瑞星卡卡安全论坛
hyxdgv - 2006-5-7 20:56:00
我的电脑经常玩一会儿之后突然就有一个进程CPU占用99
然后关闭进程之后另一个又占用了99
一直到explorer占用99,我关闭后才恢复正常.
请教各位大大,这是病毒引起吗??
是的话怎么解决??
顿首 OTL
我无邪 - 2006-5-7 21:04:00
请下载使用 System Repair Engineer,使用“智能扫描”,按下“扫描”按钮进行扫描,扫描完成后按下“保存报告”按钮保存报告日志文件(SREng.LOG),把保存的报告日志文件内容复制-粘贴上来
http://forum.ikaka.com/topic.asp?board=67&artid=5188931
www.27814939.ys168.com
hyxdgv - 2006-5-7 21:36:00
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunServices]
<_KAVRegProtect><E:\免费工具\病毒工具\15个流行病毒专杀工具\注册表检测器.EXE /r>
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SunJavaUpdateSched><C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<hpsysdrv><c:\windows\system\hpsysdrv.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<High Definition Audio 属性页快捷方式><HDAudPropShortcut.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<nwiz><nwiz.exe /install>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<HPHUPD06><c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<HPHmon06><C:\WINDOWS\system32\hphmon06.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<KBD><C:\HP\KBD\KBD.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Home Theater SchSvr><"C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe">
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<WINREMOTE><"C:\Program Files\InterVideo\Common\Bin\WinRemote.exe">
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Recguard><C:\WINDOWS\SMINST\RECGUARD.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ccApp><"c:\Program Files\Common Files\Symantec Shared\ccApp.exe">
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMEKRMIG6.1><C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<MSPY2002><C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PS2><C:\WINDOWS\system32\ps2.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SoundMan><SOUNDMAN.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<AlcWzrd><ALCWZRD.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Alcmtr><ALCMTR.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<LSBWatcher><c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Reminder><"C:\Windows\Creator\Remind_XP.exe">
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<DAEMON Tools-1033><"C:\Program Files\D-Tools\daemon.exe" -lang 1033>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ezShieldProtector for Px><C:\WINDOWS\system32\ezSP_Px.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Symantec NetDriver Monitor><C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<KavStart><"C:\KAV2005\KAVStart.exe" -startup>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<NvMediaCenter><RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Thunder><"C:\Program Files\Thunder Network\Thunder\ThunderShell.exe" /s>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<CnsMin><Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Update><C:\Program Files\Common Files\UPDATE\Update.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<StormCodec_Helper><"C:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RivaTuner><"C:\Program Files\RivaTuner\RivaTuner.exe" /T>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<helper.dll><C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<No Ant!!><C:\Documents and Settings\HP_Owner\桌面\Special Tools\电子纹香.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
<_KAVRegProtect><E:\免费工具\病毒工具\15个流行病毒专杀工具\注册表检测器.EXE /r>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<Userinit><C:\WINDOWS\system32\userinit.exe,>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><>
hyxdgv - 2006-5-7 21:37:00
启动文件夹
[Adobe Gamma Loader.exe]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Adobe Gamma Loader.exe.lnk><N>
[HP Digital Imaging Monitor]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\HP Digital Imaging Monitor.lnk><N>
[Microsoft Office]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Microsoft Office.lnk><N>
[Updates from HP]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Updates from HP.lnk><N>
hyxdgv - 2006-5-7 21:41:00
正在运行的进程
[PID: 540][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 596][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 632][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 676][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 688][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 856][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 904][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 972][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1028][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1060][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2024][C:\KAV2005\KWatch.EXE] <Kingsoft Corporation><2005, 9, 27, 51>
[C:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[C:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2005, 12, 29, 56>
[C:\KAV2005\KAEMem.DAT] <Kingsoft><2006, 4, 12, 13>
[C:\KAV2005\KAEUnpack.DAT] <Kingsoft Corp.><2006, 3, 21, 17>
[PID: 212][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll] <Windows (R) 2000 DDK provider><5.00.2195.1620>
[PID: 696][C:\Documents and Settings\HP_Owner\桌面\Special Tools\CPUCooL\CooLSrv.exe] <N/A><N/A>
[PID: 944][C:\KAV2005\KPfwSvc.EXE] <Kingsoft Corporation><2005, 9, 5, 28>
[PID: 1024][C:\WINDOWS\system32\nvsvc32.exe] <NVIDIA Corporation><6.14.10.8195>
[PID: 1004][C:\WINDOWS\system32\Rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\DOWNLO~1\CnsMinIO.dll] <北京三七二一科技有限公司><1, 0, 3, 6>
[C:\WINDOWS\DOWNLO~1\cnsio.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 1056][C:\WINDOWS\system32\HPZipm12.exe] <HP><9, 0, 0, 0>
[PID: 1180][C:\WINDOWS\SYSTEM32\RUNDLL32.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1500][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\STDSVER.DLL] <><3, 2, 1, 5>
[PID: 1552][C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe] <Ulead Systems, Inc.><1, 0, 0, 3>
[PID: 1580][C:\WINDOWS\system32\wdfmgr.exe] <Microsoft Corporation><5.2.3790.1230 built by: DNSRV(bld4act)>
[PID: 1612][C:\Program Files\Common Files\COMM\Network.exe] <COMENET TECHNOLOGY><1, 563, 15, 5>
[PID: 2816][C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe] <Sun Microsystems, Inc.><5.0.50.5>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[PID: 2852][C:\windows\system\hpsysdrv.exe] <Hewlett-Packard Company><1, 7, 0, 0>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 2904][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2924][C:\WINDOWS\system32\hphmon06.exe] <Hewlett-Packard><6,0,72>
[C:\WINDOWS\system32\hpzjrd01.dll] <Hewlett Packard><1, 0, 0, 4>
[C:\WINDOWS\system32\HPZJSN01.dll] <Hewlett Packard Company><1, 0, 0, 3>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 2948][C:\HP\KBD\KBD.EXE] <Hewlett-Packard Company><1.0.2.2.20205>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\HP\KBD\led.dll] <Hewlett-Packard Company><1.0.2.0>
[C:\HP\KBD\USB.dll] <Hewlett-Packard Company><1.0.2.2.112404>
[C:\HP\KBD\ps2.dll] <Hewlett-Packard Company><1.0.2.2.112404>
[C:\HP\KBD\msg.dll] <Hewlett-Packard Company><1.0.2.2.112404>
[C:\HP\KBD\osd.dll] <Hewlett-Packard Company><1.0.2.2.112404>
[C:\HP\KBD\sct.dll] <Hewlett-Packard Company><1.0.2.2.32205>
[C:\HP\KBD\onl.dll] <Hewlett-Packard Company><1.0.2.0>
[C:\HP\KBD\aol.dll] <Hewlett-Packard Company><1.0.2.2.122104>
[C:\HP\KBD\url.dll] <Hewlett-Packard Company><1.0.2.2.92704>
[C:\HP\KBD\cfg.dll] <Hewlett-Packard Company><1.0.2.1>
[C:\HP\KBD\MSIKBDIF.DLL] <Hewlett-Packard Company><1.0.2.0>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 2960][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] <RealNetworks, Inc.><0.1.0.3208>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 2992][C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe] <InterVideo Inc.><3.0.88.4>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3048][C:\Program Files\InterVideo\Common\Bin\WinRemote.exe] <InterVideo Inc.><1.8.2>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3164][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\WINDOWS\system32\nvshell.dll] <N/A><N/A>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
hyxdgv - 2006-5-7 21:47:00
[PID: 3220][C:\WINDOWS\SOUNDMAN.EXE] <Realtek Semiconductor Corp.><1, 0, 0, 14>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3276][C:\WINDOWS\ALCWZRD.EXE] <RealTek Semicoductor Corp.><1.1.0.19>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3300][C:\WINDOWS\ALCMTR.EXE] <Realtek Semiconductor Corp.><1.6>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3396][C:\Program Files\D-Tools\daemon.exe] <DAEMON'S HOME><3.47.0.0>
[C:\WINDOWS\daemon.dll] <N/A><3.47.0.0>
[C:\Program Files\D-Tools\PFCTOC.DLL] <Padus(R), Inc.><1, 0, 0, 12>
[C:\Program Files\D-Tools\Plugins\Images\bw5mount.dll] <N/A><1.0.2.0>
[C:\Program Files\D-Tools\Plugins\Images\ccdmount.dll] <GENERIC><1.02.0.0>
[C:\Program Files\D-Tools\Plugins\Images\mdsmount.dll] <GENERIC><1.01.0.0>
[C:\Program Files\D-Tools\Plugins\Images\nrgmount.dll] <GENERIC><1.02.0.0>
[C:\Program Files\D-Tools\Plugins\Images\pdimount.dll] <GENERIC><1.01.0.0>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3412][C:\WINDOWS\system32\ezSP_Px.exe] <Easy Systems Japan Ltd.><1, 0, 0, 0>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3500][C:\KAV2005\KAVStart.exe] <Kingsoft Corporation><2006, 4, 10, 196>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[C:\KAV2005\KAVPassp.dll] <Kingsoft Corporation><2006, 4, 19, 233>
[C:\KAV2005\PopSprt3.dll] <Kingsoft Corporation><2005, 12, 6, 30>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\KAV2005\KOLHtml.dll] <Kingsoft Corporation><2005, 10, 17, 38>
[C:\KAV2005\KAScript.DLL] <Kingsoft Corporation><2006, 2, 10, 60>
[C:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2005, 12, 29, 56>
[C:\KAV2005\KAEMem.DAT] <Kingsoft><2006, 4, 12, 13>
[C:\KAV2005\KAEUnpack.DAT] <Kingsoft Corp.><2006, 3, 21, 17>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[PID: 3512][C:\WINDOWS\system32\RUNDLL32.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\NvMcTray.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.8195>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3612][C:\Program Files\RivaTuner\RivaTuner.exe] <><2, 0, 15, 6>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\Program Files\RivaTuner\PlugIns\Monitoring\CPU.dll] <><1, 0, 0, 0>
hyxdgv - 2006-5-7 21:48:00
[PID: 3632][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\3721\autolive.dll] <><1, 1, 5, 1324>
[C:\PROGRA~1\3721\alLiveEx.dll] < ><1, 0, 3, 1006>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3672][C:\Documents and Settings\HP_Owner\桌面\Special Tools\电子纹香.exe] <cn2006@163.com><2.0.0.0>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[PID: 3700][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3704][C:\KAV2005\KMailMon.EXE] <Kingsoft Corporation><2005, 10, 8, 85>
[C:\KAV2005\KAntiSpm.dll] <N/A><1, 0, 0, 2>
[C:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\KAV2005\KAECall2.DLL] <Kingsoft Corporation><2004, 12, 28, 7>
[C:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2005, 12, 29, 56>
[C:\KAV2005\KAEMem.DAT] <Kingsoft><2006, 4, 12, 13>
[C:\KAV2005\KAEUnpack.DAT] <Kingsoft Corp.><2006, 3, 21, 17>
[C:\KAV2005\KAConfig.DLL] <Kingsoft Corporation><2005, 3, 23, 30>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3760][C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe] <Hewlett-Packard Co.><45.4.157.000>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[c:\Program Files\HP\Digital Imaging\bin\hpqcxm08.dll] <Hewlett-Packard Co.><45.4.157.000>
[c:\Program Files\HP\Digital Imaging\bin\hpquio08.dll] <Hewlett-Packard Co.><45.4.157.000>
[C:\Program Files\HP\Digital Imaging\bin\hpqtra08.rsc] <Hewlett-Packard Co.><45.4.157.000>
[c:\Program Files\HP\Digital Imaging\bin\hpqtao08.dll] <Hewlett-Packard Co.><45.4.157.000>
[c:\Program Files\HP\Digital Imaging\Unload\hpiCamTA.dll] <Hewlett-Packard><4.5.0.133>
[c:\Program Files\HP\Digital Imaging\Unload\HpqUnRes.dll] <Hewlett-Packard><4.5.0.133>
[c:\Program Files\HP\Digital Imaging\bin\hpotra08.dll] <Hewlett-Packard Co.><47.0.1.000>
[c:\Program Files\HP\Digital Imaging\bin\hpotra08.rsc] <Hewlett-Packard Co.><47.0.1.000>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[c:\Program Files\HP\Digital Imaging\bin\hpotradd.dll] <Hewlett-Packard Co.><47.0.1.000>
[c:\Program Files\HP\Digital Imaging\bin\HpqUtil.dll] <><4.5.0.133>
[c:\Program Files\HP\Digital Imaging\bin\hpodvd09.dll] <Hewlett-Packard Co.><47.0.1.000>
[C:\Program Files\HP\Digital Imaging\bin\hpoddcomm09.dll] <Hewlett-Packard Co.><47.0.1.000>
[PID: 3724][C:\Program Files\Thunder Network\Thunder\Thunder.exe] <Thunder Networking Technologies,LTD><5.1.3.168>
[C:\Program Files\Thunder Network\Thunder\UpdateDownload.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 2>
[C:\Program Files\Thunder Network\Thunder\download_interface.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 57>
[C:\Program Files\Thunder Network\Thunder\log4cplus.dll] <><1, 0, 2, 1>
[C:\Program Files\Thunder Network\Thunder\stlport_vc646.dll] <STLport Consulting, Inc.><4.6.2003.1031>
[C:\Program Files\Thunder Network\Thunder\msgmanage.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 13>
[C:\Program Files\Thunder Network\Thunder\historyinfo_manage.dll] <Thunder Networking Technologies,LTD><5, 2, 0, 148>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\Program Files\Thunder Network\Thunder\iEmbed.dll] <Thunder Networking Technologies,LTD><1, 0, 1, 14>
[C:\Program Files\Thunder Network\Thunder\RegisterDll.dll] <Thunder Networking Technologies,LTD><1, 2, 0, 6>
[C:\Program Files\Thunder Network\Thunder\FloatBar.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 2>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\Program Files\Thunder Network\Thunder\iTargetAd.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 51>
[C:\KAV2005\KAScript.DLL] <Kingsoft Corporation><2006, 2, 10, 60>
[C:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2005, 12, 29, 56>
[C:\KAV2005\KAEMem.DAT] <Kingsoft><2006, 4, 12, 13>
[C:\KAV2005\KAEUnpack.DAT] <Kingsoft Corp.><2006, 3, 21, 17>
[C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0>
[PID: 840][C:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3556][C:\Program Files\BitSpirit\BitSpirit.exe] <LANSPIRIT.NET><3.2.0.80>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\Program Files\BitSpirit\plugin\peerid.dll] <N/A><N/A>
[C:\Program Files\BitSpirit\plugin\tracker.dll] <N/A><N/A>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[PID: 3064][C:\Program Files\Tencent\TT\TTraveler.exe] <腾讯公司><3.0.0.250>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\PROGRA~1\3721\autolive.dll] <><1, 1, 5, 1324>
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[C:\Program Files\Tencent\TT\Plugins\QQFloatBar\QQFloatBar4TT2.dll] <腾讯公司><1, 1, 0, 5>
[C:\Program Files\Tencent\TT\Plugins\TWeather\TWeather.dll] <><1, 0, 0, 3>
[C:\PROGRA~1\3721\alLiveEx.dll] < ><1, 0, 3, 1006>
[C:\Program Files\Tencent\TT\PersonalDesktop.dll] <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 4>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\KAV2005\KAScript.DLL] <Kingsoft Corporation><2006, 2, 10, 60>
[C:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2005, 12, 29, 56>
[C:\KAV2005\KAEMem.DAT] <Kingsoft><2006, 4, 12, 13>
[C:\KAV2005\KAEUnpack.DAT] <Kingsoft Corp.><2006, 3, 21, 17>
[C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0>
[c:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.4.3>
[C:\WINDOWS\Downloaded Program Files\OL2005.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[PID: 3388][C:\WINDOWS\explorer.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
hyxdgv - 2006-5-7 21:48:00
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\PROGRA~1\3721\alrex.dll] <><1, 0, 1, 1001>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\PROGRA~1\winkld\Winkld.dat] <www.88dog.com><2, 0, 0, 1>
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[C:\PROGRA~1\3721\autolive.dll] <><1, 1, 5, 1324>
[C:\PROGRA~1\3721\alLiveEx.dll] < ><1, 0, 3, 1006>
[c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll] <Hewlett-Packard Company><1.0.0.7>
[C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll] <Adobe Systems Incorporated><6.0.1.2003110300>
[C:\Program Files\CoolWebsite\QuickLink.dll] <Fengcent><1, 0, 0, 2>
[C:\WINDOWS\SYSTEM32\stdup.dll] <><3, 2, 1, 5>
[C:\WINDOWS\system32\cpap.dll] <><1, 0, 1, 0>
[C:\WINDOWS\system32\HttpReq.dll] <N/A><N/A>
[C:\PROGRA~1\baidu\bar\baidubar.dll] <Baidu.com, Inc.><2, 0, 2, 76>
[C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX] <N/A><N/A>
[c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll] <Symantec Corporation><11.0.9.16>
[c:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.4.3>
[C:\WINDOWS\system32\nvcpl.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.8195>
[C:\WINDOWS\system32\nvshell.dll] <N/A><N/A>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\KAV2005\KAVEXT.DLL] <Kingsoft Corporation><2005, 8, 5, 16>
[PID: 5380][C:\Program Files\Real\RealPlayer\realplay.exe] <RealNetworks, Inc.><6.0.12.1056>
[C:\WINDOWS\system32\PNCRT.dll] <Real Networks, Inc><6.0.0.0>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\Program Files\Common Files\Real\Common\objb3201.dll] <RealNetworks, Inc.><0.1.0.6032>
[C:\Program Files\Real\RealPlayer\rpplugins\rpap3260.dll] <RealNetworks, Inc.><6.0.9.2745>
[C:\Program Files\Common Files\Real\Common\pnrs3260.dll] <RealNetworks, Inc.><6.0.9.3775>
[C:\Program Files\Real\RealPlayer\lang\cdplay_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\dbcomp_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\embed_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\gemctl_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\pngui_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\pdgenxfer_cn.dll] <N/A><N/A>
[C:\Program Files\Real\RealPlayer\lang\rjctl_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjeq_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjres_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjskin_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjviz_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjfade_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjdlg_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjmisc_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rjprog_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpapp_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpclsvc_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpclutil_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpdemand_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpdsplyr_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpgutil_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpmnpane_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpplylst_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\rpwebctl_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\tcdinfo_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\tclsvc_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\tdwnmgr_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\tmp3_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\twave_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\teasdk_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\tearm_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\tmdedit_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\lang\mydevices_cn.dll] <RealNetworks, Inc.><6.0.12.298>
[C:\Program Files\Real\RealPlayer\rpplugins\rpcl3260.dll] <RealNetworks, Inc.><6.0.9.2828>
[C:\Program Files\Common Files\Real\RCAPlugins\uisy3201.dll] <RealNetworks, Inc.><0.1.0.3537>
[C:\Program Files\Common Files\Real\Plugins\zipf3260.dll] <RealNetworks, Inc.><6.0.8.2259>
[C:\Program Files\Common Files\Real\RCAPlugins\rpcontrols1.dll] <RealNetworks, Inc.><6.0.1.1942>
[C:\Program Files\Common Files\Real\Plugins\pxcb3210.dll] <RealNetworks, Inc.><1.0.0.3703>
[C:\Program Files\Real\RealPlayer\rpplugins\rpmn3260.dll] <RealNetworks, Inc.><6.0.9.2655>
[C:\Program Files\Real\RealPlayer\rpplugins\rpms3260.dll] <RealNetworks, Inc.><6.0.1.1977>
[C:\Program Files\Real\RealPlayer\rpplugins\MPACore.dll] <RealNetworks, Inc.><1.0.3.1995>
[C:\Program Files\Real\RealPlayer\rpplugins\rput3260.dll] <RealNetworks, Inc.><6.0.9.2793>
[C:\Program Files\Common Files\Real\Common\pngu3267.dll] <RealNetworks, Inc.><6.7.0.2419>
[C:\Program Files\Real\RealPlayer\rpplugins\myde3260.dll] <RealNetworks, Inc.><6.0.10.2212>
[C:\Program Files\Real\RealPlayer\plugins\rjrmjpln.dll] <RealNetworks, Inc.><1.0.3.1954>
[C:\Program Files\Common Files\Real\Common\pnen3260.dll] <RealNetworks, Inc.><10.0.0.654>
[C:\Program Files\Common Files\Real\Plugins\vsrlocal.dll] <RealNetworks, Inc.><10.1.0.536>
[C:\Program Files\Common Files\Real\Plugins\vidsite.dll] <RealNetworks, Inc.><10.0.0.609>
[C:\Program Files\Common Files\Real\Plugins\clntxres.dll] <RealNetworks, Inc.><10.0.0.2358>
[C:\Program Files\Real\RealPlayer\rpplugins\rjbe3260.dll] <RealNetworks, Inc.><6.0.4.1981>
[C:\Program Files\Common Files\Real\Plugins\smplfsys.dll] <RealNetworks, Inc.><10.0.0.1009>
[C:\Program Files\Common Files\Real\Plugins\ramfformat.dll] <RealNetworks, Inc.><10.0.0.1454>
[C:\Program Files\Common Files\Real\Plugins\rmfformat.dll] <RealNetworks, Inc.><10.0.0.853>
[C:\Program Files\Common Files\Real\Plugins\rarender.dll] <RealNetworks, Inc.><10.0.0.613>
[C:\Program Files\Common Files\Real\Codecs\raac.dll] <RealNetworks, Inc.><10.0.0.417>
[C:\Program Files\Common Files\Real\Plugins\rvrender.dll] <RealNetworks, Inc.><10.0.0.634>
[C:\Program Files\Common Files\Real\Codecs\hxltcolor.dll] <RealNetworks, Inc.><10.0.0.466>
[C:\Program Files\Common Files\Real\Codecs\RV40.DLL] <RealNetworks, Inc.><10.0.0.1091>
[C:\Program Files\Common Files\Real\Codecs\drvc.dll] <RealNetworks, Inc.><10.0.0.1091>
[C:\Program Files\Common Files\Real\Common\rjbviz.dll] <RealNetworks, Inc.><1.0.2.3599>
[C:\Program Files\Common Files\Real\Visualizations\Annabelle.rpv] <RealNetworks, Inc.><1.0.0.2>
[C:\Program Files\Common Files\Real\Plugins\authmgr.dll] <RealNetworks, Inc.><10.0.0.1055>
[C:\Program Files\Common Files\Real\RCAPlugins\rpcontrols2.dll] <RealNetworks><6.0.1.1942>
[C:\Program Files\Common Files\Real\RCAPlugins\gemx3201.dll] <RealNetworks, Inc.><0.1.0.5576>
[C:\Program Files\Common Files\Real\Update_OB\rnad3201.dll] <RealNetworks, Inc.><0.1.0.3208>
[PID: 2016][C:\Documents and Settings\HP_Owner\桌面\Special Tools\电子纹香.exe] <cn2006@163.com><2.0.0.0>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
hyxdgv - 2006-5-7 21:49:00
[PID: 2460][C:\Documents and Settings\HP_Owner\桌面\Special Tools\SREng.exe] <Smallfrogs Studio><2.0.12.350>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
[PID: 5716][C:\WINDOWS\system32\taskmgr.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 5988][C:\WINDOWS\system32\NOTEPAD.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 1>
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] <Symantec Corporation><2005.1.00.163>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\system32\nview.dll] <N/A><N/A>
[C:\WINDOWS\system32\NVWRSZHC.DLL] <NVIDIA Corporation><6.14.10.11010>
[C:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[C:\WINDOWS\system32\nvwddi.dll] <NVIDIA Corporation><6.14.10.8195>
===========================================================
以上是所有扫描出来的了........
接着全靠大大们的了 OTL
我无邪 - 2006-5-7 22:00:00
请把日志详细粘完,不要修改。
我无邪 - 2006-5-7 22:02:00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Reminder><"C:\Windows\Creator\Remind_XP.exe">
以上这项需要你来确定,你是否安装有SoftThinks这个软件
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Update><C:\Program Files\Common Files\UPDATE\Update.exe>
这一项是广告软件,可以修复。
1
© 2000 - 2026 Rising Corp. Ltd.