1   1  /  1  页   跳转

求救!未知进程KQWDMSZ.EXE

求救!未知进程KQWDMSZ.EXE

结束进程树不久就又自动运行,主要表现:弹出窗口但很快消失,鼠标不时在屏幕上乱窜,还不时连接218.64.170.66:80。瑞星杀不出来且删不掉、无法粉碎。大师们支几招啊

[KQWDMSZ.EXE]
PID = 0xcf0
CommandLine = C:\Windows\system32\KQWDMSZ.EXE
KQWDMSZ.EXE
0x400000
C:\WINDOWS\system32\KQWDMSZ.EXE



2007-01-21 21:02:38

ntdll.dll
0x7c920000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
NT Layer DLL
2004-08-04 16:52:02

kernel32.dll
0x7c800000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.2945 (xpsp_sp2_gdr.060704-2349)
Microsoft Corporation
Windows NT BASE API Client DLL
2006-07-05 18:55:59

user32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.2622 (xpsp_sp2_gdr.050301-1519)
Microsoft Corporation
Windows XP USER API Client DLL
2005-03-03 02:10:05

GDI32.dll
0x77ef0000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.2818 (xpsp_sp2_gdr.051228-1427)
Microsoft Corporation
GDI Client DLL
2005-12-29 10:56:04

advapi32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Advanced Windows 32 Base API
2004-08-04 16:52:06

RPCRT4.dll
0x77e50000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Remote Procedure Call Runtime
2004-08-04 16:52:24

oleaut32.dll
0x770f0000
C:\WINDOWS\system32\oleaut32.dll
5.1.2600.2180
Microsoft Corporation

2004-08-04 16:52:22

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows NT CRT DLL
2004-08-04 16:52:20

ole32.dll
0x76990000
C:\WINDOWS\system32\ole32.dll
5.1.2600.2726 (xpsp_sp2_gdr.050725-1528)
Microsoft Corporation
Microsoft OLE for Windows
2005-07-26 12:39:50

version.dll
0x77bd0000
C:\WINDOWS\system32\version.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Version Checking and File Installation Libraries
2004-08-04 16:52:26

comctl32.dll
0x5d170000
C:\WINDOWS\system32\comctl32.dll
5.82 (xpsp.060825-0040)
Microsoft Corporation
Common Controls Library
2006-08-25 23:49:44

shell32.dll
0x7d590000
C:\WINDOWS\system32\shell32.dll
6.00.2900.2951 (xpsp_sp2_gdr.060713-0009)
Microsoft Corporation
Windows Shell Common Dll
2006-07-13 21:34:55

SHLWAPI.dll
0x77f40000
C:\WINDOWS\system32\shlwapi.dll
6.00.2900.3020 (xpsp_sp2_gdr.061023-0214)
Microsoft Corporation
Shell Light-weight Utility Library
2006-10-23 23:18:15

URLMON.DLL
0x75c60000
C:\WINDOWS\system32\urlmon.dll
6.00.2900.3020 (xpsp_sp2_gdr.061023-0214)
Microsoft Corporation
OLE32 Extensions for Win32
2006-10-23 23:18:16

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2004-08-04 16:52:12

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Language Pack
2004-08-04 16:52:14

USP10.dll
0x73fa0000
C:\WINDOWS\system32\usp10.dll
1.0420.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Uniscribe Unicode script processor
2004-08-04 16:52:26

comctl32.dll
0x77180000
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
6.0 (xpsp.060825-0040)
Microsoft Corporation
User Experience Controls Library
2006-08-25 08:49:42

uxtheme.dll
0x5adc0000
C:\WINDOWS\system32\uxtheme.dll
6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft UxTheme Library
2004-08-04 16:52:26

msctfime.ime
0x73640000
C:\WINDOWS\system32\MSCTFIME.IME
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft Text Frame Work Service IME
2004-08-04 16:51:20

olepro32.dll
0x5efe0000
C:\WINDOWS\system32\olepro32.dll
5.1.2600.2180
Microsoft Corporation

2004-08-04 16:52:22

WS2_32.DLL
0x71a20000
C:\WINDOWS\system32\ws2_32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2004-08-04 16:52:28

WS2HELP.dll
0x71a10000
C:\WINDOWS\system32\ws2help.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2004-08-04 16:52:28

mswsock.dll
0x719c0000
C:\WINDOWS\system32\mswsock.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft Windows Sockets 2.0 Service Provider
2004-08-04 16:52:20

hnetcfg.dll
0x60fd0000
C:\WINDOWS\system32\hnetcfg.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Home Networking Configuration Manager
2004-08-04 16:52:12

wshtcpip.dll
0x71a00000
C:\WINDOWS\system32\wshtcpip.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Sockets Helper DLL
2004-08-04 16:52:28

DNSAPI.dll
0x76ef0000
C:\WINDOWS\system32\dnsapi.dll
5.1.2600.2938 (xpsp_sp2_gdr.060626-0020)
Microsoft Corporation
DNS Client API DLL
2006-06-27 01:41:39

winrnr.dll
0x76f80000
C:\WINDOWS\system32\winrnr.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
LDAP RnR Provider DLL
2004-08-04 16:52:28

WLDAP32.dll
0x76f30000
C:\WINDOWS\system32\wldap32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Win32 LDAP API DLL
2004-08-04 16:52:28

rasadhlp.dll
0x76f90000
C:\WINDOWS\system32\rasadhlp.dll
5.1.2600.2938 (xpsp_sp2_gdr.060626-0020)
Microsoft Corporation
Remote Access AutoDial Helper
2006-06-27 01:41:39

CLBCATQ.DLL
0x76fa0000
C:\WINDOWS\system32\clbcatq.dll
2001.12.4414.308
Microsoft Corporation

2005-07-26 12:39:45

COMRes.dll
0x77020000
C:\WINDOWS\system32\comres.dll
2001.12.4414.258
Microsoft Corporation

2004-08-04 16:52:08

shdocvw.dll
0x76370000
C:\WINDOWS\system32\shdocvw.dll
6.00.2900.3020 (xpsp_sp2_gdr.061023-0214)
Microsoft Corporation
Shell Doc Object and Control Library
2006-10-23 23:18:15

CRYPT32.dll
0x765e0000
C:\WINDOWS\system32\crypt32.dll
5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Crypto API32
2004-08-04 16:52:08

MSASN1.dll
0x76db0000
C:\WINDOWS\system32\msasn1.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
ASN.1 Runtime APIs
2004-08-04 16:52:16

CRYPTUI.dll
0x75430000
C:\WINDOWS\system32\cryptui.dll
5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft Trust UI Provider
2004-08-04 16:52:08

WINTRUST.dll
0x76c00000
C:\WINDOWS\system32\wintrust.dll
5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft Trust Verification APIs
2004-08-04 16:52:28

IMAGEHLP.dll
0x76c60000
C:\WINDOWS\system32\imagehlp.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows NT Image Helper
2004-08-04 16:52:12

NETAPI32.dll
0x5fdd0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.2976 (xpsp_sp2_gdr.060817-0106)
Microsoft Corporation
Net Win32 API DLL
2006-08-17 20:29:48

WININET.dll
0x76680000
C:\WINDOWS\system32\wininet.dll
6.00.2900.3020 (xpsp_sp2_gdr.061023-0214)
Microsoft Corporation
Internet Extensions for Win32
2006-10-23 23:18:16

Secur32.dll
0x77fc0000
C:\WINDOWS\system32\secur32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Security Support Provider Interface
2004-08-04 16:52:24

SXS.DLL
0x75e00000
C:\WINDOWS\system32\sxs.dll
5.1.2600.3019 (xpsp_sp2_gdr.061019-0414)
Microsoft Corporation
Fusion 2.5
2006-10-20 09:37:48

shdoclc.dll
0x20000000
C:\WINDOWS\system32\shdoclc.dll
6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Shell Doc Object and Control Library
2004-08-04 16:51:40

xpsp2res.dll
0x2d70000
C:\WINDOWS\system32\xpsp2res.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Service Pack 2 Messages
2004-08-04 16:51:48

mlang.dll
0x74cf0000
C:\WINDOWS\system32\mlang.dll
6.00.2900.2530 (xpsp.040919-1030)
Microsoft Corporation
Multi Language Support DLL
2004-10-16 04:54:41

wsock32.dll
0x71a40000
C:\WINDOWS\system32\wsock32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Socket 32-Bit DLL
2004-08-04 16:52:28

Mshtml.dll
0x7e210000
C:\WINDOWS\system32\mshtml.dll
6.00.2900.3020 (xpsp_sp2_gdr.061023-0214)
Microsoft Corporation
Microsoft (R) HTML Viewer
2006-10-23 23:18:14

msls31.dll
0x74620000
C:\WINDOWS\system32\msls31.dll
3.10.349.0
Microsoft Corporation
Microsoft Line Services library file
2004-06-06 22:13:38

PSAPI.DLL
0x76bc0000
C:\WINDOWS\system32\psapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Process Status Helper
2004-08-04 16:52:22

RASAPI32.DLL
0x76eb0000
C:\WINDOWS\system32\rasapi32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Remote Access API
2004-08-04 16:52:22

rasman.dll
0x76e60000
C:\WINDOWS\system32\rasman.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Remote Access Connection Manager
2004-08-04 16:52:24

TAPI32.dll
0x76e80000
C:\WINDOWS\system32\tapi32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft(R) Windows(TM) Telephony API Client DLL
2004-08-04 16:52:26

rtutils.dll
0x76e50000
C:\WINDOWS\system32\rtutils.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Routing Utilities
2004-08-04 16:52:24

WINMM.dll
0x76b10000
C:\WINDOWS\system32\winmm.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
MCI API DLL
2004-08-04 16:52:28

sensapi.dll
0x72240000
C:\WINDOWS\system32\sensapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
SENS Connectivity API DLL
2004-08-04 16:52:24

msimtf.dll
0x74650000
C:\WINDOWS\system32\MSIMTF.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Active IMM Server DLL
2004-08-04 16:52:18

MSCTF.dll
0x74680000
C:\WINDOWS\system32\MSCTF.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
MSCTF Server DLL
2004-08-04 16:52:16

jscript.dll
0x75bc0000
C:\WINDOWS\system32\jscript.dll
5.6.0.8820
Microsoft Corporation
Microsoft (r) JScript
2004-08-04 16:52:14

iepeers.dll
0x67140000
C:\WINDOWS\system32\iepeers.dll
6.00.2900.3020 (xpsp_sp2_gdr.061023-0214)
Microsoft Corporation
Internet Explorer Peer Objects
2006-10-23 23:18:13

WINSPOOL.DRV
0x72f70000
C:\WINDOWS\system32\winspool.drv
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Spooler Driver
2004-08-04 16:52:42
最后编辑2007-01-21 23:24:28
分享到:
gototop
 

大家帮忙看看啊!
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT