1   1  /  1  页   跳转

求助!xuhuan.exe问题

求助!xuhuan.exe问题

哪位高手帮帮忙,我的电脑里有多个进程是xuhuan.exe,删了还会有,瑞星杀了也还有。
Logfile of HijackThis v1.99.1
Scan saved at 16:38:53, on 2006-9-13
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
D:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\svchost.exe
C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
D:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\hxupdate\hxgame-update.exe
C:\WINDOWS\system32\ctfmon.exe
c:\program files\internet explorer\iexplore.exe
C:\WINDOWS\system32\conime.exe
d:\Program Files\ewido anti-spyware 4.0\guard.exe
D:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\WINDOWS\explorer.exe
D:\Program Files\BitSpirit\BitSpirit.exe
C:\WINDOWS\system32\taskmgr.exe
d:\program files\rising\rfw\rfwsrv.exe
D:\Program Files\Rising\Rfw\RfwMain.exe
D:\Program Files\Rising\Rav\Ravmond.exe
D:\Program Files\Rising\Rav\RAVMON.EXE
D:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\WINDOWS\system32\xuhuan.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\xuhuan.exe
D:\Program Files\ha_hijackthis_1991\HijackThis.exe

R3 - URLSearchHook: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll
O3 - Toolbar: 金山快译(&K) - {6C3797D2-3FEF-4cd4-B654-D3AE55B4128C} - D:\Program Files\Kingsoft\FastAIT 2005\IEBand.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\KakaTool.dll
O3 - Toolbar: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] ; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] ; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] ; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ATIPTA] C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
O4 - HKLM\..\Run: [RavTask] "D:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [RfwMain] "D:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [hxgame-update] C:\Program Files\hxupdate\hxgame-update.exe
O4 - HKLM\..\Run: [StormCodec_Helper] "d:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &使用迅雷下载 - d:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - d:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O8 - Extra context menu item: 使用Web迅雷下载 - C:\Program Files\Thunder Network\WebThunder\GetUrl.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\Program Files\Tencent\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - Extra context menu item: 用比特精灵下载(&B) - D:\Program Files\BitSpirit\bsurl.htm
O9 - Extra button: 启动迅雷 - {0062C9BD-B349-40DE-91A0-755F37ACD559} - d:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - Extra 'Tools' menuitem: 启动迅雷 - {0062C9BD-B349-40DE-91A0-755F37ACD559} - d:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - Extra button: 唯刊.VIKA - {2BB49E59-100F-4ca6-9127-E0E3FF76F98E} - C:\Program Files\VIKA\vkclient.exe.lnk
O9 - Extra 'Tools' menuitem: 唯刊.VIKA - {2BB49E59-100F-4ca6-9127-E0E3FF76F98E} - C:\Program Files\VIKA\vkclient.exe.lnk
O9 - Extra button: 启动Web迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com (file missing)
O9 - Extra 'Tools' menuitem: 启动Web迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com (file missing)
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\Tencent\QQ\QQ.EXE
O9 - Extra 'Tools' menuitem: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\Program Files\Tencent\QQ\QQ.EXE
O15 - Trusted Zone: http://192.168.0.2
O15 - Trusted Zone: http://www.icbc.com.cn
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (CEditCtrl Object) - https://img.alipay.com/download/1007/aliedit.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148396078859
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1148396062796
O16 - DPF: {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} - https://mybank.icbc.com.cn/icbc/perbank/AxSafeControls.cab
O16 - DPF: {D0A29C6C-AA71-4423-8C4A-5998B774C448} (IEDown Class) - http://download.ourgame.com/IEDown4.cab
O16 - DPF: {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} (Rising Web Scan Object) - http://download.rising.com.cn/register/pcver/autoupgradepad/pcver2006new/OL2006.cab
O20 - Winlogon Notify: MicroQC - C:\WINDOWS\SYSTEM32\jsdll.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - d:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - d:\program files\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - d:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - D:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\Program Files\Rising\Rav\Ravmond.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

最后编辑2006-09-14 20:28:19
分享到:
gototop
 

【回复“我过的桥”的帖子】你好我已经发到你邮箱了,谢谢帮忙!
gototop
 

Trojan.DL.Small.lov删除成功2006-09-13 12:43C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:43C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:45C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:45C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\KXCBWNSRgoogle[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:45C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:48C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:48C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:50C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\KXCBWNSRgoogle[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:50C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:52C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:52C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:54C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:54C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\KXCBWNSRgoogle[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:54C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:56C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:56C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:58C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\KXCBWNSRgoogle[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 12:58C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 13:00C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 13:00C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 13:02C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\O5KX23K1google[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 13:02C:\Documents and Settings\wby81727\Local Settings\Temporary Internet Files\Content.IE5\KXCBWNSRgoogle[1].exe>>AsPack2.0
Trojan.DL.Small.lov删除成功2006-09-13 13:02C:\WINDOWS\system32xuhuan.exe>>AsPack2.0
gototop
 

哪位高手帮帮小弟呀?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT