瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 老大门帮我看看呀~更新杀毒软件时容易死机~~

1   1  /  1  页   跳转

老大门帮我看看呀~更新杀毒软件时容易死机~~

老大门帮我看看呀~更新杀毒软件时容易死机~~

更新瑞星杀毒软件和使用Real player时容易死机~帮我看看是不是中毒了~还有请帮我看看是不是修复删除了不该删除的东西了~
删除的有下列东西
O4 - 启动项HKLM\\Run: [CApp] C:\WINDOWS\system32\capp.exe

R3 - URLSearchHook: Tencent Url Search Hook - {DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9} - C:\WINDOWS\Downloaded Program Files\TBHMain.dll

O16 - DPF: {DA984A6D-508E-11D6-AA49-0050FF3C628D} (Ravonline) - http://download.rising.com.cn/QQ/QQkill/rsonline.cab

还有关闭网页的时候容易出下图

Logfile of HijackThis v1.99.1
Scan saved at 01:08:06, on 2005-07-28
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
e:\瑞星防火墙\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\capp.exe
C:\WINDOWS\vsnpstd3.exe
E:\瑞星防火墙\Rising\Rfw\rfwmain.exe
E:\瑞星杀~1\RISING\RAV\RAVTIMER.EXE
E:\瑞星杀~1\RISING\RAV\RAVMON.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Chinanet\VnetClient.exe
C:\WINDOWS\system32\nvsvc32.exe
E:\瑞星杀毒软件\RISING\RAV\CCENTER.EXE
E:\瑞星杀毒软件\RISING\RAV\Ravmond.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
E:\瑞星杀毒软件\RISING\RAV\RavStub.exe
E:\瑞星杀~1\RISING\RAV\Rav.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Tencent\qq\QQ.exe
E:\QQ\TIMPlatform.exe
C:\Program Files\Tencent\qq\qqpet\qqpet.exe
D:\新建文件夹 (3)\HijackThis.exe

O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v5.dll
O2 - BHO: Tencent Browser Helper - {0C7C23EF-A848-485B-873C-0ED954731014} - C:\WINDOWS\Downloaded Program Files\TBHMain.dll
O2 - BHO: CNNIC_IDN - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\system32\CdnIEHlp.dll
O2 - BHO: (no name) - {35980F6E-A137-4E50-953D-813BB8556899}? - (no file)
O3 - Toolbar: 一搜工具条 - {115F6E46-FCBC-41ed-B3B5-3BDDD4AAB5E5} - C:\Program Files\YiSou\yisou.dll
O3 - Toolbar: BitCometBar - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - E:\bit下载\BitComet\BitCometBar\BitCometBar0.1.dll
O3 - Toolbar: 卡卡安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CApp] C:\WINDOWS\system32\capp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] F:\网游\lineage2\bin\jusched.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [RfwMain] "E:\瑞星防火墙\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [DAEMON Tools-1033] "E:\虚拟光驱\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [迅雷4] E:\迅雷\MediaIssue\TDUpdate.exe
O4 - HKLM\..\Run: [RavTimer] E:\瑞星杀~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [RavMon] E:\瑞星杀~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: 星空极速.lnk = C:\Program Files\Chinanet\VnetClient.exe
O8 - Extra context menu item: !搜一搜(&S) - res://C:\Program Files\YiSou\yisou.dll/232
O8 - Extra context menu item: &使用迅雷下载 - E:\迅雷\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - E:\迅雷\getAllurl.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - C:\Program Files\Tencent\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\qq\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - C:\Program Files\Tencent\qq\SendMMS.htm
O9 - Extra button: 中文域名 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\system32\CdnIEHlp.dll
O9 - Extra 'Tools' menuitem: 中文域名 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\system32\CdnIEHlp.dll
O11 - Options group: [TBH] QQ地址栏搜索
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B80627F-F4B0-44BA-B090-32E8078E6D9D}: NameServer = 61.147.37.1 61.177.7.1
O18 - Protocol: koboo - {7DEE9D05-FA0A-4416-A6F3-6537D0EAB6A6} - C:\WINDOWS\system32\mbprot.dll
O20 - AppInit_DLLs: apihookdll.dll
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - e:\瑞星防火墙\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - E:\瑞星杀毒软件\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - E:\瑞星杀毒软件\RISING\RAV\Ravmond.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

附件附件:

下载次数:0
文件类型:application/octet-stream
文件大小:
上传时间:2005-7-28 1:08:44
描述:



最后编辑2005-07-28 04:26:21
分享到:
gototop
 

E话上面经常出现这样的提示
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT