晕。我去下载清理助手时,安装了迅雷,电脑说系统资源不足。装不了。然后网页定死了,我关掉了一个,结果所有网页全关了。
这样吧,我先把我在别处用软件分析的结果给大家看一下。帮我看看中了什么毒!
在电脑里运行msconfig,说找不到。郁闷。还有电脑显示器的分辨率好像只有60赫兹的选项,原来是齐的。
以下是我查的内容,帮忙看下。谢谢了。
-------------------进程及其启动命令-------------------------
-
PROCESS PID COMMAND LINE
smss.exe 608 \SystemRoot\System32\smss.exe
csrss.exe 668 C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
winlogon.exe 700 winlogon.exe
debug.exe 720 C:\WINDOWS\system32\debug.exe
services.exe 756 C:\WINDOWS\system32\services.exe
lsass.exe 768 C:\WINDOWS\system32\lsass.exe
Ati2evxx.exe 940 C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe 968 C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe 1064 C:\WINDOWS\system32\svchost -k rpcss
CCenter.exe 1168 "C:\Program Files\Rising\Rav\CCenter.exe"
svchost.exe 1184 C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe 1272 C:\WINDOWS\system32\svchost.exe -k NetworkService
svchost.exe 1384 C:\WINDOWS\system32\svchost.exe -k LocalService
Ati2evxx.exe 1420 Ati2evxx.exe -Client
ravmond.exe 1564 "C:\PROGRAM FILES\RISING\RAV\ravmond.exe" -step
rfwsrv.exe 1600 C:\软件\瑞星系列\Rising\Rfw\rfwsrv.exe
rfwProxy.exe 1648 C:\软件\瑞星系列\Rising\Rfw\rfwProxy.exe
rfwstub.exe 1964 "rfwstub.exe" -rfwsrv
Explorer.EXE 220 C:\WINDOWS\Explorer.EXE
RavStub.exe 436 "C:\PROGRAM FILES\RISING\RAV\RavStub.exe" /RAVMOND=1023
spoolsv.exe 536 C:\WINDOWS\system32\spoolsv.exe
RTHDCPL.EXE 1792 "C:\WINDOWS\RTHDCPL.EXE"
MOM.exe 1852 "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM"
rstray.exe 1836 "C:\软件\瑞星系列\rstray.exe" /startup
RavTask.exe 2012 "C:\Program Files\Rising\Rav\RavTask.exe" -system
Rundll32.exe 2068 "C:\WINDOWS\system32\Rundll32.exe" C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll,Rundll32 R
Ravmon.exe 2080 "C:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM
ctfmon.exe 2232 "C:\WINDOWS\system32\ctfmon.exe"
ccc.exe 2444 "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe" 0
LSSrvc.exe 10924 "C:\Program Files\Common Files\LightScribe\LSSrvc.exe"
NBService.exe 11020 "C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe"
wdfmgr.exe 11152 C:\WINDOWS\system32\wdfmgr.exe
alg.exe 11484 C:\WINDOWS\System32\alg.exe
Rsaupd.exe 48884 "C:\软件\瑞星系列\Rsaupd.exe" AutoUpdate
暗凶改进版.EXE 57008 "C:\Documents and Settings\user\桌面\暗凶改进版.EXE"
conime.exe 57024 C:\WINDOWS\system32\conime.exe
cmd.exe 57032 cmd.exe /c C:\DOCUME~1\user\LOCALS~1\Temp\bt7553.bat
暗凶门诊.com 55484 暗凶门诊.com -l
-
-------------------注册表启动项-------------------------
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
StartCCC REG_SZ "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
RTHDCPL REG_SZ RTHDCPL.EXE
Alcmtr REG_SZ ALCMTR.EXE
NeroFilterCheck REG_SZ C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
runeip REG_SZ "C:\软件\瑞星系列\rstray.exe" /s
RfwMain REG_SZ "C:\软件\瑞星系列\Rising\Rfw\rfwmain.exe" -S
RavTask REG_SZ "C:\Program Files\Rising\Rav\RavTask.exe" -system
stup.exe REG_SZ Rundll32.exe C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll,Rundll32 R
KernelFaultCheck REG_EXPAND_SZ %systemroot%\system32\dumprep 0 -k
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\RsAutorunsDisabled
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\RsAutorunsDisabled
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce
-
-------------------引导执行----------------------------
-
-------------------初始程序----------------------------
-
-------------------资源管理器加载项---------------------
-
-------------------IE加载项----------------------------
-
-------------------映像劫持----------------------------
-
-------------------HOSTS文件内容----------------------------
-
-------------------各个盘的autorun.inf----------------------------
是不是有毒啊。
暗凶改进版.EXE 57008 "C:\Documents and Settings\user\桌面\暗凶改进版.EXE" 。
这个是分析软件。