12   2  /  2  页   跳转

Backdoor.Gpigeon.geq附日志

日志里没发现这个文件  如果 瑞星提示 删除成功 或者清除成功 且重启后没有在提示 就没问题了
gototop
 

安全模式下删除去吧。。。记得删除后清理下缓存什么的。。。该清理的都清理了。。。
gototop
 

没用,重启后还 有.QQ,邮箱,kaka的密码均被盗.我要崩溃了...
有谁帮帮我!!!
gototop
 

请用http://forum.ikaka.com/topic.asp?board=36&artid=8144360    工具Autoruns扫描日志上来.

注意扫描时选中:Options——Hide Microsoft Entries
gototop
 

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

+ IMJPMIG8.1File not found: ;

+ nwizFile not found: ;

+ PHIME2002AFile not found: ;

+ PHIME2002ASyncFile not found: ;

+ RavTaskRavTimerBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ravtask.exe

+ RfwMainRising Personal FireWall Main ProgramBeijing Rising Technology Co., Ltd.c:\program files\rising\rfw\rfwmain.exe

+ SmappFile not found: ;

+ stup.exeTencentc:\program files\tencent\adplus\stup.exe

+ ThunderFile not found: rem

+ yassistseAssistSettingYahoo!c:\program files\yahoo!\assistant\yassistse.exe

+ YLive.exeYLive c:\program files\yahoo!\assistant\ylive.exe

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

+ RavStubRising RavStubBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ravstub.exe

C:\Documents and Settings\new\「开始」菜单\程序\启动

+ 腾讯QQ.lnkQQTENCENTc:\program files\tencent\qq\qq.exe

HKCU\Software\Microsoft\Windows\CurrentVersion\Run

+ eMuleAutoStartFile not found: rem

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks

+ Rising Execute File Exts hookRising Shell Ext ModuleBeijing Rising Technology Co., Ltd.c:\windows\system32\ravext.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved

+ Desktop ExplorerNVIDIA Desktop Explorer, Version 110.10 NVIDIA Corporationc:\windows\system32\nvshell.dll

+ Desktop Explorer MenuNVIDIA Desktop Explorer, Version 110.10 NVIDIA Corporationc:\windows\system32\nvshell.dll

+ Display Panning CPL ExtensionFile not found: deskpan.dll

+ HyperTerminal Icon ExtHyperTerminal Applet LibraryHilgraeve, Inc.c:\windows\system32\hticons.dll

+ NvCpl DesktopContext ClassNVIDIA Display Properties ExtensionNVIDIA Corporationc:\windows\system32\nvcpl.dll

+ nView Desktop Context MenuNVIDIA Desktop Explorer, Version 110.10 NVIDIA Corporationc:\windows\system32\nvshell.dll

+ Play on my TV helperNVIDIA Display Properties ExtensionNVIDIA Corporationc:\windows\system32\nvcpl.dll

+ RISINGRising Shell Ext ModuleBeijing Rising Technology Co., Ltd.c:\windows\system32\ravext.dll

+ Shell Extensions for RealOne PlayerRealPlayer Shell ExtensionsRealNetworks, Inc.c:\program files\real\realplayer\rpshell.dll

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll

+ ssup.dllSSLiveTENCENTc:\windows\system32\ssup.dll

+ WinRAR shell extensionc:\program files\winrar\rarext.dll

+ Yahoo!PhotoFile not found: C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll

+ 粉碎文件Wiper 动态链接库c:\program files\yahoo!\assistant\assist\ywiper.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects

+ QQBrowserHelperObject ClassQQIEHelper Module深圳市腾讯计算机系统有限公司c:\program files\tencent\qq\qqiehelper.dll

+ Tencent Browser HelperTencentc:\program files\tencent\adplus\ssaddr.dll

HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks

+ ssaddr.dllTencentc:\program files\tencent\adplus\ssaddr.dll

HKLM\Software\Microsoft\Internet Explorer\Toolbar

+ 雅虎助手File not found: C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll

HKLM\Software\Microsoft\Internet Explorer\Extensions

+ Windows MessengerFile not found: C:\Program Files\Messenger\msmsgs.exe

+ Yahoo 3.5G电邮File not found: http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail

+ 清理上网记录File not found: http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean

+ 情景聊天File not found: http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomsg

+ 腾讯QQQQTENCENTc:\program files\tencent\qq\qq.exe

+ 微软File not found: http://www.microsoft.com/china/index.htm

+ 修复浏览器File not found: http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair

+ 寻宝乐趣多File not found: http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=taobao

+ 雅虎助手File not found: http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist

HKLM\System\CurrentControlSet\Services

+ RfwServiceRising Personal Firewall ServiceBeijing Rising Technology Co., Ltd.c:\program files\rising\rfw\rfwsrv.exe

+ RsCCenterCCenterBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ccenter.exe

+ RsRavMonRavMondBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ravmond.exe

HKLM\System\CurrentControlSet\Services

+ 1251718c:\windows\system32\drivers\1251718.sys

+ 13849921c:\windows\system32\drivers\13849921.sys

+ 2496781c:\windows\system32\drivers\2496781.sys

+ a320raidAdaptec HostRAID for Ultra320 SCSIAdaptec, Inc.c:\windows\system32\drivers\a320raid.sys

+ AACAdaptec RAID Miniport DriverAdaptec, Inc.c:\windows\system32\drivers\aac.sys

+ aacjcbieFile not found: C:\WINDOWS\system32\drivers\aacjcbie.sys

+ aar1210Adaptec HostRAID for Serial ATAAdaptec, Inc.c:\windows\system32\drivers\aar1210.sys

+ ac97intcIntel(r) Integrated Controller Hub Audio DriverIntel Corporationc:\windows\system32\drivers\ac97intc.sys

+ adpu320Adaptec Win2K/XP/Server2003 Ultra320 SCSI DriverAdaptec, Inc.c:\windows\system32\drivers\adpu320.sys

+ aeaudioAndrea Audio Stub DriverAndrea Electronics Corporationc:\windows\system32\drivers\aeaudio.sys

+ aec6210ACARD Technology Corp.c:\windows\system32\drivers\aec6210.sys

+ aec6260ID=0006, 0007ACARD Technology Corp.c:\windows\system32\drivers\aec6260.sys
gototop
 

+ aec6280AEC6280 Miniport DriverACARD Technology Corp.c:\windows\system32\drivers\aec6280.sys

+ AEC6290AEC6280 Miniport DriverACARD Technology Corp.c:\windows\system32\drivers\aec6290.sys

+ AEC67160AEC67160 PCI Ultra3 LVD/SE Adapter DriverACARD Technology Corp.c:\windows\system32\drivers\aec67160.sys

+ AEC671XAEC671X PCI Ultra/W SCSI3 Adapter DriverACARD Technology Corp.c:\windows\system32\drivers\aec671x.sys

+ AEC6880AEC6880/90 PCI Ultra ATA133 RAID Adapter DriverACARD Technology Corp.c:\windows\system32\drivers\aec6880.sys

+ AEC6890AEC6880/90 PCI Ultra ATA133 RAID Adapter DriverACARD Technology Corp.c:\windows\system32\drivers\aec6890.sys

+ aec68x5AEC6885/95/96 PCI ATA133 4 Channel RAID Adapter DriverACARD Technology Corp.c:\windows\system32\drivers\aec68x5.sys

+ AliIdeALi mini IDE DriverAcer Laboratories Inc.c:\windows\system32\drivers\aliide.sys

+ arcAdaptec RAID Storport DriverAdaptec, Inc.c:\windows\system32\drivers\arc.sys

+ ascAdvanSys SCSI Controller DriverAdvanced System Products, Inc.c:\windows\system32\drivers\asc.sys

+ asc3550AdvanSys Ultra-Wide PCI SCSI DriverAdvanced System Products, Inc.c:\windows\system32\drivers\asc3550.sys

+ BaseTDIbasetdiBeijing Rising Technology Co., Ltd.c:\windows\system32\drivers\basetdi.sys

+ bfcbhcfjFile not found: C:\WINDOWS\system32\drivers\bfcbhcfj.sys

+ CmdIdeCMD PCI IDE Bus DriverCMD Technology, Inc.c:\windows\system32\drivers\cmdide.sys

+ dac2w2kMylex Disk Array Controller DriverMylex Corporationc:\windows\system32\drivers\dac2w2k.sys

+ elxstorStorport Miniport Driver for LightPulse HBAsEmulexc:\windows\system32\drivers\elxstor.sys

+ ExpScanerExpScan.sysc:\program files\rising\rav\expscan.sys

+ FASTSXPromise FastTRAK SX4/SX4000 Driver for WindowsXPPromise Technology, Inc.c:\windows\system32\drivers\fastsx.sys

+ fasttrakPromise FastTrak Series Driver for WinXPPromise Technology, Inc.c:\windows\system32\drivers\fasttrak.sys

+ fasttx2kPromise Driver for Windows XPPromise Technology, Inc.c:\windows\system32\drivers\fasttx2k.sys

+ fasttx2k2Promise FastTrak Series Driver for WindowsXPPromise Technology, Inc.c:\windows\system32\drivers\fasttx2k2.sys

+ FETNDISNDIS 5.0 miniport driverVIA Technologies, Inc.              c:\windows\system32\drivers\fetnd5.sys

+ HookContTDI HOOK DriverRising tech Co. ltdc:\program files\rising\rav\hookcont.sys

+ HookRegc:\program files\rising\rav\hookreg.sys

+ HookSysHooksysRisingc:\program files\rising\rav\hooksys.sys

+ HookUrlHookUrlBeijing Rising Technology Co., Ltd.c:\program files\rising\rfw\hookurl.sys

+ HpCISSsSmart Array 5x and 6x Controllers Storport DriverHewlett-Packard Companyc:\windows\system32\drivers\hpcisss.sys

+ HPT371HPT3xx Miniport DriverHighPoint Technologies, Inc.c:\windows\system32\drivers\hpt371.sys

+ hpt374HPT374 Miniport DriverHighPoint Technologies, Inc.c:\windows\system32\drivers\hpt374.sys

+ hpt3xxHPT3xx Miniport DriverHighPoint Technologies, Inc.c:\windows\system32\drivers\hpt3xx.sys

+ hptmvhptmv Miniport DriverHighPoint Technologies, Inc.c:\windows\system32\drivers\hptmv.sys

+ hptproHptproHighPoint Technologies, Inc.c:\windows\system32\drivers\hptpro.sys

+ iaStorIntel Application Accelerator driverIntel Corporationc:\windows\system32\drivers\iastor.sys

+ iirspIntel/ICP Raid Storport DriverIntel Corp./ICP vortex GmbHc:\windows\system32\drivers\iirsp.sys

+ iteraidITE IT8212 ATA RAID SCSI miniportIntegrated Technology Express, Inc.c:\windows\system32\drivers\iteraid.sys

+ LSI_SASLSI Logic Fusion-MPT SAS Driver (StorPort)LSI Logicc:\windows\system32\drivers\lsi_sas.sys

+ LSI_SCSILSI Logic Fusion-MPT SCSI Driver (StorPort)LSI Logicc:\windows\system32\drivers\lsi_scsi.sys

+ m5228M5228 ATA RAID Controller DriverALi Corporation.c:\windows\system32\drivers\m5228.sys

+ m5281M5281 SATA RAID Controller DriverALi Corporationc:\windows\system32\drivers\m5281.sys

+ MegaIDELSI MegaRAID IDE DriverLSI Logic Corporation.c:\windows\system32\drivers\megaide.sys

+ megasasMEGASAS RAID Controller Driver for Windows for x86LSI Logic Corporationc:\windows\system32\drivers\megasas.sys

+ MEMSCANMemScan Driver瑞星软件有限公司c:\program files\rising\rav\memscan.sys

+ mProcRsRising Personal FireWall  mprocrs.sysBeijing Rising Technology Co., Ltd.c:\program files\rising\rfw\mprocrs.sys

+ mraid2kMEGARAID SCSI Controller Driver for Windows 2000 PAEAmerican Megatrends, Inc.c:\windows\system32\drivers\mraid2k.sys

+ mraid35xMegaRAID RAID Controller Driver for Windows Whistler 32American Megatrends Inc.c:\windows\system32\drivers\mraid35x.sys

+ nfrd960IBM ServeRAID Controller DriverIBM Corporationc:\windows\system32\drivers\nfrd960.sys

+ npkcryptnProtect KeyCrypt DriverINCA Internet Co., Ltd.c:\program files\tencent\qq\npkcrypt.sys

+ nvNVIDIA Compatible Windows 2000 Miniport Driver, Version 81.95 NVIDIA Corporationc:\windows\system32\drivers\nv4_mini.sys

+ NvAtaBusNVIDIA? nForce(TM) IDE Performance DriverNVIDIA Corporationc:\windows\system32\drivers\nvatabus.sys

+ nvraidNVIDIA? nForce(TM) RAID DriverNVIDIA Corporationc:\windows\system32\drivers\nvraid.sys

+ PNP649RIDE RAID miniport driverCMD Technology, Inc.c:\windows\system32\drivers\pnp649r.sys

+ Pnp680DMA capable ATA miniport driverSilicon Image, Inc.c:\windows\system32\drivers\pnp680.sys

+ Pnp680rDMA capable ATA RAID miniport driver Silicon Image, Incc:\windows\system32\drivers\pnp680r.sys

+ PtilinkDirect Parallel Link DriverParallel Technologies, Inc.c:\windows\system32\drivers\ptilink.sys

+ ql1080Miniport Driver for QLogic ISP PCI AdaptersQLogic Corporationc:\windows\system32\drivers\ql1080.sys

+ ql12160Miniport Driver for QLogic ISP PCI AdaptersQLogic Corporationc:\windows\system32\drivers\ql12160.sys

+ ql1280Miniport Driver for QLogic ISP PCI AdaptersQLogic Corporationc:\windows\system32\drivers\ql1280.sys

+ ql2300QLogic Fibre Channel Stor Miniport DriverQLogic Corporationc:\windows\system32\drivers\ql2300.sys

+ R0AFile not found: C:\WINDOWS\system32\a 10507.sys

+ RAIDSRCIntel(r)/ICP Miniport DriverIntel/ICPc:\windows\system32\drivers\raidsrc.sys

+ RsFwDrvnt_fwdrvBeijing Rising Technology Co., Ltd.c:\program files\rising\rfw\rsfwdrv.sys

+ RTL8023xpRealtek 10/100/1000 NDIS 5.1 Driver                        Realtek Semiconductor Corporation                          c:\windows\system32\drivers\rtnicxp.sys

+ S150SX8Promise SATAII150 SX8 Driver for WindowsXPPromise Technology, Inc.c:\windows\system32\drivers\s150sx8.sys

+ SecdrvSafeDisc driverc:\windows\system32\drivers\secdrv.sys

+ SI3112Serial ATA miniport driverSilicon Image, Inc.c:\windows\system32\drivers\si3112.sys

+ SI3112rSerial ATA RAID Miniport DriverSilicon Image, Incc:\windows\system32\drivers\si3112r.sys

+ SI3114Serial ATA miniport driverSilicon Image, Inc.c:\windows\system32\drivers\si3114.sys

+ SI3114rSATARAID Miniport DriverSilicon Image, Incc:\windows\system32\drivers\si3114r.sys

+ SI3124Serial ATA miniport driverSilicon Image, Inc.c:\windows\system32\drivers\si3124.sys

+ SI3124rSATARAID miniport driver (PRE-RELEASE)Silicon Image, Incc:\windows\system32\drivers\si3124r.sys

+ SiFilterWindows Accelerator DriverSilicon Image, Inc.c:\windows\system32\drivers\siwinacc.sys

+ SISIDESiS PCI Mini IDE DriverSilicon Integrated Systems Corp.c:\windows\system32\drivers\siside.sys

+ SiSRaidSiS RAID Miniport DriverSilicon Integrated Systemsc:\windows\system32\drivers\sisraid.sys

+ SiSRaid1SiS RAID Miniport DriverSilicon Integrated Systemsc:\windows\system32\drivers\sisraid1.sys

+ SISRAIDSSiS RAID Miniport DriverSilicon Integrated Systems Corpc:\windows\system32\drivers\sisraids.sys

+ smwdmSoundMAX Integrated Digital Audio Analog Devices, Inc.c:\windows\system32\drivers\smwdm.sys

+ SparrowAdaptec AIC-6x60 series SCSI miniportAdaptec, Inc.c:\windows\system32\drivers\sparrow.sys

+ sptrakPromise SuperTrak Family Driver for WindowsNTPromise Technology, Inc.c:\windows\system32\drivers\sptrak.sys

+ sym_hiSymbios Hi-Perf SCSI Miniport DriverLSI Logicc:\windows\system32\drivers\sym_hi.sys

+ sym_u3Symbios Ultra3 SCSI Miniport DriverLSI Logicc:\windows\system32\drivers\sym_u3.sys

+ symc810Symbios Logic Inc. SCSI Miniport DriverSymbios Logic Inc.c:\windows\system32\drivers\symc810.sys

+ symc8xxSymbios 8XX SCSI Miniport DriverLSI Logicc:\windows\system32\drivers\symc8xx.sys

+ SYMMPILSI Logic Fusion-MPT MiniPort Driver (ScsiPort)LSI Logicc:\windows\system32\drivers\symmpi.sys

+ UlSataPromise Ultra/Sata Series Driver for WinXPPromise Technology, Inc.c:\windows\system32\drivers\ulsata.sys

+ ULSATASPromise SATAII150 Series Driver for Win2003Promise Technology, Inc.c:\windows\system32\drivers\ulsatas.sys

+ ultraPromise Ultra66 Miniport 驱动程序Promise Technology, Inc.c:\windows\system32\drivers\ultra.sys

+ vcddevVirtual Native Network DriverVNN B.J.c:\windows\system32\drivers\vcdvnic.sys

+ viamraidVIA RAID DRIVER FOR WIN 2000/XP/2003IA32VIA Technologies inc,.ltdc:\windows\system32\drivers\viamraid.sys

+ viapdskVIA VT4149 PATA DriverVIA Technologies, Inc.c:\windows\system32\drivers\viapdsk.sys

+ viaraidVT6410 RAID DRIVER FOR WINXPVIA Technologies inc,.ltdc:\windows\system32\drivers\viaraid.sys

+ viasraidVIA SATA RAID DRIVER FOR WINXPVIA Technologies inc,.ltdc:\windows\system32\drivers\viasraid.sys

+ vmscsiVMware SCSI ControllerVMware, Inc.c:\windows\system32\drivers\vmscsi.sys

gototop
 

对了,除了QQ,邮箱,kaka的密码被盗,键盘经常敲不上字.不知道这和密码被盗有关系么?
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT