



......
我的朋友的电脑不知道中了什么毒
有很多SVCHOST.EXE进程
而且
用清理助手也扫出了很多木马
清理助手日志如下
-----------------------分割线---------------------------------
[2.8.1.8.0815 - 2.8.16.8.1006]
2008-10-07 13:25
[Hidden Object]
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\951A9367CC7BD5AE50B2218DFC6E18A1\BIT8.TMP
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\951A9367CC7BD5AE50B2218DFC6E18A1\_DOWNLOADPROGRESS_.STATE
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\951A9367CC7BD5AE50B2218DFC6E18A1\_USESELFCONTAINED_.STATE
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\951A93~1\BIT8.TMP
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\951A93~1\_DOWNLOADPROGRESS_.STATE
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\951A93~1\_USESELFCONTAINED_.STATE
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\BDCEAD21BC45F7A4AA7E8466E6D0F49B\_DOWNLOADPROGRESS_.STATE
C:\WINDOWS\SOFTWAREDISTRIBUTION\DOWNLOAD\BDCEAD21BC45F7A4AA7E8466E6D0F49B\_USESELFCONTAINED_.STATE
[2.8.1.8.0815 - 2.8.17.8.1007]
2008-10-09 18:02
[Maybe Useless object]
C:\WINDOWS\APPPATCH\ALLAYER.DLL
[2.8.1.8.0815 - 2.8.25.8.1031]
2008-11-01 16:30
[Unknown Trojan Horse/Virus]
C:\WINDOWS\SYSTEM32\J3EWRO.EXE
C:\WINDOWS\SYSTEM32\JWEDSFDO0.DLL
[2.8.1.8.0815 - 2.8.25.8.1031]
2008-11-01 16:30
[flasher问题加载项]
HKEY_CLASSES_ROOT\CLSID\{B45FF030-4447-11D2-85DE-00C04FA35C89}
HKEY_CLASSES_ROOT\SEARCHASSISTANTOC.SEARCHASSISTANTOC
HKEY_CLASSES_ROOT\SEARCHASSISTANTOC.SEARCHASSISTANTOC.1
HKEY_CLASSES_ROOT\TYPELIB\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{B45FF030-4447-11D2-85DE-00C04FA35C89}
HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\TYPELIB\{EAB22AC0-30C1-11CF-A7EB-0000C05BAE0B}
[2.8.1.8.0815 - 2.8.25.8.1031]
2008-11-01 16:30
[木马病毒]
C:\WINDOWS\SYSTEM32\MSDMO.DLL
-----------------------分割线---------------------------------
用IE打开网站的时候
按链结会没反应



用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)