对了,把上半部分也贴上,请老大们全面分析一 下把!帮帮我!
Logfile of HijackThis v1.99.1
Scan saved at 3:31:06, on 2005-8-9
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
E:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
E:\PROGRAM FILES\RISING\RAV\Ravmond.exe
E:\PROGRAM FILES\RISING\RAV\RavStub.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Rising\Rfw\RfwMain.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\rundll32.exe
E:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
E:\PROGRA~1\RISING\RAV\RAVMON.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Tencent\qq\QQ.exe
C:\Program Files\Tencent\qq\TIMPlatform.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Winamp\Winamp.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\zzz\LOCALS~1\Temp\Rar$EX11.234\HijackThis.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,"C:\Program Files\HFEE\SVOHOST.EXE" un userinit.exe
O1 - Hosts: 61.152.169.139 www.99bb.com
O1 - Hosts: 61.152.169.139 99bb.com
O1 - Hosts: 61.152.169.139 www.zdao.com
O1 - Hosts: 61.152.169.139 zdao.com
O1 - Hosts: 61.152.169.139 www.aisex.com
O1 - Hosts: 61.152.169.139 aisex.com
O1 - Hosts: 61.152.169.139 www.qq190.com
O1 - Hosts: 61.152.169.139 qq190.com
O1 - Hosts: 61.152.169.139 www.wanmm.com
O1 - Hosts: 61.152.169.139 wanmm.com
O1 - Hosts: 61.152.169.139 www.qq163.com
O1 - Hosts: 61.152.169.139 qq163.com
O1 - Hosts: 61.152.169.139 www.sex141.com
O1 - Hosts: 61.152.169.139 sex141.com
O1 - Hosts: 61.152.169.139 www.my990.com
O1 - Hosts: 61.152.169.139 my990.com
O1 - Hosts: 61.152.169.139 ad.my990.com
O1 - Hosts: 61.152.169.139 www.ttjj.com
O1 - Hosts: 61.152.169.139 ttjj.com
O1 - Hosts: 61.152.169.139 www.7t7t.com
O1 - Hosts: 61.152.169.139 7t7t.com
O1 - Hosts: 61.152.169.139 www.123987.com
O1 - Hosts: 61.152.169.139 www.123987.com/7sese/
O1 - Hosts: 61.152.169.139 www.oursm.com
O1 - Hosts: 61.152.169.139 oursm.com
O1 - Hosts: 61.152.169.139 www.palacemoon.com
O1 - Hosts: 61.152.169.139 palacemoon.com
O1 - Hosts: 61.152.169.139 18dy.com
O1 - Hosts: 61.152.169.139 www.18dy.com
O1 - Hosts: 61.152.169.139 49m.cn
O1 - Hosts: 61.152.169.139 www.49m.cn
O1 - Hosts: 61.152.169.139 123.xuanji8.com
O1 - Hosts: 61.152.169.139 ohkk.xuanji8.com
O1 - Hosts: 61.152.169.139 123.52lhc.com
O1 - Hosts: 61.152.169.139 7sese.com61.152.169.139 www.7sese.com
O1 - Hosts: 61.152.169.139 www.hao119.com
O1 - Hosts: 61.152.169.139 7sese.com
O1 - Hosts: 61.152.169.139 www.7sese.com
O1 - Hosts: 61.152.169.139 www.hao358.com
O1 - Hosts: 61.152.169.139 www.ee456.com
O1 - Hosts: 61.152.169.139 video.12san.com
O1 - Hosts: 61.152.169.139 www.eachz.com
O1 - Hosts: 61.152.169.139 www.avl.cn
O1 - Hosts: 61.152.169.139 avl.cn
O1 - Hosts: 61.152.169.139 www.98756.net
O1 - Hosts: 61.152.169.139 7sese.org
O1 - Hosts: 61.152.169.139 www.7sese.org
O1 - Hosts: 61.152.169.139 kanvcd.com
O1 - Hosts: 61.152.169.139 www.kanvcd.com
O1 - Hosts: 61.152.169.139 cn.movies.yahoo
O1 - Hosts: 61.152.169.139 www.zfvod.com
O1 - Hosts: 61.152.169.139 zfvod.com
O1 - Hosts: 61.152.169.139 media.netandtv.com
O1 - Hosts: 61.152.169.139 p2p.55660.com
O1 - Hosts: 61.152.169.139 media.netandtv.com
O1 - Hosts: 61.152.169.139 www.sol.sohu.com
O1 - Hosts: 61.152.169.139 www.sexhu.cn
O1 - Hosts: 61.152.169.139 sexhu.cn
O1 - Hosts: 61.152.169.139 www.blogchina.com
O1 - Hosts: 61.152.169.139 5blogchina.com
O1 - Hosts: 61.152.169.139 www.5806.net
O1 - Hosts: 61.152.169.139 zhao999.com
O1 - Hosts: 61.152.169.139 www.zhao999.com
O1 - Hosts: 61.152.169.139 movie.xmfdc.net
O1 - Hosts: 61.152.169.139 www.movie110.com
O1 - Hosts: 61.152.169.139 movie110.com
O1 - Hosts: 61.152.169.139 www.yesky.com
O1 - Hosts: 61.152.169.139 yesky.com
O1 - Hosts: 61.152.169.139 www.178ya.com
O1 - Hosts: 61.152.169.139 178ya.com
O1 - Hosts: 61.152.169.139 www.3668.cn
O1 - Hosts: 61.152.169.139 3668.cn
O1 - Hosts: 61.152.169.139 www.hao45.com
O1 - Hosts: 61.152.169.139 hao45.com
O1 - Hosts: 61.152.169.139 www.5sese.com
O1 - Hosts: 61.152.169.139 5sese.com
O1 - Hosts: 61.152.169.139 woyy.51.net
O1 - Hosts: 61.152.169.139 3668.cn
O1 - Hosts: 61.152.169.139 www.3668.cn
O1 - Hosts: 61.152.169.139 tu68.com
O1 - Hosts: 61.152.169.139 www.tu68.com
O1 - Hosts: 61.152.169.139 avxiu.com
O1 - Hosts: 61.152.169.139 www.avxiu.com
O1 - Hosts: 61.152.169.139 18dy.net
O1 - Hosts: 61.152.169.139 www.18dy.net
O1 - Hosts: 61.152.169.139 avxiu.com
O1 - Hosts: 61.152.169.139 www.avxiu.com
O1 - Hosts: 61.152.169.139 hk.18dy.com
O1 - Hosts: 61.152.169.139 dianying.gghggh.com
O1 - Hosts: 61.152.169.139 lady3.****net
O1 - Hosts: 61.152.169.139 kan56.zj.com
O1 - Hosts: 61.152.169.139 88848.net
O1 - Hosts: 61.152.169.139 www.88848.net
O1 - Hosts: 61.152.169.139 xonline.org
O1 - Hosts: 61.152.169.139 www.xonline.org
O1 - Hosts: 61.152.169.139 dy.nuoy.com
O1 - Hosts: 61.152.169.139 www.korea-av.com
O1 - Hosts: 61.152.169.139 korea-av.com
O1 - Hosts: 61.152.169.139 movie.bucuo.org
O1 - Hosts: 61.152.169.139 mv888.com
O1 - Hosts: 61.152.169.139 www.mv888.com
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\System32\xunleibho_v5.dll