瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 〓〓〓〓〓 BAD STATUS(1)新威胁,咋解决? 〓〓〓〓〓〓

1   1  /  1  页   跳转

〓〓〓〓〓 BAD STATUS(1)新威胁,咋解决? 〓〓〓〓〓〓

〓〓〓〓〓 BAD STATUS(1)新威胁,咋解决? 〓〓〓〓〓〓

用卡巴查出的毒,但不能删除,也没有显示路径。

我用Ewido也杀过,好象还是没反应。

一楼是HijackThis日志,哪位筒子帮个忙~~




[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; Maxthon; .NET CLR 1.1.4322)
最后编辑2007-08-08 13:21:40
分享到:
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at 9:49:51, on 2007-8-7
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\ctfmon.exe
D:\遨游Maxthon\Maxthon\Maxthon.exe
D:\QQ病毒木马专杀工具\QQ病毒木马专杀工具\qqkav_newhua.exe
C:\WINDOWS\system32\conime.exe
E:\QQ\QQ.exe
D:\迅雷Thunder5.4.1\Thunder.exe
D:\首页绑架克星 - HijackThis\首页绑架克星 - HijackThis\HijackThis.exe

O2 - BHO: WebThunderBHO - {00000AAA-A363-466E-BEF5-9BB68697AA7F} - D:\Web迅雷\WebThunderBHO_Now.dll
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v8.dll
O2 - BHO: AdPopup - {11F09AFD-75AD-4E51-AB43-E09E9351CE16} - (no file)
O2 - BHO: Info cache - {385AB8C6-FB22-4D17-8834-064E2BA0A6F0} - C:\Documents and Settings\All Users\Application Data\Microsoft\PCTools\pctools.dll (file missing)
O2 - BHO: 超级兔子上网精灵 - {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} - D:\Super Rabbit\haokanbar.dll
O2 - BHO: IEAux Class - {7605CC7C-00FD-4A5F-BAFD-828342DE6279} - C:\PROGRA~1\OCINS\ieaux.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: 超级兔子上网精灵 - {43869BB3-22FD-4F15-9B46-238106BA2F4E} - D:\Super Rabbit\haokanbar.dll
O3 - Toolbar: 金山快译(&K) - {6C3797D2-3FEF-4cd4-B654-D3AE55B4128C} - D:\金鹕山娇快煲译隲\IEBand.dll (file missing)
O4 - HKLM\..\Run: [SKYNET Personal FireWall] D:\天网防火墙\SkyNetFirewall\PFW.exe
O4 - HKLM\..\Run: [kav] "D:\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\Ctfmon.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: &使用迅雷下载 - D:\迅雷Thunder5.4.1\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - D:\迅雷Thunder5.4.1\getallurl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - E:\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 使用Web迅雷下载 - D:\Web迅雷\GetUrl.htm
O8 - Extra context menu item: 使用Web迅雷下载全部链接 - D:\Web迅雷\GetAllUrl.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - E:\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - E:\QQ\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - E:\QQ\SendMMS.htm
O9 - Extra button: 启动Web迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com (file missing)
O9 - Extra 'Tools' menuitem: 启动Web迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com (file missing)
O9 - Extra button: 中文上网 - {B012491E-8FA4-4851-AA9B-22E33784FBAD} - C:\Program Files\OCINS\config.exe
O9 - Extra 'Tools' menuitem: 中文上网 - {B012491E-8FA4-4851-AA9B-22E33784FBAD} - C:\Program Files\OCINS\config.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{6119C4E0-99F2-4A4C-B791-75E21C2FC8A2}: NameServer = 202.103.24.68 202.103.44.150
O20 - AppInit_DLLs: jzgpri.dll
O23 - Service: 卡巴斯基反病毒6.0 (AVP) - Unknown owner - D:\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: KSD2Service - Unknown owner - (no file)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

gototop
 

拉一把,哪位大哥帮个忙~~
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT