123   2  /  3  页   跳转

这个病毒杀不了~来解决下

7楼回答了打不开I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 

XP2I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 

XP应该有这个文件啊。。。。。(开始怀疑中)

您这样用临时办法:
开始-程序-瑞星杀毒软件-瑞星工具-注册表修复工具

里面有一个关于启动的项目 看看这里有什么    截图I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 

确实是XP2,我账号都没了。。不跟你开玩笑的I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý

附件附件:

您所在的用户组无法下载或查看附件

gototop
 

引用:
【jnjhujuh的贴子】确实是XP2,我账号都没了。。不跟你开玩笑的
...........................

不是说系统 我时说开始怀疑您的计算机有恶意程序。。。十分抱歉让您误解。。。

请按照上面的方法截图给我看看~I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 

是不是这个?I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý

附件附件:

您所在的用户组无法下载或查看附件

gototop
 

您用 HijackThis 扫描歌日志上来吧I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 

11I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý

附件附件:

您所在的用户组无法下载或查看附件

gototop
 

【回复“jnjhujuh”的帖子】
把hijackthis的内容复制帖到帖子上来.
不要截图.

I±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at 23:00:48, on 2005-11-14
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
F:\软件\瑞星\新建文件夹\RISING\RAV\Ravmond.exe
F:\软件\瑞星\新建文件夹\RISING\RAV\RavStub.exe
d:\program files\rising\rfw\rfwsrv.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
d:\program files\rising\rfw\RfwMain.exe
F:\软件\瑞星\新建文~1\RISING\RAV\RAVMON.EXE
F:\软件\瑞星\新建文~1\RISING\RAV\RAVTIMER.EXE
D:\WINDOWS\system32\sistray.EXE
D:\WINDOWS\system32\taskmgr.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\MsnQun\MsnQun.exe
D:\Program Files\Tencent\TT\TTraveler.exe
D:\Documents and Settings\0000\桌面\新建文件夹 (2)\hijackthis1991\HijackThis.exe

R3 - URLSearchHook: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - D:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - D:\WINDOWS\system32\xunleibho_v8.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03}? - (no file)
O2 - BHO: (no name) - {35980F6E-A137-4E50-953D-813BB8556899}? - (no file)
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - D:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll
O3 - Toolbar: (no name) - {115F6E46-FCBC-41ed-B3B5-3BDDD4AAB5E5}? - (no file)
O3 - Toolbar: (no name) - {406F94F0-504F-4a40-8DFD-58B0666ABEBD}? - (no file)
O3 - Toolbar: (no name) - {2E7D3330-EB94-4518-B0FE-E05379A5C1DA}? - (no file)
O3 - Toolbar: (no name) - {F60C7D81-8471-4D40-AAFE-56D318F34C2D}? - (no file)
O3 - Toolbar: (no name) - {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C}? - (no file)
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - D:\WINDOWS\system32\KakaTool.dll
O3 - Toolbar: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - D:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll
O4 - HKLM\..\Run: [PHIME2002ASync] ; D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] ; D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [Cmaudio] ; RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [RavMon] F:\软件\瑞星\新建文~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKLM\..\Run: [RavTimer] F:\软件\瑞星\新建文~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [SiS Tray] D:\WINDOWS\system32\sistray.EXE
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN Messenger\msnmsgr.exe" /background
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: !搜一搜 - res://D:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll/246
O8 - Extra context menu item: &使用迅雷下载 - D:\Program Files\Thunder Network\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - D:\Program Files\Thunder Network\Thunder\getallurl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - F:\网络\QQ3\qq\AddToNetDisk.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - F:\网络\QQ3\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - F:\网络\QQ3\qq\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - F:\网络\QQ3\qq\SendMMS.htm
O9 - Extra button: Sun Java 控制台 - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}? - D:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java 控制台 - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}? - D:\WINDOWS\system32\msjava.dll
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - E:\浩方\浩方对战平台\GameClient.exe
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A}? - E:\浩方\浩方对战平台\GameClient.exe
O9 - Extra button: (no name) - {35980F6E-A137-4E50-953D-813BB8556899}? - (no file)
O9 - Extra button: 常用网址 - {36B39F01-7B48-44AD-A165-5849CD8EF562}? - D:\WINDOWS\system32\SHDOCVW.DLL
O9 - Extra button: (no name) - {6671A433-5C3D-463d-A7CF-5587F9B7E191}? - D:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
O9 - Extra 'Tools' menuitem: MMSAssist工具条设置 - {6671A433-5C3D-463d-A7CF-5587F9B7E191}? - D:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
O9 - Extra button: SoQ - {8F67DCF3-B1DF-4A39-A787-3775784BF737}? - http://www.soq.com (file missing)
O9 - Extra button: 易趣购物 - {DE607144-AC19-424e-863A-3D70ABDF119A}? - http://click2.ad4all.net/url2/urlmanage/url.asp****5 (file missing)
O9 - Extra 'Tools' menuitem: 易趣购物 - {DE607144-AC19-424e-863A-3D70ABDF119A}? - http://click2.ad4all.net/url2/urlmanage/url.asp****5 (file missing)
O9 - Extra button: 易趣购物 - {EE60714F-AC17-427e-861A-FD60CBDF119A} - http://click2.ad4all.net/url2/urlmanage/url.asp****109 (file missing)
O9 - Extra 'Tools' menuitem: 易趣购物 - {EE60714F-AC17-427e-861A-FD60CBDF119A} - http://click2.ad4all.net/url2/urlmanage/url.asp****109 (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683}? - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683}? - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://cn.download.zs.yahoo.com/partner/kavwebscan_unicode.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1131807115078
O17 - HKLM\System\CCS\Services\Tcpip\..\{53774830-9AFC-441A-82BE-4E2E98BAF9FF}: NameServer = 202.96.209.6 202.96.209.133
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "D:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - d:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - F:\软件\瑞星\新建文件夹\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - F:\软件\瑞星\新建文件夹\RISING\RAV\Ravmond.exeI±V oVZ€òbbs.ikaka.comË$ÿ0d†Â|ý
gototop
 
123   2  /  3  页   跳转
页面顶部
Powered by Discuz!NT