瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 杀完毒后不能上网了 怎么回事啊?

1   1  /  1  页   跳转

杀完毒后不能上网了 怎么回事啊?

杀完毒后不能上网了 怎么回事啊?

我同学电脑中毒了  用杀软杀完后 不能上网了  是怎么回事啊 
病毒有 ROOTKIT.CALLGATE.B                TROJAN.PSW.ZHENGTU.KS
      TROJAN.PSW.QQGAME.BV              TROJAN.PSW.AGENT.ALS
      TROJAN.PSW.WOWAR.MB                TROJAN.PSW.ZHENGTU.KS 
TROJAN.PSW.WOWAR.MB  都是删除成功啊 
还有他的瑞星监控的邮件发送接受怎么也打不开  是怎么回事  请教各位老大  呵呵~~  谢谢大家多帮忙啊   





Logfile of HijackThis v1.99.1
Scan saved at 0:08:05, on 2006-9-22
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\SOUNDMAN.EXE
c:\windows\system32\srvany.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rfw\rfwmain.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rising\Rfw\RfwCfg.exe
C:\Program Files\Rising\Rav\RsLogVw.exe
C:\Documents and Settings\Administrator\桌面\HijackThis.exe

R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: 超级兔子上网精灵 - {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} - D:\防火墙和杀毒\MagicSet\MagicSet\haokanbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: 超级兔子上网精灵 - {43869BB3-22FD-4F15-9B46-238106BA2F4E} - D:\防火墙和杀毒\MagicSet\MagicSet\haokanbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [TkBellExe] ; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavScanBD] "C:\Program Files\Rising\Rav\ScanBD.exe" /INST
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Super Rabbit IEPro] ; D:\防火墙和杀毒\MagicSet\MagicSet\SRIECLI.EXE /LOAD
O4 - Startup: 腾讯QQ珊瑚虫版.lnk = C:\Program Files\Tencent\QQ\CoralQQ.exe
O8 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O8 - Extra context menu item: Google 搜索(&G) - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\安装的东西\AddToNetDisk.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\Woool\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Woool\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\Woool\SendMMS.htm
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Woool\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Woool\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Woool\QQIEHelper.dll (file missing)
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\Woool\QQIEHelper.dll (file missing)
O17 - HKLM\System\CCS\Services\Tcpip\..\{D0C96418-9902-4721-87AE-5BA6C113C00B}: NameServer = 202.201.0.131,202.201.0.132
O23 - Service: MazeSvr - Unknown owner - C:\Program Files\天网Maze\MazeSvr.exe (file missing)
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe
O23 - Service: SockClient - Unknown owner - c:\windows\system32\srvany.exe
O23 - Service: Windows Management Install - Conexant Systems, Inc. - (no file)

最后编辑2006-09-22 12:24:17
分享到:
gototop
 

???
gototop
 

winsockfix修复一下 如果是XP系统就用winsockxpfix
gototop
 

删除 c:\windows\system32\srvany.exe
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT