新东 - 2008-4-13 17:36:00
最近用卡卡查出8个流氓软件,怎么删也删不掉,安全模式下也试过,但用瑞星杀毒软件查杀,却又查不出病毒,到底怎么回事啊。
我用的全是正版瑞星,全是升级到最新版本的。
下面是我日志:
瑞星卡卡电脑诊断日志 v1.30 (2008-4-13 17:12:2) 北京瑞星科技股份有限公司
注释: [A]表示该文件存在自启动关联;
[M]表示该文件在内存中;
+ 注册表自运行项目
+ 系统服务
+ HKLM\System\CurrentControlSet\Services
3wareSrv
[A ] 1. c:\windows\system32\3waresrv.exe
LightScribeService
[AM] 2. c:\program files\common files\lightscribe\lssrvc.exe
NVSvc
[AM] 3. c:\windows\system32\nvsvc32.exe
odserv
[A ] 4. c:\program files\common files\microsoft shared\office12\odserv.exe
ose
[A ] 5. c:\program files\common files\microsoft shared\source engine\ose.exe
RfwProxySrv
[AM] 6. c:\program files\rising\rfw\rfwproxy.exe
RfwService
[AM] 7. c:\program files\rising\rfw\rfwsrv.exe
RsCCenter
[AM] 8. c:\program files\rising\rav\ccenter.exe
RsRavMon
[AM] 9. c:\program files\rising\rav\ravmond.exe
UMWdf
[AM] 10. c:\windows\system32\wdfmgr.exe
+ 内核驱动
+ HKLM\System\CurrentControlSet\Services
2310_00
[A ] 11. c:\windows\system32\drivers\2310_00.sys
3wareDrv
[A ] 12. c:\windows\system32\drivers\3waredrv.sys
3waregsm
[A ] 13. c:\windows\system32\drivers\3waregsm.sys
3wDrv100
[A ] 14. c:\windows\system32\drivers\3wdrv100.sys
3wFlt100
[A ] 15. c:\windows\system32\drivers\3wflt100.sys
a320raid
[A ] 16. c:\windows\system32\drivers\a320raid.sys
aaatimeo
[A ] 17. c:\windows\system32\drivers\aaatimeo.sys
aac
[A ] 18. c:\windows\system32\drivers\aac.sys
aacsas
[A ] 19. c:\windows\system32\drivers\aacsas.sys
aarich
[A ] 20. c:\windows\system32\drivers\aarich.sys
adp94xx
[A ] 21. c:\windows\system32\drivers\adp94xx.sys
adpu320
[A ] 22. c:\windows\system32\drivers\adpu320.sys
aec6210
[A ] 23. c:\windows\system32\drivers\aec6210.sys
aec6260
[A ] 24. c:\windows\system32\drivers\aec6260.sys
aec6280
[A ] 25. c:\windows\system32\drivers\aec6280.sys
AEC6880
[A ] 26. c:\windows\system32\drivers\aec6880.sys
aec6897
[A ] 27. c:\windows\system32\drivers\aec6897.sys
AFAMgt
[A ] 28. c:\windows\system32\drivers\afamgt.sys
ahcix86
[A ] 29. c:\windows\system32\drivers\ahcix86.sys
amdbusdr
[A ] 30. c:\windows\system32\drivers\amdbusdr.sys
amdeide
[A ] 31. c:\windows\system32\drivers\amdeide.sys
atiide
[A ] 32. c:\windows\system32\drivers\atiide.sys
bb-run
[A ] 33. c:\windows\system32\drivers\bb-run.sys
cda1000
[A ] 34. c:\windows\system32\drivers\cda1000.sys
cercsr6
[A ] 35. c:\windows\system32\drivers\cercsr6.sys
Cpq32fs2
[A ] 36. c:\windows\system32\drivers\cpq32fs2.sys
dontgo
[A ] 37. c:\windows\system32\drivers\dontgo.sys
FastSx
[A ] 38. c:\windows\system32\drivers\fastsx.sys
fasttrak
[A ] 39. c:\windows\system32\drivers\fasttrak.sys
fasttx2k
[A ] 40. c:\windows\system32\drivers\fasttx2k.sys
fttxr52P
[A ] 41. c:\windows\system32\drivers\fttxr52p.sys
HDAudBus
[A ] 42. c:\windows\system32\drivers\hdaudbus.sys
HookCont
[A ] 43. c:\windows\system32\drivers\hookcont.sys
HookNtos
[A ] 44. c:\windows\system32\drivers\hookntos.sys
HookReg
[A ] 45. c:\windows\system32\drivers\hookreg.sys
HookSys
[A ] 46. c:\windows\system32\drivers\hooksys.sys
HookUrl
[A ] 47. c:\program files\rising\rfw\hookurl.sys
hpt374
[A ] 48. c:\windows\system32\drivers\hpt374.sys
hpt3xx
[A ] 49. c:\windows\system32\drivers\hpt3xx.sys
hptmv
[A ] 50. c:\windows\system32\drivers\hptmv.sys
hptmv6
[A ] 51. c:\windows\system32\drivers\hptmv6.sys
hptpro
[A ] 52. c:\windows\system32\drivers\hptpro.sys
iaStor
[A ] 53. c:\windows\system32\drivers\iastor.sys
IntcAzAudAddService
[A ] 54. c:\windows\system32\drivers\rtkhdaud.sys
iteraid
[A ] 55. c:\windows\system32\drivers\iteraid.sys
JGOGO
[A ] 56. c:\windows\system32\drivers\jgogo.sys
JRAID
[A ] 57. c:\windows\system32\drivers\jraid.sys
m5281
[A ] 58. c:\windows\system32\drivers\m5281.sys
m5287
[A ] 59. c:\windows\system32\drivers\m5287.sys
m5288
[A ] 60. c:\windows\system32\drivers\m5288.sys
m5289
[A ] 61. c:\windows\system32\drivers\m5289.sys
MegaIDE
[A ] 62. c:\windows\system32\drivers\megaide.sys
mv61xx
[A ] 63. c:\windows\system32\drivers\mv61xx.sys
nfrd960
[A ] 64. c:\windows\system32\drivers\nfrd960.sys
Pnp649r
[A ] 65. c:\windows\system32\drivers\pnp649r.sys
Pnp680
[A ] 66. c:\windows\system32\drivers\pnp680.sys
Pnp680r
[A ] 67. c:\windows\system32\drivers\pnp680r.sys
ql2100
[A ] 68. c:\windows\system32\drivers\ql2100.sys
ql2200
[A ] 69. c:\windows\system32\drivers\ql2200.sys
raidsrc
[A ] 70. c:\windows\system32\drivers\raidsrc.sys
RfwBase
[A ] 71. c:\windows\system32\drivers\rfwbase.sys
rr232x
[A ] 72. c:\windows\system32\drivers\rr232x.sys
RsAntiSpyware
[A ] 73. c:\windows\system32\drivers\rsboot.sys
RsFwDrv
[A ] 74. c:\pro
[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; MAXTHON 2.0)
新东 - 2008-4-13 17:37:00
+ 正在运行的进程
+ 000000f0(240) Ravmon.exe
00400000[00064000]
[ M] 138. c:\program files\rising\rav\ravmon.exe
7C140000[00103000]
[ M] 139. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 140. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 141. c:\windows\system32\msvcp71.dll
5D360000[0000A000]
[ M] 142. c:\windows\system32\mfc71chs.dll
10000000[0001F000]
[ M] 143. c:\program files\rising\rav\proccom.dll
00B20000[00024000]
[ M] 144. c:\program files\rising\rav\rscommx2.dll
23700000[00028000]
[ M] 145. c:\program files\rising\rav\rscommon.dll
00D70000[0002B000]
[ M] 146. c:\program files\rising\rav\recomp.dll
00EB0000[00031000]
[ M] 147. c:\program files\rising\rav\refs.dll
00F00000[0002F000]
[ M] 148. c:\program files\rising\rav\viruslib.dll
01040000[00027000]
[ M] 149. c:\program files\rising\rav\relibldr.dll
010C0000[0000E000]
[ M] 150. c:\program files\rising\rav\rsappmgr.dll
010E0000[00030000]
[ M] 151. c:\program files\rising\rav\cfgdll.dll
01240000[00075000]
[ M] 152. c:\program files\rising\rav\monrule.dll
23900000[00040000]
[ M] 153. c:\program files\rising\rav\pngdll.dll
26600000[000B8000]
[ M] 154. c:\program files\rising\rav\rsguilib.dll
23800000[00018000]
[ M] 155. c:\program files\rising\rav\rsxml.dll
+ 000000f4(244) runiep.exe
00400000[00020000]
[AM] 128. c:\program files\rising\antispyware\runiep.exe
7C140000[00103000]
[ M] 156. c:\program files\rising\antispyware\mfc71.dll
7C340000[00056000]
[ M] 157. c:\program files\rising\antispyware\msvcr71.dll
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
5D360000[0000A000]
[ M] 142. c:\windows\system32\mfc71chs.dll
+ 00000164(356) RfwMain.exe
00400000[00091000]
[AM] 127. c:\program files\rising\rfw\rfwmain.exe
7C140000[00103000]
[ M] 139. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 140. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 141. c:\windows\system32\msvcp71.dll
26600000[000B8000]
[ M] 158. c:\program files\rising\rfw\rsguilib.dll
5D360000[0000A000]
[ M] 142. c:\windows\system32\mfc71chs.dll
10000000[0001F000]
[ M] 159. c:\program files\rising\rfw\proccom.dll
00B10000[00024000]
[ M] 160. c:\program files\rising\rfw\rscommx2.dll
00C50000[0000E000]
[ M] 161. c:\program files\rising\rfw\rsappmgr.dll
00C70000[00030000]
[ M] 162. c:\program files\rising\rfw\cfgdll.dll
23700000[00028000]
[ M] 163. c:\program files\rising\rfw\rscommon.dll
00EC0000[00014000]
[ M] 164. c:\program files\rising\rfw\rfwctrl.dll
23800000[00018000]
[ M] 165. c:\program files\rising\rfw\rsxml.dll
23900000[00040000]
[ M] 166. c:\program files\rising\rfw\pngdll.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
013F0000[0000F000]
[ M] 169. c:\program files\rising\rfw\rfwrule.dll
+ 000001e0(480) spoolsv.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 0000022c(556) RTHDCPL.EXE
00400000[010E7000]
[AM] 125. c:\windows\rthdcpl.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
72C80000[00008000]
[ M] 170. c:\windows\system32\msacm32.drv
+ 00000258(600) svchost.exe
00400000[00012000]
[ M] 171. c:\windows\svchost.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 0000025c(604) RavTask.exe
00400000[00034000]
[AM] 126. c:\program files\rising\rav\ravtask.exe
10000000[0001F000]
[ M] 143. c:\program files\rising\rav\proccom.dll
00A30000[00024000]
[ M] 144. c:\program files\rising\rav\rscommx2.dll
23700000[00028000]
[ M] 145. c:\program files\rising\rav\rscommon.dll
00C90000[0000E000]
[ M] 150. c:\program files\rising\rav\rsappmgr.dll
08CB0000[00030000]
[ M] 151. c:\program files\rising\rav\cfgdll.dll
+ 0000026c(620) smss.exe
+ 000002b0(688) csrss.exe
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 000002c8(712) winlogon.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
72C80000[00008000]
[ M] 170. c:\windows\system32\msacm32.drv
+ 000002f8(760) services.exe
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 00000304(772) lsass.exe
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 0000039c(924) svchost.exe
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F00
新东 - 2008-4-13 17:37:00
+ 000005cc(1484) rfwProxy.exe
00400000[00236000]
[AM] 6. c:\program files\rising\rfw\rfwproxy.exe
7C140000[00103000]
[ M] 139. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 140. c:\windows\system32\msvcr71.dll
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
5D360000[0000A000]
[ M] 142. c:\windows\system32\mfc71chs.dll
00B60000[0001F000]
[ M] 159. c:\program files\rising\rfw\proccom.dll
00B80000[00024000]
[ M] 160. c:\program files\rising\rfw\rscommx2.dll
00CD0000[0000F000]
[ M] 169. c:\program files\rising\rfw\rfwrule.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
011A0000[00016000]
[ M] 213. c:\program files\rising\rfw\monmid.dll
+ 00000638(1592) RUNDLL32.EXE
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
00A00000[00016000]
[ M] 214. c:\windows\system32\nvmctray.dll
00B80000[00060000]
[ M] 173. c:\windows\system32\nvapi.dll
00C40000[00037000]
[ M] 172. c:\windows\system32\nvrszhc.dll
+ 00000660(1632) DeskWidget.exe
00400000[00306000]
[AM] 122. c:\program files\8-jie software\deskwidget\deskwidget.exe
4B4F0000[00006000]
[ M] 215. c:\windows\system32\odbcbcp.dll
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
+ 00000700(1792) rfwstub.exe
00400000[00017000]
[ M] 216. c:\program files\rising\rfw\rfwstub.exe
7C3A0000[0007B000]
[ M] 141. c:\windows\system32\msvcp71.dll
7C340000[00056000]
[ M] 140. c:\windows\system32\msvcr71.dll
23700000[00028000]
[ M] 163. c:\program files\rising\rfw\rscommon.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 00000720(1824) ctfmon.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
+ 00000790(1936) RavStub.exe
00400000[00021000]
[ M] 217. c:\program files\rising\rav\ravstub.exe
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
10000000[0001F000]
[ M] 143. c:\program files\rising\rav\proccom.dll
00660000[00024000]
[ M] 144. c:\program files\rising\rav\rscommx2.dll
23700000[00028000]
[ M] 145. c:\program files\rising\rav\rscommon.dll
+ 000008a8(2216) Ras.exe
00400000[001FF000]
[ M] 218. c:\program files\rising\antispyware\ras.exe
7C140000[00103000]
[ M] 156. c:\program files\rising\antispyware\mfc71.dll
7C340000[00056000]
[ M] 157. c:\program files\rising\antispyware\msvcr71.dll
7C3A0000[0007B000]
[ M] 219. c:\program files\rising\antispyware\msvcp71.dll
10000000[00013000]
[ M] 220. c:\program files\rising\antispyware\topsoft.dll
00370000[00032000]
[ M] 221. c:\program files\rising\antispyware\ncomm.dll
5D360000[0000A000]
[ M] 142. c:\windows\system32\mfc71chs.dll
00EF0000[0001F000]
[ M] 143. c:\program files\rising\rav\proccom.dll
00F10000[00024000]
[ M] 144. c:\program files\rising\rav\rscommx2.dll
01060000[0014D000]
[ M] 222. c:\program files\rising\antispyware\rasgui.dll
23800000[00022000]
[ M] 223. c:\program files\rising\antispyware\rsxml.dll
037C0000[00018000]
[ M] 224. c:\program files\rising\antispyware\ktrojan.dll
037F0000[0002F000]
[ M] 225. c:\program files\rising\antispyware\engine.dll
03830000[00040000]
[ M] 226. c:\program files\rising\antispyware\rsdialog.dll
03880000[00024000]
[ M] 227. c:\program files\rising\antispyware\scanunv.dll
038C0000[0001F000]
[ M] 228. c:\program files\rising\antispyware\secscan.dll
039A0000[00015000]
[ M] 229. c:\program files\rising\antispyware\secex.dll
040A0000[00012000]
[ M] 230. c:\program files\rising\antispyware\zip.dll
03710000[00028000]
[ M] 231. c:\program files\rising\rav\ravscrch.dll
30000000[003AE000]
[ M] 232. c:\windows\system32\macromed\flash\flash9e.ocx
72C80000[00008000]
[ M] 170. c:\windows\system32\msacm32.drv
+ 000009f0(2544) inetinfo.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
+ 00000a08(2568) LSSrvc.exe
00400000[0000F000]
[AM] 2. c:\program files\common files\lightscribe\lssrvc.exe
67000000[00014000]
[ M] 233. c:\program files\common files\lightscribe\lssproxy.dll
68000000[0000B000]
[ M] 234. c:\program files\common files\lightscribe\lslog.dll
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
+ 00000a90(2704) nvsvc32.exe
00400000[0002B000]
[AM] 3. c:\windows\system32\nvsvc32.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
01360000[00060000]
[ M] 173. c:\windows\system32\nvapi.dll
+ 00000b08(2824) wdfmgr.exe
01000000[0000C000]
[AM] 10. c:\windows\system32\wdfmgr.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
+ 00000e88(3720) alg.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
+ 00000ec4(3780) wuauclt.exe
10000000[0001E000]
[AM] 137. c:\windows\system32\ieprot.dll
70000000[00014000]
[ M] 167. c:\program files\rising\rfw\ijt_base.dll
60000000[0000F000]
[ M] 168. c:\program files\rising\rfw\olemon.dll
50E60000[0000C000]
[ M] 176. c:\windows\system32\wups2.dll
量子皮 - 2008-4-13 19:47:00
卡卡助手是杀软的辅助!也就是互补!至于病毒楼主可以咨询一下瑞星在线专家门诊:http://help.rising.com.cn/help/RSZX.html
© 2000 - 2026 Rising Corp. Ltd.