huaxue05 - 2006-7-25 13:58:00
Logfile of HijackThis v1.99.1
Scan saved at 13:47:49, on 2006-7-25
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
D:\Bluetooth Software\bin\btwdins.exe
D:\Symantec Client Firewall\NISUM.EXE
D:\Symantec Client Firewall\SymPxSvc.exe
D:\Symantec Client Firewall\NISSERV.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
D:\mcombocn\Maxthon\Maxthon.exe
C:\Program Files\ChinaNet\VnetClient.exe
D:\魔法兔子\MagicSet\magicset.exe
C:\WINDOWS\system32\conime.exe
D:\HijackThis.exe
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,C:\Documents and Settings\All Users\Application
Data\Microsoft\Crypto\fjjedc.exe
O2 - BHO: VnetCookie Class - {4E83D567-4697-4F7B-B1F0-A513B01DB89A} - c:\PROGRA~1\chinanet\VNETTR~1.DLL
O2 - BHO: IEHlprObj Class - {999ADFA2-8AD1-47ff-97FC-69FB847458F4} - C:\Progra~1\NetMeeting\nmview.dll
O4 - HKLM\..\Run: [KAVPersonal50] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe /minimize
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [iamapp] ; D:\SYMANT~1\IAMAPP.EXE
O8 - Extra context menu item: 使用影音传送带下载 - D:\NetTransport\NTAddLink.html
O8 - Extra context menu item: 使用影音传送带下载全部链接 - D:\NetTransport\NTAddList.html
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1094285144061
O16 - DPF: {9BBD100C-E820-4930-9937-E8F3AA40E584} (DFVSScanFile Control) - http://antivirus3.sunv.com/dfvsolDown/dfvsol.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0728C570-A8DF-4FEC-B273-364ADB4FDEE6}: NameServer = 210.34.240.100,202.101.107.55
O17 - HKLM\System\CCS\Services\Tcpip\..\{88E7A528-48DB-4E86-902F-20808E774B3E}: NameServer = 61.147.37.1 61.177.7.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0728C570-A8DF-4FEC-B273-364ADB4FDEE6}: NameServer = 210.34.240.100,202.101.107.55
O17 - HKLM\System\CS2\Services\Tcpip\..\{0728C570-A8DF-4FEC-B273-364ADB4FDEE6}: NameServer = 210.34.240.100,202.101.107.55
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - D:\Bluetooth Software\bin\btwdins.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common
Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: IIS Admin (IISADMIN) - Macrovision Corporation - (no file)
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia
Shared\Service\Macromedia Licensing.exe
O23 - Service: FTP Publishing (MSFtpsvc) - Unknown owner - C:\WINDOWS\system32\inetsrv\inetinfo.exe (file missing)
O23 - Service: Symantec Client Firewall Service (NISSERV) - Symantec Corporation - D:\Symantec Client Firewall\NISSERV.EXE
O23 - Service: Symantec Client Firewall Accounts Manager (NISUM) - Symantec Corporation - D:\Symantec Client
Firewall\NISUM.EXE
O23 - Service: Simple Mail Transfer Protocol (SMTP) (SMTPSVC) - Unknown owner - (no file)
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Symantec Client Firewall Proxy Service (SymPxSvc) - Symantec Corporation - D:\Symantec Client
Firewall\SymPxSvc.exe
O23 - Service: World Wide Web Publishing (W3SVC) - Unknown owner - C:\WINDOWS\system32\inetsrv\inetinfo.exe (file missing)
我无邪 - 2006-7-25 14:14:00
F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,C:\Documents and Settings\All Users\Application
Data\Microsoft\Crypto\fjjedc.exe
O2 - BHO: IEHlprObj Class - {999ADFA2-8AD1-47ff-97FC-69FB847458F4} - C:\Progra~1\NetMeeting\nmview.dll
以上两个选项,看以下的帖子
http://forum.ikaka.com/topic.asp?board=28&artid=8122808
我无邪 - 2006-7-25 14:16:00
对了,修复后
请下载 System Repair Engineer,使用“智能扫描”,按下“扫描”按钮进行扫描,扫描完成后按下“保存报告”按钮保存报告日志文件(SREng.LOG),把保存的报告日志文件内容复制-粘贴上来
下载网址
http://www.kztechs.com/sreng/sreng2.zip
http://forum.ikaka.com/topic.asp?board=67&artid=5188931
日志一次粘不完,分次粘完,请不要修改。
huaxue05 - 2006-7-25 14:46:00
2006-07-25,14:35:42
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<Any To-Do List><; ; ; "D:\备忘小纸条\AnyToDo.exe"> [Any Utils]
<ctfmon.exe><; C:\WINDOWS\system32\ctfmon.exe> [Microsoft Corporation]
<STYLEXP><; ; ; C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide> []
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> []
<run><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<KAVPersonal50><C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe /minimize> [Kaspersky Lab]
<MSConfig><C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto> [Microsoft Corporation]
<iamapp><; D:\SYMANT~1\IAMAPP.EXE> [Symantec Corporation]
<ATIPTA><; ; ; C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe> []
<DAEMON Tools><; ; ; "d:\DAEMON Tools\daemon.exe" -lang 1033> []
<IMJPMIG8.1><; ; ; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [Microsoft Corporation]
<KernelFaultCheck><; %systemroot%\system32\dumprep 0 -k> []
<Mirabilis ICQ><; ; ; D:\ICQ\ICQNet.exe> []
<NeroFilterCheck><; ; ; ; C:\WINDOWS\system32\NeroCheck.exe> [Ahead Software Gmbh]
<TkBellExe><; ; ; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><C:\Program Files\TGTSoft\StyleXP\Logon\CurrentLogon.EXE> []
==================================
启动文件夹
服务
[Ati HotKey Poller / Ati HotKey Poller]
<C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[Bluetooth Service / btwdins]
<D:\Bluetooth Software\bin\btwdins.exe><Broadcom Corporation.>
[InstallDriver Table Manager / IDriverT]
<"C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe"><Macrovision Corporation>
[IIS Admin / IISADMIN]
<><N/A>
[kavsvc / kavsvc]
<C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe><Kaspersky Lab>
[Macromedia Licensing Service / Macromedia Licensing Service]
<"C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><N/A>
[FTP Publishing / MSFtpsvc]
<C:\WINDOWS\system32\inetsrv\inetinfo.exe><N/A>
[Symantec Client Firewall Service / NISSERV]
<"D:\Symantec Client Firewall\NISSERV.EXE"><Symantec Corporation>
[Symantec Client Firewall Accounts Manager / NISUM]
<"D:\Symantec Client Firewall\NISUM.EXE"><Symantec Corporation>
[Simple Mail Transfer Protocol (SMTP) / SMTPSVC]
<><N/A>
[StyleXPService / StyleXPService]
<"C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe"><>
[Symantec Client Firewall Proxy Service / SymPxSvc]
<"D:\Symantec Client Firewall\SymPxSvc.exe"><Symantec Corporation>
[World Wide Web Publishing / W3SVC]
<C:\WINDOWS\system32\inetsrv\inetinfo.exe><N/A>
==================================
浏览器加载项
[VnetCookie Class]
{4E83D567-4697-4F7B-B1F0-A513B01DB89A} <c:\PROGRA~1\chinanet\VNETTR~1.DLL, >
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[DFVSScanFile Control]
{9BBD100C-E820-4930-9937-E8F3AA40E584} <C:\WINDOWS\system32\dfvs\dfvsol\DFVSSFOL.ocx, >
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx, Macromedia, Inc.>
[CEditCtrl Object]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\AliEdit.dll, www.alipay.com>
[VnetCookie Class]
{4E83D567-4697-4F7B-B1F0-A513B01DB89A} <c:\PROGRA~1\chinanet\VNETTR~1.DLL, >
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Microsoft Web 浏览器]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[RealPlayer G2 Control]
{CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\System32\rmoc3260.dll, RealNetworks, Inc.>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx, Macromedia, Inc.>
[使用影音传送带下载]
<D:\NetTransport\NTAddLink.html, N/A>
[使用影音传送带下载全部链接]
<D:\NetTransport\NTAddList.html, N/A>
[使用网际快车下载]
<, N/A>
[使用网际快车下载全部链接]
<, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
==================================
正在运行的进程
[PID: 504][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 556][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 588][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 636][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 656][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 804][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4114>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2496>
[PID: 816][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 888][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 960][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 992][C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe] <><0, 20, 0, 3000>
[PID: 1068][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1124][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1248][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\WINDOWS\system32\bthcrp.dll] <Broadcom Corporation.><4.0.1.2601>
[C:\WINDOWS\system32\WidcommSdk.dll] <Broadcom Corporation.><4.0.1.2601>
[C:\WINDOWS\system32\wbtapi.dll] <Broadcom Corporation.><4.0.1.2601>
[PID: 1376][D:\Bluetooth Software\bin\btwdins.exe] <Broadcom Corporation.><4.0.1.2601>
[PID: 1456][D:\Symantec Client Firewall\NISUM.EXE] <Symantec Corporation><5.0.0.375>
[C:\WINDOWS\system32\SYMSTORE.dll] <Symantec Corporation><4.6.0.53>
[D:\Symantec Client Firewall\NISUMPS.DLL] <Symantec Corporation><5.0.0.375>
[PID: 1576][D:\Symantec Client Firewall\SymPxSvc.exe] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\SymProxy.dll] <Symantec Corporation><5.0.0.375>
[C:\WINDOWS\system32\SYMREDIR.dll] <Symantec Corporation><4.6.0.53>
huaxue05 - 2006-7-25 14:46:00
[C:\WINDOWS\system32\SYMSTORE.dll] <Symantec Corporation><4.6.0.53>
[D:\Symantec Client Firewall\NISALERT.DLL] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\NISRES.DLL] <N/A><N/A>
[D:\Symantec Client Firewall\ProxyIM.DLL] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\StrmFilt.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\SymIConv.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\SymPxAlt.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\SymURL.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\iamevent.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\PrxyNNTP.DLL] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\PrxyHTTP.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\NISUMPS.DLL] <Symantec Corporation><5.0.0.375>
[PID: 1768][D:\Symantec Client Firewall\NISSERV.EXE] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\IAMLOG.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\iamevent.dll] <Symantec Corporation><5.0.0.375>
[D:\Symantec Client Firewall\NISRES.DLL] <N/A><N/A>
[C:\WINDOWS\system32\SYMSTORE.dll] <Symantec Corporation><4.6.0.53>
[D:\Symantec Client Firewall\NISUMPS.DLL] <Symantec Corporation><5.0.0.375>
[PID: 384][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1716][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3740][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1924][C:\Program Files\ChinaNet\VnetClient.exe] <><2005, 3, 7, 1>
[C:\Program Files\ChinaNet\Communicate.dll] <0><2005, 3, 3, 1>
[C:\Program Files\ChinaNet\DialModule.dll] <><2005, 1, 18, 1>
[C:\PROGRA~1\ChinaNet\CLIENT~1.DLL] <><2004, 2, 28, 1>
[C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX] <><2005, 3, 7, 1>
[C:\PROGRA~1\ChinaNet\sign.dll] <0><2004, 12, 1, 1>
[C:\PROGRA~1\ChinaNet\WEBPLU~1.DLL] <><2005, 2, 17, 1>
[C:\PROGRA~1\ChinaNet\PostPlug.dll] <><2004, 12, 16, 2>
[C:\PROGRA~1\ChinaNet\ADVERT~1.OCX] <><2004, 12, 30, 0>
[C:\PROGRA~1\ChinaNet\VnetBs.ocx] <><2004, 11, 18, 1>
[C:\PROGRA~1\ChinaNet\ACCOUN~2.DLL] <><2005, 3, 3, 1>
[C:\PROGRA~1\ChinaNet\AccountMgr.dll] <><2005, 3, 7, 2>
[C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX] <><2005, 2, 24, 1>
[C:\PROGRA~1\ChinaNet\NEWMES~1.DLL] <><2004, 11, 25, 0>
[C:\PROGRA~1\ChinaNet\PassCtrl.dll] <><1, 0, 0, 1>
[C:\WINDOWS\system32\wpcap.dll] <Politecnico di Torino><3, 0, 0, 18>
[C:\WINDOWS\system32\pthreadVC.dll] <N/A><N/A>
[C:\WINDOWS\system32\packet.dll] <Politecnico di Torino><3, 0, 0, 18>
[C:\PROGRA~1\ChinaNet\PlugPush.dll] <><2004, 12, 21, 1>
[C:\PROGRA~1\ChinaNet\ALLINT~1.DLL] <><2004, 11, 23, 1>
[C:\PROGRA~1\ChinaNet\VNetLog.ocx] <><2005, 10, 9, 1>
[C:\PROGRA~1\ChinaNet\StatNum.dll] <><2004, 11, 18, 1>
[C:\PROGRA~1\ChinaNet\VNETON~1.OCX] <><2005, 3, 2, 1>
[C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL] <><2005, 3, 9, 1>
[C:\PROGRA~1\ChinaNet\VnetOptLog.dll] <><2004, 11, 23, 1>
[C:\PROGRA~1\ChinaNet\DialogStyle.dll] <><1, 0, 0, 1>
[C:\PROGRA~1\ChinaNet\Timer.ocx] <><2004, 11, 25, 1>
[C:\PROGRA~1\ChinaNet\VnetSkin.ocx] <GDDC><1, 0, 0, 1>
[C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx] <Macromedia, Inc.><8,0,22,0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\avpscrch.dll] <Kaspersky Lab><1.0.142.342>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\concl.dll] <Kaspersky Lab><1.0.142.3>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\FSSync.dll] <Kaspersky Lab><5.0.0.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\ipc.dll] <Kaspersky Lab><5.0.142.0>
[C:\PROGRA~1\ChinaNet\DlgSkin.ocx] <><1, 0, 0, 1>
[PID: 216][C:\WINDOWS\system32\conime.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Herosoft\HeroV8\VCvtShell.dll] <herosoft><1, 0, 0, 1>
[PID: 3560][D:\mcombocn\Maxthon\Maxthon.exe] <MY Soft Technology><1, 5, 0, 95>
[D:\mcombocn\Maxthon\maxzlib.dll] < ><1, 0, 0, 2>
[D:\mcombocn\Maxthon\Services\RealTime\real_time.dll] <><1, 0, 0, 1>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\avpscrch.dll] <Kaspersky Lab><1.0.142.342>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\concl.dll] <Kaspersky Lab><1.0.142.3>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\FSSync.dll] <Kaspersky Lab><5.0.0.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\ipc.dll] <Kaspersky Lab><5.0.142.0>
[C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx] <Macromedia, Inc.><8,0,22,0>
[PID: 3256][D:\HijackThis.exe] <Soeperman Enterprises Ltd.><1.99.0001>
[PID: 3812][C:\WINDOWS\system32\taskmgr.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Herosoft\HeroV8\VCvtShell.dll] <herosoft><1, 0, 0, 1>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\WINDOWS\system32\vdshell.dll] <FarStone Technology Inc.><1, 5, 0, 0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\shellex.dll] <Kaspersky Lab><5.0.142.1>
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] <Adobe Systems, Inc.><7.0.0.0>
[PID: 3980][E:\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[E:\SREng2\Plugins\SREngPluginDemo.SRE] <Smallfrogs Studio><1, 1, 1, 0>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
huaxue05 - 2006-7-25 19:23:00
顶上去请人帮忙~
huaxue05 - 2006-7-25 20:17:00
我的赛门铁克防火墙现在好像不会随系统启动了,怎么回事呢?
huaxue05 - 2006-7-26 12:42:00
请问为什么卸载的时候说我没有合适的权限呢?
我无邪 - 2006-7-26 19:42:00
如果你的用户不是管理员账号,就不能卸载它。
以系统管理员Administrators进入安全模式,用它来卸载。
© 2000 - 2026 Rising Corp. Ltd.