瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 瑞星防火墙还能用吗?请各位帮忙,看看我扫描的日志!!

1   1  /  1  页   跳转

[求助] 瑞星防火墙还能用吗?请各位帮忙,看看我扫描的日志!!

瑞星防火墙还能用吗?请各位帮忙,看看我扫描的日志!!

我装的瑞星防火墙被人穿过,瑞星墙还能用吗?



ijackThis_815汉化版扫描日志 V1.99.1
保存于      14:43:28, 日期 2009-8-31
操作系统:  Windows XP SP3 (WinNT 5.01.2600)
浏览器:    Internet Explorer v7.00 (7.00.6000.16876)
当前运行的进程:         
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCENTER.EXE
C:\Program Files\Rising\Rfw\CCENTER.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rfw\RavTask.exe
C:\Program Files\Rising\Rfw\rfwsrv.exe
C:\Program Files\Rising\Rav\RavMonD.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\rsnetsvr.exe
C:\Program Files\Rising\Rav\ScanFrm.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Rising\AntiSpyware\rstray.exe
C:\Program Files\Rising\Rav\RsTray.exe
C:\Program Files\Rising\RFW\RsTray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Rising\Rav\rssafety.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\conime.exe
C:\dzh2in1\dzh1\internet\hypwise.exe
c:\dzh2in1\dzh1\internet\hypmain.exe
D:\PROGRA~1\Tencent\QQGame\DdzRpg\ddzrpg.exe
C:\Program Files\Rising\AntiSpyware\knownsvr.exe
C:\Program Files\Rising\Rav\RsAgent.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\AX\2003\GDS2003.EXE
C:\Program Files\TTPlayer\TTPlayer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrator\桌面\HijackThis1991\HijackThis1991.exe
O2 - BHO: Thunder AtOnce - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll (file missing)
O2 - BHO: BandIE Class - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\baidubar.dll
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll
O2 - BHO: 卡卡上网安全助手 - {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} - C:\WINDOWS\system32\urlFilter.dll
O2 - BHO: ThunderAtOnce Class - {ED6A25E8-08F5-4937-948D-3E10C4F47FAA} - C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll (file missing)
O3 - IE工具栏增项: 百度工具栏 - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\baidubar.dll
O4 - 启动项HKLM\\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - 启动项HKLM\\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [runeip] "C:\Program Files\Rising\AntiSpyware\rstray.exe" /startup
O4 - 启动项HKLM\\Run: [RavTray] "C:\Program Files\Rising\Rav\RsTray.exe" -system
O4 - 启动项HKLM\\Run: [RFWTray] "C:\Program Files\Rising\RFW\RsTray.exe" -system
O4 - 启动项HKLM\\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - 启动项HKLM\\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - 启动项HKLM\\Run: [safety3] "C:\Program Files\Rising\Rav\rssafety.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [rulestarter] %systemroot%\system32\RTRsca.exe
O4 - HKCU\..\Run: [rulestarter2] %systemroot%\system32\rulestarter.exe
O8 - IE右键菜单中的新增项目: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - IE右键菜单中的新增项目: 使用光影编辑和美化 - C:\Program Files\nEO iMAGING\NeoOpenNeo.htm
O8 - IE右键菜单中的新增项目: 使用迅雷下载 - C:\Program Files\Thunder\Program\geturl.htm
O8 - IE右键菜单中的新增项目: 使用迅雷下载全部链接 - C:\Program Files\Thunder\Program\getallurl.htm
O8 - IE右键菜单中的新增项目: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - IE右键菜单中的新增项目: 添加到QQ表情 - D:\Program Files\Tencent\QQ\Bin\AddEmotion.htm
O9 - 浏览器额外的按钮: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - 浏览器额外的“工具”菜单项: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {2375BEE5-F175-4F1C-81EC-8E4E2E72E2DD} (PhotoDraw Class) - http://imgcache.qq.com/qzone/client/photo/pages/QQPhotoDrawSetup.exe
O16 - DPF: {32D72994-45B9-42B5-8980-FB561D1BE2D0} (nEdit Control) - https://ekey.163.com/nEdit.cab
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (EditCtrl Class) - https://img.alipay.com/download/2121/aliedit.cab
O16 - DPF: {A877BA28-1F7E-4876-B299-50B3199A1A5D} (UploadFilePartition Class) - http://m146.mail.qq.com/zh_CN/activex/TencentMailActiveX.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4A4D4173-4376-4AF7-A094-BE9328258D25}: NameServer = 61.235.70.98 211.98.2.4
O18 - 列举现有的协议: KuGoo - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\system32\KuGoo3DownXControl.ocx
O18 - 列举现有的协议: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\system32\KuGoo3DownXControl.ocx
O20 - AppInit_DLLs: kmon.dll
O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - NT 服务: 3ware Controller Service (3wareSrv) - Unknown owner - C:\WINDOWS\System32\3wareSrv.exe
O23 - NT 服务: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - NT 服务: NetMeeting Remote Desktop Sharing (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe (file missing)
O23 - NT 服务: Rav Process Communication Center (RavCCenter) - Beijing Rising Information Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCENTER.EXE
O23 - NT 服务: Rising RavTask Manager (RavTask) - Unknown owner - C:\Program Files\Rising\Rav\RavTask.exe" RavTask (file missing)
O23 - NT 服务: Rfw Process Communication Center (RfwCCenter) - Beijing Rising Information Technology Co., Ltd. - C:\Program Files\Rising\Rfw\CCENTER.EXE
O23 - NT 服务: Rising Personal Firewall Service (RfwService) - Beijing Rising Information Technology Co., Ltd. - C:\Program Files\Rising\Rfw\rfwsrv.exe
O23 - NT 服务: Rising RfwTask Manager (RfwTask) - Unknown owner - C:\Program Files\Rising\Rfw\RavTask.exe" RfwTask (file missing)
O23 - NT 服务: Rising RealTime Monitor (RsRavMon) - Beijing Rising Information Technology Co., Ltd. - C:\Program Files\Rising\Rav\RavMonD.exe
O23 - NT 服务: Rising Scan Service (RsScanSrv) - Beijing Rising Information Technology Co., Ltd. - C:\Program Files\Rising\Rav\ScanFrm.exe

用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1)
最后编辑杏林奇才 最后编辑于 2009-09-03 21:18:01
分享到:
gototop
 

回复:请各位帮忙,看看我扫描的日志!!

016项能删除吗?
O23 - NT 服务: NetMeeting Remote Desktop Sharing (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe (file missing)这个能删吗?
O23 - NT 服务: 3ware Controller Service (3wareSrv) - Unknown owner - C:\WINDOWS\System32\3wareSrv.exe这个能删吗?
多谢!!!!!!!!!!!
gototop
 

回复:请各位帮忙,看看我扫描的日志!!

瑞星墙被人穿过墙了
最后编辑杏林奇才 最后编辑于 2009-09-03 21:14:36
gototop
 

回复:请各位帮忙,看看我扫描的日志!!

怎么没人理的!高手那去了?
gototop
 

回复:瑞星防火墙还能用吗?请各位帮忙,看看我扫描的日志!!

没人理的
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT