1   1  /  1  页   跳转

求助啊,

求助啊,

请帮忙看下我的LOG谢谢Logfile of HijackThis v1.99.1
Scan saved at 18:18:11, on 2006-1-9
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 SP4 (5.00.2920.0000)

Running processes:
E:\WINNT\System32\smss.exe
E:\WINNT\system32\winlogon.exe
E:\WINNT\system32\services.exe
E:\WINNT\system32\lsass.exe
E:\WINNT\system32\svchost.exe
E:\WINNT\system32\spoolsv.exe
E:\WINNT\system32\svchost.exe
E:\PROGRA~1\KV2005\KVSrvXP.exe
E:\WINNT\system32\nvsvc32.exe
E:\WINNT\system32\regsvc.exe
E:\WINNT\system32\MSTask.exe
E:\WINNT\System32\WBEM\WinMgmt.exe
E:\WINNT\system32\svchost.exe
E:\WINNT\Explorer.EXE
E:\Program Files\KV2005\KVMonXP.kxp
F:\PROGRA~1\SKYNET\FIREWALL\pfw.exe
E:\WINNT\system32\internat.exe
E:\Program Files\KV2005\TrojDie.kxp
E:\Program Files\KV2005\KRegEx.exe
E:\WINNT\system32\DllHost.exe
E:\Program Files\Internet Explorer\IEXPLORE.EXE
F:\备份\HijackThis.exe

O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - E:\WINNT\system32\xunleibho_v5.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - F:\小灵通图纸\QQIEHelper.dll
O2 - BHO: BrowseHelper Class - {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} - E:\Program Files\KV2005\KvShell_1.dll
O3 - Toolbar: @msdxmLC.dll,-1@2052,电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - E:\WINNT\system32\msdxm.ocx
O3 - Toolbar: 江民杀毒工具栏 - {B5A34A93-D538-43A7-8371-864CB6148D12} - E:\Program Files\KV2005\KvShell_1.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [KvMonXP] "E:\Program Files\KV2005\KVMonXP.kxp" /auto
O4 - HKLM\..\Run: [SKYNET Personal FireWall] F:\PROGRA~1\SKYNET\FIREWALL\pfw.exe
O4 - HKCU\..\Run: [Internat.exe] internat.exe
O4 - HKCU\..\Run: [KvXP] "E:\PROGRA~1\KV2005\KvXP.kxp" /ScanBoot
O8 - Extra context menu item: &使用迅雷下载 - E:\Program Files\Sandai Technologies Inc\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - E:\Program Files\Sandai Technologies Inc\Thunder\getAllurl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - F:\小灵通图纸\AddToNetDisk.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - F:\小灵通图纸\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - F:\小灵通图纸\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - F:\小灵通图纸\SendMMS.htm
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - E:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - E:\WINNT\web\related.htm
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - F:\小灵通图纸\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - F:\小灵通图纸\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - F:\小灵通图纸\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - F:\小灵通图纸\QQIEHelper.dll
O10 - Unknown file in Winsock LSP: e:\winnt\system32\kvwspxp_1.dll
O10 - Unknown file in Winsock LSP: e:\winnt\system32\kvwspxp_1.dll
O10 - Unknown file in Winsock LSP: e:\winnt\system32\kvwspxp_1.dll
O14 - IERESET.INF: SEARCH_PAGE_URL=
O14 - IERESET.INF: START_PAGE_URL=
O16 - DPF: {D0A29C6C-AA71-4423-8C4A-5998B774C448} (IEDown Class) - http://download.ourgame.com/IEDown4.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{132F177C-B2C7-4BA4-9D35-C91C8F5687B9}: NameServer = 202.96.64.68 202.96.69.38
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - E:\WINNT\System32\dmadmin.exe
O23 - Service: KVSrvXP - JiangMin New Tech Ltd. - E:\PROGRA~1\KV2005\KVSrvXP.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - E:\WINNT\system32\nvsvc32.exe


最后编辑2006-01-09 21:38:26
分享到:
gototop
 

我的2000系统每次都是自动登陆,自动输入密码用户名,并且检测软驱一次?再进系统的时候。不是开机检测
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT