瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 高手帮忙看看是什么病毒啊【原创】

12   2  /  2  页   跳转

高手帮忙看看是什么病毒啊【原创】

LoadStart = imm.dll
LoadSuccess = imm.dll
LoadStart = C:\WINDOWS\SYSTEM\IMM32.DLL
LoadStart = Imm.dll
LoadSuccess = Imm.dll
LoadStart = Imm.dll
LoadSuccess = Imm.dll
LoadSuccess = C:\WINDOWS\SYSTEM\IMM32.DLL
LoadStart = winnls.dll
LoadSuccess = winnls.dll
LoadSuccess = user.exe
LoadStart = MSGSRV32.EXE
LoadSuccess = MSGSRV32.EXE
Init = Final USER
InitDone = Final USER
Init = Installable Drivers
InitDone = Installable Drivers
Init = TSRQuery
InitDone = TSRQuery
[000BA094] Enumerating 标准软盘控制器 (ACPI\*PNP0700\0)
[000BA095] Enumerated 标准软盘控制器 (ACPI\*PNP0700\0)
[000BA15B] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA15B] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA15B] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15B] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15B] Enumerating Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15C] Enumerated Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15C] Enumerating Microsoft DirectMusic SW Synth (WDM) (SW\{8C07DD50-7A8D-11D2-8F8C-00C04FBF8FEF}\DMUSIC)
[000BA15C] Enumerated Microsoft DirectMusic SW Synth (WDM) (SW\{8C07DD50-7A8D-11D2-8F8C-00C04FBF8FEF}\DMUSIC)
[000BA15D] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA15E] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA15E] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15E] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15E] Enumerating Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA15E] Enumerated Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA2B1] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA2B1] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA2B1] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA2B1] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C3] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA3C3] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA3C3] Loading PNP drivers of Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Loaded PNP drivers of Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Starting Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Started Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Enumerating Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA3C4] Enumerated Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FC] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA5FC] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA5FC] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FC] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA5FD] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA5FD] Loading PNP drivers of Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Loaded PNP drivers of Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Starting Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Started Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Enumerating Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA5FD] Enumerated Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA836] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA836] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA836] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA836] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AD] Enumerating Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA9AD] Enumerated Plug and Play Software Device Enumerator (ROOT\SWENUM\0000)
[000BA9AD] Loading PNP drivers of Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AD] Loaded PNP drivers of Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AD] Starting Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AD] Started Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AD] Enumerating Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AE] Enumerated Microsoft Kernel System Renderer (SW\{A7C7A5B0-5AF3-11D1-9CED-00A024BF0407}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AE] Enumerating Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
[000BA9AE] Enumerated Microsoft Kernel Audio Mixer (SW\{B7EAFDC0-A680-11D0-96D8-00AA0051E51D}\{9B365890-165F-11D0-A195-0020AFD156E4})
gototop
 

系统存在的任务
Kernel32.dll4.10.2222Microsoft CorporationWin32 Kernel core componentC:\WINDOWS\SYSTEM\Kernel32.dll4.3Microsoft(R) Windows(R) Operating System
MSGSRV32.EXE4.10.2222Microsoft CorporationWindows 32-bit VxD Message ServerC:\WINDOWS\SYSTEM\MSGSRV32.EXE4.0Microsoft(R) Windows(R) Operating System
Mprexe.exe4.10.1998Microsoft CorporationWIN32 Network Interface Service ProcessC:\WINDOWS\SYSTEM\Mprexe.exe4.0Microsoft(R) Windows(R) Operating System
MMTASK.TSK4.03.1998Microsoft CorporationMultimedia background task support moduleC:\WINDOWS\SYSTEM\MMTASK.TSK4.0Microsoft Windows
Explorer.exe4.72.3110.1Microsoft CorporationWindows ExplorerC:\WINDOWS\Explorer.exe4.0Microsoft(R) Windows NT(R) Operating System
Rpcss.exe4.71.2900Microsoft CorporationDistributed COM ServicesC:\WINDOWS\SYSTEM\Rpcss.exe4.0Microsoft(R) Windows NT(TM) Operating System
Internat.exe4.10.2222Microsoft CorporationKeyboard Language Indicator AppletC:\WINDOWS\SYSTEM\Internat.exe4.0Microsoft(R) Windows(R) Operating System
Enternet.exeC:\PROGRAM FILES\EFFICIENT NETWORKS\ENTERNET 500\APP\Enternet.exe4.0
Iexplore.exe6.00.2800.1106Microsoft CorporationInternet ExplorerC:\PROGRAM FILES\INTERNET EXPLORER\Iexplore.exe4.0Microsoft(R) Windows(R) Operating System
Wordpad.exe5.00.1691.1Microsoft CorporationWordPad MFC ApplicationC:\PROGRAM FILES\ACCESSORIES\Wordpad.exe4.0Microsoft(R) Windows NT(R) Operating System
Ddhelp.exe4.09.00.0900Microsoft CorporationMicrosoft DirectX HelperC:\WINDOWS\SYSTEM\Ddhelp.exe4.0Microsoft_ DirectX for Windows_
Iexplore.exe6.00.2800.1106Microsoft CorporationInternet ExplorerC:\PROGRAM FILES\INTERNET EXPLORER\Iexplore.exe4.0Microsoft(R) Windows(R) Operating System
Msinfo32.exe4.10.2222Microsoft CorporationMSInfo32C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\MSINFO\Msinfo32.exe4.0Microsoft System Information
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT