瑞星卡卡安全论坛技术交流区系统软件 高手们进来帮小弟解决下~~

1   1  /  1  页   跳转

高手们进来帮小弟解决下~~

高手们进来帮小弟解决下~~

本人现在机器运行速度比较慢~系统是重装过了~而且现在用了卡巴思基重新杀了下 共完全清楚106个病毒,其中包括木马) 另外也用360安全卫士清除了电脑的恶意程序.
  麻烦高手看下为什么机器有点慢,而且显示"计算机物理内存:255MB - 当前可用内存:16MB"这是为什么啊?以下附上日志:
  各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2006-10-25  23:55:50
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180 Build:62900.2180
计算机物理内存:255MB - 当前可用内存:16MB

100 - 未知 - Process: QQ.exe [QQ] - D:\QQ\QQ.exe
100 - 未知 - Process: QQ.exe [QQ] - D:\QQ\QQ.exe
100 - 未知 - Process: QQLive.exe [QQLive] - "D:\QQLIVE\QQLive.exe"
100 - 未知 - Process: TVLoge.exe [QQLive TVLoge] -  logeip=58.60.11.209 logeport=80 chatip=58.60.11.209 chatport=80 projectid=575611131 projectname=郑伊健:古惑仔系列--炎黄互动白云剧场 roomid=4033 logeid=1 enterlogetype=1 pathname='郑伊健:古惑仔系列--炎黄互动白云剧场' curprogname='' needpay=0 bannerId=5 banner
O9 - 未知 - Extra button: Sun Java 控制台(HKLM) - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - 未知 - Extra button: 浩方对战平台(HKLM) - D:\浩方对战平台\gameclient.exe
O9 - 未知 - Extra button: JUJU猫宽带宝藏论坛(HKLM) - http://www.jujumao.net
O11 - 未知 - Options Group: Java (Sun)
O16 - 未知 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} (Java Plug-in 1.5.0) - http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - \SystemRoot\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestT
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - "C:\WINDOWS\system32\ctfmon.exe"

最后编辑2006-10-27 02:24:01
分享到:
gototop
 

100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: SMAgent.exe [一个声卡相关软件。] - "C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe"
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] - C:\WINDOWS\system32\wdfmgr.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: wscntfy.exe [是microsoft windows安全系统和输出当前安全身份的一部分,用于其电脑的稳定性以及安全运行的。] - C:\WINDOWS\system32\wscntfy.exe
100 - 安全 - Process: iexplore.exe [microsoft internet explorer浏览器用于浏览网页。] - "C:\Program Files\Internet Explorer\iexplore.exe"
100 - 安全 - Process: 360Safe.exe [360安全卫士相关程序。] - "C:\Program Files\360safe\360Safe.exe"
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll
O4 - 安全 - HKLM\..\Run: [HF_GameClient] [浩方对战平台相关程序。] D:\浩方对战平台\gameclient.exe
O4 - 安全 - HKLM\..\Run: [kav] [卡巴斯基杀毒软件相关程序。] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O8 - 安全 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - 安全 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - 安全 - Extra button: Windows Messenger(HKLM) - C:\Program Files\Messenger\msmsgs.exe
O16 - 安全 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (Windows升级工具V5) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1112018624531
O16 - 安全 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in) - http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab
O23 - 安全 - Service: AVP [卡巴斯基杀毒软件相关程序。] - "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r
O23 - 安全 - Service: SoundMAX Agent Service (default) [是Analog SoundMAX声卡产品相关程序。] - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

=======================================

040 - winlogon.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - winlogon.exe - Kaspersky Lab - C:\WINDOWS\system32\klogon.dll - Logon Visualizer
040 - winlogon.exe - Microsoft Corporation - C:\WINDOWS\system32\asycfilt.dll -
040 - services.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - lsass.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - svchost.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - svchost.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - svchost.exe - SoundMAX - C:\WINDOWS\System32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - svchost.exe - Microsoft Corporation - C:\WINDOWS\system32\wups.dll - Windows Update client proxy stub
040 - svchost.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - svchost.exe - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - Explorer.EXE - SoundMAX - C:\WINDOWS\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver
040 - Explorer.EXE - Thunder Networking Technologies,LTD - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll - XunLeiBHO
040 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\pr_remote.dll - PR_REMOTE
040 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll - Prague Loader
040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\MSISIP.DLL - MSI Signature SIP Provider
040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\wshext.dll - Microsoft (r) Shell Extension for Windows Script Host
040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\MFC42.DLL - MFCDLL Shared Library - Retail Version
040 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\system32\wshCHS.DLL - Microsoft (r) Windows Script Host International Resources

=======================================

041 - a320raid - Adaptec HostRAID for Ultra320 SCSI - C:\WINDOWS\system32\drivers\a320raid.sys
041 - aar1210 - Adaptec HostRAID for Serial ATA - C:\WINDOWS\system32\drivers\aar1210.sys
041 - abp480n5 - AdvanSys SCSI Controller Driver - C:\WINDOWS\system32\drivers\abp480n5.sys
041 - adpu160m - Adaptec Ultra160 SCSI miniport - C:\WINDOWS\system32\drivers\adpu160m.sys
041 - adpu320 - Adaptec Win2K/XP/Server2003 Ultra320 SCSI Driver - C:\WINDOWS\system32\drivers\adpu320.sys
041 - aeaudio - Andrea Audio Stub Driver - C:\WINDOWS\system32\drivers\aeaudio.sys
041 - aec6210 - aec6210 - C:\WINDOWS\system32\drivers\AEC6210.sys
041 - aec6260 - ID=0006, 0007 - C:\WINDOWS\system32\drivers\AEC6260.sys
041 - aec6280 - AEC6280 Miniport Driver - C:\WINDOWS\system32\drivers\AEC6280.SYS
041 - AEC6890 - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver - C:\WINDOWS\system32\drivers\AEC6890.SYS
041 - aec68x5 - AEC6885/95/96 PCI ATA133 4 Channel RAID Adapter Driver - C:\WINDOWS\system32\drivers\aec68X5.sys
041 - Aha154x - Adaptec AHA-154x series SCSI miniport - C:\WINDOWS\system32\drivers\aha154x.sys
gototop
 

041 - aic78u2 - Adaptec Ultra2 SCSI miniport - C:\WINDOWS\system32\drivers\aic78u2.sys
041 - aic78xx - Adaptec Ultra SCSI miniport - C:\WINDOWS\system32\drivers\aic78xx.sys
041 - AmdK7 - Processor Device Driver - C:\WINDOWS\system32\drivers\amdk7.sys
041 - amsint - AMD SCSI/NET Controller - C:\WINDOWS\system32\drivers\amsint.sys
041 - asc - AdvanSys SCSI Controller Driver - C:\WINDOWS\system32\drivers\asc.sys
041 - asc3550 - AdvanSys Ultra-Wide PCI SCSI Driver - C:\WINDOWS\system32\drivers\asc3550.sys
041 - cbidf - CardBus/PCMCIA IDE Miniport Driver - C:\WINDOWS\system32\drivers\cbidf2k.sys
041 - Cpqarray - Compaq Drive Array Controllers SCSI Miniport Driver - C:\WINDOWS\system32\drivers\cpqarray.sys
041 - dac2w2k - Mylex Disk Array Controller Driver - C:\WINDOWS\system32\drivers\dac2w2k.sys
041 - dac960nt - Mylex Disk Array Controller Driver - C:\WINDOWS\system32\drivers\dac960nt.sys
041 - dpti2o - dpti2o - C:\WINDOWS\System32\DRIVERS\dpti2o.sys
041 - es1371 - ENSONIQ AudioPCI 97 WDM Audio Miniport - C:\WINDOWS\system32\drivers\es1371mp.sys
041 - fasttrak - Promise FastTrak Series Driver for WinXP - C:\WINDOWS\system32\drivers\fasttrak.sys
041 - fasttx2k - Promise Driver for Windows XP - C:\WINDOWS\system32\drivers\fasttx2k.sys
041 - fasttx2k2 - Promise FastTrak Series Driver for WindowsXP - C:\WINDOWS\system32\drivers\fasttx2k2.sys
041 - gameenum - Game Port Enumerator - C:\WINDOWS\system32\drivers\gameenum.sys
041 - hpn - NetRAID-4M Miniport Driver - C:\WINDOWS\system32\drivers\hpn.sys
041 - Hpt366 - ATAPI IDE Miniport Driver - C:\WINDOWS\system32\drivers\hpt366.sys
041 - HPT371 - HPT3xx Miniport Driver - C:\WINDOWS\system32\drivers\hpt371.sys
041 - hpt374 - HPT374 Miniport Driver - C:\WINDOWS\system32\drivers\hpt374.sys
041 - hpt3xx - HPT3xx Miniport Driver - C:\WINDOWS\system32\drivers\hpt3xx.sys
041 - hptmv - hptmv Miniport Driver - C:\WINDOWS\system32\drivers\hptmv.sys
041 - hptpro - Hptpro - C:\WINDOWS\system32\drivers\hptpro.sys
041 - i2omp - I2O Miniport Driver - C:\WINDOWS\system32\drivers\i2omp.sys
041 - iaStor - Intel Application Accelerator driver - C:\WINDOWS\system32\drivers\iastor.sys
041 - ini910u - INITIO ini910u SCSI miniport - C:\WINDOWS\system32\drivers\ini910u.sys
041 - iteraid - ITE IT8212 ATA RAID SCSI miniport - C:\WINDOWS\system32\drivers\iteraid.sys
041 - kl1 - Kaspersky Unified Driver - C:\WINDOWS\system32\drivers\kl1.sys
041 - klif - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys
041 - m5228 - M5228 ATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5228.sys
041 - m5281 - M5281 SATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5281.sys
041 - mraid2k - MEGARAID SCSI Controller Driver for Windows 2000 PAE - C:\WINDOWS\system32\drivers\MRAID2K.SYS
041 - mraid35x - MegaRAID RAID Controller Driver for Windows Whistler 32 - C:\WINDOWS\system32\drivers\mraid35x.sys
041 - PCnet - NDIS 5.0 driver - C:\WINDOWS\system32\drivers\pcntpci5.sys
041 - perc2 - PERC 2 Miniport Driver - C:\WINDOWS\system32\drivers\perc2.sys
041 - perc2hib - PERC 2 Hibernate Driver - C:\WINDOWS\system32\drivers\perc2hib.sys
041 - Pnp680 - DMA capable ATA miniport driver - C:\WINDOWS\system32\drivers\Pnp680.sys
041 - Pnp680r - DMA capable ATA RAID miniport driver  - C:\WINDOWS\system32\drivers\PnP680r.sys
041 - Processor - Processor Device Driver - C:\WINDOWS\system32\drivers\processr.sys
041 - ql1080 - Miniport Driver for QLogic ISP PCI Adapters - C:\WINDOWS\system32\drivers\ql1080.sys
041 - Ql10wnt - Miniport Driver for QLogic ISP PCI Adapters - C:\WINDOWS\system32\drivers\ql10wnt.sys
041 - ql12160 - Miniport Driver for QLogic ISP PCI Adapters - C:\WINDOWS\system32\drivers\ql12160.sys
041 - ql1240 - QLogic ISP PCI Adapters - C:\WINDOWS\system32\drivers\ql1240.sys
041 - ql1280 - Miniport Driver for QLogic ISP PCI Adapters - C:\WINDOWS\system32\drivers\ql1280.sys
041 - SI3112 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3112.sys
041 - SI3112r - Serial ATA RAID Miniport Driver - C:\WINDOWS\system32\drivers\Si3112r.sys
041 - SI3114 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3114.sys
041 - SI3114r - SATARAID Miniport Driver - C:\WINDOWS\system32\drivers\Si3114r.sys
041 - SI3124 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3124.sys
041 - SI3124r - SATARAID miniport driver (PRE-RELEASE) - C:\WINDOWS\system32\drivers\Si3124r.sys
041 - SiFilter - Windows Accelerator Driver - C:\WINDOWS\system32\drivers\SiWinAcc.sys
041 - SiSRaid - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\sisraid.sys
041 - SiSRaid1 - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\sisraid1.sys
041 - smwdm - SoundMAX Integrated Digital Audio  - C:\WINDOWS\system32\drivers\smwdm.sys
041 - Sparrow - Adaptec AIC-6x60 series SCSI miniport - C:\WINDOWS\system32\drivers\sparrow.sys
041 - sptrak - Promise SuperTrak Family Driver for WindowsNT - C:\WINDOWS\system32\drivers\Sptrak.sys
041 - symc810 - Symbios Logic Inc. SCSI Miniport Driver - C:\WINDOWS\system32\drivers\symc810.sys
041 - symc8xx - Symbios 8XX SCSI Miniport Driver - C:\WINDOWS\system32\drivers\symc8xx.sys
041 - sym_hi - Symbios Hi-Perf SCSI Miniport Driver - C:\WINDOWS\system32\drivers\sym_hi.sys
041 - sym_u3 - Symbios Ultra3 SCSI Miniport Driver - C:\WINDOWS\system32\drivers\sym_u3.sys
041 - UlSata - Promise Ultra/Sata Series Driver for WinXP - C:\WINDOWS\system32\drivers\ulsata.sys
041 - ultra - Promise Ultra66 Miniport 驱动程序 - C:\WINDOWS\system32\drivers\ultra.sys
041 - viamraid - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - C:\WINDOWS\system32\drivers\viamraid.sys
041 - viapdsk - VIA VT4149 PATA Driver - C:\WINDOWS\system32\drivers\viapdsk.sys
041 - viaraid - VT6410 RAID DRIVER FOR WINXP - C:\WINDOWS\system32\drivers\viaraid.sys
041 - viasraid - VIA SATA RAID DRIVER FOR WINXP - C:\WINDOWS\system32\drivers\viasraid.sys
041 - vmscsi - VMware SCSI Controller - C:\WINDOWS\system32\drivers\vmscsi.sys

=======================================
360Safe.exe=2.0.1.2002
AntiAdwa.dll=2.0.1.1000
AntiEng.dll=2.0.1.2002
AntiActi.dll=2.0.0.3000
CleanHis.dll=2.0.0.1001
safelive.exe=1.0.0.1002
live.dll=1.0.0.1011

=======================================
操作历史报告:
----------查杀恶意软件历史----------

2006-10-25 02:09
查杀恶意软件 - Tray - 危险 - C:\WINDOWS\command\rundll32.exe
查杀恶意软件 - wow - 危险 - C:\WINDOWS\system32\Launcher.exe
查杀恶意软件 - u1.sky99.cn - 危险 - C:\WINDOWS\system32\ztdll.dll
查杀恶意软件 - wm恶意软件 - 危险 - C:\WINDOWS\system32\grtosts.exe
查杀恶意软件 - wl恶意软件 - 危险 -

2006-10-25 02:13
查杀恶意软件 - Tray - 危险 -
查杀恶意软件 - u1.sky99.cn - 危险 -
2006-10-25 02:32
查杀恶意软件 - u1.sky99.cn - 危险 - C:\WINDOWS\rundl132.exe

2006-10-25 04:11
查杀恶意软件 - u1.sky99.cn - 危险 - C:\WINDOWS\rundl132.exe

2006-10-25 22:26
查杀恶意软件 - u1.sky99.cn - 危险 - C:\WINDOWS\system32\ztdll.dll


----------插件卸载操作历史----------

2006-10-25 02:10
插件管理 - Tray - C:\WINDOWS\system32\tdll.dll
插件管理 - u1.sky99.cn - C:\WINDOWS\system32\ztdll.dll

----------全面诊断修复历史----------

2006-10-25 02:10
100 - 危险 - Logo1_.exe - C:\WINDOWS\Logo1_.exe
100 - 危险 - 1Sy.exe - C:\WINDOWS\1Sy.exe
R0 - 危险 - IE起始页的默认页 - HKLM\Software\Microsoft\Internet Explorer\Main
O1 - 危险 - 域名解析文件(HOSTS) - C:\WINDOWS\System32\drivers\etc\HOSTS
O14 - 危险 - Web原始设置IERESET.INF - C:\WINDOWS\inf\iereset.inf

----------修复IE浏览器操作历史----------

2006-10-25 02:33
O27 - 危险 - 登录提示框标题 - HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
O27 - 危险 - 登录提示框文字 - HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
2006-10-25 04:10
100 - 危险 - Logo1_.exe - C:\WINDOWS\Logo1_.exe
2006-10-25 22:03
100 - 危险 - Logo1_.exe - C:\WINDOWS\Logo1_.exe
100 - 危险 - 1Sy.exe - C:\Program Files\Internet Explorer\1Sy.exe
100 - 危险 - svhost32.exe - C:\Program Files\svhost32.exe

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基V6.0
gototop
 

怎么都没高手来解决下啊 郁闷ING!高手全都没有了吗
gototop
 

用卡巴斯基如果没有足够的配置的话,那就变成了卡吧死机了,还有杀了毒并不代表你的系统就干净了,清理启动加载项也很重要
gototop
 

2006-10-25 02:33
O27 - 危险 - 登录提示框标题 - HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
O27 - 危险 - 登录提示框文字 - HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
2006-10-25 04:10
100 - 危险 - Logo1_.exe - C:\WINDOWS\Logo1_.exe
2006-10-25 22:03
100 - 危险 - Logo1_.exe - C:\WINDOWS\Logo1_.exe
100 - 危险 - 1Sy.exe - C:\Program Files\Internet Explorer\1Sy.exe
100 - 危险 - svhost32.exe - C:\Program Files\svhost32.exe
这里看到一个程序C:\WINDOWS\Logo1_.exe是威金,你去C:\WINDOWS\查下有没有Logo1_.exe
rundl132.exe dll.dll这三个文件,有了就中威金了
gototop
 

用瑞星杀呢?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT