瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 求助~!谁帮我看一下我的HijackThis@Qoo的扫描日志啊

1   1  /  1  页   跳转

求助~!谁帮我看一下我的HijackThis@Qoo的扫描日志啊

求助~!谁帮我看一下我的HijackThis@Qoo的扫描日志啊

HijackThis@Qoo的扫描日志  V1.97.7
Scan saved at 10:05:55, on 2006-7-26
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\KpopMon.EXE
C:\Program Files\CNNIC\Cdn\cdnup.exe
C:\Program Files\KWatchUI.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MailMon.EXE
C:\Program Files\KAVPlus.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\KAVSvc.EXE
C:\WINDOWS\System32\VIPTray.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
F:\muma\Iparmor\Iparmor.exe
F:\茜茜静听\TTPlayer.exe
C:\Program Files\ChinaNet\VnetClient.exe
F:\qqq\qq\QQ.exe
C:\Program Files\QQ2005\TIMPlatform.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
F:\qqq\qq\QQ.exe
d:\My Documents\hijackthis1.97_qoo\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE

O2 - BHO: wmpdrm - {0E674588-66B7-4E19-9D0E-2053B800F69F} - (no file)
O2 - BHO: (no name) - {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} - C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O2 - BHO: (no name) - {999ADFA2-8AD1-47ff-97FC-69FB847458F4} - C:\Progra~1\NetMeeting\nmview.dll
O2 - BHO: (no name) - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - (no file)
O4 - HKLM\..\Run: [KAVRun] C:\Program Files\KAVRun.EXE
O4 - HKLM\..\Run: [Kulansyn] C:\Program Files\Kulansyn.EXE
O4 - HKLM\..\Run: [KpopMon] C:\Program Files\KpopMon.EXE
O4 - HKLM\..\Run: [CdnCtr] C:\Program Files\CNNIC\Cdn\cdnup.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: NTUSER.DAT
O4 - Startup: NTUSER.DAT.LOG
O4 - Startup: ntuser.ini
O4 - Global Startup: ntuser.dat
O4 - Global Startup: ntuser.dat.LOG
O8 - Extra context menu item: 上传到QQ网络硬盘 - F:\qqq\qq\AddToNetDisk.htm
O8 - Extra context menu item: 使用影音传送带下载 - C:\Program Files\Xi\NetTransport 2\NTAddLink.html
O8 - Extra context menu item: 使用影音传送带下载全部链接 - C:\Program Files\Xi\NetTransport 2\NTAddList.html
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - F:\qqq\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - F:\qqq\qq\AddEmotion.htm
O8 - Extra context menu item: 添加到雅虎收藏+ - http://myweb.cn.yahoo.com/post.html?F=D2_A
O8 - Extra context menu item: 用QQ彩信发送该图片 - F:\qqq\qq\SendMMS.htm
O10 - Unknown file in Winsock LSP: c:\windows\system32\cdnns.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\quartz32.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\quartz32.dll
O11 - Options group: [CDNCLIENT] 
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {FEE1002D-90A5-4A5D-AABE-01803FFBCF7A} (pCastPanel Class) - http://cache10.itv.mop.com/pCastCtl-1.0.0.88_signed.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{17C1F9F5-F199-425F-AA81-30E5D0C99D59}: NameServer = 218.85.157.99 202.101.113.55
O17 - HKLM\System\CS1\Services\Tcpip\..\{17C1F9F5-F199-425F-AA81-30E5D0C99D59}: NameServer = 218.85.157.99 202.101.113.55
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - %SystemRoot%\system32\mshtml.dll

俺是个新手啊,不知道该咋办了,谁帮一下忙啊~谢了~
最后编辑2006-07-26 11:57:07
分享到:
gototop
 

O10 - Unknown file in Winsock LSP: c:\windows\system32\quartz32.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\quartz32.dll
需要用LSPFix 来修复..
LSPFix(汉化版) 下载地址:http://forum.ikaka.com/topic.asp?board=67&artid=5188931
(8楼...)
同时下载WinsockXPFix.exe...(2楼...)
----------------------------------------------------------------
先运行LSPFix ... 勾上 我确定要进行修复操作 ...
然后将quartz32.dll移到右边...点下完成...
----------------------------------------------------------------
如果在操作之后不能上网...请用WinsockXPFix.exe 修复一下即可...安全模式下..

修复
O2 - BHO: wmpdrm - {0E674588-66B7-4E19-9D0E-2053B800F69F} - (no file)
O2 - BHO: (no name) - {999ADFA2-8AD1-47ff-97FC-69FB847458F4} - C:\Progra~1\NetMeeting\nmview.dll
O2 - BHO: (no name) - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - (no file)
O4 - Startup: NTUSER.DAT
O4 - Startup: NTUSER.DAT.LOG
O4 - Startup: ntuser.ini
O4 - Global Startup: ntuser.dat
O4 - Global Startup: ntuser.dat.LOG
删除
C:\Progra~1\NetMeeting\nmview.dll

http://www.pctutu.com/srmsdown.asp
下载超级兔子..用超级兔子清理王卸载流氓软件...(安全模式...)
gototop
 

不胜感激
gototop
 

55555~
怎么修复了那些都还在啊,
O4 - Startup: NTUSER.DAT
O4 - Startup: NTUSER.DAT.LOG
O4 - Startup: ntuser.ini
O4 - Global Startup: ntuser.dat
O4 - Global Startup: ntuser.dat.LOG
这个提示删不掉
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT