1   1  /  1  页   跳转

javascript的问题,谢谢请看一下

javascript的问题,谢谢请看一下

不知道中了什么病毒,凡是关于jjavascript 的项目都没办法启动,怎么办?
附日志:Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:43:04, on 2008-2-4
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KPfwSvc.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KWatch.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KISSvc.EXE
C:\WINDOWS\system32\slserv.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailMon.EXE
C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe
D:\我的文档\USBKILLE0825\USBKiller(U盘病毒专杀工具) V2.2 Build0825 绿色注册版\USBKiller.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\stsystra.exe
D:\Program Files\360safe\safemon\360tray.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KAVStart.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KPFW32.EXE
C:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Tencent\QQ.exe
D:\Tencent\TIMPlatform.exe
C:\WINDOWS\system32\conime.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.188\HijackThis.exe

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O1 - Hosts: 127.0.0.2 localhost
O1 - Hosts: ; 1*********以下内容为360安全卫士为免疫机器狗木马病毒所添加 ******************
O1 - Hosts: ; *********结束******************
O2 - BHO: Thunder AtOnce - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.11.30.dll
O2 - BHO: Kingsoft Trojan Webshield - {4E8A5278-C04E-4FE3-BF78-8A7CCD6EF333} - C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\Antispy\IEBuddy.DLL
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing)
O4 - HKLM\..\Run: [USBKiller.exe] D:\我的文档\USBKILLE0825\USBKiller(U盘病毒专杀工具) V2.2 Build0825 绿色注册版\USBKiller.exe -Hide
O4 - HKLM\..\Run: [PowerRemind] C:\WINDOWS\system32\shadow\PowerRemind.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Thunder] "C:\Program Files\Thunder Network\Thunder\Thunder.exe" /s
O4 - HKLM\..\Run: [360Safetray] D:\Program Files\360safe\safemon\360tray.exe /start
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [KavStart] "C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KAVStart.exe" -startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [KavPFW] "C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KPFW32.EXE"
O4 - HKUS\S-1-5-19\..\Run: [ctfmon.exe] ctfmon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [ctfmon.exe] ctfmon.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O8 - Extra context menu item: 使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\geturl.htm
O8 - Extra context menu item: 使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\getallurl.htm
O16 - DPF: {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} (Rising Web Scan Object) - http://download.rising.com.cn/register/pcver/autoupgradepad/pcver2007/OL2006.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3B4364CE-3B8C-47AD-BE08-CEAD1B7E8E0F}: NameServer = 218.6.200.139 61.139.2.69
O17 - HKLM\System\CCS\Services\Tcpip\..\{71AC9393-053B-4134-A61B-B9AF1B25EB02}: NameServer = 172.16.5.133,172.16.5.132
O23 - Service: Kingsoft Internet Security Common Service (KISSvc) - Kingsoft Corporation - C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KISSvc.EXE
O23 - Service: Kingsoft Personal Firewall Service (KPfwSvc) - Kingsoft Corporation - C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KPfwSvc.EXE
O23 - Service: Kingsoft Antivirus KWatch Service (KWatchSvc) - Kingsoft Corporation - C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KWatch.EXE
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe


[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
最后编辑2008-02-04 15:38:10
分享到:
gototop
 

http://forum.ikaka.com/topic.asp?board=28&artid=842425
机器狗试试
gototop
 

我是一个月前就中招了。。。。。不会是机器狗吧。。。
gototop
 

UserInit=C:\WINDOWS\system32\userinit.exe
就是机器狗
gototop
 

【回复“demie”的帖子】
C:\WINDOWS\stsystra.exe
什么DD?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT