瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » 不知道是不是中毒了
小鬼* - 2008-5-2 21:22:00
最近机子动不动就自动关机(新买不久的机,应该不存在硬件问题)
还有就是老是宽带掉线  我看详细信息里面说是找不到 windows.hlp文件  可是我在别人机子上找 也没有  别人的机子都好好的···
在百度里搜索了 N多  答案都差不多  我也试过了  都不怎么行··
我也不是很想重做系统  我这个月重装了不下15回了····
请问怎么办啊?

大大们  也许我发错地方了  我第一次来这里  对不住了·







附件: SREngLOG.log (2008-5-2 21:39:56, 45.21 K)
该附件被下载次数 104



用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)
人在逍遥 - 2008-5-2 21:27:00
使用System Repair Engineer扫描日志.
下载页面:http://www.kztechs.com/sreng/download.html
操作方法:
1、下载后解压缩,运行SREngPS.EXE;
2、如果无法打开尝试把SREngPS.EXE改名为123.com,并复制到c:\windows目录下运行;
3、依次点击【智能扫描】-【扫描】,耐心等待,扫描结束后点击【保存报告】;
4、选择保存路径,文件名保持默认,直接点击【保存】;
5、将日志贴上来,同时请详细描述问题现象,如果有查杀不净的病毒务必提供病毒名和路径。
人在逍遥 - 2008-5-2 21:30:00
电脑硬件自动关机,需要检查的地方很多。无法靠论坛简单判断来确定。最好找价有诚信负责的电脑公司查查吧。
一般会有问题的以下几个方面。
CPU风扇,不转或转的慢,导致CPU过热,电脑保护自动关机
显卡太热也有这现象,如果关机的时候自己摸下看看,一般会稍微有些烫手,但是到了你不能常时间摸散热片的哪种温度一般来说有点台高了。
内存问题。内存看看是不是杂牌或者兼容性不好。
电源,电源的瓦数是不是不够现在CPU的功耗。
基本上会造成这样的问题几乎和电脑的任何一个部件都有可能有关系。所以以上排除后最好还是找人修理吧。
小鬼* - 2008-5-2 21:35:00
[CODE]

2008-05-02,21:33:18

System Repair Engineer 2.5.16.900
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <RTHDCPL><RTHDCPL.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <SkyTel><SkyTel.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <Alcmtr><ALCMTR.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <Vistadrv><C:\WINDOWS\Vistadrive\vsdrv.exe>  []
    <RfwMain><"C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup>  [(Verified)BEIJING RISING SCIENCE AND TECHNOLOGY CORPORATION LIMITED]
    <360Safetray><f:\Program Files\360safe\safemon\360tray.exe /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    <QuickTime Task><"C:\Program Files\QuickTime\qttask.exe" -atboottime>  [Apple Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
    <SchedulingAgent><mstask.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Microsoft Windows Media Player 6.4><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\mplayer2.inf,PerUserStub>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015C}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.W95>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5A8D6EE0-3E18-11D0-821E-444553540000}]
    <Internet 连接向导><rundll32.exe advpack.dll,LaunchINFSectionEx C:\WINDOWS\INF\icw.inf,PerUserStub,,36>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
    <N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install>  [(Verified)Microsoft Corporation]

==================================
启动文件夹
N/A

==================================
服务
[Adobe LM Service / Adobe LM Service][Stopped/Manual Start]
  <"C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[Apple Mobile Device / Apple Mobile Device][Running/Auto Start]
  <"C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"><Apple, Inc.>
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
  <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[ATI Smart / ATI Smart][Stopped/Auto Start]
  <C:\WINDOWS\system32\ati2sgag.exe><>
[Bonjour 服务 / Bonjour Service][Running/Auto Start]
  <"C:\Program Files\Bonjour\mDNSResponder.exe"><Apple Inc.>
[Contrl Center of Storm Media / ccosm][Running/Auto Start]
  <F:\Program Files\StormII\stormliv.exe /asservice><北京暴风网际科技有限公司>
[Cmb WebProtect Support / CMBWPS][Running/Auto Start]
  <C:\Program Files\CMBCHINA\WebProtect\WPService.exe /start><China Merchants Bank>
[Human Intexxxce Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[iPod 服务 / iPod Service][Stopped/Manual Start]
  <"C:\Program Files\iPod\bin\iPodService.exe"><Apple Inc.>
[Rising Proxy  Service / RfwProxySrv][Running/Auto Start]
  <C:\Program Files\Rising\Rfw\rfwProxy.exe><Beijing Rising Technology Co., Ltd.>
[Rising Personal Firewall Service / RfwService][Running/Auto Start]
  <C:\Program Files\Rising\Rfw\rfwsrv.exe><Beijing Rising Technology Co., Ltd.>

==================================
驱动程序
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[AMD Processor Driver / AmdK8][Running/System Start]
  <System32\DRIVERS\amdk8.sys><Advanced Micro Devices>
[ati2mtag / ati2mtag][Running/Manual Start]
  <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[CdaC15BA / CdaC15BA][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS><Macrovision Europe Ltd>
[CMB8100 / CMB8100][Running/Auto Start]
  <\??\C:\WINDOWS\system32\Drivers\CertClient.dat><N/A>
[CMBProtector / CMBProtector][Running/Auto Start]
  <\??\C:\WINDOWS\system32\Drivers\CMBProtector.dat><N/A>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start]
  <system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[gdrv / gdrv][Stopped/Manual Start]
  <\??\C:\WINDOWS\gdrv.sys><Windows (R) 2000 DDK provider>
[GEARAspiWDM / GEARAspiWDM][Running/Manual Start]
  <System32\Drivers\GEARAspiWDM.sys><GEAR Software Inc.>
[ATI Function Driver for High Definition Audio Service / HdAudAddService][Running/Manual Start]
  <system32\drivers\AtiHdAud.sys><ATI Research Inc.>
[Microsoft UAA Bus Driver for High Definition Audio / HDAudBus][Running/Manual Start]
  <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HookUrl / HookUrl][Running/Auto Start]
  <\??\C:\Program Files\Rising\Rfw\HookUrl.sys><Beijing Rising Technology Co., Ltd.>
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
  <system32\drivers\RtkHDAud.sys><Realtek Semiconductor Corp.>
[npkcrypt / npkcrypt][Running/Auto Start]
  <\??\C:\Program Files\qq2007\npkcrypt.sys><INCA Internet Co., Ltd.>
[nv / nv][Stopped/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[NVIDIA nForce Networking Controller Driver / NVENETFD][Running/Manual Start]
  <system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
[NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start]
  <system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Rising  Rfwbase Driver / RfwBase][Running/Auto Start]
  <System32\DRIVERS\rfwbase.SYS><Beijing Rising Technology Co., Ltd.>
[Srramdisk Driver / RRamdisk][Stopped/Disabled]
  <system32\DRIVERS\rramdisk.sys><gavotte>
[RsFwDrv / RsFwDrv][Running/System Start]
  <\??\C:\Program Files\Rising\Rfw\RsFwDrv.sys><Beijing Rising Technology Co., Ltd.>
[Service for HDMI / RTHDMIAzAudService][Stopped/Manual Start]
  <system32\drivers\RtHDMI.sys><Realtek Semiconductor Corp.>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[StarForce Protection Environment Driver (version 1.x) / sfdrv01][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfdrv01.sys><Protection Technology>
[StarForce Protection Helper Driver (version 2.x) / sfhlp02][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfhlp02.sys><Protection Technology>
[StarForce Protection Synchronization Driver (version 2.x) / sfsync02][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfsync02.sys><Protection Technology>
[StarForce Protection VFS Driver (version 2.x) / sfvfs02][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfvfs02.sys><Protection Technology>
[sptd / sptd][Running/Boot Start]
  <\SystemRoot\System32\Drivers\sptd.sys><N/A>
[TesSafe / TesSafe][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\TesSafe.sys><TENCENT>

==================================
浏览器加载项
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[FG2CatchUrl]
  {1F364306-AA45-47B5-9F9D-39A8B94E7EF1} <f:\Program Files\FlashGet Network\Flashget\ComDlls\bhoCATCH.dll, FlashGet>
[WebProtect]
  {53763D1D-9CA8-4C7C-9756-A8E6B8FC063B} <C:\Program Files\CMBCHINA\WebProtect\WebProtect.dll, China Merchants Bank>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <f:\Program Files\360safe\safemon\safemon.dll, 360.CN>
[启动迅雷5]
  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <f:\Program Files\Thunder Network\Thunder\Thunder.exe, Thunder Networking Technologies,LTD>
[@shdoclc.dll,-866@2052,相关站点]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[Edit Class]
  {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} <C:\WINDOWS\system32\CMBEdit.dll, >
[InstaFred]
  {1F831FA1-42FC-11D4-95A6-0080AD30DCE1} <C:\WINDOWS\DOWNLO~1\InstFred.ocx, Autodesk, Inc.>
[AcDcToday 控件]
  {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} <C:\WINDOWS\DOWNLO~1\ACDCTO~1.OCX, Autodesk>
[NOXLATE-BANR]
  {AE563722-B4F5-11D4-A415-00108302FDFD} <C:\WINDOWS\DOWNLO~1\InstBanr.ocx, Autodesk, Inc.>
[AcPreview 控件]
  {F281A59C-7B65-11D3-8617-0010830243BD} <C:\WINDOWS\DOWNLO~1\ACPREV~1.OCX, Autodesk>
[PBActiveX40 Control]
  {F2EB8999-766E-4BF6-AAAD-188D398C0D0B} <C:\WINDOWS\system32\PersonalBankMain.ocx, China Merchants Bank>
[ThunderAtOnce Class]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[ShoppingReport]
  {100EB1FD-D03E-47FD-81F3-EE91287F9465} <C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll, ShopperReports>
[FG2CatchUrl]
  {1F364306-AA45-47B5-9F9D-39A8B94E7EF1} <f:\Program Files\FlashGet Network\Flashget\ComDlls\bhoCATCH.dll, FlashGet>
[PhotoDraw Class]
  {2375BEE5-F175-4F1C-81EC-8E4E2E72E2DD} <C:\Program Files\qq2007\Qzone\QQPhotoDraw.dll, TENCENT>
[QuickTime Object]
  {4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Inc.>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <F:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[WebProtect]
  {53763D1D-9CA8-4C7C-9756-A8E6B8FC063B} <C:\Program Files\CMBCHINA\WebProtect\WebProtect.dll, China Merchants Bank>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[360SafeLive]
  {87515F61-A66C-4319-A0E0-D416CB8059E3} <f:\Program Files\360safe\live.dll, 360.cn>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <f:\Program Files\360safe\safemon\safemon.dll, 360.CN>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, Adobe Systems, Inc.>
[PlayerCtrl Class]
  {E05BC2A3-9A46-4A32-80C9-023A473F5B23} <f:\Program Files\Tencent\qq\QzoneMusic.dll, 深圳腾讯科技>
[FG2CatchUrl]
  {FB5DA724-162B-11D3-8B9B-AA70B4B0B525} <f:\Program Files\FlashGet Network\Flashget\ComDlls\bhoCATCH.dll, FlashGet>
[&使用快车(FlashGet)下载]
  <F:\Program Files\FlashGet Network\Flashget\ComDlls\Bholink.htm, N/A>
[&使用快车(FlashGet)下载全部链接]
  <F:\Program Files\FlashGet Network\Flashget\ComDlls\Bhoall.htm, N/A>
[使用迅雷下载]
  <F:\Program Files\Thunder Network\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <F:\Program Files\Thunder Network\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
  <f:\Program Files\Tencent\qq\AddEmotion.htm, N/A>

==================================
正在运行的进程
[PID: 444 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 504 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 540 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 584 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\AppPatch\AcAdProc.dll]  [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 596 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 752 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4180]
    [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2513]
    [C:\WINDOWS\system32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2524]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 772 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 848 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
小鬼* - 2008-5-2 21:37:00
[C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 932 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\WINDOWS\system32\wups2.dll]  [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
[PID: 992 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 1080 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 1180 / SYSTEM][C:\Program Files\Rising\Rfw\rfwsrv.exe]  [Beijing Rising Technology Co., Ltd., 7.0.0.68]
    [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Rising\Rfw\ProcCom.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
    [C:\Program Files\Rising\Rfw\RsCommX2.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
    [C:\Program Files\Rising\Rfw\RSAPPMGR.dll]  [Beijing Rising Technology Co., Ltd., 20.0.0.0]
    [C:\Program Files\Rising\Rfw\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 20.0.0.16]
    [C:\Program Files\Rising\Rfw\RfwRule.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.13]
    [C:\Program Files\Rising\Rfw\rfwlog.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.12]
    [C:\Program Files\Rising\Rfw\Rfwdrv.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.41]
    [C:\Program Files\Rising\Rfw\ijt_ctrl.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.0]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\Program Files\Rising\Rfw\unvdet.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.5]
    [C:\Program Files\Rising\Rfw\mPorts.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.3]
[PID: 1224 / SYSTEM][C:\Program Files\Rising\Rfw\rfwProxy.exe]  [Beijing Rising Technology Co., Ltd., 7.0.0.32]
    [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Rising\Rfw\ProcCom.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
    [C:\Program Files\Rising\Rfw\RsCommX2.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
    [C:\Program Files\Rising\Rfw\RfwRule.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.13]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\Program Files\Rising\Rfw\MonMid.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.4]
[PID: 1524 / SYSTEM][C:\Program Files\Rising\Rfw\rfwstub.exe]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Rising\Rfw\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 1584 / 龙龙][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\WINDOWS\system32\WPDShServiceObj.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\PortableDeviceTypes.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [F:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll]  [, 1, 0, 0, 17]
    [F:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [C:\WINDOWS\system32\wpdshext.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\Audiodev.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.16]
    [F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 61]
    [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
    [C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll]  [, 2, 0, 0, 0]
[PID: 1756 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
[PID: 1800 / 龙龙][C:\Program Files\Rising\Rfw\RfwMain.exe]  [Beijing Rising Technology Co., Ltd., 7.0.1.65]
    [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Rising\Rfw\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 88]
    [C:\Program Files\Rising\Rfw\ProcCom.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
    [C:\Program Files\Rising\Rfw\RsCommX2.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
    [C:\Program Files\Rising\Rfw\RSAPPMGR.dll]  [Beijing Rising Technology Co., Ltd., 20.0.0.0]
    [C:\Program Files\Rising\Rfw\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 20.0.0.16]
    [C:\Program Files\Rising\Rfw\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16]
    [C:\Program Files\Rising\Rfw\RfwCtrl.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.7]
    [C:\Program Files\Rising\Rfw\RsXML.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 0]
    [C:\Program Files\Rising\Rfw\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 20, 0, 0, 4]
    [C:\Program Files\Rising\Rfw\RfwRule.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.13]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
[PID: 244 / SYSTEM][C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe]  [Apple, Inc., 1, 14, 0, 0]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 372 / SYSTEM][C:\Program Files\Bonjour\mDNSResponder.exe]  [Apple Inc., 1,0,4,12]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 400 / SYSTEM][F:\Program Files\StormII\stormliv.exe]  [北京暴风网际科技有限公司, 3, 8, 3, 15]
    [F:\Program Files\StormII\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
[PID: 660 / SYSTEM][C:\Program Files\CMBCHINA\WebProtect\WPService.exe]  [China Merchants Bank, 1, 0, 0, 1]
    [C:\Program Files\CMBCHINA\WebProtect\WebProtectPlus.dll]  [China Merchants Bank, 1, 0, 0, 1]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 836 / SYSTEM][C:\WINDOWS\system32\inetsrv\inetinfo.exe]  [Microsoft Corporation, 5.1.2600.3300 (xpsp.080125-0707)]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll]  [Microsoft Corporation, 2.0.50727.1433 (REDBITS.050727-1400)]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
[PID: 2204 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 2256 / 龙龙][C:\WINDOWS\RTHDCPL.EXE]  [Realtek Semiconductor Corp., 2.1.0.8]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
[PID: 2484 / 龙龙][F:\Program Files\360safe\safemon\360tray.exe]  [奇虎网, 4, 1, 0, 1004]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [F:\Program Files\360safe\safemon\SafeKrnl.dll]  [奇虎网, 4, 1, 0, 1001]
    [F:\Program Files\360safe\AntiAdwa.dll]  [360Safe.com, 4, 1, 0, 1001]
    [f:\Program Files\360safe\live.dll]  [360.cn, 1, 0, 1, 1027]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
[PID: 2532 / 龙龙][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
[PID: 3292 / 龙龙][C:\WINDOWS\system32\wuauclt.exe]  [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\WINDOWS\system32\wups2.dll]  [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
[PID: 2740 / 龙龙][F:\Program Files\Maxthon2\Maxthon.exe]  [Maxthon International ltd., 2, 0, 8, 1720]
    [F:\Program Files\Maxthon2\mxpp.dll]  [Maxthon International ltd., 1, 0, 0, 74]
    [F:\Program Files\Maxthon2\MxSk.dll]  [Maxthon, 1, 0, 0, 369]
    [F:\Program Files\Maxthon2\MxProxy2.dll]  [Maxthon, 1, 0, 0, 3675]
    [F:\Program Files\Maxthon2\IMxWebBoost.dll]  [Maxthon, 1, 0, 0, 2330]
    [F:\Program Files\Maxthon2\mxdb.dll]  [Max, 3, 5, 3, 125]
    [F:\Program Files\Maxthon2\MxExt.dll]  [N/A, ]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [F:\Program Files\Maxthon2\MxFav.dll]  [Maxthon International ltd., 1, 0, 0, 220]
    [F:\Program Files\Maxthon2\maxzlib.dll]  [, 1.2.3]
    [F:\Program Files\Maxthon2\mxtool.dll]  [, 1, 0, 0, 1]
    [F:\Program Files\Maxthon2\mxfeedU.dll]  [, 1, 0, 45, 92]
    [F:\Program Files\Maxthon2\Modules\MxGuardian\MxGuardian.dll]  [Maxthon International ltd., 1, 0, 0, 666]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\pplayer.dll_2_work]  [Thunder, 1.2.9.152]
    [C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\XLNet.dll]  [Thunder Networking Technologies,LTD, 1, 4, 5, 21]
小鬼* - 2008-5-2 21:37:00
[C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx]  [Adobe Systems, Inc., 9,0,124,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1008 / 龙龙][f:\Program Files\Tencent\qq\QQ.exe]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQBaseClassInDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQHelperDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\BasicCtrlDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [f:\Program Files\Tencent\qq\MSIMG32.dll]  [N/A, ]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [f:\Program Files\Tencent\qq\FinePlus.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\fphelper.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [f:\Program Files\Tencent\qq\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [f:\Program Files\Tencent\qq\QQAPI.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\LoginCtrl.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\LoginCtrlRes.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQRes.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQMainFrame.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [f:\Program Files\Tencent\qq\UnReadMsgMgr.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\QQPlugin.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\CQQApplication.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [f:\Program Files\Tencent\qq\NewSkin.dll]  [TENCENT, 8,0,713,1791]
    [f:\Program Files\Tencent\qq\MailSummary.dll]  [TENCENT, 8,0,775,1803]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [f:\Program Files\Tencent\qq\QQSpace.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\vbscript.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\encode.dll]  [Microsoft Corporation, 5.6.0.8825]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\msdmo.dll]  [, ]
    [f:\Program Files\Tencent\qq\QQKnowledgeSearch.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\OEMApplication.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQGroupMng.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQAvatar.dll]  [N/A, ]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [f:\Program Files\Tencent\qq\QQAllInOne.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\SCCore.dll]  [TENCENT, 1, 6, 0, 2]
    [f:\Program Files\Tencent\qq\CameraDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQPet.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQSysMsgMng.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\UserDefinedHead.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQConfigPlugin.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQCustomFace.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\QRingMng.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\LongConnection.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\PhoneAPI.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [f:\Program Files\Tencent\qq\BQQApplication.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\PersonalDesktop.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\ImageOle.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQLiveQMng.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQSceneMng.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\GroupConnection.dll]  [TENCENT, 8,0,775,1803]
    [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.2.0.0]
    [C:\Program Files\SogouInput\Plugin\SgImeWord.dll]  [Sogou.com Inc., 3.2.0.0]
    [f:\Program Files\Tencent\qq\CommercesMng.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
    [C:\WINDOWS\system32\msadp32.acm]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [f:\Program Files\Tencent\qq\QQMagicFace.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\AddrSearch.dll]  [腾讯科技(深圳)有限公司, 2, 0, 1, 10]
    [f:\Program Files\Tencent\qq\QQDoctor\TSVulMdw.dat]  [TENCENT, 2007, 12, 18, 3]
[PID: 1404 / 龙龙][f:\Program Files\Tencent\qq\QQ.exe]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQBaseClassInDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQHelperDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\BasicCtrlDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [f:\Program Files\Tencent\qq\MSIMG32.dll]  [N/A, ]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [f:\Program Files\Tencent\qq\FinePlus.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\fphelper.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [f:\Program Files\Tencent\qq\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [f:\Program Files\Tencent\qq\QQAPI.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\LoginCtrl.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\LoginCtrlRes.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQRes.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQMainFrame.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [f:\Program Files\Tencent\qq\QQPlugin.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\UnReadMsgMgr.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\CQQApplication.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [f:\Program Files\Tencent\qq\NewSkin.dll]  [TENCENT, 8,0,713,1791]
    [f:\Program Files\Tencent\qq\MailSummary.dll]  [TENCENT, 8,0,775,1803]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [f:\Program Files\Tencent\qq\QQSpace.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\vbscript.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\encode.dll]  [Microsoft Corporation, 5.6.0.8825]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\msdmo.dll]  [, ]
    [f:\Program Files\Tencent\qq\QQKnowledgeSearch.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\OEMApplication.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQGroupMng.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQAvatar.dll]  [N/A, ]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [f:\Program Files\Tencent\qq\QQAllInOne.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\SCCore.dll]  [TENCENT, 1, 6, 0, 2]
    [f:\Program Files\Tencent\qq\CameraDll.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQPet.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQSysMsgMng.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\UserDefinedHead.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQConfigPlugin.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQCustomFace.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\QRingMng.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\LongConnection.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\PhoneAPI.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [f:\Program Files\Tencent\qq\BQQApplication.dll]  [N/A, ]
    [f:\Program Files\Tencent\qq\PersonalDesktop.dll]  [TENCENT, 8,0,775,1803]
    [C:\WINDOWS\system32\l3codeca.acm]  [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]
    [f:\Program Files\Tencent\qq\ImageOle.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQLiveQMng.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\GroupConnection.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\CommercesMng.dll]  [TENCENT, 8,0,775,1803]
    [f:\Program Files\Tencent\qq\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
    [f:\Program Files\Tencent\qq\QQSceneMng.dll]  [N/A, ]
[PID: 3036 / 龙龙][f:\Program Files\Tencent\qq\TXPlatform.exe]  [Tencent, 1, 0, 170, 0]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
[PID: 3624 / 龙龙][G:\网站\工具\CuteFTP8\CuteFTP8\cuteftppro.exe]  [GlobalSCAPE Texas, LP., 8,0,0,0]
    [G:\网站\工具\CuteFTP8\CuteFTP8\filecryptik.dll]  [N/A, ]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [G:\网站\工具\CuteFTP8\CuteFTP8\Default.lng]  [GlobalSCAPE Texas, LP., 8,0,2,0]
    [G:\网站\工具\CuteFTP8\CuteFTP8\Compress.dll]  [GlobalSCAPE Texas, LP., 8,0,2,0]
[PID: 3692 / 龙龙][G:\网站\工具\CuteFTP8\CuteFTP8\ftpte.exe]  [GlobalSCAPE Texas, LP., 8,0,2,0]
    [G:\网站\工具\CuteFTP8\CuteFTP8\filecryptik.dll]  [N/A, ]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [G:\网站\工具\CuteFTP8\CuteFTP8\Default.lng]  [GlobalSCAPE Texas, LP., 8,0,2,0]
    [G:\网站\工具\CuteFTP8\CuteFTP8\FolderMonitor.dll]  [GlobalSCAPE Texas, LP., 8,0,2,0]
    [G:\网站\工具\CuteFTP8\CuteFTP8\SiteBackup.dll]  [GlobalSCAPE Texas, LP., 8,0,2,0]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
[PID: 344 / 龙龙][C:\Program Files\Internet Explorer\IExplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.16]
    [f:\Program Files\FlashGet Network\Flashget\ComDlls\bhoCATCH.dll]  [FlashGet, 2, 0, 2, 1011]
    [C:\Program Files\CMBCHINA\WebProtect\WebProtect.dll]  [China Merchants Bank, 1, 0, 0, 1]
    [F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 61]
    [F:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll]  [, 1, 0, 0, 17]
    [F:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx]  [Adobe Systems, Inc., 9,0,124,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.2.0.0]
    [C:\Program Files\SogouInput\Plugin\SgImeWord.dll]  [Sogou.com Inc., 3.2.0.0]
[PID: 680 / 龙龙][C:\WINDOWS\sreng2\SREngPS.EXE]  [Smallfrogs Studio, 2.5.16.900]
    [C:\Program Files\Rising\Rfw\ijt_base.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.10]
    [C:\Program Files\Rising\Rfw\olemon.dll]  [Beijing Rising Technology Co., Ltd., 7.0.0.6]
    [F:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 0, 1006]
    [C:\WINDOWS\sreng2\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,4,12]
    [C:\WINDOWS\system32\xunyount.dll]  [N/A, ]
==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
xunyou over MSAFD Tcpip [TCP/IP]
    C:\WINDOWS\system32\xunyount.dll(, N/A)
xunyou over MSAFD Tcpip [UDP/IP]
    C:\WINDOWS\system32\xunyount.dll(, N/A)
xunyou over MSAFD Tcpip [RAW/IP]
    C:\WINDOWS\system32\xunyount.dll(, N/A)
xunyou
    C:\WINDOWS\system32\xunyount.dll(, N/A)
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1      localhost
127.0.0.1  yu.8s7.net
127.0.0.1  1.jopanqc.com
127.0.0.1  2.joppnqq.com
127.0.0.1  wg.47255.com
127.0.0.1  1.joppnqq.com
127.0.0.1  xxx.m111.biz
127.0.0.1  1.jopenqc.com
127.0.0.1  1.jopenkk.com
127.0.0.1  xxx.vh7.biz
127.0.0.1  xxx.j41m.com
127.0.0.1  3.joppnqq.com
127.0.0.1  d.93se.com
127.0.0.1  www.868wg.com
127.0.0.1  xxx.mmma.biz
127.0.0.1  ilove.com
127.0.0.1  tp.shpzhan.cn
127.0.0.1  www.tomwg.com
127.0.0.1  www.cike007.cn
127.0.0.1  www.22aaa.com
127.0.0.1  xx.exiao01.com
127.0.0.1  www.exiao01.com
127.0.0.1  www.exiao01.com
127.0.0.1  new.749571.com
127.0.0.1  xtx.kv8.info
127.0.0.1  cao.kv8.info
127.0.0.1  1.jopmmqq.com
127.0.0.1  171817.171817.com
127.0.0.1  d2.llsging.com
127.0.0.1  down.malasc.cn
127.0.0.1  llboss.com
127.0.0.1  nx.51ylb.cn
127.0.0.1  my.531jx.cn
127.0.0.1  qqq.dzydhx.com
127.0.0.1  qqq.hao1658.com
127.0.0.1  www.333292.com
127.0.0.1  down.18dd.net
127.0.0.1  up.22x44.com
127.0.0.1  aaa.faba01.com
127.0.0.1  bad.tqdlt.cn
127.0.0.1  1.chsipo.com
127.0.0.1  c3.aishangai.net
127.0.0.1  c2.aishangai.net
127.0.0.1  xxx.188dm.com
127.0.0.1  x2.1a2b3c1.com
127.0.0.1  d1.163500.net
127.0.0.1  down.google-serv.cn
127.0.0.1  gxgxy.net
127.0.0.1  c0mo.com
==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 540, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 244, C:\PROGRAM FILES\COMMON FILES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 3624, G:\网站\工具\CUTEFTP8\CUTEFTP8\CUTEFTPPRO.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3624, G:\网站\工具\CUTEFTP8\CUTEFTP8\CUTEFTPPRO.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 3692, G:\网站\工具\CUTEFTP8\CUTEFTP8\FTPTE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3692, G:\网站\工具\CUTEFTP8\CUTEFTP8\FTPTE.EXE]
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================

[/CODE]
小鬼* - 2008-5-2 21:39:00
你说的我都看过    我的机子刚买不到一个月   
不会出现这些问题的    我也把内部都检查过了的··
谢谢
小鬼* - 2008-5-2 21:40:00
已经上传了  帮忙看看
人在逍遥 - 2008-5-2 21:42:00
以附件的形式上传。呵呵,新机器也有兼容性问题啊,还有你买的主板什么的质量不间的就 那么好,我是干电脑的,这样不兼容还有出厂就是不良的主板多了去了,如果是杂牌那就更难保证了。
小鬼* - 2008-5-2 21:45:00
CPU:AMD5000+
主板:技嘉m56s-s3
硬盘:希捷250G
内存:金士顿1G-DDR800*2
显卡:蓝宝石HD3870  DDR3
电源:航嘉380W
豪斯登堡新郎 - 2008-5-2 21:47:00
下载冰刃 找到该文件后删除:C:\WINDOWS\system32\xunyount.dll

运行SRE,依次点  系统修复-winsock供应者-重置所有内容为默认值


至于你说的没有帮助文件  那可能是一些GHOST系统已经精简掉了
超级游戏迷 - 2008-5-2 21:53:00
你安装了迅游加速器了么?
小鬼* - 2008-5-2 22:09:00
安装了的
超级游戏迷 - 2008-5-2 22:40:00


引用:
原帖由 小鬼* 于 2008-5-2 22:09:00 发表
安装了的
这个网络加速器修改了lsp ,属流氓软件,按照11楼斑竹说的先做下,如果SRENG扫描工具修复WINSOCK后仍不能上网,请与我联系。
sako - 2008-5-3 7:00:00
lz

说下

下次尽量别直接贴,比较麻烦,太多了
扫SRENG日志发到论坛来
http://www.kztechs.com/sreng/download.html
下载System Repair Engineer
1 解压缩sreng2.zip(建议解压到系统Windows文件夹里)
2 运行SREng.exe ((将SREng.exe改名为123.com运行))
3 智能扫描=》扫描=》保存报告
4 把报告保存后,直接将日志内容彻底复制到一个空记事本里,然后再保存,就可以以附件的形式xxx坛来了。
一定以附件形式发这论坛来。
点击我这贴右下角的“引用”然后就应该知道怎么发了。

你可以打开日志后,在左上角的“编辑”里选择“全选”再选择“复制”
就可以彻底复制日志内容到另一个空记事本保存了

这样就ok
sdaasd - 2008-5-3 9:59:00
格式化硬盘在装系统

请不要说废话,警告一次
1
查看完整版本: 不知道是不是中毒了