瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 中毒了...杀软没反应...SRE2扫了...看不懂....【求助】

12   2  /  2  页   跳转

中毒了...杀软没反应...SRE2扫了...看不懂....【求助】

多谢火影、天月。。。

我刚把那个可疑驱动删了。。。SRE驱动里没它。。。不过360清除恶意软件时还是弹出随机数字命名的EXE。。。EXE在LOCALSETTING/TEMP下面。。。

驱动程序
[Agere Systems Soft Modem / AgereSoftModem][Running/Manual Start]
  <System32\DRIVERS\AGRSM.sys><Agere Systems>
[Service for WDM 3D Audio Driver / ALCXSENS][Running/Manual Start]
  <system32\drivers\ALCXSENS.SYS><Sensaura Ltd>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[AVG Anti-Spyware Driver / AVG Anti-Spyware Driver][Running/Disabled]
  <\??\D:\反病毒\AVG Anti-Spyware 7.5\guard.sys><N/A>
[AVG Anti-Spyware Clean Driver / AvgAsCln][Running/Disabled]
  <System32\DRIVERS\AvgAsCln.sys><N/A>
[black / black][Running/Disabled]
  <System32\drivers\BlackDrv.sys><Internet Security Systems, Inc.>
[ialm / ialm][Running/Manual Start]
  <System32\DRIVERS\ialmnt5.sys><Intel Corporation>
[IEProtec / IEProtect][Stopped/Boot Start]
  <\SystemRoot\System32\DRIVERS\IEProtect.sys><N/A>
[kl1 / kl1][Running/Boot Start]
  <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
[klif / klif][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[NetGroup Packet Filter Driver / NPF][Running/Manual Start]
  <system32\drivers\npf.sys><CACE Technologies>
[npkcrypt / npkcrypt][Running/Auto Start]
  <\??\C:\Program Files\Tencent\QQ\npkcrypt.sys><INCA Internet Co., Ltd.>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[RapDrv / RapDrv][Running/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\RapDrv.sys><Internet Security Systems, Inc.>
[RapFile / RapFile][Running/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\RapFile.sys><Internet Security Systems, Inc.>
[RapNet / RapNet][Running/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\RapNet.sys><Internet Security Systems, Inc.>
[Realtek RTL8139/810x/8169/8110 all in one NDIS NT Driver / RTL8023][Running/Manual Start]
  <System32\DRIVERS\Rtlnic51.sys><Realtek Semiconductor Corporation>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
  <System32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><N/A>
[Intel(R) PRO/Wireless 7100 Adapter 驱动程序 / w70n51][Stopped/Manual Start]
  <System32\DRIVERS\w70n51.sys><Intel? Corporation>
[Intel(R) Graphics Platform (SoftBIOS) Driver / {6080A529-897E-4629-A488-ABA0C29B635E}][Stopped/Manual Start]
  <system32\drivers\ialmsbw.sys><Intel Corporation>
[Intel(R) Graphics Chipset (KCH) Driver / {D31A0762-0CEB-444e-ACFF-B049A1F6FE91}][Stopped/Manual Start]
  <system32\drivers\ialmkchw.sys><Intel Corporation>
[AIM 3.0 Part 01 Codec Driver CH-7009-A/CH-7011 / {E2B953A6-195A-44F9-9BA3-3D5F4E32BB55}][Stopped/Manual Start]
  <system32\drivers\wA301a.sys><Intel Corporation>
gototop
 

楼上的
进行扫描SRENG日志前
将临时文件夹内容清空..
gototop
 

引用:
【桃子CiCi的贴子】楼上的
进行扫描SRENG日志前
将临时文件夹内容清空..
………………



呃...什么意思??

TEMP下一直都空的...那个EXE是在清除的时候自动生成...然后消失的...

我一直感觉见鬼了...平时中毒什么的总能找到文件...最不济也知道可疑进程...

现在...那出毛病了我都不清楚...哭了...
gototop
 

呵呵!!!

还哭????

我都不知道!!!!!!

也等看呢。
gototop
 

我晕
那看来真的是见鬼了
给你顶一下
等别人来看看吧
gototop
 

好歹也帮人手杀病毒木马无数...

前两天中次ONLINEGAMES什么的...全感染了...重装...

前几天中次威近...全感染了...AVG等于把我盘格遍地杀...重装...

这次莫名其妙中个没影子的东西...

我干脆买块豆腐撞死算了...
gototop
 

天哪...360耍我么...

刚打开360的时候...更新...然后查恶意软件查不到东西了...

不过...网页照弹...广告照旧...

我真是囧了....

360和卡卡的浏览器反劫持不管用...HOST又正常...呃...这个世界太奇妙了....疯了...
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT