12   2  /  2  页   跳转

急!!!!求助啊!!

[PID: 480][E:\瑞星防火墙\Rising\Rfw\rfwmain.exe]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 56]
    [E:\瑞星防火墙\Rising\Rfw\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
    [E:\瑞星防火墙\Rising\Rfw\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [E:\瑞星防火墙\Rising\Rfw\RfwCtrl.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
    [E:\瑞星防火墙\Rising\Rfw\RsXML.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [E:\瑞星防火墙\Rising\Rfw\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 592][H:\Program Files\360safe\safemon\360Tray.exe]  [奇虎网, 1, 0, 0, 1001]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\360safe\safemon\SafeKrnl.dll]  [奇虎网, 1, 0, 0, 1001]
    [H:\Program Files\360safe\AntiAdwa.dll]  [360Safe.com, 2, 2, 1, 2000]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 652][H:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 532][H:\Program Files\Internet Explorer\IEXPLORE.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
[PID: 2380][H:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 4012][H:\Program Files\Internet Explorer\IEXPLORE.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
[PID: 240][H:\Program Files\Internet Explorer\IEXPLORE.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
[PID: 3616][H:\Program Files\802.1X认证客户端\Dot1XClient.exe]  [huawei, 2.00]
    [H:\WINDOWS\system32\W32N50.dll]  [Printing Communications Assoc., Inc. (PCAUSA), 5.03.16.54]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 1300][E:\瑞星杀毒软件\Rising\Rav\RsAgent.exe]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [E:\瑞星杀毒软件\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 1460][H:\WINDOWS\msagent\AgentSvr.exe]  [Microsoft Corporation, 2.00.0.3422]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 2284][H:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [H:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
[PID: 3512][H:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [H:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
[PID: 3440][E:\千千静听\TTPlayer.exe]  [Alen Soft, 4, 6, 9, 0]
    [E:\千千静听\ttpcomm.dll]  [N/A, N/A]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [E:\千千静听\ttpres.dll]  [Alen Soft, 4, 6, 9, 0]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 556][E:\新建文件夹\SREng.EXE]  [Smallfrogs Studio, 2.3.13.690]
    [H:\Program Files\360safe\safemon\safemon.dll]  [N/A, 1, 0, 0, 1001]
    [H:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
gototop
 

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["H:\WINDOWS\hh.exe" %1]
.HLP  Error. [H:\WINDOWS\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
警告!System Repair Engineer 提醒
你下面的函数内容与预期值不符,他
们可能被一些恶意的软件所修改:
入口点错误:CreateProcessA
入口点错误:CreateProcessW

==================================


[/CODE]
gototop
 

H:\WINDOWS\system32\twunk32.exe
参考
http://forum.ikaka.com/topic.asp?board=28&artid=8237996

TEMP文件夹到安全模式下清空
gototop
 

搞好啦  谢谢 谢谢 谢谢 谢谢 谢谢 谢谢 谢谢 感动的我留泪啊
太感谢你啦
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT