瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 为什么我电脑上的病毒杀不干净呢?

1234   2  /  4  页   跳转

[求助] 为什么我电脑上的病毒杀不干净呢?

回复 2F 帅哥阿福 的帖子

[D:\Program Files\Thunder Network\Thunder\Program\backend_agent.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 27]
    [D:\Program Files\Thunder Network\Thunder\Program\zlib1.dll]  [, 1.2.3]
    [D:\Program Files\Thunder Network\Thunder\Program\ptl.dll]  [Thunder Networking Technologies,LTD, 3, 2, 2, 55]
    [D:\Program Files\Thunder Network\Thunder\Program\dl_peer_id.dll]  [Thunder Networking Technologies,LTD, 3, 1, 2, 4]
    [D:\Program Files\Thunder Network\Thunder\Program\xl_stat.dll]  [, 1, 0, 2, 7]
    [D:\Program Files\Thunder Network\Thunder\Program\p2p_upload.dll]  [Thunder Networking Technologies,LTD, 1,1,2,13]
    [D:\Program Files\Thunder Network\Thunder\Program\p2p.dll]  [Thunder Networking Technologies,LTD, 1,1,2,48]
    [D:\Program Files\Thunder Network\Thunder\Program\fs.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 17]
    [D:\Program Files\Thunder Network\Thunder\Program\xldc.dll]  [Thunder Networking Technologies,LTD, 4, 0, 2, 28]
    [D:\Program Files\Thunder Network\Thunder\Program\stream.dll]  [ShenZhen Thunder Networking Technologies,Ltd., 2, 1, 2, 1046]
    [D:\Program Files\Thunder Network\Thunder\Program\p2sp.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 59]
    [D:\Program Files\Thunder Network\Thunder\Program\down_dispatcher.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 42]
    [D:\Program Files\Thunder Network\Thunder\Program\p2p_local_res.dll]  [Thunder Networking Technologies,LTD, 1,1,2,18]
    [D:\Program Files\Thunder Network\Thunder\Program\p2sp_pd.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 5]
    [D:\Program Files\Thunder Network\Thunder\Program\emule.dll]  [, 1, 1, 2, 48]
    [D:\Program Files\Thunder Network\Thunder\Program\al.dll]  [Thunder Networking Technologies,LTD, 1,1,2,31]
    [D:\Program Files\Thunder Network\Thunder\Program\media_data.dll]  [, 1, 0, 2, 7]
    [D:\Program Files\Thunder Network\Thunder\Program\sl.dll]  [Thunder Networking Technologies,LTD, 1.0.2.2]
    [D:\Program Files\Thunder Network\Thunder\Program\iTargetAD.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 35]
    [D:\Program Files\Thunder Network\Thunder\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 1, 1, 12]
    [D:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DownAndPlay.dll]  [, 1, 0, 12, 30]
    [C:\Windows\system32\Macromed\Flash\Flash9f.ocx]  [Adobe Systems, Inc., 9,0,124,0]
    [D:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll]  [ShenZhen Thunder Networking Technologies,LTD, 3, 4, 12, 125]
    [D:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed22.dll]  [ShenZhen Thunder Networking Technologies,LTD, 3, 4, 12, 125]
    [D:\Program Files\Thunder Network\Thunder\Components\InMedia\XLIPC.DLL]  [ShenZhen Thunder Networking Technologies,LTD, 1, 0, 0, 2]
    [D:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll]  [Thunder Networking Technologies,LTD, 2, 2, 5, 70]
    [D:\Program Files\Thunder Network\Thunder\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 2, 6, 0, 104]
    [D:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 17, 0, 67]
    [D:\Program Files\Thunder Network\Thunder\Program\MSVCIRT.dll]  [Microsoft Corporation, 7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\Program Files\Thunder Network\Thunder\Program\XLNetU.Dll]  [Thunder Networking Technologies,LTD, 1, 5, 1, 24]
    [D:\Program Files\Thunder Network\Thunder\Program\imdt.dll]  [Thunder Networking Technologies,LTD, 1.2.0.21]
    [D:\瑞星2009\Rising\Rav\RavScrCh.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.70]
    [D:\Program Files\Thunder Network\Thunder\Components\Security\ThunderSafe.dll]  [Xunlei Networking Technologies,LTD, 2, 1, 8, 106]
    [D:\Program Files\Thunder Network\Thunder\Components\Security\ConfigManager.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 0, 1]
    [D:\Program Files\Thunder Network\Thunder\Components\Security\SafeManager.dll]  [Xunlei Networking Technologies,LTD, 1, 0, 5, 20]
    [D:\Program Files\Thunder Network\Thunder\Components\Security\SafeStatistic.dll]  [Xunlei Networking Technologies,LTD, 1, 0, 0, 1]
    [D:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\XLSafeHost.dll]  [深圳市迅雷网络技术有限公司, 1, 2, 19, 106]
    [D:\Program Files\Thunder Network\Thunder\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 1, 7, 25]
    [D:\Program Files\Thunder Network\Thunder\Program\LiveUpdate.dll]  [Thunder Networking Technologies,LTD, 1, 2, 4, 26]
    [D:\Program Files\Thunder Network\Thunder\Components\XLSoftBase\DrThunderHost.dll]  [深圳市迅雷网络技术有限公司, 1.0.0.17]
    [D:\Program Files\Thunder Network\Thunder\Components\XLSoftBase\DrKernel.dll]  [深圳市迅雷网络技术有限公司, 1.0.0.8]
    [D:\Program Files\Thunder Network\Thunder\Components\XLSoftBase\DrSoftIdentifier.dll]  [深圳市迅雷网络技术有限公司, 1.0.0.10]
    [D:\Program Files\Thunder Network\Thunder\Components\XLSoftBase\DrUpdate.dll]  [深圳市迅雷网络技术有限公司, 1.1.0.8]
    [D:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\AutoHelp.dll]  [Beijing Rising Information Technology Co., Ltd., 6.0.0.9]
    [D:\Program Files\Thunder Network\Thunder\Plugins\GouGouTop\GouGouTop.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 5]
    [D:\Program Files\Thunder Network\Thunder\Plugins\KanKanTop\KanKanTop.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 4]
    [D:\Program Files\Thunder Network\Thunder\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 26]
    [D:\Program Files\Thunder Network\Thunder\Components\Tips\TipsClient.dll]  [Thunder Networking Technologies,LTD, 3, 0, 2, 131]
    [D:\Program Files\Thunder Network\Thunder\Components\Tips\XLSkin.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
    [D:\Program Files\Thunder Network\Thunder\Components\VPSHELL\VPSHELL.dll]  [迅雷网络, 4, 0, 0, 38]
    [D:\Program Files\Thunder Network\Thunder\Components\UserExperience\UserExperience.dll]  [Thunder Networking Technologies,LTD, 1, 0, 3, 5]
    [D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsXlCom.dll]  [, 1, 0, 0, 30]
    [D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [D:\Program Files\Thunder Network\Thunder\Components\ResWorker\MediaWorker.dll]  [Thunder Networking Technologies,LTD, 1, 2, 0, 22]
    [D:\Program Files\Thunder Network\Thunder\Components\DownloadStat\DownloadStat.dll]  [Thunder Networking Technologies,LTD, 1, 4, 1, 6]
    [D:\Program Files\Thunder Network\Thunder\Program\bd.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 20]
    [D:\Program Files\Thunder Network\Thunder\Program\xldcsubtask.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 13]
    [D:\Program Files\Thunder Network\Thunder\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
    [D:\Program Files\Thunder Network\Thunder\Program\bt_download.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 28]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
    [C:\Windows\system32\nvd3dum.dll]  [NVIDIA Corporation, 7.15.11.5655]
    [D:\Program Files\Thunder Network\Thunder\Program\emule_id.dll]  [, 1, 0, 2, 12]
    [D:\Program Files\Thunder Network\Thunder\Components\Tips\XLIPC.DLL]  [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
    [D:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin19.dll]  [ShenZhen Thunder Networking Technologies,LTD, 3, 1, 7, 82]
[PID: 2912 / SYSTEM][C:\Windows\system32\aestsrv.exe]  [Andrea Electronics Corporation, 1.0.32.2]
[PID: 2984 / NETWORK SERVICE][C:\Windows\system32\svchost.exe]  [(Verified) Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 3228 / SYSTEM][D:\瑞星2009\Rising\Rav\ScanFrm.exe]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.11]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [D:\瑞星2009\Rising\Rav\combase.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 11]
    [D:\瑞星2009\Rising\Rav\moncomm.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 12]
    [D:\瑞星2009\Rising\Rav\scansrvp.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.12]
    [D:\瑞星2009\Rising\Rav\proccomm.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 46]
    [D:\瑞星2009\Rising\Rav\ScanSrv.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.10]
    [D:\瑞星2009\Rising\Rav\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]
    [D:\瑞星2009\Rising\Rav\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]
    [D:\瑞星2009\Rising\Rav\ScanRavT.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.25]
    [D:\瑞星2009\Rising\Rav\ScanBT.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.46]
    [D:\瑞星2009\Rising\Rav\ScanStub.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.9]
    [D:\瑞星2009\Rising\Rav\ScanAdd.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.17]
    [D:\瑞星2009\Rising\Rav\RsLog.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.36]
    [D:\瑞星2009\Rising\Rav\RSAPPMGR.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]
    [D:\瑞星2009\Rising\Rav\CfgDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.19]
    [D:\瑞星2009\Rising\Rav\Scanner.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.38]
    [D:\瑞星2009\Rising\Rav\recomp.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\refs.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 3]
    [D:\瑞星2009\Rising\Rav\viruslib.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [D:\瑞星2009\Rising\Rav\relibldr.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [D:\瑞星2009\Rising\Rav\SysMail.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.5]
    [D:\瑞星2009\Rising\Rav\mvengine.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 3]
    [D:\瑞星2009\Rising\Rav\posttrt.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 2]
    [D:\瑞星2009\Rising\Rav\ffr.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 3]
    [D:\瑞星2009\Rising\Rav\nvfile.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 3]
    [D:\瑞星2009\Rising\Rav\scanexec.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [D:\瑞星2009\Rising\Rav\unexe.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 1]
    [D:\瑞星2009\Rising\Rav\scanex.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 36]
    [D:\瑞星2009\Rising\Rav\extole.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 1]
    [D:\瑞星2009\Rising\Rav\scansct.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 3]
    [D:\瑞星2009\Rising\Rav\extfile.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 13]
    [D:\瑞星2009\Rising\Rav\pearc.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\scanpe.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 12]
    [D:\瑞星2009\Rising\Rav\ur000.dat]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 13]
    [D:\瑞星2009\Rising\Rav\urutils.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\extmail.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [D:\瑞星2009\Rising\Rav\revm.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\scriptci.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 1]
    [D:\瑞星2009\Rising\Rav\uroutine.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\ur001.dat]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 7]
    [D:\瑞星2009\Rising\Rav\scanmac.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
[PID: 3236 / SYSTEM][C:\Windows\system32\STacSV.exe]  [IDT, Inc., 1.0.5614.0  nd654 cp1]
gototop
 

回复 1F 小新1234567 的帖子

日志放入附件
(点击我这贴右下角的“引用”或最右下角的那个较大的“回复”然后就应该知道怎么发了。)
gototop
 

回复 2F 帅哥阿福 的帖子

[C:\Windows\system32\stapi32.dll]  [IDT, Inc., 1.0.5614.0  nd654 cp1]
[PID: 3448 / LOCAL SERVICE][C:\Windows\system32\svchost.exe]  [(Verified) Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 3504 / SYSTEM][C:\Windows\System32\svchost.exe]  [(Verified) Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 3588 / SYSTEM][C:\Windows\system32\SearchIndexer.exe]  [(Verified) Microsoft Corporation, 7.0.6001.16503 (longhorn(wmbla).080526-2159)]
[PID: 3628 / SYSTEM][C:\Windows\system32\DRIVERS\xaudio.exe]  [Conexant Systems, Inc., 1.00.15.00]
[PID: 3672 / dell][D:\Program Files\Tencent\QQ\QQ.exe]  [TENCENT, 8,0,714,1791]
    [D:\Program Files\Tencent\QQ\QQHelperDll.dll]  [TENCENT, 8,0,714,1791]
    [D:\Program Files\Tencent\QQ\BasicCtrlDll.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\MSIMG32.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\QQBaseClassInDll.dll]  [TENCENT, 8,0,714,1791]
    [C:\Windows\system32\GOOGLEPINYIN.IME]  [Google Inc., ]
    [C:\Program Files\彩虹QQ\CaiHong.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\QQAPI.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\LoginCtrl.dll]  [TENCENT, 8,0,714,1791]
    [D:\Program Files\Tencent\QQ\LoginCtrlRes.dll]  [TENCENT, 8,0,714,1791]
    [D:\Program Files\Tencent\QQ\QQRes.dll]  [TENCENT, 8,0,714,1791]
    [D:\Program Files\Tencent\QQ\QQMainFrame.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.3352 (xpsp_sp2_qfe.080415-1302)]
    [D:\Program Files\Tencent\QQ\QQPlugin.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\UnReadMsgMgr.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\CQQApplication.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [D:\Program Files\Tencent\QQ\NewSkin.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\MailSummary.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQSpace.dll]  [TENCENT, 8,0,713,1791]
    [C:\Program Files\彩虹QQ\Reporter.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\QQKnowledgeSearch.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQSettingCtrl.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQAllInOne.dll]  [TENCENT, 8,0,714,1791]
    [D:\Program Files\Tencent\QQ\SCCore.dll]  [TENCENT, 1, 6, 0, 2]
    [D:\Program Files\Tencent\QQ\CameraDll.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\OEMApplication.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQGroupMng.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQPet.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\LongConnection.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\UserDefinedHead.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQConfigPlugin.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QRingMng.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\QQCustomFace.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\QQAvatar.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\PhoneAPI.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [D:\Program Files\Tencent\QQ\BQQApplication.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\CommercesMng.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\PersonalDesktop.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
    [D:\Program Files\Tencent\QQ\ImageOle.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQLiveQMng.dll]  [TENCENT, 8,0,713,1791]
    [D:\瑞星2009\Rising\Rav\RavScrCh.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.70]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [D:\Program Files\Tencent\QQ\QQSceneMng.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\GroupConnection.dll]  [TENCENT, 8,0,713,1791]
    [D:\Program Files\Tencent\QQ\QQSysMsgMng.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\AddrSearch.dll]  [Tencent, 2, 3, 10, 12]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
    [D:\Program Files\Tencent\QQ\QQMagicFace.dll]  [TENCENT, 8,0,713,1791]
    [D:\游戏\QQGAME\GamePublic.dll]  [N/A, ]
    [D:\游戏\QQGAME\Common\Utility.dll]  [N/A, ]
    [D:\游戏\QQGAME\Factory.dll]  [N/A, ]
    [D:\游戏\QQGAME\Logic\ComAsyn.dll]  [N/A, ]
    [D:\游戏\QQGAME\ProtHand\QQProt.dll]  [N/A, ]
    [D:\游戏\QQGAME\Socket\NetMod.dll]  [N/A, ]
    [D:\游戏\QQGAME\ProtHand\BaseProt.dll]  [N/A, ]
    [D:\游戏\QQGAME\ProtHand\ScatProt.dll]  [N/A, ]
    [D:\游戏\QQGAME\Common\Compress.dll]  [N/A, ]
[PID: 2828 / dell][D:\Program Files\Tencent\QQ\TXPlatform.exe]  [Tencent, 1, 0, 170, 0]
[PID: 2656 / dell][C:\Windows\system32\conime.exe]  [(Verified) Microsoft Corporation, 6.0.6001.18000 (longhorn_rtm.080118-1840)]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
[PID: 4332 / dell][D:\瑞星2009\Rising\Rav\RsMain.exe]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [D:\瑞星2009\Rising\Rav\rspalmgr.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.29]
    [D:\瑞星2009\Rising\Rav\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]
    [D:\瑞星2009\Rising\Rav\RSXML.DLL]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 2]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [D:\瑞星2009\Rising\Rav\RsGuiLib.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 73]
    [C:\Windows\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [D:\瑞星2009\Rising\Rav\rslang.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 28]
    [D:\瑞星2009\Rising\Rav\ravbmenu.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 16]
    [D:\瑞星2009\Rising\Rav\rsconf.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\rspalvd.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.24]
    [D:\瑞星2009\Rising\Rav\ravppops.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 15]
    [D:\瑞星2009\Rising\Rav\ravbintl.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 28]
    [D:\瑞星2009\Rising\Rav\ravpsafe.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.25]
    [D:\瑞星2009\Rising\Rav\MonState.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 7]
    [D:\瑞星2009\Rising\Rav\ScanPrxy.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.17]
    [D:\瑞星2009\Rising\Rav\psafecfg.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.19]
    [D:\瑞星2009\Rising\Rav\RSAPPMGR.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]
    [D:\瑞星2009\Rising\Rav\CfgDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.19]
    [D:\瑞星2009\Rising\Rav\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]
    [D:\瑞星2009\Rising\Rav\ProcComm.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 46]
    [D:\瑞星2009\Rising\Rav\ravxpage.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 86]
    [D:\瑞星2009\Rising\Rav\ravxmons.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 24]
    [D:\瑞星2009\Rising\Rav\ravptool.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.20]
    [D:\瑞星2009\Rising\Rav\log2file.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.10]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
    [D:\瑞星2009\Rising\Rav\PngDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\htmllib.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 1]
    [D:\瑞星2009\Rising\Rav\rsvrinfo.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [D:\瑞星2009\Rising\Rav\recomp.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]
    [D:\瑞星2009\Rising\Rav\refs.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 3]
    [D:\瑞星2009\Rising\Rav\viruslib.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
    [D:\瑞星2009\Rising\Rav\relibldr.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 5]
[PID: 5236 / dell][C:\Program Files\Internet Explorer\IEUser.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
[PID: 3536 / dell][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 7.00.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
    [C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll]  [Google Inc., 6, 1, 1518, 856]
    [C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_6D0D6FD66D664927.dll]  [Google Inc., 6, 1, 1518, 856]
    [C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_zh-CN_27C51813E9BF5574.dll]  [Google Inc., 6, 1, 1518, 856]
    [C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll]  [Google Inc., 5, 1, 1309, 3572]
    [C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll]  [Adobe Systems Incorporated, 8.0.0.2006102200]
    [C:\ProgramData\FlashGetBHO\FlashGetBHO3.dll]  [FlashGet, 2, 5, 0, 1037]
    [C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll]  [Google Inc., 1, 0, 610, 27482]
    [D:\瑞星2009\Rising\Rav\RavScrCh.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.70]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\nvd3dum.dll]  [NVIDIA Corporation, 7.15.11.5655]
    [C:\Windows\system32\Macromed\Flash\Flash9f.ocx]  [Adobe Systems, Inc., 9,0,124,0]
[PID: 4720 / dell][C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe]  [Google Inc., 6, 1, 1518, 856]
    [C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_6D0D6FD66D664927.dll]  [Google Inc., 6, 1, 1518, 856]
    [C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_zh-CN_27C51813E9BF5574.dll]  [Google Inc., 6, 1, 1518, 856]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
[PID: 6596 / SYSTEM][C:\Windows\system32\wbem\wmiprvse.exe]  [(Verified) Microsoft Corporation, 6.0.6001.18226 (vistasp1_gdr.090302-1506)]
[PID: 6568 / dell][C:\Windows\notepad.exe]  [(Verified) Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
[PID: 7400 / dell][D:\杀毒\sreng2\SREngLdr.EXE]  [Smallfrogs Studio, 2.7.1.1261]
[PID: 7784 / dell][D:\杀毒\sreng2\SRE19ff2133.EXE]  [Smallfrogs Studio, 2.7.1.1261]
    [C:\Windows\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.0.0.2093]
    [D:\杀毒\sreng2\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]

==================================
gototop
 

回复 2F 帅哥阿福 的帖子

文件关联
.TXT  Error. [C:\Windows\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["%SystemRoot%\hh.exe" %1]
.HLP  OK. [%SystemRoot%\winhlp32.exe %1]
.INI  Error. [C:\Windows\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. ["%SystemRoot%\System32\WScript.exe" "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
N/A

==================================
进程特权扫描
N/A

==================================
计划任务
[已启用] \\RunAsStdUser Task1516
        D:\瑞星2009\Rising\Rav\RSMAIN.EXE
[已启用] \\SogouImeMgr
        D:\搜狗\SOGOUI~1\400~1.209\PINYIN~1.EXE /S
[已禁用] \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)
        N/A
[已启用] \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)
        N/A
[已启用] \Microsoft\Windows\Bluetooth\UninstallDeviceTask
        BthUdTask.exe $(Arg0)
[已启用] \Microsoft\Windows\CertificateServicesClient\SystemTask
        N/A
[已启用] \Microsoft\Windows\CertificateServicesClient\UserTask
        N/A
[已启用] \Microsoft\Windows\CertificateServicesClient\UserTask-Roam
        N/A
[已启用] \Microsoft\Windows\Customer Experience Improvement Program\Consolidator
        %SystemRoot%\System32\wsqmcons.exe
[已启用] \Microsoft\Windows\Customer Experience Improvement Program\OptinNotification
        %SystemRoot%\System32\wsqmcons.exe -n 0x1C577FA2B69CAD0
[已启用] \Microsoft\Windows\Defrag\ScheduledDefrag
        %windir%\system32\defrag.exe -c -i
[已启用] \Microsoft\Windows\MobilePC\HotStart
        N/A
[已启用] \Microsoft\Windows\MobilePC\TMM
        N/A
[已启用] \Microsoft\Windows\MUI\LPRemove
        %windir%\system32\lpremove.exe
[已启用] \Microsoft\Windows\Multimedia\SystemSoundsService
        N/A
[已启用] \Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
        N/A
[已启用] \Microsoft\Windows\Shell\CrawlStartPages
        N/A
[已启用] \Microsoft\Windows\SystemRestore\SR
        %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
[已启用] \Microsoft\Windows\Tcpip\IpAddressConflict1
        rundll32 ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
[已启用] \Microsoft\Windows\Tcpip\IpAddressConflict2
        rundll32 ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
[已启用] \Microsoft\Windows\UPnP\UPnPHostConfig
        sc.exe config upnphost start= auto
[已启用] \Microsoft\Windows\Windows Error Reporting\QueueReporting
        %windir%\system32\wermgr.exe -queuereporting
[已启用] \Microsoft\Windows\Wired\GatherWiredInfo
        %windir%\system32\gatherWiredInfo.vbs
[已启用] \Microsoft\Windows\Wireless\GatherWirelessInfo
        %windir%\system32\gatherWirelessInfo.vbs

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]
gototop
 

回复:为什么我电脑上的病毒杀不干净呢?

终于完啦。下一步该怎么办呢?
gototop
 

回复 15F 小新1234567 的帖子

日志放入附件
(点击我这贴右下角的“引用”或最右下角的那个较大的“回复”然后就应该知道怎么发了。)
gototop
 

回复 9F 夲號ヱ被ジ盜 的帖子

哪个效率好点呢?
gototop
 

回复:为什么我电脑上的病毒杀不干净呢?

那就自动化的吧。还请您多多指点
gototop
 

回复:为什么我电脑上的病毒杀不干净呢?

打开注册表编辑器,删除HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution 键值。

下载文件批量提取工具提取下面文件
http://bbs.ikaka.com/attachment.aspx?attachmentid=486266
System32\Drivers\aliimz.sys
system32\drivers\BCM42RLY.sys
system32\drivers\tqantisys.sys
C:\Windows\System32\bcmwlrmt.dll


上传病毒样本到可疑文件交流区,地址为:http://bbs.ikaka.com/showforum-20002.aspx
或者直接发送给瑞星的邮件服务中心【病毒样本】地址为:http://mailcenter.rising.com.cn/uploadnew.aspx
╭∩╮(︶︿︶)╭∩╮
gototop
 

回复: 为什么我电脑上的病毒杀不干净呢?

VISTA。。。
没法自动
手动
SRENG启动项目注册表编辑删除以下文件
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{F65BDEC7-4BF3-4512-840F-68B166B6D7AC}><F65BDEC7.dll>  [N/A]
    <{201476D0-2B18-462E-AB9F-3E2B0CC8732B}><201476D0.dll>  [N/A]
    <{4FBFD5A4-5FE8-4444-8BD9-FD0FAFA64F96}><4FBFD5A4.dll>  [N/A]
    <{DA63E650-537C-4042-87BB-9D19D844680B}><DA63E650.dll>  [N/A]
<{56BC86C7-0692-4F94-A2C1-6CF1DBF8096C}><56BC86C7.dll>  [N/A]
<{0306438F-7E67-4DDA-8EF2-C0AD040FEBE0}><0306438F.dll>  [N/A]
  <{704C3595-DB85-40F6-A601-8D6F346907BD}><704C3595.dll>  [N/A]
    <{16BC0F81-410C-41DF-A902-1B04368BA8AE}><16BC0F81.dll>  [N/A] 
<{72B29486-39B6-4241-B234-B57DEF78302F}><72B29486.dll>  [N/A]
    <{91C7DF6D-AEF5-4136-9252-AF030D7A5931}><91C7DF6D.dll>  [N/A]
  <{16AF66EB-93C8-49F9-BB09-B4F87CEDCE46}><16AF66EB.dll>  [N/A]
    <{2EF0D734-21FD-4225-A1A2-BCD296182AAF}><2EF0D734.dll>  [N/A]
    <{F71A67D5-5BBB-47A3-9534-4150FC739257}><F71A67D5.dll>  [N/A]
    <{E1384213-0948-4A60-A9E3-875B191CC2E7}><E1384213.dll>  [N/A]
    <{9CA963CA-107C-4089-B0AB-31380F90D7E3}><9CA963CA.dll>  [N/A]
以下文件用附件工具删除
附件工具运行后打开瑞1星
配合删除:

C:\Windows\system32\webcheck.dll
C:\Windows\system32\chgpldbo.dll
C:\Windows\system32\ajddnpmf.dll
C:\Windows\system32\ikoeoofb.dll
C:\Windows\system32\kbompiff.dll
C:\Windows\system32\caacmddg.dll
C:\Windows\system32\mjjclbia.dll
C:\Windows\system32\mkkeolhj.dll
C:\Windows\system32\ipfnfjlj.dll
C:\Windows\system32\geonmack.dll
C:\Windows\system32\jgdpibfm.dll
C:\Windows\system32\ebdifjff.dll
C:\Windows\system32\ajhgmhod.dll
C:\Windows\system32\cdgfocak.dll
:\Windows\system32\ngbmpind.dll
C:\Windows\system32\lolfegdb.dll
C:\Windows\system32\jagfogci.dll
C:\Windows\system32\hnlloiih.dll
C:\Windows\system32\poojbpbd.dll
C:\Windows\system32\cmgpdnib.dll
C:\Windows\system32\jabbaagm.dll
C:\Windows\System32\bcmwlrmt.dll
D:\Program Files\Tencent\QQ\MSIMG32.dll
D:\Program Files\Tencent\QQ\winsock32.dll
F:\My Music\QvodPlayer\QvodTerminal.exe
F:\新建文件夹\FlashGet\FlashGet3.exe
C:\windows\system32\drivers\BCM42RLY.sys

附件附件:

下载次数:159
文件类型:application/octet-stream
文件大小:
上传时间:2009-5-10 14:26:47
描述:rar

gototop
 
1234   2  /  4  页   跳转
页面顶部
Powered by Discuz!NT