瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】本菜鸟吐血求助,5460上不去了。

1   1  /  1  页   跳转

【求助】本菜鸟吐血求助,5460上不去了。

【求助】本菜鸟吐血求助,5460上不去了。

HijackThis@Qoo的扫描日志  V1.97.7
Scan saved at 8:22:43, on 2005-7-27
Platform: Windows XP  (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
c:\program files\rising\rfw\RfwMain.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\3721\assistse.exe
C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
C:\PROGRA~1\RISING\RAV\RAVMON.EXE
C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\ctfmon.exe
C:\PROGRAM FILES\RISING\RAV\RavStub.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\zh-cn\msnappau.exe
C:\PROGRA~1\RISING\RAV\RsAgent.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Downloads\hijackthis1.97_qoo\HijackThis.exe

O1 - Hosts: 218.5.76.51 www.tt900.com
O1 - Hosts: 218.5.76.51 tt900.com
O1 - Hosts: 218.5.76.51 www.zhao123.com
O1 - Hosts: 218.5.76.51 zhao123.com
O1 - Hosts: 218.5.76.51 www.4399.com
O1 - Hosts: 218.5.76.51 4399.com
O1 - Hosts: 218.5.76.51 www.chinagames.net
O1 - Hosts: 218.5.76.51 chinagames.net
O1 - Hosts: 218.5.76.51 www.tiexue.net
O1 - Hosts: 218.5.76.51 tiexue.net
O1 - Hosts: 218.5.76.51 www.qq163.com
O1 - Hosts: 218.5.76.51 qq163.com
O1 - Hosts: 218.5.76.51 www.flashmi.net
O1 - Hosts: 218.5.76.51 flashmi.net
O1 - Hosts: 218.5.76.51 www.chinamp3.com
O1 - Hosts: 218.5.76.51 chinamp3.com
O1 - Hosts: 218.5.76.51 www.pg168.com
O1 - Hosts: 218.5.76.51 pg168.com
O1 - Hosts: 218.5.76.51 www.yymp3.com
O1 - Hosts: 218.5.76.51 yymp3.com
O1 - Hosts: 218.5.76.51 www.yy138.com
O1 - Hosts: 218.5.76.51 yy138.com
O1 - Hosts: 218.5.76.51 www.dj99.com
O1 - Hosts: 218.5.76.51 dj99.com
O1 - Hosts: 218.5.76.51 www.sogua.com
O1 - Hosts: 218.5.76.51 sogua.com
O1 - Hosts: 218.5.76.51 www.snsn.net
O1 - Hosts: 218.5.76.51 snsn.net
O1 - Hosts: 218.5.76.51 www.flash8.net
O1 - Hosts: 218.5.76.51 flash8.net
O1 - Hosts: 218.5.76.51 www.mop.com
O1 - Hosts: 218.5.76.51 mop.com
O1 - Hosts: 218.5.76.51 www.tianyaclub.com
O1 - Hosts: 218.5.76.51 tianyaclub.com
O1 - Hosts: 218.5.76.51 www.xici.net
O1 - Hosts: 218.5.76.51 xici.net
O1 - Hosts: 218.5.76.51 www.ucanlove.com
O1 - Hosts: 218.5.76.51 ucanlove.com
O1 - Hosts: 218.5.76.51 www.cmfu.com
O1 - Hosts: 218.5.76.51 cmfu.com
O1 - Hosts: 218.5.76.51 www.21red.net
O1 - Hosts: 218.5.76.51 21red.net
O1 - Hosts: 218.5.76.51 www.pconline.com.cn
O1 - Hosts: 218.5.76.51 pconline.com.cn
O1 - Hosts: 218.5.76.51 www.donews.com
O1 - Hosts: 218.5.76.51 donews.com
O1 - Hosts: 218.5.76.51 www.pcauto.com.cn
O1 - Hosts: 218.5.76.51 pcauto.com.cn
O1 - Hosts: 218.5.76.51 www.265.com
O1 - Hosts: 218.5.76.51 265.com
O1 - Hosts: 218.5.76.51 www.wo99.com
O1 - Hosts: 218.5.76.51 wo99.com
O1 - Hosts: 218.5.76.51 www.familydoctor.com.cn
O1 - Hosts: 218.5.76.51 familydoctor.com.cn
O1 - Hosts: 218.5.76.51 www.flashempire.com
O1 - Hosts: 218.5.76.51 flashempire.com
O1 - Hosts: 218.5.76.51 www.showgood.tv
O1 - Hosts: 218.5.76.51 showgood.tv
O1 - Hosts: 218.5.76.51 www.flashfan.net
O1 - Hosts: 218.5.76.51 flashfan.net
O1 - Hosts: 218.5.76.51 www.long21.net
O1 - Hosts: 218.5.76.51 long21.net
O1 - Hosts: 218.5.76.51 www.sowww.com
O1 - Hosts: 218.5.76.51 sowww.com
O1 - Hosts: 218.5.76.51 www.flashhome.net
O1 - Hosts: 218.5.76.51 flashhome.net
O1 - Hosts: 218.5.76.51 www.cnflash.net
O1 - Hosts: 218.5.76.51 cnflash.net
O1 - Hosts: 218.5.76.51 www.flashsky.com
O1 - Hosts: 218.5.76.51 flashsky.com
O1 - Hosts: 218.5.76.51 www.hunansky.com
O1 - Hosts: 218.5.76.51 hunansky.com
O1 - Hosts: 218.5.76.51 www.52flash.net
O1 - Hosts: 218.5.76.51 52flash.net
O1 - Hosts: 218.5.76.51 www.flashh.com
O1 - Hosts: 218.5.76.51 flashh.com
O1 - Hosts: 218.5.76.51 www.flashsun.com
O1 - Hosts: 218.5.76.51 flashsun.com
O1 - Hosts: 218.5.76.51 www.7k7k.com
O1 - Hosts: 218.5.76.51 7k7k.com
O1 - Hosts: 218.5.76.51 www.xuanxuan.com
O1 - Hosts: 218.5.76.51 xuanxuan.com
O1 - Hosts: 218.5.76.51 www.flash88.net
O1 - Hosts: 218.5.76.51 flash88.net
O1 - Hosts: 218.5.76.51 www.91flash.com
O1 - Hosts: 218.5.76.51 91flash.com
O1 - Hosts: 218.5.76.51 www.doingflash.com
O1 - Hosts: 218.5.76.51 doingflash.com
O1 - Hosts: 218.5.76.51 www.5see.com
O1 - Hosts: 218.5.76.51 5see.com
O1 - Hosts: 218.5.76.51 www.skyhits.com
O1 - Hosts: 218.5.76.51 skyhits.com
O1 - Hosts: 218.5.76.51 www.ting78.com
O1 - Hosts: 218.5.76.51 ting78.com
O1 - Hosts: 218.5.76.51 www.91.com
O1 - Hosts: 218.5.76.51 91.com
O1 - Hosts: 218.5.76.51 www.flashchina.net
O1 - Hosts: 218.5.76.51 flashchina.net
O1 - Hosts: 218.5.76.51 www.flash8.com.cn
O1 - Hosts: 218.5.76.51 flash8.com.cn
O1 - Hosts: 218.5.76.51 www.f130.net
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\
O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: AssistII - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\PROGRA~1\3721\Assist\asbar.dll
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\zh-cn\msntb.dll
O2 - BHO: IE - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - C:\WINDOWS\DOWNLO~1\CnsHook.dll
O3 - Toolbar: ????? - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O3 - Toolbar: ????? - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\PROGRA~1\3721\Assist\asbar.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\zh-cn\msntb.dll
O3 - Toolbar: ????? - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\System32\KakaTool.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [TkBellExe] rem "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NMGameX_AutoRun] rem C:\WINDOWS\System32\Rundll32.exe NMGameX.dll,LiveProcess /aa
O4 - HKLM\..\Run: [CnsMin] Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\Run: [assistse] "C:\PROGRA~1\3721\assistse.exe"
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavTimer] C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [msnappau] rem "C:\Program Files\MSN Apps\Updater\01.02.3000.1001\zh-cn\msnappau.exe"
O4 - HKLM\..\Run: [BigDogPath] rem C:\WINDOWS\VM_STI.EXE USB PC Camera 301P
O4 - HKLM\..\Run: [RavMon] C:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKLM\..\Run: [YDTMain.exe] rem C:\PROGRA~1\YDT\YDTMain.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] rem "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Startup: ntuser.dat
O4 - Startup: ntuser.dat.LOG
O4 - Startup: ntuser.ini
O8 - Extra context menu item: !搜一搜 - res://C:\WINDOWS\DOWNLO~1\CnsMinEx.dll/1003
O8 - Extra context menu item: 使用网际快车下载 - C:\PROGRA~1\FlashGet\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - C:\PROGRA~1\FlashGet\jc_all.htm
O8 - Extra context menu item: 导出当前页到超星阅览器(&A) - D:\D\SSREADER36\History\SSREADER36\ss_all.htm
O8 - Extra context menu item: 导出选中部分到超星阅览器(&S) - D:\D\SSREADER36\History\SSREADER36\ss_select.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\
O8 - Extra context menu item: 添加到QQ表情 - D:\
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: QQ (HKLM)
O9 - Extra button: FlashGet (HKLM)
O9 - Extra 'Tools' menuitem: &FlashGet (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O11 - Options group: [!CNS] 
O16 - DPF: {00000162-9980-0010-8000-00AA00389B71} - http://download.microsoft.com/download/0/B/B/0BB06A5C-8611-4840-86B3-54DDDD0344B9/wma9dmo.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4454E1C3-46C9-4FAD-8503-3CB720EE34C0}: NameServer = 202.98.0.68,202.98.5.68



以上是我用HijackThis扫描的,我的机器不知道从哪天开始就上不去同学录了,一登录就会自动跳到这个恶心的成人电影网站。希望高手们帮帮我。谢谢
最后编辑2005-07-27 08:43:53
分享到:
gototop
 

【回复“我是四海”的帖子】

您好,请修复以下项:

所有01项

O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\

如问题仍存在请用1.99.1版的把日志再扫描贴上来.
gototop
 

【回复“花落花又开”的帖子】万分感谢。现在已经好使了!高手就是高手V
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT