瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 各位大哥帮帮忙,我的硬盘打不开了!!!

1   1  /  1  页   跳转

各位大哥帮帮忙,我的硬盘打不开了!!!

各位大哥帮帮忙,我的硬盘打不开了!!!

我的硬盘打不开了,双击显示windows无法找到NTDETECT.EXE,而右击则显示windows无法
找到shellexplore.exe,在右击菜单里多出来播放,自动播放,搜索三个项目。哪位能看懂下面文件的兄弟帮帮忙,给我个解决的办法,我都要急死了!!!!!
2006-11-25,20:50:36

System Repair Engineer 2.2.6.605
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\System32\ctfmon.exe> [(Verified)Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<run><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32> [(Verified)Microsoft Corporation]
<PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [(Verified)Microsoft Corporation]
<PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [(Verified)Microsoft Corporation]
<TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> [RealNetworks, Inc.]
<KvMonXP><"E:\kv2006\KV2006\KVMonXP.kxp" /auto> [Jiangmin Co.Ltd]
<Jiangmin KVFW><E:\KVFW\KVFWMCL.exe -silent> [Jiangmin Corp]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<Nice><C:\Program Files\Common Files\Microsoft Shared\MSINFO\rehtemp.exe> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Corporation]
<Userinit><C:\WINDOWS\System32\userinit.exe,> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><235780M.BMP> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{9915CFD1-6B7D-4AC5-ABAC-136924579E91}><C:\Program Files\Internet Explorer\PLUGINS\system.sys> [N/A]
<{1A404685-7563-4d02-B0F6-58B308A406A9}><e:\kav2007\nooamram.dll> [N/A]
<{9A0CFC58-5A6F-41ba-9FFE-4320F4F621BA}><C:\WINDOWS\System32\Cnscheck001.dll> [N/A]
<{C54B4AFB-7A2A-6C3E-BA4D-C20F02941125}><C:\WINDOWS\System32\r.dll> [N/A]
<{C54B4AFB-7A2A-6C3E-BA4D-C20F0294B920}><C:\WINDOWS\System32\c.dll> [N/A]

==================================
启动文件夹
N/A

==================================
服务
[InstallDriver Table Manager / IDriverT]
<C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe><Macrovision Corporation>
[IMAPI CD-Burning COM Service / ImapiService]
<C:\WINDOWS\System32\imapi.exe><Microsoft Corporation>
[KVSrvXP / KVSrvXP]
<E:\kv2006\KV2006\KVSrvXP.exe /Service><Jiangmin Co. Ltd>
[Macromedia Licensing Service / Macromedia Licensing Service]
<"C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><N/A>
[RpcService / RpcService]
<C:\WINDOWS\SYSTEM32\EXPLORE.EXE><N/A>

==================================
驱动程序
[basic2 / basic2]
<System32\DRIVERS\HSF_BSC2.sys><Conexant>
[HelloNet PPPoE 虚拟网卡 / BRPPPOE]
<System32\DRIVERS\brpppoe.sys><N/A>
[C-Media WDM Audio Interface / cmuda]
<system32\drivers\cmuda.sys><C-Media Inc>
[Fallback / Fallback]
<System32\DRIVERS\HSF_FALL.sys><Conexant>
[Fsks / Fsks]
<System32\DRIVERS\HSF_FSKS.sys><Conexant>
[Network Fire Hydrant / HdFw_slot]
<\??\E:\KVFW\hdfw.sys><北京江民新科技术有限公司>
[HOOKAPI / HOOKAPI]
<\??\E:\RISING\RAV\HOOKAPI.SYS><N/A>
[hsf_msft / hsf_msft]
<System32\DRIVERS\HSF_MSFT.sys><Conexant>
[K56 / K56]
<System32\DRIVERS\HSF_K56K.sys><Conexant>
[KRegEx / KRegEx]
<\??\E:\kv2006\KV2006\KRegEx.sys><Jiangmin Co. Ltd.>
[KSysCall Service / KSysCall]
<\??\E:\kv2006\KV2006\KSysCall.sys><Jiangmin Co. Ltd.>
[KVDP_1 / KVDP_1]
<\??\E:\kv2006\KV2006\KVDP_1.sys><Jiangmin Co., Ltd.>
[KvMemon / KvMemon]
<\??\E:\kv2006\KV2006\KvMemon.sys><Jiangmin Co. Ltd.>
[KVREDIR / KVREDIR]
<\??\E:\kv2006\KV2006\KVREDIR.sys><Jiangmin Co. Ltd>
[Netgroup Packet Filter / NPF]
<System32\DRIVERS\npf.sys><CACE Technologies>
[npkcrypt / npkcrypt]
<\??\E:\qq\npkcrypt.sys><N/A>
[npkcusb / npkcusb]
<\??\E:\qq\npkcusb.sys><N/A>
[PProtect / PProtect]
<\??\E:\kv2006\KV2006\PProtect.sys><Jiangmin Co. Ltd.>
[StarForce Protection Environment Driver v6 / prodrv06]
<\SystemRoot\System32\drivers\prodrv06.sys><Protection Technology>
[StarForce Protection Helper Driver v2 / prohlp02]
<\SystemRoot\System32\drivers\prohlp02.sys><Protection Technology>
[Direct Parallel Link Driver / Ptilink]
<System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Rksample / Rksample]
<System32\DRIVERS\HSF_SAMP.sys><Conexant>
[Realtek RTL8139/810X Family Fast Ethernet NIC NT Driver / rtl8139]
<System32\DRIVERS\R8139n51.SYS><Realtek Semiconductor Corporation>
[Secdrv / Secdrv]
<System32\DRIVERS\secdrv.sys><Macrovision Europe Ltd>
[StarForce Protection Environment Driver (version 1.x) / sfdrv01]
<\SystemRoot\System32\drivers\sfdrv01.sys><Protection Technology>
[StarForce Protection Helper Driver / sfhlp01]
<\SystemRoot\System32\drivers\sfhlp01.sys><Protection Technology>
[StarForce Protection Helper Driver (version 2.x) / sfhlp02]
<\SystemRoot\System32\drivers\sfhlp02.sys><Protection Technology>
[StarForce Protection VFS Driver (version 2.x) / sfvfs02]
<\SystemRoot\System32\drivers\sfvfs02.sys><Protection Technology>
[SiS315 / SiS315]
<System32\DRIVERS\sisgrp.sys><Silicon Integrated Systems Corporation>
[SiS AGP Filter / sisagp]
<\SystemRoot\System32\DRIVERS\SISAGPX.sys><Silicon Integrated Systems Corporation>
[SiSkp / SiSkp]
<system32\drivers\srvkp.sys><Silicon Integrated Systems Corporation>
[SoftFax / SoftFax]
<System32\DRIVERS\HSF_FAXX.sys><Conexant>
[Tones / Tones]
<System32\DRIVERS\HSF_TONE.sys><Conexant>
[V124 / V124]
<System32\DRIVERS\HSF_V124.sys><Conexant>

==================================
最后编辑2006-11-26 20:37:03.607000000
分享到:
gototop
 

浏览器加载项
[ThunderIEHelper Class]
{0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\System32\xunleibho_v5.dll, >
[FiltrateWebObj Class]
{42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <E:\kv2006\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[BrowseHelper Class]
{80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <E:\kv2006\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[江民杀毒工具栏]
{B5A34A93-D538-43A7-8371-864CB6148D12} <E:\kv2006\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[&使用迅雷下载]
<E:\迅雷\geturl.htm, N/A>
[&使用迅雷下载全部链接]
<E:\迅雷\getAllurl.htm, N/A>

==================================
正在运行的进程
[PID: 476][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 548][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 572][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 616][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 628][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 820][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 868][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 980][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1020][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1140][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.0 (XPClient.010817-1148)]
[PID: 1388][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[E:\实践报告\程序安装文件\1159523228154\WYWZ\Erasext.dll] [N/A, 1.0.1.2]
[E:\实践报告\程序安装文件\1159523228154\WYWZ\ERASER.dll] [N/A, 0.0.1.2]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[E:\kv2006\KV2006\KvShell.dll] [Jiangmin Co.Ltd, 9, 0, 5, 830]
[E:\kv2006\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[E:\kv2006\KV2006\lang\Kvxp0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\APIImpl.dll] [JiangMin Ltd., 9.0.0.500]
[C:\WINDOWS\System32\Macromed\Flash\Flash8b.ocx] [Macromedia, Inc., 8,0,24,0]
[PID: 1516][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] [RealNetworks, Inc., 0.1.0.3512]
[E:\kv2006\KV2006\KVMonXP.kxp] [Jiangmin Co.Ltd, 9, 2, 0, 60905]
[E:\kv2006\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[E:\kv2006\KV2006\lang\Kvxp0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\GUIExt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 927]
[E:\kv2006\KV2006\lang\GUIExt0804.lng] [JiangMin Ltd., 7, 1, 0, 200]
[E:\kv2006\KV2006\EngFace.dll] [Jiangmin Co.Ltd, 9.0.0.50809]
[E:\kv2006\KV2006\EngPS.dll] [Jiangmin Co.Ltd, 9, 2, 0, 50817]
[E:\kv2006\KV2006\KvMemory.dll] [Jiangmin Co. Ltd., 9, 0, 6, 0214]
[E:\kv2006\KV2006\KvOffice.dll] [JiangMin New Tech., 9.0.0.1213]
[E:\kv2006\KV2006\lang\KVOffice0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\VirusUpload.dll] [N/A, 2, 16, 6, 7260]
[E:\kv2006\KV2006\PProtect.dll] [Jiangmin Co. Ltd., 9.0.0.921]
[PID: 1536][E:\KVFW\KVFWMCL.exe] [Jiangmin Corp, 9, 0, 6, 410]
[E:\KVFW\KvfwUtl.dll] [Jiangmin Corp, 9, 0, 6, 410]
[E:\KVFW\Lang\KVFW0804.lng] [N/A, 9, 0, 5, 1031]
[E:\KVFW\GuiExt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 927]
[E:\KVFW\UpdateX.dll] [JiangMin Co.Ltd., 9, 2, 0, 60405]
[E:\KVFW\lang\GUIExt0804.lng] [JiangMin Ltd., 7, 1, 0, 200]
[PID: 1544][C:\WINDOWS\System32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1612][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1660][E:\kv2006\KV2006\KVSrvXP.exe] [Jiangmin Co. Ltd, 9.2.0.50822]
[E:\kv2006\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[E:\kv2006\KV2006\SvcSafe.dll] [Jiangmin Co. Ltd, 9, 2, 0, 51107]
[E:\kv2006\KV2006\lang\SvcSafe0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\RegProt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 1212]
[E:\kv2006\KV2006\Scan.dll] [Jiangmin Co., Ltd., 1.0.6.07110]
[E:\kv2006\KV2006\FileGD.dll] [Jiangmin Co.Ltd, 9.2.0.50809]
[E:\kv2006\KV2006\KvSPI.dll] [Jiangmin Co. Ltd., 1.0.6.1024]
[E:\kv2006\KV2006\lang\KVSpi0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\ScanHost.dll] [Jiangmin Co. Ltd, 9, 2, 0, 50822]
[E:\kv2006\KV2006\KVWPSet.dll] [Jiangmin Co.Ltd, 9, 0, 0, 60220]
[E:\kv2006\KV2006\EngPS.dll] [Jiangmin Co.Ltd, 9, 2, 0, 50817]
[E:\kv2006\KV2006\KVEnhS.dll] [Jiangmin Co., Ltd., 9, 2, 6, 02040]
[E:\kv2006\KV2006\KVEnhJ.dll] [Jiangmin Co.Ltd, 9, 1, 0, 50822]
[E:\kv2006\KV2006\KVExtCab.dll] [JiangMin Co. Ltd, 9, 2, 0, 50822]
[E:\kv2006\KV2006\KVExtLZH.dll] [JiangMin Co. Ltd., 9, 2, 6, 0316]
[E:\kv2006\KV2006\KvExtZip.dll] [JiangMin Co Ltd., 9, 2, 0, 50822]
[E:\kv2006\KV2006\KVExtZ.dll] [Jiangmin Co. Ltd, 9.2.0.503]
[E:\kv2006\KV2006\KVExtTar.dll] [Jiangmin Co. Ltd, 9, 2, 0, 50822]
[E:\kv2006\KV2006\KVExtEml.dll] [Jiangmin Co. Ltd., 9, 2, 6, 07050]
[E:\kv2006\KV2006\lang\KVExtEml0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\KvExtRar.dll] [JiangMin Co. Ltd., 9, 2, 6, 04020]
[E:\kv2006\KV2006\KVExtGz.dll] [Jiangmin Co. Ltd, 9, 0, 6, 04200]
[E:\kv2006\KV2006\KVEnhK.dll] [Jiangmin Co.Ltd, 9, 1, 0, 51209]
[E:\kv2006\KV2006\Fix.dll] [Jiangmin Co.Ltd, 9, 2, 6, 07110]
[E:\kv2006\KV2006\KvCkMail.dll] [N/A, 9, 0, 6, 619]
[E:\kv2006\KV2006\lang\KvMailRes0804.lng] [N/A, N/A]
[E:\kv2006\KV2006\TrojDie.kxp] [Jiangmin Co.Ltd, 9.0.6.0413]
[E:\kv2006\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[E:\kv2006\KV2006\lang\TrojDie0804.lng] [Jiangmin Co.Ltd, 9.0.0.0813]
[E:\kv2006\KV2006\GUIExt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 927]
[E:\kv2006\KV2006\lang\GUIExt0804.lng] [JiangMin Ltd., 7, 1, 0, 200]
[E:\kv2006\KV2006\PProtect.dll] [Jiangmin Co. Ltd., 9.0.0.921]
[E:\kv2006\KV2006\ComUIPS.dll] [Jiangmin Ltd., 9. 5. 5. 20]
[E:\kv2006\KV2006\KVWPSet.dll] [Jiangmin Co.Ltd, 9, 0, 0, 60220]
[PID: 632][E:\kv2006\KV2006\KRegEx.exe] [Jiangmin Co.Ltd, 9.0.6.210]
[E:\kv2006\KV2006\KRegEx.dll] [Jiangmin Co. Ltd., 9.0.6.0119]
[E:\kv2006\KV2006\KRegTrust.dll] [Jiangmin Co. Ltd., 9.0.0.825]
[PID: 936][E:\kv2006\KV2006\UIHost.exe] [Jiangmin Co. Ltd, 9.2.0.50822]
[E:\kv2006\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[E:\kv2006\KV2006\ComUI.dll] [Jiangmin Ltd., 9. 0. 0.509]
[E:\kv2006\KV2006\ComUIPS.dll] [Jiangmin Ltd., 9. 5. 5. 20]
[E:\kv2006\KV2006\GUIExt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 927]
[E:\kv2006\KV2006\lang\GUIExt0804.lng] [JiangMin Ltd., 7, 1, 0, 200]
[PID: 1384][C:\WINDOWS\System32\conime.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1500][C:\Program Files\山东铁通宽带拨号软件\HNMainUI.exe] [N/A, 2, 3, 0, 1]
[C:\Program Files\山东铁通宽带拨号软件\HNKernel.dll] [HelloNet, 2.2.0.1]
[C:\Program Files\山东铁通宽带拨号软件\HNUtils.dll] [N/A, 2, 2, 0, 1]
[C:\Program Files\山东铁通宽带拨号软件\HNRes_0804.dll] [N/A, 2, 2, 0, 1]
[C:\Program Files\山东铁通宽带拨号软件\plugins\Diagnose.dll] [HelloNet, 2.2.0.1]
[PID: 224][C:\Documents and Settings\qqq\桌面\sreng2\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]

==================================

gototop
 

文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. [hh.exe %1]
.HLP Error. [C:\WINDOWS\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS Error. ["e:\Macromedia\Dreamweaver MX 2004\Dreamweaver.exe" "%1"]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
[C:\]
[AutoRun]
open=NTDETECT.exe c:
shellexecute=NTDETECT.exe c:
shell\播放\command=NTDETECT.exe c:
shell=播放
[E:\]
[AutoRun]
open=NTDETECT.exe e:
shellexecute=NTDETECT.exe e:
shell\播放\command=NTDETECT.exe e:
shell=播放
[F:\]
[AutoRun]
open=NTDETECT.exe f:
shellexecute=NTDETECT.exe f:
shell\播放\command=NTDETECT.exe f:
shell=播放
[G:\]
[AutoRun]
open=NTDETECT.exe g:
shellexecute=NTDETECT.exe g:
shell\播放\command=NTDETECT.exe g:
shell=播放

==================================
HOSTS 文件
N/A

==================================
gototop
 

找不到那个文件阿,帮忙看看日志有什么问题?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT