1   1  /  1  页   跳转

高手们 先谢谢了 好长啊

高手们 先谢谢了 好长啊

浏览器总是出现错误报告
Logfile of HijackThis v1.99.1
Scan saved at 9:49:39, on 2006-8-2
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\杀毒\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\杀毒\Rising\Rav\Ravmond.exe
c:\杀毒\rising\rfw\rfwsrv.exe
C:\杀毒\Rising\Rav\RavStub.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
c:\杀毒\rising\rfw\RfwMain.exe
C:\Program Files\baigoo\bgoomain.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\WASAY\HOTKEY.EXE
C:\Program Files\Conexant\AccessRunner ADSL USB\CnxDslTb.exe
C:\杀毒\Rising\Rav\RavTask.exe
C:\杀毒\Rising\Rav\Ravmon.exe
C:\PROGRA~1\baigoo\bgoomain.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
E:\qq0\QQ\QQ.exe
E:\qq0\QQ\TIMPlatform.exe
E:\qq0\QQ\QQ.exe
E:\qq0\TT\TTraveler.exe
C:\杀毒\Rising\Rav\RsAgent.exe
C:\WINDOWS\msagent\AgentSvr.exe
F:\Program Files\FlashGet\Program\Thunder5.exe
C:\Documents and Settings\sky\桌面\HijackThis.exe

R3 - URLSearchHook: YOK Search Class - {88351CEF-BAC0-4A9B-8380-31A173E2926F} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll (file missing)
O2 - BHO: Ad Engine - {077FD0C3-1291-4104-A356-41E36B252682} - C:\Program Files\Yayad\AdCore.dll (file missing)
O2 - BHO: (no name) - {09869363-A812-4EBD-ADD6-D009015197E1} - C:\WINDOWS\System32\Nshlpg.dll (file missing)
O2 - BHO: Yahoo!Photo - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - C:\PROGRA~1\Yahoo!\ASSIST~1\assist\yphtb.dll
O2 - BHO: (no name) - {36E3F7C2-0EE3-4154-98C2-F050B67FD991} - C:\WINDOWS\System32\Qina.dll
O2 - BHO: (no name) - {5A055DA1-5E51-4C27-B7A4-93505DA87727} - C:\WINDOWS\System32\Tznxee.dll (file missing)
O2 - BHO: 珊瑚虫工具栏 - {75FE2B5A-D3A4-4EFA-AC11-ADC9C9459688} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll (file missing)
O2 - BHO: bg - {7BDAF75A-0D6F-4F50-AFE9-333D08DF4005} - C:\Program Files\baigoo\BGooBHO.dll
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - F:\Program Files\FlashGet\ComDlls\XunLeiBHO_002.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MAngle Class - {9A556B8F-FD02-420E-A1FD-9DB33808254E} - C:\Program Files\MySec\secmouseaai.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - F:\PROGRA~1\FLASHGET\jccatch.dll (file missing)
O2 - BHO: MFCOptimizeClass Object - {A6CEA0E7-6B4D-4CD9-9932-D85705CBC1A9} - C:\WINDOWS\System32\pmkjj.dll
O2 - BHO: DownloadBHO T2BHO - {B1D147E7-873E-4909-8127-695D9BB78728} - C:\WINDOWS\Downloaded Program Files\barhelp24.0.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\zh-cn\msntb.dll
O2 - BHO: (no name) - {CF2464EB-AE06-42A7-BFB7-A9B22344DE95} - C:\DOCUME~1\sky\APPLIC~1\GIGANO~1\IE_HEL~1.DLL
O2 - BHO: (no name) - {D6725EDA-828E-43A4-B27B-71FBB91A602C} - C:\WINDOWS\System32\Hhon.dll (file missing)
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - F:\PROGRA~1\FLASHGET\fgiebar.dll (file missing)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\zh-cn\msntb.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [default] C:\TS\DVBFILE\DVBFILE.EXE
O4 - HKLM\..\Run: [HotKey] C:\WINDOWS\WASAY\HOTKEY.EXE
O4 - HKLM\..\Run: [ItMonitor] C:\WINDOWS\WASAY\MONITOR.EXE
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\Conexant\AccessRunner ADSL USB\CnxDslTb.exe" "Conexant\AccessRunner ADSL USB"
O4 - HKLM\..\Run: [RavTask] "C:\杀毒\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [RfwMain] "C:\杀毒\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [bgoomain.exe] C:\PROGRA~1\baigoo\bgoomain.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [pyjj] C:\Program Files\jj4\jjsvr4.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: !直接打开链接 - res://C:\Program Files\MySec\secmouseaai.dll/seopenurl.html
O8 - Extra context menu item: &使用迅雷下载 - F:\Program Files\FlashGet\Program\GetUrl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - F:\Program Files\FlashGet\Program\GetAllUrl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - E:\qq0\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 使用百度搜索 - res://C:\Program Files\MySec\secmouseaai.dll/sesch_bd.html
O8 - Extra context menu item: 使用网际快车下载 - F:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - F:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: 加入365MY收藏夹(&U) - http://www.365my.com/rclick/add_url.php
O8 - Extra context menu item: 加入365MY网摘(&N) - http://www.365my.com/rclick/add_net.php
O8 - Extra context menu item: 添加到QQ自定义面板 - E:\qq0\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - E:\qq0\QQ\AddEmotion.htm
O8 - Extra context menu item: 添加到雅虎订阅(&Y) - res://C:\PROGRA~1\Yahoo!\ASSIST~1\assist\yrss.dll/YRSSMENUEXT
O8 - Extra context menu item: 珊瑚虫搜索 - C:\Program Files\YOK.com\SuperSearch\yoksch.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - E:\qq0\QQ\SendMMS.htm
O8 - Extra context menu item: 解霸实时播放 - C:\HEROSOFT\Hero3000\MPURLGET.HTM
最后编辑2006-08-02 21:02:10
分享到:
gototop
 

修复
R3 - URLSearchHook: YOK Search Class - {88351CEF-BAC0-4A9B-8380-31A173E2926F} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll (file missing)
O2 - BHO: Ad Engine - {077FD0C3-1291-4104-A356-41E36B252682} - C:\Program Files\Yayad\AdCore.dll (file missing)
O2 - BHO: (no name) - {09869363-A812-4EBD-ADD6-D009015197E1} - C:\WINDOWS\System32\Nshlpg.dll (file missing)
O2 - BHO: Yahoo!Photo - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - C:\PROGRA~1\Yahoo!\ASSIST~1\assist\yphtb.dll
O2 - BHO: (no name) - {5A055DA1-5E51-4C27-B7A4-93505DA87727} - C:\WINDOWS\System32\Tznxee.dll (file missing)
O2 - BHO: 珊瑚虫工具栏 - {75FE2B5A-D3A4-4EFA-AC11-ADC9C9459688} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll (file missing)
O2 - BHO: bg - {7BDAF75A-0D6F-4F50-AFE9-333D08DF4005} - C:\Program Files\baigoo\BGooBHO.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MAngle Class - {9A556B8F-FD02-420E-A1FD-9DB33808254E} - C:\Program Files\MySec\secmouseaai.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - F:\PROGRA~1\FLASHGET\jccatch.dll (file missing)
O2 - BHO: MFCOptimizeClass Object - {A6CEA0E7-6B4D-4CD9-9932-D85705CBC1A9} - C:\WINDOWS\System32\pmkjj.dll
O2 - BHO: DownloadBHO T2BHO - {B1D147E7-873E-4909-8127-695D9BB78728} - C:\WINDOWS\Downloaded Program Files\barhelp24.0.dll
O2 - BHO: (no name) - {D6725EDA-828E-43A4-B27B-71FBB91A602C} - C:\WINDOWS\System32\Hhon.dll (file missing)
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - F:\PROGRA~1\FLASHGET\fgiebar.dll (file missing)
O4 - HKLM\..\Run: [bgoomain.exe] C:\PROGRA~1\baigoo\bgoomain.exe
O8 - Extra context menu item: 珊瑚虫搜索 - C:\Program Files\YOK.com\SuperSearch\yoksch.htm



删除文件
C:\PROGRA~1\Yahoo!\ASSIST~1\assist\yphtb.dll
C:\Program Files\baigoo\BGooBHO.dll
C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
C:\Program Files\MySec\secmouseaai.dll
C:\WINDOWS\System32\pmkjj.dll
C:\WINDOWS\Downloaded Program Files\barhelp24.0.dll
C:\Program Files\YOK.com\SuperSearch\yoksch.htm



删除完之后建议到http://www.pctutu.com/download.asp
下载超级兔子
下载后安装
运行超级兔子
运行超级兔子清理王
将显示的流氓软件根据提示卸掉
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT