1   1  /  1  页   跳转

SOS救救我啊 鸽子啊

SOS救救我啊 鸽子啊

我的98系统中了灰鸽子了,怎么办啊.用了一些办法可是没有用.HijackThisV1.99.1跟本扫不出023之类的.只有04,09

SOS
救救
最后编辑2005-10-06 12:58:45
分享到:
gototop
 

截图1

附件附件:

下载次数:0
文件类型:application/octet-stream
文件大小:
上传时间:2005-10-4 16:17:14
描述:



gototop
 

截图2

附件附件:

下载次数:0
文件类型:application/octet-stream
文件大小:
上传时间:2005-10-4 16:18:37
描述:



gototop
 

有没有人帮我啊.
gototop
 

【回复“飞跃迷离”的帖子】
好.

看截图不够清楚吗?我找不到病毒隐藏在哪里.
gototop
 

只好明天传上来了.版主有直接联系方式吗?我明天能和你直接联系吗?
gototop
 

这是我的日志,请大侠帮我看看啊

Logfile of HijackThis v1.99.1
Scan saved at 12:56:15, on 05-10-6
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
C:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE
C:\PROGRAM FILES\RISING\RAV\RAVMON.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\PROGRAM FILES\RISING\RAV\RAVTIMER.EXE
C:\WINDOWS\SYSTEM\CTFMON.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE

O2 - BHO: CNNIC_IDN - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\CDN\CDNIEHLP.DLL (file missing)
O4 - HKLM\..\Run: [internet.exe] C:/WINDOWS/system.hta
O4 - HKLM\..\Run: [RavTimer] C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [RavMon] C:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [RsCcenter] C:\PROGRA~1\RISING\RAV\CCENTER.EXE
O4 - HKLM\..\RunServices: [RavMond] C:\PROGRA~1\RISING\RAV\RAVMOND.EXE
O4 - HKLM\..\RunServices: [RavMon] C:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKCU\..\Run: [conlme.exe] C:\WINDOWS\conlme.exe
O4 - HKCU\..\Run: [svchostb] C:\WINDOWS\SYSTEM\svchostb.exe
O4 - HKCU\..\Run: [svchosta] C:\WINDOWS\SYSTEM\svchosta.exe
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\SYSTEM\E_SRCV02.EXE
O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: 使用网际快车下载 - C:\PROGRAM FILES\FLASHGET\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - C:\PROGRAM FILES\FLASHGET\jc_all.htm
O8 - Extra context menu item: Download with &Shareaza - res://C:\超级禕BT下略载厝软砑件\PLUGINS\RAZAWEBHOOK.DLL/3000
O8 - Extra context menu item: &使用迅雷下载 - C:\PROGRAM FILES\SANDAI TECHNOLOGIES INC\THUNDER\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\PROGRAM FILES\SANDAI TECHNOLOGIES INC\THUNDER\getAllurl.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - F:\QQ2005 贺岁版 安装\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - F:\QQ2005 贺岁版 安装\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - F:\QQ2005 贺岁版 安装\SendMMS.htm
O8 - Extra context menu item: 导出到 Microsoft Excel(&x) - res://C:\PROGRA~1\MICROS~1\OFFICE10\EXCEL.EXE/3000
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRAM FILES\FLASHGET\FLASHGET.EXE
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRAM FILES\FLASHGET\FLASHGET.EXE
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - F:\QQ2005 贺岁版 安装\QQ.EXE (file missing)
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - F:\QQ2005 贺岁版 安装\QQ.EXE (file missing)
O9 - Extra button: 上网助手 - {5D73EE86-05F1-49ed-B850-E423120EC338} - http://assistant.3721.com/index.htm?fb=Cns (file missing)
O9 - Extra button: Yahoo 1G电邮 - {507F9113-CD77-4866-BA92-0E86DA3D0B97} - http://cn.mail.yahoo.com/promo/rd1 (file missing)
O9 - Extra button: 情景聊天 - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/ (file missing)
O9 - Extra button: 手机短信 - {00000000-0000-0001-0001-596BAEDD1289} - http://sms.3721.com/ie/index.htm?pid=U_flashget_62580 (file missing)
O9 - Extra button: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\CDN\CDNIEHLP.DLL (file missing)
O9 - Extra 'Tools' menuitem: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\CDN\CDNIEHLP.DLL (file missing)
O10 - Broken Internet access because of LSP provider 'c:\windows\system\cdnns.dll' missing
O11 - Options group: [CDNCLIENT]  中文上网

gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT