOWS\system32\spoolsv.exe

[Explorer.EXE]
CommandLine = C:\WINDOWS\Explorer.EXE

[SOUNDMAN.EXE]
CommandLine = "C:\WINDOWS\SOUNDMAN.EXE"

[realsched.exe]
CommandLine = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot

[ctfmon.exe]
CommandLine = "C:\WINDOWS\System32\ctfmon.exe"

[msmsgs.exe]
CommandLine = "C:\Program Files\Messenger\msmsgs.exe" /background

[VM_STI.EXE]
CommandLine = "C:\WINDOWS\VM_STI.EXE" BigDogPath

[alg.exe]
CommandLine = C:\WINDOWS\System32\alg.exe

[nvsvc32.exe]
CommandLine = C:\WINDOWS\System32\nvsvc32.exe

[wdfmgr.exe]
CommandLine = C:\WINDOWS\System32\wdfmgr.exe

[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k imgsvc

[wuauclt.exe]
CommandLine = "C:\WINDOWS\System32\wuauclt.exe" /RunStoreAsComServer Local\[33c]SUSDS487b170046fa8d43a529b877f9dc266f

[wuauclt.exe]
CommandLine = "C:\WINDOWS\System32\wuauclt.exe"

[winamp.exe]
CommandLine = "D:\Program Files\winamp播放器\Winamp\winamp.exe"

[IEXPLORE.EXE]
CommandLine = "C:\Program Files\Internet Explorer\iexplore.exe"

[notepad.exe]
CommandLine = C:\WINDOWS\system32\NOTEPAD.EXE F:\网络歌曲\歌词.txt

[KkScan.exe]
CommandLine = "D:\Program Files\卡卡助手\KkScan.exe"

O1 - Hosts: 127.0.0.1      localhost
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\System32\xunleibho_v14.dll
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\System32\kakatool.dll
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKLM\..\Run: [IMJPMIG8.1] ; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [KAVPersonal50] "D:\卡巴斯基\Kaspersky Anti-Virus Personal Pro\kav.exe" /minimize
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - Startup: desktop.ini =
O4 - Startup: 腾讯QQ.lnk = D:\Program Files\Tencent\QQ.exe
O4 - Global Startup: desktop.ini =
O4 - Global Startup: Microsoft Office.lnk = D:\program\office2k\Office\OSA9.EXE
O8 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\getallurl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\Program Files\Tencent\AddToNetDisk.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\Program Files\Tencent\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Program Files\Tencent\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\Program Files\Tencent\SendMMS.htm
O9 - Extra Button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - E:\浩方对战平台\GameClient.exe
O9 - Extra Button: @shdoclc.dll,-866 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: @shdoclc.dll,-864 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra Button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\Tencent\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\Tencent\QQ.EXE
O9 - Extra Button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Program Files\Tencent\QQIEHelper.dll (file missing)
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Program Files\Tencent\QQIEHelper.dll (file missing)
O14 - IERESET.INF: START_PAGE_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
O17 - HKLM\System\CCS\Services\Tcpip\..\{C058BB4C-9F41-4532-B55E-36A37D1A5B07}: NameServer = 61.137.94.196 202.103.96.112
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: ipp - (no CLSID) - (no file)
O18 - Protocol: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: lid - {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\System32\inetcomm.dll
O18 - Protocol: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: msdaipp - (no CLSID) - (no file)
O18 - Protocol: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: vnd.ms.radio - {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\System32\msdxm.ocx
O18 - Protocol: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\System32\wiascr.dll
O23 - Service: Application Management (AppMgmt) -  - C:\WINDOWS\System32\svchost.exe -k netsvcs
O23 - Service: Human Interface Device Access (HidServ) -  - C:\WINDOWS\System32\svchost.exe -k netsvcs
O23 - Service: kavsvc (kavsvc) - Kaspersky Lab - "D:\卡巴斯基\Kaspersky Anti-Virus Personal Pro\kavsvc.exe"
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe



请各位高手指点下,我刚中了毒,不知道删干净没有
最后编辑2006-05-03 10:14:07
分享到:
gototop
 

应该是没问题了
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: vnd.ms.radio - {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\System32\msdxm.ocx
O18 - Protocol: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\System32\wiascr.dll
O23 - Service: Application Management (AppMgmt) - - C:\WINDOWS\System32\svchost.exe -k netsvcs
O23 - Service: Human Interface Device Access (HidServ) - - C:\WINDOWS\System32\svchost.exe -k netsvcs
[wuauclt.exe]
CommandLine = "C:\WINDOWS\System32\wuauclt.exe" /RunStoreAsComServer Local\[33c]SUSDS487b170046fa8d43a529b877f9dc266f

[wuauclt.exe]
CommandLine = "C:\WINDOWS\System32\wuauclt.exe"

未知
gototop
 

这些需要修复吗?我用的是卡卡助手扫描的,要怎么修复呢

还有哪些未知的是什么意思哦
gototop
 

继续等待
gototop
 

日志没有问题嘛,你重启后,再杀一次,如果不报,你就放心吧。
gototop
 

都过了一天了,日志还是老样子。不过今天下载的时候似乎又中毒了
日志还是老样子,扫描的时候就扫出一个毒,卡巴杀不了。我手动去目录下的,注册表就不知道了。扫描不出来。现在卡巴说什么
当前会话期间检测到4个病毒,既然日志没变化,请大家看看我的进程!


[smss.exe]
PID = 0x1c8
CommandLine =
smss.exe
0x48580000
C:\WINDOWS\system32\smss.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT Session Manager
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00




[csrss.exe]
PID = 0x200
CommandLine = C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
csrss.exe
0x4a680000
c:\windows\system32\csrss.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Client Server Runtime Process
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

CSRSRV.dll
0x75aa0000
C:\WINDOWS\system32\csrsrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Client Server Runtime Process
2001-09-05 12:00:00

basesrv.dll
0x75ab0000
C:\WINDOWS\system32\basesrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Server DLL
2001-09-05 12:00:00

winsrv.dll
0x75ac0000
C:\WINDOWS\system32\winsrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Server DLL
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

KERNEL32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00
gototop
 


sxs.dll
0x75e00000
C:\WINDOWS\system32\sxs.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Fusion 2.5
2001-09-05 12:00:00




[winlogon.exe]
PID = 0x218
CommandLine = winlogon.exe
winlogon.exe
0x1000000
c:\windows\system32\winlogon.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT Logon Application
2002-01-09 21:18:30

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

AUTHZ.dll
0x76c90000
C:\WINDOWS\system32\authz.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Authorization Framework
2001-09-05 12:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT CRT DLL
2001-09-05 12:00:00

CRYPT32.dll
0x76230000
C:\WINDOWS\system32\crypt32.dll
5.131.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Crypto API32
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

MSASN1.dll
0x76210000
C:\WINDOWS\system32\msasn1.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
ASN.1 Runtime APIs
2001-09-05 12:00:00

NDdeApi.dll
0x758a0000
C:\WINDOWS\system32\nddeapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Network DDE Share Management APIs
2001-09-05 12:00:00

PROFMAP.dll
0x75890000
C:\WINDOWS\system32\profmap.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00

NETAPI32.dll
0x71ba0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Net Win32 API DLL
2001-09-05 12:00:00

USERENV.dll
0x759d0000
C:\WINDOWS\system32\userenv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00

PSAPI.DLL
0x76bc0000
C:\WINDOWS\system32\psapi.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Process Status Helper
2001-09-05 12:00:00

REGAPI.dll
0x76b90000
C:\WINDOWS\system32\regapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Registry Configuration APIs
2001-09-05 12:00:00

Secur32.dll
0x76f60000
C:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

SETUPAPI.dll
0x765e0000
C:\WINDOWS\system32\setupapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Setup API
2001-09-05 12:00:00

sfc_os.dll
0x76c30000
C:\WINDOWS\system32\sfc_os.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows 文件保护
2001-09-05 12:00:00

WINTRUST.dll
0x76c00000
C:\WINDOWS\system32\wintrust.dll
5.131.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Trust Verification APIs
2001-09-05 12:00:00

ole32.dll
0x77180000
C:\WINDOWS\system32\ole32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Microsoft OLE for Windows
2001-09-05 12:00:00

IMAGEHLP.dll
0x76c60000
C:\WINDOWS\system32\imagehlp.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Windows NT Image Helper
2001-09-05 12:00:00

VERSION.dll
0x77bd0000
C:\WINDOWS\system32\version.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Version Checking and File Installation Libraries
2001-09-05 12:00:00

WINSTA.dll
0x762d0000
C:\WINDOWS\system32\winsta.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Winstation Library
2001-09-05 12:00:00

WS2_32.dll
0x71a20000
C:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
C:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

MSGINA.dll
0x758d0000
C:\WINDOWS\system32\msgina.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT Logon GINA DLL
2001-09-05 12:00:00

SHELL32.dll
0x773a0000
C:\WINDOWS\system32\shell32.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Windows Shell Common Dll
2001-09-05 12:00:00

SHLWAPI.dll
0x772a0000
C:\WINDOWS\system32\shlwapi.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Shell Light-weight Utility Library
2001-09-05 12:00:00

COMCTL32.dll
0x77310000
C:\WINDOWS\system32\comctl32.dll
5.82 (xpclient.010817-1148)
Microsoft Corporation
Common Controls Library
2001-09-05 12:00:00

ODBC32.dll
0x1f7b0000
C:\WINDOWS\system32\odbc32.dll
3.520.7713.0
Microsoft Corporation
Microsoft Data Access - ODBC Driver Manager
2001-09-05 12:00:00

comdlg32.dll
0x76320000
C:\WINDOWS\system32\comdlg32.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Common Dialogs DLL
2001-09-05 12:00:00

comctl32.dll
0xa50000
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
6.0 (xpclient.010817-1148)
Microsoft Corporation
User Experience Controls Library
2001-09-05 20:00:00

odbcint.dll
0x1f850000
C:\WINDOWS\system32\odbcint.dll
3.520.7713.0
Microsoft Corporation
Microsoft Data Access - ODBC Resources
2001-09-05 12:00:00

SHSVCS.dll
0x76ba0000
C:\WINDOWS\system32\shsvcs.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Windows Shell Services Dll
2001-09-05 12:00:00

sfc.dll
0x76b80000
C:\WINDOWS\system32\sfc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows File Protection
2001-09-05 12:00:00

WINSCARD.DLL
0x72360000
C:\WINDOWS\system32\winscard.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Smart Card API
2001-09-05 12:00:00

WTSAPI32.dll
0x76f20000
C:\WINDOWS\system32\wtsapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Terminal Server SDK APIs
2001-09-05 12:00:00

sxs.dll
0x75e00000
C:\WINDOWS\system32\sxs.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Fusion 2.5
2001-09-05 12:00:00

uxtheme.dll
0x5adc0000
C:\WINDOWS\system32\uxtheme.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Microsoft UxTheme Library
2001-09-05 12:00:00

WINMM.dll
0x76b10000
C:\WINDOWS\system32\winmm.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
MCI API DLL
2001-09-05 12:00:00

cscdll.dll
0x76570000
C:\WINDOWS\system32\cscdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Offline Network Agent
2001-09-05 12:00:00

WlNotify.dll
0x758b0000
C:\WINDOWS\system32\wlnotify.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Common DLL to receive Winlogon notifications
2001-09-05 12:00:00

WINSPOOL.DRV
0x72f70000
C:\WINDOWS\system32\winspool.drv
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Windows Spooler Driver
2001-09-05 12:00:00

MPR.dll
0x71a90000
C:\WINDOWS\system32\mpr.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Multiple Provider Router DLL
2001-09-05 12:00:00

rsaenh.dll
0xffd0000
C:\WINDOWS\system32\rsaenh.dll
5.1.2518.0 (main.010714-2114)
Microsoft Corporation
Microsoft Base Cryptographic Provider
2001-09-05 12:00:00

SAMLIB.dll
0x71b70000
C:\WINDOWS\system32\samlib.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
SAM Library DLL
2001-09-05 12:00:00

cscui.dll
0x76590000
C:\WINDOWS\system32\cscui.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Client Side Caching UI
2001-09-05 12:00:00

msv1_0.dll
0x76ce0000
C:\WINDOWS\system32\msv1_0.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Authentication Package v1.0
2001-09-05 12:00:00
gototop
 

c:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
c:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

TAPI32.dll
0x76e80000
c:\WINDOWS\system32\tapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft(R) Windows(TM) Telephony API Client DLL
2001-09-05 12:00:00

SHLWAPI.dll
0x772a0000
C:\WINDOWS\system32\shlwapi.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Shell Light-weight Utility Library
2001-09-05 12:00:00

WINMM.dll
0x76b10000
c:\WINDOWS\system32\winmm.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
MCI API DLL
2001-09-05 12:00:00

SHELL32.dll
0x773a0000
C:\WINDOWS\system32\shell32.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Windows Shell Common Dll
2001-09-05 12:00:00

Secur32.dll
0x76f60000
c:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

WZCSvc.DLL
0x76d70000
c:\WINDOWS\system32\wzcsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Wireless Zero Configuration Service
2001-09-05 12:00:00

WMI.dll
0x76d00000
c:\WINDOWS\system32\wmi.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
WMI DC and DP functionality
2001-09-05 12:00:00

DHCPCSVC.DLL
0x76d50000
c:\WINDOWS\system32\dhcpcsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
DHCP Client Service
2001-09-05 12:00:00

DNSAPI.dll
0x76ef0000
c:\WINDOWS\system32\dnsapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
DNS Client API DLL
2001-09-05 12:00:00

CRYPT32.dll
0x76230000
C:\WINDOWS\system32\crypt32.dll
5.131.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Crypto API32
2001-09-05 12:00:00

MSASN1.dll
0x76210000
C:\WINDOWS\system32\msasn1.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
ASN.1 Runtime APIs
2001-09-05 12:00:00

WTSAPI32.dll
0x76f20000
c:\WINDOWS\system32\wtsapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Terminal Server SDK APIs
2001-09-05 12:00:00

WINSTA.dll
0x762d0000
c:\WINDOWS\system32\winsta.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Winstation Library
2001-09-05 12:00:00

comctl32.dll
0x6a0000
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
6.0 (xpclient.010817-1148)
Microsoft Corporation
User Experience Controls Library
2001-09-05 20:00:00

comctl32.dll
0x77310000
C:\WINDOWS\system32\comctl32.dll
5.82 (xpclient.010817-1148)
Microsoft Corporation
Common Controls Library
2001-09-05 12:00:00

webclnt.dll
0x5a720000
c:\WINDOWS\system32\webclnt.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Web DAV Service DLL
2001-09-05 12:00:00

WININET.dll
0x76170000
C:\WINDOWS\system32\wininet.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Internet Extensions for Win32
2001-09-05 12:00:00

wsock32.dll
0x71a40000
C:\WINDOWS\system32\wsock32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 32-Bit DLL
2001-09-05 12:00:00

alrsvc.dll
0x70fe0000
c:\WINDOWS\system32\alrsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Alerter Service DLL
2001-09-05 12:00:00

mswsock.dll
0x719c0000
C:\WINDOWS\system32\mswsock.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Windows Sockets 2.0 Service Provider
2001-09-05 12:00:00

wshtcpip.dll
0x71a00000
C:\WINDOWS\system32\wshtcpip.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Sockets Helper DLL
2001-09-05 12:00:00

urlmon.dll
0x76060000
C:\WINDOWS\system32\urlmon.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
OLE32 Extensions for Win32
2001-09-05 12:00:00

VERSION.dll
0x77bd0000
C:\WINDOWS\system32\version.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Version Checking and File Installation Libraries
2001-09-05 12:00:00




[spoolsv.exe]
PID = 0x3f4
CommandLine = C:\WINDOWS\system32\spoolsv.exe
spoolsv.exe
0x1000000
C:\WINDOWS\system32\spoolsv.exe
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Spooler SubSystem App
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT CRT DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

SPOOLSS.DLL
0x74240000
C:\WINDOWS\system32\spoolss.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Spooler SubSystem DLL
2001-09-05 12:00:00

WS2_32.dll
0x71a20000
C:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
C:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

DNSAPI.dll
0x76ef0000
C:\WINDOWS\system32\dnsapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
DNS Client API DLL
2001-09-05 12:00:00

iphlpapi.dll
0x76d30000
C:\WINDOWS\system32\iphlpapi.dll
5.1.2600.2 (xpclient.010817-1148)
Microsoft Corporation
IP Helper API
2001-09-05 12:00:00

netman.dll
0x76db0000
C:\WINDOWS\system32\netman.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Network Connections Manager
2001-09-05 12:00:00

MPRAPI.dll
0x76d10000
C:\WINDOWS\system32\mprapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT MP Router Administration DLL
2001-09-05 12:00:00

ACTIVEDS.dll
0x76e10000
C:\WINDOWS\system32\activeds.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
ADs Router Layer DLL
2001-09-05 12:00:00

adsldpc.dll
0x76de0000
C:\WINDOWS\system32\adsldpc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
ADs LDAP Provider C DLL
2001-09-05 12:00:00

NETAPI32.dll
0x71ba0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Net Win32 API DLL
2001-09-05 12:00:00

WLDAP32.dll
0x76f30000
C:\WINDOWS\system32\wldap32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Win32 LDAP API DLL
2001-09-05 12:00:00

ATL.DLL
0x76af0000
C:\WINDOWS\system32\atl.dll
3.00.9238
Microsoft Corporation
ATL Module for Windows NT (Unicode)
2001-09-05 12:00:00

ole32.dll
0x77180000
C:\WINDOWS\system32\ole32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Microsoft OLE for Windows
2001-09-05 12:00:00

OLEAUT32.dll
0x770f0000
C:\WINDOWS\system32\oleaut32.dll
3.50.5014.0
Microsoft Corporation
Microsoft OLE 3.50  for Windows NT(TM) and Windows 95(TM) Operating Systems
2001-09-05 12:00:00

rtutils.dll
0x76e50000
C:\WINDOWS\system32\rtutils.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Routing Utilities
2001-09-05 12:00:00

SAMLIB.dll
0x71b70000
C:\WINDOWS\system32\samlib.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
SAM Library DLL
2001-09-05 12:00:00

SETUPAPI.dll
0x765e0000
C:\WINDOWS\system32\setupapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Setup API
2001-09-05 12:00:00

RASAPI32.dll
0x76eb0000
C:\WINDOWS\system32\rasapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Remote Access API
2001-09-05 12:00:00

rasman.dll
0x76e60000
C:\WINDOWS\system32\rasman.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Remote Access Connection Manager
2001-09-05 12:00:00

TAPI32.dll
0x76e80000
C:\WINDOWS\system32\tapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft(R) Windows(TM) Telephony API Client DLL
2001-09-05 12:00:00

SHLWAPI.dll
0x772a0000
C:\WINDOWS\system32\shlwapi.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Shell Light-weight Utility Library
2001-09-05 12:00:
gototop
 

【回复“我问我问”的帖子】
机器有什么问题
请说明详细情况
gototop
 

现在什么问题我也不知道

就是卡巴斯基本,说什么在会话期间检测到4个病毒

但是他没报警,我到备份区去看,又无法删除。但是用日志扫描

就如同上面一样
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT