瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 各位大哥大姐,小弟十万分火急啊谢谢了

12   1  /  2  页   跳转

各位大哥大姐,小弟十万分火急啊谢谢了

各位大哥大姐,小弟十万分火急啊谢谢了

大哥大姐大家好,小弟的计算机最近几天变得好慢,而且今天开机时自动登陆的qq也好慢,机子处于死机状态,单击啥都不管事,而且好多软件都大不开,桌面上的快捷方式一个都不能用,就好像死机,请问我的计算机是啥原因啊???????求救啊 ??谢谢了。小弟在线等待。。
最后编辑2005-11-23 02:28:44
分享到:
gototop
 

小第我是菜鸟,断网后,点击那个瑞星后,就不动了,好像死机了,以后重启后,就不能用了
gototop
 

Logfile of HijackThis v1.99.2
Scan saved at 0:36:02, on 2005-11-23
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\PROGRA~1\MICROS~2\MSSQL\binn\sqlservr.exe
E:\oracle\ora90\Apache\Apache\Apache.exe
D:\P4P\p2psvr.exe
F:\WINDOWS\Explorer.EXE
D:\CollabRuntime\bin\xmppd-jse8.exe
F:\WINDOWS\System32\Rundll32.exe
F:\WINDOWS\System32\igfxtray.exe
F:\WINDOWS\System32\hkcmd.exe
F:\WINDOWS\System32\igfxpers.exe
D:\CyberLink\PowerDVD\PDVDServ.exe
F:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
F:\Program Files\Common Files\Real\Update_OB\realsched.exe
F:\WINDOWS\System32\NTdhcp.exe
F:\WINDOWS\System32\ctfmon.exe
F:\Program Files\Messenger\msmsgs.exe
F:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
E:\oracle\ora90\Apache\jdk\bin\java.exe
E:\oracle\ora90\Apache\Apache\Apache.exe
F:\WINDOWS\System32\wuauclt.exe
F:\Program Files\Sandai Technologies Inc\Thunder\Thunder.exe
d:\Program Files\rising\Rav\RsAgent.exe
F:\WINDOWS\msagent\AgentSvr.exe
F:\WINDOWS\System32\RUNDLL32.exe
F:\WINDOWS\System32\RUNDLL32.exe
F:\Program Files\Internet Explorer\iexplore.exe
F:\Program Files\WinRAR\WinRAR.exe
F:\DOCUME~1\zxj\LOCALS~1\Temp\HijackThis.exe
F:\WINDOWS\System32\Rundll32.exe
F:\WINDOWS\System32\Rundll32.exe

R3 - Default URLSearchHook is missing
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - F:\WINDOWS\System32\xunleibho_v5.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\阅亩读寥软砑件\Reader\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - D:\P4P\sodaie.dll
O2 - BHO: QQBrowserHelperObject Class - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\qq\QQIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - f:\program files\google\googletoolbar2.dll
O2 - BHO: BrowserHAP Class - {AEF6F648-78D8-4456-BEE7-5ADE23D209FD} - F:\Program Files\HBClient\hapast.dll
O2 - BHO: T2BHO Class - {B1D147E7-873E-4909-8127-695D9BB78728} - F:\WINDOWS\Downloaded Program Files\barhelp22.0.dll
O2 - BHO: BDHlprObj Class - {CA92B524-BC8A-4610-BD2C-6BD3E28155D0} - F:\WINDOWS\DOWNLO~1\BDHelper.dll
O2 - BHO: YiSou - {EF1D17A9-089F-40cc-8D64-7324CDEBA0DB} - F:\PROGRA~1\YiSou\yisoub.dll
O3 - Toolbar: 金山快译(&K) - {6C3797D2-3FEF-4cd4-B654-D3AE55B4128C} - D:\金山快译\IEBand.dll
O3 - Toolbar: 九寻搜索 - {3E3DB7F8-B26E-4A20-9749-CD3A92544108} - F:\WINDOWS\Downloaded Program Files\YDMusic.dll
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\msdxm.ocx (file missing)
O3 - Toolbar: 搜狗直通车 - {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} - D:\P4P\ToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - f:\program files\google\googletoolbar2.dll
O3 - Toolbar: 一搜工具条 - {115F6E46-FCBC-41ed-B3B5-3BDDD4AAB5E5} - F:\Program Files\YiSou\yisou.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "F:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] F:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] F:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [IgfxTray] F:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] F:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] F:\WINDOWS\System32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [RemoteControl] d:\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [zcom] E:\娱乐文件\舅舅\申晓娟\MTV\zcom\zPlatform.exe MIN
O4 - HKLM\..\Run: [SunJavaUpdateSched] F:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [MS-4011 Memory Patch] E:\娱乐文件\舅舅\申光耀\病毒专杀\专杀工具.exe -Patch
O4 - HKLM\..\Run: [BIE] Rundll32 F:\WINDOWS\DOWNLO~1\BDPlugin.dll,Rundll32
O4 - HKLM\..\Run: [TkBellExe] "F:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [CdnCtr] F:\Program Files\CNNIC\Cdn\cdnup.exe
O4 - HKLM\..\Run: [NTdhcp] F:\WINDOWS\System32\NTdhcp.exe
O4 - HKLM\..\Run: [RavTimer] D:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [RavMon] D:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKLM\..\Run: [迅雷4] F:\Program Files\Sandai Technologies Inc\Thunder\TDUpdate.exe
O4 - HKLM\..\Run: [hbpassport] F:\PROGRA~1\HBClient\hbast.exe
O4 - HKCU\..\Run: [ctfmon.exe] F:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "F:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: 腾讯QQ.lnk = D:\qq\QQ.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = F:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = D:\office2000\Office\OSA9.EXE
O4 - Global Startup: 服务管理器.lnk = F:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: !搜一搜(&S) - res://F:\Program Files\YiSou\yisou.dll/232
O8 - Extra context menu item: &使用迅雷下载 - F:\Program Files\Sandai Technologies Inc\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - F:\Program Files\Sandai Technologies Inc\Thunder\getAllurl.htm
O8 - Extra context menu item: Edit with &XML Spy - F:\Program Files\Altova\XMLSPY2004\spy.htm
O8 - Extra context menu item: Google 搜索(&G) - res://F:\Program Files\Google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: 使用搜狗直通车下载 - D:\P4P\dl.htm
O8 - Extra context menu item: 反向链接 - res://F:\Program Files\Google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: 发送图片到手机 - D:\P4P\cx.htm
O8 - Extra context menu item: 导入当前页到超星阅览器(&A) - D:\SSREADER36\ss_all.htm
O8 - Extra context menu item: 导入选中部分到超星阅览器(&S) - D:\SSREADER36\ss_select.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\qq\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\qq\SendMMS.htm
O8 - Extra context menu item: 类似网页 - res://F:\Program Files\Google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: 缓存的网页快照 - res://F:\Program Files\Google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: 翻译英文字词(&T) - res://F:\Program Files\Google\GoogleToolbar2.dll/cmwordtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java 控制台 - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: 我的订阅 - {8755CE6E-0BF7-4441-8751-FB728941B0B4} - D:\P4P\rss.dll
O9 - Extra button: SoQ - {8F67DCF3-B1DF-4A39-A787-3775784BF737} - http://www.soq.com (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - F:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - F:\WINDOWS\web\related.htm
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\qq\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\qq\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\qq\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\qq\QQIEHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: Edit with XML Spy - {2222EF56-F49E-4d07-A14E-8D2B08766958} - F:\Program Files\Altova\XMLSPY2004\spy.htm (HKCU)
O9 - Extra 'Tools' menuitem: Edit with XML Spy - {2222EF56-F49E-4d07-A14E-8D2B08766958} - F:\Program Files\Altova\XMLSPY2004\spy.htm (HKCU)
O16 - DPF: {3E3DB7F8-B26E-4A20-9749-CD3A92544108} (九寻搜索) - http://www.9xun.com/ydtools/NewPack/YDMusic.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/159fee8846258a854916/netzip/RdxIE601_cn.cab
O16 - DPF: {56A7DC70-E102-4408-A34A-AE06FEF01586} (天下搜索) - http://iebar.t2t2.com/iebar.cab
O20 - AppInit_DLLs: F:\WINDOWS\System32\SoDAHK.DLL
O20 - Winlogon Notify: igfxcui - F:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - F:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - F:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Oracle OLAP 9.0.1.0.1 (OLAPServer) - Oracle Corporation - E:\oracle\ora90\bin\xsolap.exe
O23 - Service: Oracle OLAP Agent - Unknown owner - E:\oracle\ora90\bin\xsaagent.exe
O23 - Service: OracleOraHome90Agent - Oracle Corporation - E:\oracle\ora90\bin\agntsrvc.exe
O23 - Service: OracleOraHome90ClientCache - Unknown owner - E:\oracle\ora90\BIN\ONRSD.EXE
O23 - Service: OracleOraHome90HTTPServer - Unknown owner - E:\oracle\ora90\Apache\Apache\Apache.exe
O23 - Service: OracleOraHome90PagingServer - Unknown owner - E:\oracle\ora90/bin/pagntsrv.exe
O23 - Service: OracleOraHome90SNMPPeerEncapsulator - Unknown owner - E:\oracle\ora90\BIN\ENCSVC.EXE
O23 - Service: OracleOraHome90SNMPPeerMasterAgent - Unknown owner - E:\oracle\ora90\BIN\AGNTSVC.EXE
O23 - Service: OracleOraHome90TNSListener - Unknown owner - E:\oracle\ora90\BIN\TNSLSNR.exe
O23 - Service: OracleServiceORCL - Oracle Corporation - e:\oracle\ora90\bin\ORACLE.EXE
O23 - Service: P4P Service - Sohu.com Inc. - D:\P4P\p2psvr.exe
O23 - Service: Apache Tomcat (Tomcat5) - Apache Software Foundation - F:\Program Files\Apache Software Foundation\Tomcat 5.0\bin\tomcat.exe
O23 - Service: Collaboration Runtime (xmppd-jse8) - Unknown owner - D:\CollabRuntime\bin\xmppd-jse8.exe
O23 - Service: Visibroker Smart Agent (xsSmartAgent) - Unknown owner - E:\oracle\ora90\bin\osagent.exe

gototop
 

大哥你看是不是这个,但哦看不懂啊??您看能指教一下,谢谢了
gototop
 

我一点击那个瑞星杀毒后的快捷方式后,只是那个瑞星杀毒的界面闪一下,就不见了。而且其他的快捷方式也都不管事了。打开任务管理器后,看不到瑞星的应用程序在运行,为啥啊???谢谢
gototop
 

大哥,你说的那个修复,是啥意思,我也是头一会遇到这事,以前没接干过这事,还麻烦你给说下,还有那个安全莫式,是重启按F8吧,谢谢
gototop
 

大哥那个删除不让我删啊,说访问被拒绝啊
gototop
 

啊,大我得跟你联系啊,不的不连接互连网,我的qq设的自动的,刚才我才看到你的信息我是不是又完了啊
gototop
 

对了,刚才断网后,我按你的入了安全后,那个SODAH.DLL的文件删佰了啊,还有那个修复我选好了修复文件后,选那个按钮啊,我下的是英文界面的小程序啊,
gototop
 

我按你 说 进入安全后,去删那个SODAH.DLL的问件时说无法访问,不能删除,您看该如何版啊,还有那个你说的修复我选了多选框后,该点那个按钮呢??我下的英文版的,看不到那个时那个修复,麻烦您给看一下
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT