瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » 求助,怎么搞啊?请帮我看看日志
星河一哥 - 2007-7-20 16:03:00
Logfile of HijackThis v1.99.1
Scan saved at 15:20:58, on 2007-7-20
Platform: Windows XP  (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\System32\ctfmon.exe
C:\Hotspot Shield\bin\openvpnas.exe
D:\WINDOWS\System32\nvsvc32.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Documents and Settings\Owner.LEGEND-D0JM2I26\桌面\工具\实用小工具\实用小工具\万能工具.exe
D:\Documents and Settings\Owner.LEGEND-D0JM2I26\桌面\ha_hijackthis_1991\HijackThis.exe

R3 - Default URLSearchHook is missing
O2 - BHO: WebThunderBHO - {00000AAA-A363-466E-BEF5-9BB68697AA7F} - D:\Program Files\Thunder Network\WebThunder\WebThunderBHO_Now.dll
O2 - BHO: Thunder AtOnce - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - D:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - D:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\System32\ctfmon.exe
O8 - Extra context menu item: 使用Web迅雷下载 - D:\Program Files\Thunder Network\WebThunder\GetUrl.htm
O8 - Extra context menu item: 使用Web迅雷下载全部链接 - D:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm
O8 - Extra context menu item: 使用迅雷下载 - D:\Program Files\Thunder Network\Thunder\Program\geturl.htm
O8 - Extra context menu item: 使用迅雷下载全部链接 - D:\Program Files\Thunder Network\Thunder\Program\getallurl.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\QQ\AddEmotion.htm
O9 - Extra button: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - D:\Program Files\Thunder Network\Thunder\Thunder.exe (file missing)
O9 - Extra 'Tools' menuitem: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - D:\Program Files\Thunder Network\Thunder\Thunder.exe (file missing)
O9 - Extra button: Zcom 杂志 - {4045D313-1D5E-4fe4-93A0-A34630B6A00B} - C:\杂志\Zcom\E-Space.exe
O9 - Extra 'Tools' menuitem: Zcom 杂志(E-Space) - {4045D313-1D5E-4fe4-93A0-A34630B6A00B} - C:\杂志\Zcom\E-Space.exe
O9 - Extra button: 启动Web迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com (file missing)
O9 - Extra 'Tools' menuitem: 启动Web迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - D:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - D:\WINDOWS\web\related.htm
O14 - IERESET.INF: START_PAGE_URL=http://www.legend.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{276DE1D5-6CF3-444A-B3DC-D9A30B9C0D2B}: NameServer = 202.99.192.66 202.99.192.68
O20 - AppInit_DLLs: dhbpri.dll
O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Hotspot Shield\bin\openvpnas.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PeanutHull DDNS Service (Peanuthull5Core) - 上海贝锐 - C:\PeanutHull5\PhCore.exe
O23 - Service: System Auto Update - Unknown owner - D:\WINDOWS\system32\drivers\inc.exe
O23 - Service: Windows InstallService (WindowsDown) - Unknown owner - D:\WINDOWS\System32\servet.exe

谢谢,怎么搞定?
1
查看完整版本: 求助,怎么搞啊?请帮我看看日志