因为浏览器被劫持,所以下了KAKA ,但是在重新启动的时候仍然出现修复前的状况,下面是KAKA扫描后的日志!
麻烦帮忙解决下啦!(注:这个是KAKA修复后扫描的日志)
Logfile of Kaka v2. 0. 3. 0 Scan Module v1. 0. 6. 1
Scan saved at 10:11:12, on 2007-06-22
Platform: Microsoft Windows XP Professional Service Pack 2 (Build 2600)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.baidu.com/
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 192.168.198.2 mail-server
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [fkg7g6mxk] C:\DOCUME~1\shiyh\LOCALS~1\Temp\1explore.exe
O4 - HKCU\..\Run: [bdmts050c] C:\DOCUME~1\shiyh\LOCALS~1\Temp\iexpl0re.exe
O4 - HKCU\..\Run: [ekgbf09q72gc] C:\DOCUME~1\shiyh\LOCALS~1\Temp\Servera.exe
O4 - HKCU\..\Run: [tcbug7fkuu274] C:\DOCUME~1\shiyh\LOCALS~1\Temp\crasos.exe
O4 - HKCU\..\Run: [20lyw0xr] C:\DOCUME~1\shiyh\LOCALS~1\Temp\winlog0n.exe
O4 - HKCU\..\Run: [lu4xfqc33f18] C:\DOCUME~1\shiyh\LOCALS~1\Temp\rundl132.exe
O4 - HKCU\..\Run: [hj9d2gxj89z] C:\DOCUME~1\shiyh\LOCALS~1\Temp\cftmon.exe
O4 - HKCU\..\Run: [PPMate_REC] "E:\lita-other\PPMate\recordplan.exe" /B.
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [ctfm0n.exe] "C:\WINDOWS\system32\ctfm0n.exe"
O4 - Startup: desktop.ini =
O4 - Global Startup: desktop.ini =
O4 - Global Startup: Scanner File Utility.lnk = C:\Program Files\Scanner\FileUtility\NsCatCom.exe