1   1  /  1  页   跳转

菜鸟紧急求助(最新病毒)

菜鸟紧急求助(最新病毒)

我中了最新的病毒,杀毒软件都打不开,IE主页自动更换,自动下载木马====

我用了正版最新的瑞星都杀不死,而且还用360最新的版本。都杀不是死。

2008-04-07 16:43:27电脑 "27D933840F2045E" 的状态如下:
该诊断报告由360安全卫士提供 http://www.360.cn/
基本信息
操作系统:Intel(R) Celeron(R) CPU 420 @ 1.60GHz

IE版本 :6.0.2900.2180

杀毒软件:已升级到最新

360版本:4.1.0.1006

基本信息 其他插件 可疑的进程 DLL注入项 未签名驱动项 域名解析文件 IE右键菜单额外项 受信任区域中的有害站点 Activex 网络协议过滤 系统服务 其他自启动程序 Autoruns 其他进程 下载历史 恶意软件查杀历史 间谍软件查杀历史
其他插件 返回导航

[ID]140 [名称]卡卡上网安全助手 [等级]1 [类型]BHO、Toolbar、IE额外按钮 [说明]网络辅助工具 [URL]

[ID]1067 [名称]未知自动运行程序(Autorun) [等级]1 [类型]其它 [说明]强制安装、无法彻底删除 [URL]

[ID]1170 [名称]BoBoTurbo插件 [等级]2 [类型]其它 [说明]P2P多媒体插件 [URL]


可疑的进程 返回导航

未知 - Process: RavMonD.exe [Rising Realtime Moniter] - D:\PROGRAM FILES\RISING\RAV\ravmond.exe

未知 - Process: RavStub.exe [Rising RavStub] - D:\PROGRAM FILES\RISING\RAV\RavStub.exe

未知 - Process: boboturbo.exe [BoBo P2P多媒体网络点播/广播/直播系统 加速器] - C:\WINDOWS\system32\boboturbo\boboturbo.exe

未知 - Process: QvodTerminal.exe [QvodTerminal] - C:\Program Files\QvodPlayer\QvodTerminal.exe

未知 - Process: RavTask.exe [RavTimer] - D:\Program Files\Rising\Rav\RavTask.exe

未知 - Process: RavMon.exe [Rising realtime monitor shell] - D:\Program Files\Rising\Rav\Ravmon.exe

未知 - Process: AntiArp.exe [360ARP防火墙] - D:\Program Files\360safe\antiarp\antiarp.exe

未知 - Process: windows.ext [] - C:\WINDOWS\windows.ext

未知 - Process: 360Safe.exe [360安全卫士] - D:\Program Files\360safe\360Safe.exe

未知 - Process: fixtool.exe [] - C:\Documents and Settings\Administrator\桌面\fixtool.exe


DLL注入项 返回导航

Explorer.EXE - TrueSoft - C:\Program Files\FreeLaunchBar\flb.dll - Free Launch Bar - f3af0fd10570800bab93fdbe86b03607

Explorer.EXE - Beijing Rising Technology Co., Ltd. - C:\WINDOWS\system32\shlhook.dll - shlhook Module - 47c020cafb8486eb33061f7ccdf206b6


未签名驱动项 返回导航

ahcix86 - ATI Technology AHCI Compatible Controller Driver for Windows family - C:\WINDOWS\system32\drivers\ahci8086.sys - (running) - ATI Technology AHCI Compatible Controller Driver for Windows family - ATI Technologies Inc. - f1b9e3a223ca684d98bb91fd82157601

CdaC15BA - Macrovision SECURITY Driver - C:\WINDOWS\system32\drivers\CDAC15BA.SYS - (running) - Macrovision SECURITY Driver - Macrovision Europe Ltd - f76cb7259aa575cc53f3996bc6b68c18

ialm - Intel Graphics Miniport Driver - C:\WINDOWS\system32\drivers\igxpmp32.sys - (running) - Intel Graphics Miniport Driver - Intel Corporation -

JGOGO - SCSI Port upper filter driver - C:\WINDOWS\system32\drivers\jgogo.sys - (running) - SCSI Port upper filter driver - JMicron - c995c0e8b4503fac38793bb0236ad246

JRAID - JMicron JMB36X RAID Driver - C:\WINDOWS\system32\drivers\Jraid.sys - (running) - JMicron JMB36X RAID Driver - JMicron Technology Corp. - f5bf72eabc7e160bb6624168aad52dfe

m5228 - M5228 ATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5228.sys - (running) - M5228 ATA RAID Controller Driver - ALi Corporation. - 06c174e5c7845055c3d6317709af6423

m5281 - ALi SATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5281.sys - (running) - ALi SATA RAID Controller Driver - ALi Corporation - a51cd61975297508d4483fcbf931d86c

m5287 - ULi SATA Controller Driver - C:\WINDOWS\system32\drivers\m5287.sys - (running) - ULi SATA Controller Driver - ULi Electronics Inc. - 87cf2d570f452a5c1b9fc5c5a44389a5

m5288 - ULi SATA Controller Driver - C:\WINDOWS\system32\drivers\m5288.sys - (running) - ULi SATA Controller Driver - ULi Electronics Inc. - 485ed377977dc9661626aaab614504cf

m5289 - ULi SATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5289.sys - (running) - ULi SATA RAID Controller Driver - ULi Electronics Inc. - e1ca1ea9ad7c8c50ea533829a6854d63

mv61xx - Marvell Thor and Odin Windows Driver - C:\WINDOWS\system32\drivers\mv61xx.sys - (running) - Marvell Thor and Odin Windows Driver - Marvell Semiconductor, Inc. - 4de4706cf56c96e119dae20494cf31bb

nvatabus - NVIDIA? nForce(TM) IDE Performance Driver - C:\WINDOWS\system32\drivers\nvatabus.sys - (running) - NVIDIA? nForce(TM) IDE Performance Driver - NVIDIA Corporation - c03e15101f6d9e82cd9b0e7d715f5de3

nvgts - NVIDIA? nForce(TM) Sata Performance Driver - C:\WINDOWS\system32\drivers\nvgts.sys - (running) - NVIDIA? nForce(TM) Sata Performance Driver - NVIDIA Corporation - f0bf71e77bb6d96d0a34537d151b78d1

nvrd32 - NVIDIA? nForce(TM) RAID Driver - C:\WINDOWS\system32\drivers\nvrd32.sys - (running) - NVIDIA? nForce(TM) RAID Driver - NVIDIA Corporation - b42efd48258527426231b584a9b23b86

pjldqam - sys 应用程序 - C:\WINDOWS\system32\drivers\pjldqam.sys - (running) - sys 应用程序 - 北京三七二一科技有限公司 - 267760b1964306d63985b120ed2ec57c

QKeyService - KeyCrypt - C:\WINDOWS\system32\KeyCrypt.sys - (running) - KeyCrypt - Tencent Technology (Shenzhen) Company Limited - ecaa6d40a70bee079f3817601bec1692

RsAntiSpyware - Anti-RootKit Driver - C:\WINDOWS\system32\drivers\RsBoot.sys - (running) - Anti-RootKit Driver - Beijing Rising Technology Co., Ltd. - f9edc97f228c046832a24b5a76017912

SafeBoxKrnl - 360安全卫士 - 保险箱 - D:\Program Files\360Safebox\SafeBoxKrnl.sys - (running) - 360安全卫士 - 保险箱 - 奇虎网 - a608632e0987b3983753ed3d9795941d

SI3112r - Serial ATA RAID miniport driver - C:\WINDOWS\system32\drivers\Si3112r.sys - (running) - Serial ATA RAID miniport driver - Silicon Image, Inc - c82f9b4993f502361067e3ab61d46f7a

SiFilter - Windows Accelerator Driver - C:\WINDOWS\system32\drivers\SiWinAcc.sys - (running) - Windows Accelerator Driver - Silicon Image, Inc. - 72cf151fb410e544904dbc7d7f29b796

SiSRaid - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\sisraid.sys - (running) - SiS RAID Miniport Driver - Silicon Integrated Systems - 826b83cdaafb6e164bbc1d77cb99e2ce

ddsxeiservice - ddsxeiservice - C:\Program Files\sXe Injected\ddsxei.sys - (not running) - - - 114f4f0f4b400c12a10fc654f5f28f59

dohs - dohs - C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\tmp26.tmp - (not running) - - -

mhfp - mhfp - C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\tmp19.tmp - (not running) - - -

mnsf - mnsf - C:\DOCUME~1\ADM

[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
最后编辑2008-04-08 11:42:29
分享到:
gototop
 

日志不全,换SREBG扫描日志吧
gototop
 

完整日志发我邮箱
gototop
 

下载者
日志不全,先删除C:\WINDOWS\windows.ext再说
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT