瑞星卡卡安全论坛在线技术支持在线技术支持[已关闭] 【求助】小伞无法启动,且找到3个病毒,该怎办?

1   1  /  1  页   跳转

【求助】小伞无法启动,且找到3个病毒,该怎办?

【求助】小伞无法启动,且找到3个病毒,该怎办?

我的小伞根本无法启动了(我根本就没有搜搜软件),试过下载最新的升级包在安全模式查杀也无法找到病毒。
后来通过江民的在线查毒,找到了以下3个病毒:
C:FOUND.030\FILE0016.CHK      (病毒名:Adware/SearchNet.a)
C:FOUND.030\FILE0012.CHK      (病毒名:Adware/SearchNet.d)
C:FOUND.030\FILE0000.CHK      (病毒名:Adware/SearchNet.c)

但我根据其路径,在C盘里根本找不到此3个病毒(已打开了“显示所有文件和文件夹”),请问是否这3个病毒导致我的小伞无法启动?该如何杀或删除这3个病毒?
Td=}W(Ébbs.ikaka.com¬ÿeõ‚™Ûô>
最后编辑2006-09-11 23:47:53.763000000
分享到:
gototop
 

引用:
【快乐维尼的贴子】在安全模式下看看瑞星是否可以正常启动?
………………

在安全模式下,开机也是无法启动,只好通过手动启动“监控中心”,但却是“收起来的小红伞”。而手动启动“杀毒软件”时,却正常。
请问我这“监控中心”到底是怎么啦?应如何可恢复正常的小绿伞?Td=}W(Ébbs.ikaka.com¬ÿeõ‚™Ûô>
gototop
 

请高手回答我呀!Td=}W(Ébbs.ikaka.com¬ÿeõ‚™Ûô>
gototop
 

引用:
【终结者阿诺的贴子】请高手回答我呀!
………………

Td=}W(Ébbs.ikaka.com¬ÿeõ‚™Ûô>
gototop
 

引用:
【塞门铁克的贴子】把那三个毒上报给瑞新,
………………

怎么上报呀?你可以帮我上报吗?

那三个病毒瑞星是无法查找到的,而且我按照路径也无法找到,真不知怎办!Td=}W(Ébbs.ikaka.com¬ÿeõ‚™Ûô>
gototop
 

引用:
【永不断の弦的贴子】这3个病毒是中搜的病毒,LZ先扫份日志上来,工具在http://forum.ikaka.com/topic.asp?board=28&artid=6979213的4楼下载
………………

日志如下:
Logfile of HijackThis v1.99.1
Scan saved at 23:37:11, on 2006-9-11
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
D:\安全防护\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
D:\安全防护\Rising\Rav\Ravmond.exe
d:\安全防护\rising\rfw\rfwproxy.exe
d:\安全防护\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
D:\安全防护\Rising\Rav\RavStub.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
d:\安全防护\rising\rfw\RfwMain.exe
C:\WINDOWS\System32\pctspk.exe
C:\Program Files\Apoint2K\Apoint.exe
D:\系统软件\RAMpage\RAMpage.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\ATK0100\Hcontrol.exe
C:\WINDOWS\System32\conime.exe
C:\WINDOWS\System32\khooker.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\安全防护\Rising\Rav\RavTask.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\System32\ctfmon.exe
D:\安全防护\Rising\Rav\Ravmon.exe
D:\网络软件\TheWorld\TheWorld.exe
D:\其它软件\扫描系统日志\HijackThis.exe

R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - (no file)
O2 - BHO: IE - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - (no file)
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [RAMpage] "D:\系统软件\RAMpage\RAMpage.exe" M=28 T=4 S P="D:\系统软件\RAMpage\RAMpageConfig.exe"
O4 - HKLM\..\Run: [RfwMain] "D:\安全防护\rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [CdnCtr] 8V?
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [RegNetPass] C:\WINDOWS\System32\regcsp.exe
O4 - HKLM\..\Run: [gemstrmw] C:\WINDOWS\System32\gemstrmw.exe /r
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Hcontrol] C:\WINDOWS\ATK0100\Hcontrol.exe
O4 - HKLM\..\Run: [SiS KHooker] C:\WINDOWS\System32\khooker.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [RavTask] "D:\安全防护\Rising\Rav\RavTask.exe" -system
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &使用暴风下载器下载 - D:\媒体软件\Storm Downloader\geturl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\网络软件\qq\AddToNetDisk.htm
O8 - Extra context menu item: 导出到 Microsoft Excel(&x) - res://D:\办公学习\MICROS~1\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\网络软件\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\网络软件\qq\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\网络软件\qq\SendMMS.htm
O9 - Extra button: 手机短信 - {00000000-0000-0001-0001-596BAEDD1289} - http://sms.3721.com/ie/index.htm (file missing)
O9 - Extra button: 江民在线杀毒 - {06926B30-424E-4f1c-8EE3-543CD96573DC} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: 情景聊天 - {0F7DE07D-BD74-4991-9D5F-ECBB8391875D} - http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/ (file missing)
O9 - Extra button: 上网助手 - {5D73EE86-05F1-49ed-B850-E423120EC338} - http://assistant.3721.com/index.htm?fb=Cns (file missing)
O9 - Extra button: (no name) - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://assistant.3721.com/security1.htm?fb=Cns (file missing)
O9 - Extra 'Tools' menuitem: 修复浏览器 - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} - http://assistant.3721.com/security1.htm?fb=Cns (file missing)
O9 - Extra button: (no name) - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://assistant.3721.com/clean1.htm?fb=Cns (file missing)
O9 - Extra 'Tools' menuitem: 清理上网记录 - {FD00D911-7529-4084-9946-A29F1BDF4FE5} - http://assistant.3721.com/clean1.htm?fb=Cns (file missing)
O11 - Options group: [!CNS]  网络实名
O14 - IERESET.INF: START_PAGE_URL=about:blank
O14 - IERESET.INF: MS_START_PAGE_URL=about:blank
O15 - Trusted Zone: http://www.icbc.com.cn
O16 - DPF: {2761225D-F0F2-44E8-A2C9-476FB6A3316A} (TRadio Control) - http://dl_dir.qq.com/qqtools/trsetup.exe
O16 - DPF: {2EA6D939-4445-43F1-A12B-8CB3DDA8B855} (BlueskyVideo Control) - http://www.bluesky.cn/download/v2_60.cab
O16 - DPF: {5EC7C511-CD0F-42E6-830C-1BD9882F3458} (PowerPlayer Control) - http://www.ppstream.com/bin/itplayer.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1101173981165
O16 - DPF: {6BB0C189-3676-4711-AA75-E2801D6B0E27} (AvlFTP Control) - http://benchmark.avl.com.cn/cab/avlFtp.cab
O16 - DPF: {6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89} (Micrsoft SearchBar) - http://count.kuaiso.com/3w/SearchBar_XP.cab
O16 - DPF: {6DA53AF3-E152-47D0-9E95-D2946EFB998A} (SLauncher Class) - https://site1.samvo.com/samvo/activex/samvolauncher.cab
O16 - DPF: {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} (AxSubmitControl Class) - https://mybank.icbc.com.cn/icbc/perbank/AxSafeControls.cab
O16 - DPF: {991481A7-4669-4E15-8C24-100404E1F5CB} (Blueskyvoice Control) - http://www.bluesky.cn/download/blueskyvoice_60.cab
O16 - DPF: {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} - http://bar.baidu.com/update/IESearch.cab
O16 - DPF: {D0A29C6C-AA71-4423-8C4A-5998B774C448} (IEDown Class) - http://download.ourgame.com/IEDown4.cab
O16 - DPF: {DA984A6D-508E-11D6-AA49-0050FF3C628D} (Ravonline) - http://download.rising.com.cn/QQ/QQkill/rsonline.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://arcade.icq.com/carlo/zuma/popcaploader_v5.cab
O16 - DPF: {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} (Rising Web Scan Object) - http://download.rising.com.cn/register/pcver/autoupgradepad/pcver2006new/OL2006.cab
O16 - DPF: {EF6205C1-3F17-4829-BCB5-1336ED89E356} (KvScanOnline Control) - http://online.jiangmin.com/KvDown.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{CE9BE9E6-F52D-4AB0-B32A-7F35EEB014A9}: NameServer = 202.96.128.86 202.96.128.166
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: iPod 服务 (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - d:\安全防护\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - d:\安全防护\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - D:\安全防护\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\安全防护\Rising\Rav\Ravmond.exe

Td=}W(Ébbs.ikaka.com¬ÿeõ‚™Ûô>
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT