瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 [求助] 我的首页被劫持了……有哪位高手可以指教吗?

123   3  /  3  页   跳转

[求助] 我的首页被劫持了……有哪位高手可以指教吗?

[C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
[PID: 1512][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe]  [ATI Technologies, Inc., 6.14.10.5090]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll]  [ATI Technologies, Inc., 6.14.10.5090]
    [C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHT]  [ATI Technologies, Inc., 6.14.10.5090]
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll]  [ATI Technologies, Inc., 6.14.10.5090]
[PID: 1524][C:\Program Files\Winamp\winampa.exe]  [N/A, N/A]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
[PID: 1628][C:\Program Files\Inventec\Dreye\DreyeMT\msnplugin.exe]  [, 1, 0, 0, 1]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
[PID: 1640][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  [RealNetworks, Inc., 0.1.0.3427]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
[PID: 1648][C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe]  [Sun Microsystems, Inc., 5.0.90.3]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
[PID: 1660][C:\WINDOWS\System32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
[PID: 1676][C:\Program Files\MSN Messenger\MsnMsgr.Exe]  [Microsoft Corporation, 8.0.0812.00]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\msdmo.dll]  [N/A, N/A]
[PID: 1688][C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe]  [Google Inc., 1, 2, 908, 5008]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\res_zh-TW.dll]  [Google Inc., 1, 2, 908, 5008]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
    [C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\swg.dll]  [Google Inc., 1, 2, 908, 5008]
[PID: 1696][C:\Program Files\Super Rabbit\magicset\SRIECLI.EXE]  [Super Rabbit Soft, 7.85]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\shlobj71.ocx]  [Sky Software (http://www.ssware.com), 7, 1, 0, 0]
[PID: 472][C:\Program Files\WinRAR\WinRAR.exe]  [N/A, N/A]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\h812E2ED.log]  [N/A, N/A]
    [C:\WINDOWS\System32\hEE8CB9E.log]  [N/A, N/A]
[PID: 1164][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1212][C:\WINDOWS\System32\CTsvcCDA.exe]  [Creative Technology Ltd, 1.0.1.0]
[PID: 1304][C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe]  [Rocket Division Software, 2.6.1 Build 0x20050401]
[PID: 1556][C:\Program Files\Trend Micro\PC-cillin 2002\Tmntsrv.exe]  [Trend Micro Inc., 9.0.2.1255]
    [C:\Program Files\Trend Micro\PC-cillin 2002\tmdbg.dll]  [N/A, N/A]
    [C:\Program Files\Trend Micro\PC-cillin 2002\pewnt2.dll]  [Trend Micro Inc., 9.0.2.1255]
[PID: 168][C:\WINDOWS\System32\MsPMSPSv.exe]  [Microsoft Corporation, 7.00.00.1954]
[PID: 280][C:\DOCUME~1\Tony\LOCALS~1\Temp\Rar$EX03.438\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
[PID: 272][C:\Program Files\Trend Micro\PC-cillin 2002\PCCPFW.exe]  [Trend Micro Inc., 9.0.2.1255]
    [C:\Program Files\Trend Micro\PC-cillin 2002\pccfwapi.dll]  [Trend Micro Inc., 9.0.2.1255]
    [C:\Program Files\Trend Micro\PC-cillin 2002\pcc_pfw.dll]  [Trend Micro Inc., 9.0.2.1255]
    [C:\Program Files\Trend Micro\PC-cillin 2002\tmdbg.dll]  [N/A, N/A]
[PID: 3624][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\7EE8CB9E\6456DED1.DLL]  [N/A, N/A]
    [C:\Program Files\Inventec\Dreye\DreyeMT\msnhook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Inventec\Dreye\DreyeMT\DreyeMT.dll]  [N/A, N/A]
    [C:\PROGRA~1\SUPERR~1\magicset\HAOKAN~2.DLL]  [超?兔子, 1.0.7.7]
    [C:\WINDOWS\System32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]

gototop
 

==================================
File Associations
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock Provider
N/A

==================================
Autorun.Inf
N/A

==================================
HOSTS File
127.0.0.1      localhost

==================================
gototop
 

新的日誌有問題嗎?
gototop
 
123   3  /  3  页   跳转
页面顶部
Powered by Discuz!NT