瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 救命啊~发了三次,终于发上来了~一定要帮忙啊,木马群~附日志

12   1  /  2  页   跳转

救命啊~发了三次,终于发上来了~一定要帮忙啊,木马群~附日志

救命啊~发了三次,终于发上来了~一定要帮忙啊,木马群~附日志

中了木马群

[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; .NET CLR 2.0.50727; WBP/20070724; MAXTHON 2.0)

附件附件:

下载次数:133
文件类型:application/octet-stream
文件大小:
上传时间:2007-10-13 12:13:55
描述:

最后编辑2007-10-14 06:47:59
分享到:
gototop
 

毒霸+流氓大本营,强!

大部分都是流氓软件的DD,建议先杀流氓,然后再重新扫描个SRENG日志,第二步再解决病毒问题:

建议程序:
1、卸载“中文上网”这个流氓软件;
2、到我的网盘下载KILLER-CNNIC、WINDOWS清理助手两个压缩包,解压缩;
3、双击运行WINDOWS清理助手文件包内的ArSwp.exe,系统回自动提示升级,把软件版本库先升级一下;
4、重启电脑进入安全模式,按照顺序依次运行KILLER-CNNIC、WINDOWS清理助手,解决你机上的CNNIC、PCTOOLS等多个流氓软件;
5、重启电脑进入正常模式,再扫描个SRENG日志上来。
gototop
 

先按一楼说的做,然后删除注册表中<xxsvjs64><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xxsvjs64.dll",Start>  []
    <xdbgfg25><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xdbgfg25.dll",Start>  []
    <thagz97><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\thagz97.dll",Start>  []
    <rfbvfn58><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\rfbvfn58.dll",Start>  []
    <kpghhr88><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\kpghhr88.dll",Start>  []
<MSDEG32><LYLoader.exe>  []
    <MSDWG32><LYLoadbr.exe>  [N/A]
    <MSDCG32    ><LYLeador.exe>  [N/A]
    <MSDOG32><LYLoador.exe>  [N/A]
    <MSDSG32><LYLoadar.exe>  [N/A]
    <MSDMG32><LYLoadmr.exe>  []
    <MSDHG32><LYLoadhr.exe>  [N/A]
    <MSDQG32><LYLoadqr.exe>  [N/A]
驱动程序中[dddmrr0 / dddmrr02][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\dddmrr02.sys><N/A>
[fcdfadga / fcdfadga][Stopped/Boot Start]
  <\SystemRoot\system32\drivers\fcdfadga.sys><N/A>
[gotnae7 / gotnae75][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\gotnae75.sys><N/A>
[HOOKAPI / HOOKAPI][Stopped/Manual Start]
[jsdpp3 / jsdpp32][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jsdpp32.sys><N/A>
[jvwzwt1 / jvwzwt17][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jvwzwt17.sys><N/A>
[kivxdr / kivxdrv][Stopped/Boot Start]
  <\SystemRoot\System32\DRIVERS\kivxdrv.sys><N/A>
[koz4kdd12 / koz4kdd123][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\koz4kdd123.sys><N/A>
[kpghhr8 / kpghhr88][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\kpghhr88.sys><N/A>
[mseam / mseam][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\mseam.sys><N/A>
[mxdispdr / mxdispdr][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\mxdispdr.sys><N/A>
[rfbvfn5 / rfbvfn58][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\rfbvfn58.sys><N/A>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[tivxdr / tivxdrv][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\tivxdrv.sys><N/A>
[uf46 / uf46][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\uf46.sys><N/A>
[xdbgfg2 / xdbgfg25][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xdbgfg25.sys><N/A>
[xxsvjs6 / xxsvjs64][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xxsvjs64.sys><N/A>
正在运行的进程中的
[C:\WINDOWS\System32\msplrct.dll]  [N/A, ]
    [C:\WINDOWS\System32\winlib .dll]  [N/A, ]
    [C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\system.dat]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
    [C:\WINDOWS\System32\sqmapi32.dll]  [N/A, ]
    [C:\WINDOWS\System32\allatl.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[thpbku74 / thpbku74][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thpbku74.sys><>
[acpidisk / acpidisk][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\acpidisk.sys><N/A>
[nooxbbh / nooxbbh][Running/Disabled]
  <\??\C:\DOCUME~1\new\LOCALS~1\Temp\nooxbbhadq><N/A>
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]




gototop
 

先按一楼说的做,然后删除注册表中<xxsvjs64><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xxsvjs64.dll",Start>  []
    <xdbgfg25><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xdbgfg25.dll",Start>  []
    <thagz97><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\thagz97.dll",Start>  []
    <rfbvfn58><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\rfbvfn58.dll",Start>  []
    <kpghhr88><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\kpghhr88.dll",Start>  []
<MSDEG32><LYLoader.exe>  []
    <MSDWG32><LYLoadbr.exe>  [N/A]
    <MSDCG32    ><LYLeador.exe>  [N/A]
    <MSDOG32><LYLoador.exe>  [N/A]
    <MSDSG32><LYLoadar.exe>  [N/A]
    <MSDMG32><LYLoadmr.exe>  []
    <MSDHG32><LYLoadhr.exe>  [N/A]
    <MSDQG32><LYLoadqr.exe>  [N/A]
驱动程序中[dddmrr0 / dddmrr02][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\dddmrr02.sys><N/A>
[fcdfadga / fcdfadga][Stopped/Boot Start]
  <\SystemRoot\system32\drivers\fcdfadga.sys><N/A>
[gotnae7 / gotnae75][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\gotnae75.sys><N/A>
[HOOKAPI / HOOKAPI][Stopped/Manual Start]
[jsdpp3 / jsdpp32][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jsdpp32.sys><N/A>
[jvwzwt1 / jvwzwt17][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jvwzwt17.sys><N/A>
[kivxdr / kivxdrv][Stopped/Boot Start]
  <\SystemRoot\System32\DRIVERS\kivxdrv.sys><N/A>
[koz4kdd12 / koz4kdd123][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\koz4kdd123.sys><N/A>
[kpghhr8 / kpghhr88][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\kpghhr88.sys><N/A>
[mseam / mseam][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\mseam.sys><N/A>
[mxdispdr / mxdispdr][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\mxdispdr.sys><N/A>
[rfbvfn5 / rfbvfn58][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\rfbvfn58.sys><N/A>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[tivxdr / tivxdrv][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\tivxdrv.sys><N/A>
[uf46 / uf46][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\uf46.sys><N/A>
[xdbgfg2 / xdbgfg25][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xdbgfg25.sys><N/A>
[xxsvjs6 / xxsvjs64][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xxsvjs64.sys><N/A>
正在运行的进程中的
[C:\WINDOWS\System32\msplrct.dll]  [N/A, ]
    [C:\WINDOWS\System32\winlib .dll]  [N/A, ]
    [C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\system.dat]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
    [C:\WINDOWS\System32\sqmapi32.dll]  [N/A, ]
    [C:\WINDOWS\System32\allatl.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[thpbku74 / thpbku74][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thpbku74.sys><>
[acpidisk / acpidisk][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\acpidisk.sys><N/A>
[nooxbbh / nooxbbh][Running/Disabled]
  <\??\C:\DOCUME~1\new\LOCALS~1\Temp\nooxbbhadq><N/A>
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]




gototop
 

先按一楼说的做,然后删除注册表中<xxsvjs64><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xxsvjs64.dll",Start>  []
    <xdbgfg25><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xdbgfg25.dll",Start>  []
    <thagz97><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\thagz97.dll",Start>  []
    <rfbvfn58><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\rfbvfn58.dll",Start>  []
    <kpghhr88><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\kpghhr88.dll",Start>  []
<MSDEG32><LYLoader.exe>  []
    <MSDWG32><LYLoadbr.exe>  [N/A]
    <MSDCG32    ><LYLeador.exe>  [N/A]
    <MSDOG32><LYLoador.exe>  [N/A]
    <MSDSG32><LYLoadar.exe>  [N/A]
    <MSDMG32><LYLoadmr.exe>  []
    <MSDHG32><LYLoadhr.exe>  [N/A]
    <MSDQG32><LYLoadqr.exe>  [N/A]
驱动程序中[dddmrr0 / dddmrr02][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\dddmrr02.sys><N/A>
[fcdfadga / fcdfadga][Stopped/Boot Start]
  <\SystemRoot\system32\drivers\fcdfadga.sys><N/A>
[gotnae7 / gotnae75][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\gotnae75.sys><N/A>
[HOOKAPI / HOOKAPI][Stopped/Manual Start]
[jsdpp3 / jsdpp32][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jsdpp32.sys><N/A>
[jvwzwt1 / jvwzwt17][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jvwzwt17.sys><N/A>
[kivxdr / kivxdrv][Stopped/Boot Start]
  <\SystemRoot\System32\DRIVERS\kivxdrv.sys><N/A>
[koz4kdd12 / koz4kdd123][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\koz4kdd123.sys><N/A>
[kpghhr8 / kpghhr88][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\kpghhr88.sys><N/A>
[mseam / mseam][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\mseam.sys><N/A>
[mxdispdr / mxdispdr][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\mxdispdr.sys><N/A>
[rfbvfn5 / rfbvfn58][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\rfbvfn58.sys><N/A>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[tivxdr / tivxdrv][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\tivxdrv.sys><N/A>
[uf46 / uf46][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\uf46.sys><N/A>
[xdbgfg2 / xdbgfg25][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xdbgfg25.sys><N/A>
[xxsvjs6 / xxsvjs64][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xxsvjs64.sys><N/A>
正在运行的进程中的
[C:\WINDOWS\System32\msplrct.dll]  [N/A, ]
    [C:\WINDOWS\System32\winlib .dll]  [N/A, ]
    [C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\system.dat]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
    [C:\WINDOWS\System32\sqmapi32.dll]  [N/A, ]
    [C:\WINDOWS\System32\allatl.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]


[thpbku74 / thpbku74][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thpbku74.sys><>
[acpidisk / acpidisk][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\acpidisk.sys><N/A>
[nooxbbh / nooxbbh][Running/Disabled]
  <\??\C:\DOCUME~1\new\LOCALS~1\Temp\nooxbbhadq><N/A>
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]




gototop
 

先按一楼说的做,然后删除注册表中<xxsvjs64><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xxsvjs64.dll",Start>  []
    <xdbgfg25><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xdbgfg25.dll",Start>  []
    <thagz97><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\thagz97.dll",Start>  []
    <rfbvfn58><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\rfbvfn58.dll",Start>  []
    <kpghhr88><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\kpghhr88.dll",Start>  []
<MSDEG32><LYLoader.exe>  []
    <MSDWG32><LYLoadbr.exe>  [N/A]
    <MSDCG32    ><LYLeador.exe>  [N/A]
    <MSDOG32><LYLoador.exe>  [N/A]
    <MSDSG32><LYLoadar.exe>  [N/A]
    <MSDMG32><LYLoadmr.exe>  []
    <MSDHG32><LYLoadhr.exe>  [N/A]
    <MSDQG32><LYLoadqr.exe>  [N/A]
驱动程序中[dddmrr0 / dddmrr02][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\dddmrr02.sys><N/A>
[fcdfadga / fcdfadga][Stopped/Boot Start]
  <\SystemRoot\system32\drivers\fcdfadga.sys><N/A>
[gotnae7 / gotnae75][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\gotnae75.sys><N/A>
[HOOKAPI / HOOKAPI][Stopped/Manual Start]
[jsdpp3 / jsdpp32][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jsdpp32.sys><N/A>
[jvwzwt1 / jvwzwt17][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\jvwzwt17.sys><N/A>
[kivxdr / kivxdrv][Stopped/Boot Start]
  <\SystemRoot\System32\DRIVERS\kivxdrv.sys><N/A>
[koz4kdd12 / koz4kdd123][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\koz4kdd123.sys><N/A>
[kpghhr8 / kpghhr88][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\kpghhr88.sys><N/A>
[mseam / mseam][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\mseam.sys><N/A>
[mxdispdr / mxdispdr][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\mxdispdr.sys><N/A>
[rfbvfn5 / rfbvfn58][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\rfbvfn58.sys><N/A>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
  <\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[tivxdr / tivxdrv][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\tivxdrv.sys><N/A>
[uf46 / uf46][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\uf46.sys><N/A>
[xdbgfg2 / xdbgfg25][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xdbgfg25.sys><N/A>
[xxsvjs6 / xxsvjs64][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\xxsvjs64.sys><N/A>
正在运行的进程中的
[C:\WINDOWS\System32\msplrct.dll]  [N/A, ]
    [C:\WINDOWS\System32\winlib .dll]  [N/A, ]
    [C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\system.dat]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
    [C:\WINDOWS\System32\sqmapi32.dll]  [N/A, ]
    [C:\WINDOWS\System32\allatl.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[thpbku74 / thpbku74][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\thpbku74.sys><>
[acpidisk / acpidisk][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\acpidisk.sys><N/A>
[nooxbbh / nooxbbh][Running/Disabled]
  <\??\C:\DOCUME~1\new\LOCALS~1\Temp\nooxbbhadq><N/A>
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]
[C:\WINDOWS\System32\allatl.dll]  [N/A, ]
    [C:\WINDOWS\System32\addrmshelp.dll]  [N/A, ]
[C:\WINDOWS\System32\qdshm.dll]  [N/A, ]




gototop
 

sorry,不知怎么就变这么多了
gototop
 

谢谢1楼和2楼的帮忙,我已经用WINDOWS清理助手删掉了CNNIC和其他一些流氓软件,现在系统启动后瑞星内存监控被禁用,手动也不能启用.又扫描了一个日志,请帮忙看一下~谢谢!

附件附件:

下载次数:94
文件类型:application/octet-stream
文件大小:
上传时间:2007-10-13 22:56:04
描述:

gototop
 

打开sreng
点击启动项目--服务--驱动程序-- 勾选“隐藏经认证的微软项目”
等待列表出来之后点击以下项目.然后选中下面的 “删除服务” 并单击设置按钮
在弹出的框中点“否”
[bjfkbd2 / bjfkbd20][Stopped/]
  <2 - 系统找不到指定的文件。
><N/A>
[dddmrr0 / dddmrr02][Stopped/]
  <2 - 系统找不到指定的文件。
><N/A>
[jsdpp3 / jsdpp32][Stopped/Boot Start]
  <2 - 系统找不到指定的文件。
><N/A>
[jvwzwt1 / jvwzwt17][Stopped/]
  <2 - 系统找不到指定的文件。
><N/A>
[koz4kdd12 / koz4kdd123][Stopped/Manual Start]
  <2 - 系统找不到指定的文件。
><N/A>
[kpghhr8 / kpghhr88][Stopped/]
  <2 - 系统找不到指定的文件。
><N/A>
[rfbvfn5 / rfbvfn58][Stopped/System Start]
  <2 - 系统找不到指定的文件。
><N/A>
[thagz9 / thagz97][Stopped/System Start]
  <2 - 系统找不到指定的文件。
><N/A>
[tivxdr / tivxdrv][Stopped/]
  <2 - 系统找不到指定的文件。
><N/A>
[xxsvjs6 / xxsvjs64][Stopped/Disabled]
  <2 - 系统找不到指定的文件。
><N/A>
gototop
 

安全模式杀
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT