瑞星卡卡安全论坛在线技术支持在线技术支持[已关闭] 电脑至今被黑,系统重装多次,菜鸟无力回,跪球大侠出手

1   1  /  1  页   跳转

电脑至今被黑,系统重装多次,菜鸟无力回,跪球大侠出手

电脑至今被黑,系统重装多次,菜鸟无力回,跪球大侠出手

电脑被黑着,重装了不下8次
结果还是被连
瑞星天天开着
病毒杀了1个
U盘带到姐姐家里,查出威金
隔离里还有一个脚本病毒  Backdoor.ASP.Mini.a  因为被连所以结果就是杀不掉
昨天被攻击最强一次连续80+次
实在没办法了求各位帮忙
ÇÅéֈoìxëqbbs.ikaka.com ¹6ç®âL?©2
最后编辑2007-02-01 18:14:36
分享到:
gototop
 

smss.exe]
PID = 0x1b0
CommandLine =
    smss.exe
    0x48580000
    C:\WINDOWS\system32\smss.exe
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT Session Manager
    2006-12-14 14:29:29

    ntdll.dll
    0x7c920000
    C:\WINDOWS\system32\ntdll.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    NT Layer DLL
    2006-12-14 14:29:29




[csrss.exe]
PID = 0x1f0
CommandLine = C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
    csrss.exe
    0x4a680000
    c:\windows\system32\csrss.exe
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Client Server Runtime Process
    2006-12-14 14:29:29

    ntdll.dll
    0x7c920000
    C:\WINDOWS\system32\ntdll.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    NT Layer DLL
    2006-12-14 14:29:29

    CSRSRV.dll
    0x75aa0000
    C:\WINDOWS\system32\csrsrv.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Client Server Runtime Process
    2006-12-14 14:29:29

    basesrv.dll
    0x75ab0000
    C:\WINDOWS\system32\basesrv.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT BASE API Server DLL
    2006-12-14 14:29:29

    winsrv.dll
    0x764e0000
    C:\WINDOWS\system32\winsrv.dll
    5.1.2600.2751 (xpsp_sp2_gdr.050831-1520)
    Microsoft Corporation
    Windows Server DLL
    2005-09-01 09:45:34

    GDI32.dll
    0x77ef0000
    C:\WINDOWS\system32\gdi32.dll
    5.1.2600.2818 (xpsp_sp2_gdr.051228-1427)
    Microsoft Corporation
    GDI Client DLL
    2005-12-29 10:56:04

    KERNEL32.dll
    0x7c800000
    C:\WINDOWS\system32\kernel32.dll
    5.1.2600.2945 (xpsp_sp2_gdr.060704-2349)
    Microsoft Corporation
    Windows NT BASE API Client DLL
    2006-07-05 18:56:00

    USER32.dll
    0x77d10000
    C:\WINDOWS\system32\user32.dll
    5.1.2600.2622 (xpsp_sp2_gdr.050301-1519)
    Microsoft Corporation
    Windows XP USER API Client DLL
    2005-03-03 02:10:06

    LPK.DLL
    0x62c20000
    C:\WINDOWS\system32\lpk.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Language Pack
    2006-12-14 14:29:29

    USP10.dll
    0x73fa0000
    C:\WINDOWS\system32\usp10.dll
    1.0420.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Uniscribe Unicode script processor
    2006-12-14 14:29:29

    msvcrt.dll
    0x77be0000
    C:\WINDOWS\system32\msvcrt.dll
    7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT CRT DLL
    2006-12-14 14:29:29

    ADVAPI32.dll
    0x77da0000
    C:\WINDOWS\system32\advapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Advanced Windows 32 Base API
    2006-12-14 14:29:29

    RPCRT4.dll
    0x77e50000
    C:\WINDOWS\system32\rpcrt4.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Procedure Call Runtime
    2006-12-14 14:29:29

    sxs.dll
    0x75e00000
    C:\WINDOWS\system32\sxs.dll
    5.1.2600.3019 (xpsp_sp2_gdr.061019-0414)
    Microsoft Corporation
    Fusion 2.5
    2006-10-20 09:37:48




[winlogon.exe]
PID = 0x208
CommandLine = winlogon.exe
    winlogon.exe
    0x1000000
    c:\windows\system32\winlogon.exe
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT Logon Application
    2006-12-14 14:29:29

    ntdll.dll
    0x7c920000
    C:\WINDOWS\system32\ntdll.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    NT Layer DLL
    2006-12-14 14:29:29

    kernel32.dll
    0x7c800000
    C:\WINDOWS\system32\kernel32.dll
    5.1.2600.2945 (xpsp_sp2_gdr.060704-2349)
    Microsoft Corporation
    Windows NT BASE API Client DLL
    2006-07-05 18:56:00

    ADVAPI32.dll
    0x77da0000
    C:\WINDOWS\system32\advapi32.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Advanced Windows 32 Base API
    2006-12-14 14:29:29

    RPCRT4.dll
    0x77e50000
    C:\WINDOWS\system32\rpcrt4.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Remote Procedure Call Runtime
    2006-12-14 14:29:29

    AUTHZ.dll
    0x77fe0000
    C:\WINDOWS\system32\authz.dll
    5.1.2600.2622 (xpsp_sp2_gdr.050301-1519)
    Microsoft Corporation
    Authorization Framework
    2005-03-03 02:10:06

    msvcrt.dll
    0x77be0000
    C:\WINDOWS\system32\msvcrt.dll
    7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Windows NT CRT DLL
    2006-12-14 14:29:29

    CRYPT32.dll
    0x765e0000
    C:\WINDOWS\system32\crypt32.dll
    5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Crypto API32
    2006-12-14 14:29:29

    USER32.dll
    0x77d10000
    C:\WINDOWS\system32\user32.dll
    5.1.2600.2622 (xpsp_sp2_gdr.050301-1519)
    Microsoft Corporation
    Windows XP USER API Client DLL
    2005-03-03 02:10:06

    GDI32.dll
    0x77ef0000
    C:\WINDOWS\system32\gdi32.dll
    5.1.2600.2818 (xpsp_sp2_gdr.051228-1427)
    Microsoft Corporation
    GDI Client DLL
    2005-12-29 10:56:04

    MSASN1.dll
    0x76db0000
    C:\WINDOWS\system32\msasn1.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    ASN.1 Runtime APIs
    2006-12-14 14:29:29

    NDdeApi.dll
    0x758a0000
    C:\WINDOWS\system32\nddeapi.dll
    5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Microsoft Corporation
    Network DDE Share Management APIs
    2006-12-14 14:29:29
着个是进程的一半,帮我看看有没有可以连接ÇÅéֈoìxëqbbs.ikaka.com ¹6ç®âL?©2
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT