中午刚中的毒,帮忙看一下
我用联想的一键恢复功能恢复完之后只要一运行应用程序就不行了.
应用程序的图标全部变成一个熊猫的模样.估计是捆绑的.升级瑞星到一半没响应.隔一段时间就出现一个RUNTIME ERROR字样.图标也是小熊猫在哭.
100 - 未知 - Process: zaq5.exe [] - C:\WINDOWS\zaq5.exe100 - 未知 - Process: spcolsv.exe [] - C:\WINDOWS\system32\drivers\spcolsv.exe100 - 未知 - Process: guard.exe [AVG Anti-Spyware guard] - R0 - 未知 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL=http://www.lenovo.comR1 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar=http://search.fm365.comO3 - 未知 - Toolbar: (第三方IE工具栏) - [无效的CLSID:{1E796980-9CC5-11D1-A83F-00C04FC99D61}] - {1E796980-9CC5-11D1-A83F-00C04FC99D61} - O4 - 未知 - HKLM\..\Run: [wsvbs] [] C:\WINDOWS\zaq4.exeO4 - 未知 - HKLM\..\Run: [NOPNewHelp] [] C:\WINDOWS\zaq5.exeO4 - 未知 - HKLM\..\Run: [syre] [] C:\DOCUME~1\user\LOCALS~1\Temp\syre.exeO4 - 未知 - HKLM\..\Run: [msccr] [] C:\WINDOWS\zaq2.exeO4 - 未知 - HKLM\..\Run: [synu] [] C:\WINDOWS\zaq10.exeO4 - 未知 - HKCU\..\Run: [svcshare] [] C:\WINDOWS\system32\drivers\spcolsv.exeO8 - 未知 - Extra context menu item: 上传到QQ网络硬盘 - F:\学习学习CAD\Tencent\QQ\AddToNetDisk.htmO8 - 未知 - Extra context menu item: 使用Web迅雷下载 - C:\Program Files\Thunder Network\WebThunder\GetUrl.htmO8 - 未知 - Extra context menu item: 使用Web迅雷下载全部链接 - C:\Program Files\Thunder Network\WebThunder\GetAllUrl.htmO9 - 未知 - Extra button: 联想(HKLM) - http://www.lenovo.comO9 - 未知 - Extra button: 启动Web迅雷(HKLM) - http://my.xunlei.comO14 - 未知 - IERESET.INF: START_PAGE_URL=http://www.lenovo.comO23 - 未知 - Service: Win32DDS [Provides system and desktop level support to the display driver] - C:\WINDOWS\system32\\rundll32.exe windds32.dll,inputO23 - 未知 - Service: WinDHCPsvc [为远程计算机注册并更新 IP 地址。] - C:\WINDOWS\system32\\rundll32.exe windhcp.ocx,input=======================================
040 - svchost.exe - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\AntiSpyware\ieprot.dll - IE Protector040 - svchost.exe - herosoft - C:\Herosoft\HeroV8\VCvtShell.dll - VCvtShell040 - Explorer.EXE - - C:\WINDOWS\system32\windds32.dll - 040 - Explorer.EXE - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll - AVG Anti-Spyware shellexecutehook040 - Explorer.EXE - Beijing Rising Technology Co., Ltd. - C:\WINDOWS\system32\RavExt.dll - Rising Shell Ext Module040 - Explorer.EXE - - C:\DOCUME~1\user\LOCALS~1\Temp\syre.dll - 040 - Explorer.EXE - - C:\WINDOWS\system32\wsvbs.dll - 040 - Explorer.EXE - - C:\WINDOWS\system32\synu.dll - 040 - Explorer.EXE - - C:\WINDOWS\system32\msccr.dll - 040 - Explorer.EXE - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\AntiSpyware\ieprot.dll - IE Protector040 - Explorer.EXE - Thunder Networking Technologies,LTD - C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_015.dll - WebThunderBHO040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\sti.dll - Still Image Devices client DLL 040 - Explorer.EXE - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\RSCOMMON.DLL - Rising Common Function Dynamic Link Library040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\shmedia.dll - Media File Property Extractor Shell Extension040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\MSVFW32.dll - Microsoft Video for Windows DLL040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\AVIFIL32.dll - Microsoft AVI File support library040 - Explorer.EXE - - C:\WINDOWS\system32\tsd32.dll - 040 - Explorer.EXE - herosoft - C:\Herosoft\HeroV8\VCvtShell.dll - VCvtShell040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\MSISIP.DLL - MSI Signature SIP Provider040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\wshext.dll - Microsoft (r) Shell Extension for Windows Script Host040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\MFC42.DLL - MFCDLL Shared Library - Retail Version040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\wshCHS.DLL - Microsoft (r) Windows Script Host International Resources040 - svchost.exe - Microsoft Corporation - c:\windows\system32\wiaservc.dll - Still Image Devices Service040 - svchost.exe - Microsoft Corporation - C:\WINDOWS\system32\sti.dll - Still Image Devices client DLL =======================================
041 - AVG Anti-Spyware Driver - AVG Anti-Spyware Driver - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys041 - AvgAsCln - AVG7 Clean Driver - C:\WINDOWS\system32\drivers\AvgAsCln.sys041 - BaseTDI - basetdi - C:\WINDOWS\system32\drivers\basetdi.sys041 - ExpScaner - ExpScan.sys - C:\Program Files\Rising\Rav\ExpScan.sys041 - HOOKAPI - HOOKAPI Driver - C:\PROGRAM FILES\Rising\Rav\HookApi.sys041 - HookCont - HookCont - C:\Program Files\Rising\Rav\HookCont.sys041 - HookReg - HookReg - C:\Program Files\Rising\Rav\HOOKREG.sys041 - HookSys - Hooksys - C:\Program Files\Rising\Rav\HookSys.sys041 - HookUrl - HookUrl - C:\Program Files\Rising\Rfw\HookUrl.sys041 - kmsinput - kmsinput - C:\WINDOWS\system32\drivers\kmsinput.sys041 - MEMSCAN - MemScan Driver - C:\Program Files\Rising\Rav\MemScan.sys041 - MidiSyn - Analog Devices Kernel DLS Synthesizer - C:\WINDOWS\system32\drivers\MidiSyn.sys041 - mProcRs - Rising Personal FireWall mprocrs.sys - c:\program files\Rising\Rfw\mProcRs.sys041 - npkcrypt - nProtect KeyCrypt Driver - F:\学习学习CAD\Tencent\QQ\npkcrypt.sys041 - RsFwDrv - nt_fwdrv - C:\Program Files\Rising\Rfw\rsfwdrv.sys041 - RsNTGDI - RsNTGDI - C:\WINDOWS\system32\drivers\RsNTGdi.sys041 - RSPPSYS - RSPPSYS - C:\Program Files\Rising\Rav\rsppsys.sys041 - RTL8023xp - Realtek 10/100/1000 NDIS 5.1 Driver - C:\WINDOWS\system32\drivers\Rtlnicxp.sys041 - senfilt - Sensaura WDM 3D Audio Driver - C:\WINDOWS\system32\drivers\senfilt.sys041 - smwdm - SoundMAX Integrated Digital Audio - C:\WINDOWS\system32\drivers\smwdm.sys041 - usbscan - USB Scanner Driver - C:\WINDOWS\system32\drivers\usbscan.sys=======================================
360Safe.exe=2.0.1.2007
AntiAdwa.dll=2.0.1.2007
AntiEng.dll=2.0.1.2007
AntiActi.dll=2.0.0.3000
CleanHis.dll=2.0.0.1001
safelive.exe=1.0.0.2007
live.dll=1.0.0.1011
=======================================