瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 求大哥帮忙,我都快被病毒折磨死了

12   2  /  2  页   跳转

求大哥帮忙,我都快被病毒折磨死了

[C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\PngDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 1436][C:\Program Files\Rising\Rav\Ravmond.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 1, 35>
    [C:\Program Files\Rising\Rav\BWList.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RsLog.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 20>
    [C:\Program Files\Rising\Rav\HOOKSYS.dll]  <Beijing Rising Technology Co., Ltd.><18, 1, 0, 11>
    [C:\Program Files\Rising\Rav\Scanner.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 32>
    [C:\Program Files\Rising\Rav\libload.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\VirusLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [C:\Program Files\Rising\Rav\regmon.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
    [C:\Program Files\Rising\Rav\HookWeb.dll]  <rising><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\MemMon.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\expscan.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\mPorts.dll]  <Beijing Rising Technology Co., Ltd.><4, 0, 0, 3>
    [C:\Program Files\Rising\Rav\MailMon.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
    [C:\Program Files\Rising\Rav\SpamEng.dll]  <N/A><18, 0, 0, 6>
    [C:\Program Files\Rising\Rav\engine.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 31>
    [C:\Program Files\Rising\Rav\PostTrt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [C:\Program Files\Rising\Rav\UnExe.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\ScanExec.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\ScanEx.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 14>
    [C:\Program Files\Rising\Rav\RSUnpack.dll]  <Beijing Rising Technology Co., Ltd.><1, 0, 0, 13>
    [C:\Program Files\Rising\Rav\NvFile.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
    [C:\Program Files\Rising\Rav\ScanMac.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 9>
    [C:\Program Files\Rising\Rav\ScanSct.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 18>
    [C:\Program Files\Rising\Rav\Unpacker.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\ExtOLE.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[PID: 1440][C:\Program Files\Rising\Rav\RavStub.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[PID: 3368][F:\张路\qq\QQ.exe]  <TENCENT><0, 0, 0, 0>
    [F:\张路\qq\CoralAssist.DLL]  <Coral Team><4.5.0 build 20060515>
    [F:\张路\qq\CoralQQ.DLL]  <Coral Team><4.5.1 Build 20060620>
    [F:\张路\qq\ipsearcher.dll]  <N/A><1.0.0.4>
    [F:\张路\qq\QQBaseClassInDll.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQHelperDll.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\BasicCtrlDll.dll]  <Tencent><5, 0, 200, 160>
    [F:\张路\qq\QQAPI.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\LoginCtrl.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\npkcntc.dll]  <INCA Internet Co., Ltd.><2006, 3, 2, 1>
    [F:\张路\qq\npkpdb.dll]  <INCA Internet Co., Ltd.><2003, 10, 1, 1>
    [F:\张路\qq\QQRes.dll]  <tencent><1, 0, 0, 1>
    [F:\张路\qq\QQMainFrame.dll]  <N/A><N/A>
    [F:\张路\qq\CQQApplication.dll]  <N/A><N/A>
    [F:\张路\qq\NewSkin.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\HostingMgr.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\CameraDll.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\MailSummary.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQSpace.dll]  <><1, 0, 0, 1>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [F:\张路\qq\QQGroupMng.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\GroupLive.dll]  <N/A><N/A>
    [F:\张路\qq\QQSysMsgMng.dll]  <N/A><N/A>
    [F:\张路\qq\UserDefinedHead.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQPlugin.dll]  <N/A><N/A>
    [F:\张路\qq\QQConfigPlugin.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QRingMng.dll]  <N/A><N/A>
    [F:\张路\qq\PhoneAPI.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\DialerAllinOne.dll]  <tencent><1, 4, 0, 0>
    [F:\张路\qq\LongConnection.dll]  <tencent><5, 0, 200, 160>
    [F:\张路\qq\QQAvatar.dll]  <N/A><N/A>
    [F:\张路\qq\FlashAvatarDll.dll]  <><1, 4, 0, 1>
    [F:\张路\qq\QQAllInOne.dll]  <N/A><N/A>
    [F:\张路\qq\SCCore.dll]  <N/A><N/A>
    [F:\张路\qq\QQCustomFace.dll]  <N/A><N/A>
    [F:\张路\qq\QQPet.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\BQQApplication.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [F:\张路\qq\CommercesMng.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\PersonalDesktop.dll]  <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
    [F:\张路\qq\QQUdpGetFileLib.dll]  <tencent><0, 2, 2, 3>
    [F:\张路\qq\QQAddr.dll]  <深圳市腾讯计算机系统有限公司><5, 0, 101, 200>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [F:\张路\qq\QQMagicFace.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQSceneMng.dll]  <N/A><N/A>
    [F:\张路\qq\GroupConnection.dll]  <Tencent><5, 0, 202, 170>
    [F:\张路\qq\ImageOle.dll]  <TODO: <Company name>><1.0.0.1>
    [F:\张路\qq\videodevice.dll]  <Tencent><1.5.0.0>
    [F:\张路\qq\inplus.dll]  <Tencent><1.5.0.0>
    [C:\WINDOWS\system32\l3codeca.acm]  <Fraunhofer Institut Integrierte Schaltungen IIS><1, 9, 0, 0305>
    [F:\张路\qq\QQSettingCtrl.dll]  <><1, 0, 0, 1>
[PID: 3460][F:\张路\qq\QQ.exe]  <TENCENT><0, 0, 0, 0>
    [F:\张路\qq\CoralAssist.DLL]  <Coral Team><4.5.0 build 20060515>
    [F:\张路\qq\CoralQQ.DLL]  <Coral Team><4.5.1 Build 20060620>
    [F:\张路\qq\ipsearcher.dll]  <N/A><1.0.0.4>
    [F:\张路\qq\QQBaseClassInDll.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQHelperDll.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\BasicCtrlDll.dll]  <Tencent><5, 0, 200, 160>
    [F:\张路\qq\QQAPI.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\LoginCtrl.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\npkcntc.dll]  <INCA Internet Co., Ltd.><2006, 3, 2, 1>
    [F:\张路\qq\npkpdb.dll]  <INCA Internet Co., Ltd.><2003, 10, 1, 1>
    [F:\张路\qq\QQRes.dll]  <tencent><1, 0, 0, 1>
    [F:\张路\qq\QQMainFrame.dll]  <N/A><N/A>
    [F:\张路\qq\CQQApplication.dll]  <N/A><N/A>
    [F:\张路\qq\NewSkin.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\HostingMgr.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\CameraDll.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\MailSummary.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQSpace.dll]  <><1, 0, 0, 1>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [F:\张路\qq\QQGroupMng.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\GroupLive.dll]  <N/A><N/A>
    [F:\张路\qq\LongConnection.dll]  <tencent><5, 0, 200, 160>
    [F:\张路\qq\QQSysMsgMng.dll]  <N/A><N/A>
    [F:\张路\qq\UserDefinedHead.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQPlugin.dll]  <N/A><N/A>
    [F:\张路\qq\QQAllInOne.dll]  <N/A><N/A>
    [F:\张路\qq\SCCore.dll]  <N/A><N/A>
    [F:\张路\qq\QQCustomFace.dll]  <N/A><N/A>
    [F:\张路\qq\QQPet.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\GroupConnection.dll]  <Tencent><5, 0, 202, 170>
    [F:\张路\qq\QRingMng.dll]  <N/A><N/A>
    [F:\张路\qq\videodevice.dll]  <Tencent><1.5.0.0>
    [F:\张路\qq\inplus.dll]  <Tencent><1.5.0.0>
    [C:\WINDOWS\system32\l3codecx.ax]  <Fraunhofer Institut Integrierte Schaltungen IIS><1, 5, 0, 50>
    [F:\张路\qq\QQConfigPlugin.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\PhoneAPI.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\DialerAllinOne.dll]  <tencent><1, 4, 0, 0>
    [F:\张路\qq\FlashAvatarDll.dll]  <><1, 4, 0, 1>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [F:\张路\qq\QQMagicFace.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQAvatar.dll]  <N/A><N/A>
    [F:\张路\qq\QQSceneMng.dll]  <N/A><N/A>
    [F:\张路\qq\ImageOle.dll]  <TODO: <Company name>><1.0.0.1>
    [F:\张路\qq\BQQApplication.dll]  <N/A><N/A>
    [F:\张路\qq\PersonalDesktop.dll]  <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
    [F:\张路\qq\QQZip.dll]  <tencent><0, 3, 2, 4>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [F:\张路\qq\CommercesMng.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\QQAddr.dll]  <深圳市腾讯计算机系统有限公司><5, 0, 101, 200>
    [F:\张路\qq\QQPhoneHelper.dll]  <腾讯科技(深圳)有限公司><2, 0, 6, 60>
    [C:\WINDOWS\system32\l3codeca.acm]  <Fraunhofer Institut Integrierte Schaltungen IIS><1, 9, 0, 0305>
    [F:\张路\qq\VqqModule.dll]  <><1, 0, 0, 1>
    [F:\张路\qq\VqqAllInOne.dll]  <Tencent><1, 5, 0, 3>
    [F:\张路\qq\tencent-proto1.dll]  <tencent><1, 5, 0, 3>
    [F:\张路\qq\tencent-comlib.dll]  <tencent><1.4.0.2>
    [F:\张路\qq\tencent-proto2.dll]  <tencent><1, 5, 0, 3>
    [F:\张路\qq\QQSettingCtrl.dll]  <><1, 0, 0, 1>
gototop
 

[PID: 3284][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [C:\WINDOWS\system32\rmoc3260.dll]  <RealNetworks, Inc.><6.0.9.2237>
    [C:\WINDOWS\system32\PNCRT.dll]  <Real Networks, Inc><6.0.0.0>
    [C:\Program Files\Real\RealPlayer\rpplugins\embd3260.dll]  <RealNetworks, Inc.><6.0.12.1348>
    [C:\Program Files\Common Files\Real\Common\pngu3267.dll]  <RealNetworks, Inc.><6.7.0.2629>
    [C:\Program Files\Common Files\Real\Common\pnrs3260.dll]  <RealNetworks, Inc.><6.0.9.3985>
    [C:\Program Files\Common Files\Real\Common\objb3201.dll]  <RealNetworks, Inc.><0.1.0.6244>
    [C:\Program Files\Real\RealPlayer\rpplugins\rpcl3260.dll]  <RealNetworks, Inc.><6.0.9.3027>
    [C:\Program Files\Real\RealPlayer\rpplugins\rput3260.dll]  <RealNetworks, Inc.><6.0.9.3005>
    [C:\Program Files\Common Files\Real\Common\pnen3260.dll]  <RealNetworks, Inc.><10.0.0.895>
    [C:\Program Files\Common Files\Real\Plugins\vsrlocal.dll]  <RealNetworks, Inc.><10.1.0.795>
    [C:\Program Files\Common Files\Real\Plugins\zipf3260.dll]  <RealNetworks, Inc.><6.0.8.2469>
    [C:\Program Files\Common Files\Real\Plugins\vidsite.dll]  <RealNetworks, Inc.><10.0.0.868>
    [C:\Program Files\Common Files\Real\Plugins\clntxres.dll]  <RealNetworks, Inc.><10.0.0.3446>
    [C:\Program Files\Real\RealPlayer\lang\cdplay_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\dbcomp_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\embed_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\gemctl_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\pngui_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\pdgenxfer_cn.dll]  <N/A><N/A>
    [C:\Program Files\Real\RealPlayer\lang\rjctl_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjeq_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjres_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjskin_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjviz_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjfade_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjdlg_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjmisc_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rjprog_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpapp_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpclsvc_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpclutil_cn.dll]  <RealNetworks, Inc.><6.0.12.299>
    [C:\Program Files\Real\RealPlayer\lang\rpdemand_cn.dll]  <RealNetworks, Inc.><6.0.12.299>
    [C:\Program Files\Real\RealPlayer\lang\rpdsplyr_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpgutil_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpmnpane_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpplylst_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\rpwebctl_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\tcdinfo_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\tclsvc_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\tdwnmgr_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\tmp3_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\twave_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\teasdk_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\tearm_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\tmdedit_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Real\RealPlayer\lang\mydevices_cn.dll]  <RealNetworks, Inc.><6.0.12.299>
    [C:\Program Files\Common Files\Real\Plugins\memfsys.dll]  <RealNetworks, Inc.><10.0.0.855>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
[PID: 2600][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
[PID: 568][C:\Program Files\WinRAR\WinRAR.exe]  <N/A><N/A>
[PID: 876][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.047\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

我用SERNG2扫描的,就这么多了大哥
gototop
 

真惨啊,刚才有中了一个Trojan.Multidrop.c
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT