我今天搜索一个智力问题,不小心打开了http://www.7939.com/这个网站
然后IE就被劫持了,用卡卡修复,瑞星注册表修复工具都没用,重新启动后又自动
修改了注册表,我把日志发上来,希望有人能帮我解决这个问题,电脑有很重要的资料 我不想重新安装,多谢大家来帮帮我
Logfile of Kaka v2. 0. 0. 9 Scan Module v2. 0. 0. 1
Scan saved at 20:38:21, on 2006-09-15
Platform: Microsoft Windows XP Professional Service Pack 2 (Build 2600)
MSIE: Internet Explorer v6.00 SP2; (6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
Running processes:
[smss.exe]
CommandLine =
[csrss.exe]
CommandLine = C:\WINDOWS\system32\csrss.exe
ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
[winlogon.exe]
CommandLine = winlogon.exe
[services.exe]
CommandLine = C:\WINDOWS\system32\services.exe
[lsass.exe]
CommandLine = C:\WINDOWS\system32\lsass.exe
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k DcomLaunch
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k rpcss
[CCenter.exe]
CommandLine = "d:\Program Files\Rising\Rav\CCenter.exe"
[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k netsvcs
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k NetworkService
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k LocalService
[RavMonD.exe]
CommandLine = "d:\Program Files\Rising\Rav\Ravmond.exe"
[spoolsv.exe]
CommandLine = C:\WINDOWS\system32\spoolsv.exe
[RavStub.exe]
CommandLine = "d:\Program Files\Rising\Rav\RavStub.exe" /RAVMOND
[explorer.exe]
CommandLine = C:\WINDOWS\Explorer.EXE
[VM_STI.EXE]
CommandLine = "C:\WINDOWS\VM_STI.EXE" BigDogPath
[RavTask.exe]
CommandLine = "D:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM
[RavMon.exe]
CommandLine = "D:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM
[Realplayer.exe]
CommandLine = "C:\WINDOWS\system32\Realplayer.exe"
[Update.exe]
CommandLine = "C:\Program Files\Common Files\{B01657C8-0960-2052-1210-030229040056}\Update.exe" te-110-12-0000029
[ctfmon.exe]
CommandLine = "C:\WINDOWS\system32\ctfmon.exe"
[sqlmangr.exe]
CommandLine = "D:\MSSQL7\Binn\sqlmangr.exe" /n
[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k COMEventHelper
[sqlservr.exe]
CommandLine = d:\MSSQL7\binn\sqlservr.exe
[nvsvc32.exe]
