1   1  /  1  页   跳转

浏览器主页被霸占了~~~帮忙

浏览器主页被霸占了~~~帮忙

浏览器主页改来改去还是不行。。为什么啊
最后编辑2006-01-28 15:58:15
分享到:
gototop
 

【回复“颖思幻”的帖子】



请您先下载HijackThis1.99.1(它是免费的):

http://www.spywareinfo.com/~merijn/files/hijackthis.zip
将它解压到一个非临时性的文件夹(比如C:\Program Files\HijackThis\HijackThis.exe)。然后双击HijackThis.exe图标,选择Do a system scan and save a logfile,将产生的文本文件中的日志贴上来。如果一个帖子贴不下,可以将剩余的部分另开一帖。
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at 15:06:48, on 2006-1-28
Platform: Windows XP  (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\VM_STI.EXE
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\system\system\sys.exe
C:\Program Files\Internet Explorer\PLUGINS\SVCHOST.exe
C:\WINDOWS\System32\ctfmon.exe
E:\Program Files\Tencent\QQ\QQ.exe
C:\WINDOWS\SVCHOST.exe
E:\Program Files\Tencent\QQ\TIMPlatform.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
e:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\wjh\LOCALS~1\Temp\Rar$EX00.969\HijackThis.exe

R3 - URLSearchHook: (no name) - <default> - (no file)
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - C:\Program Files\P4P\sodaie.dll (file missing)
O2 - BHO: QQBrowserHelperObject Class - {54EBD53A-9BC1-480B-966A-843A333CA162} - E:\Program Files\Tencent\QQ\QQIEHelper.dll
O2 - BHO: Accoona Search Assistant - {944864A5-3916-46E2-96A9-A2E84F3F1208} - C:\Program Files\Accoona\ASearchAssist.dll (file missing)
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE USB PC Camera 301P
O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [NMGameX_AutoRun] C:\WINDOWS\System32\Rundll32.exe NMGameX.dll,LiveProcess /aa
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [Winrar] C:\Program Files\system\system\sys2.exe
O4 - HKLM\..\Run: [system] C:\Program Files\system\system\sys.exe
O4 - HKLM\..\Run: [Str3] hongqt
O4 - HKLM\..\Run: [LongData] 焼
O4 - HKLM\..\Run: [BinaryData] "3D梯
O4 - HKLM\..\Run: [Update] C:\Program Files\Common Files\UPDATE\Update.exe
O4 - HKLM\..\Run: [SVCHOST] C:\Program Files\Internet Explorer\PLUGINS\SVCHOST.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: 腾讯QQ.lnk = E:\Program Files\Tencent\QQ\QQ.exe
O8 - Extra context menu item: 上传到QQ网络硬盘 - E:\Program Files\Tencent\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - E:\Program Files\Tencent\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - E:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - Extra context menu item: 火狐Flash保存 - e:\Program Files\FoxFlashplayer\PlugIns\GetFlash.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - E:\Program Files\Tencent\QQ\SendMMS.htm
O8 - Extra context menu item: 电鹰搜索 - res://c:\windows\system32\dytoolband.dll/MENUSEARCH.HTM
O9 - Extra button: 新浪UC - {2253922F-1B26-4C74-8B57-E3AEE748DBB8} - e:\Program Files\sina\UC\uc.exe
O9 - Extra button: 信息检索 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - E:\Program Files\Tencent\QQ\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - E:\Program Files\Tencent\QQ\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - E:\Program Files\Tencent\QQ\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - E:\Program Files\Tencent\QQ\QQIEHelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{132A44A1-ED94-4D49-A20B-01621F934849}: NameServer = 111.112.113.114,211.212.213.214
O17 - HKLM\System\CCS\Services\Tcpip\..\{349B0867-AFBA-41DE-A064-2B9D4F73C884}: NameServer = 61.187.98.3 202.103.96.68
O17 - HKLM\System\CS1\Services\Tcpip\..\{132A44A1-ED94-4D49-A20B-01621F934849}: NameServer = 111.112.113.114,211.212.213.214
O17 - HKLM\System\CS2\Services\Tcpip\..\{132A44A1-ED94-4D49-A20B-01621F934849}: NameServer = 111.112.113.114,211.212.213.214
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: Network System (Universal Disk Manager) - Unknown owner - C:\Program Files\Common Files\COMM\Network.exe (file missing)

gototop
 

【回复“颖思幻”的帖子】



清空IE临时文件,暂时关闭系统还原。重新启动至安全模式,关闭所有不必要的窗口,使用HijackThis扫描后修复(在需要修复的项目前面打对勾,然后按“Fix checked”或“修复”,修复前会询问您是否需要备份,请选择“Yes”或“是”):
R3 - URLSearchHook: (no name) - <default> - (no file)
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - C:\Program Files\P4P\sodaie.dll (file missing)
O2 - BHO: Accoona Search Assistant - {944864A5-3916-46E2-96A9-A2E84F3F1208} - C:\Program Files\Accoona\ASearchAssist.dll (file missing)
O4 - HKLM\..\Run: [Winrar] C:\Program Files\system\system\sys2.exe
O4 - HKLM\..\Run: [system] C:\Program Files\system\system\sys.exe
O4 - HKLM\..\Run: [Str3] hongqt
O4 - HKLM\..\Run: [LongData] 焼
O4 - HKLM\..\Run: [BinaryData] "3D梯
O4 - HKLM\..\Run: [Update] C:\Program Files\Common Files\UPDATE\Update.exe
O4 - HKLM\..\Run: [SVCHOST] C:\Program Files\Internet Explorer\PLUGINS\SVCHOST.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{132A44A1-ED94-4D49-A20B-01621F934849}: NameServer = 111.112.113.114,211.212.213.214
O17 - HKLM\System\CS1\Services\Tcpip\..\{132A44A1-ED94-4D49-A20B-01621F934849}: NameServer = 111.112.113.114,211.212.213.214
O17 - HKLM\System\CS2\Services\Tcpip\..\{132A44A1-ED94-4D49-A20B-01621F934849}: NameServer = 111.112.113.114,211.212.213.214
重新启动计算机,显示隐藏文件和系统文件,删除(如果存在的话):
C:\Program Files\system文件夹
C:\Program Files\Common Files\UPDATE文件夹
C:\Program Files\Internet Explorer\PLUGINS\SVCHOST.exe
待修复完成,如果问题依旧,请继续跟帖说明情况。
以上建议仅供参考,如果您认识其中的一些设置抑或是您的手动设置,就不必执行。
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT