瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】QQ医生查到的, 杀了重启又出来了?

1   1  /  1  页   跳转

【求助】QQ医生查到的, 杀了重启又出来了?

【求助】QQ医生查到的, 杀了重启又出来了?




如图,杀了好多次,还是没办法,象个阴魂样,重启就出来了.哪位指点下,该怎么办?

[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)

附件附件:

下载次数:592
文件类型:image/pjpeg
文件大小:
上传时间:2008-1-3 15:44:42
描述:



最后编辑2008-01-04 11:19:40
分享到:
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at 15:42:45, on 2004-2-2
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\BoBoTurbo\BoBoTurbo.exe
C:\PROGRA~1\PANASO~1\LocalCom\lmsrvnt.exe
C:\PROGRA~1\PANASO~1\TRAPMO~1\Trapmnnt.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Rising\AntiSpyware\runiep.exe
C:\Program Files\Panasonic\Device Monitor\dmwakeup.exe
C:\Program Files\Panasonic\MFStation\PCCMFSDM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\我的文件\安装下载软件\腾讯QQ\QQDoctor\QQDoctor.exe
D:\我的文件\安装下载软件\讯雷5\Program\Thunder5.exe
D:\我的文件\下载程序\HijackThis V1.99.1\HijackThis.exe

R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: ThunderBHO - {00000000-12C8-4305-82F9-43058F20E8D2} - D:\我的文件\安装下载软件\讯雷5\ComDlls\XunLeiBHO_006.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - (no file)
O2 - BHO: (no name) - {F156768E-81EF-470C-9057-481BA8380DBA} - (no file)
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [runeip] "C:\Program Files\Rising\AntiSpyware\runiep.exe" /startup
O4 - HKLM\..\Run: [Panasonic Device Monitor Wakeup] C:\Program Files\Panasonic\Device Monitor\dmwakeup.exe
O4 - HKLM\..\Run: [Panasonic Device Manager for Multi-Function Station software] C:\Program Files\Panasonic\MFStation\PCCMFSDM.exe
O4 - HKLM\..\Run: [Panasonic PCFAX for Multi-Function Station software] C:\Program Files\Panasonic\MFStation\KmPcFax.exe -1
O4 - HKLM\..\Run: [MsPrint32D] C:\WINDOWS\infoky.exe
O4 - HKLM\..\Run: [AVPSrv] C:\WINDOWS\AVPSrv.exE
O4 - HKLM\..\Run: [NVDispDrv] C:\WINDOWS\uluuux.exe
O4 - HKLM\..\Run: [DbgHlp32] C:\WINDOWS\DbgHlp32.exe
O4 - HKLM\..\Run: [PTSShell] C:\WINDOWS\PTSShell.exe
O4 - HKLM\..\Run: [LotusHlp] C:\WINDOWS\LotusHlp.exe
O4 - HKLM\..\Run: [WSockDrv32] C:\WINDOWS\pzcfda.exe
O4 - HKLM\..\Run: [WinSysM] C:\WINDOWS\235780M.exe
O4 - HKLM\..\Run: [WinSysW] C:\WINDOWS\235780L.exe
O4 - HKLM\..\Run: [] C:\Program Files\Common Files\Services\svchost.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunOnce: [QQDoctor] "D:\我的文件\安装下载软件\腾讯QQ\QQDoctor\QQDoctor.exe" /fork
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: 腾讯QQ.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: &使用迅雷下载 - D:\我的文件\安装下载软件\讯雷5\Program\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - D:\我的文件\安装下载软件\讯雷5\Program\getallurl.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ表情 - D:\我的文件\安装下载软件\腾讯QQ\AddEmotion.htm
O14 - IERESET.INF: SEARCH_PAGE_URL=
O14 - IERESET.INF: START_PAGE_URL=
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (EditCtrl Class) - https://img.alipay.com/download/1101/aliedit.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O23 - Service: BoBoTurbo - 广州易播信息科技有限公司 - C:\WINDOWS\system32\BoBoTurbo\BoBoTurbo.exe
O23 - Service: Panasonic Local Printer Service - Panasonic Communications Co., Ltd. - C:\PROGRA~1\PANASO~1\LocalCom\lmsrvnt.exe
O23 - Service: Panasonic Trap Monitor Service - Panasonic - C:\PROGRA~1\PANASO~1\TRAPMO~1\Trapmnnt.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: Rising RealTime Monitor (RsRavMon) - Unknown owner - C:\Program Files\Rising\Rav\Ravmond.exe (file missing)
O23 - Service: System Event - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\MSInfo\SVCHOST.EXE
O23 - Service: TSECleanUpAssist - Tencent - C:\WINDOWS\system32\1a03.com

gototop
 

系统时间还会经常被改动,重新设置也没用.上贴是我刚刚扫的,时间却是2004-2-2
gototop
 

掉线频率高的惊人!!!有人帮帮忙没啊?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT