1   1  /  1  页   跳转

帮我看看是不是中毒了【求助】

帮我看看是不是中毒了【求助】

1.没次启动电脑,瑞星的所有监控都是关闭这的,要手动开启。
2.打印机安装有问题,急需解决的。
点添加打印机,就说“缺少资源,打印机操作无法继续。打印子系统不可用”
我在服务里将“Print Spooler”重新启动后,原来安装的打印机驱动自动都出来了,可是打开个文件一点打印,又弹出个框,而且每次启动电脑都会弹出这个,服务里的“Print Spooler”已经被停止了。

附件附件:

下载次数:178
文件类型:application/octet-stream
文件大小:
上传时间:2006-7-13 14:03:08
描述:



最后编辑2006-07-13 14:14:45.357000000
分享到:
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at 13:53:58, on 2006-7-13
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 SP1 (5.00.2920.0000)

Running processes:
F:\WINNT\System32\smss.exe
F:\WINNT\system32\csrss.exe
F:\WINNT\system32\winlogon.exe
F:\WINNT\system32\services.exe
F:\WINNT\system32\lsass.exe
F:\WINNT\System32\SCardSvr.exe
F:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
F:\WINNT\system32\svchost.exe
F:\Program Files\rising\Rav\RavStub.exe
F:\WINNT\system32\cisvc.exe
F:\WINNT\system32\svchost.exe
F:\Program Files\Lenovo\TimerService\LenovoTimer.exe
F:\WINNT\system32\nvsvc32.exe
F:\WINNT\system32\regsvc.exe
F:\WINNT\system32\locator.exe
F:\WINNT\system32\MSTask.exe
F:\WINNT\system32\rundll32.exe
F:\WINNT\System32\WBEM\WinMgmt.exe
F:\WINNT\wincup\wincup.exe
F:\WINNT\system32\svchost.exe
F:\WINNT\Explorer.EXE
F:\WINNT\system32\Rundll32.exe
F:\Program Files\svhost32.exe
F:\WINNT\SOUNDMAN.EXE
F:\Program Files\Ringz Studio\Storm Downloader\StormDownloader.exe
F:\WINNT\system32\rundll32.exe
F:\Program Files\rising\Rav\RavTask.exe
F:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
F:\WINNT\system32\internat.exe
F:\Program Files\TurboLaunch\TurboLaunch.exe
F:\Program Files\rising\Rav\Ravmon.exe
F:\WINNT\system32\Rundll32.exe
F:\Program Files\Thunder Network\ThunderMini\program\ThunderMini.exe
F:\Program Files\rising\Rav\Ravmond.exe
F:\WINNT\system32\cidaemon.exe
F:\WINNT\system32\conime.exe
F:\Program Files\SuperSoft\RdfSnap2005\RdfSnap2005.exe
C:\UFSOFT80\ZW\zw8.exe
F:\WINNT\SYSTEM32\UFSYSTEM\UFLOGIN.EXE
F:\WINNT\system32\UFSYSTEM\UFADMIN.EXE
G:\Program Files\Maxthon\Maxthon.exe
F:\WINNT\system32\regsvr32.exe
F:\WINNT\system32\mmc.exe
F:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
F:\WINNT\system32\spool\DRIVERS\W32X86\3\cnmsm66.exe
H:\共享文件夹\ha_hijackthis_1991\HijackThis.exe

R3 - URLSearchHook: (no name) - {BB936323-19FA-4521-BA29-ECA6A121BC78} - (no file)
R3 - URLSearchHook: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - F:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
F3 - REG:win.ini: load=F:\PROGRA~1\svhost32.exe
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - F:\WINNT\system32\xunleibho_v8.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - G:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: yPhtb - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - F:\PROGRA~1\Yahoo!\ASSIST~1\assist\yphtb.dll
O2 - BHO: Anti Fish - {38928D50-8A48-44C2-945F-D2F23F771410} - F:\PROGRA~1\Yahoo!\ASSIST~1\assist\yangling.dll
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - F:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O2 - BHO: (no name) - {40E3A34A-3282-41F8-AD2C-051BAB96AD4A} - (no file)
O2 - BHO: YDragSearch - {62EED7C6-9F02-42f9-B634-98E2899E147B} - F:\PROGRA~1\Yahoo!\ASSIST~1\assist\YDRAGS~1.DLL
O2 - BHO: MMSAssist - {6671A431-5C3D-463d-A7CF-5587F9B7E191} - F:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
O2 - BHO: stdup - {6A512BF7-EC78-4e8d-9841-6C02E8FA9838} - F:\WINNT\SYSTEM32\stdup.dll
O2 - BHO: ThunderMiniBHO - {8E6C1C49-F9CE-4311-9FB4-D70E8B0AEAEB} - F:\Program Files\Thunder Network\ThunderMini\ComDlls\XunLeiMiniBHO_002.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - F:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: (no name) - {A9930D97-9CF0-42A0-A10D-4F28836579D5} - H:\KuGoo\KuGoo3DownXControl.ocx
O2 - BHO: BrowserHAP Class - {AEF6F648-78D8-4456-BEE7-5ADE23D209FD} - F:\PROGRA~1\HBClient\hapast.dll
O2 - BHO: 卡卡上网安全助手 - {AFF6E516-CBE5-4F8A-9C2F-38A68013E766} - F:\WINNT\system32\kakatool.dll
O2 - BHO: DownloadBHO T2BHO - {B1D147E7-873E-4909-8127-695D9BB78728} - F:\WINNT\Downloaded Program Files\barsmall24.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - F:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\zh-cn\msntb.dll
O2 - BHO: (no name) - {CA92B524-BC8A-4610-BD2C-6BD3E28155D0} - (no file)
O2 - BHO: CnsHook Class - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - F:\WINNT\downlo~1\CnsHook.dll
O3 - Toolbar: @msdxmLC.dll,-1@2052,电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - F:\WINNT\system32\msdxm.ocx
O3 - Toolbar: 同花顺 - {39852EFE-325B-45ef-9A60-3DBECD2DDDD5} - F:\WINNT\system32\thsbar.dll
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - F:\WINNT\system32\kakatool.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [MINI_BFYY] F:\Program Files\Ringz Studio\Storm Downloader\StormDownloader.exe
O4 - HKLM\..\Run: [hbpassport] F:\PROGRA~1\HBClient\hbast.exe
O4 - HKLM\..\Run: [helper.dll] F:\WINNT\system32\rundll32.exe F:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\Run: [gemstrmw] F:\WINNT\system32\gemstrmw.exe /r
O4 - HKLM\..\Run: [RavTask] "F:\Program Files\rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [YLive.exe] F:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
O4 - HKLM\..\Run: [yassistse] "F:\PROGRA~1\Yahoo!\Assistant\yassistse.exe"
O4 - HKLM\..\Run: [ThunderMini] F:\Program Files\Thunder Network\ThunderMini\ThunderMiniShell.exe
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [msnmsgr] "F:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [tiger] J:\IntegratedInstaller\Setup.exe
O4 - HKCU\..\RunOnce: [DeleteWYT] rundll32.exe advpack.dll,DelNodeRunDLL32 "F:\WINNT\WORLD2\TOOLBAR\hmtoolbar.dll"
O4 - Startup: TurboLaunch.lnk = F:\Program Files\TurboLaunch\TurboLaunch.exe
O8 - Extra context menu item: &使用暴风下载器下载 - F:\Program Files\Ringz Studio\Storm Downloader\geturl.htm
O8 - Extra context menu item: &使用迅雷下载 - F:\Program Files\Thunder Network\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - F:\Program Files\Thunder Network\Thunder\getallurl.htm
O8 - Extra context menu item: &使用迷你迅雷下载 - F:\Program Files\Thunder Network\ThunderMini\Program\GetUrl.htm
O8 - Extra context menu item: 使用KuGoo3下载(&K) - H:\KuGoo\KuGoo3DownX.htm
O8 - Extra context menu item: 使用超级解霸播放 - C:\Program Files\Herosoft\Hero 9\MPURLGET.HTM
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://F:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 用比特精灵下载(&B) - H:\bitspirit\bsurl.htm
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - F:\Program Files\浩方对战平台\GameClient.exe
O9 - Extra button: 豪杰超级解霸9 - {367E0A21-8601-4986-9C9A-153BF5ACA118} - C:\Program Files\Herosoft\Hero 9\STHSDVD.EXE
O9 - Extra 'Tools' menuitem: 豪杰超级解霸9 - {367E0A21-8601-4986-9C9A-153BF5ACA118} - C:\Program Files\Herosoft\Hero 9\STHSDVD.EXE
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - F:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - F:\WINNT\web\related.htm
O9 - Extra button: (no name) - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair (file missing)
O9 - Extra 'Tools' menuitem: 修复浏览器 - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair (file missing)
O9 - Extra button: (no name) - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean (file missing)
O9 - Extra 'Tools' menuitem: 清理上网记录 - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean (file missing)
O11 - Options group: [!CNS]  上网助手-地址栏搜索
O16 - DPF: {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} (Edit Class) - https://www.sz1.cmbchina.com/download/CMBEdit.cab
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (CEditCtrl Object) - https://img.alipay.com/download/aliedit.cab
O16 - DPF: {56A7DC70-E102-4408-A34A-AE06FEF01586} (天下搜索) - http://iebar.t2t2.com/iebar.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1124259765171
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1124255626515
O16 - DPF: {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} (AxInputControl Class) - https://mybank.icbc.com.cn/icbc/perbank/AxSafeControls.cab
O16 - DPF: {7A38130D-BEB7-4D60-BE7A-4C4AB6A85CD1} (搜虎) - http://bar.souhuu.com/vcbar1.cab
O16 - DPF: {87CCFDB0-C4BE-4BC2-A78C-9EAA7CF96667} (pcastup Class) - http://ps.itv.mop.com/dn/files/vodupdate_1.0.0.8_20051009.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {D0A29C6C-AA71-4423-8C4A-5998B774C448} (IEDown Class) - http://download.ourgame.com/IEDown4.cab
O16 - DPF: {E9707834-5BF7-4CFF-A639-398427DE1991} (IcbcSslCacheCleanerCtrl Class) - http://www.icbc.com.cn/left/IcbcSslCacheCleaner.cab
O16 - DPF: {EF248BC9-F17D-4024-8868-71A5D22C667C} (Hbact.HbactObject) - http://59.36.96.15/download/updatelist/hap111.cab
O16 - DPF: {FEE1002D-90A5-4A5D-AABE-01803FFBCF7A} (pCastPanel Class) - http://ps.itv.mop.com/dn/files/pCastCtl_1.0.0.76_20051110.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{1DFD887B-03DB-4D80-865F-CAA06DACC4B5}: NameServer = 61.128.128.68
O17 - HKLM\System\CS1\Services\Tcpip\..\{1DFD887B-03DB-4D80-865F-CAA06DACC4B5}: NameServer = 61.128.128.68
O17 - HKLM\System\CS2\Services\Tcpip\..\{1DFD887B-03DB-4D80-865F-CAA06DACC4B5}: NameServer = 61.128.128.68
O21 - SSODL: SysTime - {724C75F1-B757-408D-A50A-4CF99DA35D73} - F:\PROGRA~1\winkld\winkld.dll
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - F:\WINNT\System32\dmadmin.exe
O23 - Service: LenovoTimerService - Unknown owner - F:\Program Files\Lenovo\TimerService\LenovoTimer.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINNT\system32\nvsvc32.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - F:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - F:\Program Files\rising\Rav\Ravmond.exe
O23 - Service: WinWrCup - MsWinCup - F:\WINNT\wincup\wincup.exe

gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT