瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 HijackThis扫描结果,高手帮忙分析,谢谢!

1   1  /  1  页   跳转

HijackThis扫描结果,高手帮忙分析,谢谢!

HijackThis扫描结果,高手帮忙分析,谢谢!

下了一个自动聊天器后,就老是有广告的网址弹出,右下角也时不时跳出广告,,杀毒软件扫描后也显示没病毒!烦死了。
Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\spoolsv.exe
C:\windows\Explorer.EXE
C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
C:\Program Files\下载软件\记时器\ic.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe
C:\windows\system32\Rundll32.exe
C:\WINDOWS\htqd.exe
C:\windows\system32\ctfmon.exe
C:\Documents and Settings\User\桌面\TheWorld.exe
C:\windows\system32\RunDll32.exe
C:\windows\diskman.exe
D:\download\杀毒类\HijackThis\HijackThis.exe

O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\windows\system32\xunleibho_v8.dll
O2 - BHO: BHelper - {8A4280AD-9B37-4922-A51D-73F3C3A32AF7} - C:\windows\system32\msibm\cfsbho.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll
O4 - HKLM\..\Run: [netmon.exe] C:\Program Files\下载软件\记时器\ic.exe
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe
O4 - HKLM\..\Run: [QLog] D:\tool\新建文件夹\QLog.exe
O4 - HKLM\..\Run: [PSDll] Rundll32 "C:\windows\system32\psdll.dll",Start
O4 - HKLM\..\Run: [DTService] rundll32.exe C:\DOCUME~1\User\LOCALS~1\Temp\RarSFX1\DTSERV~1.DLL,Load
O4 - HKLM\..\Run: [WindowsUpdate] C:\windows\system32\WindowsUpdate.exe
O4 - HKLM\..\Run: [HT] C:\WINDOWS\htqd.exe
O4 - HKLM\..\Run: [Update] C:\windows\system32\Update.exe
O4 - HKLM\..\Run: [miphone] C:\Program Files\Miphone\mf.exe /auto
O4 - HKLM\..\Run: [mscfs] RUNDLL32 C:\windows\system32\msibm\cfsys.dll,cfs
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe
O8 - Extra context menu item: &使用迅雷下载 - C:\安装\迅雷\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\安装\迅雷\getallurl.htm
O8 - Extra context menu item: 使用网际快车下载 - C:\PROGRA~1\FLASHGET\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - C:\PROGRA~1\FLASHGET\jc_all.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://D:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - C:\Program Files\Tencent\QQ去广告显IP约会版\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\QQ去广告显IP约会版\AddEmotion.htm
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - D:\Program Files\浩方\GameClient.exe (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\windows\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\windows\web\related.htm (file missing)
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe
O16 - DPF: {0400AC1C-EEF0-4638-A501-31D5A0DC2002} (VTPlug3 Class) - http://61.129.90.93:1995/VTrans.cab
O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) - http://202.101.62.196:1995/talk.cab
O16 - DPF: {88734439-46D0-42C0-A13F-7E881EE550CF} - http://pimg.163.com/club/vchat/filetran.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{CD121C1B-ABDF-4B16-8C57-4E22BD7CAA05}: NameServer = 202.96.128.86 202.96.128.166
O18 - Protocol: koboo - {7DEE9D05-FA0A-4416-A6F3-6537D0EAB6A6} - C:\windows\system32\mbprot.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: DefWatch - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: Universal Disk Manager - Unknown owner - C:\windows\diskman.exe
最后编辑2005-10-24 09:25:50
分享到:
gototop
 

问题已解决,感谢ing!
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT