显示清除成功,但每次重新杀毒都会查到,请教高手,帮帮忙啊!
当前运行的进程:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\Program Files\Rising\Rav\CCenter.exe
F:\WINDOWS\System32\svchost.exe
F:\Program Files\Rising\Rav\Ravmond.exe
F:\WINDOWS\system32\spoolsv.exe
F:\Program Files\Rising\Rav\RavStub.exe
F:\WINDOWS\system32\inetsrv\inetinfo.exe
F:\WINDOWS\system32\rundll32.exe
C:\InetPub\TDBIN\MTours\jakarta-tomcat-3.3\bin\TomcatService.exe
F:\WINDOWS\system32\igfxtray.exe
F:\WINDOWS\system32\hkcmd.exe
F:\WINDOWS\SOUNDMAN.EXE
F:\Program Files\QuickTime\qttask.exe
F:\Program Files\iTunes\iTunesHelper.exe
F:\Program Files\D-Tools\daemon.exe
F:\Program Files\Rising\Rav\RavTask.exe
F:\Program Files\Rising\Rav\Ravmon.exe
F:\WINDOWS\system32\ctfmon.exe
F:\Program Files\Messenger\msmsgs.exe
F:\Program Files\Kingsoft\PowerWord 2005\XDICT.EXE
F:\Program Files\iPod\bin\iPodService.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\taskmgr.exe
F:\WINDOWS\system32\wuauclt.exe
F:\Program Files\Internet Explorer\IEXPLORE.EXE
F:\WINDOWS\system32\rundll32.exe
D:\Program Files\Tencent\RTX\rtxc.exe
F:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
F:\XFnew\DBMS\jtservice.exe
F:\Program Files\Internet Explorer\IEXPLORE.EXE
F:\Program Files\Rising\Rav\RsAgent.exe
F:\WINDOWS\msagent\AgentSvr.exe
F:\XFnew\DBMS\dbms.exe
F:\WINDOWS\explorer.exe
F:\Program Files\Rising\Rav\RsLogVw.exe
F:\Program Files\Internet Explorer\iexplore.exe
F:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\MXC3EP65\hijackthisV1.99.1[1].exe
F:\Program Files\HijackThis1991汉化版\HijackThis1991zww.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: MMSAssist - {6671A431-5C3D-463d-A7CF-5587F9B7E191} - F:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
O2 - BHO: std software - {6A512BF7-EC78-4e8d-9841-6C02E8FA9838} - F:\WINDOWS\SYSTEM32\stdup.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - D:\PROGRA~1\FLASHGET\jccatch.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - f:\program files\google\googletoolbar1.dll
O3 - IE工具栏增项: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - IE工具栏增项: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - f:\program files\google\googletoolbar1.dll
O4 - 启动项HKLM\\Run: [IMJPMIG8.1] "F:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 启动项HKLM\\Run: [PHIME2002ASync] F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] F:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [IgfxTray] F:\WINDOWS\system32\igfxtray.exe
O4 - 启动项HKLM\\Run: [HotKeysCmds] F:\WINDOWS\system32\hkcmd.exe
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [QuickTime Task] "F:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - 启动项HKLM\\Run: [iTunesHelper] "F:\Program Files\iTunes\iTunesHelper.exe"
O4 - 启动项HKLM\\Run: [IMSCMig] F:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload
O4 - 启动项HKLM\\Run: [KAVDl] "F:\Program Files\IE修复专家\KAVDL.EXE"
O4 - 启动项HKLM\\Run: [ExFilter] Rundll32.exe "F:\PROGRA~1\CNNIC\Cdn\cdnspie.dll,ExecFilter solo"
O4 - 启动项HKLM\\Run: [DAEMON Tools-1033] "F:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - 启动项HKLM\\Run: [IMSCMIG40W] F:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40W\IMSCMIG.EXE /SetPreload /Log
O4 - 启动项HKLM\\Run: [RavTask] "F:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - 启动项HKLM\\Run: [TrojanScanner] F:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKCU\..\Run: [ctfmon.exe] F:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "F:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: 金山词霸 2005.lnk = F:\Program Files\Kingsoft\PowerWord 2005\XDICT.EXE
O4 - Global Startup: Microsoft Office.lnk = F:\Program Files\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - IE右键菜单中的新增项目: >> 彩信发送 << - res://F:\PROGRA~1\MMSASS~1\MMSASS~1.DLL/mms.htm
O8 - IE右键菜单中的新增项目: Google 搜索(&G) - res://f:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - IE右键菜单中的新增项目: 使用网际快车下载 - D:\Program Files\FlashGet\jc_link.htm
O8 - IE右键菜单中的新增项目: 使用网际快车下载全部链接 - D:\Program Files\FlashGet\jc_all.htm
O8 - IE右键菜单中的新增项目: 反向链接 - res://f:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - IE右键菜单中的新增项目: 导入当前页到超星阅览器(&A) - F:\Program Files\SSREADER36\ss_all.htm
O8 - IE右键菜单中的新增项目: 导入选中部分到超星阅览器(&S) - F:\Program Files\SSREADER36\ss_select.htm
O8 - IE右键菜单中的新增项目: 类似网页 - res://f:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - IE右键菜单中的新增项目: 缓存的网页快照 - res://f:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - IE右键菜单中的新增项目: 翻译英文字词(&T) - res://f:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O9 - 浏览器额外的按钮: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - 浏览器额外的“工具”菜单项: Sun Java 控制台 - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - F:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - 浏览器额外的按钮: (no name) - {6671A433-5C3D-463d-A7CF-5587F9B7E191} - F:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
O9 - 浏览器额外的“工具”菜单项: MMSAssist工具条设置 - {6671A433-5C3D-463d-A7CF-5587F9B7E191} - F:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
O11 - Options group: [!CNS]
O16 - DPF: {057F01E9-965E-4570-8C68-C53A6ADA6D9C} (FlyVR Class) - http://andy/flyvr.cab
O16 - DPF: {CDBD9968-7BF1-11D4-9D36-0001029DEBEB} (Loader Class) - http://andyxp/TDBIN/Spider.ocx
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = intranet.com
O17 - HKLM\Software\..\Telephony: DomainName = intranet.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{82994B74-C3F9-48F8-8DB0-310987DC0B99}: NameServer = 192.168.0.99,202.120.2.101
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = intranet.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = intranet.com
O18 - 列举现有的协议: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "F:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: igfxcui - F:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - NT 服务: Check TestDirector User account (CheckTestDirectorUserAccount) - Unknown owner - F:\Program Files\Common Files\Mercury Interactive\CheckU.exe (file missing)
O23 - NT 服务: iPod Service (iPodService) - Apple Computer, Inc. - F:\Program Files\iPod\bin\iPodService.exe
O23 - NT 服务: Macromedia Licensing Service - Unknown owner - F:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - F:\Program Files\Rising\Rav\CCenter.exe
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - F:\Program Files\Rising\Rav\Ravmond.exe
O23 - NT 服务: TomcatService - Unknown owner - C:\InetPub\TDBIN\MTours\jakarta-tomcat-3.3\bin\TomcatService.exe
O23 - NT 服务: Windows Media Player Drivers - www.huigezi.net - F:\WINDOWS\help.exe