12   1  /  2  页   跳转

【求助】防火墙出问题拉

【求助】防火墙出问题拉

打开防火墙,在点网络活动就会如图
Microsoft (R) DrWtsn32
Copyright (C) 1985-2001 Microsoft Corp. All rights reserved.



发生应用程序意外错误:
        应用程序: c:\program files\rising\rfw\RfwCfg.exe (pid=2960)
        时间: 2006-9-12 @ 12:59:50.984
        意外情况编号: c0000005 (访问侵犯)

*----> 系统信息 <----*
        计算机名: LENOVO-AA375113
        用户名: Owner
        终端会话 Id: 0
        处理器数量: 1
        处理器类型: x86 Family 15 Model 44 Stepping 0
        Windows 版本: 5.1
        当前内部版本号: 2600
        Service Pack: 2
        当前类型: Uniprocessor Free
        注册的单位: Lenovo (Beijing) Limited
        注册的所有者: Lenovo User

*----> 任务列表 <----*
  0 System Process
  4 System
536 smss.exe
592 csrss.exe
616 winlogon.exe
660 services.exe
672 lsass.exe
836 svchost.exe
900 svchost.exe
1008 CCenter.exe
1024 svchost.exe
1084 svchost.exe
1224 svchost.exe
1252 Ravmond.exe
1388 rfwsrv.exe
1492 Explorer.EXE
1536 ctfmon.exe
1620 spoolsv.exe
1732 RavStub.exe
1868 RfwMain.exe
428 RavTask.exe
436 VTTimer.exe
448 Ravmon.exe
456 SOUNDMAN.EXE
720 wdfmgr.exe
308 alg.exe
1356 Error 0x8007007A
3508 svchost.exe
760 Error 0x8007007A
2960 RfwCfg.exe
1280 drwtsn32.exe

*----> 模块清单 <----*
(0000000000400000 - 0000000000517000: c:\program files\rising\rfw\RfwCfg.exe
(0000000010000000 - 0000000010012000: c:\program files\rising\rfw\mPorts.dll
(0000000023700000 - 000000002371b000: c:\program files\rising\rfw\RSCOMMON.DLL
(0000000023900000 - 0000000023931000: c:\program files\rising\rfw\PngDll.dll
(0000000026600000 - 000000002667f000: c:\program files\rising\rfw\RsGuiLib.dll
(000000005adc0000 - 000000005adf7000: C:\windows\system32\uxtheme.dll
(000000005d170000 - 000000005d207000: C:\windows\system32\COMCTL32.dll
(000000005e8e0000 - 000000005e8ed000: C:\windows\system32\perfproc.dll
(000000005fdd0000 - 000000005fe24000: C:\windows\system32\NETAPI32.dll
(0000000061be0000 - 0000000061bed000: C:\windows\system32\MFC42LOC.DLL
(0000000062c20000 - 0000000062c29000: C:\windows\system32\LPK.DLL
(0000000071a10000 - 0000000071a18000: C:\windows\system32\WS2HELP.dll
(0000000071a20000 - 0000000071a37000: C:\windows\system32\WS2_32.dll
(0000000071a40000 - 0000000071a4b000: C:\windows\system32\WSOCK32.dll
(0000000071b70000 - 0000000071b83000: C:\windows\system32\SAMLIB.dll
(00000000731b0000 - 00000000731ba000: c:\program files\rising\rfw\PSAPI.DLL
(0000000073640000 - 000000007366e000: C:\windows\system32\msctfime.ime
(0000000073d30000 - 0000000073e2e000: C:\windows\system32\MFC42.DLL
(0000000073fa0000 - 000000007400b000: C:\windows\system32\USP10.dll
(0000000074680000 - 00000000746cb000: C:\windows\system32\MSCTF.dll
(00000000759d0000 - 0000000075a7e000: C:\windows\system32\USERENV.dll
(0000000075ff0000 - 0000000076055000: C:\windows\system32\MSVCP60.dll
(0000000076060000 - 00000000761b6000: C:\windows\system32\SETUPAPI.dll
(0000000076300000 - 000000007631d000: C:\windows\system32\IMM32.DLL
(0000000076990000 - 0000000076acd000: C:\windows\system32\ole32.dll
(0000000076af0000 - 0000000076b01000: C:\windows\system32\ATL.DLL
(0000000076c60000 - 0000000076c88000: C:\windows\system32\IMAGEHLP.dll
(0000000076d10000 - 0000000076d28000: C:\windows\system32\MPRAPI.dll
(0000000076d30000 - 0000000076d48000: C:\windows\system32\iphlpapi.dll
(0000000076d70000 - 0000000076d92000: C:\windows\system32\Apphelp.dll
(0000000076de0000 - 0000000076e05000: C:\windows\system32\adsldpc.dll
(0000000076e50000 - 0000000076e5e000: C:\windows\system32\rtutils.dll
(0000000076f30000 - 0000000076f5c000: C:\windows\system32\WLDAP32.dll
(0000000076fa0000 - 000000007701f000: C:\windows\system32\CLBCATQ.DLL
(0000000077020000 - 00000000770ba000: C:\windows\system32\COMRes.dll
(00000000770f0000 - 000000007717c000: C:\windows\system32\OLEAUT32.dll
(0000000077180000 - 0000000077282000: C:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(0000000077bd0000 - 0000000077bd8000: C:\windows\system32\VERSION.dll
(0000000077be0000 - 0000000077c38000: C:\windows\system32\msvcrt.dll
(0000000077c90000 - 0000000077cc2000: C:\windows\system32\ACTIVEDS.dll
(0000000077d10000 - 0000000077d9f000: C:\windows\system32\USER32.dll
(0000000077da0000 - 0000000077e49000: C:\windows\system32\ADVAPI32.dll
(0000000077e50000 - 0000000077ee1000: C:\windows\system32\RPCRT4.dll
(0000000077ef0000 - 0000000077f37000: C:\windows\system32\GDI32.dll
(0000000077f40000 - 0000000077fb6000: C:\windows\system32\SHLWAPI.dll
(0000000077fc0000 - 0000000077fd1000: C:\windows\system32\Secur32.dll
(000000007c800000 - 000000007c91c000: C:\windows\system32\kernel32.dll
(000000007c920000 - 000000007c9b4000: C:\windows\system32\ntdll.dll
(000000007d590000 - 000000007dd82000: C:\windows\system32\SHELL32.dll

*----> 线程 ID 0x144 的状态转储 <----*

eax=00000000 ebx=00000000 ecx=0012c18c edx=0012c1b2 esi=77c01d46 edi=0012c18c
eip=00461fdd esp=0012c0e8 ebp=00b3ca58 iopl=0        nv up ei pl zr na po nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000            efl=00000246

*** WARNING: Unable to verify checksum for c:\program files\rising\rfw\RfwCfg.exe
*** ERROR: Module load completed but symbols could not be loaded for c:\program files\rising\rfw\RfwCfg.exe
函数: RfwCfg
        00461fb8 52              push    edx
        00461fb9 ffd6            call    esi
        00461fbb 8d842490000000  lea    eax,[esp+0x90]
        00461fc2 6a2e            push    0x2e
        00461fc4 50              push    eax
        00461fc5 ff1548994900    call    dword ptr [RfwCfg+0x99948 (00499948)]
        00461fcb 6804010000      push    0x104
        00461fd0 8d8c249c000000  lea    ecx,[esp+0x9c]
        00461fd7 68fc404b00      push    0x4b40fc
        00461fdc 51              push    ecx
错误 ->00461fdd 8818            mov    [eax],bl                ds:0023:00000000=??
        00461fdf ffd6            call    esi
        00461fe1 83c420          add    esp,0x20
        00461fe4 eb60            jmp    RfwCfg+0x62046 (00462046)
        00461fe6 8d942450020000  lea    edx,[esp+0x250]
        00461fed 6804010000      push    0x104
        00461ff2 52              push    edx
        00461ff3 53              push    ebx
        00461ff4 ff1504914900    call    dword ptr [RfwCfg+0x99104 (00499104)]
        00461ffa 8d842450020000  lea    eax,[esp+0x250]
        00462001 6a5c            push    0x5c

*----> 堆栈反向跟踪 <---*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr  Args to Child             
00b3ca58 00000001 00000000 00000000 00000000 RfwCfg+0x61fdd

*----> 原始堆栈转储 <----*
000000000012c0e8  8c c1 12 00 fc 40 4b 00 - 04 01 00 00 8c c1 12 00  .....@K.........
000000000012c0f8  2e 00 00 00 8c c1 12 00 - 4c c1 12 00 8c c1 12 00  ........L.......
000000000012c108  18 e3 b3 00 00 00 00 00 - 9a f3 d2 77 00 a1 b3 00  ...........w....
000000000012c118  10 00 00 00 00 00 00 00 - cd ab ba dc 01 00 00 00  ................
000000000012c128  00 00 00 00 01 00 00 00 - fc c0 12 00 0e 84 dc 73  ...............s
000000000012c138  28 c2 12 00 67 04 d4 77 - 30 88 d1 77 00 00 00 00  (...g..w0..w....
000000000012c148  ff ff ff ff 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c158  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c168  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c178  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c188  02 00 00 00 63 3a 5c 70 - 72 6f 67 72 61 6d 20 66  ....c:\program f
000000000012c198  69 6c 65 73 5c 72 69 73 - 69 6e 67 5c 72 66 77 5c  iles\rising\rfw\
000000000012c1a8  4c 41 4e 47 55 41 47 45 - 5c 00 00 00 00 00 00 00  LANGUAGE\.......
000000000012c1b8  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c1c8  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c1d8  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c1e8  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c1f8  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c208  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000000000012c218  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................

RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P

附件附件:

您所在的用户组无法下载或查看附件

最后编辑2006-09-17 08:23:14
分享到:
gototop
 

走过路过进来看看啊RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

卸载后重新安装,可以试试.RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

帮个忙啊RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

我都不能生级拉,一点自动生级,就会出现英文的界面,而且在第二行就停止了说Cannot connect to Rinsing update server Please try again laterRAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

怀疑你的电脑感染病毒了

下载HijackThis1.99.1汉化版,下载地址:http://free5.ys168.com/?ljs3509,在反病毒及安全工具区。文件名:HijackThis1991zww.rar。

使用方法:
将下载得到的压缩包解压到一个单独的文件夹中,使用HijackThis进行修复前请关闭所有浏览器窗口和文件夹窗口。运行HijackThis,点“扫描系统并保存日志”,然后会自动弹出记事本,将其中全部内容复制-粘贴到论坛上。 请勿修改日志内容!!
RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

HijackThis_815汉化版扫描日志 V1.99.1
保存于      17:25:47, 日期 2006-9-14
操作系统:  Windows XP SP2 (WinNT 5.01.2600)
浏览器:    Internet Explorer v6.00 SP2 (6.00.2900.2180)

当前运行的进程:         
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\windows\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\windows\system32\spoolsv.exe
C:\windows\Explorer.EXE
C:\windows\system32\ctfmon.exe
C:\Program Files\Rising\Rav\RavStub.exe
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\windows\system32\VTTimer.exe
C:\windows\SOUNDMAN.EXE
C:\Program Files\ChinaNet\VnetClient.exe
C:\Documents and Settings\Owner\桌面\TheWorld.exe
C:\windows\system32\wuauclt.exe
C:\windows\system32\svchost.exe
C:\Documents and Settings\Owner\桌面\新建文件夹 (2)\HijackThis1991zww.exe

R3 - 默认的URLSearchHook丢失。用HijackThis修复
F2 - REG:system.ini: UserInit=userinit.exe,C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\mfai.exe
O4 - 启动项HKLM\\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - 启动项HKLM\\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - 启动项HKLM\\Run: [VTTimer] VTTimer.exe
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [TkBellExe] ; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Acrobatchs\Reader\reader_sl.exe
O8 - IE右键菜单中的新增项目: &使用迅雷下载 - D:\新建文件夹\Program\GetUrl.htm
O8 - IE右键菜单中的新增项目: &使用迅雷下载全部链接 - D:\新建文件夹\Program\GetAllUrl.htm
O8 - IE右键菜单中的新增项目: 上传到QQ网络硬盘 - F:\新建文件夹 (2)\AddToNetDisk.htm
O8 - IE右键菜单中的新增项目: 添加到QQ自定义面板 - F:\新建文件夹 (2)\AddPanel.htm
O8 - IE右键菜单中的新增项目: 添加到QQ表情 - F:\新建文件夹 (2)\AddEmotion.htm
O8 - IE右键菜单中的新增项目: 用QQ彩信发送该图片 - F:\新建文件夹 (2)\SendMMS.htm
O9 - 浏览器额外的按钮: (no name) - AutorunsDisabled - (no file)
O9 - 浏览器额外的按钮: 脱兔下载 - {D5C1CCC2-811B-4bf2-BF22-0D3B89600F5B} - C:\windows\system32\shdocvw.dll
O9 - 浏览器额外的“工具”菜单项: &TuoTu - {D5C1CCC2-811B-4bf2-BF22-0D3B89600F5B} - C:\windows\system32\shdocvw.dll
O9 - 浏览器额外的按钮: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\windows\system32\shdocvw.dll
O9 - 浏览器额外的“工具”菜单项: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\windows\system32\shdocvw.dll
O9 - 浏览器额外的按钮: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}? - C:\windows\system32\shdocvw.dll
O9 - 浏览器额外的“工具”菜单项: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}? - C:\windows\system32\shdocvw.dll
O9 - 浏览器额外的按钮: (no name) - {9885224C-1217-4c5f-83C2-00002E6CEF2B} - C:\windows\system32\shdocvw.dll (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.lenovo.com
O16 - DPF: {045ADB92-9635-45CE-B25B-F19F825B0E39} (MSTPlayerInstaller Control) - http://211.157.0.242/mstview/chs/MSTPlayerInstaller.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {40CFEA79-ED5B-4B2B-8B8D-B567E40AF812} (sslclient Control) - http://lenovo.tol24.com/download/ocx/sslclientnew.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1136169298406
O16 - DPF: {944DF9AD-2AFF-4C3B-8008-70CBA4E66793} (EBookReg.RegEdit) - http://lenovo.chineseall.com/cab/EBookReg.CAB
O16 - DPF: {FEE1002D-90A5-4A5D-AABE-01803FFBCF7A} - http://cache10.itv.mop.com/pCastCtl-1.0.0.88_signed.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{CA144679-4B9B-40DA-A64D-AF9C03324CAF}: NameServer = 202.101.224.69 202.101.224.68
O23 - NT 服务: Automatica (Automatic Update) - Unknown owner - C:\windows\zqfx (file missing)
O23 - NT 服务: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwproxy.exe
O23 - NT 服务: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe

RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

用HIJACKTHIS修复以下项
R3 - 默认的URLSearchHook丢失。用HijackThis修复
O9 - 浏览器额外的按钮: (no name) - AutorunsDisabled - (no file)
O23 - NT 服务: Automatica (Automatic Update) - Unknown owner - C:\windows\zqfx (file missing)

然后关闭华生医生Dr.Watson
  单击“开始/运行”,输入“drwtsn32”命令,调出系统里的华生医生Dr.Watson ,只保留“转储全部线程上下文”选项。

再重试一下RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

没用啊RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 

那就致电瑞星客服吧010-82678800RAê?ûêh¹ Ôbbs.ikaka.comNð#8¨[P
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT