1   1  /  1  页   跳转

请求帮忙

请求帮忙

电脑好象中毒了,但是用瑞星查不出来,下面是查毒记录,请各位帮忙,
Logfile of Kaka v2. 0. 0. 8 Scan Module v2. 0. 0. 0
Scan saved at 12:47:48, on 2006-03-25
Platform: Microsoft Windows XP Professional Service Pack 2 (Build 2600)
MSIE: Internet Explorer v6.00 SP2; (6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))


Running processes:
[smss.exe]
CommandLine =

[csrss.exe]
CommandLine = C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16

[winlogon.exe]
CommandLine = winlogon.exe

[services.exe]
CommandLine = C:\WINDOWS\system32\services.exe

[lsass.exe]
CommandLine = C:\WINDOWS\system32\lsass.exe

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k DcomLaunch

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k rpcss

[CCenter.exe]
CommandLine = "E:\Program Files\Rising\Rav\CCenter.exe"

[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k netsvcs

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k NetworkService

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k LocalService

[RavMonD.exe]
CommandLine = "E:\Program Files\Rising\Rav\Ravmond.exe"

[rfwsrv.exe]
CommandLine = "e:\program files\rising\rfw\rfwsrv.exe"

[spoolsv.exe]
CommandLine = C:\WINDOWS\system32\spoolsv.exe

[RavStub.exe]
CommandLine = "E:\Program Files\Rising\Rav\RavStub.exe" /RAVMOND

[rundll32.exe]
CommandLine = C:\WINDOWS\SYSTEM32\RUNDLL32.EXE C:\WINDOWS\SYSTEM32\WBEM\IRJIT.DLL,Export 1087

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k bthsvcs

[nvsvc32.exe]
CommandLine = C:\WINDOWS\system32\nvsvc32.exe

[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k imgsvc

[alg.exe]
CommandLine = C:\WINDOWS\System32\alg.exe

[Explorer.EXE]
CommandLine = C:\WINDOWS\Explorer.EXE

[STARCENTER.EXE]
CommandLine = "C:\Program Files\Starsoftcomm\StarCenter\StarCenter.exe"

[UpdTray.exe]
CommandLine = "C:\Program Files\Starsoftcomm\StarCenter\UpdTray.exe"

[VM303_STI.EXE]
CommandLine = "C:\WINDOWS\VM303_STI.EXE" BigDog301

[rundll32.exe]
CommandLine = "C:\WINDOWS\system32\rundll32.exe" bthprops.cpl,,BluetoothAuthenticationAgent

[RavTask.exe]
CommandLine = "E:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM

[RfwMain.exe]
CommandLine = "E:\Program Files\Rising\Rfw\rfwmain.exe" -Startup

[realsched.exe]
CommandLine = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

[ctfmon.exe]
CommandLine = "C:\WINDOWS\system32\ctfmon.exe"

[RavMon.exe]
CommandLine = "E:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM

[RsAgent.exe]
CommandLine = "E:\Program Files\Rising\Rav\RsAgent.exe"

[AGENTSVR.EXE]
CommandLine = C:\WINDOWS\msagent\AgentSvr.exe -Embedding

[KkScan.exe]
CommandLine = "E:\Rising\KkScan.exe"

[iexplore.exe]
CommandLine = "C:\Program Files\Internet Explorer\iexplore.exe"  -nohome
最后编辑2006-03-25 13:01:16
分享到:
gototop
 

【回复“?我是菜鸟”的帖子】
[rundll32.exe]
CommandLine = C:\WINDOWS\SYSTEM32\RUNDLL32.EXE C:\WINDOWS\SYSTEM32\WBEM\IRJIT.DLL,Export 1087
这一项有问题
C:\WINDOWS\SYSTEM32\WBEM\IRJIT.DLL调用了rundll32.exe
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT