瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 帮帮我,又中毒了!!!backdoor.hupigon.bzr

12   2  /  2  页   跳转

帮帮我,又中毒了!!!backdoor.hupigon.bzr

<\SystemRoot\System32\DRIVERS\symc810.sys><Symbios Logic Inc.>
[symc8xx / symc8xx]
  <\SystemRoot\System32\DRIVERS\symc8xx.sys><LSI Logic>
[SYMMPI / SYMMPI]
  <\SystemRoot\System32\DRIVERS\SYMMPI.SYS><LSI Logic>
[sym_hi / sym_hi]
  <\SystemRoot\System32\DRIVERS\sym_hi.sys><LSI Logic>
[sym_u3 / sym_u3]
  <\SystemRoot\System32\DRIVERS\sym_u3.sys><LSI Logic>
[TosIde / TosIde]
  <\SystemRoot\System32\DRIVERS\toside.sys><Microsoft Corporation>
[UlSata / UlSata]
  <\SystemRoot\System32\DRIVERS\ulsata.sys><Promise Technology, Inc.>
[ULSATAS / ULSATAS]
  <\SystemRoot\System32\DRIVERS\ULSATAS.SYS><Promise Technology, Inc.>
[ultra / ultra]
  <\SystemRoot\System32\DRIVERS\ultra.sys><Promise Technology, Inc.>
[ViaIde / ViaIde]
  <\SystemRoot\System32\DRIVERS\viaide.sys><Microsoft Corporation>
[viamraid / viamraid]
  <\SystemRoot\system32\DRIVERS\viamraid.sys><VIA Technologies inc,.ltd>
[VIA ATA/ATAPI Host Controller / viapdsk]
  <\SystemRoot\System32\DRIVERS\viapdsk.sys><VIA Technologies, Inc.>
[viaraid / viaraid]
  <\SystemRoot\System32\DRIVERS\viaraid.sys><VIA Technologies inc,.ltd>
[viasraid / viasraid]
  <\SystemRoot\system32\drivers\viasraid.sys><VIA Technologies inc,.ltd>
[vmscsi / vmscsi]
  <\SystemRoot\system32\drivers\vmscsi.sys><VMware, Inc.>

==================================
浏览器加载项
[i&Bar搜索引擎]
  {2E7D3330-EB94-4518-B0FE-E05379A5C1DA} <C:\PROGRA~1\iBar\10002\iBar.dll, N/A>
[雅虎助手]
  {406F94F0-504F-4a40-8DFD-58B0666ABEBD} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll, Yahoo!>
[超级兔子上网精灵]
  {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, Xiang Feng Technology>
[常用网址]
  {36B39F01-7B48-44AD-A165-5849CD8EF562} <C:\WINDOWS\system32\SHDOCVW.DLL, Microsoft Corporation>
[超级兔子上网精灵]
  {43869BB3-22FD-4F15-9B46-238106BA2F4E} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, Xiang Feng Technology>
[i&Bar搜索引擎]
  {2E7D3330-EB94-4518-B0FE-E05379A5C1DA} <C:\PROGRA~1\iBar\10002\iBar.dll, N/A>
[雅虎助手]
  {406F94F0-504F-4a40-8DFD-58B0666ABEBD} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll, Yahoo!>
[i&Bar搜索引擎]
  {2E7D3330-EB94-4518-B0FE-E05379A5C1DA} <C:\PROGRA~1\iBar\10002\iBar.dll, N/A>
[雅虎助手]
  {406F94F0-504F-4A40-8DFD-58B0666ABEBD} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll, Yahoo!>
[超级兔子上网精灵]
  {43869BB3-22FD-4F15-9B46-238106BA2F4E} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, Xiang Feng Technology>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[超级兔子上网精灵]
  {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, Xiang Feng Technology>
[RDS.DataSpace]
  {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[AUDIO__MP3 Moniker Class]
  {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__X_MS_WMA Moniker Class]
  {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\macromed\flash\Flash.ocx, Macromedia, Inc.>
[Rising Web Scan Object]
  {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\DOWNLO~1\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[使用网际快车下载]
  <C:\Program Files\FlashGet\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <C:\Program Files\FlashGet\jc_all.htm, N/A>
[雅虎搜索]
  <res://C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll/246, N/A>
gototop
 

==================================
正在运行的进程
[PID: 328][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 376][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 400][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 444][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 456][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 608][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 664][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 704][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 752][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 780][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 968][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[PID: 1268][C:\Program Files\木马清除专家 2006\mmqczj.exe]  [讯龙工作室, 0,0,0,0]
    [C:\Program Files\木马清除专家 2006\krnln.fnr]  [N/A, N/A]
    [C:\Program Files\木马清除专家 2006\iext.fnr]  [, 1, 0, 0, 1]
    [C:\Program Files\木马清除专家 2006\iext2.fne]  [, 1, 0, 0, 1]
    [C:\WINDOWS\DOWNLO~1\CnsMin.dll]  [N/A, N/A]
    [C:\Program Files\木马清除专家 2006\TrayIcon.fne]  [, 1, 0, 0, 1]
    [C:\Program Files\木马清除专家 2006\EChartBar.fne]  [, 1, 0, 0, 1]
    [C:\Program Files\木马清除专家 2006\ExtMenu.fne]  [, 1, 0, 0, 1]
    [C:\Program Files\木马清除专家 2006\iext3.fne]  [, 1, 0, 0, 1]
    [C:\Program Files\木马清除专家 2006\dp1.fne]  [N/A, N/A]
    [C:\Program Files\木马清除专家 2006\shell.fne]  [N/A, N/A]
    [C:\Program Files\木马清除专家 2006\xplib.fne]  [N/A, N/A]
    [C:\Program Files\木马清除专家 2006\eAPI.fne]  [, 1, 0, 0, 1]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 1288][C:\WINDOWS\system32\Rundll32.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\DOWNLO~1\CnsMin.dll]  [N/A, N/A]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 1296][C:\Program Files\Super Rabbit\MagicSet\SRIECLI.EXE]  [Super Rabbit Soft, 7.84]
    [C:\WINDOWS\DOWNLO~1\CnsMin.dll]  [N/A, N/A]
    [C:\PROGRA~1\SUPERR~1\MagicSet\shlobj71.ocx]  [Sky Software (http://www.ssware.com), 7, 1, 0, 0]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 1320][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [C:\WINDOWS\DOWNLO~1\CnsMin.dll]  [N/A, N/A]
[PID: 1396][C:\Program Files\Kingsoft\PowerWord 2006\XDICT.EXE]  [Kingsoft Co, Ltd., 9, 0, 0, 0]
    [C:\Program Files\Kingsoft\PowerWord 2006\AccountActivate.dll]  [N/A, N/A]
    [C:\Program Files\Kingsoft\PowerWord 2006\DicMngr.dll]  [Kingsoft, 2, 0, 0, 0]
    [C:\Program Files\Kingsoft\PowerWord 2006\doshow.dll]  [N/A, N/A]
    [C:\Program Files\Kingsoft\PowerWord 2006\ITextOut.dll]  [Kingsoft, 1, 1, 0, 0]
    [C:\Program Files\Kingsoft\PowerWord 2006\KPic10.dll]  [N/A, N/A]
    [C:\Program Files\Kingsoft\PowerWord 2006\ijl11.dll]  [Intel Corporation, 1.1.2]
    [C:\Program Files\Kingsoft\PowerWord 2006\NormGrab.DLL]  [Kingsoft Co, Ltd., 6, 0, 0, 0]
    [C:\Program Files\Kingsoft\PowerWord 2006\toTTSEngine50.dll]  [Kingsoft Corporation, 1, 0, 0, 1]
    [C:\Program Files\Kingsoft\PowerWord 2006\xfile.dll]  [N/A, N/A]
    [C:\WINDOWS\DOWNLO~1\CnsMin.dll]  [N/A, N/A]
    [C:\Program Files\Kingsoft\PowerWord 2006\DBCore10.dll]  [Kingsoft  Corp., 1, 0, 0, 0]
    [C:\Program Files\Kingsoft\PowerWord 2006\XdictGrb.dll]  [Kingsoft Co, Ltd., 9, 0, 0, 0]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [C:\Program Files\Kingsoft\PowerWord 2006\KAVPassport.DLL]  [Kingsoft Corporation, 2005, 4, 7, 25]
[PID: 1480][C:\Program Files\ewido\security suite\ewidoctrl.exe]  [ewido networks, 3, 0, 0, 1]
    [C:\Program Files\ewido\security suite\lang.dll]  [privat, 1, 0, 0, 1]
    [C:\WINDOWS\GAadmin]  [N/A, N/A]
[PID: 1600][C:\WINDOWS\system32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.10.8195]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 1636][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe]  [Analog Devices, Inc., 3, 2, 6, 0]
[PID: 1680][C:\WINDOWS\system32\wdfmgr.exe]  [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]
[PID: 204][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\DOWNLO~1\CnsMin.dll]  [N/A, N/A]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 2132][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2432][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\Program Files\ewido\security suite\shellhook.dll]  [N/A, N/A]
    [C:\PROGRA~1\iBar\10002\iBar.dll]  [N/A, N/A]
    [C:\Program Files\ewido\security suite\context.dll]  [ewido networks, 1.0.0.1]
    [C:\Program Files\ewido\security suite\lang.dll]  [privat, 1, 0, 0, 1]
[PID: 2820][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 16.1.63.0]
    [C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll]  [Xiang Feng Technology, 2, 2, 0, 1612]
    [C:\PROGRA~1\iBar\10002\iBar.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\macromed\flash\Flash.ocx]  [Macromedia, Inc., 7,0,19,0]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 16.1.63.0]
[PID: 3032][D:\软件\hijackthis1991\HijackThis1991zww.exe]  [Soeperman Enterprises Ltd., 1.99.0001]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 3120][C:\WINDOWS\system32\NOTEPAD.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 3204][C:\Program Files\AutoCAD 2005\acad.exe]  [Autodesk, Inc., R16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\ac1st16.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\acdb16.dll]  [Autodesk, Inc., 16.1.63.10]
    [C:\Program Files\Common Files\Autodesk Shared\AcGe16.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acui16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\ANav.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adui16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\UserData.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\dswhip.dll]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\heidi8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\dlint8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\SFTTABAC.dll]  [Softel vdm, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adlmdll.dll]  [Autodesk, Inc., 5.0.0.20]
    [C:\Program Files\AutoCAD 2005\adctrls.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adui16res.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AnavRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acui16res.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\DsWhipRes.dll]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\sfttabacRes.dll]  [Softel vdm, 16.1.63.0]
    [C:\DOCUME~1\user\LOCALS~1\Temp\AdskCleanup.0001.dir.0000\~df394b.tmp]  [N/A, N/A]
    [C:\DOCUME~1\user\LOCALS~1\Temp\AdskCleanup.0001.dir.0000\~de87df.tmp]  [N/A, 2.51.000]
    [C:\Program Files\AutoCAD 2005\ADCtrlsRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acadbtn.xmx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acadres.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\acdb16chsres.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [C:\Program Files\AutoCAD 2005\adlmres.dll]  [Autodesk, Inc., 5.0.0.20]
    [c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_3687a885\mscorlib.dll]  [N/A, N/A]
    [c:\program files\autocad 2005\acdbmgdhost.dll]  [Autodesk, Inc, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\PrxyInet.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\PrxyInetRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\oleaprot.arx]  [Autodesk, 16.1.63.0]
    [c:\windows\assembly\nativeimages1_v1.1.4322\acdbmgdhost\16.1.63.0__7208edf2a10162b1_d2cb521b\acdbmgdhost.dll]  [N/A, N/A]
    [C:\Program Files\AutoCAD 2005\acdbmgd.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acmgd.dll]  [Autodesk, Inc., 16.1.63.0]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_afffa13c\system.dll]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_eeda09b4\system.xml.dll]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_5e3f9632\system.windows.forms.dll]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_a5948abe\system.drawing.dll]  [N/A, N/A]
    [C:\Program Files\AutoCAD 2005\colorRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acgs.dll]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acgsRes.dll]  [Autodesk Inc., 16.1.63.0]
    [c:\program files\common files\autodesk shared\achapi16.dbx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\hcreg8.dll]  [Autodesk, Inc., 8.1.63.0]
gototop
 

[C:\Program Files\AutoCAD 2005\hcreg8Res.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\vl.arx]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\VLMSG.DLL]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\VLLIB.DLL]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcApp.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDblClkEdit.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDblClkEditPE.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDblClkEditRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acdim.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\ShareMFC.dll]  [Autodesk, Inc, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDimRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\aceplotx.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcEplotXRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\achlnkui.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\achlnkuiRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcIDropMgr.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcIDropMgrRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcLayerP.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcLayerPRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcPltStamp.arx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\APPERR.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\plotcfg8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pm8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pctres8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\apperrRes.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pmres8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcPltStampRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSign.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSignRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSpaceTrans.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSpaceTransRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStd.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStStdRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStMgr.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTaskBar.arx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTaskBarRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTp.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTc.DLL]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTcUi.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTcRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTcUiRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\whohas.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\whohasRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acetlodr.arx]  [Autodesk, Inc., 16.1.63.0]
    [c:\program files\autocad 2005\aclayer.dll]  [Autodesk, Inc, 16.1.63.0]
    [c:\windows\assembly\nativeimages1_v1.1.4322\aclayer\16.1.63.0__7208edf2a10162b1_1ff2b963\aclayer.dll]  [N/A, N/A]
    [c:\program files\autocad 2005\zh-cn\aclayer.resources.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSmNav.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcFdEval.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\axdb16.dll]  [N/A, N/A]
    [c:\program files\common files\autodesk shared\AcSmComponents16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcFieldRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSmNavRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\WSCommCntrAcCon.arx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\WSCommCntrAcConRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\plcfmgr.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\plcfmgrRes.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\plcferr.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pmutil8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\gdi8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\gdi8Res.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\szb8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\rblast8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\gdifont8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcProject16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcProject16res.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 16.1.63.0]
    [C:\DOCUME~1\user\LOCALS~1\Temp\AdskCleanup.0001]  [Macrovision Europe Ltd., 1, 0, 0, 1]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 3244][C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe]  [Autodesk, Inc., 2.51.000]
[PID: 3512][C:\Program Files\Common Files\Autodesk Shared\WSCommCntr1.exe]  [Autodesk, Inc., 1.2.0.1]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [C:\Program Files\Common Files\Autodesk Shared\WebServices1.dll]  [Autodesk, Inc., 1.2.0.1]
[PID: 2816][C:\WINDOWS\system32\NOTEPAD.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 2808][C:\Program Files\AutoCAD 2005\acad.exe]  [Autodesk, Inc., R16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\ac1st16.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\acdb16.dll]  [Autodesk, Inc., 16.1.63.10]
    [C:\Program Files\Common Files\Autodesk Shared\AcGe16.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acui16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\ANav.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adui16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\UserData.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\dswhip.dll]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\heidi8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\dlint8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\SFTTABAC.dll]  [Softel vdm, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adlmdll.dll]  [Autodesk, Inc., 5.0.0.20]
    [C:\Program Files\AutoCAD 2005\adctrls.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adui16res.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AnavRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acui16res.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\DsWhipRes.dll]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\sfttabacRes.dll]  [Softel vdm, 16.1.63.0]
    [C:\DOCUME~1\user\LOCALS~1\Temp\AdskCleanup.0001.dir.0001\~df394b.tmp]  [N/A, N/A]
    [C:\DOCUME~1\user\LOCALS~1\Temp\AdskCleanup.0001.dir.0001\~de87df.tmp]  [N/A, 2.51.000]
    [C:\Program Files\AutoCAD 2005\ADCtrlsRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acadbtn.xmx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acadres.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\Common Files\Autodesk Shared\acdb16chsres.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_3687a885\mscorlib.dll]  [N/A, N/A]
    [c:\program files\autocad 2005\acdbmgdhost.dll]  [Autodesk, Inc, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\adlmres.dll]  [Autodesk, Inc., 5.0.0.20]
    [c:\windows\assembly\nativeimages1_v1.1.4322\acdbmgdhost\16.1.63.0__7208edf2a10162b1_d2cb521b\acdbmgdhost.dll]  [N/A, N/A]
    [C:\Program Files\AutoCAD 2005\acdbmgd.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acmgd.dll]  [Autodesk, Inc., 16.1.63.0]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_afffa13c\system.dll]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_eeda09b4\system.xml.dll]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_5e3f9632\system.windows.forms.dll]  [N/A, N/A]
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_a5948abe\system.drawing.dll]  [N/A, N/A]
    [C:\Program Files\AutoCAD 2005\PrxyInet.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\PrxyInetRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\oleaprot.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\colorRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acgs.dll]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acgsRes.dll]  [Autodesk Inc., 16.1.63.0]
    [c:\program files\common files\autodesk shared\achapi16.dbx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\hcreg8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\hcreg8Res.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\vl.arx]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\VLMSG.DLL]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\VLLIB.DLL]  [Autodesk Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcApp.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDblClkEdit.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDblClkEditPE.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDblClkEditRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acdim.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\ShareMFC.dll]  [Autodesk, Inc, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcDimRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\aceplotx.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcEplotXRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\achlnkui.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\achlnkuiRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcIDropMgr.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcIDropMgrRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcLayerP.arx]  [Autodesk, 16.1.63.0]
gototop
 

[C:\Program Files\AutoCAD 2005\AcLayerPRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcPltStamp.arx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\APPERR.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\plotcfg8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pm8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pctres8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\apperrRes.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pmres8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcPltStampRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSign.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSignRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSpaceTrans.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSpaceTransRes.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStd.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStStdRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStMgr.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcStRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTaskBar.arx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTaskBarRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTp.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTc.DLL]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTcUi.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTcRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcTcUiRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\whohas.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\whohasRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\acetlodr.arx]  [Autodesk, Inc., 16.1.63.0]
    [c:\program files\autocad 2005\aclayer.dll]  [Autodesk, Inc, 16.1.63.0]
    [c:\windows\assembly\nativeimages1_v1.1.4322\aclayer\16.1.63.0__7208edf2a10162b1_1ff2b963\aclayer.dll]  [N/A, N/A]
    [c:\program files\autocad 2005\zh-cn\aclayer.resources.dll]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSmNav.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcFdEval.arx]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\axdb16.dll]  [N/A, N/A]
    [c:\program files\common files\autodesk shared\AcSmComponents16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcFieldRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcSmNavRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\WSCommCntrAcCon.arx]  [Autodesk, Inc., 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\WSCommCntrAcConRes.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\plcfmgr.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\plcfmgrRes.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\plcferr.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\pmutil8.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\gdi8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\gdi8Res.dll]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\szb8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\rblast8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\Program Files\AutoCAD 2005\drv\gdifont8.hdi]  [Autodesk, Inc., 8.1.63.0]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcProject16.dll]  [Autodesk, 16.1.63.0]
    [C:\Program Files\AutoCAD 2005\AcProject16res.dll]  [Autodesk, 16.1.63.0]
    [C:\DOCUME~1\user\LOCALS~1\Temp\AdskCleanup.0001]  [Macrovision Europe Ltd., 1, 0, 0, 1]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]
[PID: 3612][D:\软件\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\WINDOWS\GAaKey.DLL]  [N/A, N/A]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
gototop
 

贴完了!!汗~~~
gototop
 

请到www.27814939.ys168.com,点“我的软件”下载KillBox.exe
重新启动电脑, 开机检测完后, 按[F8]键(可以一直按到启动菜单出来为止), 选择安全模式进入Windows
运行(双击)System Repair Engineer,点“启动项目,服务,点“Win32服务应用程序”勾选“隐藏微软服务”选中病毒服务Gadmin / GAadministrator,System Administrator / SmallCenter选择“删除服务”点“设置”选择“否”(注:一个逗号隔开的是一个病毒服务名,注意看,别删漏了)
运行(双击)System Repair Engineer,点“启动项目,服务,点驱动程序,勾选“隐藏已认证的微软项目"选中病毒驱动NTGDT / NTGDT,nwupspx.sys选择“删除服务”点“设置”选择“否”(注:一个逗号隔开的是一个病毒服务名,注意看,别删漏了)
运行System Repair Engineer,使用“系统修复,浏览器加载项”来删除以下选项
[i&Bar搜索引擎]
{2E7D3330-EB94-4518-B0FE-E05379A5C1DA} <C:\PROGRA~1\iBar\10002\iBar.dll, N/A>
双击打开KillBox.exe,分别删除
C:\PROGRA~1\iBar\10002\iBar.dll
C:\WINDOWS\GAadmin
C:\WINDOWS\GAaKey.DLL
C:\WINDOWS\system32\mssapi.dll
C:\WINDOWS\system32\Drivers\NTGDT.SYS
SystemRoot\system32\drivers\nwupspx.sys
(删除时勾选“删除前先结束Explorer.EXE进程”)
注:后缀为.dll的文件如果无法删除,请勾选"反注册""再删除
运行超级兔子,打开“超级兔子清理王”“专业卸载,卸载所有提示的垃圾软件,卸载是不要打开任何浏览窗口。卸载不了可以重启后再去卸载
gototop
 

谢谢westbeck,已经基本没什么问题了,剩下的卡巴斯基都能杀掉了~~~
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT