瑞星卡卡安全论坛
骑着乌龟玩飘移 - 2006-7-6 10:32:00
正在运行的进程
[PID: 136][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 160][\??\C:\WINNT\system32\csrss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 180][\??\C:\WINNT\system32\winlogon.exe] <Microsoft Corporation><5.00.2195.6970>
[PID: 208][C:\WINNT\system32\services.exe] <Microsoft Corporation><5.00.2195.6700>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\WINNT\system32\dmserver.dll] <VERITAS Software Corp.><2195.6605.297.3>
[PID: 220][C:\WINNT\system32\lsass.exe] <Microsoft Corporation><5.00.2195.6902>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 396][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 424][C:\WINNT\system32\spoolsv.exe] <Microsoft Corporation><5.00.2195.6659>
[C:\WINNT\system32\hpzsnt08.dll] <HP><2,223,0,0>
[C:\WINNT\system32\spool\PRTPROCS\W32X86\vprproc.dll] <Windows (R) 2000 DDK provider><5.00.2195.1620>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 456][C:\WINNT\System32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 472][C:\KV2004\KVSrvXP.exe] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KVEnhD.dll] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KvSPI.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\KVEnhP.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KVEnhM.dll] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KVEnhC.DLL] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KVEnhO_1.dll] <JiangMin Ltd.><8.0.0.314>
[C:\KV2004\KVEnhS_1.dll] <JiangMin Ltd.><8.0.0.313>
[C:\KV2004\KVEnhJ.dll] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KVExtCab.dll] <Jiangmin New Tech. Co. Ltd.><8.0.0.309>
[C:\KV2004\KVExtEml.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\KvExtRar.dll] <Jiangmin New Tech. Co. Ltd.><8.0.0.309>
[C:\KV2004\KvExtZip.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KVExtLZH_1.dll] <N/A><N/A>
[C:\KV2004\KVEnhK_1.dll] <JiangMin Ltd.><7, 1, 0, 307>
[C:\KV2004\KvSpiPS.dll] <JiangMin Ltd.><8.0.0.309>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\lang\PrivateCfg0804.lng] <TODO: <Company name>><1.0.0.1>
[PID: 540][C:\WINNT\system32\MSTask.exe] <Microsoft Corporation><4.71.2195.6920>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 628][C:\WINNT\System32\WBEM\WinMgmt.exe] <Microsoft Corporation><1.50.1085.0100>
[PID: 680][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 788][C:\WINNT\Explorer.EXE] <Microsoft Corporation><5.00.3700.6690>
[C:\KV2004\KvShell.dll] <JiangMin Lmt><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\Kvxp0804.lng] <N/A><N/A>
[C:\KV2004\KVComm_1.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\APIImpl.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\GUIExt.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\GUIExt0804.lng] <JiangMin Ltd.><7, 1, 0, 200>
[C:\PROGRA~1\baidu\bar\baidubar.dll] <Baidu.com, Inc.><2, 0, 2, 78>
[C:\KV2004\KVMonXP.kxp] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\Kvxp0804.lng] <N/A><N/A>
[C:\KV2004\GUIExt.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\GUIExt0804.lng] <JiangMin Ltd.><7, 1, 0, 200>
[C:\KV2004\KVEnhP.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KvSpiPS.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\PrivateCfg0804.lng] <TODO: <Company name>><1.0.0.1>
[PID: 968][C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe] <N/A><N/A>
[PID: 992][C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe] <Hewlett-Packard><1, 0, 0, 1>
[C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpodvd08.dll] <Hewlett-Packard><2, 0, 2, 2>
[C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxm08.dll] <Hewlett-Packard Co.><4.2.0.127>
[PID: 1004][C:\WINNT\Mixer.exe] <C-Media Electronic Inc. (www.cmedia.com.tw)><1.60>
[C:\WINNT\System32\cmnprop.dll] <C-Media Corporation><5.00.2195.12>
[PID: 1024][C:\Program Files\Creative\Audio2K\PROGRAM\CTMIX32.EXE] <Creative Technology Ltd.><6.01.1>
[C:\Program Files\Creative\Audio2K\PROGRAM\CTMRES32.DLL] <Creative Technology Ltd.><1.02.0>
[PID: 1040][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] <RealNetworks, Inc.><0.1.0.1622>
[PID: 1048][C:\WINNT\system32\internat.exe] <Microsoft Corporation><5.00.2920.0000>
[PID: 1072][C:\Program Files\racer-henan-cnc\racer.exe] <Putian Runway><2, 0, 51, 92>
[C:\Program Files\racer-henan-cnc\rwxre.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\nspr4.dll] <Netscape Communications Corporation><4.5 Beta>
[C:\Program Files\racer-henan-cnc\xpcom.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\nss3.dll] <Netscape Communications Corporation><3.9.1>
[C:\Program Files\racer-henan-cnc\softokn3.dll] <Netscape Communications Corporation><3.9.1>
[C:\Program Files\racer-henan-cnc\gkgfx.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\js3250.dll] <Netscape Communications Corporation><4.0>
[C:\Program Files\racer-henan-cnc\components\racer_base_comp.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\xpcom_compat.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\racer_base.dll] <Putian Runway><2,0,47,87>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\Program Files\racer-henan-cnc\components\pipnss.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\gklayout.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\jar50.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\xpcom_compat_c.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\racer_ad_comp.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\components\racer_access_dhcpplus.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\dhcpplus.dll] <北京润汇科技有限公司><0, 13, 21, 45>
[C:\Program Files\racer-henan-cnc\components\racer_nss4_comp.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\nss4.dll] <北京普天润汇科技有限公司><1, 0, 0, 3>
[C:\Program Files\racer-henan-cnc\wpcap.dll] <NetGroup - Politecnico di Torino><3, 1, 0, 24>
[C:\Program Files\racer-henan-cnc\packet.dll] <NetGroup - Politecnico di Torino><3, 1, 0, 24>
[C:\Program Files\racer-henan-cnc\WanPacket.dll] <NetGroup - Politecnico di Torino><3, 1, 0, 24>
[PID: 940][C:\WINNT\system32\wuauclt.exe] <Microsoft Corporation><5.8.0.2469 built by: lab01_n(wmbla)>
[PID: 464][C:\Program Files\racer-henan-cnc\RacerKp.exe] <北京润汇科技有限公司><1, 0, 0, 1>
[PID: 776][C:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><5.00.2920.0000>
[C:\PROGRA~1\baidu\bar\baidubar.dll] <Baidu.com, Inc.><2, 0, 2, 78>
[C:\KV2004\KvShell.dll] <JiangMin Lmt><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\Kvxp0804.lng] <N/A><N/A>
[C:\KV2004\KVComm_1.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\APIImpl.dll] <JiangMin Ltd.><8.0.0.309>
[F:\音乐\KuGoo3\KuGoo3DownXControl.ocx] <N/A><N/A>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\WINNT\system32\macromed\flash\Flash.ocx] <Macromedia, Inc.><7,0,19,0>
[PID: 740][C:\WINNT\System32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 1028][F:\智能扫描\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
骑着乌龟玩飘移 - 2006-7-6 10:32:00
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR Error. [%1" /S]
.CHM OK. ["C:\WINNT\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS Error. [超级解霸3000]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
骑着乌龟玩飘移 - 2006-7-6 10:33:00
现在除了打开网页时拉动上下条幅出现问题以外!电脑基本还正常!
我无邪 - 2006-7-6 14:05:00
C:\WINNT\system32\spooIsv.exe
从那又蹦出个病毒来
ALT+CTRL+DELETE调出任务管理器,终止所有spooIsv.exe的进程
运行(双击)System Repair Engineer,使用“启动项目,注册表”来删除以下选项。
C:\WINNT\system32\spooIsv.exe
删除
C:\WINNT\system32\spooIsv.exe
注意这个进程,和系统的进程有区别,不要删除错。
我无邪 - 2006-7-6 14:05:00
修复后,请再扫份日志粘上来。
运行(双击)System Repair Engineer,使用“系统修复,文件关联,勾选“全选”点“修复”使所有扩展名都恢复正常。
骑着乌龟玩飘移 - 2006-7-7 10:38:00
2006-07-07,10:43:16
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows 2000 Professional Service Pack 4 (Build 2195)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<Internat.exe><internat.exe> [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> []
<run><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Synchronization Manager><mobsync.exe /logon> [Microsoft Corporation]
<SysExplr><C:\HEROSOFT\Hero3000\SYSEXPLR.EXE> []
<KvMonXP><C:\KV2004\KVMonXP.kxp /auto> [JiangMin Ltd.]
<HP Software Update><C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe> []
<HPDJ Taskbar Utility><C:\WINNT\system32\spool\drivers\w32x86\3\hpztsb08.exe> [HP]
<DeviceDiscovery><C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe> [Hewlett-Packard]
<C-Media Mixer><Mixer.exe /startup> [C-Media Electronic Inc. (www.cmedia.com.tw)]
<CreativeMixer><C:\Program Files\Creative\Audio2K\PROGRAM\CTMIX32.EXE /t> [Creative Technology Ltd.]
<popo2004><C:\Program Files\NetEase\popo2004\Start.exe> [网易(163.com)]
<TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> [RealNetworks, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINNT\system32\userinit.exe,> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\KV2004\KVSCRK~1.SCR> []
==================================
启动文件夹
[河南网通宽带用户客户端]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\河南网通宽带用户客户端.lnk><N>
[腾讯QQ]
<C:\Documents and Settings\lsy1\「开始」菜单\程序\启动\腾讯QQ.lnk><N>
==================================
服务
[Logical Disk Manager Administrative Service / dmadmin]
<C:\WINNT\System32\dmadmin.exe /com><VERITAS Software Corp.>
[hpdj / hpdj]
<C:\DOCUME~1\lsy1\LOCALS~1\Temp\hpdj.exe -servicerunning=true -uninstall=hp deskjet 3500 series -product=><HP>
[KVSrvXP / KVSrvXP]
<C:\KV2004\KVSrvXP.exe -Service><JiangMin Ltd.>
==================================
浏览器加载项
[超级兔子上网精灵]
{7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <F:\软件\MAGICSET\haokanbar.dll, N/A>
[BandIE Class]
{77FEF28E-EB96-44FF-B511-3185DEA48697} <C:\PROGRA~1\baidu\bar\baidubar.dll, Baidu.com, Inc.>
[BrowseHelper Class]
{80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <C:\KV2004\KvShell.dll, JiangMin Lmt>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <F:\音乐\KuGoo3\KuGoo3DownXControl.ocx, N/A>
[解霸]
{367E0A21-8601-4986-9C9A-153BF5ACA118} <C:\HEROSOFT\Hero3000\MPLAYER.EXE, N/A>
[@shdoclc.dll,-866]
{c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
{c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[@msdxmLC.dll,-1@2052,电台(&R)]
{8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\System32\msdxm.ocx, Microsoft Corporation>
[江民杀毒工具栏]
{B5A34A93-D538-43A7-8371-864CB6148D12} <C:\KV2004\KvShell.dll, JiangMin Lmt>
[百度超级搜霸]
{B580CF65-E151-49C3-B73F-70B13FCA8E86} <C:\PROGRA~1\baidu\bar\baidubar.dll, Baidu.com, Inc.>
[超级兔子上网精灵]
{43869BB3-22FD-4F15-9B46-238106BA2F4E} <F:\软件\MAGICSET\haokanbar.dll, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINNT\system32\macromed\flash\Flash.ocx, Macromedia, Inc.>
[使用KuGoo3下载(&K)]
<F:\音乐\KUGOO3\KuGoo3DownX.htm, N/A>
[添加到QQ自定义面板]
<C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
<C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
<C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
骑着乌龟玩飘移 - 2006-7-7 10:39:00
正在运行的进程
[PID: 136][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 160][\??\C:\WINNT\system32\csrss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 180][\??\C:\WINNT\system32\winlogon.exe] <Microsoft Corporation><5.00.2195.6970>
[PID: 208][C:\WINNT\system32\services.exe] <Microsoft Corporation><5.00.2195.6700>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\WINNT\system32\dmserver.dll] <VERITAS Software Corp.><2195.6605.297.3>
[PID: 220][C:\WINNT\system32\lsass.exe] <Microsoft Corporation><5.00.2195.6902>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 392][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 456][C:\WINNT\System32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 472][C:\KV2004\KVSrvXP.exe] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KVEnhD.dll] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KvSPI.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\KVEnhP.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KVEnhM.dll] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KVEnhC.DLL] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KVEnhO_1.dll] <JiangMin Ltd.><8.0.0.314>
[C:\KV2004\KVEnhS_1.dll] <JiangMin Ltd.><8.0.0.313>
[C:\KV2004\KVEnhJ.dll] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\KVExtCab.dll] <Jiangmin New Tech. Co. Ltd.><8.0.0.309>
[C:\KV2004\KVExtEml.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\KvExtRar.dll] <Jiangmin New Tech. Co. Ltd.><8.0.0.309>
[C:\KV2004\KvExtZip.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KVExtLZH_1.dll] <N/A><N/A>
[C:\KV2004\KVEnhK_1.dll] <JiangMin Ltd.><7, 1, 0, 307>
[C:\KV2004\KvSpiPS.dll] <JiangMin Ltd.><8.0.0.309>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\lang\PrivateCfg0804.lng] <TODO: <Company name>><1.0.0.1>
[PID: 536][C:\WINNT\system32\MSTask.exe] <Microsoft Corporation><4.71.2195.6920>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 564][C:\WINNT\System32\WBEM\WinMgmt.exe] <Microsoft Corporation><1.50.1085.0100>
[PID: 604][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[PID: 888][C:\WINNT\Explorer.EXE] <Microsoft Corporation><5.00.3700.6690>
[C:\KV2004\KvShell.dll] <JiangMin Lmt><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\Kvxp0804.lng] <N/A><N/A>
[C:\KV2004\KVComm_1.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\APIImpl.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\GUIExt.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\GUIExt0804.lng] <JiangMin Ltd.><7, 1, 0, 200>
[C:\PROGRA~1\baidu\bar\baidubar.dll] <Baidu.com, Inc.><2, 0, 2, 78>
[C:\KV2004\KVMonXP.kxp] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\Kvxp0804.lng] <N/A><N/A>
[C:\KV2004\GUIExt.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\GUIExt0804.lng] <JiangMin Ltd.><7, 1, 0, 200>
[C:\KV2004\KVEnhP.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\KvSpiPS.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\PrivateCfg0804.lng] <TODO: <Company name>><1.0.0.1>
[PID: 1084][C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe] <N/A><N/A>
[PID: 1112][C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe] <Hewlett-Packard><1, 0, 0, 1>
[C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpodvd08.dll] <Hewlett-Packard><2, 0, 2, 2>
[C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxm08.dll] <Hewlett-Packard Co.><4.2.0.127>
[PID: 1116][C:\WINNT\Mixer.exe] <C-Media Electronic Inc. (www.cmedia.com.tw)><1.60>
[C:\WINNT\System32\cmnprop.dll] <C-Media Corporation><5.00.2195.12>
[PID: 1124][C:\Program Files\Creative\Audio2K\PROGRAM\CTMIX32.EXE] <Creative Technology Ltd.><6.01.1>
[C:\Program Files\Creative\Audio2K\PROGRAM\CTMRES32.DLL] <Creative Technology Ltd.><1.02.0>
[PID: 1016][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] <RealNetworks, Inc.><0.1.0.1622>
[PID: 296][C:\WINNT\system32\internat.exe] <Microsoft Corporation><5.00.2920.0000>
[PID: 1008][C:\Program Files\racer-henan-cnc\racer.exe] <Putian Runway><2, 0, 51, 92>
[C:\Program Files\racer-henan-cnc\rwxre.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\nspr4.dll] <Netscape Communications Corporation><4.5 Beta>
[C:\Program Files\racer-henan-cnc\xpcom.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\nss3.dll] <Netscape Communications Corporation><3.9.1>
[C:\Program Files\racer-henan-cnc\softokn3.dll] <Netscape Communications Corporation><3.9.1>
[C:\Program Files\racer-henan-cnc\gkgfx.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\js3250.dll] <Netscape Communications Corporation><4.0>
[C:\Program Files\racer-henan-cnc\components\racer_base_comp.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\xpcom_compat.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\racer_base.dll] <Putian Runway><2,0,47,87>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\Program Files\racer-henan-cnc\components\pipnss.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\gklayout.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\jar50.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\xpcom_compat_c.dll] <Mozilla Foundation><1.7.3: 2005040616>
[C:\Program Files\racer-henan-cnc\components\racer_ad_comp.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\components\racer_access_dhcpplus.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\dhcpplus.dll] <北京润汇科技有限公司><0, 13, 21, 45>
[C:\Program Files\racer-henan-cnc\components\racer_nss4_comp.dll] <Putian Runway><2,0,47,87>
[C:\Program Files\racer-henan-cnc\nss4.dll] <北京普天润汇科技有限公司><1, 0, 0, 3>
[C:\Program Files\racer-henan-cnc\wpcap.dll] <NetGroup - Politecnico di Torino><3, 1, 0, 24>
[C:\Program Files\racer-henan-cnc\packet.dll] <NetGroup - Politecnico di Torino><3, 1, 0, 24>
[C:\Program Files\racer-henan-cnc\WanPacket.dll] <NetGroup - Politecnico di Torino><3, 1, 0, 24>
[PID: 764][C:\WINNT\system32\wuauclt.exe] <Microsoft Corporation><5.8.0.2469 built by: lab01_n(wmbla)>
[PID: 1092][C:\Program Files\racer-henan-cnc\RacerKp.exe] <北京润汇科技有限公司><1, 0, 0, 1>
[PID: 424][C:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><5.00.2920.0000>
[C:\PROGRA~1\baidu\bar\baidubar.dll] <Baidu.com, Inc.><2, 0, 2, 78>
[C:\KV2004\KvShell.dll] <JiangMin Lmt><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\Kvxp0804.lng] <N/A><N/A>
[C:\KV2004\KVComm_1.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\APIImpl.dll] <JiangMin Ltd.><8.0.0.309>
[F:\音乐\KuGoo3\KuGoo3DownXControl.ocx] <N/A><N/A>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
[C:\WINNT\system32\macromed\flash\Flash.ocx] <Macromedia, Inc.><7,0,19,0>
[PID: 412][F:\智能扫描\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINNT\system32\KvWspXp.dll] <JiangMin Ltd.><8.0.0.312>
骑着乌龟玩飘移 - 2006-7-7 10:39:00
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINNT\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
骑着乌龟玩飘移 - 2006-7-7 10:40:00
是不是已经没有问题了?但是我的电脑最近系统怎么有点慢啊?
骑着乌龟玩飘移 - 2006-7-7 10:41:00
还有就是打开网页到一半时总是停了下来,需要刷新一下才能完全打开!
我无邪 - 2006-7-7 14:24:00
日志以经看不出问题了
建议你下载超级兔子。
http://www.pctutu.com/srmsdown.asp
安装好后,打开“超级兔子清理王”“清理系统”“清理文件”勾选前六项,下一步,清除垃圾文件。
点“清理注册表”,勾选前五项,下一步。
© 2000 - 2026 Rising Corp. Ltd.