2000FUN論壇

 

 

搜索
2000FUN論壇 綜合論壇 電腦技術問題交流 電腦好像中毒了(已解決)
樓主: ALEXYUI
go

電腦好像中毒了(已解決) [複製鏈接]

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
81#
發表於 07-1-11 09:23 PM |只看該作者
[Scan path] c:\windows\system32\shimgvw.dll
[Scan path] c:\windows\system32\shmedia.dll
[Scan path] c:\windows\system32\shmgrate.exe
[Scan path] c:\windows\system32\shscrap.dll
[Scan path] c:\windows\system32\slayerxp.dll
[Scan path] c:\windows\system32\smlogsvc.exe
[Scan path] c:\windows\system32\smss.exe
[Scan path] c:\windows\system32\spoolsv.exe
[Scan path] c:\windows\system32\stobject.dll
[Scan path] c:\windows\system32\svchost.exe
[Scan path] c:\windows\system32\syncui.dll
[Scan path] c:\windows\system32\tcpmon.dll
[Scan path] c:\windows\system32\themeui.dll
[Scan path] c:\windows\system32\twext.dll
[Scan path] c:\windows\system32\ups.exe
[Scan path] c:\windows\system32\url.dll
[Scan path] c:\windows\system32\urlmon.dll
[Scan path] c:\windows\system32\usbmon.dll
[Scan path] c:\windows\system32\user32.dll
[Scan path] c:\windows\system32\version.dll
[Scan path] c:\windows\system32\vssvc.exe
[Scan path] c:\windows\system32\wbem\wmiapsrv.exe
[Scan path] c:\windows\system32\wdigest.dll
[Scan path] c:\windows\system32\webcheck.dll
[Scan path] c:\windows\system32\wiascr.dll
[Scan path] c:\windows\system32\wiashext.dll
[Scan path] c:\windows\system32\wininet.dll
[Scan path] c:\windows\system32\winlogon.exe
[Scan path] c:\windows\system32\wldap32.dll
[Scan path] c:\windows\system32\wlnotify.dll
[Scan path] c:\windows\system32\wmpshell.dll
[Scan path] c:\windows\system32\wshext.dll
[Scan path] c:\windows\system32\wuauclt.exe
[Scan path] c:\windows\system32\wuaucpl.cpl
[Scan path] c:\windows\system32\zipfldr.dll
[Scan path] c:\windows\system\hpsysdrv.exe
-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 330
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 1
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 4509 Kb/s
Scan time: 00:00:23
-----------------------------------------------------------------------------

c:\documents and settings\hp_owner.your-6a15acd7c6\(R)酯崤crossgatepuk3\crossgatepuk3\cg_5006.exe - incurable - will be moved after reboot

=============================================================================
Total session statistics
=============================================================================
Objects scanned: 330
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 1
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 1
Objects ignored: 0
Scan speed: 4509 Kb/s
Scan time: 00:00:23
=============================================================================

=============================================================================
Dr.Web(R) Scanner for Windows v4.33.2 (4.33.2.10060)
Copyright (c) Igor Daniloff, 1992-2006
Log generated on: 2007-01-11, 00:53:54 [HP_Owner]
Command-line: "C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cureit.exe" /lng /ini:cureit_XP.ini
Operating system:Windows XP Home Edition x86 (Build 2600), Service Pack 2
=============================================================================

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
82#
發表於 07-1-11 09:24 PM |只看該作者
Engine version: 4.33 (4.33.5.10110)
Engine API version: 2.01
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crwtoday.cdb - 582 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43369.cdb - 687 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43368.cdb - 1099 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43367.cdb - 1834 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43366.cdb - 4015 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43365.cdb - 1342 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43364.cdb - 1335 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43363.cdb - 1152 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43362.cdb - 1006 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43361.cdb - 879 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43360.cdb - 988 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43359.cdb - 1205 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43358.cdb - 1139 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43357.cdb - 1302 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43356.cdb - 1332 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43355.cdb - 2456 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43354.cdb - 1283 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43353.cdb - 795 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43352.cdb - 2016 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43351.cdb - 941 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43350.cdb - 1020 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43349.cdb - 1008 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43348.cdb - 1096 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43347.cdb - 707 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43346.cdb - 1428 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43345.cdb - 1358 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43344.cdb - 694 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43343.cdb - 1186 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43342.cdb - 744 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43341.cdb - 841 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43340.cdb - 822 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43339.cdb - 1071 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43338.cdb - 989 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43337.cdb - 855 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43336.cdb - 1297 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43335.cdb - 1195 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43334.cdb - 900 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43333.cdb - 1381 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43332.cdb - 1340 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43331.cdb - 2735 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43330.cdb - 2078 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43329.cdb - 2490 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43328.cdb - 743 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43327.cdb - 958 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43326.cdb - 793 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43325.cdb - 713 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43324.cdb - 655 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43323.cdb - 655 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43322.cdb - 778 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43321.cdb - 846 virus records

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
83#
發表於 07-1-11 09:25 PM |只看該作者
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43320.cdb - 808 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43319.cdb - 764 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43318.cdb - 838 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43317.cdb - 363 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43316.cdb - 730 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43315.cdb - 627 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43314.cdb - 824 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43313.cdb - 842 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43312.cdb - 830 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43311.cdb - 862 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43310.cdb - 853 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43309.cdb - 733 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43308.cdb - 708 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43307.cdb - 839 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43306.cdb - 930 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43305.cdb - 759 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43304.cdb - 721 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43303.cdb - 638 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43302.cdb - 806 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43301.cdb - 504 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crw43300.cdb - 24 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crwebase.cdb - 78674 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwrtoday.cdb - 380 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwr43301.cdb - 697 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crwrisky.cdb - 1271 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwntoday.cdb - 371 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwn43306.cdb - 781 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwn43305.cdb - 752 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwn43304.cdb - 793 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwn43303.cdb - 766 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwn43302.cdb - 850 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cwn43301.cdb - 772 virus records
[Virus base] C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\crwnasty.cdb - 4867 virus records
Total virus records: 166741
Key file: C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\RarSFX0\cureit.key
License key number: 0000000010
Registered to: Dr.Web CureIt Project
License key activates: 2005-03-05
License key expires: 2007-03-05

-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 0
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 0 Kb/s
Scan time: 00:00:00
-----------------------------------------------------------------------------

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
84#
發表於 07-1-11 09:25 PM |只看該作者
[Scan path] c:\documents and settings\all users\「開(c)l」功能表\程式集\啟動\desktop.ini
[Scan path] c:\documents and settings\hp_owner.your-6a15acd7c6\local settings\temp\rarsfx0\_start.exe
[Scan path] c:\documents and settings\hp_owner.your-6a15acd7c6\local settings\temp\rarsfx0\cureit.exe
[Scan path] c:\documents and settings\hp_owner.your-6a15acd7c6\「開(c)l」功能表\程式集\啟動\desktop.ini
[Scan path] c:\documents and settings\hp_owner.your-6a15acd7c6\(R)酯崤drweb-cureit.exe
[Scan path] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
[Scan path] c:\hp\kbd\kbd.exe
[Scan path] c:\program files\21cn\vgo\vgoiebho.dll
[Scan path] c:\program files\adobe\acrobat 6.0\reader\activex\acroiehelper.dll
[Scan path] c:\program files\common files\installshield\updateservice\issch.exe
[Scan path] c:\program files\common files\installshield\updateservice\isuspm.exe
[Scan path] c:\program files\common files\intervideo\schsvr\schsvr.exe
[Scan path] c:\program files\common files\lightscribe\lssrvc.exe
[Scan path] c:\program files\common files\real\update_ob\realsched.exe
[Scan path] c:\program files\common files\symantec shared\ccapp.exe
[Scan path] c:\program files\common files\symantec shared\ccevtmgr.exe
[Scan path] c:\program files\common files\symantec shared\ccproxy.exe
[Scan path] c:\program files\common files\symantec shared\ccpwdsvc.exe
[Scan path] c:\program files\common files\symantec shared\ccsetmgr.exe
[Scan path] c:\program files\common files\symantec shared\security center\symwsc.exe
[Scan path] c:\program files\common files\symantec shared\security center\usrprmpt.exe
[Scan path] c:\program files\common files\symantec shared\sndsrvc.exe
[Scan path] c:\program files\common files\symantec shared\spbbc\spbbcdrv.sys
[Scan path] c:\program files\common files\symantec shared\spbbc\spbbcsvc.exe
[Scan path] c:\program files\common files\symantec shared\virusdefs\20041117.006\naveng.sys
[Scan path] c:\program files\common files\symantec shared\virusdefs\20041117.006\navex15.sys
[Scan path] c:\program files\common files\system\ole db\oledb32.dll
[Scan path] c:\program files\flashget\jccatch.dll
[Scan path] c:\program files\grisoft\avg anti-spyware 7.5\avgas.exe
[Scan path] c:\program files\grisoft\avg anti-spyware 7.5\guard.exe
[Scan path] c:\program files\grisoft\avg anti-spyware 7.5\guard.sys
[Scan path] c:\program files\grisoft\avg anti-spyware 7.5\shellexecutehook.dll
[Scan path] c:\program files\hp\digital imaging\bin\hpdtlk02.dll
[Scan path] c:\program files\hp\digital imaging\bin\hpqtra08.exe
[Scan path] c:\program files\hp\{aac4fc36-8f89-4587-8dd3-ebc57c83374d}\hphupd06.exe
[Scan path] c:\program files\internet explorer\iexplore.exe
[Scan path] c:\program files\intervideo\common\bin\winremote.exe
[Scan path] c:\program files\ipod\bin\ipodservice.exe
[Scan path] c:\program files\itunes\ituneshelper.exe
[Scan path] c:\program files\itunes\itunesminiplayer.dll
[Scan path] c:\program files\java\j2re1.4.2_03\bin\jusched.exe
[Scan path] c:\program files\messenger\msmsgs.exe
[Scan path] c:\program files\msn messenger\fsshext.8.0.0812.00.dll
[Scan path] c:\program files\msn messenger\msgrapp.8.0.0812.00.dll
[Scan path] c:\program files\msn messenger\msnmsgr.exe
[Scan path] c:\program files\norton internet security\issvc.exe
[Scan path] c:\program files\norton internet security\norton antivirus\navapsvc.exe
[Scan path] c:\program files\norton internet security\norton antivirus\navshext.dll
[Scan path] c:\program files\norton internet security\norton antivirus\savrt.sys
[Scan path] c:\program files\norton internet security\norton antivirus\savrtpel.sys
[Scan path] c:\program files\norton internet security\norton antivirus\savscan.exe
[Scan path] c:\program files\outlook express\setup50.exe
[Scan path] c:\program files\outlook express\wabfind.dll
[Scan path] c:\program files\real\realplayer\rpshell.dll
[Scan path] c:\program files\sonic recordnow!\shlext.dll
[Scan path] c:\program files\symantec\symevent.sys
[Scan path] c:\program files\updates from hp\309731\program\updates from hp.exe
[Scan path] c:\program files\windows live toolbar\msntb.dll
[Scan path] c:\program files\winrar\rarext.dll
[Scan path] c:\windows\creator\remind_xp.exe
[Scan path] c:\windows\explorer.exe
[Scan path] c:\windows\ime\imjp8_1\imjpmig.exe
[Scan path] c:\windows\ime\imkr6_1\imekrmig.exe
[Scan path] c:\windows\inf\unregmp2.exe
[Scan path] c:\windows\microsoft.net\framework\v1.1.4322\aspnet_state.exe
[Scan path] c:\windows\msagent\agentpsh.dll
[Scan path] c:\windows\sminst\recguard.exe
[Scan path] c:\windows\system32\advapi32.dll
[Scan path] c:\windows\system32\advpack.dll
[Scan path] c:\windows\system32\alg.exe
[Scan path] c:\windows\system32\appwiz.cpl
[Scan path] c:\windows\system32\autochk.exe
[Scan path] c:\windows\system32\browseui.dll
[Scan path] c:\windows\system32\cabview.dll
[Scan path] c:\windows\system32\cdfview.dll
[Scan path] c:\windows\system32\cisvc.exe
[Scan path] c:\windows\system32\clipsrv.exe
[Scan path] c:\windows\system32\cnbjmon.dll
[Scan path] c:\windows\system32\comdlg32.dll
[Scan path] c:\windows\system32\crypt32.dll
[Scan path] c:\windows\system32\cryptext.dll
[Scan path] c:\windows\system32\cryptnet.dll
[Scan path] c:\windows\system32\cscdll.dll
[Scan path] c:\windows\system32\cscui.dll
[Scan path] c:\windows\system32\csrss.exe
[Scan path] c:\windows\system32\ctfmon.exe
[Scan path] c:\windows\system32\deskadp.dll
[Scan path] c:\windows\system32\deskmon.dll
[Scan path] c:\windows\system32\deskperf.dll

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
85#
發表於 07-1-11 09:26 PM |只看該作者
[Scan path] c:\windows\system32\dfsshlex.dll
[Scan path] c:\windows\system32\diskcopy.dll
[Scan path] c:\windows\system32\dllhost.exe
[Scan path] c:\windows\system32\dmadmin.exe
[Scan path] c:\windows\system32\docprop.dll
[Scan path] c:\windows\system32\docprop2.dll
[Scan path] c:\windows\system32\drivers\acpi.sys
[Scan path] c:\windows\system32\drivers\aec.sys
[Scan path] c:\windows\system32\drivers\afd.sys
[Scan path] c:\windows\system32\drivers\arp1394.sys
[Scan path] c:\windows\system32\drivers\asyncmac.sys
[Scan path] c:\windows\system32\drivers\atapi.sys
[Scan path] c:\windows\system32\drivers\atmarpc.sys
[Scan path] c:\windows\system32\drivers\audstub.sys
[Scan path] c:\windows\system32\drivers\avgascln.sys
[Scan path] c:\windows\system32\drivers\cap7134.sys
[Scan path] c:\windows\system32\drivers\ccdecode.sys
[Scan path] c:\windows\system32\drivers\cdrom.sys
[Scan path] c:\windows\system32\drivers\disk.sys
[Scan path] c:\windows\system32\drivers\dmboot.sys
[Scan path] c:\windows\system32\drivers\dmio.sys
[Scan path] c:\windows\system32\drivers\dmload.sys
[Scan path] c:\windows\system32\drivers\dmusic.sys
[Scan path] c:\windows\system32\drivers\drmkaud.sys
[Scan path] c:\windows\system32\drivers\fdc.sys
[Scan path] c:\windows\system32\drivers\flpydisk.sys
[Scan path] c:\windows\system32\drivers\fltmgr.sys
[Scan path] c:\windows\system32\drivers\fsvga.sys
[Scan path] c:\windows\system32\drivers\ftdisk.sys
[Scan path] c:\windows\system32\drivers\gearaspiwdm.sys
[Scan path] c:\windows\system32\drivers\hdaudbus.sys
[Scan path] c:\windows\system32\drivers\hidusb.sys
[Scan path] c:\windows\system32\drivers\http.sys
[Scan path] c:\windows\system32\drivers\i8042prt.sys
[Scan path] c:\windows\system32\drivers\ialmnt5.sys
[Scan path] c:\windows\system32\drivers\imapi.sys
[Scan path] c:\windows\system32\drivers\intelide.sys
[Scan path] c:\windows\system32\drivers\intelppm.sys
[Scan path] c:\windows\system32\drivers\ip6fw.sys
[Scan path] c:\windows\system32\drivers\ipfltdrv.sys
[Scan path] c:\windows\system32\drivers\ipinip.sys
[Scan path] c:\windows\system32\drivers\ipnat.sys
[Scan path] c:\windows\system32\drivers\ipsec.sys
[Scan path] c:\windows\system32\drivers\irenum.sys
[Scan path] c:\windows\system32\drivers\isapnp.sys
[Scan path] c:\windows\system32\drivers\iviaspi.sys
[Scan path] c:\windows\system32\drivers\kbdclass.sys
[Scan path] c:\windows\system32\drivers\kbdhid.sys
[Scan path] c:\windows\system32\drivers\kmixer.sys
[Scan path] c:\windows\system32\drivers\mouclass.sys
[Scan path] c:\windows\system32\drivers\mouhid.sys
[Scan path] c:\windows\system32\drivers\mrxdav.sys
[Scan path] c:\windows\system32\drivers\mrxsmb.sys
[Scan path] c:\windows\system32\drivers\msgpc.sys
[Scan path] c:\windows\system32\drivers\mskssrv.sys
[Scan path] c:\windows\system32\drivers\mspclock.sys
[Scan path] c:\windows\system32\drivers\mspqm.sys
[Scan path] c:\windows\system32\drivers\mssmbios.sys
[Scan path] c:\windows\system32\drivers\mstee.sys
[Scan path] c:\windows\system32\drivers\nabtsfec.sys
[Scan path] c:\windows\system32\drivers\ndisip.sys
[Scan path] c:\windows\system32\drivers\ndistapi.sys
[Scan path] c:\windows\system32\drivers\ndisuio.sys
[Scan path] c:\windows\system32\drivers\ndiswan.sys
[Scan path] c:\windows\system32\drivers\netbios.sys
[Scan path] c:\windows\system32\drivers\netbt.sys
[Scan path] c:\windows\system32\drivers\nic1394.sys
[Scan path] c:\windows\system32\drivers\npf.sys
[Scan path] c:\windows\system32\drivers\nv4_mini.sys
[Scan path] c:\windows\system32\drivers\nwlnkflt.sys
[Scan path] c:\windows\system32\drivers\nwlnkfwd.sys
[Scan path] c:\windows\system32\drivers\ohci1394.sys
[Scan path] c:\windows\system32\drivers\oreans32.sys
[Scan path] c:\windows\system32\drivers\parport.sys
[Scan path] c:\windows\system32\drivers\pci.sys
[Scan path] c:\windows\system32\drivers\pciide.sys
[Scan path] c:\windows\system32\drivers\pctsapu.sys
[Scan path] c:\windows\system32\drivers\pfc.sys
[Scan path] c:\windows\system32\drivers\phtvtune.sys
[Scan path] c:\windows\system32\drivers\ps2.sys
[Scan path] c:\windows\system32\drivers\psched.sys
[Scan path] c:\windows\system32\drivers\ptilink.sys
[Scan path] c:\windows\system32\drivers\pxhelp20.sys
[Scan path] c:\windows\system32\drivers\r8139n51.sys
[Scan path] c:\windows\system32\drivers\rasacd.sys
[Scan path] c:\windows\system32\drivers\rasl2tp.sys
[Scan path] c:\windows\system32\drivers\raspppoe.sys
[Scan path] c:\windows\system32\drivers\raspptp.sys
[Scan path] c:\windows\system32\drivers\raspti.sys
[Scan path] c:\windows\system32\drivers\rdbss.sys
[Scan path] c:\windows\system32\drivers\rdpcdd.sys
[Scan path] c:\windows\system32\drivers\redbook.sys
[Scan path] c:\windows\system32\drivers\rtkhdaud.sys
[Scan path] c:\windows\system32\drivers\secdrv.sys
[Scan path] c:\windows\system32\drivers\serenum.sys
[Scan path] c:\windows\system32\drivers\serial.sys
[Scan path] c:\windows\system32\drivers\slip.sys
[Scan path] c:\windows\system32\drivers\splitter.sys
[Scan path] c:\windows\system32\drivers\sr.sys
[Scan path] c:\windows\system32\drivers\srv.sys
[Scan path] c:\windows\system32\drivers\streamip.sys
[Scan path] c:\windows\system32\drivers\swenum.sys
[Scan path] c:\windows\system32\drivers\swmidi.sys
[Scan path] c:\windows\system32\drivers\symredrv.sys
[Scan path] c:\windows\system32\drivers\symtdi.sys
[Scan path] c:\windows\system32\drivers\sysaudio.sys
[Scan path] c:\windows\system32\drivers\tcpip.sys
[Scan path] c:\windows\system32\drivers\termdd.sys
[Scan path] c:\windows\system32\drivers\update.sys
[Scan path] c:\windows\system32\drivers\usbccgp.sys
[Scan path] c:\windows\system32\drivers\usbehci.sys
[Scan path] c:\windows\system32\drivers\usbhub.sys
[Scan path] c:\windows\system32\drivers\usbstor.sys
[Scan path] c:\windows\system32\drivers\usbuhci.sys
[Scan path] c:\windows\system32\drivers\vga.sys
[Scan path] c:\windows\system32\drivers\viaide.sys
[Scan path] c:\windows\system32\drivers\wanarp.sys
[Scan path] c:\windows\system32\drivers\wdmaud.sys
[Scan path] c:\windows\system32\drivers\wstcodec.sys
[Scan path] c:\windows\system32\dskquoui.dll
[Scan path] c:\windows\system32\dsquery.dll
[Scan path] c:\windows\system32\dssec.dll
[Scan path] c:\windows\system32\dsuiext.dll
[Scan path] c:\windows\system32\dumprep.exe
[Scan path] c:\windows\system32\extmgr.dll
[Scan path] c:\windows\system32\fontext.dll
[Scan path] c:\windows\system32\gdi32.dll
[Scan path] c:\windows\system32\hphmon06.exe

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
86#
發表於 07-1-11 09:27 PM |只看該作者
[Scan path] c:\windows\system32\hticons.dll
[Scan path] c:\windows\system32\icmui.dll
[Scan path] c:\windows\system32\ie4uinit.exe
[Scan path] c:\windows\system32\igfxsrvc.dll
[Scan path] c:\windows\system32\igfxtray.exe
[Scan path] c:\windows\system32\imagehlp.dll
[Scan path] c:\windows\system32\imapi.exe
[Scan path] c:\windows\system32\ime\pintlgnt\imscinst.exe
[Scan path] c:\windows\system32\ime\tintlgnt\tintsetp.exe
[Scan path] c:\windows\system32\inetcomm.dll
[Scan path] c:\windows\system32\itss.dll
[Scan path] c:\windows\system32\kerberos.dll
[Scan path] c:\windows\system32\kernel32.dll
[Scan path] c:\windows\system32\localspl.dll
[Scan path] c:\windows\system32\locator.exe
[Scan path] c:\windows\system32\logon.scr
[Scan path] c:\windows\system32\logonui.exe
[Scan path] c:\windows\system32\lsass.exe
[Scan path] c:\windows\system32\lz32.dll
[Scan path] c:\windows\system32\mmcshext.dll
[Scan path] c:\windows\system32\mmsys.cpl
[Scan path] c:\windows\system32\mnmsrvc.exe
[Scan path] c:\windows\system32\mscoree.dll
[Scan path] c:\windows\system32\mscories.dll
[Scan path] c:\windows\system32\msdtc.exe
[Scan path] c:\windows\system32\mshtml.dll
[Scan path] c:\windows\system32\msieftp.dll
[Scan path] c:\windows\system32\msiexec.exe
[Scan path] c:\windows\system32\mstask.dll
[Scan path] c:\windows\system32\msv1_0.dll
[Scan path] c:\windows\system32\msvidctl.dll
[Scan path] c:\windows\system32\mswsock.dll
[Scan path] c:\windows\system32\mydocs.dll
[Scan path] c:\windows\system32\netdde.exe
[Scan path] c:\windows\system32\netplwiz.dll
[Scan path] c:\windows\system32\netshell.dll
[Scan path] c:\windows\system32\ntlanui2.dll
[Scan path] c:\windows\system32\ntsd.exe
[Scan path] c:\windows\system32\ntshrui.dll
[Scan path] c:\windows\system32\nvcpl.dll
[Scan path] c:\windows\system32\nvshell.dll
[Scan path] c:\windows\system32\nvsvc32.exe
[Scan path] c:\windows\system32\nwiz.exe
[Scan path] c:\windows\system32\occache.dll
[Scan path] c:\windows\system32\ole32.dll
[Scan path] c:\windows\system32\oleaut32.dll
[Scan path] c:\windows\system32\olecli32.dll
[Scan path] c:\windows\system32\olecnv32.dll
[Scan path] c:\windows\system32\olesvr32.dll
[Scan path] c:\windows\system32\olethk32.dll
[Scan path] c:\windows\system32\photowiz.dll
[Scan path] c:\windows\system32\pjlmon.dll
[Scan path] c:\windows\system32\printui.dll
[Scan path] c:\windows\system32\ps2.exe
[Scan path] c:\windows\system32\regsvr32.exe
[Scan path] c:\windows\system32\remotepg.dll
[Scan path] c:\windows\system32\rpcrt4.dll
[Scan path] c:\windows\system32\rpcss.dll
[Scan path] c:\windows\system32\rshx32.dll
[Scan path] c:\windows\system32\rsvp.exe
[Scan path] c:\windows\system32\rsvpsp.dll
[Scan path] c:\windows\system32\rundll32.exe
[Scan path] c:\windows\system32\scardsvr.exe
[Scan path] c:\windows\system32\scecli.dll
[Scan path] c:\windows\system32\schannel.dll
[Scan path] c:\windows\system32\sclgntfy.dll
[Scan path] c:\windows\system32\sendmail.dll
[Scan path] c:\windows\system32\services.exe
[Scan path] c:\windows\system32\sessmgr.exe
[Scan path] c:\windows\system32\setup\fxsocm.dll
[Scan path] c:\windows\system32\shdocvw.dll
[Scan path] c:\windows\system32\shell32.dll
[Scan path] c:\windows\system32\shellvrtf.dll
[Scan path] c:\windows\system32\shimgvw.dll
[Scan path] c:\windows\system32\shmedia.dll
[Scan path] c:\windows\system32\shmgrate.exe
[Scan path] c:\windows\system32\shscrap.dll
[Scan path] c:\windows\system32\slayerxp.dll
[Scan path] c:\windows\system32\smlogsvc.exe
[Scan path] c:\windows\system32\smss.exe
[Scan path] c:\windows\system32\spoolsv.exe
[Scan path] c:\windows\system32\stobject.dll
[Scan path] c:\windows\system32\svchost.exe
[Scan path] c:\windows\system32\syncui.dll
[Scan path] c:\windows\system32\tcpmon.dll
[Scan path] c:\windows\system32\themeui.dll
[Scan path] c:\windows\system32\twext.dll
[Scan path] c:\windows\system32\ups.exe
[Scan path] c:\windows\system32\url.dll
[Scan path] c:\windows\system32\urlmon.dll
[Scan path] c:\windows\system32\usbmon.dll
[Scan path] c:\windows\system32\user32.dll
[Scan path] c:\windows\system32\version.dll
[Scan path] c:\windows\system32\vssvc.exe
[Scan path] c:\windows\system32\wbem\wmiapsrv.exe
[Scan path] c:\windows\system32\wdigest.dll
[Scan path] c:\windows\system32\webcheck.dll
[Scan path] c:\windows\system32\wiascr.dll
[Scan path] c:\windows\system32\wiashext.dll
[Scan path] c:\windows\system32\wininet.dll
[Scan path] c:\windows\system32\winlogon.exe
[Scan path] c:\windows\system32\wldap32.dll
[Scan path] c:\windows\system32\wlnotify.dll
[Scan path] c:\windows\system32\wmpshell.dll
[Scan path] c:\windows\system32\wshext.dll
[Scan path] c:\windows\system32\wuauclt.exe
[Scan path] c:\windows\system32\wuaucpl.cpl
[Scan path] c:\windows\system32\zipfldr.dll
[Scan path] c:\windows\system\hpsysdrv.exe

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
87#
發表於 07-1-11 09:28 PM |只看該作者
-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 329
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 6153 Kb/s
Scan time: 00:00:15
-----------------------------------------------------------------------------

[Scan path] C:\
C:\hiberfil.sys - read error
C:\Documents and Settings\HP_Owner\(R)酯崤CA0XYBCT - read error
C:\Documents and Settings\HP_Owner\(R)酯崤CAY3ODQD - read error
C:\Documents and Settings\HP_Owner\(R)酯崤CAZWH33C - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\ntuser.dat - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\NTUSER~1.LOG - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Messenger\chanyuicheong@hotmail.com\SharingMetadata\pending.dat - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Messenger\chanyuicheong@hotmail.com\SharingMetadata\Working\database_1EA8_8098_A880_6FD7\dfsr.db - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Messenger\chanyuicheong@hotmail.com\SharingMetadata\Working\database_1EA8_8098_A880_6FD7\fsr.log - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Messenger\chanyuicheong@hotmail.com\SharingMetadata\Working\database_1EA8_8098_A880_6FD7\fsrtmp.log - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Messenger\chanyuicheong@hotmail.com\SharingMetadata\Working\database_1EA8_8098_A880_6FD7\tmp.edb - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Temp\~DF21C4.tmp - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Temp\~DF2276.tmp - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Temp\~DFED0D.tmp - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\Local Settings\Temp\~DFED6B.tmp - read error
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\(R)酯崤CrossgatePUK3\CrossgatePUK3\Cg_5006.exe probably infected with DLOADER.Trojan
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\(R)酯崤CrossgatePUK3\CrossgatePUK3\qq.exe probably infected with DLOADER.Trojan
C:\Documents and Settings\HP_Owner.YOUR-6A15ACD7C6\(R)酯崤PetCalc_2006\?☆孕~1.RMV - read error
C:\Documents and Settings\LocalService\ntuser.dat - read error
C:\Documents and Settings\LocalService\NTUSER~1.LOG - read error
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error
C:\Documents and Settings\NetworkService\NTUSER.DAT - read error
C:\Documents and Settings\NetworkService\NTUSER~1.LOG - read error
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error
>>C:\Program Files\ESET\infected\1QIA3KAA.NQF>>C:\Program Files\ESET\infected\O5D1C4CA.NQF>C:\Program Files\Internet Explorer\SERVICES.EXE>C:\Program Files\Super Rabbit\magicset\srck.exe probably infected with BACKDOOR.Trojan
C:\Program Files\Updates from HP\309731\Users\Default\Data\chandir.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\chandir.idx - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\chn.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\chn.idx - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\D0000000.FCS - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\L0000001.FCS - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs.idx - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_die.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_die.idx - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_dnd.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_dnd.idx - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_ext.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_ext.idx - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_rcv.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\prs_rcv.idx - read error

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
88#
發表於 07-1-11 09:28 PM |只看該作者
C:\Program Files\Updates from HP\309731\Users\Default\Data\storydb.dat - read error
C:\Program Files\Updates from HP\309731\Users\Default\Data\storydb.idx - read error
C:\USERDATA\(R)酯崤CAAZ4LE7 - read error
C:\USERDATA\(R)酯崤CAMZWFLA - read error
C:\USERDATA\(R)酯崤CAQXKRGJ - read error
C:\WINDOWS\SoftwareDistribution\DataStore\DATAST~1.EDB - read error
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log - read error
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb - read error
C:\WINDOWS\SoftwareDistribution\EventCache\{D2C5E~1.BIN - read error
C:\WINDOWS\system32\CatRoot2\edb.log - read error
C:\WINDOWS\system32\CatRoot2\tmp.edb - read error
C:\WINDOWS\system32\config\default - read error
C:\WINDOWS\system32\config\default.LOG - read error
C:\WINDOWS\system32\config\SAM - read error
C:\WINDOWS\system32\config\SAM.LOG - read error
C:\WINDOWS\system32\config\SECURITY - read error
C:\WINDOWS\system32\config\SECURITY.LOG - read error
C:\WINDOWS\system32\config\software - read error
C:\WINDOWS\system32\config\software.LOG - read error
C:\WINDOWS\system32\config\system - read error
C:\WINDOWS\system32\config\system.LOG - read error

[Scan path] D:\
-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 131225
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 3
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 868 Kb/s
Scan time: 00:51:46
-----------------------------------------------------------------------------

=============================================================================
Total session statistics
=============================================================================
Objects scanned: 131554
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 3
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 893 Kb/s
Scan time: 00:52:01
=============================================================================

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
89#
發表於 07-1-11 09:30 PM |只看該作者
我的電腦--->空白地方 右鍵內容--->系統還原-->勾選關閉 系統還原--->確定

我的電腦--->空白地方 右鍵內容--->系統還原-->取消勾選關閉 系統還原--->確定

重有冇問題

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
90#
發表於 07-1-11 09:34 PM |只看該作者
抱歉!!我貼了這麼多

我的電腦--->空白地方 右鍵內容--->系統還原-->勾選關閉 系統還原--->確定

我的電腦--->空白地方 右鍵內容--->系統還原-->取消勾選關閉 系統還原--->確定

是沒問題的
但是我重開電腦就彈了一句說話

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
91#
發表於 07-1-11 09:38 PM |只看該作者
給張圖來看看@@

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
92#
發表於 07-1-11 10:17 PM |只看該作者

抱歉 要你等這麼久@@ 因為要裝回小畫家

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
93#
發表於 07-1-12 09:04 PM |只看該作者

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
94#
發表於 07-1-12 10:21 PM |只看該作者

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
95#
發表於 07-1-12 10:27 PM |只看該作者
  • 執行 SREng.exe --> Boot Items ---> Registry
    逐一選取以下項目名稱 ----> 按 Delete ----> Yes

    <wlzs><C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\wlzs.exe>  [N/A]
    <twin><C:\WINDOWS\system32\twunk32.exe>  [N/A]
    <KAV><rundll32.exe "C:\Program Files\Kav\Kav.dll",AntiVirus>  [N/A]
    <{6E44887F-5214-41F2-AB46-4728735C4CC6}><C:\Program Files\Internet Explorer\PLUGINS\systemHk.sys>  [N/A]

逐一選取以下項目名稱----> 按 edit 刪除中的內容 --->確定
<AppInit_DLLs><49400M.BMP>  [N/A]

  • 複製以下粗黑文字


    Files to delete:
    C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\wlzs.exe
    C:\WINDOWS\system32\twunk32.exe
    C:\Program Files\Kav\Kav.dll
    C:\Program Files\Internet Explorer\PLUGINS\systemHk.sys


  • 下載 The Avenger http://swandog46.geekstogo.com/avenger.zip ,儲存到桌面並解壓出來
    • 執行 The Avenger , 按 Input script manually 再按 放大鏡
    • 按 Ctrl + V/右click貼上剛才複製的內容 ,按 Done ,按 綠燈 開始,當有提示彈出, 按 Yes 兩次
    • The Avenger 會重新啟動你的電腦大約一至兩次,如果重新啟動時有黑色視窗彈出,這是正常情況
    • 當重新啟動後,把 C:\avenger.txt 的內容貼上來

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
96#
發表於 07-1-13 03:06 AM |只看該作者
Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\dnsbrkfu

*******************

Script file located at: ttemdmdm

Could not open script file!  Error

Could not open script file!  Status: 0xc000003b  Abort!

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
97#
發表於 07-1-13 02:15 PM |只看該作者
The Avenger 步驟 做多次

下面既野係要全部copy

Files to delete:
C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\wlzs.exe
C:\WINDOWS\system32\twunk32.exe
C:\Program Files\Kav\Kav.dll
C:\Program Files\Internet Explorer\PLUGINS\systemHk.sys

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
98#
發表於 07-1-14 04:14 AM |只看該作者
Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\ytfhlcoh

*******************

Script file located at: \??\C:\Documents and Settings\ksrdcjto.txt
Script file opened successfully.

Script file read successfully

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:



File C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\wlzs.exe not found!
Deletion of file C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\wlzs.exe failed!

Could not process line:
C:\DOCUME~1\HP_OWN~1.YOU\LOCALS~1\Temp\wlzs.exe
Status: 0xc0000034



File C:\WINDOWS\system32\twunk32.exe not found!
Deletion of file C:\WINDOWS\system32\twunk32.exe failed!

Could not process line:
C:\WINDOWS\system32\twunk32.exe
Status: 0xc0000034



File C:\Program Files\Kav\Kav.dll not found!
Deletion of file C:\Program Files\Kav\Kav.dll failed!

Could not process line:
C:\Program Files\Kav\Kav.dll
Status: 0xc0000034



File C:\Program Files\Internet Explorer\PLUGINS\systemHk.sys not found!
Deletion of file C:\Program Files\Internet Explorer\PLUGINS\systemHk.sys failed!

Could not process line:
C:\Program Files\Internet Explorer\PLUGINS\systemHk.sys
Status: 0xc0000034


Completed script processing.

*******************

Finished!  Terminate.

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
99#
發表於 07-1-14 11:17 AM |只看該作者
ok
而家重有問題嗎?

Rank: 3Rank: 3Rank: 3

UID
403133 
帖子
122 
積分
313 
Good
0  
註冊時間
05-5-11 
在線時間
1264 小時 
100#
發表於 07-1-14 03:54 PM |只看該作者
已經沒問題了^^ 多謝板主長期解答
‹ 上一主題|下一主題

聯絡我們|Archiver| 2000FUN論壇

SERVER: 2 GMT+8, 26-2-2 10:40 AM , Processed in 0.231056 second(s), 10 queries , Gzip On.

Sponsor:工作間 , 網頁寄存

Powered by Discuz! X1.5.1

© 2001-2010 Comsenz Inc.