瑞星卡卡安全论坛
漫步跑跑 - 2006-8-22 22:18:00
2006-08-22,22:04:16
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
漫步跑跑 - 2006-8-22 22:19:00
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [Microsoft Corporation]
<bgswitch><C:\WINDOWS\system32\bgswitch.exe> []
<91cast><> []
<svc><C:\WINDOWS\svchost.exe> []
<MyShares><c:\program Files\忆多多\MyShares.exe /tray> []
<NetCounter><c:\Program Files\NetCounter\NetCount.exe> []
<Syss><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ehuupdate.exe> [Micorsoft EXE]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><C:\WINDOWS\73bif34.exe> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [Microsoft Corporation]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [Microsoft Corporation]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [Microsoft Corporation]
<SoundMan><SOUNDMAN.EXE> [Realtek Semiconductor Corp.]
<MSService_v1.0><C:\WINDOWS\system\realsched.exe> []
<Desktop><C:\WINDOWS\system32\rundll32.exe "C:\Program Files\DeskAdTop\Run.dll" ,Rundll> []
<91cast><> []
漫步跑跑 - 2006-8-22 22:19:00
<svc><C:\WINDOWS\svchost.exe> []
<pbmini><C:\Program Files\pcast\PodcastbarMini\PodcastBar.exe -hide> []
<sysmini><C:\WINDOWS\system32\sysmini.exe> []
<spoolsv><C:\WINDOWS\system32\spoolsv\spoolsv.exe -printer> [广州傲讯信息科技有限公司]
<ourmini><C:\WINDOWS\System\svchost.exe> [MicroSoft Corporation]
<defender><c:\\dfndrff_12.exe> [ewjiruweru8tu389uu54389refju8eu]
<keyboard><c:\\kybrdff_12.exe> [*&&*#&$*#RU*#Y&*#YR&Y#&RY#R]
<newname><c:\\nwnmff_12.exe> [04399289e8uwhru243y5r78f73yh3t7y3]
<><C:\WINDOWS\system32\intenat.exe> []
<SoundMam><C:\WINDOWS\system32\SVOHOST.exe> []
<RichMedia><C:\WINDOWS\system32\Rundll32.exe "C:\PROGRA~1\pcast\hbcast.dll",WaitWindows> [Shanghai Henbang Technology Co., Ltd]
<ToP><C:\WINDOWS\LSASS.exe> [nYVmLJNNBoK0PT1Uvl2f]
<TProgram><C:\WINDOWS\SMSS.EXE> [Xs5kzBEUMw1vRVHCJxSh]
<Torjan Program><C:\WINDOWS\WINLOGON.EXE> [nYVmKIMNAnJPS1Tul2fq]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
<uninsrest><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<SoundMix><rundll32.exe C:\WINDOWS\system32\soundmix.dll,Load> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINDOWS\system32\userinit.exe,C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\hhkgkah.exe> []
漫步跑跑 - 2006-8-22 22:20:00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<DelayRun><C:\WINDOWS\73bdf340.dll> []
<webwork><C:\WINDOWS\webwork\webwork.dll> [MSWebwork Cop.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Extensions]
<WinlogonNotify: Extensions><C:\WINDOWS\system32\amrsvc.dll> []
==================================
启动文件夹
[IE-Bar]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\IE-Bar.lnk><N>
==================================
服务
[JMediaService / JMediaService]
<C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\MMSASS~1\MMSSVER.DLL,Service><N/A>
[UpdateService / UpdateService]
漫步跑跑 - 2006-8-22 22:20:00
<C:\WINDOWS\system32\UpdateService.exe><N/A>
==================================
浏览器加载项
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_4683.dll, Microsoft Corporation>
[JUJU猫]
{6096E38F-5AC1-4391-8EC4-75DFA92FB32F} <http://www.jujumao.com, N/A>
[MMSAssistMenu]
{6671A433-5C3D-463d-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, >
[QQ]
{c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll,
漫步跑跑 - 2006-8-22 22:20:00
Microsoft Corporation>
[internet explorer helper]
{02C9B9AB-6372-46C5-B356-773FAF3B6B1E} <C:\WINDOWS\fonts\msshapi.dll, N/A>
[MonitorURL Class]
{08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, >
[wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, Allsum Info. Tech. Ltd.>
[Shockwave Flash Object]
{14A21378-5BB1-4BC4-95D5-5D3F51527F6F} <C:\WINDOWS\system32\smflash.ocx, Macromedia, Inc.>
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_4683.dll, Microsoft Corporation>
[FltSetUp Class]
{1D49D58D-5C84-4B50-8359-D9809BEB2B32} <C:\Program Files\Internet Explorer\Connection Wizard\icwuti1.dll, Microsoft Corporation>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[Wbho Class]
{40E3A34A-3282-41F8-AD2C-051BAB96AD4A} <C:\WINDOWS\system32\usign.dll, N/A>
[HHCtrl Object]
漫步跑跑 - 2006-8-22 22:21:00
{52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[QQBrowserHelperObject Class]
{54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[JMX.JmxCenter]
{63859236-76BF-493C-A587-DF479EBA2D4B} <C:\WINDOWS\system32\EJMX.dll, 广州盛行网络有限公司>
[ActiveBHO Class]
{63C55A7F-6E29-8D4F-5C76-4F850F28D13A} <C:\Progra~1\DoDoorRSSFinder\ActiveBandObject.dll, >
[Vision]
{6671A431-5C3D-463D-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, >
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[MSHlper Class]
{721E6521-4CAD-4A8D-A7F1-4E230B31EF19} <C:\WINDOWS\system32\MSHLP.DLL, >
[CpapView Class]
{77962960-536E-47EC-9DDB-52651519705F} <C:\WINDOWS\system32\rundll32.dll, >
[Microsoft Web 浏览器]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
漫步跑跑 - 2006-8-22 22:21:00
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll, Thunder Networking Technologies,LTD>
[WinSC Class]
{9ACEEE31-1440-471B-AA46-72B061FE7D61} <C:\WINDOWS\system32\WinSC.dll, N/A>
[estAliveObj Class]
{A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[Yahoo Bar]
{A697BC46-BC93-4833-93F5-1E365011E88A} <C:\WINDOWS\ODBINT.dll, N/A>
[DeskbarBHO]
{A8B28872-3324-4CD2-8AA3-7D555C872D96} <C:\Program Files\Deskbar\deskbar.dll, Deskbar>
[Java Enhancer]
{AF098F95-7CEA-407A-8552-3846737CC4B2} <C:\WINDOWS\system32\contwin.dll, Sun MicroSystems, Inc.>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[RealPlayer Control]
{BDBFE1F2-14C7-42D3-ACC7-4C2757F27F55} <C:\WINDOWS\system32\RMOC3360.DLL, RealNetworks,Inc.>
[Webacc Class]
漫步跑跑 - 2006-8-22 22:21:00
{CAC068F3-A608-406B-8581-458788A67694} <C:\WINDOWS\system32\svchost.dll, >
[XrqRigqe Class]
{D10AB699-13CD-77C4-6654-8F7D36406486} <C:\WINDOWS\DOWNLO~1\qsvr.dll, lyipusoft>
[51导航]
{D271A289-57EB-4D0E-9131-A0CD25D4D1F8} <C:\WINDOWS\system32\browsewmzero.dll, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[DuiSo.com Search]
{E2218499-2FD4-4EED-A94A-7F0B9C6E300E} <C:\WINDOWS\system32\Inte32.dll, N/A>
[BHelper Class]
{F2E37336-BFDB-409B-8D0E-6F013C438B20} <C:\WINDOWS\system32\73bof340.dll, N/A>
[上传到QQ网络硬盘]
<C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[使用迅雷下载]
<C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[使用迅雷下载全部链接]
<C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
漫步跑跑 - 2006-8-22 22:22:00
[添加到QQ自定义面板]
<C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
<C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
<C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
==================================
正在运行的进程
[PID: 352][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 408][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 432][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\amrsvc.dll] <N/A><N/A>
[C:\WINDOWS\system32\msplus.dll] <><1, 0, 0, 1>
[C:\WINDOWS\system32\quartz32.dll] <><4, 0, 0, 0>
[PID: 476][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\msplus.dll] <><1, 0, 0, 1>
[C:\WINDOWS\system32\quartz32.dll] <><4, 0, 0, 0>
[PID: 488][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
漫步跑跑 - 2006-8-22 22:22:00
[PID: 636][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 704][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\msplus.dll] <><1, 0, 0, 1>
[PID: 788][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 820][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 924][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1104][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\nrobjapi.dll] <N/A><N/A>
[C:\WINDOWS\system32\quartz32.dll] <><4, 0, 0, 0>
[PID: 1636][C:\WINDOWS\SMSS.EXE] <Xs5kzBEUMw1vRVHCJxSh><0.00.0093>
[PID: 1736][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 588][C:\WINDOWS\LSASS.exe] <nYVmLJNNBoK0PT1Uvl2f><0.00.0093>
[PID: 848][C:\WINDOWS\EXPLORER.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\nrobjapi.dll] <N/A><N/A>
[C:\Program Files\Media Player Classic\Codecs\mmfinfo.dll] <N/A><N/A>
漫步跑跑 - 2006-8-22 22:23:00
[C:\Program Files\Media Player Classic\Codecs\mkunicode.dll] <N/A><N/A>
[PID: 1960][C:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0>
[C:\WINDOWS\system32\quartz32.dll] <><4, 0, 0, 0>
[PID: 412][D:\新建文件夹 (2)\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINDOWS\system32\quartz32.dll] <><4, 0, 0, 0>
==================================
文件关联
.TXT Error. [C:\WINDOWS\system32\notepad.exe %1]
.EXE Error. [WindowFiles]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI Error. [notepad.exe %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
我无邪 - 2006-8-22 22:28:00
兄弟你受苦了,你中了好多难缠的病毒,我建议你不要修复了
直接重装系统或系统还原
漫步跑跑 - 2006-8-23 12:24:00
怎么弄系统还原?
漫步跑跑 - 2006-8-23 12:25:00
555~刚装的系统555~用卡巴能不能杀掉?`
漫步跑跑 - 2006-8-23 12:32:00
2006-08-23,12:19:57
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [Microsoft Corporation]
<bgswitch><C:\WINDOWS\system32\bgswitch.exe> []
<91cast><> []
<svc><C:\WINDOWS\svchost.exe> []
<MyShares><c:\program Files\忆多多\MyShares.exe /tray> []
<NetCounter><c:\Program Files\NetCounter\NetCount.exe> []
<Syss><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ehuupdate.exe> [Micorsoft EXE]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [Microsoft Corporation]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [Microsoft Corporation]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [Microsoft Corporation]
<SoundMan><SOUNDMAN.EXE> [Realtek Semiconductor Corp.]
<MSService_v1.0><C:\WINDOWS\system\realsched.exe> []
<91cast><> []
<svc><C:\WINDOWS\svchost.exe> []
<pbmini><C:\Program Files\pcast\PodcastbarMini\PodcastBar.exe -hide> []
<sysmini><C:\WINDOWS\system32\sysmini.exe> []
<spoolsv><C:\WINDOWS\system32\spoolsv\spoolsv.exe -printer> []
<ourmini><C:\WINDOWS\System\svchost.exe> [MicroSoft Corporation]
<defender><c:\\dfndrff_12.exe> []
<keyboard><c:\\kybrdff_12.exe> []
<newname><c:\\nwnmff_12.exe> []
<><C:\WINDOWS\system32\intenat.exe> []
<SoundMam><C:\WINDOWS\system32\SVOHOST.exe> []
<RichMedia><C:\WINDOWS\system32\Rundll32.exe "C:\PROGRA~1\pcast\hbcast.dll",WaitWindows> []
<ToP><C:\WINDOWS\LSASS.exe> [nYVmLJNNBoK0PT1Uvl2f]
<TProgram><C:\WINDOWS\SMSS.EXE> [Xs5kzBEUMw1vRVHCJxSh]
<Torjan Program><C:\WINDOWS\WINLOGON.EXE> [nYVmKIMNAnJPS1Tul2fq]
<KAVPersonal50><"D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\kav.exe" /minimize> [Kaspersky Lab]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
<uninsrest><> []
<CRKAVP><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<SoundMix><rundll32.exe C:\WINDOWS\system32\soundmix.dll,Load> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINDOWS\system32\userinit.exe,C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\hhkgkah.exe> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<webwork><C:\WINDOWS\webwork\webwork.dll> [MSWebwork Cop.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Shell Extensions]
<WinlogonNotify: Shell Extensions><C:\WINDOWS\system32\p0p60a7sed.dll> []
==================================
漫步跑跑 - 2006-8-23 12:33:00
启动文件夹
服务
[JMediaService / JMediaService]
<C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\MMSASS~1\MMSSVER.DLL,Service><N/A>
[kavsvc / kavsvc]
<"D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\kavsvc.exe"><Kaspersky Lab>
[UpdateService / UpdateService]
<C:\WINDOWS\system32\UpdateService.exe><N/A>
==================================
浏览器加载项
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_4683.dll, N/A>
[JUJU猫]
{6096E38F-5AC1-4391-8EC4-75DFA92FB32F} <http://www.jujumao.com, N/A>
[MMSAssistMenu]
{6671A433-5C3D-463d-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, N/A>
[QQ]
{c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[internet explorer helper]
{02C9B9AB-6372-46C5-B356-773FAF3B6B1E} <C:\WINDOWS\fonts\msshapi.dll, N/A>
[MonitorURL Class]
{08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, N/A>
[wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, N/A>
[Shockwave Flash Object]
{14A21378-5BB1-4BC4-95D5-5D3F51527F6F} <C:\WINDOWS\system32\smflash.ocx, Macromedia, Inc.>
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_4683.dll, N/A>
[FltSetUp Class]
{1D49D58D-5C84-4B50-8359-D9809BEB2B32} <C:\Program Files\Internet Explorer\Connection Wizard\icwuti1.dll, Microsoft Corporation>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[Wbho Class]
{40E3A34A-3282-41F8-AD2C-051BAB96AD4A} <C:\WINDOWS\system32\usign.dll, N/A>
[HHCtrl Object]
{52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[QQBrowserHelperObject Class]
{54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[JMX.JmxCenter]
{63859236-76BF-493C-A587-DF479EBA2D4B} <C:\WINDOWS\system32\EJMX.dll, 广州盛行网络有限公司>
[ActiveBHO Class]
{63C55A7F-6E29-8D4F-5C76-4F850F28D13A} <C:\Progra~1\DoDoorRSSFinder\ActiveBandObject.dll, N/A>
[Vision]
{6671A431-5C3D-463D-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, N/A>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[MSHlper Class]
{721E6521-4CAD-4A8D-A7F1-4E230B31EF19} <C:\WINDOWS\system32\MSHLP.DLL, >
[CpapView Class]
{77962960-536E-47EC-9DDB-52651519705F} <C:\WINDOWS\system32\rundll32.dll, >
[Microsoft Web 浏览器]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll, Thunder Networking Technologies,LTD>
[WinSC Class]
{9ACEEE31-1440-471B-AA46-72B061FE7D61} <C:\WINDOWS\system32\WinSC.dll, N/A>
[estAliveObj Class]
{A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[Yahoo Bar]
{A697BC46-BC93-4833-93F5-1E365011E88A} <C:\WINDOWS\ODBINT.dll, N/A>
[Java Enhancer]
{AF098F95-7CEA-407A-8552-3846737CC4B2} <C:\WINDOWS\system32\contwin.dll, Sun MicroSystems, Inc.>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot
漫步跑跑 - 2006-8-23 12:33:00
%\system32\shdocvw.dll,
漫步跑跑 - 2006-8-23 12:34:00
N/A>
[RealPlayer Control]
{BDBFE1F2-14C7-42D3-ACC7-4C2757F27F55} <C:\WINDOWS\system32\RMOC3360.DLL, RealNetworks,Inc.>
[Webacc Class]
{CAC068F3-A608-406B-8581-458788A67694} <C:\WINDOWS\system32\svchost.dll, >
[XrqRigqe Class]
{D10AB699-13CD-77C4-6654-8F7D36406486} <C:\WINDOWS\DOWNLO~1\qsvr.dll, lyipusoft>
[51导航]
{D271A289-57EB-4D0E-9131-A0CD25D4D1F8} <C:\WINDOWS\system32\browsewmzero.dll, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[DuiSo.com Search]
{E2218499-2FD4-4EED-A94A-7F0B9C6E300E} <C:\WINDOWS\system32\Inte32.dll, N/A>
[上传到QQ网络硬盘]
<C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[使用迅雷下载]
<C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[使用迅雷下载全部链接]
<C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
<C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
<C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
<C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
==================================
正在运行的进程
[PID: 1104][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\duprpres.dll] <N/A><N/A>
[PID: 1304][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\duprpres.dll] <N/A><N/A>
[C:\Program Files\Media Player Classic\Codecs\mmfinfo.dll] <N/A><N/A>
[C:\Program Files\Media Player Classic\Codecs\mkunicode.dll] <N/A><N/A>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\shellex.dll] <Kaspersky Lab><5.0.388.1>
[PID: 1716][C:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\scrchpg.dll] <Kaspersky Lab><5.0.1.18>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\scrch_ag.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\FSSync.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\pr_rmt.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\ccclient.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\klipc.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\KLUtil.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\rpt.dll] <Kaspersky Lab><5.0.388.2>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\CCIFACE.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\prloader.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\prkernel.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\prstring.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus pe
漫步跑跑 - 2006-8-23 12:35:00
rsonal\pr_srv.ppl]
漫步跑跑 - 2006-8-23 12:35:00
<Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\pr_clnt.ppl] <Kaspersky Lab><5.0.388.0>
[C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\tempfile.ppl] <Kaspersky Lab><5.0.388.0>
[PID: 1724][C:\WINDOWS\LSASS.exe] <nYVmLJNNBoK0PT1Uvl2f><0.00.0093>
[PID: 1768][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 232][D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\kav.exe] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\FSSync.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\klipc.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\GuiDlgs.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\KLCMN.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\KLUtil.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\CCIFACE.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\rpt.dll] <Kaspersky Lab><5.0.388.2>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\ChkTool.DLL] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\KAVMWnd.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\COLOC.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\GULOC.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\MALOC.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\AVLOC.dll] <Kaspersky Lab><5.0.388.1>
[PID: 240][D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\kavsvc.exe] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\FSSync.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\pr_rmt.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\klipc.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\CCIFACE.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\KLUtil.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\rpt.dll] <Kaspersky Lab><5.0.388.2>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\ChkTool.DLL] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\prloader.dll] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\prkernel.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\startups.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\pr_srv.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\pr_clnt.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\prstring.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\l_llio.ppl] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\avp_iont.dll] <Kaspersky Lab><5.0.0.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\inflate.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\avlib.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\arj.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\arjpack.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\avp1.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\avpgs.ppl] <Kaspersky Lab><5.0.388.0>
漫步跑跑 - 2006-8-23 12:36:00
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\avpmgr.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\wdiskio.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\btdisk.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\buffer.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\cab.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\deflate.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\dmap.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\dtreg.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\explode.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\hashcont.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\hashmd5.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\hccmp.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\ichk2.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\ichstrms.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\klonacci.ppl] <Kaspersky Lab><5.0.388.230>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\mailmsg.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\mchk.ppl] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\klcp.dll] <Kaspersky Lab><5.0.388.1>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\mdmap.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\memmodsc.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\memscan.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\minizip.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\msoe.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\nfio.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\ntfsstrm.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\passdmap.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\prseqio.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\prutil.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\qio.ppl]
漫步跑跑 - 2006-8-23 12:37:00
<Kaspersky Lab><5.0.0.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\quantum.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\rar.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\sfdb.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\stored.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\superio.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\tempfile.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\unarj.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\uniarc.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\unlzx.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\unreduce.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\unshrink.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\unstored.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\winreg.ppl] <Kaspersky Lab><5.0.388.0>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\xorio.ppl] <Kaspersky Lab><5.0.388.16>
[d:\新建文件夹 (2)\新建文件夹\kaspersky anti-virus personal\zcompare.ppl] <Kaspersky Lab><5.0.388.0>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\ccclient.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\wcswmi.dll] <Kaspersky Lab><5.0.388.1>
[D:\新建文件夹 (2)\新建文件夹\Kaspersky Anti-Virus Personal\scrch_ag.dll] <Kaspersky Lab><5.0.388.1>
[PID: 1088][D:\新建文件夹 (2)\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[D:\新建文件夹 (2)\SREng2\Plugins\SREngPluginDemo.SRE] <Smallfrogs Studio><1, 1, 1, 0>
==================================
文件关联
.TXT Error. [C:\WINDOWS\system32\notepad.exe %1]
.EXE Error. [WindowFiles]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI Error. [notepad.exe %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
漫步跑跑 - 2006-8-23 15:55:00
在硬盘中找到以下可疑程序:
C:\WINDOWS\WINLOGON.EXE
C:\WINDOWS\SMSS.EXE
C:\WINDOWS\LSASS.EXE
C:\WINDOWS\EXPLORER.COM
C:\WINDOWS\system32\RUNDLL32.COM
C:\WINDOWS\system32\MSCONFIG.COM
C:\WINDOWS\system32\REGEDIT.COM
C:\WINDOWS\system32\TASKLIST.DLL
C:\WINDOWS\system32\SVCHOST.DLL
C:\WINDOWS\system32\RUNDLL32.DLL
c:\windows\1.com
c:\windows\exeroute.exe
c:\windows\finder.com
c:\program files\internet explorer\iexplore.com
c:\program files\common files\iexplore.pif
用超级兔子IE修复专家扫出来以上可疑文件,能不能删除啊?
我无邪 - 2006-8-23 21:20:00
如果你的系统还原从未关闭
我建议你这样
开始,程序,附件,系统工具,系统还原,把系统还原到最早的一个还原点。
还原后,再扫份日志粘上来
如果你以经重装了系统,也建议你扫份日志粘上来。
1
© 2000 - 2026 Rising Corp. Ltd.