瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 瑞星防火墙为什么会不能开启??求助!

1   1  /  1  页   跳转

瑞星防火墙为什么会不能开启??求助!

瑞星防火墙为什么会不能开启??求助!

瑞星防火墙为什么会不能开启??求助!
  我机子是WIN2003系统,在机子重装后装上防火墙就出显了不能开启:点击程序界面上的‘启动保护’也不用启动。怀凝是病毒,但用最新病毒库的瑞星扫描并未发现病毒。
是什么东西造成,请大家帮忙!!给个法子,非常感谢!!

最后编辑2005-12-02 15:12:24
分享到:
gototop
 

Logfile of HijackThis v1.99.0
Scan saved at 15:08:12, on 2005/12/02
Platform: Unknown Windows (WinNT 5.02.3790)
MSIE: Internet Explorer v6.00 (6.00.3790.0000)

Running processes:
C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
d:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\Dfssvc.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\winlogon.exe
d:\Program Files\RealVNC\VNC4\WinVNC4.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\rdpclip.exe
C:\WINDOWS\system32\conime.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\qcssbl9.exe
C:\Program Files\Common Files\UPDATE\Update.exe
D:\Program Files\Rising\Rfw\rfwmain.exe
C:\WINDOWS\system32\CTFMON.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
C:\PROGRAM FILES\RISING\RAV\RavStub.exe
c:\program files\rising\rav\RAVMON.EXE
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\RunDll32.exe
D:\瑞星杀毒\ha-hijackthis199-xqb\HijackThis.exe



gototop
 

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,
O3 - Toolbar: @msdxmLC.dll,-1@2052,电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O4 - HKLM\..\Run: [Update] C:\Program Files\Common Files\UPDATE\Update.exe
O4 - HKLM\..\Run: [RfwMain] "d:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavTimer] C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [RavMon] C:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: VIKA 订阅器 - {2BB49E59-100F-4ca6-9127-E0E3FF76F98E} - C:\Program Files\VIKA\vkclient.exe.lnk
O9 - Extra 'Tools' menuitem: VIKA 订阅器 - {2BB49E59-100F-4ca6-9127-E0E3FF76F98E} - C:\Program Files\VIKA\vkclient.exe.lnk
O9 - Extra button: 信息检索 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Broken Internet access because of LSP provider 'c:\documents and settings\administrator.qtyygs\windows\system32\mswsock.dll' missing
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1133490307484
O17 - HKLM\System\CCS\Services\Tcpip\..\{81F9237A-C1B9-4B93-AC48-60BDB9BCCF1C}: NameServer = 218.74.122.74
O17 - HKLM\System\CS1\Services\Tcpip\..\{81F9237A-C1B9-4B93-AC48-60BDB9BCCF1C}: NameServer = 218.74.122.74
O17 - HKLM\System\CS2\Services\Tcpip\..\{81F9237A-C1B9-4B93-AC48-60BDB9BCCF1C}: NameServer = 218.74.122.74
O20 - AppInit_DLLs: APIHookDll.dll
O23 - Service: Application Layer Gateway Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Application Management - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Background Intelligent Transfer Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: BrSplService - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Computer Browser - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Cryptographic Services - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Distributed File System - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\Dfssvc.exe (file missing)
O23 - Service: DHCP Client - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Logical Disk Manager Administrative Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\dmadmin.exe (file missing)
O23 - Service: Logical Disk Manager - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: DNS Client - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Error Reporting Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Event Log - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\services.exe (file missing)
O23 - Service: Help and Support - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: HTTP SSL - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Server - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Workstation - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: TCP/IP NetBIOS Helper - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Net Logon - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Network Connections - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Network Location Awareness (NLA) - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: File Replication - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\ntfrs.exe (file missing)
O23 - Service: NT LM Security Support Provider - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Removable Storage - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Plug and Play - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\services.exe (file missing)
O23 - Service: IPSEC Services - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Protected Storage - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Remote Access Auto Connection Manager - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Remote Access Connection Manager - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Remote Registry - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Rising Personal Firewall Service - Beijing Rising Technology Corporation Limited - d:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Remote Procedure Call (RPC) Locator - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Remote Procedure Call (RPC) - Unknown - C:\Documents.exe (file missing)
O23 - Service: Rising Process Communication Center - rising - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: Resultant Set of Policy Provider - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\RSoPProv.exe (file missing)
O23 - Service: RsRavMon Service - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
O23 - Service: Special Administration Console Helper - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Security Accounts Manager - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Smart Card - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\SCardSvr.exe (file missing)
O23 - Service: Task Scheduler - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Secondary Logon - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: System Event Notification - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Shell Hardware Detection - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Print Spooler - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\spoolsv.exe (file missing)
O23 - Service: Microsoft Software Shadow Copy Provider - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Performance Logs and Alerts - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\smlogsvc.exe (file missing)
O23 - Service: Telephony - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Terminal Services - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Distributed Link Tracking Client - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Upload Manager - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Uninterruptible Power Supply - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\ups.exe (file missing)
O23 - Service: Virtual Disk Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\vds.exe (file missing)
O23 - Service: Volume Shadow Copy - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\vssvc.exe (file missing)
O23 - Service: Windows Time - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: WinHTTP Web Proxy Auto-Discovery Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Windows Management Instrumentation - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: VNC Server Version 4 - RealVNC Ltd. - d:\Program Files\RealVNC\VNC4\WinVNC4.exe
O23 - Service: Portable Media Serial Number Service - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Windows Management Instrumentation Driver Extensions - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
O23 - Service: Automatic Updates - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\system32\svchost.exe (file missing)
O23 - Service: Wireless Configuration - Unknown - C:\Documents and Settings\Administrator.QTYYGS\WINDOWS\System32\svchost.exe (file missing)
gototop
 

不好意思,HijackThis v1.99.0
的内容太多,只好分段来发。呵呵
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT