瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】开机弹flashxyz网站广告窗口,无法杀掉

12   2  /  2  页   跳转

【求助】开机弹flashxyz网站广告窗口,无法杀掉

[C:\Program Files\Symantec AntiVirus\Dec2AMG.dll]  [Symantec Corporation, 3.02.11.32]
    [C:\Program Files\Symantec AntiVirus\Dec2TAR.dll]  [Symantec Corporation, 3.02.11.32]
    [C:\Program Files\Symantec AntiVirus\Dec2RTF.dll]  [Symantec Corporation, 3.02.11.32]
    [C:\Program Files\Symantec AntiVirus\Dec2Text.dll]  [Symantec Corporation, 3.02.11.32]
[PID: 932][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1132][C:\WINDOWS\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.1.0.27]
[PID: 1292][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe]  [ATI Technologies, Inc., 6.14.10.5125]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll]  [ATI Technologies, Inc., 6.14.10.5125]
    [C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS]  [ATI Technologies, Inc., 6.14.10.5125]
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll]  [ATI Technologies, Inc., 6.14.10.5125]
[PID: 1516][C:\Program Files\Common Files\Symantec Shared\ccApp.exe]  [Symantec Corporation, 2.2.0.577]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 2.2.0.577]
    [C:\Program Files\Symantec\LiveUpdate\ProductRegCom.DLL]  [Symantec Corporation, 2.0.39.0]
    [C:\Program Files\Symantec\LiveUpdate\LuComServerPS.DLL]  [Symantec Corporation, 2.0.39.0]
    [C:\PROGRA~1\COMMON~1\SYMANT~1\CCALERT.DLL]  [Symantec Corporation, 2.2.0.577]
    [C:\PROGRA~1\COMMON~1\SYMANT~1\CCEMLPXY.DLL]  [Symantec Corporation, 2.2.0.577]
    [C:\WINDOWS\system32\SYMREDIR.dll]  [Symantec Corporation, 5.3.0.46]
    [C:\Program Files\Symantec AntiVirus\SavEmail.dll]  [Symantec Corporation, 9.0.0.338]
    [C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll]  [Symantec Corporation, 2.2.0.577]
    [D:\Permeo\e-Border Driver\s5spi.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5impl.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5cred.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [C:\Program Files\Common Files\Symantec Shared\ccProSub.dll]  [Symantec Corporation, 2.2.0.577]
[PID: 1708][C:\PROGRA~1\SYMANT~1\VPTray.exe]  [Symantec Corporation, 9.0.0.338]
    [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  [Symantec Corporation, 9.3.0.28]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [C:\Program Files\Symantec AntiVirus\Cliproxy.dll]  [Symantec Corporation, 9.0.0.338]
    [C:\PROGRA~1\SYMANT~1\NAVNTUTL.DLL]  [Symantec Corporation, 9.0.0.338]
    [C:\Program Files\Symantec AntiVirus\Cliscan.dll]  [Symantec Corporation, 9.0.0.338]
[PID: 1820][D:\Unlocker\UnlockerAssistant.exe]  [N/A, N/A]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
[PID: 1828][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
[PID: 3784][D:\ff\firefox.exe]  [Mozilla Corporation, 1.8.0.7: 2006090918]
gototop
 

[C:\Program Files\Symantec AntiVirus\Dec2AMG.dll]  [Symantec Corporation, 3.02.11.32]
    [C:\Program Files\Symantec AntiVirus\Dec2TAR.dll]  [Symantec Corporation, 3.02.11.32]
    [C:\Program Files\Symantec AntiVirus\Dec2RTF.dll]  [Symantec Corporation, 3.02.11.32]
    [C:\Program Files\Symantec AntiVirus\Dec2Text.dll]  [Symantec Corporation, 3.02.11.32]
[PID: 932][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1132][C:\WINDOWS\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.1.0.27]
[PID: 1292][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe]  [ATI Technologies, Inc., 6.14.10.5125]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll]  [ATI Technologies, Inc., 6.14.10.5125]
    [C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS]  [ATI Technologies, Inc., 6.14.10.5125]
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll]  [ATI Technologies, Inc., 6.14.10.5125]
[PID: 1516][C:\Program Files\Common Files\Symantec Shared\ccApp.exe]  [Symantec Corporation, 2.2.0.577]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 2.2.0.577]
    [C:\Program Files\Symantec\LiveUpdate\ProductRegCom.DLL]  [Symantec Corporation, 2.0.39.0]
    [C:\Program Files\Symantec\LiveUpdate\LuComServerPS.DLL]  [Symantec Corporation, 2.0.39.0]
    [C:\PROGRA~1\COMMON~1\SYMANT~1\CCALERT.DLL]  [Symantec Corporation, 2.2.0.577]
    [C:\PROGRA~1\COMMON~1\SYMANT~1\CCEMLPXY.DLL]  [Symantec Corporation, 2.2.0.577]
    [C:\WINDOWS\system32\SYMREDIR.dll]  [Symantec Corporation, 5.3.0.46]
    [C:\Program Files\Symantec AntiVirus\SavEmail.dll]  [Symantec Corporation, 9.0.0.338]
    [C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll]  [Symantec Corporation, 2.2.0.577]
    [D:\Permeo\e-Border Driver\s5spi.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5impl.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5cred.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [C:\Program Files\Common Files\Symantec Shared\ccProSub.dll]  [Symantec Corporation, 2.2.0.577]
[PID: 1708][C:\PROGRA~1\SYMANT~1\VPTray.exe]  [Symantec Corporation, 9.0.0.338]
    [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  [Symantec Corporation, 9.3.0.28]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [C:\Program Files\Symantec AntiVirus\Cliproxy.dll]  [Symantec Corporation, 9.0.0.338]
    [C:\PROGRA~1\SYMANT~1\NAVNTUTL.DLL]  [Symantec Corporation, 9.0.0.338]
    [C:\Program Files\Symantec AntiVirus\Cliscan.dll]  [Symantec Corporation, 9.0.0.338]
[PID: 1820][D:\Unlocker\UnlockerAssistant.exe]  [N/A, N/A]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
[PID: 1828][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
[PID: 3784][D:\ff\firefox.exe]  [Mozilla Corporation, 1.8.0.7: 2006090918]
gototop
 

[D:\ff\js3250.dll]  [Netscape Communications Corporation, 4.0]
    [D:\ff\nspr4.dll]  [Netscape Communications Corporation, 4.6.1]
    [D:\ff\xpcom_core.dll]  [Mozilla Foundation, 1.8.0.7: 2006090918]
    [D:\ff\plc4.dll]  [Netscape Communications Corporation, 4.6.1]
    [D:\ff\plds4.dll]  [Netscape Communications Corporation, 4.6.1]
    [D:\ff\smime3.dll]  [Netscape Communications Corporation, 3.10.2]
    [D:\ff\nss3.dll]  [Netscape Communications Corporation, 3.10.2]
    [D:\ff\softokn3.dll]  [Netscape Communications Corporation, 3.10.2]
    [D:\ff\ssl3.dll]  [Netscape Communications Corporation, 3.10.2]
    [D:\ff\xpcom_compat.dll]  [Mozilla Foundation, 1.8.0.7: 2006090918]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [D:\Permeo\e-Border Driver\s5spi.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5impl.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5cred.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\ff\components\jar50.dll]  [Mozilla Foundation, 1.8.0.7: 2006090918]
    [D:\ff\extensions\talkback@mozilla.org\components\qfaservices.dll]  [Mozilla Foundation, 1.8.0.7: 2006090918]
    [D:\ff\extensions\talkback@mozilla.org\components\FULLSOFT.DLL]  [Full Circle Software, Inc., 2.2.unofficial]
    [D:\ff\plugins\npnul32.dll]  [mozilla.org, 1, 0, 0, 15]
    [D:\ff\components\ThunderComponent.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 7]
    [D:\ff\xpcom.dll]  [Mozilla Foundation, 1.8.0.7: 2006090918]
    [D:\ff\nssckbi.dll]  [Netscape Communications Corporation, 1.53]
    [D:\ff\plugins\NPSWF32.dll]  [N/A, N/A]
    [D:\Thunder Network\Thunder\ComDlls\ThunderAgent_003.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
[PID: 3072][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
[PID: 2884][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\xunleibho_v14.dll]  [Thunder Networking Technologies,LTD, 4, 6, 0, 62]
    [C:\WINDOWS\system32\msdtcuzlx.dll]  [N/A, N/A]
    [D:\Tencent\QQ\QQIEHelper.dll]  [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
    [D:\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll]  [Thunder Networking Technologies,LTD, 5, 0, 0, 2]
    [D:\KuGoo3\KuGoo3DownXControl.ocx]  [N/A, N/A]
    [D:\Permeo\e-Border Driver\s5spi.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5impl.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5cred.dll]  [Permeo Technologies Inc., 3,5,0,0]
[PID: 3524][C:\Documents and Settings\Administrator\桌面\sreng2\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [D:\Unlocker\UnlockerHook.dll]  [N/A, N/A]
    [D:\Permeo\e-Border Driver\s5spi.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5impl.dll]  [Permeo Technologies Inc., 3,5,0,0]
    [D:\Permeo\e-Border Driver\s5cred.dll]  [Permeo Technologies Inc., 3,5,0,0]
gototop
 

文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
Permeo e-Border MSAFD Tcpip [TCP/IP]
    D:\Permeo\e-Border Driver\s5spi.dll(Permeo Technologies Inc., e-Border DRiver LSP hooks)
Permeo e-Border MSAFD Tcpip [UDP/IP]
    D:\Permeo\e-Border Driver\s5spi.dll(Permeo Technologies Inc., e-Border DRiver LSP hooks)
Permeo e-Border RSVP UDP Service Provider
    D:\Permeo\e-Border Driver\s5spi.dll(Permeo Technologies Inc., e-Border DRiver LSP hooks)
Permeo e-Border RSVP TCP Service Provider
    D:\Permeo\e-Border Driver\s5spi.dll(Permeo Technologies Inc., e-Border DRiver LSP hooks)
Permeo e-Border Layered Service Provider
    D:\Permeo\e-Border Driver\s5spi.dll(Permeo Technologies Inc., e-Border DRiver LSP hooks)

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT