瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 Trojan.Spy.Agent.bux 请求大家帮助【讨论】【求助】

12   2  /  2  页   跳转

Trojan.Spy.Agent.bux 请求大家帮助【讨论】【求助】

汗死 又是iexplore
gototop
 

[C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.8472\res_zh-CN.dll]  [Google Inc., 1, 2, 908, 8472]
    [C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.8472\swg.dll]  [Google Inc., 1, 2, 908, 8472]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
[PID: 528][C:\WINDOWS\System32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
[PID: 640][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 812][C:\WINDOWS\System32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.10.8456]
[PID: 1264][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe]  [Analog Devices, Inc., 3, 2, 6, 0]
[PID: 1136][C:\WINDOWS\System32\wdfmgr.exe]  [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]
[PID: 3260][C:\Program Files\ChinaNet\VnetClient.exe]  [, 2006, 3, 17, 1]
    [C:\Program Files\ChinaNet\Communicate.dll]  [GDCN, 2006, 2, 15, 1]
    [C:\Program Files\ChinaNet\DialModule.dll]  [GDCN, 2006, 3, 8, 18]
    [C:\PROGRA~1\ChinaNet\CLIENT~1.DLL]  [, 2004, 2, 28, 1]
    [C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX]  [, 2006, 2, 8, 1]
    [C:\PROGRA~1\ChinaNet\sign.dll]  [0, 2004, 12, 1, 1]
    [C:\PROGRA~1\ChinaNet\WEBPLU~1.DLL]  [, 2005, 8, 18, 1]
    [C:\PROGRA~1\ChinaNet\PlugIns\SMSPLU~1\SMSPLU~1.DLL]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\ChinaNet\PostPlug.dll]  [, 2004, 12, 16, 2]
    [C:\PROGRA~1\ChinaNet\ADVERT~1.OCX]  [, 2006, 2, 20, 1]
    [C:\PROGRA~1\ChinaNet\VnetBs.ocx]  [, 2004, 11, 18, 1]
    [C:\PROGRA~1\ChinaNet\ACCOUN~2.DLL]  [, 2006, 5, 29, 14]
    [C:\PROGRA~1\ChinaNet\AccountMgr.dll]  [, 2006, 5, 26, 9]
    [C:\PROGRA~1\ChinaNet\VnetSkin.ocx]  [GDDC, 2005, 11, 14, 1]
    [C:\PROGRA~1\ChinaNet\DialogStyle.dll]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\ChinaNet\Timer.ocx]  [, 2006, 3, 24, 9]
    [C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX]  [, 2006, 4, 4, 1]
    [C:\PROGRA~1\ChinaNet\NEWMES~1.DLL]  [, 2006, 5, 24, 16]
    [C:\PROGRA~1\ChinaNet\PassCtrl.dll]  [GDCN, 2006, 3, 1, 16]
    [C:\WINDOWS\System32\wpcap.dll]  [Politecnico di Torino, 3, 0, 0, 18]
    [C:\WINDOWS\System32\pthreadVC.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\packet.dll]  [Politecnico di Torino, 3, 0, 0, 18]
    [C:\PROGRA~1\ChinaNet\PlugPush.dll]  [, 2004, 12, 21, 1]
    [C:\PROGRA~1\ChinaNet\ALLINT~1.DLL]  [, 2006, 5, 29, 11]
    [C:\PROGRA~1\ChinaNet\VNETLO~1.OCX]  [, 2005, 10, 9, 1]
    [C:\PROGRA~1\ChinaNet\StatNum.dll]  [, 2006, 3, 1, 1]
    [C:\PROGRA~1\ChinaNet\VNETON~1.OCX]  [, 2005, 3, 2, 1]
    [C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL]  [GDCN, 2006, 5, 24, 14]
    [C:\PROGRA~1\ChinaNet\VnetOptLog.dll]  [, 2006, 3, 14, 10]
    [C:\PROGRA~1\ChinaNet\MAGICD~1.OCX]  [, 1, 0, 0, 1]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyl.dll]  [N/A, N/A]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyz.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\LgSyl.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\agtz.dll]  [N/A, N/A]
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\WINDOWS\System32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\PROGRA~1\ChinaNet\DlgSkin.ocx]  [, 2005, 11, 14, 1]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\Program Files\CNNIC\Cdn\cdnspie.dll]  [, 2, 0, 0, 0]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [cnnic, 2, 0, 0, 1]
[PID: 1800][C:\Program Files\Real\RealPlayer\realplay.exe]  [RealNetworks, Inc., 6.0.12.1506]
    [C:\WINDOWS\System32\PNCRT.dll]  [Real Networks, Inc, 6.0.0.0]
    [C:\Program Files\Common Files\Real\Common\objb3201.dll]  [RealNetworks, Inc., 0.1.0.6442]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpap3260.dll]  [RealNetworks, Inc., 6.0.9.3064]
    [C:\Program Files\Common Files\Real\Common\pnrs3260.dll]  [RealNetworks, Inc., 6.0.9.4093]
    [C:\Program Files\Real\RealPlayer\lang\cdplay_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\dbcomp_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\embed_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\gemctl_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\pngui_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\pdgenxfer_cn.dll]  [N/A, N/A]
    [C:\Program Files\Real\RealPlayer\lang\rjctl_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjeq_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjres_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjskin_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjviz_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjfade_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjdlg_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjmisc_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rjprog_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpapp_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpclsvc_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpclutil_cn.dll]  [RealNetworks, Inc., 6.0.12.299]
    [C:\Program Files\Real\RealPlayer\lang\rpdemand_cn.dll]  [RealNetworks, Inc., 6.0.12.299]
    [C:\Program Files\Real\RealPlayer\lang\rpdsplyr_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpgutil_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpmnpane_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpplylst_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\rpwebctl_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\tcdinfo_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\tclsvc_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\tdwnmgr_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\tmp3_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\twave_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\teasdk_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\tearm_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\tmdedit_cn.dll]  [RealNetworks, Inc., 6.0.12.298]
    [C:\Program Files\Real\RealPlayer\lang\mydevices_cn.dll]  [RealNetworks, Inc., 6.0.12.299]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpcl3260.dll]  [RealNetworks, Inc., 6.0.9.3137]
    [C:\Program Files\Common Files\Real\RCAPlugins\uisy3201.dll]  [RealNetworks, Inc., 0.1.0.3858]
    [C:\Program Files\Common Files\Real\Plugins\zipf3260.dll]  [RealNetworks, Inc., 6.0.8.2575]
    [C:\Program Files\Common Files\Real\Plugins\smplfsys.dll]  [RealNetworks, Inc., 10.0.0.1989]
    [C:\Program Files\Common Files\Real\RCAPlugins\rpcontrols1.dll]  [RealNetworks, Inc., 6.0.1.2259]
    [C:\Program Files\Common Files\Real\Plugins\pxcb3210.dll]  [RealNetworks, Inc., 1.0.0.4020]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpmn3260.dll]  [RealNetworks, Inc., 6.0.9.2960]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpwe3260.dll]  [RealNetworks, Inc., 6.0.1.2303]
    [C:\Program Files\Common Files\Real\RCAPlugins\rpcontrols2.dll]  [RealNetworks, 6.0.1.2259]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpms3260.dll]  [RealNetworks, Inc., 6.0.1.2297]
    [C:\Program Files\Real\RealPlayer\rpplugins\MPACore.dll]  [RealNetworks, Inc., 1.0.3.2316]
    [C:\Program Files\Real\RealPlayer\rpplugins\rppl3260.dll]  [RealNetworks, Inc., 6.0.1.2298]
    [C:\Program Files\Common Files\Real\Common\pngu3267.dll]  [RealNetworks, Inc., 6.7.0.2737]
    [C:\Program Files\Real\RealPlayer\rpplugins\myde3260.dll]  [RealNetworks, Inc., 6.0.10.2524]
    [C:\Program Files\Common Files\Real\Common\pnen3260.dll]  [RealNetworks, Inc., 10.0.0.1250]
    [C:\Program Files\Common Files\Real\Plugins\vsrlocal.dll]  [RealNetworks, Inc., 10.1.0.1147]
    [C:\Program Files\Common Files\Real\Plugins\vidsite.dll]  [RealNetworks, Inc., 10.0.0.1220]
    [C:\Program Files\Common Files\Real\Plugins\clntxres.dll]  [RealNetworks, Inc., 10.0.0.4106]
    [C:\Program Files\Common Files\Real\Plugins\smlfformat.dll]  [RealNetworks, Inc., 10.0.0.2081]
    [C:\Program Files\Common Files\Real\Plugins\ramfformat.dll]  [RealNetworks, Inc., 10.0.0.2446]
    [C:\Program Files\Common Files\Real\Plugins\smlrender.dll]  [RealNetworks, Inc., 10.0.0.1697]
    [C:\Program Files\Common Files\Real\Plugins\authmgr.dll]  [RealNetworks, Inc., 10.0.0.1654]
    [C:\Program Files\Common Files\Real\Common\rjbviz.dll]  [RealNetworks, Inc., 1.0.2.3917]
    [C:\Program Files\Common Files\Real\Visualizations\Annabelle.rpv]  [RealNetworks, Inc., 1.0.0.2]
gototop
 

[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyl.dll]  [N/A, N/A]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyz.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\LgSyl.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\agtz.dll]  [N/A, N/A]
    [C:\Program Files\Real\RealPlayer\rpplugprot.dll]  [RealNetworks, Inc., 6.0.10.2264]
    [C:\Program Files\Common Files\Real\Common\twebbrowse.dll]  [RealNetworks, Inc., 1.0.2.1619]
    [C:\Program Files\Common Files\Real\RCAPlugins\gemx3201.dll]  [RealNetworks, Inc., 0.1.0.5895]
    [C:\Program Files\Real\RealPlayer\plugins\wmaimprtpln.dll]  [RealNetworks, Inc., 6.0.9.1000]
    [C:\Program Files\Real\RealPlayer\rjwmapln.dll]  [RealNetworks, Inc., 6.0.8.1795]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpwm3260.dll]  [RealNetworks, Inc., 6.0.9.1000]
    [C:\Program Files\Real\RealPlayer\rpplugins\rpcomproxy.dll]  [RealNetworks, Inc., 6.0.12.1015]
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\Real\RealPlayer\rpplugins\cdpl3210.dll]  [RealNetworks, Inc., 1.0.3.2319]
    [C:\Program Files\Real\RealPlayer\mmcdda32.dll]  [RealNetworks, Inc., 1.0.3.2311]
    [C:\WINDOWS\System32\msdmo.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\ffdshow.ax]  [N/A, 1.0.2.2028]
    [C:\Program Files\Ringz Studio\Storm Codec\Codecs\VSFilter.dll]  [Gabest, 1, 0, 1, 3]
    [C:\Program Files\Real\RealPlayer\rdsf3260.dll]  [RealNetworks, Inc., 6.0.12.1251]
    [C:\Program Files\Real\RealPlayer\tnetdtct.dll]  [RealNetworks, Inc., 1.0.3.2264]
    [C:\Program Files\Common Files\Real\Update_OB\rnad3201.dll]  [RealNetworks, Inc., 0.1.0.3536]
    [C:\Program Files\Common Files\Real\RCAPlugins\sonr3210.dll]  [RealNetworks, Inc., 1.0.0.2356]
    [C:\Program Files\Common Files\Real\Plugins\mp3render.dll]  [RealNetworks, Inc., 10.0.0.1219]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
    [C:\Program Files\CNNIC\Cdn\cdnspie.dll]  [, 2, 0, 0, 0]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [cnnic, 2, 0, 0, 1]
    [C:\Program Files\Real\RealPlayer\plugins\rjmp3pln.dll]  [RealNetworks, Inc., 1.0.3.2263]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\Program Files\Real\RealPlayer\rpplugins\rjbe3260.dll]  [RealNetworks, Inc., 6.0.4.2299]
    [C:\Program Files\Common Files\Real\Plugins\mp3fformat.dll]  [RealNetworks, Inc., 10.0.0.3190]
[PID: 1292][D:\BitComet\BitComet.exe]  [www.BitComet.com, 0.70]
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyl.dll]  [N/A, N/A]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyz.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\LgSyl.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\agtz.dll]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
[PID: 2988][E:\Warcraft3\warkey107.exe]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
[PID: 2564][C:\Program Files\CNNIC\Cdn\cdnup.exe]  [, 2, 1, 0, 2]
    [C:\Program Files\CNNIC\Cdn\cdnglo.dll]  [, 2, 0, 0, 2]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [cnnic, 2, 0, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnspie.dll]  [, 2, 0, 0, 0]
    [C:\Program Files\CNNIC\Cdn\cdntdns.dll]  [CNNIC, 2, 0, 0, 1]
[PID: 3984][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
    [C:\Program Files\CNNIC\Cdn\cdnspie.dll]  [, 2, 0, 0, 0]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [cnnic, 2, 0, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 2, 0, 3]
gototop
 

[PID: 2788][D:\下载\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.3.13.690]
    [C:\Program Files\CNNIC\Cdn\cdnspie.dll]  [, 2, 0, 0, 0]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [cnnic, 2, 0, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [, 2, 0, 0, 2]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyl.dll]  [N/A, N/A]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\LgSyz.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\LgSyl.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\agtz.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
N/A

==================================


[/CODE]
gototop
 

大家来看看啊!
我中的毒扫了
好象又有其他的
机器速度好象也比以前有些慢
是什么原因啊???
gototop
 

中了不下十个毒,建议格盘重装
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT