瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】Trojan.DL.Inject.fe 杀完了还会出现,是瑞星不行吗

1   1  /  1  页   跳转

【求助】Trojan.DL.Inject.fe 杀完了还会出现,是瑞星不行吗

【求助】Trojan.DL.Inject.fe 杀完了还会出现,是瑞星不行吗

Trojan.DL.Inject.fe 杀完下次开机初没有,但过大约1~2小时瑞星又提示杀了毒
我是2006正版用户,防火墙+杀毒(都是最新版的),系统是win2000,补丁能补的都补了
安全模式下也杀过,但没毒
Trojan.DL.Inject.fe删除成功2006-7-26 21:39文件监控C:\WINNT\system32pyjjkdll.dll
Trojan.DL.Inject.fe删除成功2006-7-27 10:10文件监控C:\WINNT\system32pyjjkdll.dll
Trojan.DL.Inject.fe删除成功2006-7-27 20:22文件监控C:\WINNT\system32pyjjkdll.dll
Trojan.DL.Inject.fe删除成功2006-7-29 01:03文件监控C:\WINNT\system32pyjjkdll.dll
Trojan.DL.Inject.fe删除成功2006-7-29 03:19文件监控C:\WINNT\system32pyjjkdll.dll
Trojan.DL.Inject.fe删除成功2006-7-29 04:39文件监控C:\WINNT\system32pyjjkdll.dll

这是扫描日志
Logfile of Kaka v2. 0. 0. 9 Scan Module v2. 0. 0. 1
Scan saved at 04:58:26, on 2006-07-29
Platform: Microsoft Windows 2000 Professional Service Pack 4 (Build 2195)
MSIE: Internet Explorer v6.00 SP1;Q833989;Q823353; (6.00.2800.1106)


Running processes:
[smss.exe]
CommandLine =

[csrss.exe]
CommandLine = C:\WINNT\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16

[winlogon.exe]
CommandLine = winlogon.exe

[services.exe]
CommandLine = C:\WINNT\system32\services.exe

[lsass.exe]
CommandLine = C:\WINNT\system32\lsass.exe

[svchost.exe]
CommandLine = C:\WINNT\system32\svchost -k rpcss

[CCenter.exe]
CommandLine = "C:\Program Files\Rising\Rav\CCenter.exe"

[Ravmond.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmond.exe"

[spoolsv.exe]
CommandLine = C:\WINNT\system32\spoolsv.exe

[svchost.exe]
CommandLine = C:\WINNT\system32\svchost.exe -k netsvcs

[regsvc.exe]
CommandLine = C:\WINNT\system32\regsvc.exe

[MSTask.exe]
CommandLine = C:\WINNT\system32\MSTask.exe

[WinMgmt.exe]
CommandLine = C:\WINNT\System32\WBEM\WinMgmt.exe

[svchost.exe]
CommandLine = C:\WINNT\system32\svchost.exe -k wugroup

[RavStub.exe]
CommandLine = "C:\Program Files\Rising\Rav\RavStub.exe" /RAVMOND

[RavTask.exe]
CommandLine = "C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM

[ctfmon.exe]
CommandLine = "C:\WINNT\system32\ctfmon.exe"

[Ravmon.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM

[conime.exe]
CommandLine = C:\WINNT\system32\conime.exe

[Explorer.EXE]
CommandLine = C:\WINNT\explorer.exe

[rfwmain.exe]
CommandLine = "C:\Program Files\Rising\Rfw\rfwmain.exe"

[rfwsrv.exe]
CommandLine = "C:\Program Files\Rising\Rfw\rfwsrv.exe"

[PortalClient.ex]
CommandLine = C:\Documents and Settings\Administrator\My Documents\Huawei\PortalServer\202.109.117.146\PortalClient.exe -mode 1 -portalDomain 202.109.117.146 -log True

[iexplore.exe]
CommandLine = "C:\Program Files\Internet Explorer\iexplore.exe" http://csc.rising.com.cn/?tag=Unknown&exp=0

[EXCEL.EXE]
CommandLine = "C:\Program Files\Microsoft Office\Office\EXCEL.EXE" /e


顺便说下,我COMS最近没电了,系统日期会回到2001年,应该和这个没关系吧
最后编辑2006-07-28 14:36:17
分享到:
gototop
 

没有关系

请下载 System Repair Engineer,使用“智能扫描”,按下“扫描”按钮进行扫描,扫描完成后按下“保存报告”按钮保存报告日志文件(SREng.LOG),把保存的报告日志文件内容复制-粘贴上来
下载网址
http://www.kztechs.com/sreng/sreng2.zip
http://forum.ikaka.com/topic.asp?board=67&artid=5188931
日志一次粘不完,分次粘完,请不要修改。
gototop
 

C:\WINNT\system32\pyjjkdll.dll

好像是QQ尾巴的东东~~

http://cache.baidu.com/c?word=pyjjkdll%3B%2E%3Bdll&url=http%3A//zhidao%2Ebaidu%2Ecom/question/8554398%2Ehtml&b=20&a=0&user=baidu
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT