清风劲节 - 2006-7-15 13:09:00
标题:菜鸟求救!
各位大虾:
感谢您关注我的这份报告,小菜鸟急需您的帮助!
本扫描/诊断报告由 雅虎助手IE修复专家 生成
操作系统: Windows XP
IE版本号: 6.0.2900.2180
===============================================================
浏览器老是弹出广告!系统慢得不得了
以下是我的扫描报告正文:
*** 扫描项列表 ***
下列条目被IE修复专家判断为危险:
下列条目被IE修复专家判断为有风险:
1.R01 - 启用备用搜索引擎 - R01 - 启用备用搜索引擎,,
安全等级:有风险
2.F02 - UserInit启动项(NT) - C:\WINDOWS\system32\Userinit.exe,C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\lnchdnm.exe,,
内容:C:\WINDOWS\system32\Userinit.exe,C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\lnchdnm.exe
安全等级:有风险
下列条目被IE修复专家判断为未知:
3.R00 - IE首页 - http://www.google.com/,,
内容:http://www.google.com/
安全等级:未知
4.O02 - 浏览器辅助对象(BHO) - CaiShowBH,,
CLSID:{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}
相关文件:(文件不存在)(隐藏)(系统)C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll
安全等级:未知
5.O02 - 浏览器辅助对象(BHO) - NetAccelerate,Microsoft Corporation,
CLSID:{5673A7C0-95CC-4646-BB07-3BD71234CEF9}
相关文件:C:\WINDOWS\system32\wuwebex.dll
安全等级:未知
6.O02 - 浏览器辅助对象(BHO) - ActiveBHO,,
CLSID:{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}
相关文件:C:\Program Files\DoDoorRSSFinder\ActiveBandObject.dll
安全等级:未知
7.O02 - 浏览器辅助对象(BHO) - MSHlper,,
CLSID:{721E6521-4CAD-4A8D-A7F1-4E230B31EF19}
相关文件:(文件不存在)(隐藏)(系统)C:\WINDOWS\system32\MSHLP.DLL
安全等级:未知
8.O02 - 浏览器辅助对象(BHO) - Thunder Browser Helper,Thunder Networking Technologies,LTD,
CLSID:{889D2FEB-5411-4565-8998-1DD2C5261283}
相关文件:F:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll
安全等级:未知
9.O02 - 浏览器辅助对象(BHO) - IEHlprObj,Microsoft Corporation,
CLSID:{999ADFA2-8AD1-47ff-97FC-69FB847458F4}
相关文件:C:\Program Files\NetMeeting\nmview.dll
安全等级:未知
10.O02 - 浏览器辅助对象(BHO) - estAliveObj,Eastday Corporation,
CLSID:{A2B7A0F0-B697-4A71-8D91-43443F57D7BB}
相关文件:C:\WINDOWS\estAlive.dll
安全等级:未知
11.O02 - 浏览器辅助对象(BHO) - ,,
CLSID:{A9930D97-9CF0-42A0-A10D-4F28836579D5}
相关文件:D:\Program Files\KuGoo3\KuGoo3DownXControl.ocx
安全等级:未知
12.O02 - 浏览器辅助对象(BHO) - iehelper,,
CLSID:{C1DE9E98-839F-4055-AEDF-781852C25895}
相关文件:(文件不存在)(隐藏)(系统)C:\WINDOWS\system32\aperferer.dll
安全等级:未知
13.O02 - 浏览器辅助对象(BHO) - Letscool Network IE Helper,LETSCOOL Network Technology,
CLSID:{F0C15012-7DBD-4068-95A2-0A82DB03AC35}
相关文件:(隐藏)(系统)C:\WINDOWS\system32\CoolBho.dll
安全等级:未知
14.O02 - 浏览器辅助对象(BHO) - Yahoo Bar,,
CLSID:{F60FAB6F-115D-4797-9ED1-89793B930876}
相关文件:C:\WINDOWS\ODBINT.dll
安全等级:未知
15.O02 - 浏览器辅助对象(BHO) - google bar,,
CLSID:{FAD11F89-F11E-4A15-92FB-6F0EDC4C8D59}
相关文件:C:\WINDOWS\vwwreg.dll
安全等级:未知
16.O04 - 公用自启动目录 - Logitech Desktop Messenger,,
相关文件:C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe /start
安全等级:未知
17.O04 - 自动运行项(Run) - nod32kui,Eset ,
相关文件:C:\Program Files\Eset\nod32kui.exe /WAITSERVICE
内容:"C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
安全等级:未知
18.O04 - 自动运行项(Run) - Windows多媒体后台程序控制多媒体服务。,TODO: <Company name>,
相关文件:C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
内容:C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
安全等级:未知
19.O04 - 自动运行项(Run) - 91cast,,
安全等级:未知
20.O04 - 自动运行项(Run) - svc,,
相关文件:C:\WINDOWS\svchost.exe
内容:C:\WINDOWS\svchost.exe
安全等级:未知
21.O04 - 自动运行项(Run) - svc,,
相关文件:C:\WINDOWS\svchost.exe
内容:C:\WINDOWS\svchost.exe
安全等级:未知
22.O09 - IE工具栏按钮 - 江民在线杀毒,,
网页路径:http://online.jiangmin.com/online.asp
安全等级:未知
23.O09 - IE菜单项和工具栏按钮 - Flash Saver,,
相关文件:D:\Program Files\Flash saver\save.htm
安全等级:未知
24.O09 - IE工具栏按钮 - 信息检索,Microsoft Corporation,
相关文件:D:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL
安全等级:未知
25.O09 - IE菜单项和工具栏按钮 - 腾讯QQ,TENCENT,
相关文件:D:\Program Files\Tencent\QQ\QQ.exe
安全等级:未知
26.O09 - IE菜单项和工具栏按钮 - &FlashGet,Amaze Soft,
相关文件:D:\Program Files\FlashGet\flashget.exe
安全等级:未知
27.O09 - IE菜单项 - QQ炫彩工具条设置,深圳市腾讯计算机系统有限公司,
相关文件:D:\Program Files\Tencent\QQ\QQIEHelper.dll
安全等级:未知
28.O10 - 网络信息过滤器(LSP) - C:\WINDOWS\system32\imon.dll,Eset ,
相关文件:C:\WINDOWS\system32\imon.dll
安全等级:未知
29.O10 - 网络信息过滤器(LSP) - C:\WINDOWS\system32\imon.dll,Eset ,
相关文件:C:\WINDOWS\system32\imon.dll
安全等级:未知
30.O10 - 网络信息过滤器(LSP) - C:\WINDOWS\system32\imon.dll,Eset ,
相关文件:C:\WINDOWS\system32\imon.dll
安全等级:未知
31.O10 - 网络信息过滤器(LSP) - C:\WINDOWS\system32\imon.dll,Eset ,
相关文件:C:\WINDOWS\system32\imon.dll
安全等级:未知
32.O10 - 网络信息过滤器(LSP) - C:\WINDOWS\system32\imon.dll,Eset ,
相关文件:C:\WINDOWS\system32\imon.dll
安全等级:未知
33.O10 - 网络信息过滤器(LSP) - C:\WINDOWS\system32\imon.dll,Eset ,
相关文件:C:\WINDOWS\system32\imon.dll
安全等级:未知
34.O14 - Web原始设置IERESET.INF - START_PAGE_URL=http://www.legend.com,,
相关文件:C:\WINDOWS\inf\iereset.inf
网页路径:http://www.legend.com
内容:START_PAGE_URL=http://www.legend.com
安全等级:未知
35.O16 - 下载的ActiveX插件 - Windows Genuine Advantage Validation Tool,Microsoft Corporation,
CLSID:{17492023-C23A-453E-A040-C7C580BBF700}
相关文件:C:\WINDOWS\system32\LegitCheckControl.DLL
网页路径:http://go.microsoft.com/fwlink/?linkid=39204
安全等级:未知
36.O16 - 下载的ActiveX插件 - CEditCtrl Object,www.alipay.com,
CLSID:{488A4255-3236-44B3-8F27-FA1AECAA8844}
相关文件:C:\WINDOWS\system32\aliedit\AliEdit.dll
网页路径:https://img.alipay.com/download/1007/aliedit.cab
安全等级:未知
37.O16 - 下载的ActiveX插件 - 金山毒霸在线产品升级,金山软件股份有限公司,
CLSID:{52DF16E3-6C4F-4B22-8BAF-09263E463B48}
相关文件:C:\Program Files\KOS\KOSInit.ocx
网页路径:http://zs.kingsoft.com/KOSInit.cab
安全等级:未知
38.O16 - 下载的ActiveX插件 - MofileUploadX Control,,
CLSID:{7260569F-1D40-4E7F-B95B-2E68D35668B9}
相关文件:C:\WINDOWS\Downloaded Program Files\MoUpload.ocx
网页路径:http://www.mofile.com/activex/UploadFX.CAB
安全等级:未知
39.O16 - 下载的ActiveX插件 - photo_uploader Control,,
CLSID:{A984ED9F-E8DA-44E5-BC18-C14B9ABEF79D}
相关文件:C:\WINDOWS\Downloaded Program Files\photo_uploader.ocx
网页路径:http://upload.photo.163.com/photoup.cab
安全等级:未知
40.O16 - 下载的ActiveX插件 - Rising Web Scan Object,Beijing Rising Technology Co., Ltd.,
CLSID:{E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153}
相关文件:C:\WINDOWS\Downloaded Program Files\OL2005.dll
网页路径:http://download.rising.com.cn/register/pcver/autoupgradepad/pcver2006new/OL2006.cab
安全等级:未知
41.O17 - 本机网络设置 NameServer - 202.96.128.86 202.96.128.166,,
内容:202.96.128.86 202.96.128.166
安全等级:未知
42.O18 - 网络协议处理器 - livecall,Microsoft Corporation,
CLSID:{828030A1-22C1-4009-854F-8E305202313F}
相关文件:C:\Program Files\MSN Messenger\msgrapp.8.0.0792.00.dll
安全等级:未知
43.O18 - 网络协议处理器 - msnim,Microsoft Corporation,
CLSID:{828030A1-22C1-4009-854F-8E305202313F}
相关文件:C:\Program Files\MSN Messenger\msgrapp.8.0.0792.00.dll
安全等级:未知
44.O21 - 自启动项SSODL - WPDShServiceObj,Microsoft Corporation,
CLSID:{AAA288BA-9A4C-45B0-95D7-94D524869DB5}
相关文件:C:\WINDOWS\system32\WPDShServiceObj.dll
内容:{AAA288BA-9A4C-45B0-95D7-94D524869DB5}
安全等级:未知
清风劲节 - 2006-7-15 14:36:00
2006-07-15,14:26:31
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [Microsoft Corporation]
<KVFW><C:\Program Files\KVFW\kvfw.exe -silent> [Beijing Jiangmin.]
<svc><C:\WINDOWS\svchost.exe> []
<LDM><C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe> []
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [Microsoft Corporation]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [Microsoft Corporation]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [Microsoft Corporation]
<NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [NVIDIA Corporation]
<nwiz><nwiz.exe /install> []
<NvMediaCenter><RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit> [NVIDIA Corporation]
<nod32kui><"C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE> [Eset ]
<TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> [RealNetworks, Inc.]
<DAEMON Tools><"D:\Program Files\DAEMON Tools\daemon.exe" -lang 1033> [DT Soft Ltd.]
<IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload> [Microsoft Corporation]
<Logitech Utility><Logi_MwX.Exe> [Logitech Inc.]
<mmtask><C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe> [TODO: <Company name>]
<91cast><> []
<svc><C:\WINDOWS\svchost.exe> []
<YLive.exe><C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe> [Yahoo! China]
<yassistse><"C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe"> [Yahoo! China]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINDOWS\system32\Userinit.exe,C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\lnchdnm.exe> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<Thunder><; "F:\Program Files\Thunder Network\Thunder\Thunder.exe" /s> [Thunder Networking Technologies,LTD]
<WangWang><; "D:\Program Files\淘宝网\淘宝旺旺\WangWang.EXE"> [淘宝(中国)软件有限公司]
==================================
启动文件夹
[Logitech Desktop Messenger]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Logitech Desktop Messenger.lnk><N>
==================================
服务
[InstallDriver Table Manager / IDriverT]
<"C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe"><Macrovision Corporation>
[KVWSC / KVWSC]
<"C:\Program Files\KVFW\KVwsc.exe"><Jiangmin Co>
[Macromedia Licensing Service / Macromedia Licensing Service]
<"C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><Macromedia>
[NOD32 Kernel Service / NOD32krn]
<"C:\Program Files\Eset\nod32krn.exe"><Eset>
[NVIDIA Display Driver Service / NVSvc]
<C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
==================================
浏览器加载项
[Yahoo!Photo]
{33BBE430-0E42-4f12-B075-8D21ACB10DCB} <C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll, Yahoo! China>
[AntiFish Class]
{38928D50-8A48-44C2-945F-D2F23F771410} <C:\Program Files\Yahoo!\Assistant\Assist\yAngling.dll, yahoo! china>
[CaiShowBH Class]
{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997} <C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll, N/A>
[QQBrowserHelperObject Class]
{54EBD53A-9BC1-480B-966A-843A333CA162} <D:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[NetAccelerate Class]
{5673A7C0-95CC-4646-BB07-3BD71234CEF9} <C:\WINDOWS\system32\wuwebex.dll, Microsoft Corporation>
[DragSearch BHO]
{62EED7C6-9F02-42f9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL, yahoo! china>
[ActiveBHO Class]
{63C55A7F-6E29-8D4F-5C76-4F850F28D13A} <C:\Progra~1\DoDoorRSSFinder\ActiveBandObject.dll, >
[MSHlper Class]
{721E6521-4CAD-4A8D-A7F1-4E230B31EF19} <C:\WINDOWS\system32\MSHLP.DLL, N/A>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[IEHlprObj Class]
{999ADFA2-8AD1-47ff-97FC-69FB847458F4} <C:\Progra~1\NetMeeting\nmview.dll, Microsoft Corporation>
[estAliveObj Class]
{A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[IeCatch2 Class]
{A5366673-E8CA-11D3-9CD9-0090271D075B} <D:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <D:\PROGRA~1\KuGoo3\KUGOO3~1.OCX, N/A>
[iehelper]
{C1DE9E98-839F-4055-AEDF-781852C25895} <C:\WINDOWS\system32\aperferer.dll, N/A>
[]
{F0C15012-7DBD-4068-95A2-0A82DB03AC35} <C:\WINDOWS\system32\CoolBho.dll, LETSCOOL Network Technology>
[Yahoo Bar]
{F60FAB6F-115D-4797-9ED1-89793B930876} <C:\WINDOWS\ODBINT.dll, N/A>
[google bar]
{FAD11F89-F11E-4A15-92FB-6F0EDC4C8D59} <C:\WINDOWS\vwwreg.dll, N/A>
[assist]
{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll, Yahoo! China>
[江民在线杀毒]
{06926B30-424E-4f1c-8EE3-543CD96573DC} <http://online.jiangmin.com/online.asp, N/A>
[Flash Saver]
{09EA1F80-F40A-11D1-B792-444553540001} <, N/A>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[QQ]
{c95fe080-8f5d-11d2-a20b-00aa003c157b} <D:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[FlashGet]
{D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <D:\PROGRA~1\FLASHGET\flashget.exe, Amaze Soft>
[QQIEFloatBarCfgCmd Class]
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <D:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[FlashGet Bar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} <D:\PROGRA~1\FLASHGET\fgiebar.dll, Amaze Soft>
[雅虎助手]
{406F94F0-504F-4A40-8DFD-58B0666ABEBD} <C:\Program Files\Yahoo!\Assistant\Assist\yasbar.dll, yahoo! china>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[CEditCtrl Object]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\AliEdit.dll, www.alipay.com>
[金山毒霸在线产品升级]
{52DF16E3-6C4F-4B22-8BAF-09263E463B48} <C:\PROGRA~1\KOS\KOSInit.ocx, 金山软件股份有限公司>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[MofileUploadX Control]
{7260569F-1D40-4E7F-B95B-2E68D35668B9} <C:\WINDOWS\DOWNLO~1\MoUpload.ocx, >
[photo_uploader Control]
{A984ED9F-E8DA-44E5-BC18-C14B9ABEF79D} <C:\WINDOWS\DOWNLO~1\PHOTO_~1.OCX, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
[Rising Web Scan Object]
{E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[KvScanOnline Control]
{EF6205C1-3F17-4829-BCB5-1336ED89E356} <C:\WINDOWS\system32\KvDown.ocx, dreamersoft>
[Yahoo!Photo]
{33BBE430-0E42-4F12-B075-8D21ACB10DCB} <C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll, Yahoo! China>
[AntiFish Class]
{38928D50-8A48-44C2-945F-D2F23F771410} <C:\Program Files\Yahoo!\Assistant\Assist\yAngling.dll, yahoo! china>
[CaiShowBH Class]
{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997} <C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll, N/A>
[雅虎助手]
{406F94F0-504F-4A40-8DFD-58B0666ABEBD} <C:\Program Files\Yahoo!\Assistant\Assist\yasbar.dll, yahoo! china>
[QQBrowserHelperObject Class]
{54EBD53A-9BC1-480B-966A-843A333CA162} <D:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[NetAccelerate Class]
{5673A7C0-95CC-4646-BB07-3BD71234CEF9} <C:\WINDOWS\system32\wuwebex.dll, Microsoft Corporation>
[Yahoo!Live]
{57421194-58FB-49AE-9B4F-FD48869B9AD4} <C:\Program Files\Yahoo!\Assistant\yaLive.dll, yahoo! china>
[DragSearch BHO]
{62EED7C6-9F02-42F9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL, yahoo! china>
[ActiveBHO Class]
{63C55A7F-6E29-8D4F-5C76-4F850F28D13A} <C:\Progra~1\DoDoorRSSFinder\ActiveBandObject.dll, >
[MSHlper Class]
{721E6521-4CAD-4A8D-A7F1-4E230B31EF19} <C:\WINDOWS\system32\MSHLP.DLL, N/A>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[IEHlprObj Class]
{999ADFA2-8AD1-47FF-97FC-69FB847458F4} <C:\Progra~1\NetMeeting\nmview.dll, Microsoft Corporation>
[estAliveObj Class]
{A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[IeCatch2 Class]
{A5366673-E8CA-11D3-9CD9-0090271D075B} <D:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <D:\PROGRA~1\KuGoo3\KUGOO3~1.OCX, N/A>
[iehelper]
{C1DE9E98-839F-4055-AEDF-781852C25895} <C:\WINDOWS\system32\aperferer.dll, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
[FlashGet Bar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} <D:\PROGRA~1\FLASHGET\fgiebar.dll, Amaze Soft>
[]
{F0C15012-7DBD-4068-95A2-0A82DB03AC35} <C:\WINDOWS\system32\CoolBho.dll, LETSCOOL Network Technology>
[Yahoo Bar]
{F60FAB6F-115D-4797-9ED1-89793B930876} <C:\WINDOWS\ODBINT.dll, N/A>
[google bar]
{FAD11F89-F11E-4A15-92FB-6F0EDC4C8D59} <C:\WINDOWS\vwwreg.dll, N/A>
[assist]
{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll, Yahoo! China>
[&使用迅雷下载]
<F:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[&使用迅雷下载全部链接]
<F:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://D:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000, N/A>
清风劲节 - 2006-7-15 14:38:00
==================================
正在运行的进程
[PID: 476][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 532][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 572][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 620][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 632][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 780][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 824][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 896][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 940][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 996][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 1212][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[PID: 1380][C:\Program Files\KVFW\KVwsc.exe] <Jiangmin Co><1, 0, 0, 10>
[PID: 1408][C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE] <Microsoft Corporation><7.00.9466>
[PID: 1444][C:\Program Files\Eset\nod32krn.exe] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\nod32krr.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\ps_amon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_amon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\ps_dmon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_dmon.dll] <N/A><N/A>
[C:\Program Files\Eset\ps_emon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_emon.dll] <N/A><N/A>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[C:\Program Files\Eset\ps_nod32.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_nod32.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\ps_upd.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_upd.dll] <N/A><N/A>
[PID: 1508][C:\WINDOWS\system32\nvsvc32.exe] <NVIDIA Corporation><6.14.10.9131>
[PID: 1856][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\yaLive.dll] <yahoo! china><3, 1, 9, 1057>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] <Yahoo! China><3, 0, 1, 1010>
[C:\Progra~1\DoDoorRSSFinder\ActiveBandObject.dll] <><1, 0, 0, 1>
[F:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll] <Thunder Networking Technologies,LTD><5, 0, 0, 2>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll] <Yahoo! China><3, 0, 0, 1000>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL] <yahoo! china><3, 0, 0, 1000>
[D:\PROGRA~1\FLASHGET\jccatch.dll] <Amaze Soft><1, 1, 4, 0>
[D:\PROGRA~1\KuGoo3\KUGOO3~1.OCX] <N/A><N/A>
[C:\WINDOWS\ODBINT.dll] <N/A><N/A>
[C:\WINDOWS\vwwreg.dll] <N/A><N/A>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll] <Yahoo! China><3, 0, 7, 1012>
[PID: 524][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 528][C:\WINDOWS\system32\conime.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 1576][C:\WINDOWS\system32\RUNDLL32.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\NvMcTray.dll] <NVIDIA Corporation><6.14.10.9131>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.9131>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 1588][C:\Program Files\Eset\nod32kui.exe] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\nod32rui.dll] <N/A><N/A>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\Program Files\Eset\pu_amon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_amon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pu_dmon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_dmon.dll] <N/A><N/A>
[C:\Program Files\Eset\pu_emon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_emon.dll] <N/A><N/A>
[C:\Program Files\Eset\pu_imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[C:\Program Files\Eset\pu_nod32.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_nod32.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pu_upd.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_upd.dll] <N/A><N/A>
[PID: 252][D:\Program Files\DAEMON Tools\daemon.exe] <DT Soft Ltd.><4.03.0.0>
[D:\Program Files\DAEMON Tools\daemon.dll] <DT Soft Ltd.><4.03.0.0>
[D:\Program Files\DAEMON Tools\PFCTOC.DLL] <Padus(R), Inc.><1, 0, 0, 12>
[D:\Program Files\DAEMON Tools\Plugins\Images\bw5mount.dll] <N/A><1.0.6.0>
[D:\Program Files\DAEMON Tools\Plugins\Images\ccdmount.dll] <GENERIC><1.10.0.0>
[D:\Program Files\DAEMON Tools\Plugins\Images\mdsmount.dll] <GENERIC><1.12.0.0>
[D:\Program Files\DAEMON Tools\Plugins\Images\nrgmount.dll] <GENERIC><1.11.0.0>
[D:\Program Files\DAEMON Tools\Plugins\Images\pdimount.dll] <GENERIC><1.01.0.0>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 416][C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe] <TODO: <Company name>><1.0.0.1>
[C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMVCP70.dll] <Sample Corporation><7.00.0000>
[C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMVCR70.dll] <Sample Corporation><7.00.0000>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 412][C:\Program Files\Logitech\MouseWare\system\em_exec.exe] <Logitech Inc.><9.79.019>
[C:\Program Files\Logitech\MouseWare\system\EVENTEX.dll] <Logitech Inc.><9.79.019>
[C:\WINDOWS\system32\COMNCTR.dll] <Logitech Inc.><9.79.019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Logitech\MouseWare\system\ccresrce.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Logitech\MouseWare\system\GlbResLt.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\Program Files\Logitech\MouseWare\System\devices.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Logitech\MouseWare\system\ccstmglb.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Logitech\MouseWare\system\ccustom.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Logitech\MouseWare\system\ccmsghk.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[PID: 296][C:\WINDOWS\svchost.exe] <N/A><N/A>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 1184][C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe] <Yahoo! China><3, 0, 1, 1007>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\yaLive.dll] <yahoo! china><3, 1, 9, 1057>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] <Yahoo! China><3, 0, 1, 1010>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\ynotifier.dll] <yahoo! china><3, 0, 0, 1000>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[PID: 320][C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe] <Yahoo! China><3, 0, 0, 1001>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yAssecblk.dll] <Yahoo! China><3, 0, 0, 1002>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yAsMenu.dll] <Yahoo! China><3, 0, 0, 1001>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yMenuInfo.dll] <Yahoo! China><3, 0, 0, 1000>
[C:\PROGRA~1\Yahoo!\Assistant\shell\yIEAngel.dll] <Yahoo! China><3, 0, 0, 1000>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
清风劲节 - 2006-7-15 14:38:00
[PID: 520][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 1176][C:\Program Files\KVFW\kvfw.exe] <Beijing Jiangmin.><9.0.5.902>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\Program Files\KVFW\KVFWUtil.DLL] <><1, 0, 0, 1>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 2640][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3368][D:\Program Files\Maxthon\Maxthon.exe] <Maxthon International Ltd.><1, 5, 6, 42>
[D:\Program Files\Maxthon\maxzlib.dll] < ><1, 0, 0, 2>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[D:\Program Files\Maxthon\Services\RealTime\real_time.dll] <><1, 0, 0, 1>
[PID: 3708][F:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe] <Thunder Networking Technologies,LTD><5.2.0.207>
[F:\Program Files\Thunder Network\Thunder\Program\UpdateDownload.dll] <Thunder Networking Technologies,LTD><1, 0, 1, 8>
[F:\Program Files\Thunder Network\Thunder\Program\download_interface.dll] <Thunder Networking Technologies,LTD><1, 0, 3, 70>
[F:\Program Files\Thunder Network\Thunder\Program\log4cplus.dll] <><1, 0, 2, 1>
[F:\Program Files\Thunder Network\Thunder\Program\stlport_vc646.dll] <STLport Consulting, Inc.><4.6.2003.1031>
[F:\Program Files\Thunder Network\Thunder\Program\asyn_dns.dll] <N/A><N/A>
[F:\Program Files\Thunder Network\Thunder\Program\msgmanage.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 15>
[F:\Program Files\Thunder Network\Thunder\Program\historyinfo_manage.dll] <Thunder Networking Technologies,LTD><5, 2, 0, 148>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[F:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll] <Thunder Networking Technologies,LTD><1, 2, 0, 7>
[F:\Program Files\Thunder Network\Thunder\Program\FloatBar.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 2>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
[F:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll] < ><1, 0, 0, 10>
[F:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed03.dll] < ><2, 2, 1, 33>
[F:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll] <Thunder Networking Technologies,LTD><1, 0, 1, 6>
[F:\Program Files\Thunder Network\Thunder\Program\iTargetAd.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 60>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[PID: 3224][C:\Documents and Settings\Administrator\桌面\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\Program Files\Logitech\MouseWare\System\LgWndHk.dll] <Logitech Inc.><9.79.019>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] <Yahoo! China><3, 0, 1, 1019>
[C:\Program Files\Common Files\Logitech\Scrolling\LgMsgHk.dll] <Logitech Inc.><1.1.0>
[C:\WINDOWS\system32\imon.dll] <Eset ><2, 51, 26 >
[C:\Program Files\Eset\pr_imon.dll] <N/A><N/A>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
baohe - 2006-7-15 15:18:00
【回复“清风劲节”的帖子】
打开注册表编辑器,展开:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
删除<svc><C:\WINDOWS\svchost.exe>
展开:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
删除<svc><C:\WINDOWS\svchost.exe>
重启。
显示隐藏文件,删除C:\WINDOWS\svchost.exe。
© 2000 - 2026 Rising Corp. Ltd.