1   1  /  1  页   跳转

1sess.exe怎样清除?

1sess.exe怎样清除?

他和lsass.exe就差在1与l上,是病毒吗,是的话怎样清除?
[1sass.exe]
PID = 0x124
CommandLine = C:\WINDOWS\system\1sass.exe
   
    0x400000
    C:\WINDOWS\system32\svchost.exe
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Generic Host Process for Win32 Services
    2004-08-18 04:00:00

    ntdll.dll
    0x7c920000
    C:\WINDOWS\system32\ntdll.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    NT Layer DLL
    2004-08-18 04:00:00

    kernel32.dll
    0x7c800000
    C:\WINDOWS\system32\kernel32.dll
    5.1.2600.3119 (xpsp_sp2_gdr.070416-1301)
    Microsoft Corporation
    Windows NT BASE API Client DLL
    2007-04-16 23:54:26

    ADVAPI32.dll
    0x77da0000
    C:\WINDOWS\system32\advapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Advanced Windows 32 Base API
    2004-08-18 04:00:00

    RPCRT4.dll
    0x77e50000
    C:\WINDOWS\system32\rpcrt4.dll
    5.1.2600.3173 (xpsp_sp2_gdr.070709-0051)
    Microsoft Corporation
    Remote Procedure Call Runtime
    2007-07-09 21:09:42

    Secur32.dll
    0x77fc0000
    C:\WINDOWS\system32\secur32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Security Support Provider Interface
    2004-08-18 04:00:00

    MSVCRT.dll
    0x77be0000
    C:\WINDOWS\system32\msvcrt.dll
    7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT CRT DLL
    2004-08-18 04:00:00

    MSVCP60.dll
    0x75ff0000
    C:\WINDOWS\system32\msvcp60.dll
    6.02.3104.0
    Microsoft Corporation
    Microsoft (R) C++ Runtime Library
    2004-08-18 04:00:00

    ijt_base.dll
    0x10000000
    C:\Program Files\Rising\Rfw\ijt_base.dll
    7.0.0.10
    Beijing Rising Technology Co., Ltd.
    Inject Base
    2008-01-08 16:43:10

    USER32.dll
    0x77d10000
    C:\WINDOWS\system32\user32.dll
    5.1.2600.3099 (xpsp_sp2_gdr.070308-0222)
    Microsoft Corporation
    Windows XP USER API Client DLL
    2007-03-08 23:37:22

    GDI32.dll
    0x77ef0000
    C:\WINDOWS\system32\gdi32.dll
    5.1.2600.3159 (xpsp_sp2_gdr.070619-1300)
    Microsoft Corporation
    GDI Client DLL
    2007-06-19 21:32:10

    SHELL32.dll
    0x7d590000
    C:\WINDOWS\system32\shell32.dll
    6.00.2900.3241 (xpsp_sp2_qfe.071025-1245)
    Microsoft Corporation
    Windows Shell Common Dll
    2007-10-26 00:43:28

    SHLWAPI.dll
    0x77f40000
    C:\WINDOWS\system32\shlwapi.dll
    6.00.2900.3231 (xpsp_sp2_gdr.071010-1320)
    Microsoft Corporation
    Shell Light-weight Utility Library
    2007-10-11 14:12:08

    IMM32.DLL
    0x76300000
    C:\WINDOWS\system32\imm32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows XP IMM32 API Client DLL
    2004-08-18 04:00:00

    LPK.DLL
    0x62c20000
    C:\WINDOWS\system32\lpk.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Language Pack
    2004-08-18 04:00:00

    USP10.dll
    0x73fa0000
    C:\WINDOWS\system32\usp10.dll
    1.0420.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Uniscribe Unicode script processor
    2004-08-18 04:00:00

    comctl32.dll
    0x77180000
    C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    6.0 (xpsp.060825-0040)
    Microsoft Corporation
    User Experience Controls Library
    2006-08-25 08:49:42

    comctl32.dll
    0x5d170000
    C:\WINDOWS\system32\comctl32.dll
    5.82 (xpsp.060825-0040)
    Microsoft Corporation
    Common Controls Library
    2006-08-25 23:49:44

    olemon.dll
    0x910000
    c:\program files\Rising\Rfw\olemon.dll
    7.0.0.4
    Beijing Rising Technology Co., Ltd.
    Ole Mon Dll
    2008-01-05 14:12:16

    ole32.dll
    0x76990000
    C:\WINDOWS\system32\ole32.dll
    5.1.2600.2726 (xpsp_sp2_gdr.050725-1528)
    Microsoft Corporation
    Microsoft OLE for Windows
    2005-07-26 12:39:50

    wininet.dll
    0x41fd0000
    C:\WINDOWS\system32\wininet.dll
    7.00.6000.16574 (vista_gdr.071008-1500)
    Microsoft Corporation
    Internet Extensions for Win32
    2007-10-11 07:46:25

    Normaliz.dll
    0x930000
    C:\WINDOWS\system32\normaliz.dll
    6.0.5441.0 (winmain(wmbla).060628-1735)
    Microsoft Corporation
    Unicode Normalization DLL
    2006-06-29 08:05:44

    iertutil.dll
    0x41d50000
    C:\WINDOWS\system32\iertutil.dll
    7.00.6000.16574 (vista_gdr.071008-1500)
    Microsoft Corporation
    Run time utility for Internet Explorer
    2007-10-11 07:46:19

    ws2_32.dll
    0x71a20000
    C:\WINDOWS\system32\ws2_32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Socket 2.0 32-Bit DLL
    2004-08-18 04:00:00

    WS2HELP.dll
    0x71a10000
    C:\WINDOWS\system32\ws2help.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Socket 2.0 Helper for Windows NT
    2004-08-18 04:00:00

    RASAPI32.dll
    0x76eb0000
    C:\WINDOWS\system32\rasapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Access API
    2004-08-18 04:00:00

    rasman.dll
    0x76e60000
    C:\WINDOWS\system32\rasman.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Access Connection Manager
    2004-08-18 04:00:00

    NETAPI32.dll
    0x5fdd0000
    C:\WINDOWS\system32\netapi32.dll
    5.1.2600.2976 (xpsp_sp2_gdr.060817-0106)
    Microsoft Corporation
    Net Win32 API DLL
    2006-08-17 20:29:48

    TAPI32.dll
    0x76e80000
    C:\WINDOWS\system32\tapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft(R) Windows(TM) Telephony API Client DLL
    2004-08-18 04:00:00

    rtutils.dll
    0x76e50000
    C:\WINDOWS\system32\rtutils.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Routing Utilities
    2004-08-18 04:00:00

    WINMM.dll
    0x76b10000
    C:\WINDOWS\system32\winmm.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    MCI API DLL
    2004-08-18 04:00:00

    USERENV.dll
    0x759d0000
    C:\WINDOWS\system32\userenv.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Userenv
    2004-08-18 04:00:00

    mswsock.dll
    0x719c0000
    C:\WINDOWS\system32\mswsock.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft Windows Sockets 2.0 Service Provider
    2004-08-18 04:00:00

    rasadhlp.dll
    0x76f90000
    C:\WINDOWS\system32\rasadhlp.dll
    5.1.2600.2938 (xpsp_sp2_gdr.060626-0020)
    Microsoft Corporation
    Remote Access AutoDial Helper
    2006-06-27 01:41:40

    urlmon.dll
    0x420b0000
    C:\WINDOWS\system32\urlmon.dll
    7.00.6000.16574 (vista_gdr.071008-1500)
    Microsoft Corporation
    OLE32 Extensions for Win32
    2007-10-11 07:46:24

    OLEAUT32.dll
    0x770f0000
    C:\WINDOWS\system32\oleaut32.dll
    5.1.2600.3139
    Microsoft Corporation
   
    2007-05-17 19:29:10

    DNSAPI.dll
    0x76ef0000
    C:\WINDOWS\system32\dnsapi.dll
    5.1.2600.2938 (xpsp_sp2_gdr.060626-0020)
    Microsoft Corporation
    DNS Client API DLL
    2006-06-27 01:41:40

    hnetcfg.dll
    0x60fd0000
    C:\WINDOWS\system32\hnetcfg.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Home Networking Configuration Manager
    2004-08-18 04:00:00

    wshtcpip.dll
    0x71a00000
    C:\WINDOWS\system32\wshtcpip.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows Sockets Helper DLL
    2004-08-18 04:00:00

    msv1_0.dll
    0x77c40000
    C:\WINDOWS\system32\msv1_0.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Microsoft Authentication Package v1.0
    2004-08-18 04:00:00

    iphlpapi.dll
    0x76d30000
    C:\WINDOWS\system32\iphlpapi.dll
    5.1.2600.2912 (xpsp_sp2_gdr.060519-0003)
    Microsoft Corporation
    IP Helper API
    2006-05-19 21:14:08


[用户系统信息]Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; baiduds; .NET CLR 1.0.3705; .NET CLR 1.1.4322; .NET CLR 2.0.50727; InfoPath.1)

附件附件:

下载次数:86
文件类型:application/octet-stream
文件大小:
上传时间:2008-1-12 3:22:34
描述:

最后编辑2008-01-12 11:46:25
分享到:
gototop
 

应该是1sass.exe吧

如果你的是XP系统,你就去这看看吧,相信能解决的

http://baike.baidu.com/view/1065156.htm
gototop
 

C:\WINDOWS\system\1sass.exe


以上文件上报瑞星鉴定

http://up.rising.com.cn/webmail/uploadnew.htm
gototop
 

日志以后用附件发
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT