瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 trojan.psw.lmir.lxq病毒,如何杀,,在线苦等!!!

123   3  /  3  页   跳转

trojan.psw.lmir.lxq病毒,如何杀,,在线苦等!!!

[d:\rising\rfw\ProcLib.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 5]
    [d:\rising\rfw\mPorts.dll]  [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
[PID: 1620][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[PID: 276][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 420][D:\Rising\Rav\RavTask.exe]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 7]
    [D:\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [D:\Rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [D:\Rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
    [D:\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
[PID: 440][D:\Rising\Rfw\rfwmain.exe]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 66]
    [D:\Rising\Rfw\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 31]
    [D:\Rising\Rfw\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [D:\Rising\Rfw\RfwCtrl.dll]  [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
    [D:\Rising\Rfw\RsXML.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [D:\Rising\Rfw\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[PID: 448][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 600][D:\Rising\Rav\Ravmon.exe]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 36]
    [D:\Rising\Rav\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
    [D:\Rising\Rav\BWList.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 6]
    [D:\Rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [D:\Rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
    [D:\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [D:\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [D:\Rising\Rav\RsXML.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [D:\Rising\Rav\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[PID: 2604][D:\Rising\Rav\Rav.exe]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
    [D:\Rising\Rav\PlugIn\RsPgScan.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 17]
    [D:\Rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [D:\Rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
    [D:\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [D:\Rising\Rav\RavUI.Dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 30]
    [D:\Rising\Rav\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
    [D:\Rising\Rav\RsXML.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [D:\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [d:\Rising\Rav\Scanner.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 12]
    [D:\Rising\Rav\BWList.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 6]
    [d:\Rising\Rav\RsStore.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
    [D:\Rising\Rav\RavQu.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
    [D:\Rising\Rav\libload.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 16]
    [D:\Rising\Rav\VirusLib.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[PID: 2868][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\下载工具\迅雷5\ComDlls\XunLeiBHO_006.dll]  [Thunder Networking Technologies,LTD, 5, 0, 0, 3]
    [d:\Rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
[PID: 1384][D:\Tencent\QQ\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [D:\Tencent\QQ\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\BasicCtrlDll.dll]  [Tencent, 6, 0, 200, 320]
    [D:\Tencent\QQ\QQAPI.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [D:\Tencent\QQ\LoginCtrl.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 6, 27, 1]
    [D:\Tencent\QQ\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [D:\Tencent\QQ\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [D:\Tencent\QQ\QQMainFrame.dll]  [N/A, N/A]
    [D:\Tencent\QQ\CQQApplication.dll]  [N/A, N/A]
    [D:\Tencent\QQ\NewSkin.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\HostingMgr.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\CameraDll.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\MailSummary.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\QQKnowledgeSearch.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\QQAllInOne.dll]  [N/A, N/A]
    [D:\Tencent\QQ\GroupLive.dll]  [N/A, N/A]
    [D:\Tencent\QQ\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [D:\Tencent\QQ\QQSpace.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\msdmo.dll]  [N/A, N/A]
    [D:\Tencent\QQ\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\QQSysMsgMng.dll]  [N/A, N/A]
    [D:\Tencent\QQ\QQAvatar.dll]  [N/A, N/A]
    [D:\Tencent\QQ\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [D:\Tencent\QQ\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\QQPlugin.dll]  [N/A, N/A]
    [D:\Tencent\QQ\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\QRingMng.dll]  [N/A, N/A]
    [D:\Tencent\QQ\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [D:\Tencent\QQ\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [D:\Tencent\QQ\QQPet.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\BQQApplication.dll]  [N/A, N/A]
    [D:\Tencent\QQ\CommercesMng.dll]  [, 1, 0, 0, 1]
    [D:\Tencent\QQ\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [D:\Tencent\QQ\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 271]
    [D:\Tencent\QQ\QQSceneMng.dll]  [N/A, N/A]
    [D:\Tencent\QQ\QQPhoneHelper.dll]  [腾讯科技(深圳)有限公司, 2, 1, 3, 30]
[PID: 712][D:\Tencent\QQ\TIMPlatfrom.exe]  [tencent, 0, 3, 1, 8]
    [D:\Tencent\QQ\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
[PID: 204][F:\kv漏洞\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.3.13.690]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
N/A

==================================


[/CODE]
gototop
 

这么看日志还是正常的...你把装QQ的目录删掉  换个路径重装QQ因该会好
gototop
 

【回复“鸟儿天上飞”的帖子】

太感谢了,我太感动了,,你真是好人啊..我把QQ删了,,就好了..看来就是它是罪魁祸首..这里的高手多,,好人更多..谢谢了!!!!!
gototop
 

通病相连,我顶你一下
gototop
 

感谢感谢,,自己再顶一下,,有和我一样的问题的,,先这个帖..再次感谢鸟儿天上飞..
gototop
 

进来看看...VIKING折磨中...
gototop
 

你找找看,前边我发了个帖子,有高手指点怎么杀了
gototop
 

http://forum.ikaka.com/topic.asp?board=28&artid=8253456,呵呵
gototop
 

Trojan.PSW.LMir.lxq这个病毒我已经杀掉了,首先要先杀一次毒,把所有其他的毒杀掉,然后在防火墙的启动项里面把显示红色的进程全部删除(先从红色的进程里面跳转进注册表,只保留默认项,其他的全部删除。然后在防火墙启动项里面把进程删除掉,刷新一次,如果没有了就说明删掉了,我说的只是红色的进程,不是这个病毒)。
这个病毒是藏在QQ里面的 ,所以你必须把QQ游戏,QQ相关的东西一并删除。1.在控制面板里面的添加删除程序里面的和QQ有关的是必须完全卸载掉的。
2.在C盘C:\Program Files\Tencent里面的文件全部删除。
3。开始项里面的QQ有关的也必须删除掉。
其中有个是删除不掉了,所以要进注册表去删掉。HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft里面去找与QQ有关的注册表项,全部删除,我记得里面有个Tencent和QQ文件夹,都删掉。再把机子重新启动杀毒,就OK了。
gototop
 
123   3  /  3  页   跳转
页面顶部
Powered by Discuz!NT