瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 Trojan.IMMSG.TBMsg.d与Trojan.Clicker.VB.abu 是什么病毒,怎么杀?

1   1  /  1  页   跳转

Trojan.IMMSG.TBMsg.d与Trojan.Clicker.VB.abu 是什么病毒,怎么杀?

Trojan.IMMSG.TBMsg.d与Trojan.Clicker.VB.abu 是什么病毒,怎么杀?

中了Trojan.IMMSG.TBMsg.d、Trojan.Clicker.VB.abu 两病毒,怎么也杀不干净,求救啊。

Logfile of HijackThis v1.99.1
Scan saved at 17:53:14, on 2006-10-30
Platform: Windows XP  (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\rising\rfw\RfwMain.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\Com\SERVICES.EXE
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Rising\Rav\Rav.exe
C:\Program Files\Rising\Rav\RsAgent.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Rising\Rav\RsLogVw.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\alexa.exe
C:\Program Files\Internet Explorer\iexplore.exe
f:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\f\LOCALS~1\Temp\Rar$EX00.946\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.0 localhost
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\System32\kakatool.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\RunOnce: [RavStub] "C:\Program Files\Rising\Rav\ravstub.exe" /RUNONCE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O8 - Extra context menu item: &使用迅雷下载 - f:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O9 - Extra button: 启动迅雷 - {0062C9BD-B349-40DE-91A0-755F37ACD559} - f:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - Extra 'Tools' menuitem: 启动迅雷 - {0062C9BD-B349-40DE-91A0-755F37ACD559} - f:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {3359C0B1-2363-40B3-AFCA-1ABC799AC486} (SSReaderPlug Control) - http://reg.ssreader.com/SSReaderPlug.cab
O21 - SSODL: DLMon - {590498A3-4131-4D8F-BA4B-36791A0803B1} - C:\WINDOWS\System32\DLMain.dll (file missing)
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe

最后编辑2006-10-30 19:41:21
分享到:
gototop
 

病毒名称处理结果发现日期扫描方式路径文件病毒来源
Trojan.Clicker.VB.abu删除成功2006-10-29 13:09手动扫描C:\WINDOWS\system32\ComSERVICES.EXE>>uPack0.33本机
Trojan.Clicker.VB.abu删除成功2006-10-29 13:16手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0064940.EXE>>uPack0.33本机
Trojan.Clicker.VB.abu删除成功2006-10-29 13:16手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0065941.EXE>>uPack0.33本机
Backdoor.Gpigeon.iue删除成功2006-10-29 13:43手动扫描G:\分类下载\常用工具\木马专杀方法木马杀客.rar>>木马杀客\mmsk.exe本机
Trojan.Clicker.VB.abu删除成功2006-10-29 14:45手动扫描C:\WINDOWS\system32\ComSERVICES.EXE>>uPack0.33本机
Trojan.Clicker.VB.abu删除成功2006-10-29 14:51手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0066947.EXE>>uPack0.33本机
Trojan.Clicker.VB.abu清除成功2006-10-29 22:01手动扫描SERVICES.EXE>>C:\WINDOWS\System32\Com\SERVICES.EXE本机
Trojan.Clicker.VB.abu删除成功2006-10-29 22:05手动扫描C:\WINDOWS\system32\ComSERVICES.EXE>>uPack0.33本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:30手动扫描C:\WINDOWS\system32BFA49DB0.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:30手动扫描C:\WINDOWS\system322594EC95.DLL>>uPack0.34本机
Trojan.Clicker.VB.abu删除成功2006-10-30 15:31手动扫描C:\WINDOWS\system32\ComSERVICES.EXE>>uPack0.33本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0066955.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0066957.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0064936.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0064939.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0065948.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0065950.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0066988.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0066990.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0067993.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0067994.DLL>>uPack0.34本机
Trojan.Clicker.VB.abu删除成功2006-10-30 15:44手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0067995.EXE>>uPack0.33本机
Trojan.Clicker.VB.abu删除成功2006-10-30 18:25手动扫描C:\WINDOWS\system32\ComSERVICES.EXE>>uPack0.33本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 18:39手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0068045.DLL>>uPack0.34本机
Trojan.IMMSG.TBMsg.d删除成功2006-10-30 18:39手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0068046.DLL>>uPack0.34本机
Trojan.Clicker.VB.abu删除成功2006-10-30 18:39手动扫描C:\System Volume Information\_restore{899BE14E-B59C-4EA6-9AD2-E78CB65AAB6B}\RP39A0068051.EXE>>uPack0.33本机
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT