1   1  /  1  页   跳转

AF004E98.exe是什么病毒?【求助】

AF004E98.exe是什么病毒?【求助】

任务管理器中有AF004E98.exe进程,每次开机音量图标自动变成静音。
看图:
用瑞星扫描没有发现问题。

附件附件:

下载次数:131
文件类型:image/pjpeg
文件大小:
上传时间:2007-1-30 11:04:53
描述:



最后编辑2007-01-30 14:02:29
分享到:
gototop
 

[AF004E98.exe]
PID = 0x78c
CommandLine = C:\WINDOWS\system32\AF004E98.exe uhoj#78rtez<welexbbeg&dih+ph.
    AF004E98.exe
    0x400000
    C:\WINDOWS\system32\AF004E98.exe
   
   
   
    2007-01-30 11:01:55

    ntdll.dll
    0x7c930000
    C:\WINDOWS\system32\ntdll.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    NT Layer DLL
    2005-04-04 14:19:08

    kernel32.dll
    0x7c800000
    C:\WINDOWS\system32\kernel32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows NT BASE API Client DLL
    2005-04-04 13:40:46

    MSVBVM60.DLL
    0x73440000
    C:\WINDOWS\system32\msvbvm60.dll
    6.00.9782
    Microsoft Corporation
    Visual Basic Virtual Machine
    2005-04-04 13:36:00

    USER32.dll
    0x77e10000
    C:\WINDOWS\system32\user32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows USER API Client DLL
    2005-04-04 13:40:36

    GDI32.dll
    0x77bd0000
    C:\WINDOWS\system32\gdi32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    GDI Client DLL
    2005-04-04 13:35:50

    ADVAPI32.dll
    0x77f30000
    C:\WINDOWS\system32\advapi32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Advanced Windows 32 Base API
    2005-04-04 13:40:20

    RPCRT4.dll
    0x77c20000
    C:\WINDOWS\system32\rpcrt4.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Remote Procedure Call Runtime
    2005-04-04 13:36:10

    ole32.dll
    0x774b0000
    C:\WINDOWS\system32\ole32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Microsoft OLE for Windows
    2005-04-04 13:42:06

    msvcrt.dll
    0x77b70000
    C:\WINDOWS\system32\msvcrt.dll
    7.0.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows NT CRT DLL
    2005-04-04 13:36:02

    OLEAUT32.dll
    0x775f0000
    C:\WINDOWS\system32\oleaut32.dll
    5.2.3790.1830
    Microsoft Corporation
   
    2005-04-04 13:36:06

    IMM32.DLL
    0x76180000
    C:\WINDOWS\system32\imm32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows IMM32 API Client DLL
    2005-04-04 13:35:52

    LPK.DLL
    0x63090000
    C:\WINDOWS\system32\lpk.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Language Pack
    2005-04-04 13:35:54

    USP10.dll
    0x74ae0000
    C:\WINDOWS\system32\usp10.dll
    1.0422.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Uniscribe Unicode script processor
    2005-04-04 13:36:24

    vb6chs.dll
    0x66630000
    C:\WINDOWS\system32\VB6CHS.DLL
    6.00.8169
    Microsoft Corporation
    Visual Basic Environment International Resources
    1998-07-06 00:00:00

    SXS.DLL
    0x75ca0000
    C:\WINDOWS\system32\sxs.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Fusion 2.5
    2005-04-04 13:41:46

    apphelp.dll
    0x75d60000
    C:\WINDOWS\system32\apphelp.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Application Compatibility Client Library
    2005-04-04 13:40:22

    msctfime.ime
    0x4c510000
    C:\WINDOWS\system32\msctfime.ime
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Microsoft Text Frame Work Service IME
    2005-04-04 13:35:56

    asycfilt.dll
    0x70d60000
    C:\WINDOWS\system32\asycfilt.dll
    5.2.3790.1830
    Microsoft Corporation
   
    2005-04-04 13:35:42

    wininet.dll
    0x779e0000
    C:\WINDOWS\system32\wininet.dll
    6.00.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Internet Extensions for Win32
    2005-04-04 13:41:04

    CRYPT32.dll
    0x760a0000
    C:\WINDOWS\system32\crypt32.dll
    5.131.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Crypto API32
    2005-04-04 13:41:14

    MSASN1.dll
    0x76080000
    C:\WINDOWS\system32\msasn1.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    ASN.1 Runtime APIs
    2005-04-04 13:35:56

    SHLWAPI.dll
    0x77eb0000
    C:\WINDOWS\system32\shlwapi.dll
    6.00.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Shell Light-weight Utility Library
    2005-04-04 13:41:36

    comctl32.dll
    0x77cd0000
    C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.1830_x-ww_7AE38CCF\comctl32.dll
    6.0 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    User Experience Controls Library
    2005-04-04 14:58:22

    Secur32.dll
    0x76eb0000
    C:\WINDOWS\system32\secur32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Security Support Provider Interface
    2005-04-04 13:36:12

    shell32.dll
    0x7ca10000
    C:\WINDOWS\system32\shell32.dll
    6.00.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows Shell Common Dll
    2005-04-04 13:41:34

    urlmon.dll
    0x77250000
    C:\WINDOWS\system32\urlmon.dll
    6.00.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    OLE32 Extensions for Win32
    2005-04-04 13:40:36

    VERSION.dll
    0x77b60000
    C:\WINDOWS\system32\version.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Version Checking and File Installation Libraries
    2005-04-04 13:36:24

    mlang.dll
    0x74480000
    C:\WINDOWS\system32\mlang.dll
    6.00.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Multi Language Support DLL
    2005-04-04 13:35:54

    wsock32.dll
    0x71b10000
    C:\WINDOWS\system32\wsock32.dll
    5.2.3790.0 (srv03_rtm.030324-2048)
    Microsoft Corporation
    Windows Socket 32-Bit DLL
    2003-03-27 20:00:00

    WS2_32.dll
    0x71b60000
    C:\WINDOWS\system32\ws2_32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows Socket 2.0 32-Bit DLL
    2005-04-04 13:36:28

    WS2HELP.dll
    0x71b50000
    C:\WINDOWS\system32\ws2help.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Windows Socket 2.0 Helper for Windows NT
    2005-04-04 13:41:20

    mswsock.dll
    0x71a80000
    C:\WINDOWS\system32\mswsock.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Microsoft Windows Sockets 2.0 Service Provider
    2005-04-04 13:41:42

    hnetcfg.dll
    0x69660000
    C:\WINDOWS\system32\hnetcfg.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Home Networking Configuration Manager
    2005-04-04 13:41:50

    wshtcpip.dll
    0x71a40000
    C:\WINDOWS\system32\wshtcpip.dll
    5.2.3790.0 (srv03_rtm.030324-2048)
    Microsoft Corporation
    Windows Sockets Helper DLL
    2003-03-27 20:00:00

    RASAPI32.DLL
    0x76df0000
    C:\WINDOWS\system32\rasapi32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Remote Access API
    2005-04-04 13:40:40

    rasman.dll
    0x76da0000
    C:\WINDOWS\system32\rasman.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Remote Access Connection Manager
    2005-04-04 13:36:08

    NETAPI32.dll
    0x71ba0000
    C:\WINDOWS\system32\netapi32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Net Win32 API DLL
    2005-04-04 13:36:02

    TAPI32.dll
    0x76dc0000
    C:\WINDOWS\system32\tapi32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Microsoft(R) Windows(TM) Telephony API Client DLL
    2005-04-04 13:41:50

    rtutils.dll
    0x76d90000
    C:\WINDOWS\system32\rtutils.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Routing Utilities
    2005-04-04 13:36:10

    WINMM.dll
    0x769e0000
    C:\WINDOWS\system32\winmm.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    MCI API DLL
    2005-04-04 13:41:06

    sensapi.dll
    0x72230000
    C:\WINDOWS\system32\sensapi.dll
    5.2.3790.0 (srv03_rtm.030324-2048)
    Microsoft Corporation
    SENS Connectivity API DLL
    2003-03-27 20:00:00

    USERENV.dll
    0x75870000
    C:\WINDOWS\system32\userenv.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Userenv
    2005-04-04 13:40:38

    DNSAPI.dll
    0x76e30000
    C:\WINDOWS\system32\dnsapi.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    DNS Client API DLL
    2005-04-04 13:41:30

    winrnr.dll
    0x76ed0000
    C:\WINDOWS\system32\winrnr.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    LDAP RnR Provider DLL
    2005-04-04 13:36:26

    WLDAP32.dll
    0x76e70000
    C:\WINDOWS\system32\wldap32.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Win32 LDAP API DLL
    2005-04-04 13:41:10

    rasadhlp.dll
    0x76ee0000
    C:\WINDOWS\system32\rasadhlp.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    Remote Access AutoDial Helper
    2005-04-04 13:36:08

    ieprot.dll
    0x10000000
    C:\Program Files\Rising\AntiSpyware\ieprot.dll
    1, 0, 0, 8
    Beijing Rising Technology Co., Ltd.
    IE Protector
    2007-01-26 17:48:47

    MSCTF.dll
    0x4b210000
    C:\WINDOWS\system32\msctf.dll
    5.2.3790.1830 (srv03_sp1_rtm.050324-1447)
    Microsoft Corporation
    MSCTF Server DLL
    2005-04-04 13:41:16
gototop
 

上面是卡卡的分析!
gototop
 

也有zhengtu这样一个病毒。
gototop
 

Trojan.PSW.ZhengTu.afq 就是这个病毒 开机自动静音 瑞星怎么杀也杀不掉 杀了开机又有了
安全模式杀毒没用。
gototop
 

是征途游戏盗号病毒
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT