请高手帮忙我的主页被修改拉非常严重我是个菜鸟

下面是我日志帮忙看看
Logfile of HijackThis v1.99.1
Scan saved at 16:55:52, on 2006-05-11
Platform: Windows XP SP2, v.2622 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2144)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
D:\下载软件\杀毒工具\瑞星杀毒软件\RISING\RAV\CCENTER.EXE
D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\RavStub.exe
c:\program files\rising\rfw\RfwMain.exe
C:\WINDOWS\system32\atiptaxx.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\RavTask.exe
D:\下载软件\安全工具\3721中~1\CHIN@D~1\Cns.exe
C:\WINDOWS\system32\exp1orer.exe
C:\WINDOWS\system32\ctfmon.exe
D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\Ravmon.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\racer-henan-cnc\racer.exe
C:\Program Files\racer-henan-cnc\RacerKp.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\smartde\sde.exe
C:\WINDOWS\system32\spoolsv.exe
D:\下载软件\常用工具\金山系列\FastAIT.exe
D:\下载软件\常用工具\粘贴日志\HijackThis.exe

R3 - URLSearchHook: (no name) - {BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: MEobjectSDT - {D4D5C535-BA95-4327-870D-A33826FDD17A} - C:\WINDOWS\system32\obwbkya.dll
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [PSDll] Rundll32 "C:\WINDOWS\system32\psdll.dll",Start
O4 - HKLM\..\Run: [RavTask] "D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [RfwMain] "c:\program files\rising\rfw\rfwmain.exe" -startup
O4 - HKLM\..\Run: [Chinaddr] D:\下载软件\安全工具\3721中~1\CHIN@D~1\Cns.exe -nosplash
O4 - HKLM\..\Run: [LoadEWXD] C:\WINDOWS\system32\exp1orer.exe
O4 - HKLM\..\RunOnce: [RavStub] "D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\ravstub.exe" /RUNONCE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: 河南网通宽带用户客户端.lnk = C:\Program Files\racer-henan-cnc\racer.exe
O8 - Extra context menu item: 访问 3721中文网址 - D:\下载软件\安全工具\3721中~1\CHIN@D~1\cnsgo_936.htm
O10 - Unknown file in Winsock LSP: c:\windows\system32\cdnns.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1134866260685
O16 - DPF: {DA984A6D-508E-11D6-AA49-0050FF3C628D} (Ravonline) - http://download.rising.com.cn/QQ/QQkill/rsonline.cab
O18 - Protocol: koboo - {7DEE9D05-FA0A-4416-A6F3-6537D0EAB6A6} - C:\WINDOWS\system32\mbprot.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\SoDAHK.DLL
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - D:\下载软件\杀毒工具\瑞星杀毒软件\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\下载软件\杀毒工具\瑞星杀毒软件\Rising\Rav\Ravmond.exe
O23 - Service: SDAgent Service (SDAgentService) - 北京兴华基业软件技术有限公司 - C:\Program Files\Common Files\smartde\sde.exe
帮助解决问题谢谢
最后编辑2006-05-11 17:47:19