- 帖子
- 1094
- 精華
- 1
- 威望
- 2743
- 魅力
- 72
- 讚好
- 0
- 性別
- 男
|
7#
發表於 2006-7-20 11:11 PM
| 只看該作者
老细,系得哦!!唔该晒哦阿gergerman!!
果d 视窗无再弹出黎。。。
不过每次开机都 scan 到有毒,就算洗倒,
但重启电脑后一样 scan 到有毒。。。。
好似系咩 “svchostfilter-031”。。。
请问有咩办法可以搞掂个毒咧?
同埋我用 HijackThis Scan 过一轮,
请阿gergerman 或各位高人帮下手睇下有咩问题,
同埋点样搞番掂我部机。。。
系度再次唔该各位先!!!
===============================================
Logfile of HijackThis v1.99.0
Scan saved at 11:13:02 PM, on 7/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smssfilter-031
C:\WINDOWS\system32\winlogonfilter-031
C:\WINDOWS\system32\servicesfilter-031
C:\WINDOWS\system32\lsassfilter-031
C:\WINDOWS\system32\Ati2evxxfilter-031
C:\WINDOWS\system32\svchostfilter-031
C:\WINDOWS\System32\svchostfilter-031
C:\WINDOWS\system32\spoolsvfilter-031
C:\WINDOWS\system32\Ati2evxxfilter-031
C:\WINDOWS\Explorerfilter-031
C:\WINDOWS\system32\rundll32filter-031
C:\Program Files\Common Files\Real\Update_OB\realschedfilter-031
C:\Program Files\iTunes\iTunesHelperfilter-031
C:\Program Files\CyberLink\PowerDVD\PDVDServfilter-031
C:\WINDOWS\system32\ctfmonfilter-031
C:\Program Files\Internet Download Manager\IDManfilter-031
C:\WINDOWS\system32\Kerne0223filter-031
C:\Program Files\MSNShell\BIN\MSNShellfilter-031
C:\Program Files\DLink\Bluetooth Software\BTTrayfilter-031
C:\Program Files\DLink\Bluetooth Software\bin\btwdinsfilter-031
C:\Program Files\iPod\bin\iPodServicefilter-031
C:\Program Files\Internet Explorer\IEXPLOREfilter-031
C:\Program Files\MSN Messenger\msnmsgrfilter-031
C:\Program Files\Internet Explorer\IEXPLOREfilter-031
C:\Documents and Settings\Maxson\Desktop\HijackThisfilter-031
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: AlxTB BHO Class - {F1FABE79-25FC-46de-8C5A-2C6DB9D64333} - C:\WINDOWS\system32\AlxTB1.dll
O3 - Toolbar: Alexa - {3CEFF6CD-6F08-4e4d-BCCD-FF7415288C3B} - C:\WINDOWS\system32\SHDOCVW.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32filter-031 bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIGfilter-031" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETPfilter-031 /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETPfilter-031 /IMEName
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavfilter-031" /minimize
O4 - HKLM\..\Run: [SoundMan] SOUNDMANfilter-031
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realschedfilter-031" -osboot
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheckfilter-031
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelperfilter-031"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttaskfilter-031" -atboottime
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServfilter-031"
O4 - HKLM\..\Run: [fzg] C:\WINDOWS\Config\svhost32filter-031
O4 - HKLM\..\Run: [KsgUpdateRun] C:\Program Files\Common Files\kingsoft\KSG\clientfilter-031
O4 - HKCU\..\Run: [CTFMONfilter-031] C:\WINDOWS\system32\ctfmonfilter-031
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgrfilter-031" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDManfilter-031 /onboot
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypagerfilter-031 -quiet
O4 - HKCU\..\Run: [Kerne0223] C:\WINDOWS\system32\Kerne0223filter-031
O4 - HKCU\..\Run: [MSNShell] C:\Program Files\MSNShell\BIN\MSNShellfilter-031 autorun
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loaderfilter-031
O4 - Global Startup: 蓝牙控制盘.lnk = ?
O8 - Extra context menu item: Alexa Web Search - http://client.alexa.com/holiday/script/actions/search.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCELfilter-031/3000
O8 - Extra context menu item: Get Alexa Data - http://client.alexa.com/holiday/script/actions/sitedata.htm
O8 - Extra context menu item: Mail to a Friend... - http://client.alexa.com/holiday/script/actions/mailto.htm
O8 - Extra context menu item: See Related Links - http://client.alexa.com/holiday/script/actions/related.htm
O8 - Extra context menu item: Write a Review... - http://client.alexa.com/holiday/script/actions/review.htm
O8 - Extra context menu item: 使用 IDM 下载 - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: 使用 IDM 下载所有链接 - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: 发送到 Bluetooth(&B) - C:\Program Files\DLink\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\DLink\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\DLink\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgsfilter-031
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgsfilter-031
O10 - Unknown file in Winsock LSP: c:\windows\system32\mshlpxb64.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\mshlpxb64.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - Unknown - C:\WINDOWS\system32\Ati2evxxfilter-031
O23 - Service: ATI Smart - Unknown - C:\WINDOWS\system32\ati2sgagfilter-031
O23 - Service: Bluetooth Service - WIDCOMM, Inc. - C:\Program Files\DLink\Bluetooth Software\bin\btwdinsfilter-031
O23 - Service: InstallDriver Table Manager - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverTfilter-031
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodServicefilter-031
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvcfilter-031
[ Last edited by Maxson85 on 2006-7-20 at 11:20 PM ] |
|