1   1  /  1  页   跳转

winipsec.exe 篡改主页.!

winipsec.exe 篡改主页.!

不是病毒.
c:/windows/system32/winipsec.exe    Urlclient module.

[WINIPSEC.EXE]
PID = 0x9ac
CommandLine = C:\WINDOWS\system32\winipsec.exe -Embedding
    winipsec.exe
    0x400000
    C:\WINDOWS\system32\winipsec.exe
    1, 0, 0, 1
   
    UrlClient Module
    2002-10-27 08:00:00

    ntdll.dll
    0x7c920000
    C:\WINDOWS\system32\ntdll.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    NT Layer DLL
    2004-08-16 16:38:38

    kernel32.dll
    0x7c800000
    C:\WINDOWS\system32\kernel32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT BASE API Client DLL
    2004-08-16 16:38:52

    ADVAPI32.dll
    0x77da0000
    C:\WINDOWS\system32\advapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Advanced Windows 32 Base API
    2004-08-16 16:38:42

    RPCRT4.dll
    0x77e50000
    C:\WINDOWS\system32\rpcrt4.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Procedure Call Runtime
    2004-08-16 16:39:02

    ATL.DLL
    0x76af0000
    C:\WINDOWS\system32\atl.dll
    3.05.2284
    Microsoft Corporation
    ATL Module for Windows XP (Unicode)
    2004-08-16 16:38:42

    msvcrt.dll
    0x77be0000
    C:\WINDOWS\system32\msvcrt.dll
    7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT CRT DLL
    2004-08-16 16:38:58

    USER32.dll
    0x77d10000
    C:\WINDOWS\system32\user32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows XP USER API Client DLL
    2004-08-16 16:39:08

    GDI32.dll
    0x77ef0000
    C:\WINDOWS\system32\gdi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    GDI Client DLL
    2004-08-16 16:38:50

    ole32.dll
    0x76990000
    C:\WINDOWS\system32\ole32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft OLE for Windows
    2004-08-16 16:39:00

    OLEAUT32.dll
    0x770f0000
    C:\WINDOWS\system32\oleaut32.dll
    5.1.2600.2180
    Microsoft Corporation
   
    2004-08-16 16:39:00

    WININET.dll
    0x76680000
    C:\WINDOWS\system32\wininet.dll
    6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Internet Extensions for Win32
    2004-08-16 16:39:10

    SHLWAPI.dll
    0x77f40000
    C:\WINDOWS\system32\shlwapi.dll
    6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Shell Light-weight Utility Library
    2004-08-16 16:39:04

    CRYPT32.dll
    0x765e0000
    C:\WINDOWS\system32\crypt32.dll
    5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Crypto API32
    2004-08-16 16:38:44

    MSASN1.dll
    0x76db0000
    C:\WINDOWS\system32\msasn1.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    ASN.1 Runtime APIs
    2004-08-16 16:38:56

    WINMM.dll
    0x76b10000
    C:\WINDOWS\system32\winmm.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    MCI API DLL
    2004-08-16 16:39:10

    WS2_32.dll
    0x71a20000
    C:\WINDOWS\system32\ws2_32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Socket 2.0 32-Bit DLL
    2004-08-16 16:39:10

    WS2HELP.dll
    0x71a10000
    C:\WINDOWS\system32\ws2help.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Socket 2.0 Helper for Windows NT
    2004-08-16 16:39:10

    IMM32.DLL
    0x76300000
    C:\WINDOWS\system32\imm32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows XP IMM32 API Client DLL
    2004-08-16 16:38:52

    LPK.DLL
    0x62c20000
    C:\WINDOWS\system32\lpk.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Language Pack
    2004-08-16 16:38:54

    USP10.dll
    0x73fa0000
    C:\WINDOWS\system32\usp10.dll
    1.0420.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Uniscribe Unicode script processor
    2004-08-16 16:39:08

    comctl32.dll
    0x77180000
    C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
    6.0 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    User Experience Controls Library
    2004-08-16 16:37:24

    uxtheme.dll
    0x5adc0000
    C:\WINDOWS\system32\uxtheme.dll
    6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft UxTheme Library
    2004-08-16 16:39:08

    xpsp2res.dll
    0x20000000
    C:\WINDOWS\system32\xpsp2res.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Service Pack 2 Messages
    2004-08-16 16:38:24

    Secur32.dll
    0x77fc0000
    C:\WINDOWS\system32\secur32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Security Support Provider Interface
    2004-08-16 16:39:04

    shell32.dll
    0x773a0000
    C:\WINDOWS\system32\shell32.dll
    6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Shell Common Dll
    2004-08-16 16:39:04

    comctl32.dll
    0x5d170000
    C:\WINDOWS\system32\comctl32.dll
    5.82 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Common Controls Library
    2004-08-16 16:38:44

    urlmon.dll
    0x75c60000
    C:\WINDOWS\system32\urlmon.dll
    6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    OLE32 Extensions for Win32
    2004-08-16 16:39:08

    VERSION.dll
    0x77bd0000
    C:\WINDOWS\system32\version.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Version Checking and File Installation Libraries
    2004-08-16 16:39:08

    wsock32.dll
    0x71a40000
    C:\WINDOWS\system32\wsock32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Socket 32-Bit DLL
    2004-08-16 16:39:10

    RASAPI32.DLL
    0x76eb0000
    C:\WINDOWS\system32\rasapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Access API
    2004-08-16 16:39:02

    rasman.dll
    0x76e60000
    C:\WINDOWS\system32\rasman.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Access Connection Manager
    2004-08-16 16:39:02

    NETAPI32.dll
    0x5fdd0000
    C:\WINDOWS\system32\netapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Net Win32 API DLL
    2004-08-16 16:38:58

    TAPI32.dll
    0x76e80000
    C:\WINDOWS\system32\tapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft(R) Windows(TM) Telephony API Client DLL
    2004-08-16 16:39:08

    rtutils.dll
    0x76e50000
    C:\WINDOWS\system32\rtutils.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Routing Utilities
    2004-08-16 16:39:02

    msv1_0.dll
    0x77c40000
    C:\WINDOWS\system32\msv1_0.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft Authentication Package v1.0
    2004-08-16 16:38:58

    iphlpapi.dll
    0x76d30000
    C:\WINDOWS\system32\iphlpapi.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    IP Helper API
    2004-08-16 16:38:52

    sensapi.dll
    0x72240000
    C:\WINDOWS\system32\sensapi.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    SENS Connectivity API DLL
    2004-08-16 16:39:04

    USERENV.dll
    0x759d0000
    C:\WINDOWS\system32\userenv.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Userenv
    2004-08-16 16:39:08

    mswsock.dll
    0x719c0000
    C:\WINDOWS\system32\mswsock.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft Windows Sockets 2.0 Service Provider
    2004-08-16 16:38:58

    DNSAPI.dll
    0x76ef0000
    C:\WINDOWS\system32\dnsapi.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    DNS Client API DLL
    2004-08-16 16:38:46

    rasadhlp.dll
    0x76f90000
    C:\WINDOWS\system32\rasadhlp.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Access AutoDial Helper
    2004-08-16 16:39:02

    hnetcfg.dll
    0x60fd0000
    C:\WINDOWS\system32\hnetcfg.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Home Networking Configuration Manager
    2004-08-16 16:38:50

    wshtcpip.dll
    0x71a00000
    C:\WINDOWS\system32\wshtcpip.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Sockets Helper DLL
    2004-08-16 16:39:10

    CLBCATQ.DLL
    0x76fa0000
    C:\WINDOWS\system32\clbcatq.dll
    2001.12.4414.258
    Microsoft Corporation
   
    2004-08-16 16:38:44

    COMRes.dll
    0x77020000
    C:\WINDOWS\system32\comres.dll
    2001.12.4414.258
    Microsoft Corporation
   
    2004-08-16 16:38:44

    SXS.DLL
    0x75e00000
    C:\WINDOWS\system32\sxs.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Fusion 2.5
    2004-08-16 16:39:06

    MSCTF.dll
    0x74680000
    C:\WINDOWS\system32\msctf.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    MSCTF Server DLL
    2004-08-16 16:38:56
最后编辑2006-08-13 17:52:10.890000000
分享到:
gototop
 

请下载Hijackthis1.99.1汉化包扫描后粘贴上来
到我的网络E盘绿色软件下载:
http://free5.ys168.com/?ufwihgu168
gototop
 

Hijackthis1.99.1 怎么用?  ..我一打开它就自动退出了..
gototop
 

用它进行扫描,怎么会一打开就自动退了呢?如果你下载的是压缩包就先把它解压.
gototop
 

引用:
【PrinceLdf的贴子】Hijackthis1.99.1 怎么用?  ..我一打开它就自动退出了..
………………



解压后

先运行Hijackthis1,弹出对话框.确定
扫描系统并保存日志

附件附件:

下载次数:163
文件类型:application/octet-stream
文件大小:
上传时间:2006-8-13 17:52:10
描述:



gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT