| 
 
       
- 帖子
 - 1094 
 - 精華
 - 1 
 - 威望
 - 2743  
 - 魅力
 - 72  
 - 讚好
 - 0  
 - 性別
 - 男 
 
  | 
7#
 
 
發表於 2006-7-20 11:11 PM
 |  只看該作者
 
 
 
老细,系得哦!!唔该晒哦阿gergerman!! 
果d 视窗无再弹出黎。。。 
不过每次开机都 scan 到有毒,就算洗倒, 
但重启电脑后一样 scan 到有毒。。。。 
好似系咩 “svchostfilter-031”。。。 
 
请问有咩办法可以搞掂个毒咧? 
 
同埋我用 HijackThis Scan 过一轮, 
请阿gergerman 或各位高人帮下手睇下有咩问题, 
同埋点样搞番掂我部机。。。 
 
系度再次唔该各位先!!! 
 
 
=============================================== 
 
Logfile of HijackThis v1.99.0 
Scan saved at 11:13:02 PM, on 7/20/2006 
Platform: Windows XP SP2 (WinNT 5.01.2600) 
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) 
 
Running processes: 
C:\WINDOWS\System32\smssfilter-031 
C:\WINDOWS\system32\winlogonfilter-031 
C:\WINDOWS\system32\servicesfilter-031 
C:\WINDOWS\system32\lsassfilter-031 
C:\WINDOWS\system32\Ati2evxxfilter-031 
C:\WINDOWS\system32\svchostfilter-031 
C:\WINDOWS\System32\svchostfilter-031 
C:\WINDOWS\system32\spoolsvfilter-031 
C:\WINDOWS\system32\Ati2evxxfilter-031 
C:\WINDOWS\Explorerfilter-031 
C:\WINDOWS\system32\rundll32filter-031 
C:\Program Files\Common Files\Real\Update_OB\realschedfilter-031 
C:\Program Files\iTunes\iTunesHelperfilter-031 
C:\Program Files\CyberLink\PowerDVD\PDVDServfilter-031 
C:\WINDOWS\system32\ctfmonfilter-031 
C:\Program Files\Internet Download Manager\IDManfilter-031 
C:\WINDOWS\system32\Kerne0223filter-031 
C:\Program Files\MSNShell\BIN\MSNShellfilter-031 
C:\Program Files\DLink\Bluetooth Software\BTTrayfilter-031 
C:\Program Files\DLink\Bluetooth Software\bin\btwdinsfilter-031 
C:\Program Files\iPod\bin\iPodServicefilter-031 
C:\Program Files\Internet Explorer\IEXPLOREfilter-031 
C:\Program Files\MSN Messenger\msnmsgrfilter-031 
C:\Program Files\Internet Explorer\IEXPLOREfilter-031 
C:\Documents and Settings\Maxson\Desktop\HijackThisfilter-031 
 
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll 
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll 
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx 
O2 - BHO: AlxTB BHO Class - {F1FABE79-25FC-46de-8C5A-2C6DB9D64333} - C:\WINDOWS\system32\AlxTB1.dll 
O3 - Toolbar: Alexa - {3CEFF6CD-6F08-4e4d-BCCD-FF7415288C3B} - C:\WINDOWS\system32\SHDOCVW.DLL 
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll 
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32filter-031 bthprops.cpl,,BluetoothAuthenticationAgent 
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIGfilter-031" /Spoil /RemAdvDef /Migration32 
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETPfilter-031 /SYNC 
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETPfilter-031 /IMEName 
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavfilter-031" /minimize 
O4 - HKLM\..\Run: [SoundMan] SOUNDMANfilter-031 
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realschedfilter-031"  -osboot 
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheckfilter-031 
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelperfilter-031" 
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttaskfilter-031" -atboottime 
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServfilter-031" 
O4 - HKLM\..\Run: [fzg] C:\WINDOWS\Config\svhost32filter-031 
O4 - HKLM\..\Run: [KsgUpdateRun] C:\Program Files\Common Files\kingsoft\KSG\clientfilter-031 
O4 - HKCU\..\Run: [CTFMONfilter-031] C:\WINDOWS\system32\ctfmonfilter-031 
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgrfilter-031" /background 
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDManfilter-031 /onboot 
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypagerfilter-031 -quiet 
O4 - HKCU\..\Run: [Kerne0223] C:\WINDOWS\system32\Kerne0223filter-031 
O4 - HKCU\..\Run: [MSNShell] C:\Program Files\MSNShell\BIN\MSNShellfilter-031 autorun 
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loaderfilter-031 
O4 - Global Startup: 蓝牙控制盘.lnk = ? 
O8 - Extra context menu item: Alexa Web Search - http://client.alexa.com/holiday/script/actions/search.htm 
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCELfilter-031/3000 
O8 - Extra context menu item: Get Alexa Data - http://client.alexa.com/holiday/script/actions/sitedata.htm 
O8 - Extra context menu item: Mail to a Friend... - http://client.alexa.com/holiday/script/actions/mailto.htm 
O8 - Extra context menu item: See Related Links - http://client.alexa.com/holiday/script/actions/related.htm 
O8 - Extra context menu item: Write a Review... - http://client.alexa.com/holiday/script/actions/review.htm 
O8 - Extra context menu item: 使用 IDM 下载 - C:\Program Files\Internet Download Manager\IEExt.htm 
O8 - Extra context menu item: 使用 IDM 下载所有链接 - C:\Program Files\Internet Download Manager\IEGetAll.htm 
O8 - Extra context menu item: 发送到 Bluetooth(&B) - C:\Program Files\DLink\Bluetooth Software\btsendto_ie_ctx.htm 
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL 
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing) 
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing) 
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\DLink\Bluetooth Software\btsendto_ie.htm 
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\DLink\Bluetooth Software\btsendto_ie.htm 
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgsfilter-031 
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgsfilter-031 
O10 - Unknown file in Winsock LSP: c:\windows\system32\mshlpxb64.dll 
O10 - Unknown file in Winsock LSP: c:\windows\system32\mshlpxb64.dll 
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll 
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) 
O23 - Service: Ati HotKey Poller - Unknown - C:\WINDOWS\system32\Ati2evxxfilter-031 
O23 - Service: ATI Smart - Unknown - C:\WINDOWS\system32\ati2sgagfilter-031 
O23 - Service: Bluetooth Service - WIDCOMM, Inc. - C:\Program Files\DLink\Bluetooth Software\bin\btwdinsfilter-031 
O23 - Service: InstallDriver Table Manager - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverTfilter-031 
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodServicefilter-031 
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvcfilter-031 
 
[ Last edited by Maxson85 on 2006-7-20 at 11:20 PM ] |   
 
 
 
 |