+ -
当前位置:首页 → 问答吧 → 紧急!! 麻烦各位大大入黎睇下我部电脑咩事....唔该晒!!

紧急!! 麻烦各位大大入黎睇下我部电脑咩事....唔该晒!!

时间:2013-06-19

来源:互联网

用google chrome上上下网突然变左咁..
部分网上到, 但faebook, youtube等等都上唔到
发生左咩事? 可以点解决??
麻烦各位帮帮忙! THANKS



[ 本帖最后由 men.trendy 於 2013-6-19 09:13 PM 编辑 ]
hijackthis.log(14.37 KB)

2013-6-19 09:11 PM, 下载次数: 1

hijackthis.log(28.57 KB)

2013-6-19 09:13 PM, 下载次数: 1

作者: men.trendy   发布时间: 2013-06-19

引用:
原帖由 men.trendy 於 2013-6-19 08:38 PM 发表
用google chrome上上下网突然变左咁..
部分网上到, 但faebook, youtube等等都上唔到
发生左咩事? 可以点解决??
麻烦各位帮帮忙! THANKS

8922548
楼主先做份Hijackthis扫瞄报告贴上,就咁睇好难了解点解上唔到FB/YouTube等等。
引用:

下载Hijackthis至桌面 > 按 Install > 按[ Accept] > 按 [Do a system scan and save a logfile ] > 完成扫瞄系统,Hijackthis会弹出报告。

储存该扫瞄报告於桌面。请把Hijackthis 扫瞄报告帖上。

作者: SILVESTERABEND   发布时间: 2013-06-19

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:07:25, on 19/6/2013
Platform: Unknown Windows (WinNT 6.01.3505 SP1)
MSIE: Internet Explorer v10.0 (10.00.9200.16611)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\QvodPlayer\QvodTerminal.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\PROGRA~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Users\Public\Thunder Network\XMP4\Core\Program\xmp.exe
C:\Program Files\McAfee Security Scan\3.0.318\SSScheduler.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe
C:\Program Files\alipay\SafeTransaction\AlipaySafeTran.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\alipay\SafeTransaction\Alipaybsm.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\MsSpellCheckingFacility.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Thunder Network\Thunder\Program\Thunder.exe
C:\Windows\system32\SearchFilterHost.exe
c:\program files\common files\thunder network\tp\ver1\1.1.2.193_1111\thunderplatform.exe
C:\Program Files\Thunder Network\Thunder\Program\XLUEOPS.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Common Files\AVG Secure Search\ScriptHelperInstaller\15.2.0\ScriptHelper.exe

作者: men.trendy   发布时间: 2013-06-19

O2 - BHO: VideoUrlSniffer - {00000ADA-7E0D-47C1-986C-F017D09C4304} - C:\Users\Public\Thunder Network\XMP4\Core\Program\VideoUrlSniffer.2.2.0.131.(179).dll
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll
O2 - BHO: XlBrowserAddinBho.XlBrowserAddinBhoObject - {0EA37B17-6B8B-4085-8257-F3A4AA69C27A} - C:\Program Files\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.8.71.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: 282D806C-F18E-95CD-45AE-08658A9AA941 Class - {282D806C-F18E-95CD-45AE-08658A9AA941} - C:\Program Files\QvodPlayer\AddIn\{282D806C-F18E-95CD-45AE-08658A9AA941}\QvodAddr.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: XunleiBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\BHO\XunleiBHO7.2.10.3694.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QvodGameExtend - {94C3E4BB-A261-4A83-B437-EA6F7A28CA68} - C:\Program Files\Kuaiwan\QvodGameExtend.dll (file missing)
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll
O2 - BHO: QvodExtend - {A8502600-B272-4F68-A67B-A0305D46D297} - C:\Program Files\QvodPlayer\QvodExtend\5.0.83.0\QvodExtend.dll
O2 - BHO: cyontinyueotoSavE - {ACE6EF20-A658-1883-07B1-5A901730D28A} - C:\ProgramData\cyontinyueotoSavE\51950a8d6e1b9.dll (file missing)
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Freemake.YoutubeButton - {e9e8eb35-ff77-455d-b677-91e5e4fc06c2} - mscoree.dll (file missing)
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\15.2.0.5\AVG Secure Search_toolbar.dll

作者: men.trendy   发布时间: 2013-06-19

开机按F8,入安全模式做Fix checked & OTM 删除。
1.执行Hijackthis > Do a system scan only > 勾选下列项目 > 按Fix Checked (fix checked时关闭所有browsers/程式) > 按"是"。
引用:

O2 - BHO: VideoUrlSniffer - {00000ADA-7E0D-47C1-986C-F017D09C4304} - C:\Users\Public\Thunder Network\XMP4\Core\Program\VideoUrlSniffer.2.2.0.131.(179).dll
O2 - BHO: XlBrowserAddinBho.XlBrowserAddinBhoObject - {0EA37B17-6B8B-4085-8257-F3A4AA69C27A} - C:\Program Files\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.8.71.dll
O2 - BHO: 282D806C-F18E-95CD-45AE-08658A9AA941 Class - {282D806C-F18E-95CD-45AE-08658A9AA941} - C:\Program Files\QvodPlayer\AddIn\{282D806C-F18E-95CD-45AE-08658A9AA941}\QvodAddr.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll
O2 - BHO: XunleiBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\BHO\XunleiBHO7.2.10.3694.dll
O2 - BHO: QvodGameExtend - {94C3E4BB-A261-4A83-B437-EA6F7A28CA68} - C:\Program Files\Kuaiwan\QvodGameExtend.dll (file missing)
O2 - BHO: QvodExtend - {A8502600-B272-4F68-A67B-A0305D46D297} - C:\Program Files\QvodPlayer\QvodExtend\5.0.83.0\QvodExtend.dll
O2 - BHO: cyontinyueotoSavE - {ACE6EF20-A658-1883-07B1-5A901730D28A} - C:\ProgramData\cyontinyueotoSavE\51950a8d6e1b9.dll (file missing)
O2 - BHO: Freemake.YoutubeButton - {e9e8eb35-ff77-455d-b677-91e5e4fc06c2} - mscoree.dll (file missing)
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files\PDF Architect\PDFIEPlugin.dll

O4 - HKLM\..\Run: [QvodTerminal] "C:\Program Files\QvodPlayer\QvodTerminal.exe" -autorun
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [XMP] "C:\Users\Public\THUNDE~1\XMP4\Core\Program\xmp.exe" /embedding /sstartfrom Startup104
O4 - HKCU\..\Run: [Kuaiwan] "C:\Program Files\Kuaiwan\Kuaiwan.exe" -S
O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files\Optimizer Pro\OptProLauncher.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - Global Startup: NCdownloader.lnk = C:\Program Files\Solibo Ltd\NCdownloader\NCdownloader.exe

O8 - Extra context menu item: &妏蚚&捃泞烛盄狟婥 - C:\Program Files\Thunder Network\Thunder\BHO\OfflineDownload.htm
O8 - Extra context menu item: &妏蚚&捃泞狟婥 - C:\Program Files\Thunder Network\Thunder\BHO\geturl.htm
O8 - Extra context menu item: &妏蚚&捃泞狟婥窒蝈诿 - C:\Program Files\Thunder Network\Thunder\BHO\GetAllUrl.htm
O8 - Extra context menu item: Foxy 下载 - res://D:\Foxy\Foxy.exe/download.htm
O8 - Extra context menu item: Foxy 搜寻 - res://D:\Foxy\Foxy.exe/search.htm
O8 - Extra context menu item: Foxy ?塈 - res://D:\Foxy\Foxy.exe/download.htm
O8 - Extra context menu item: 使用迅雷看看播放器播放 - C:\Users\Public\Thunder Network\XMP4\Core\Program\XmpIEMenu.htm
O9 - Extra button: (no name) - {14c1d00e-0b92-4379-880b-444fa2d740dd} - C:\Users\Public\Thunder Network\XMP4\Core\Program\XmpIEToolMenu.htm
O9 - Extra 'Tools' menuitem: ??迅雷看看播放器 - {14c1d00e-0b92-4379-880b-444fa2d740dd} - C:\Users\Public\Thunder Network\XMP4\Core\Program\XmpIEToolMenu.htm
O9 - Extra button: 迅雷看看播放器 - {24c1d00e-0b92-4379-880b-444fa2d740dd} - C:\Users\Public\Thunder Network\XMP4\Core\Program\XmpIEToolBar.htm
O9 - Extra button: @C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\IEPluginDownloader.dll,-4 - {FC0EA236-1C31-418e-BFCE-A76DDB7F1362} - C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\IEPluginDownloader.dll (HKCU)
O9 - Extra 'Tools' menuitem: Freemake Video Downloader - {FC0EA236-1C31-418e-BFCE-A76DDB7F1362} - C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\IE\IEPluginDownloader.dll (HKCU)

O20 - AppInit_DLLs: c:\progra~1\contin~1\sprote~1.dll c:\progra~1\websea~1\sprote~1.dll

O23 - Service: FreemakeVideoCapture - Freemake - C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
023 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
2. 下载/执行 OTM做删除。
copy & paste 以下项目於Paste Instructions for Items to be Moved的框格内。
按MoveIt > OK > 重启电脑。
引用:

:files
C:\Program Files\QvodPlayer\QvodTerminal.exe
C:\Users\Public\Thunder Network\XMP4\Core\Program\xmp.exe
C:\Users\Public\Thunder Network\XMP4\Core\Program\VideoUrlSniffer.2.2.0.131.(179).dll
C:\Program Files\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.8.71.dll
C:\Program Files\QvodPlayer\AddIn\{282D806C-F18E-95CD-45AE-08658A9AA941}\QvodAddr.dll
C:\Program Files\PDF Architect\PDFIEHelper.dll
C:\Program Files\Thunder Network\Thunder\BHO\XunleiBHO7.2.10.3694.dll
C:\Program Files\QvodPlayer\QvodExtend\5.0.83.0\QvodExtend.dll
C:\Program Files\PDF Architect\PDFIEPlugin.dll
C:\Users\Public\THUNDE~1\XMP4\Core\Program\xmp.exe
C:\Program Files\Kuaiwan\Kuaiwan.exe
C:\Program Files\Optimizer Pro\OptProLauncher.exe
C:\Program Files\Solibo Ltd\NCdownloader\NCdownloader.exe
c:\progra~1\contin~1\sprote~1.dll
c:\progra~1\websea~1\sprote~1.dll
3. 下载/执行Junkware Removal Tool扫毒。执行扫毒前请关闭所有浏览器同程式。
(JRT会自动删除附於浏览器的恶意程式/档案/登录档)

4. 关闭所有防毒软件(包括Windows Defender),下载ComboFix至桌面 ,执行 ComboFix 扫毒。
扫瞄时不要执行其他程式或点击 ComboFix视窗。
(ComboFix扫毒约10 -20分钟,唔使装"修复主控台程式")
完成扫瞄后,ComboFix 报告会自动弹出。

请贴上以下报告:
a. JRT扫毒报告。
b. ComboFix扫毒报告。
c. 新1份Hijackthis扫瞄报告。

作者: SILVESTERABEND   发布时间: 2013-06-19

热门下载

更多