12   2  /  2  页   跳转

help中病毒了

[D:\Program Files\WLOnline\IJL15.DLL]  <Intel Corporation><1,5,4,36>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [C:\Documents and Settings\user\桌面\jxpl0705\jxpl.dll]  <N/A><N/A>
[PID: 2296][D:\Program Files\WLOnline\aLogin.exe]  <N/A><N/A>
    [D:\Program Files\WLOnline\rodraw2.dll]  <N/A><N/A>
    [D:\Program Files\WLOnline\IJL15.DLL]  <Intel Corporation><1,5,4,36>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [C:\Documents and Settings\user\桌面\jxpl0705\jxpl.dll]  <N/A><N/A>
[PID: 1956][C:\WINDOWS\explorer.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [D:\xunlei\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [C:\PROGRA~1\winkld\Winkld.dat]  <www.88dog.com><2, 0, 0, 1>
    [C:\WINDOWS\xboxcenter.dll]  <N/A><N/A>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [D:\KAV2006\KAVEXT.DLL]  <Kingsoft Corporation><2005, 8, 5, 16>
[PID: 2980][C:\Documents and Settings\user\桌面\MagicSet\srsi.exe]  <Super Rabbit Soft><4.85>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 1968][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [C:\DOCUME~1\user\桌面\MAGICSET\haokanbar2.dll]  <Xiang Feng Technology><2, 0, 0, 6>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\xboxcenter.dll]  <N/A><N/A>
    [D:\KAV2006\KAScript.DLL]  <Kingsoft Corporation><2006, 2, 10, 60>
    [D:\KAV2006\KAEPlat.DLL]  <Kingsoft Corp.><2005, 12, 29, 56>
    [D:\KAV2006\KAEMem.DAT]  <Kingsoft><2006, 4, 12, 13>
    [D:\KAV2006\KAEUnpack.DAT]  <Kingsoft Corp.><2006, 3, 21, 17>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [C:\WINDOWS\system32\FREEWB.IME]  <Delphi Fan Studio><4.0.001>
[PID: 3024][F:\Program Files\KuGoo3\KuGoo.exe]  <><3.2.0.77>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [C:\WINDOWS\xboxcenter.dll]  <N/A><N/A>
    [D:\KAV2006\KAScript.DLL]  <Kingsoft Corporation><2006, 2, 10, 60>
    [D:\KAV2006\KAEPlat.DLL]  <Kingsoft Corp.><2005, 12, 29, 56>
    [D:\KAV2006\KAEMem.DAT]  <Kingsoft><2006, 4, 12, 13>
    [D:\KAV2006\KAEUnpack.DAT]  <Kingsoft Corp.><2006, 3, 21, 17>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [F:\Program Files\KuGoo3\mp3parse.dll]  < ><1, 0, 2, 1>
    [F:\Program Files\KuGoo3\kgmpg.dll]  < ><1, 0, 4, 1>
[PID: 5572][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [C:\DOCUME~1\user\桌面\MAGICSET\haokanbar2.dll]  <Xiang Feng Technology><2, 0, 0, 6>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\xboxcenter.dll]  <N/A><N/A>
    [D:\KAV2006\KAScript.DLL]  <Kingsoft Corporation><2006, 2, 10, 60>
    [D:\KAV2006\KAEPlat.DLL]  <Kingsoft Corp.><2005, 12, 29, 56>
    [D:\KAV2006\KAEMem.DAT]  <Kingsoft><2006, 4, 12, 13>
    [D:\KAV2006\KAEUnpack.DAT]  <Kingsoft Corp.><2006, 3, 21, 17>
[PID: 3012][C:\Documents and Settings\user\桌面\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [D:\KAV2006\KASocket.dll]  <Kingsoft Corporation><2005, 2, 22, 233>
    [C:\WINDOWS\xboxcenter.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  Error. [winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

运行(双击)System Repair Engineer,使用“系统修复,文件关联,勾选“全选”点“修复”使所有扩展名都恢复正常
下载超级兔子。
http://www.pctutu.com/srmsdown.asp
安装好后,打开“超级兔子清理王”“专业卸载,卸载所有提示的垃圾软件,卸载是不要打开任何浏览窗口。卸载不了可以重启后再去卸载。
卸载完后重启
双击我的电脑,工具,文件夹选项,查看,单击选取"显示隐藏文件或文件夹"清除"隐藏受保护的操作系统文件(推荐)"复选框。在提示确定更改时,单击“是”,清除“隐藏已知文件类型的扩展名
删除
c:\program Files\易虎
C:\WINDOWS\system32\spoolsv删除整个文件夹
C:\PROGRA~1\baigoo\
gototop
 

晕倒,从日志上看来,超级兔子楼主应该已经装了才对,看来楼主不太会用。
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT