瑞星卡卡安全论坛
︶ㄣ月儿しovの - 2006-9-28 11:25:00
机器总跳网页和广告,天天杀毒,天天有病毒。就算用别的浏览器上网,也时不时地就跳出IE网页。请高手们帮帮忙。在线等!!!
︶ㄣ月儿しovの - 2006-9-28 11:27:00
2006-09-28,10:45:43
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
启动文件夹
[金山词霸 2003]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\金山词霸 2003.lnk><N>
==================================
服务
[JMediaService / JMediaService]
<C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\MMSASS~1\MMSSVER.DLL,Service><N/A>
[Pml Driver HPZ12 / Pml Driver HPZ12]
<C:\WINDOWS\system32\hpzipm12.exe><HP>
[Rising Process Communication Center / RsCCenter]
<"G:\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
<"G:\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
[System Event Logger / SoSCAR]
<C:\WINDOWS\SYSTEM32\RUNDLL32.EXE C:\WINDOWS\SYSTEM32\WBEM\IRJIT.DLL,Export 1087><N/A>
[Standard Br Service / stdsverex]
<C:\WINDOWS\system32\stdup.exe -s><>
==================================
浏览器加载项
[Query Class]
{01C2F1E8-5C69-4B5C-B052-26941B6C23A6} <C:\WINDOWS\system32\iequery.dll, N/A>
[wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, Allsum Info. Tech. Ltd.>
[CAdLogic Object]
{11F09AFD-75AD-4E51-AB43-E09E9351CE16} <C:\Program Files\Common Files\CPUSH\cpush.dll, N/A>
[Shockwave Flash Object]
{14A21378-5BB1-4BC4-95D5-5D3F51527F6F} <C:\WINDOWS\system32\smflash.ocx, Macromedia, Inc.>
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_5048.dll, N/A>
[Adobe-Plugins Manager]
{2AFA7CEC-26D9-4256-AF57-497A13180BA5} <C:\WINDOWS\System32\Agm.dll, AdoBeSoft Co.>
[Yahoo!Photo]
{33BBE430-0E42-4f12-B075-8D21ACB10DCB} <C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll, Yahoo! China>
[SYM]
{36BF6929-DCBC-4CCD-A620-C5E3BBA77B95} <C:\WINDOWS\system32\usersrd.dll, >
[AntiFish Class]
{38928D50-8A48-44C2-945F-D2F23F771410} <C:\Program Files\Yahoo!\Assistant\Assist\yAngling.dll, yahoo! china>
[]
{3D898C55-74CC-4B7C-B5F1-45913F368388} <C:\PROGRA~1\SYSTEM~1\SYSTEM~1.DLL, N/A>
[raObject Class]
{46F194EB-B7DB-4B7A-BD42-5FF39FD17664} <C:\PROGRA~1\pcast\hbcast.dll, Shanghai Henbang Technology Co., Ltd>
[DragSearch BHO]
{62EED7C6-9F02-42f9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL, yahoo! china>
[JMX.JmxCenter]
{63859236-76BF-493C-A587-DF479EBA2D4B} <C:\WINDOWS\system32\EJMX.dll, 广州盛行网络有限公司>
[Vision]
{6671A431-5C3D-463d-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, >
[Sun Java2]
{C61A70F3-505E-4B90-916F-627A8706B4BC} <c:\WINDOWS\system32\COMBoHEvent.dll, N/A>
[CnsHook Class]
{D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINDOWS\Downloaded Program Files\CnsHook.dll, 北京三七二一科技有限公司>
[Windows ToyClass]
{E3DB85B5-C559-4894-B474-42E89FAA1EFD} <C:\WINDOWS\system32\winmsd.dll, N/A>
[Class]
{EB21FA8C-3CEB-402C-A113-5F173BE954ED} <C:\WINDOWS\system32\evttdoe.dll, >
[assist]
︶ㄣ月儿しovの - 2006-9-28 11:27:00
{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll, Yahoo! China>
[Yahoo 3.5G电邮]
{507F9113-CD77-4866-BA92-0E86DA3D0B97} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail, N/A>
[名品折扣]
{59BC54A2-56B3-44a0-93E5-432D58746E26} <http://adtaobao.allyes.com/main/adfclick?db=adtaobao&bid=138,140,18&cid=816,8,1&sid=5042&show=ignore&url=http://www.taobao.com/vertical/mall/pro.php?allyesPara=816, N/A>
[雅虎助手]
{5D73EE86-05F1-49ed-B850-E423120EC338} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist, N/A>
[雅虎WIDGET]
{6354ABE6-05F1-49ed-B850-E423120EC338} <http://cn.widget.yahoo.com/index.htm?source=Cns, N/A>
[MMSAssistMenu]
{6671A433-5C3D-463d-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, >
[kele8]
{84920E5F-3788-49cd-A274-E365578DF174} <http://www.kele8.com/, N/A>
[金山词霸]
{9A687CA6-D585-4947-9ED9-BE96071F5CD9} <C:\PROGRA~1\Kingsoft\POWERW~3\XDictExB.dll, 金山软件股份有限公司>
[QQ]
{c95fe080-8f5d-11d2-a20b-00aa003c157b} <d:\My Documents\新建文件夹\QQ.EXE, TENCENT>
[5chaa]
{D6E814A0-E0C5-11d4-8D29-0050BA6940E4} <http://www.5chaa.com, N/A>
[QQIEFloatBarCfgCmd Class]
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <d:\My Documents\新建文件夹\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[情景聊天]
{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/, N/A>
[]
{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair, N/A>
[易趣购物]
{EE60714F-AC17-427e-861A-FD60CBDF119A} <http://click2.ad4all.net/url2/urlmanage/url.asp?id=50, N/A>
[YOK超级搜索]
{F869BB38-FFEF-4589-B986-610B7AD0ADA2} <http://www.yok.com, N/A>
[]
{FD00D911-7529-4084-9946-A29F1BDF4FE5} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean, N/A>
[Checkers Class]
{00B71CFB-6864-4346-A978-C0A14556272C} <C:\WINDOWS\Downloaded Program Files\msgrchkr.dll, Microsoft Corporation>
[ClubGameCtrl Control]
{2EEFACD4-CA73-4359-8DED-692721A59553} <C:\WINDOWS\DOWNLO~1\ClubGame.ocx, (?)????>
[Office Update Installation Engine]
{3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
[Downloader Class]
{5932517A-3326-4439-A708-1C98EDB5C549} <C:\WINDOWS\system32\iMopDl.dll, >
[DaumGameStarter Control]
{5AA3139C-2579-407E-B74D-742D709C16CE} <C:\WINDOWS\DOWNLO~1\DAUMGA~1.OCX, >
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[MessengerStatsClient Class]
{8E0D4DE5-3180-4024-A327-4DFAD1796A8D} <C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll, Microsoft Corporation>
[Cdmcco Class]
{938527D1-CDB7-4147-998A-B20FCA5CC976} <C:\WINDOWS\Downloaded Program Files\dmcc2.dll, >
[Hanmail FileUpload Control]
{97154128-DC4C-4D5B-AF7C-CA7356238EC9} <C:\WINDOWS\System32\HANMAI~1.DLL, >
[UploadList Control]
{A00B2A53-60D9-4477-ADA3-60490770C5E0} <C:\WINDOWS\DOWNLO~1\Hanmail.ocx, ?? ??????>
[MsnMessengerSetupDownloadControl Class]
{B38870E4-7ECB-40DA-8C6A-595F0A5519FF} <C:\WINDOWS\Downloaded Program Files\MsnMessengerSetupDownloader.ocx, Microsoft Corporation>
[cycnset Class]
{C50341E9-CDC1-4377-AB88-3486CCD0FDA1} <C:\WINDOWS\system32\cycnset.dll, ? SK Communications>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[HMPaintingMailAX Class]
{D5D4E25D-544D-4E31-9C84-C97EED5F6900} <C:\WINDOWS\DOWNLO~1\HANMAI~1.DLL, >
[AvatarWeb Control]
{D5FC2094-4B01-4F6C-A07C-E247C9442E5A} <C:\WINDOWS\DOWNLO~1\AVATAR~1.OCX, ??????>
[Rising Web Scan Object]
{E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[SetWallpaper Class]
{ED71FCB3-4074-40FA-A854-65F164EAC5C5} <C:\WINDOWS\dkwp.dll, >
[VqqSpeedDlProxy Class]
{F138084D-84D7-48CD-BEA8-04772457516E} <C:\WINDOWS\vqqsdl.dll, Tencent>
[Solitaire Showdown Class]
{F6BF0D00-0B2A-4A75-BF7B-F385591623AF} <C:\WINDOWS\Downloaded Program Files\solitaireshowdown.dll, Microsoft Corporation>
[ThunderIEHelper Class]
{0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\system32\xunleibho_v6.dll, >
[Query Class]
{01C2F1E8-5C69-4B5C-B052-26941B6C23A6} <C:\WINDOWS\system32\iequery.dll, N/A>
[internet explorer helper]
{02C9B9AB-6372-46C5-B356-773FAF3B6B1E} <C:\WINDOWS\fonts\msshapi.dll, N/A>
[Adobe PDF Reader Link Helper]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[MonitorURL Class]
{08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, N/A>
[Web Browser Applet Control]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\WINDOWS\system32\msjava.dll, Microsoft Corporation>
[wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, Allsum Info. Tech. Ltd.>
[CAdLogic Object]
{11F09AFD-75AD-4E51-AB43-E09E9351CE16} <C:\Program Files\Common Files\CPUSH\cpush.dll, N/A>
[Shockwave Flash Object]
{14A21378-5BB1-4BC4-95D5-5D3F51527F6F} <C:\WINDOWS\system32\smflash.ocx, Macromedia, Inc.>
[MyIEHelper Class]
{16A770A0-0E87-4278-B748-2460D64A8386} <, N/A>
[MyIEHelper Class]
{16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_5048.dll, N/A>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\System32\mshtml.dll, N/A>
[Adobe-Plugins Manager]
{2AFA7CEC-26D9-4256-AF57-497A13180BA5} <C:\WINDOWS\System32\Agm.dll, AdoBeSoft Co.>
[Yahoo!Photo]
{33BBE430-0E42-4F12-B075-8D21ACB10DCB} <C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll, Yahoo! China>
[SYM]
{36BF6929-DCBC-4CCD-A620-C5E3BBA77B95} <C:\WINDOWS\system32\usersrd.dll, >
[AntiFish Class]
{38928D50-8A48-44C2-945F-D2F23F771410} <C:\Program Files\Yahoo!\Assistant\Assist\yAngling.dll, yahoo! china>
[CaiShowBH Class]
{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997} <C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll, TODO: <公司名>>
[]
{3D898C55-74CC-4B7C-B5F1-45913F368388} <C:\PROGRA~1\SYSTEM~1\SYSTEM~1.DLL, N/A>
[raObject Class]
{46F194EB-B7DB-4B7A-BD42-5FF39FD17664} <C:\PROGRA~1\pcast\hbcast.dll, Shanghai Henbang Technology Co., Ltd>
[Shell Name Space]
{55136805-B2DE-11D1-B9F2-00A0C98BC547} <%SystemRoot%\System32\shdocvw.dll, N/A>
[NetAccelerate Class]
{5673A7C0-95CC-4646-BB07-3BD71234CEF9} <C:\WINDOWS\system32\wuwebex.dll, Microsoft Corporation>
[Yahoo!Live]
{57421194-58FB-49AE-9B4F-FD48869B9AD4} <C:\Program Files\Yahoo!\Assistant\yaLive.dll, yahoo! china>
[Router Layer]
{5EB7CB50-E375-4718-B4C0-9AD12EFA2F84} <C:\WINDOWS\System32\aclayer.dll, N/A>
[DragSearch BHO]
{62EED7C6-9F02-42F9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL, yahoo! china>
[JMX.JmxCenter]
{63859236-76BF-493C-A587-DF479EBA2D4B} <C:\WINDOWS\system32\EJMX.dll, 广州盛行网络有限公司>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Vision]
{6671A431-5C3D-463D-A7CF-5587F9B7E191} <C:\PROGRA~1\MMSASS~1\mmsass~1.dll, >
[系统标准按钮(&E)]
{6B2455FD-3669-4555-8DF8-69FD5BC846F8} <C:\WINDOWS\system32\SystemToolbar.dll, N/A>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[EyeOnIE Class]
{6E28339B-7A2A-47B6-AEB2-46BA53782379} <G:\rili\IS\BhoPlugin.dll, N/A>
[CpapView Class]
{77962960-536E-47EC-9DDB-52651519705F} <C:\WINDOWS\system32\Rundl132.dll, N/A>
︶ㄣ月儿しovの - 2006-9-28 11:28:00
[Microsoft Web 浏览器]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\System32\shdocvw.dll, Microsoft Corporation>
[ST]
{9394EDE7-C8B5-483E-8773-474BF36AF6E4} <C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll, Microsoft Corporation>
[IE标准栏]
{954F618B-0DEC-4D1A-9317-E0FC96F87865} <C:\WINDOWS\system32\amstreamxb.dll, N/A>
[NewWebController Class]
{9ACEEE30-143F-471A-AA45-72B061FE7D60} <C:\WINDOWS\system32\WinSC64.dll, N/A>
[WinSC Class]
{9ACEEE31-1440-471B-AA46-72B061FE7D61} <C:\WINDOWS\system32\WinSC32.dll, N/A>
[estAliveObj Class]
{A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[Yahoo Bar]
{A697BC46-BC93-4833-93F5-1E365011E88A} <C:\WINDOWS\DBINT.dll, N/A>
[Microsoft Scriptlet Component]
{AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\System32\mshtml.dll, Microsoft Corporation>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\System32\shdocvw.dll, N/A>
[3721]
{B83FC273-3522-4CC6-92EC-75CC86678DA4} <C:\WINDOWS\Downloaded Program Files\CnsMin.dll, 北京三七二一科技有限公司>
[Flash 8 ocx ]
{B8CCDD47-38E4-4CD2-B7FA-3B4B690F74BD} <C:\WINDOWS\system32\flash8.dll, MACROMEDlA>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[MSNToolBandBHO]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\zh-cn\msntb.dll, Microsoft Corporation>
[Sun Java2]
{C61A70F3-505E-4B90-916F-627A8706B4BC} <c:\WINDOWS\system32\COMBoHEvent.dll, N/A>
[Webacc Class]
{CAC068F3-A608-406B-8581-458788A67694} <C:\WINDOWS\system32\svchost.dll, >
[AUDIO__MID Moniker Class]
{CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_ASF Moniker Class]
{CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[CnsHook Class]
{D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINDOWS\Downloaded Program Files\CnsHook.dll, 北京三七二一科技有限公司>
[51导航]
{D271A289-57EB-4D0E-9131-A0CD25D4D1F8} <C:\WINDOWS\system32\browsewmzero.dll, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[捜狗直通车]
{DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} <C:\PROGRA~1\p4p\TB58168.dll, N/A>
[DuiSo.com Search]
{E2218499-2FD4-4EED-A94A-7F0B9C6E300E} <C:\WINDOWS\system32\Inte32.dll, N/A>
[Windows ToyClass]
{E3DB85B5-C559-4894-B474-42E89FAA1EFD} <C:\WINDOWS\system32\winmsd.dll, N/A>
[Rising Web Scan Object]
{E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[Class]
{EB21FA8C-3CEB-402C-A113-5F173BE954ED} <C:\WINDOWS\system32\evttdoe.dll, >
[assist]
{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll, Yahoo! China>
[>>彩信发送<<]
<res://C:\PROGRA~1\MMSASS~1\mmsass~1.dll/mms.htm, N/A>
[上传到QQ网络硬盘]
<d:\My Documents\新建文件夹\AddToNetDisk.htm, N/A>
[使用IS下载]
<, N/A>
[添加到QQ自定义面板]
<d:\My Documents\新建文件夹\AddPanel.htm, N/A>
[添加到QQ表情]
<d:\My Documents\新建文件夹\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
<d:\My Documents\新建文件夹\SendMMS.htm, N/A>
[百度--图片搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUIMG.HTM, N/A>
[百度--新闻搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUNEWS.HTM, N/A>
[百度--歌词搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDULYRIC.HTM, N/A>
[百度--知道搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDU_ZHIDAO.HTM, N/A>
[百度--硬盘搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDU_DISK.HTM, N/A>
[百度--站内搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDU_SITE.HTM, N/A>
[百度--网页搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUSEARCH.HTM, N/A>
[百度--贴吧搜索]
<RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUPOST.HTM, N/A>
==================================
正在运行的进程
[PID: 232][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
[C:\WINDOWS\Downloaded Program Files\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 3, 5>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\DOCUME~1\nancy\LOCALS~1\Temp\themeadp.nls] <N/A><N/A>
[C:\WINDOWS\webwork\webwork.nls] <MSWebwork Cop.><1, 0, 0, 1>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] <Adobe Systems, Inc.><7.0.0.0>
[C:\WINDOWS\system32\usersrd.dll] <><1, 0, 0, 1>
[C:\PROGRA~1\SYSTEM~1\SYSTEM~1.DLL] <N/A><N/A>
[C:\PROGRA~1\MMSASS~1\albus.dll] <Albus><1, 0, 0, 2>
[G:\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\WINDOWS\system32\smflash.ocx] <Macromedia, Inc.><9.0.25.0>
[C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll] <Yahoo! China><3, 0, 1, 1001>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL] <yahoo! china><3, 0, 0, 1000>
[C:\PROGRA~1\MMSASS~1\mmsass~1.dll] <><1, 2, 0, 6>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll] <Yahoo! China><3, 0, 7, 1012>
[PID: 1472][C:\Program Files\Hewlett-Packard\Toolbox\StatusClient\StatusClient.exe] <Hewlett-Packard><00 .00 .14>
[C:\Program Files\Hewlett-Packard\Toolbox\StatusClient\hpptui0.dll] <Hewlett-Packard><01.00.56>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 2072][C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder\OrderReminder.exe] <Hewlett-Packard><1, 0, 0, 24>
[PID: 2080][C:\WINDOWS\system32\Rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\pcast\hbcast.dll] <Shanghai Henbang Technology Co., Ltd><1, 1, 3, 8>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 2104][G:\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[G:\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[G:\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[G:\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[G:\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 2144][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 2168][G:\Rising\Rav\Ravmon.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 33>
[G:\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 26>
[G:\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
[G:\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[G:\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[G:\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[G:\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[G:\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 2220][G:\ICQ\Phone\Skype.exe] <N/A><N/A>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 2228][C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\javaw.exe] <N/A><N/A>
[C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\hotspot\jvm.dll] <N/A><N/A>
[C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\hpi.dll] <N/A><N/A>
︶ㄣ月儿しovの - 2006-9-28 11:29:00
[C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\verify.dll] <N/A><N/A>
[C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\java.dll] <N/A><N/A>
[C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\zip.dll] <N/A><N/A>
[C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\net.dll] <N/A><N/A>
[C:\WINDOWS\system32\jst.dll] <N/A><N/A>
[C:\WINDOWS\system32\d4channel.dll] <Hewlett-Packard><02.07.50>
[C:\WINDOWS\system32\HPZidr12.dll] <HP><7, 0, 5, 0>
[PID: 2700][C:\Program Files\Kingsoft\Powerword 2003\XDICT.EXE] <Kingsoft Co, Ltd.><6, 0, 0, 0>
[C:\Program Files\Kingsoft\Powerword 2003\ITextOut.dll] <Kingsoft><1, 1, 0, 0>
[C:\Program Files\Kingsoft\Powerword 2003\CJKTAB32.dll] <N/A><N/A>
[C:\Program Files\Kingsoft\Powerword 2003\XImage32.dll] <N/A><N/A>
[C:\Program Files\Kingsoft\Powerword 2003\xfile.dll] <N/A><N/A>
[C:\Program Files\Kingsoft\Powerword 2003\KPic10.dll] <N/A><N/A>
[C:\Program Files\Kingsoft\Powerword 2003\ijl11.dll] <Intel Corporation><1.1.2>
[C:\Program Files\Kingsoft\Powerword 2003\toTTSEngine50.dll] <Kingsoft Corporation><1, 0, 0, 1>
[C:\Program Files\Kingsoft\Powerword 2003\NormGrab.DLL] <Kingsoft Co, Ltd.><6, 0, 0, 0>
[C:\Program Files\Kingsoft\Powerword 2003\DicMngr.dll] <Kingsoft><1, 0, 0, 0>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\Program Files\Kingsoft\Powerword 2003\DBCore10.dll] <Kingsoft ><1, 0, 0, 0>
[C:\Program Files\Kingsoft\Powerword 2003\XdictGrb.dll] <Kingsoft Co, Ltd.><6, 0, 0, 0>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[PID: 3812][C:\WINDOWS\system32\taskmgr.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[PID: 4048][C:\Program Files\Internet Explorer\iexplore.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\WINDOWS\DOWNLO~1\CnsHint.dll] <3721><1, 0, 1, 1>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[C:\WINDOWS\DOWNLO~1\cnsplus.dll] <3721><1, 0, 0, 2>
[C:\WINDOWS\system32\wmpdrm.dll] <Allsum Info. Tech. Ltd.><2, 0, 0, 1>
[C:\WINDOWS\system32\smflash.ocx] <Macromedia, Inc.><9.0.25.0>
[C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll] <Yahoo! China><3, 0, 1, 1001>
[C:\WINDOWS\system32\usersrd.dll] <><1, 0, 0, 1>
[C:\Program Files\Yahoo!\Assistant\Assist\yAngling.dll] <yahoo! china><3, 0, 1, 1002>
[C:\PROGRA~1\SYSTEM~1\SYSTEM~1.DLL] <N/A><N/A>
[C:\PROGRA~1\pcast\hbcast.dll] <Shanghai Henbang Technology Co., Ltd><1, 1, 3, 8>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL] <yahoo! china><3, 0, 0, 1000>
[C:\PROGRA~1\MMSASS~1\mmsass~1.dll] <><1, 2, 0, 6>
[C:\PROGRA~1\MMSASS~1\albus.dll] <Albus><1, 0, 0, 2>
[C:\WINDOWS\Downloaded Program Files\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 3, 5>
[C:\WINDOWS\system32\evttdoe.dll] <><1, 0, 0, 1>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll] <Yahoo! China><3, 0, 7, 1012>
[G:\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0>
[PID: 1904][C:\WINDOWS\system32\conime.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
[PID: 3872][C:\Documents and Settings\nancy\桌面\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 9>
[C:\Program Files\Kingsoft\Powerword 2003\Cjktl32.dll] <N/A><N/A>
[C:\WINDOWS\system32\stdagent.dll] <MS Stdup><1, 0, 0, 3>
[C:\WINDOWS\system32\stdplay.dll] < ><1, 0, 0, 3>
==================================
文件关联
.TXT Error. [notepad.exe %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI Error. [notepad.exe %1]
.INF Error. [notepad.exe %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
︶ㄣ月儿しovの - 2006-9-28 11:31:00
日志贴上了,大家来看看吧,也请版主帮忙看看。
艾玛 - 2006-9-28 12:05:00
流氓受灾户,请把可以在控制面板卸载的先卸载掉
不能卸载的,手动删除
︶ㄣ月儿しovの - 2006-9-28 12:24:00
控制板面里的我删了好多,剩下的那些我不知道有没有用,这时办公室的电脑,里边有的程序我也看不懂
秋日里的蓝天 - 2006-9-28 13:02:00
下载超级兔子最新版。
下载地址:http://free5.ys168.com/?ufwihgu168
安装好后,打开“超级兔子清理王”“专业卸载,卸载所有提示的垃圾软件,
卸载是不要打开任何浏览窗口。卸载不了可以重启后再去卸载。
运行(双击)SRENG2,点“启动项目,服务,点“Win32服务应用程序”
勾选“隐藏微软服务”选中病毒服务Standard Br Service ,选择“删除服务”
点“设置”选择“否”
重启后删除:
C:\WINDOWS\system32\stdup.exe
C:\PROGRA~1\MMSASS~1\整个目录
修复后还有异常,再扫描上来
︶ㄣ月儿しovの - 2006-9-28 14:08:00
你告诉的地址下不了
︶ㄣ月儿しovの - 2006-9-28 14:22:00
不好意思又找到了
︶ㄣ月儿しovの - 2006-9-29 13:50:00
我用兔子清理王的专业卸载上面显示的已安装的软件名有:
IE 插件 、IE Query、51导航、NB46、Youyi7、DBInt、DoDoor Rss订阅助手、Cpap 水源、MSHlper、estAlive、VVLOG、ADPlus/Msplus通用搜索、易虎、AD15/8887/888、桌面媒体、WinSurvey/MSIBM/MyIEHeler、ishare、WinStdup/Winkalendar、MMSAssist 彩信通
我不是太清楚哪些不可以卸载,特别是IE 插件 、IE Query、桌面媒体这几个卸了会不会影响系统。
我不懂这些东西,怕卸错了系统在崩了,麻烦帮忙看看吧!谢谢了
秋日里的蓝天 - 2006-9-29 17:04:00
都清理掉
清理不掉到控制面板---添加删除---卸载掉
NB46
重启到安全模式(开机的时候按F8)
进入系统盘,搜索sql32.dll,group.dll,并彻底删除。
最后,“开始——运行——输入regedit进入注册表”(新手操作建议先备份以下注册表,
免得误删),按F3,查找{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}有关的项目,全部删除,
还有和smflash.ocx有关的项目,一并删除,再查找nb46,将start page修改成你想要的主页。
1
© 2000 - 2026 Rising Corp. Ltd.