瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 我的电脑中了trojan.agent.eg 怎么办,(求救)

12   2  /  2  页   跳转

我的电脑中了trojan.agent.eg 怎么办,(求救)

<"C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe"><Symantec Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1256][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1448][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\EBPMON24.DLL]  <SEIKO EPSON CORPORATION><1, 4, 0, 0>
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll]  <Windows (R) 2000 DDK provider><5.00.2195.1620>
    [C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_DU18CE.DLL]  <SEIKO EPSON Corporation><0. 3. 0, 76>
[PID: 1628][C:\WINDOWS\system32\Ati2evxx.exe]  <ATI Technologies Inc.><6.14.10.4116>
    [C:\WINDOWS\system32\Ati2edxx.dll]  <ATI Technologies, Inc.><6, 14, 10, 2497>
[PID: 1888][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\Norton AntiVirus\NavShExt.dll]  <Symantec Corporation><11.0.9.16>
    [C:\Program Files\Common Files\Symantec Shared\ccL30.dll]  <Symantec Corporation><103.0.7.2>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [C:\Program Files\ewido anti-spyware 4.0\context.dll]  <Anti-Malware Development a.s.><4, 0, 0, 172>
[PID: 416][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 516][C:\Program Files\Norton AntiVirus\navapsvc.exe]  <Symantec Corporation><11.0.9.16>
    [C:\Program Files\Norton AntiVirus\SAVRT32.DLL]  <Symantec Corporation><9.4.1.10>
[PID: 572][C:\Program Files\Microtek\ScanWizard 5\ScannerFinder.exe]  <><1, 0, 0, 1>
    [C:\Program Files\Microtek\ScanWizard 5\SFRes.dll]  <><1, 0, 0, 1>
    [C:\Program Files\Microtek\ScanWizard 5\scanners\Msmgr32.dll]  <N/A><N/A>
    [C:\Program Files\Microtek\ScanWizard 5\scanners\MS32RES.DLL]  <N/A><N/A>
    [C:\Program Files\Microtek\ScanWizard 5\scanners\MPHASE32.DLL]  <N/A><N/A>
    [C:\Program Files\Microtek\ScanWizard 5\scanners\MSSTI.DLL]  <Microtek International Inc.><1.62.4>
    [C:\Program Files\Microtek\ScanWizard 5\scanners\SM8B32.DLL]  <Microtek International Inc.><1.02>
[PID: 580][C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe]  <Symantec Corporation><11.0.9.16>
    [C:\Program Files\Common Files\Symantec Shared\ccL30.dll]  <Symantec Corporation><103.0.7.2>
[PID: 800][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\MSMWUD.DLL]  <Microtek International Inc.><1.08.1>
    [C:\WINDOWS\system32\MSM8bW.DLL]  <Microtek International Inc.><1.02>
[PID: 1340][C:\Program Files\NVIDIA
gototop
 

Corporation><103.0.7.2>
    [C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll]  <Symantec Corporation><11.0.9.16>
    [C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll]  <Symantec Corporation><11.0.9.16>
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  <Symantec Corporation><103.0.7.2>
[PID: 2364][D:\tools\ACDSEE32\ACDSEE32.EXE]  <ACD Systems, Ltd.><2, 2, 2, 0>
    [D:\tools\ACDSEE32\DC210_32.dll]  <Eastman Kodak Company><0, 2, 0, 3>
    [C:\Program Files\Common Files\Adobe\Shell\PSICON.DLL]  <Adobe Systems, Incorporated><7.0>
[PID: 3944][C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe]  <Adobe Systems, Incorporated><7.0.1>
    [C:\Program Files\Adobe\Photoshop 7.0\ACE.dll]  <Adobe Systems Incorporated><2.02.05>
    [C:\Program Files\Adobe\Photoshop 7.0\AGM.dll]  <Adobe Systems Incorporated><4.08.18>
    [C:\Program Files\Adobe\Photoshop 7.0\BIB.dll]  <Adobe Systems Incorporated><1.1.8>
    [C:\Program Files\Adobe\Photoshop 7.0\CoolType.dll]  <Adobe Systems Incorporated><4.10.20>
    [C:\Program Files\Adobe\Photoshop 7.0\asn.er.dll]  <N/A><N/A>
    [C:\Program Files\Adobe\Photoshop 7.0\Photoshop.dll]  <Adobe Systems, Incorporated><7.0.1>
    [C:\Program Files\Adobe\Photoshop 7.0\PSViews.dll]  <Adobe Systems, Incorporated><7.0.1>
    [C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_DU18CE.DLL]  <SEIKO EPSON Corporation><0. 3. 0, 76>
    [C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_DMAI16.DLL]  <SEIKO EPSON Corporation><0. 3. 3. 7>
    [C:\Program Files\Adobe\Photoshop 7.0\Plug-Ins\Adobe Photoshop Only\Extensions\FastCore.8BX]  <Adobe Systems, Incorporated><7.0.1>
    [C:\Program Files\Adobe\Photoshop 7.0\PLUGIN.dll]  <Adobe Systems, Incorporated><7.0>
    [C:\Program Files\Adobe\Photoshop 7.0\Plug-Ins\Adobe Photoshop Only\Extensions\MMXCore.8BX]  <Adobe Systems, Incorporated><7.0.1>
    [C:\Program Files\Adobe\Photoshop 7.0\Required\ADMPlugin.apl]  <Adobe Systems Incorporated><2.84ps79 07.15.2002-10:05:00h>
    [C:\Program Files\Adobe\Photoshop 7.0\Required\PNGIcons.apl]  <Adobe Systems Incorporated><1.21x7 2001.12.14-1602h.21s>
    [C:\Program Files\Adobe\Photoshop 7.0\Required\ASDataStream.apl]  <Adobe Systems Incorporated><1.02x7 02.02.15-01:45:06h>
    [C:\Program Files\Adobe\Photoshop 7.0\Plug-Ins\Parser\PDF 图像导入.8BI]  <Adobe Systems, Incorporated><7.0.1>
    [C:\Program Files\Adobe\Photoshop 7.0\PDFL50.dll]  <Adobe Systems Incorporated><5.0.000>
    [C:\Program Files\Adobe\Photoshop 7.0\OPP.dll]  <Adobe Systems Incorporated><1.02.01>
    [C:\WINDOWS\system32\ATMLIB.dll]  <Adobe Systems><5.1 Build 226>
    [C:\Program Files\Common Files\Adobe\Workflow\ARM.dll]  <Adobe Systems, Incorporated><2.8.3.3>
    [C:\Program Files\Common Files\Adobe\Web\AdobeWeb.dll]  <Adobe Systems, Incorporated><2.8.3.3>
gototop
 


  <"C:\Program Files\Norton AntiVirus\SAVScan.exe"><Symantec Corporation>
[ScriptBlocking Service / SBService]
  <C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe><Symantec Corporation>
[Symantec Network Drivers Service / SNDSrvc]
Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe]  <><1, 0, 1, 0>
    [C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\NMI.dll]  <NVIDIA Corporation><2, 2, 0, 464>
    [C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nv_common.dll]  <NVIDIA><2, 2, 0, 464>
    [C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nv_resource_L1033.dll]  <NVIDIA Corporation><1, 0, 1, 0>
[PID: 392][C:\Program Files\FlashGet\flashget.exe]  <Amaze Soft><1, 4, 0, 0>
[PID: 1700][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2708][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3744][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\Norton AntiVirus\NavShExt.dll]  <Symantec Corporation><11.0.9.16>
    [C:\Program Files\Common Files\Symantec Shared\ccL30.dll]  <Symantec
[PID: 224][D:\tools\ACDSEE32\ACDSEE32.EXE]  <ACD Systems, Ltd.><2, 2, 2, 0>
    [D:\tools\ACDSEE32\DC210_32.dll]  <Eastman Kodak Company><0, 2, 0, 3>
    [C:\Program Files\Common Files\Adobe\Shell\PSICON.DLL]  <Adobe Systems, Incorporated><7.0>
[PID: 2688][C:\Program Files\WinRAR\WinRAR.exe]  <N/A><N/A>
[PID: 3112][C:\DOCUME~1\jia\LOCALS~1\Temp\Rar$EX00.797\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

不会少呀,我是用剪的,一次一次贴,太多木马了
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT