123   2  /  3  页   跳转

急救:中毒了,杀毒软件全退出.

==================================
浏览器加载项
[]
  {105E4D0C-5E21-41ED-90F9-013EEF271BD6} <C:\WINDOWS\system32\widgetdownload.dll, 鱼鱼桌面秀widget插件下载工具>
[Create Mobile Favorite]
  {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} <C:\PROGRA~1\MICROS~4\INetRepl.dll, Microsoft Corporation>
[Create Mobile Favorite]
  {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} <C:\PROGRA~1\MICROS~4\INetRepl.dll, Microsoft Corporation>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, N/A>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, Microsoft Corporation>
[WebActivater Control]
  {3D8F74EE-8692-4F8F-B8D2-7522E732519E} <C:\WINDOWS\system32\WEBACT~1.OCX, QQ>
[Office Update Installation Engine]
  {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
[EditCtrl Class]
  {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, >
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[]
  {105E4D0C-5E21-41ED-90F9-013EEF271BD6} <C:\WINDOWS\system32\widgetdownload.dll, 鱼鱼桌面秀widget插件下载工具>
[WangWangObj Class]
  {6E213FC7-DD5A-4115-B7E6-D4C7838C361E} <C:\Program Files\Alisoft\WangWang\WangWangX4.dll, 阿里软件(中国)有限公司>
[Windows Live Sign-in Helper]
  {9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, N/A>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[&Net Search]
  <res://C:\WINDOWS\system32\sporder.dll/MENUSEARCH.HTM, N/A>
[上传到QQ网络硬盘]
  <C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[添加到QQ自定义面板]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>

==================================
正在运行的进程
[PID: 472][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 528][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1292][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
    [C:\WINDOWS\system32\widgetdownload.dll]  [鱼鱼桌面秀widget插件下载工具, 1.3.0.0]
    [C:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5358.4827 (WMP_11.060509-2009)]
    [C:\Program Files\Unlocker\UnlockerCOM.dll]  [N/A, ]
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[PID: 1972][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
[PID: 2032][C:\PROGRAM FILES\鱼鱼软件\鱼鱼桌面秀\XDeskShow.exe]  [鱼鱼软件, 1.8.2.903]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\PROGRAM FILES\鱼鱼软件\鱼鱼桌面秀\Res\Dll\calendar100.dll]  [, 1.2.0.317]
    [C:\PROGRAM FILES\鱼鱼软件\鱼鱼桌面秀\Res\Dll\weather100.dll]  [, 1.3.0.428]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
    [C:\WINDOWS\system32\msxml4.dll]  [Microsoft Corporation, 4.10.9404.0]
[PID: 124][C:\Program Files\Logitech\MouseWare\system\em_exec.exe]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\system\EVENTEX.dll]  [Logitech Inc., 9.79.025]
    [C:\WINDOWS\system32\COMNCTR.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\system\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\Program Files\Logitech\MouseWare\system\ccresrce.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\system\GlbResLt.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
    [C:\Program Files\Logitech\MouseWare\System\devices.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\system\ccstmglb.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\system\ccustom.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\system\ccmsghk.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
[PID: 120][C:\Program Files\Microsoft ActiveSync\wcescomm.exe]  [Microsoft Corporation, 4.5.5096.0]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
[PID: 192][C:\PROGRA~1\MICROS~4\rapimgr.exe]  [Microsoft Corporation, 4.5.5096.0]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
    [G:\2\111.com]  [Smallfrogs Studio, 2.4.12.806]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
[PID: 1988][C:\WINDOWS\notepad.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll]  [Logitech Inc., 9.79.025]
    [C:\Program Files\Common Files\Microsoft Shared\MSINFO\4171DDE1.dll]  [N/A, ]
    [c:\PROGRA~1\iesnap\navstub.dll]  [, 1, 0, 1, 2]
    [c:\progra~1\kehi\xruv.dll]  [, 1, 0, 0, 6]
    [c:\progra~1\kehi\cwza.dll]  [ , 1, 0, 0, 6]
    [C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll]  [Logitech Inc., 1.1.0]
gototop
 

==================================
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  Error. [winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
[D:\]
[AutoRun]
open=4171DDE1.exe
shellexecute=4171DDE1.exe
shell\Auto\command=4171DDE1.exe
[E:\]
[AutoRun]
open=4171DDE1.exe
shellexecute=4171DDE1.exe
shell\Auto\command=4171DDE1.exe

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
N/A

==================================
隐藏进程
    [1576] C:\program files\internet explorer\IEXPLORE.EXE
    [1832] C:\WINDOWS\system32\calc.exe

==================================


[/CODE]
gototop
 

发完了。
gototop
 

有请高手解决.
gototop
 

我建议大家还是等等,反正不影响使用.
速度还蛮快呢,少上小网站,不上网银,不上QQ.
瑞星出来专杀再解决,先不格.
gototop
 

顶上来,是新病毒啊,中的人越来越多了.
gototop
 

上来.
gototop
 

给我上.越来越多的人中了标.
gototop
 

有专杀了吗?我的机子现在可是裸奔啊.
已经又中了其他的毒了.
gototop
 

还没办法吗?瑞星的人。
gototop
 
123   2  /  3  页   跳转
页面顶部
Powered by Discuz!NT