瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 请帮我看看这个日志--谢谢,哪个是杀掉病毒Trojan.DL.Small.bqb的啊~~

1   1  /  1  页   跳转

请帮我看看这个日志--谢谢,哪个是杀掉病毒Trojan.DL.Small.bqb的啊~~

请帮我看看这个日志--谢谢,哪个是杀掉病毒Trojan.DL.Small.bqb的啊~~

Logfile of HijackThis v1.99.1
Scan saved at 20:38:56, on 2004-12-24
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 SP4 (5.00.2920.0000)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\Program Files\Rising\Rav\Ravmond.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINNT\Explorer.EXE
c:\program files\rising\rfw\RfwMain.exe
C:\WINNT\system32\igfxtray.exe
C:\WINNT\system32\hkcmd.exe
C:\WINNT\SOUNDMAN.EXE
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\Program Files\NEC\e-Border Client\s5credmgr.exe
C:\WINNT\system32\explorer.exe
C:\WINNT\system32\internat.exe
C:\Program Files\Tencent\TM\TMDlls\TM.exe
C:\Program Files\Tencent\TM\TMDlls\TIMPlatform.exe
C:\Program Files\Tencent\TM\TMDlls\QQMail.exe
C:\Program Files\Internet Explorer\iexplore.exe
E:\HijackThis.exe

O2 - BHO: DownloadBHO T2BHO - {B1D147E7-873E-4909-8127-695D9BB78728} - C:\WINNT\Downloaded Program Files\barhelp24.0.dll
O3 - Toolbar: @msdxmLC.dll,-1@2052,电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: 天下搜索 - {56A7DC70-E102-4408-A34A-AE06FEF01586} - C:\WINNT\Downloaded Program Files\iebar23.0.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\system32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [NEC e-Border Credential] C:\Program Files\NEC\e-Border Client\s5credmgr.exe
O4 - HKLM\..\Run: [Sound] C:\WINNT\system32\explorer.exe
O4 - HKCU\..\Run: [Internat.exe] internat.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O10 - Unknown file in Winsock LSP: c:\program files\nec\e-border client\s5spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\nec\e-border client\s5spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\nec\e-border client\s5spi.dll
O14 - IERESET.INF: SEARCH_PAGE_URL=
O14 - IERESET.INF: START_PAGE_URL=
O15 - Trusted Zone: http://www.icbc.com.cn
O16 - DPF: {56A7DC70-E102-4408-A34A-AE06FEF01586} (天下搜索) - http://iebar.t2t2.com/iebar.cab
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe

最后编辑2005-12-25 20:25:16
分享到:
gototop
 

怎样才能修复啊,请详细说一下操作好吗`~`
麻烦了啊``~
O2 - BHO: DownloadBHO T2BHO - {B1D147E7-873E-4909-8127-695D9BB78728} - C:\WINNT\Downloaded Program Files\barhelp24.0.dll
O4 - HKLM\..\Run: [Sound] C:\WINNT\system32\explorer.exe
修复后重新启动计算机杀毒




gototop
 

我修复完了  从起以后是手动删除那两个文件  还是用瑞星杀毒啊~~
gototop
 

只有不懂我才问的 有什么汗的  我虽然无知  但我任学  你出生什么都会啊 ~~  要不你就回答我  要不就不要发言  真为你感到自卑  无知并不可耻  而可耻的是~~~~~~~~~~~自己想
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT