如何扫出象这些的东西??

[复制链接]
查看11 | 回复0 | 2009-1-30 06:28:38 | 显示全部楼层 |阅读模式
Logfile of HijackThis v1.99.1 Scan saved at 12:10:25, on 2006-10-20 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\\WINDOWS\\System32\\smss.exe C:\\WINDOWS\\system32\\winlogon.exe C:\\WINDOWS\\system32\\services.exe C:\\WINDOWS\\system32\\lsass.exe C:\\WINDOWS\\system32\\svchost.exe C:\\WINDOWS\\System32\\svchost.exe C:\\WINDOWS\\system32\\spoolsv.exe C:\\WINDOWS\\FixCamera.exe C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe C:\\Program Files\\HuaCi\\huaci\\zsearch.exe C:\\WINDOWS\\System32\\ctfmon.exe C:\\WINDOWS\\System32\\svchost.exe C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\WINDOWS\\System32\\rundll32.exe C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\WINDOWS\\explorer.exe C:\\WINDOWS\\System32\\conime.exe C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE C:\\Program Files\\Internet Explorer\\iexplore.exe C:\\Documents and Settings\\mmx\\Local Settings\\Temporary Internet Files\\Content.IE5\\CXAB856J\\HijackThis[1].exe R3 - URLSearchHook: Tencent SearchHook - {DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9} - C:\\Program Files\\TENCENT\\Adplus\\SSAddr.dll O2 - BHO: IEMonitor Class - {08A312BB-5409-49FC-9347-54BB7D069AC6} - C:\\Program Files\\DeskAdTop\\deskipn.dll O2 - BHO: 搜搜地址栏搜索 - {0C7C23EF-A848-485B-873C-0ED954731014} - C:\\Program Files\\TENCENT\\Adplus\\SSAddr.dll O2 - BHO: IE Address Browser Helper - {2A0176FE-008B-4706-90F5-BBA532A49731} - C:\\WINDOWS\\Downlo~1\\SearchNet\\SNHpr.dll O2 - BHO: IE Browser Helper - {3CE496D1-1746-41CD-9489-3C0B93DF10E2} - C:\\WINDOWS\\Downlo~1\\keg.dll O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\\11\\QQIEHelper.dll O2 - BHO: (no name) - {669751ED-D558-49AE-B01A-3B374CC7910E} - C:\\WINDOWS\\System32\\ssup.dll O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\\WINDOWS\\System32\\msdxm.ocx O4 - HKLM\\..\\Run: [IMJPMIG8.1] "C:\\WINDOWS\\IME\\imjp8_1\\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\\..\\Run: [PHIME2002ASync] C:\\WINDOWS\\System32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC O4 - HKLM\\..\\Run: [PHIME2002A] C:\\WINDOWS\\System32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName O4 - HKLM\\..\\Run: [FixCamera] C:\\WINDOWS\\FixCamera.exe O4 - HKLM\\..\\Run: [BigDogPath] C:\\WINDOWS\\VM_STI.EXE ZSMC USB PC Camera O4 - HKLM\\..\\Run: [TkBellExe] "C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe" -osboot O4 - HKLM\\..\\Run: [MoveSearch] C:\\Program Files\\HuaCi\\huaci\\zsearch.exe O4 - HKLM\\..\\Run: [Desktop] C:\\WINDOWS\\System32\\rundll32.exe "C:\\Program Files\\DeskAdTop\\Run.dll" ,Rundll O4 - HKLM\\..\\Run: [miniQQLive] "D:\\11\\MiniQQLive.exe" O4 - HKLM\\..\\Run: [vactrf] RunDll32 "C:\\WINDOWS\\Downlo~1\\vactrf.dll",Run O4 - HKLM\\..\\Run: [SearchNet_Up] C:\\WINDOWS\\Downlo~1\\SearchNet\\ServeUp.exe O4 - HKLM\\..\\Run: [SrvNet32] RunDll32 "C:\\WINDOWS\\Downlo~1\\SearchNet\\SrvNet32.dll",Run O4 - HKCU\\..\\Run: [ctfmon.exe] C:\\WINDOWS\\System32\\ctfmon.exe O4 - Startup: 划词搜索.lnk = C:\\Program Files\\HuaCi\\huaci\\zsearch.exe O4 - Startup: 地址栏搜索.lnk = ? O4 - Startup: 腾讯QQ.lnk = D:\\11\\QQ.exe O8 - Extra context menu item: ノQQ眒獺祇癳赣瓜? - E:\\QQ206\\SendMMS.htm O8 - Extra context menu item: 上传到QQ网络硬盘 - E:\\QQ206\\AddToNetDisk.htm O8 - Extra context menu item: 添加到QQ自定义面板 - D:\\11\\AddPanel.htm O8 - Extra context menu item: 添加到QQ表情 - D:\\11\\AddEmotion.htm O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\\11\\SendMMS.htm O8 - Extra context menu item: 睰??QQ?薄 - E:\\QQ206\\AddEmotion.htm O8 - Extra context menu item: 睰??QQ?﹚竡?狾 - E:\\QQ206\\AddPanel.htm O9 - Extra button: (no name) - {0062C9BD-B349-40DE-91A0-755F37ACD559} - (no file) O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\\WINDOWS\\web\\related.htm O9 - Extra \'Tools\' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\\WINDOWS\\web\\related.htm O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\\11\\QQ.EXE O9 - Extra \'Tools\' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\\11\\QQ.EXE O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\\11\\QQIEHelper.dll O9 - Extra \'Tools\' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\\11\\QQIEHelper.dll O11 - Options group: [TBH] 搜搜地址栏搜索 O17 - HKLM\\System\\CCS\\Services\\Tcpip\\..\\{649BF2EB-884A-4825-8B79-6011DA71DCAB}: NameServer = 202.97.224

                                                                                                你中毒够深的,既有很多病毒(含木马),又有大量的恶意程序,查杀难度非常大,建议完全格式化后(不要用快速格式化)重装,这样才能彻底杀掉病毒。                                       
提问者对答案的评价:

                                                                                                因为这些文件都感染的病毒,所以会扫出来!                                       

                                                                                                Windows XP SP1 (WinNT 5.01.2600) 系统该升级了
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

主题

0

回帖

4882万

积分

论坛元老

Rank: 8Rank: 8

积分
48824836
热门排行