瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 有好心人告知下么..俺滴瑞星打8开了

12   1  /  2  页   跳转

有好心人告知下么..俺滴瑞星打8开了

有好心人告知下么..俺滴瑞星打8开了

今天早上开始..突然打8开了...病毒实时监控开始时也8启动了...双击桌边瑞星坐标也是闪一下就消失了...最多只出现小狮子...连卸载也是..闪一下就消失了...求救..有人告诉俺下8?
最后编辑2006-08-07 16:08:28
分享到:
gototop
 

迷茫S了..连QQ都打8开了...说啥Runtime error 204 at00D624E8
gototop
 

斑斑都呼呼了么....癌..咋办哇..
gototop
 

【回复“沐雪紫狐”的帖子】
俺滴日志
Logfile of HijackThis v1.99.1
Scan saved at 1:09:27, on 2006-8-7
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\3721\Dlaccel\YDownloader.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Conexant\AccessRunner ADSL USB\CnxDslTb.exe
C:\WINDOWS\system32\SVOHOST.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\MSMSGS.EXE
C:\WINDOWS\system32\conime.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\System32\msiexec.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\a\LOCALS~1\Temp\Rar$EX00.078\HijackThis.exe

R3 - URLSearchHook: (no name) - {BB936323-19FA-4521-BA29-ECA6A121BC78} - (no file)
O2 - BHO: ThunderIEHelper - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v14.dll
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F57} - C:\WINDOWS\system32\ThunderBHO_v06.dll
O2 - BHO: (no name) - {083BF5BE-D50D-43C8-9556-EB16BE05D628} - C:\WINDOWS\system32\Svjhu.dll (file missing)
O2 - BHO: (no name) - {0B8EA3BD-0F78-4233-8E92-49CDCC66A7B5} - C:\WINDOWS\system32\Lcei.dll (file missing)
O2 - BHO: (no name) - {0C0C2B24-F423-4F9B-BDF6-5BF8D3E63263} - C:\WINDOWS\system32\Fnqbs.dll (file missing)
O2 - BHO: Tencent Browser Helper - {0C7C23EF-A848-485B-873C-0ED954731014} - C:\WINDOWS\Downloaded Program Files\Wdeivz.dll (file missing)
O2 - BHO: (no name) - {1F28D7AD-73FA-4F69-8024-4F7BBC8CE2EA} - C:\WINDOWS\system32\Tbfyry.dll (file missing)
O2 - BHO: (no name) - {218877A8-7E04-41D1-B290-C59B7893E192} - C:\WINDOWS\system32\Zrrxd.dll (file missing)
O2 - BHO: (no name) - {219B2089-95FB-4721-9698-B16A6800F349} - C:\WINDOWS\system32\Jhfun.dll (file missing)
O2 - BHO: (no name) - {35980F6E-A137-4E50-953D-813BB8556899} - (no file)
O2 - BHO: (no name) - {429263F6-CAA7-4C01-96B7-BCC465A4E955} - C:\WINDOWS\system32\Tyas.dll (file missing)
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O2 - BHO: (no name) - {59DFD4CB-59BF-4350-8D7E-F94F23A1BED4} - C:\WINDOWS\system32\Apfimt.dll (file missing)
O2 - BHO: (no name) - {5A09E1C7-C297-4676-9371-7CAF4946639C} - C:\WINDOWS\system32\Zkdwvq.dll (file missing)
O2 - BHO: (no name) - {5CF48E91-A6A7-4C9B-8026-45F739362505} - C:\WINDOWS\system32\Evynd.dll (file missing)
O2 - BHO: YDragSearch - {62EED7C6-9F02-42f9-B634-98E2899E147B} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL (file missing)
O2 - BHO: (no name) - {669751ED-D558-49AE-B01A-3B374CC7910E} - C:\WINDOWS\system32\ssup.dll
O2 - BHO: (no name) - {6E298CDB-0C11-4308-96BF-37552066EC00} - C:\WINDOWS\system32\Nogflb.dll (file missing)
O2 - BHO: (no name) - {6F09D926-DA0E-4285-9BE7-8E82ACD4E227} - C:\WINDOWS\system32\Vqgtin.dll (file missing)
O2 - BHO: BandIE Class - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\baidubar.dll
O2 - BHO: (no name) - {7999520E-B01D-47A7-9A49-9668020EEEA1} - C:\WINDOWS\system32\Fjvs.dll (file missing)
O2 - BHO: (no name) - {7B2A0BA9-9F99-4896-B343-29EF0FA9B6F2} - C:\WINDOWS\system32\Jbmsc.dll (file missing)
O2 - BHO: (no name) - {819BC286-5643-454B-B42E-20CD1DB6A2F1} - C:\WINDOWS\system32\Fndka.dll (file missing)
O2 - BHO: (no name) - {853C8B51-8FF3-4F81-9A19-0DC5B07EBB20} - C:\WINDOWS\system32\Schst.dll (file missing)
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll
O2 - BHO: (no name) - {8D5A2F0F-92CD-4544-8DFF-8BE7C9CA4C6E} - C:\WINDOWS\system32\Kxjx.dll (file missing)
O2 - BHO: (no name) - {92E5D896-8F59-44C9-9E98-75AA7C2EA5BA} - C:\WINDOWS\system32\Ivcxqp.dll (file missing)
O2 - BHO: (no name) - {949B66D9-FA46-46D6-9B4C-D0F2DB5ABEF8} - C:\WINDOWS\system32\Zjftda.dll (file missing)
O2 - BHO: (no name) - {A9930D97-9CF0-42A0-A10D-4F28836579D5} - C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX
O2 - BHO: (no name) - {B72E0989-FF49-4CF8-886F-7DE2533AE8D3} - C:\WINDOWS\system32\Xjoh.dll (file missing)
O2 - BHO: (no name) - {BF204E77-8034-4122-ADC4-B5A75D61AE4B} - C:\WINDOWS\system32\Fljmtk.dll (file missing)
O2 - BHO: (no name) - {CBA20C10-D020-4695-B001-50C4A80AD8E4} - C:\WINDOWS\system32\Llmt.dll (file missing)
O2 - BHO: (no name) - {CEB5D266-4875-4692-880D-755D93A6F31E} - C:\WINDOWS\system32\Pvtcw.dll (file missing)
O2 - BHO: IE - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - C:\WINDOWS\downlo~1\CnsHook.dll
gototop
 

O2 - BHO: (no name) - {D7B33463-5C66-4B97-8E25-D90DE28E614F} - C:\WINDOWS\system32\Maimmn.dll (file missing)
O2 - BHO: (no name) - {DBDCB73A-C101-48D6-AB9F-2B07C6761508} - C:\WINDOWS\system32\Ifto.dll (file missing)
O2 - BHO: (no name) - {E0C97B6B-396A-40A7-B818-5D142C41FD8A} - C:\WINDOWS\system32\Hodwdk.dll (file missing)
O2 - BHO: (no name) - {E6789611-58AC-4B7F-B9EA-317C9395D1F7} - C:\WINDOWS\system32\Nmqhq.dll (file missing)
O2 - BHO: (no name) - {F3DFB1D7-E088-40A4-B854-C221D4046178} - C:\WINDOWS\system32\Ngyxt.dll (file missing)
O2 - BHO: WMHlprObj Class - {F5824EFB-728A-4726-A5A5-85A68B20EDC3} - C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll
O2 - BHO: (no name) - {F7324A43-9A9D-4D70-8F8A-FEA798BA9E46} - C:\WINDOWS\system32\Aisub.dll (file missing)
O3 - Toolbar: 百度超级搜霸 - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\baidubar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [dl_accel] C:\Program Files\3721\Dlaccel\YDownloader.exe
O4 - HKLM\..\Run: [MS-4011 Memory Patch] E:\ad\account\RavSasser.exe -Patch
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\Conexant\AccessRunner ADSL USB\CnxDslTb.exe" "Conexant\AccessRunner ADSL USB"
O4 - HKLM\..\Run: [CnsMHlp.exe] C:\WINDOWS\Downloaded Program files\CnsMHlp.exe
O4 - HKLM\..\Run: [CnsMin] Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
O4 - HKLM\..\Run: [stup.exe] C:\PROGRA~1\TENCENT\Adplus\stup.exe
O4 - HKLM\..\Run: [SoundMam] C:\WINDOWS\system32\SVOHOST.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\MSMSGS.EXE" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: AccessRunner DSL.lnk = ?SystemRoot%\system32\CNXCI.DLL
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &使用下载加速专家下载 - C:\Program Files\3721\Dlaccel\geturl.htm
O8 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O8 - Extra context menu item: &使用迷你PP下载 - C:\Program Files\MINIPP\geturl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - C:\Program Files\Tencent\qq\AddToNetDisk.htm
O8 - Extra context menu item: 使用Kugoo下载 - E:\ad\account\KuGoo2\KugooDownX.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - C:\Program Files\Tencent\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\qq\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - C:\Program Files\Tencent\qq\SendMMS.htm
O9 - Extra button: 迅雷 - {1FBA04EE-3024-11D2-8F1F-000019796948} - C:\Program Files\Sandai Technologies Inc\Thunder\Thunder.exe (file missing)
O9 - Extra 'Tools' menuitem: 迅雷 - {1FBA04EE-3024-11D2-8F1F-000019796948} - C:\Program Files\Sandai Technologies Inc\Thunder\Thunder.exe (file missing)
O9 - Extra button: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Yahoo 1G电邮 - {507F9113-CD77-4866-BA92-0E86DA3D0B97} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail (file missing)
O9 - Extra button: 寻宝乐趣多 - {59BC54A2-56B3-44a0-93E5-432D58746E26} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=taobao (file missing)
O9 - Extra button: 雅虎助手 - {5D73EE86-05F1-49ed-B850-E423120EC338} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist (file missing)
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - C:\Program Files\Tencent\QQ\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - C:\Program Files\Tencent\QQ\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O9 - Extra button: 情景聊天 - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/ (file missing)
O9 - Extra button: (no name) - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair (file missing)
O9 - Extra 'Tools' menuitem: 修复浏览器 - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
gototop
 

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean (file missing)
O9 - Extra 'Tools' menuitem: 清理上网记录 - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean (file missing)
O10 - Unknown file in Winsock LSP: c:\windows\system32\cdnns.dll
O11 - Options group: [!CNS]  上网助手-地址栏搜索
O11 - Options group: [CDNCLIENT]  中文上网
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1120192791041
O16 - DPF: {AC3A36A8-9BFF-410A-A33D-2279FFEB69D2} (Qzone Media Tools) - http://219.133.62.248/QQPlayer.cab
O16 - DPF: {C661F36D-DF85-4EF4-83C7-E107B83D04B1} (WebActivater Control) - http://dl_dir.qq.com/3dshow/3DShowVM.cab
O16 - DPF: {D0A29C6C-AA71-4423-8C4A-5998B774C448} (IEDown Class) - http://download.ourgame.com/IEDown4.cab
O16 - DPF: {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} (Rising Web Scan Object) - http://download.rising.com.cn/register/pcver/autoupgradepad/pcver2006new/OL2006.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0BF9BEDE-6E54-4676-B3B0-A9B165BA636A}: NameServer = 202.102.134.68 202.102.128.68
O17 - HKLM\System\CS1\Services\Tcpip\..\{0BF9BEDE-6E54-4676-B3B0-A9B165BA636A}: NameServer = 202.102.134.68 202.102.128.68
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: IIS Admin (IISADMIN) - Unknown owner - C:\WINDOWS\system32\inetsrv\inetinfo.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Simple Mail Transfer Protocol (SMTP) (SMTPSVC) - Unknown owner - C:\WINDOWS\system32\inetsrv\inetinfo.exe (file missing)
O23 - Service: SNMP Service (SNMP) - Unknown owner - C:\WINDOWS\System32\snmp.exe (file missing)
O23 - Service: SNMP Trap Service (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Windows User Mode Driver Framework (UMWdf) - Unknown owner - C:\WINDOWS\system32\wdfmgr.exe (file missing)

gototop
 

WHO能帮俺解答....
gototop
 

SORRY``俺第一次使用这个东东...8明白...单击修复..它说修复所选项目..此操作会永久删除所选项目...选确定么..8是修复么..还删除?
gototop
 

咦```刚刚滴M哥哥捏```
gototop
 

点了修复.............................出现对话框:此操作会永久滴删除所选项目.单击是?
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT