1   1  /  1  页   跳转

[求助] 老大们,再帮我看看日志。

老大们,再帮我看看日志。

我的用的是双硬盘又系统,前阵子一个系统中毒了,一个确好好的。
中毒系统症状如下:
1.进谷歌网站却跑到百度去了,地址栏显示www.yahoo.com.cn
2.瑞星无法升级,提示:网络连接失败,请正确设置网络配置后重试。
3.用本系统的杀毒软件查不出一个病毒,防护软件自动消失,安装立即被删。
4.想用sreng2扫描也被删。

昨天我用没中毒系统的瑞星查了下,杀了不少。
但是:
1.进谷歌网站还是跑到百度去了,地址栏显示www.yahoo.com.cn
2.瑞星仍是无法升级,提示:网络连接失败,请正确设置网络配置后重试。
3.QQ无法启动,提示没有找到geuyim.dll,重新安装也是同样情况。
4.启动sreng2不会被删了。
5.系统属性里的高级项中的视觉效果,里面自定义一项都没了,我的电脑窗口左边栏操作栏都没有了。

日志如下,请老大们帮忙解决一下。

用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; MAXTHON 2.0)

附件附件:

文件名:SREngLOG.log
下载次数:105
文件类型:application/octet-stream
文件大小:
上传时间:2008-8-24 19:56:57
描述:log

分享到:
gototop
 

回复: 老大们,再帮我看看日志。

用SRE工具修复HOSTS 文件

系统修复--hosts文件----重置


还有删除这两个文件

若顽固删不掉,请到http://bbs.ikaka.com/showtopic-8442813-6.aspx  下载超级巡警暴力删除器1.4  。

D:\WINDOWS\system32\xyd\svchost.exe
D:\WINDOWS\system32\zxnrb.dll


暂时看出这么多。
gototop
 

回复 1F kakakasong 的帖子

看看快车
QQ
QQgame里是否有
wsock32.DLL?
gototop
 

回复: 老大们,再帮我看看日志。

1、卸载QQ和QQgame,然后完全删除其安装目录(请在卸载后,将E:\Program Files\Tencent这个目录下的QQ、QQGAME这两个文件夹完整删除);


2、进入注册表编辑器删除以下注册表值项:
(1)[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]<ecswg>
(2)[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{a560d854-2de8-723d-723d-3ef961ed0375}](此注册表子项在删除前请先备份)


3、运行SRENG扫描工具,系统修复--浏览器加载项,删除以下项:
[Promote Class]
  {0FA24E3E-422C-4D94-A125-104F32352C90} <D:\WINDOWS\system32\promote.dll, >
<注>以下这个浏览器加载项不知道是什么东西,请自行确认下,如果不正常,删除之;如果反之,就别管了:
[丫丫]
  {24C1EEFC-B121-4672-82D1-5C72560DE1A9} <E:\Program Files\丫丫\webgle.exe, >


4、在SRENG扫描工具主窗口,系统修复--hosts文件,找到以下内容,逐一删除,完成后选择“保存”:
219.235.3.16    search.114.vnet.cn
219.235.3.16    keyword.vnet.cn
219.235.3.16    auto.search.msn.com
219.235.3.16    search.msn.com
219.235.3.16    cnweb.search.live.com
219.235.3.16    www.360safe.com
219.235.3.16    www.k369.com
219.235.3.16    www.5566.net
219.235.3.16    360safe.com
202.165.102.243    update.360safe.com
219.235.3.16    dl.360safe.com
219.235.3.16    down.360safe.com
219.235.3.16    bbs.360safe.com
219.235.3.16    kaba.360safe.com
219.235.3.16    baike.360safe.com
219.235.3.16    www.360.cn
219.235.3.16    360.cn
219.235.3.16    wopti.360.cn
202.165.102.243    update.360.cn
219.235.3.16    dl.360.cn
219.235.3.16    down.360.cn
219.235.3.16    bbs.360.cn
219.235.3.16    kaba.360.cn
219.235.3.16    baike.360.cn
219.235.3.16    360.qihoo.com
219.235.3.16    360safe.qihoo.com
219.235.3.16    forum.ikaka.com
219.235.3.16    www.ikaka.com
202.165.102.243 update.ikaka.com
219.235.3.16    forum.jiangmin.com
202.165.102.243 update.jiangmin.com
219.235.3.16    tieba.baidu.com
219.235.3.16    post.baidu.com
219.235.3.16    zhidao.baidu.com
219.235.3.16    www.baidu.com
202.165.102.243 update.rising.com.cn
219.235.3.16    online.rising.com.cn
202.165.102.243 center.rising.com.cn
219.235.3.16    up.duba.net
219.235.3.16    vi.duba.net
219.235.3.16    shadu.baidu.com
219.235.3.16    du.baidu.com
219.235.3.16    security.symantec.com
219.235.3.16    shadu.duba.net
219.235.3.16    bbs.duba.net
219.235.3.16    www.duba.net
219.235.3.16    online.jiangmin.com
219.235.3.16    cn.mcafee.com
219.235.3.16    www.ahn.com.cn
219.235.3.16    www.kaspersky.com.cn
219.235.3.16    www.pcav.cn
219.235.3.16    www.luosoft.com
219.235.3.16    www.im286.com
219.235.3.16    an.baidu.com
219.235.3.16    ma.baidu.com
219.235.3.16    bbs.htmlman.net
202.165.102.243 download.rising.com.cn
202.165.102.243 rsup08.rising.com.cn
219.235.3.16    10000.286er.com
219.235.3.16    im286.net
219.235.3.16    ju.qihoo.com
219.235.3.16    bbs.chinaz.com
219.235.3.16    www.qihoo.com
202.165.102.243 dnl-cn1.kaspersky-labs.com
202.165.102.243 dnl-cn2.kaspersky-labs.com
202.165.102.243 dnl-cn3.kaspersky-labs.com
202.165.102.243 dnl-cn4.kaspersky-labs.com
202.165.102.243 dnl-cn5.kaspersky-labs.com
202.165.102.243 dnl-cn6.kaspersky-labs.com
202.165.102.243 dnl-cn7.kaspersky-labs.com
202.165.102.243 dnl-cn8.kaspersky-labs.com
202.165.102.243 dnl-cn9.kaspersky-labs.com
202.165.102.243 dnl-cn10.kaspersky-labs.com
202.165.102.243 dnl-cn11.kaspersky-labs.com
202.165.102.243 dnl-cn12.kaspersky-labs.com
202.165.102.243 dnl-cn13.kaspersky-labs.com
202.165.102.243 dnl-cn14.kaspersky-labs.com
202.165.102.243 dnl-cn15.kaspersky-labs.com
202.165.102.243    dnl-eu1.kaspersky-labs.com
202.165.102.243    dnl-eu2.kaspersky-labs.com
202.165.102.243    dnl-eu3.kaspersky-labs.com
202.165.102.243    dnl-eu4.kaspersky-labs.com
202.165.102.243    dnl-eu5.kaspersky-labs.com
202.165.102.243    dnl-eu6.kaspersky-labs.com
202.165.102.243    dnl-eu7.kaspersky-labs.com
202.165.102.243    dnl-eu8.kaspersky-labs.com
202.165.102.243    dnl-eu9.kaspersky-labs.com
202.165.102.243    dnl-eu10.kaspersky-labs.com
202.165.102.243    dnl-eu11.kaspersky-labs.com
202.165.102.243    dnl-eu12.kaspersky-labs.com
202.165.102.243    dnl-eu13.kaspersky-labs.com
202.165.102.243    dnl-eu14.kaspersky-labs.com
202.165.102.243    dnl-eu15.kaspersky-labs.com
202.165.102.243    dnl-us1.kaspersky-labs.com
202.165.102.243    dnl-us2.kaspersky-labs.com
202.165.102.243    dnl-us3.kaspersky-labs.com
202.165.102.243    dnl-us4.kaspersky-labs.com
202.165.102.243    dnl-us5.kaspersky-labs.com
202.165.102.243    dnl-us6.kaspersky-labs.com
202.165.102.243    dnl-us7.kaspersky-labs.com
202.165.102.243    dnl-us8.kaspersky-labs.com
202.165.102.243    dnl-us9.kaspersky-labs.com
202.165.102.243    dnl-us10.kaspersky-labs.com
202.165.102.243    dnl-us11.kaspersky-labs.com
202.165.102.243    dnl-us12.kaspersky-labs.com
202.165.102.243    dnl-us13.kaspersky-labs.com
202.165.102.243    dnl-us14.kaspersky-labs.com
202.165.102.243    dnl-us15.kaspersky-labs.com
202.165.102.243    dnl-ru1.kaspersky-labs.com
202.165.102.243    dnl-ru2.kaspersky-labs.com
202.165.102.243    dnl-ru3.kaspersky-labs.com
202.165.102.243    dnl-ru4.kaspersky-labs.com
202.165.102.243    dnl-ru5.kaspersky-labs.com
202.165.102.243    dnl-ru6.kaspersky-labs.com
202.165.102.243    dnl-ru7.kaspersky-labs.com
202.165.102.243    dnl-ru8.kaspersky-labs.com
202.165.102.243    dnl-ru9.kaspersky-labs.com
202.165.102.243    dnl-ru10.kaspersky-labs.com
202.165.102.243    dnl-ru11.kaspersky-labs.com
202.165.102.243    dnl-ru12.kaspersky-labs.com
202.165.102.243    dnl-ru13.kaspersky-labs.com
202.165.102.243    dnl-ru14.kaspersky-labs.com
202.165.102.243    dnl-ru15.kaspersky-labs.com
202.165.102.243    dnl-jp1.kaspersky-labs.com
202.165.102.243    dnl-jp2.kaspersky-labs.com
202.165.102.243    dnl-jp3.kaspersky-labs.com
202.165.102.243    dnl-jp4.kaspersky-labs.com
202.165.102.243    dnl-jp5.kaspersky-labs.com
202.165.102.243    dnl-jp6.kaspersky-labs.com
202.165.102.243    dnl-jp7.kaspersky-labs.com
202.165.102.243    dnl-jp8.kaspersky-labs.com
202.165.102.243    dnl-jp9.kaspersky-labs.com
202.165.102.243    dnl-jp10.kaspersky-labs.com
202.165.102.243    dnl-jp11.kaspersky-labs.com
202.165.102.243    dnl-jp12.kaspersky-labs.com
202.165.102.243    dnl-jp13.kaspersky-labs.com
202.165.102.243    dnl-jp14.kaspersky-labs.com
202.165.102.243    dnl-jp15.kaspersky-labs.com
202.165.102.243    dnl-kr1.kaspersky-labs.com
202.165.102.243    dnl-kr2.kaspersky-labs.com
202.165.102.243    dnl-kr3.kaspersky-labs.com
202.165.102.243    dnl-kr4.kaspersky-labs.com
202.165.102.243    dnl-kr5.kaspersky-labs.com
202.165.102.243    dnl-kr6.kaspersky-labs.com
202.165.102.243    dnl-kr7.kaspersky-labs.com
202.165.102.243    dnl-kr8.kaspersky-labs.com
202.165.102.243    dnl-kr9.kaspersky-labs.com
202.165.102.243    dnl-kr10.kaspersky-labs.com
202.165.102.243    dnl-kr11.kaspersky-labs.com
202.165.102.243    dnl-kr12.kaspersky-labs.com
202.165.102.243    dnl-kr13.kaspersky-labs.com
202.165.102.243    dnl-kr14.kaspersky-labs.com
202.165.102.243    dnl-kr15.kaspersky-labs.com
202.165.102.243    dnl-cd1.kaspersky-labs.com
202.165.102.243    dnl-cd2.kaspersky-labs.com
202.165.102.243    dnl-cd3.kaspersky-labs.com
202.165.102.243    dnl-cd4.kaspersky-labs.com
202.165.102.243    dnl-cd5.kaspersky-labs.com
202.165.102.243    dnl-cd6.kaspersky-labs.com
202.165.102.243    dnl-cd7.kaspersky-labs.com
202.165.102.243    dnl-cd8.kaspersky-labs.com
202.165.102.243    dnl-cd9.kaspersky-labs.com
202.165.102.243    dnl-cd10.kaspersky-labs.com
202.165.102.243    dnl-cd11.kaspersky-labs.com
202.165.102.243    dnl-cd12.kaspersky-labs.com
202.165.102.243    dnl-cd13.kaspersky-labs.com
202.165.102.243    dnl-cd14.kaspersky-labs.com
202.165.102.243    dnl-cd15.kaspersky-labs.com
202.165.102.243    downloads1.kaspersky-labs.com
202.165.102.243    downloads2.kaspersky-labs.com
202.165.102.243    downloads3.kaspersky-labs.com
202.165.102.243    downloads4.kaspersky-labs.com
202.165.102.243    downloads5.kaspersky-labs.com
219.235.3.16      rss.360safe.com
219.235.3.16      x.360safe.com
219.235.3.16      d.360safe.com
219.235.3.16      updatem.360safe.com
219.235.3.16      softm.360safe.com
219.235.3.16      ishare.sina.com.cn
219.235.3.16      search.cn.yahoo.com
219.235.3.16      www.google.com
219.235.3.16      google.com
219.235.3.16      www.google.cn
219.235.3.16      www.yahoo.com.cn
219.235.3.16      cn.yahoo.com
219.235.3.16      search.tom.com
219.235.3.16      zhuansha.duba.net
219.235.3.16      buy.duba.net
219.235.3.16      kad.www.duba.net
219.235.3.16      cu001.www.duba.net
219.235.3.16      cu002.www.duba.net
219.235.3.16      cu003.www.duba.net
219.235.3.16      cu004.www.duba.net
219.235.3.16      cu005.www.duba.net
219.235.3.16      cu010.www.duba.net
219.235.3.16      client.download.duba.net
219.235.3.16      page.so.163.com
219.235.3.16      www.soso.com
219.235.3.16      sou.china.com
219.235.3.16      test.591jx.com
219.235.3.16      a.topxxxx.cn
219.235.3.16      picon.chinaren.com
219.235.3.16      www.5566.net


4、重启电脑,用WINRAR压缩工具找到和删除以下文件(找不到的就算了):
D:\WINDOWS\system32\zxnrb.dll
D:\WINDOWS\system32\xyd\svchost.exe
D:\WINDOWS\system32\promote.dll


5、卸载瑞星杀软,完整删除D:\Program Files\Rising\Rav这个文件夹,然后重装瑞星并升级到最新版本;

6、到QQ官网(http://www.qq.com)下载QQ安装包,重装QQ和QQGAME。
最后编辑超级游戏迷 最后编辑于 2008-08-24 21:02:03
打酱油的……
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT