瑞星卡卡安全论坛技术交流区系统软件 【求助】最近电脑经常蓝屏显示IRQL-NOT-LESS-OR-EQUAL

1   1  /  1  页   跳转

【求助】最近电脑经常蓝屏显示IRQL-NOT-LESS-OR-EQUAL

【求助】最近电脑经常蓝屏显示IRQL-NOT-LESS-OR-EQUAL

请帮忙看看hijackthis日志,谢谢!
Logfile of HijackThis v1.99.1
Scan saved at 16:46:22, on 2007-3-2
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
D:\瑞星杀毒\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
D:\瑞星杀毒\Rising\Rav\Ravmond.exe
C:\WINDOWS\Explorer.EXE
D:\瑞星杀毒\Rising\Rav\RavTask.exe
D:\瑞星杀毒\Rising\Rav\Ravmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\卡卡\runiep.exe
C:\Program Files\Orinno\DYClient\DYClient.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX13.313\HijackThis.exe

R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: (no name) - {A31835C5-5E1E-4F35-B986-65BF19648DC1} - (no file)
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\KakaTool.dll
O4 - HKLM\..\Run: [RavTask] "D:\瑞星杀毒\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [runeip] D:\卡卡\runiep.exe
O4 - HKCU\..\Run: [DYCLIENT] C:\Program Files\Orinno\DYClient\DYClient.exe WS_MINIMIZE
O8 - Extra context menu item: &使用迅雷下载 - D:\迅雷\Program\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - D:\迅雷\Program\getallurl.htm
O9 - Extra button: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - D:\迅雷\Thunder.exe
O9 - Extra 'Tools' menuitem: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - D:\迅雷\Thunder.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=
O14 - IERESET.INF: START_PAGE_URL=
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1172651740405
O16 - DPF: {DC7094C6-8F61-42ED-AECE-63F5EEF647C5} (UpdateC2 Control) - http://www.uusee.com/player/updateC2.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{68904839-108D-4E01-B2BD-8E49F043E7EA}: NameServer = 202.102.152.3
O17 - HKLM\System\CCS\Services\Tcpip\..\{79BFC5C8-5682-449E-A714-2E32C88331DE}: NameServer = 202.102.152.3
O17 - HKLM\System\CCS\Services\Tcpip\..\{D2083DBF-62F1-4A09-9E9D-B6E1CDF0AC66}: NameServer = 219.150.32.132 219.146.0.130
O17 - HKLM\System\CCS\Services\Tcpip\..\{F85EE88D-31E4-4E94-8D36-CF8D92816CD8}: NameServer = 202.102.128.60,218.56.57.58
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - (no file)
O20 - AppInit_DLLs: APIHookDll.dll
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - D:\瑞星杀毒\Rising\Rav\CCenter.exe
O23 - Service: Rising RealTime Monitor (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\瑞星杀毒\Rising\Rav\Ravmond.exe
O23 - Service: Windows User Mode Driver Framework (UMWdf) - Promise Technology, Inc. - (no file)
O23 - Service: Windows XP Vista        - Unknown owner - C:\WINDOWS\Hacker.com.cn.ini (file missing)

最后编辑2007-03-02 18:22:59.560000000
分享到:
gototop
 

winxp需要激活

gototop
 

O23 - Service: Windows XP Vista - Unknown owner - C:\WINDOWS\Hacker.com.cn.ini (file missing)
是他了  他是木马,停止和禁用此服务,然后进入该路劲删除此文件
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT