瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 不知中了什么病毒,连瑞星都装不上了

1   1  /  1  页   跳转

不知中了什么病毒,连瑞星都装不上了

不知中了什么病毒,连瑞星都装不上了

不知中了什么病毒,连瑞星都装不上了,求高手救命啊!!!!
最后编辑2006-12-18 14:33:29
分享到:
gototop
 

2006-12-18,09:49:30

System Repair Engineer 2.2.6.605
Smallfrogs (http://www.KZTechs.com)

Windows 2000 Advanced Server Service Pack 4 (Build 2195)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
gototop
 

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <Internat.exe><internat.exe>  [(Verified)Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IgfxTray><C:\WINNT\System32\igfxtray.exe>  [(Verified)Intel Corporation]
    <HotKeysCmds><C:\WINNT\System32\hkcmd.exe>  [(Verified)Intel Corporation]
    <CARPService><carpserv.exe>  [Conexant Systems]
    <zt><C:\WINNT\Intel\rundll32.exe>  [N/A]
    <navpens><C:\WINNT\system32\agetltyes.exe>  []
    <runeip><C:\Program Files\Rising\AntiSpyware\runiep.exe>  [Beijing Rising Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
    <Torjan Program><C:\WINNT\SERVICE.EXE>  [aewq]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Corporation]
    <Userinit><C:\WINNT\system32\userinit.exe,rundll32 windll16.dll mymain,rundll32.exe C:\WINNT\system32\windown_2.dll mymain,rundll32.exe C:\WINNT\system32\winsys16_061214.dll start>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{E4C3C044-CE6A-4117-9D18-C1EBEC80D2C9}><C:\WINNT\system32\myd.dLL>  [N/A]
    <{8C0854E8-54E8-C08F-E8C0-4E8084E8C08F}><C:\Program Files\Common Files\Microsoft Shared\MSINFO\54E8C08F.dll>  [N/A]
    <{A35F13FD-A6FF-11E0-9A84-00C04FD8DBD8}><C:\WINNT\system32\h35f13fd.log>  [N/A]
    <{msa35f13-A6FF-11E0-9A84-00C04FD8DBD8}><C:\WINNT\system32\h35f13fd.log>  [N/A]
    <{08C008F5-8F54-548F-E8C0-4E4E808F54C0}><C:\Program Files\Common Files\SYSTEM\08C485EF.dll>  [N/A]
    <{1A404685-7563-4d02-B0F6-58B308A406A9}><c:\program files\sqllib\bin\llhzenkf.dll>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <DLMon><C:\WINNT\system32\DLMain.dll>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]
    <WinlogonNotify: NavLogon><C:\WINNT\System32\NavLogon.dll>  [N/A]
[HKEY_CURRENT_USER\Control Panel\Desktop]
    <SCRNSAVE.EXE><C:\WINNT\system32\ssstars.scr>  [(Verified)Microsoft Corporation]
gototop
 

启动文件夹
[腾讯QQ]
  <C:\Documents and Settings\db2admin\「开始」菜单\程序\启动\腾讯QQ.lnk --> C:\PROGRA~1\Tencent\QQ\QQ.exe [TENCENT]><N>

==================================
服务
[pcAnywhere Host Service / awhost32]
  <C:\Program Files\Symantec\pcAnywhere\awhost32.exe><Symantec Corporation>
[DB2 - DB2 / DB2]
  <C:\PROGRA~1\SQLLIB\bin\db2syscs.exe><International Business Machines Corporation>
[DB2 JDBC Applet 服务器-控制中心 / DB2ControlCenterServer]
  <"C:\Program Files\SQLLIB\bin\db2ccs.exe"><N/A>
[DB2 - DB2DAS00 / DB2DAS00]
  <C:\PROGRA~1\SQLLIB\bin\db2syscs.exe><International Business Machines Corporation>
[DB2 控制程序 / DB2GOVERNOR]
  <"C:\Program Files\SQLLIB\bin\db2govds.exe"><International Business Machines Corporation>
[DB2 JDBC Applet 服务器 / DB2JDS]
  <"C:\Program Files\SQLLIB\bin\db2jds.exe"><N/A>
[DB2 许可证服务器 / DB2LICD]
  <"C:\Program Files\SQLLIB\bin\db2licd.exe"><International Business Machines Corporation>
[DB2 安全服务器 / DB2NTSECSERVER]
  <"C:\Program Files\SQLLIB\bin\db2sec.exe"><International Business Machines Corporation>
[DB2 远程命令 / DB2REMOTECMD]
  <"C:\Program Files\SQLLIB\bin\db2rcmd.exe"><International Business Machines Corporation>
[Logical Disk Manager Administrative Service / dmadmin]
  <C:\WINNT\System32\dmadmin.exe /com><VERITAS Software Corp.>
[Risin / Risin]
  <C:\WINNT\G_Server2006><N/A>
[Svchost Service For Windows / svchost]
  <C:\WINNT\svchost.exe><N/A>
[VKTServ / VKTServ]
  <C:\WINNT\system32\VKTServ.exe><Microsoft Corporation>
[Warehouse server / vwkernel]
  <"C:\PROGRA~1\SQLLIB\bin\IWH2SERV.EXE"><N/A>
[Warehouse logger / vwlogger]
  <"C:\PROGRA~1\SQLLIB\bin\IWH2LOG.EXE"><N/A>
[Update Service For Windows / winupdate]
  <C:\WINNT\winupdate.exe><N/A>

==================================
驱动程序
[aeaudio / aeaudio]
  <system32\drivers\aeaudio.sys><Andrea Electronics Corporation>
[awlegacy / awlegacy]
  <\SystemRoot\System32\Drivers\awlegacy.sys><Symantec Corporation>
[AW_HOST / AW_HOST]
  <system32\drivers\aw_host5.sys><Symantec Corporation>
[dmboot / dmboot]
  <System32\drivers\dmboot.sys><VERITAS Software Corp.>
[Logical Disk Manager Driver / dmio]
  <\SystemRoot\System32\drivers\dmio.sys><VERITAS Software Corp.>
[dmload / dmload]
  <\SystemRoot\System32\drivers\dmload.sys><VERITAS Software Corp.>
[Intel(R) PRO Adapter Driver / E100B]
  <System32\DRIVERS\e100bnt5.sys><Intel Corporation>
[Gernuwa / Gernuwa]
  <C:\WINNT\SYSTEM32\DRIVERS\Gernuwa.SYS><Symantec Corporation>
[HSFHWBS2 / HSFHWBS2]
  <System32\DRIVERS\HSFHWBS2.sys><Conexant Systems>
[HSF_DP / HSF_DP]
  <System32\DRIVERS\HSF_DP.sys><Conexant Systems>
[ialm / ialm]
  <System32\DRIVERS\ialmnt5.sys><Intel Corporation>
[kmsinput / kmsinput]
  <\??\C:\WINNT\system32\drivers\kmsinput.sys><N/A>
[mdmxsdk / mdmxsdk]
  <System32\DRIVERS\mdmxsdk.sys><Conexant>
[New0 / New0]
  <\??\C:\WINNT\System32\new.sys><N/A>
[Netgroup Packet Filter / NPF]
  <system32\DRIVERS\npf.sys><CACE Technologies>
[npkcrypt / npkcrypt]
  <\??\C:\Program Files\Tencent\QQ\npkcrypt.sys><N/A>
[Direct Parallel Link Driver / Ptilink]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[smwdm / smwdm]
  <system32\drivers\smwdm.sys><Analog Devices, Inc.>
[特殊目的工具驱动程序 / spud]
  <\SystemRoot\System32\drivers\spud.sys><N/A>
[StreamDispatcher / StreamDispatcher]
  <System32\DRIVERS\strmdisp.sys><Conexant Systems>
[SymEvent / SymEvent]
  <\??\C:\Program Files\Symantec\SYMEVENT.SYS><Symantec Corporation>
gototop
 

浏览器加载项
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[]
  {8D139DD1-6BB5-4103-8C89-41560FF2E107} <C:\WINNT\system32\3721_6.dll, 3721公司<推荐使用>>
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[百万图库]
  {6713E8D2-850A-101B-AFC0-4210102A8DA7} <http://www.26-3.com/star, N/A>
[铃声图片下载]
  {7713E8D2-850A-101B-AFC0-4210102A8DA7} <http://www.26-3.com/sms/index.htm, N/A>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\System32\msdxm.ocx, Microsoft Corporation>
[JatoolsPrinter Class]
  {B43D3361-D975-4BE2-87FE-057188254255} <C:\WINNT\Downloaded Program Files\jatoolsP.dll, jatools software co.,ltd>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINNT\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[Rising Web Scan Object]
  {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINNT\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[IEDown Class]
  {F917534D-535B-416B-8E8F-0C04756C31A8} <C:\WINNT\Downloaded Program Files\GLIEDown.dll, 联众公司>
[上传到QQ网络硬盘]
  <C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[添加到QQ自定义面板]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>

==================================
正在运行的进程
[PID: 180][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 204][\??\C:\WINNT\system32\csrss.exe]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 228][\??\C:\WINNT\system32\winlogon.exe]  [Microsoft Corporation, 5.00.2195.6997]
    [C:\WINNT\System32\NavLogon.dll]  [N/A, N/A]
    [c:\program files\sqllib\bin\llhzenkf.dll]  [, 1, 0, 0, 11]
[PID: 256][C:\WINNT\system32\services.exe]  [Microsoft Corporation, 5.00.2195.7035]
    [C:\WINNT\system32\dmserver.dll]  [VERITAS Software Corp., 2195.6605.297.3]
[PID: 268][C:\WINNT\system32\lsass.exe]  [Microsoft Corporation, 5.00.2195.7011]
[PID: 368][C:\WINNT\System32\termsrv.exe]  [Microsoft Corporation, 5.00.2195.6696]
[PID: 496][C:\WINNT\system32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 532][C:\WINNT\system32\spoolsv.exe]  [Microsoft Corporation, 5.00.2195.7059]
    [C:\WINNT\system32\awmon.dll]  [Symantec Corporation, 9.2.1]
[PID: 560][C:\Program Files\SQLLIB\bin\db2licd.exe]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2SYS.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2WINT.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2SYSP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2APP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2CLI.dll]  [International Business Machines Corporation, 7.1.0]
[PID: 572][C:\Program Files\SQLLIB\bin\db2sec.exe]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2SYS.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2WINT.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2SYSP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2APP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2CLI.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\BIN\db2npwd.dll]  [International Business Machines Corporation, 7.1.0]
[PID: 584][C:\Program Files\SQLLIB\bin\db2rcmd.exe]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2SATSC.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2SYS.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2WINT.dll]  [N/A, N/A]
    [C:\Program Files\SQLLIB\bin\DB2SYSP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2APP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2CLI.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2CLPFP.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2UTIL.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\Program Files\SQLLIB\bin\DB2ABIND.dll]  [International Business Machines Corporation, 7.1.0]
    [C:\PROGRA~1\SQLLIB\bin\db2pdbcf.DLL]  [International Business Machines Corporation, 7.1.0]
[PID: 600][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 648][C:\WINNT\system32\hidserv.exe]  [Microsoft Corporation, 5.00.2195.6655]
[PID: 672][C:\WINNT\System32\llssrv.exe]  [Microsoft Corporation, 5.00.2195.7021]
[PID: 768][C:\WINNT\system32\MSTask.exe]  [Microsoft Corporation, 4.71.2195.6972]
[PID: 900][C:\WINNT\system32\VKTServ.exe]  [Microsoft Corporation, 1.1.2600.2180]
[PID: 932][C:\WINNT\System32\WBEM\WinMgmt.exe]  [Microsoft Corporation, 1.50.1085.0100]
[PID: 948][C:\WINNT\system32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 960][C:\WINNT\System32\msdtc.exe]  [Microsoft Corporation, 1999.9.3421.3]
[PID: 1000][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 1028][C:\WINNT\system32\Dfssvc.exe]  [Microsoft Corporation, 5.00.2195.6664]
[PID: 1264][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 1228][C:\WINNT\system32\rundll32.exe]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\windll16.dll]  [N/A, N/A]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1216][C:\WINNT\system32\rundll32.exe]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\windown_2.dll]  [N/A, N/A]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1164][C:\WINNT\Explorer.EXE]  [Microsoft Corporation, 5.00.3700.6690]
    [C:\WINNT\system32\h35f13fd.log]  [N/A, N/A]
    [c:\program files\sqllib\bin\llhzenkf.dll]  [, 1, 0, 0, 11]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
    [C:\PROGRA~1\WinZip\WZSHLSTB.DLL]  [WinZip Computing, Inc., 3.0 (32-bit)]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\WINNT\system32\3721_6.dll]  [3721公司<推荐使用>, 1.0.0.0]
[PID: 1488][C:\WINNT\System32\igfxtray.exe]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\hccutils.DLL]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\igfxdev.dll]  [Intel Corporation, 3,0,0,1517]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
    [C:\WINNT\System32\igfxsrvc.dll]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\igfxres.dll]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\igfxress.dll]  [Intel Corporation, 3,0,0,1517]
[PID: 1500][C:\WINNT\System32\hkcmd.exe]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\hccutils.DLL]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\igfxdev.dll]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\igfxsrvc.dll]  [Intel Corporation, 3,0,0,1517]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
    [C:\WINNT\System32\igfxhk.dll]  [Intel Corporation, 3,0,0,1517]
    [C:\WINNT\System32\igfxres.dll]  [Intel Corporation, 3,0,0,1517]
[PID: 1508][C:\WINNT\system32\carpserv.exe]  [Conexant Systems, 5.03.00.00]
[PID: 1516][C:\WINNT\system32\agetltyes.exe]  [, ]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1536][C:\Program Files\Rising\AntiSpyware\runiep.exe]  [Beijing Rising Technology Co., Ltd., 1, 0, 1, 3]
    [C:\Program Files\Rising\AntiSpyware\iep_ctrl.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 4]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1564][C:\WINNT\system32\internat.exe]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1660][C:\WINNT\system32\conime.exe]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1688][C:\WINNT\system32\wuauclt.exe]  [Microsoft Corporation, 5.8.0.2469 built by: lab01_n(wmbla)]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
[PID: 1400][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\Program Files\Tencent\QQ\QQIEHelper.dll]  [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
    [C:\WINNT\system32\3721_6.dll]  [3721公司<推荐使用>, 1.0.0.0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
    [C:\WINNT\system32\Macromed\Flash\Flash8b.ocx]  [Macromedia, Inc., 8,0,24,0]
[PID: 636][C:\Program Files\WinRAR\WinRAR.exe]  [N/A, N/A]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
    [C:\WINNT\system32\3721_6.dll]  [3721公司<推荐使用>, 1.0.0.0]
    [C:\WINNT\system32\h35f13fd.log]  [N/A, N/A]
[PID: 1404][C:\DOCUME~1\db2admin\LOCALS~1\Temp\Rar$EX00.907\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 5]
    [C:\WINNT\system32\3721_6.dll]  [3721公司<推荐使用>, 1.0.0.0]
gototop
 

文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINNT\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
[D:\]
[autorun]
OPEN=d:\mplay.com

==================================
HOSTS 文件
127.0.0.1 alexa.com
127.0.0.1 www.alexa.com
127.0.0.1 data.alexa.com
127.0.0.1 client.alexa.com
127.0.0.1 log.alexa.com
127.0.0.1 redirect.alexa.com
127.0.0.1 cgi.alexa.com
127.0.0.1 info.alexa.com
127.0.0.1 kevdb.alexa.com
127.0.0.1 ns.adobe.com
127.0.0.1 xslt.alexa.com
127.0.0.1 download.alexa.com
127.0.0.1 xslt2.alexa.com
127.0.0.1 xsltcache.alexa.com
127.0.0.1 www.amazon.com
127.0.0.1 wikipedia.com
127.0.0.1 code.51link.com
127.0.0.1 code.is686.com
127.0.0.1 code.ads51.cn
127.0.0.1 code.51line.com
127.0.0.1 code.tgwww.com
127.0.0.1 code.yisoude.com
127.0.0.1 code.8ads.net
127.0.0.1 play.unionsky.cn
127.0.0.1 pop.9v.cn
127.0.0.1 a.keyrun.com
127.0.0.1 b.keyrun.com
127.0.0.1 code.keyrun.com
127.0.0.1 www1.keyrun.com
127.0.0.1 code.keyrun.com
127.0.0.1 www.wxku.com
127.0.0.1 u.u8u.com
127.0.0.1 www.21ivr.com
127.0.0.1 img.zhangxiu.com
127.0.0.1 ivr.158c.com
127.0.0.1 go.lele.com
127.0.0.1 mms1.moyu.com
127.0.0.1 mmsu.moyu.com
127.0.0.1 ivru.moyu.com
127.0.0.1 mgame1.moyu.com
127.0.0.1 mgameu.moyu.com
127.0.0.1 mmvu.moyu.com

==================================
gototop
 

版主,我太佩服你了,这么多乱七八糟的东东,你居然能看出是什么问题!
gototop
 

C:\WINNT\Intel\rundll32.exe
C:\WINNT\SERVICE.EXE
C:\WINNT\system32\agetltyes.exe
C:\WINNT\system32\windown_2.dll
C:\WINNT\system32\h35f13fd.log
C:\Program Files\Common Files\SYSTEM\08C485EF.dll
C:\WINNT\G_Server2006
C:\WINNT\svchost.exe
这些文件都删吗?
C:\WINNT\system32\VKTServ.exe
C:\WINNT\winupdate.exe
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT