4月26日之后,每到下午上网速度就特别慢,还经常自动弹出“奇虎”网和一些广告的网站,高手看看日志,有什么问题,恳请指点,先行谢过!!!
Logfile of HijackThis v1.99.1
Scan saved at 16:01:34, on 2006-5-9
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
D:\RS\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
D:\RS\Rising\Rav\Ravmond.exe
e:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
D:\RS\Rising\Rav\RavStub.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Rundll32.exe
e:\program files\rising\rfw\RfwMain.exe
D:\RS\Rising\Rav\RavTask.exe
D:\RS\Rising\Rav\Ravmon.exe
C:\WINDOWS\system32\CTFMON.EXE
F:\QQ\领流\飘云2006\QQ2006\QQ.exe
F:\QQ\领流\飘云2006\QQ2006\TIMPlatform.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\振荡波杀毒\振RavSasser.exe
D:\HijackThis V1.99.1\HijackThis.exe
R3 - Default URLSearchHook is missing
O2 - BHO: TuoTuHelper.LDown - {0BECAB3A-E1F8-45E6-8332-38DD750EBA01} - F:\脱兔下载工具\Tuotu\TuoTuhelper.dll
O2 - BHO: std software - {6A512BF7-EC78-4e8d-9841-6C02E8FA9838} - C:\WINDOWS\SYSTEM32\stdup.dll
O2 - BHO: BDHlprObj Class - {CA92B524-BC8A-4610-BD2C-6BD3E28155D0} - C:\WINDOWS\DOWNLO~1\BDHelper.dll
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\KakaTool.dll
O4 - HKLM\..\Run: [RfwMain] "E:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavTask] "D:\RS\Rising\Rav\RavTask.exe" -system
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE
O8 - Extra context menu item: &使用迅雷下载 - D:\迅雷\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - D:\迅雷\Thunder\getAllurl.htm
O8 - Extra context menu item: 使用脱兔下载 - F:\脱兔下载工具\Tuotu\TT_one.htm
O8 - Extra context menu item: 使用脱兔下载全部链接 - F:\脱兔下载工具\Tuotu\TT_all.htm
O9 - Extra button: 信息检索 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: 脱兔下载 - {D5C1CCC2-811B-4bf2-BF22-0D3B89600F5B} - F:\脱兔下载工具\Tuotu\TuoTu.exe
O9 - Extra 'Tools' menuitem: &TuoTu - {D5C1CCC2-811B-4bf2-BF22-0D3B89600F5B} - F:\脱兔下载工具\Tuotu\TuoTu.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{A84E5423-2C6B-41A7-BD72-C0E88BE06348}: NameServer = 202.99.224.8
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Rising Proxy Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - e:\program files\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - e:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - D:\RS\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\RS\Rising\Rav\Ravmond.exe