[CODE] 2009-09-03,19:06:31 SysLog Scanner 3.0 - build 20090620 Arswp (http://www.arswp.com) Windows XP Professional Service Pack 2 (build 2600) ================================================================ 注册项 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] [(Verified)Realtek Semiconductor Corp., 5, 1, 0, 51] [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | (Verified)NVIDIA Corporation, 6.14.10.8415] [N/A] [] <360sd> [(Verified)360安全中心, 1, 0, 0, 1020] <360Safebox> <"D:\360\360safebox\safeboxTray.exe" /r> [(Verified)360安全中心, 2, 5, 2, 1009] <360Safetray> <"D:\360\360safe\safemon\360tray.exe" /start> [(Verified)360安全中心, 5, 2, 0, 1013] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] <"\Program Files\ROYALE\Logonui.exe"> [] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] <> [] [HKEY_CURRENT_USER\Control Panel\Desktop] [Microsoft Corp. , 2005, 9, 23, 0] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt] <使用迅雷下载> [N/A] <使用迅雷下载全部链接> [N/A] <添加到QQ表情> [N/A] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MenuExt] <添加到QQ表情> [N/A] ================================================================ 启动组 ================================================================ 任务计划 [SogouImeMgr.job] <"D:\输入法\SOGOUI~1\413~1.239\PinyinRepair.exe" /S> [(Verified)Sogou.com Inc., 4.1.3.2396] ================================================================ 组件 -------------------------------- Shell Extension [Display Panning CPL Extension] <{42071714-76d4-11d1-8b24-00a0c9068ff3}> [] [HyperTerminal Icon Ext] <{88895560-9AA2-1069-930E-00AA0030EBC8}> [(Verified)Hilgraeve, Inc., 5.1.2600.0] [任务栏和「开始」菜单] <{0DF44EAA-FF21-4412-828E-260A8728E7F1}> <> [] [NvCpl DesktopContext Class] <{A70C977A-BF00-412C-90B7-034C51DA2439}> [(Verified)NVIDIA Corporation, 6.14.10.8415] [Desktop Explorer] <{1CDB2949-8F65-4355-8456-263E7C208A5D}> [N/A] -------------------------------- Protocols [] <{6AC4FBC7-AA38-45EC-9634-D6D20B679EFC}> [酷狗, 5.2.4.4] -------------------------------- Context Menu [QvodMenu] <{9F44453E-1E46-4D5C-B57C-112FF2EDAE82}> [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 0, 0, 0] [SD360] <{086F171D-5ED1-4ED2-B736-CFF3AD6A128E}> [(Verified)360安全中心, 1, 0, 0, 1039] [00nView] <{1E9B04FB-F9E5-4718-997B-B8DA88302A48}> [N/A] [NvCplDesktopContext] <{A70C977A-BF00-412C-90B7-034C51DA2439}> [(Verified)NVIDIA Corporation, 6.14.10.8415] -------------------------------- BrowserHelperObject [SafeMon Class] <{B69F34DD-F0F9-42DC-9EDD-957187DA688D}> [(Verified)360.CN, 5, 0, 0, 1021] -------------------------------- ActiveX Extension [ThunderAtOnce Class] <{01443AEC-0FD1-40FD-9C87-E93D1494C233}> [(Verified)Thunder Networking Technologies,LTD, 1.2.6.179] [Thunder Agent Class] <{485463B7-8FB2-4B3B-B29B-8B919B0EACCE}> [(Verified)Thunder Networking Technologies,LTD, 6.0.4.179] [QvodExtend] <{53AC8551-0DE0-4606-8A1E-A51AF20ADD60}> [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 0, 0, 0] [MediaComm Class] <{7670648D-461B-42AF-BDFE-46D26AF5EFF2}> [(Verified)Thunder Networking Technologies,LTD, 3, 1, 7, 82] [360SafeLive] <{87515F61-A66C-4319-A0E0-D416CB8059E3}> [(Verified)360.cn, 1, 0, 2, 1007] [Thunder Browser Helper] <{889D2FEB-5411-4565-8998-1DD2C5261283}> [(Verified)Thunder Networking Technologies,LTD, 5.0.8.179] [OFrameObject Class] <{9701758C-4373-482E-B13C-776C048EC890}> <> [] [SafeMon Class] <{B69F34DD-F0F9-42DC-9EDD-957187DA688D}> [(Verified)360.CN, 5, 0, 0, 1021] [QQPlayerCtrl Class] <{CD108273-D434-43E6-AA90-1469F97EB398}> [(Verified)深圳腾讯科技, 3, 1, 164, 203] [Shockwave Flash Object] <{D27CDB6E-AE6D-11CF-96B8-444553540000}> [(Verified)Adobe Systems, Inc., 10,0,32,18] [TimwpDll.TimwpCheck] <{ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4}> [(Verified)Tencent, 1, 25, 660, 0] [QvodCtrl Class] <{F3D0D36F-23F8-4682-A195-74C92B03D4AF}> [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 5, 0, 60] ================================================================ 服务 [Human Interface Device Access / HidServ][Stopped/Disabled] <%SystemRoot%\System32\svchost.exe -k netsvcs --> "%SystemRoot%\System32\hidserv.dll"> [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [BitDefender Threat Scanner / scan][Running/Manual Start] <%SystemRoot%\System32\svchost.exe -k bdx --> "D:\360杀\360sd\scan.dll"> [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | S.C. BitDefender S.R.L, 12, 0, 53, 0] [360rp / 360rp][Running/Auto Start] [(Verified)360安全中心, 1, 0, 0, 1056] [NVIDIA Display Driver Service / NVSvc][Running/Auto Start] <%SystemRoot%\system32\nvsvc32.exe> [(Verified)NVIDIA Corporation, 6.14.10.8415] ================================================================ 驱动 [CALLKEY_IO / CALLKEY_IO][Stopped/Manual Start] <\??\G:\CALLKEY.sys> [] [NTSIM / NTSIM][Stopped/Manual Start] <\??\C:\WINDOWS\system32\ntsim.sys> [VIA Networking Technologies, Inc. , 1.07.00.0007] [TCP/IP Protocol Driver / Tcpip][Running/System Start] [Microsoft Corporation, 5.1.2600.3394 (xpsp_sp2_qfe.080620-1259)] [360SelfProtection / 360SelfProtection][Running/System Start] [(Verified)360安全中心, 1, 0, 0, 1008] [Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start] [(Verified)Realtek Semiconductor Corp., 5.10.00.6030 built by: WinDDK] [bdfsfltr / bdfsfltr][Running/System Start] [(Verified)BitDefender S.R.L. Bucharest, ROMANIA, 0.4.96.4645, RELEASE, built by: WinDDK] [BFSDRV / BFSDRV][Running/System Start] <\??\C:\WINDOWS\system32\drivers\bfsdrv.sys> [(Verified)360安全中心, 1.0.0.1003] [BREGDRV / BREGDRV][Running/System Start] <\??\C:\WINDOWS\system32\drivers\bregdrv.sys> [(Verified)360安全中心, 1.0.0.1015] [EfiSystemMon / EfiMon][Running/System Start] [(Verified)奇虎网, 1, 0, 0, 1004] [VIA Rhine-Family Fast Ethernet Adapter Driver Service / FETND5BV][Running/Manual Start] [(Verified)VIA Technologies, Inc. , 3.41.00.0426] [VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start] [(Verified)VIA Technologies, Inc. , 2.66] [HookPort / HookPort][Running/Boot Start] [(Verified)360安全中心, 1, 0, 0, 1005] [nv / nv][Running/Manual Start] [(Verified)NVIDIA Corporation, 6.14.10.8415] [Profos / Profos][Stopped/Manual Start] <\??\d:\360杀\360sd\profos.sys> [(Verified)N/A] [Direct Parallel Link Driver / Ptilink][Running/Manual Start] [(Verified)Parallel Technologies, Inc., 1.10 (XPClient.010817-1148)] [SafeBoxKrnl / SafeBoxKrnl][Running/System Start] <\??\C:\WINDOWS\system32\drivers\SafeBoxKrnl.sys> [(Verified)360安全中心, 2, 4, 0, 1006] [Secdrv / Secdrv][Stopped/Manual Start] [(Verified)Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K., 4.03.086] [Trufos / Trufos][Stopped/Manual Start] <\??\d:\360杀\360sd\trufos.sys> [(Verified)N/A] ================================================================ 活动进程 [PID: 740 / SYSTEM] \??\C:\WINDOWS\system32\winlogon.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 784 / SYSTEM] C:\WINDOWS\system32\services.exe [(Verified)Microsoft Corporation, 5.1.2600.3520 (xpsp_sp2_qfe.090206-1239)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 796 / SYSTEM] C:\WINDOWS\system32\lsass.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 952 / SYSTEM] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1032 / NETWORK SERVICE] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1136 / SYSTEM] C:\WINDOWS\System32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\System32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1236 / NETWORK SERVICE] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1484 / SYSTEM] C:\WINDOWS\system32\spoolsv.exe [(Verified)Microsoft Corporation, 5.1.2600.2696 (xpsp.050610-1527)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1740 / Administrator] C:\WINDOWS\Explorer.EXE [(Verified)Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] C:\WINDOWS\system32\nvcpl.dll [(Verified)NVIDIA Corporation, 6.14.10.8415] C:\WINDOWS\system32\NVRSZHC.DLL [NVIDIA Corporation, 6.14.10.8415] C:\WINDOWS\system32\nvwddi.dll [(Verified)NVIDIA Corporation, 6.14.10.8415] C:\WINDOWS\system32\nvshell.dll [N/A] [PID: 180 / Administrator] C:\WINDOWS\SOUNDMAN.EXE [(Verified)Realtek Semiconductor Corp., 5, 1, 0, 51] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] [PID: 276 / Administrator] C:\WINDOWS\system32\ctfmon.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 332 / Administrator] C:\WINDOWS\system32\rundll32.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] C:\WINDOWS\system32\nvwddi.dll [(Verified)NVIDIA Corporation, 6.14.10.8415] C:\WINDOWS\system32\nvshell.dll [N/A] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] [PID: 412 / Administrator] D:\360杀\360sd\360sd.exe [(Verified)360安全中心, 1, 0, 0, 1056] D:\360杀\360sd\QTQuart.dll [(Verified)版权所有 (C) 2006-2009 360安全中心, 1, 0, 0, 1055] D:\360杀\360sd\SCAN.DLL [S.C. BitDefender S.R.L, 12, 0, 53, 0] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll [Microsoft Corporation, 8.00.50727.762] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762] D:\360杀\360sd\Wrapper.dll [(Verified)360安全中心, 1, 0, 0, 1] D:\360杀\360sd\sqlite3.dll [(Verified)N/A] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] D:\360杀\360sd\CrashReport.dll [(Verified)360安全中心, 1, 0, 0, 1039] D:\360杀\360sd\wlist.dll [(Verified)360安全中心, 1, 0, 0, 1003] D:\360杀\360sd\heavygate.dll [360安全中心, 3, 6, 11, 0] D:\360杀\360sd\safelive.dll [(Verified)Copyright 2008, 1, 0, 0, 1001] D:\360杀\360sd\pdown.dll [(Verified)360Safe.com, 1, 1, 0, 0] D:\360杀\360sd\LiveUpd360.dll [(Verified)360Safe.com, 1, 1, 0, 1006] D:\360杀\360sd\360net.dll [(Verified)奇虎网, 1, 1, 1, 1004] [PID: 612 / SYSTEM] C:\WINDOWS\system32\nvsvc32.exe [(Verified)NVIDIA Corporation, 6.14.10.8415] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1772 / LOCAL SERVICE] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 348 / LOCAL SERVICE] C:\WINDOWS\System32\alg.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\System32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 3692 / SYSTEM] D:\360杀\360sd\360rp.exe [(Verified)360安全中心, 1, 0, 0, 1056] D:\360杀\360sd\QTQuart.dll [(Verified)版权所有 (C) 2006-2009 360安全中心, 1, 0, 0, 1055] D:\360杀\360sd\BDFLTLIB.DLL [(Verified)N/A] D:\360杀\360sd\SCAN.DLL [S.C. BitDefender S.R.L, 12, 0, 53, 0] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll [Microsoft Corporation, 8.00.50727.762] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762] D:\360杀\360sd\Wrapper.dll [(Verified)360安全中心, 1, 0, 0, 1] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360杀\360sd\antirk.dll [(Verified)奇虎网, 3, 6, 4, 1005] D:\360杀\360sd\wlist.dll [(Verified)360安全中心, 1, 0, 0, 1003] D:\360杀\360sd\heavygate.dll [360安全中心, 3, 6, 11, 0] D:\360杀\360sd\smartscn.dll [(Verified)BitDefender S.R.L., 12.0.0.11] D:\360杀\360sd\bdcore.dll [BitDefender, 11, 0, 0, 26] D:\360杀\360sd\trufos.dll [(Verified)N/A] D:\360杀\360sd\avxdisk.dll [(Verified)N/A] D:\360杀\360sd\CrashReport.dll [(Verified)360安全中心, 1, 0, 0, 1039] [PID: 1676 / SYSTEM] C:\WINDOWS\System32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] C:\WINDOWS\System32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] d:\360杀\360sd\scan.dll [S.C. BitDefender S.R.L, 12, 0, 53, 0] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll [Microsoft Corporation, 8.00.50727.762] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762] [PID: 3188 / Administrator] F:\清理专家\arswp3\arswp3.exe [(Verified)(C) 2006 - 2009 Windows 清 理 助 手, 3.0.7.803] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] C:\WINDOWS\system32\nvwddi.dll [(Verified)NVIDIA Corporation, 6.14.10.8415] C:\WINDOWS\system32\Macromed\Flash\Flash10c.ocx [(Verified)Adobe Systems, Inc., 10,0,32,18] [PID: 2376 / Administrator] D:\09QQ\Bin\QQ.exe [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\Common.dll [(Verified)Tencent, 1, 25, 660, 0] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.DLL [Microsoft Corporation, 8.00.50727.762] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll [Microsoft Corporation, 8.00.50727.762] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762] D:\09QQ\Bin\KernelUtil.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\GF.dll [(Verified)Tencent, 1, 25, 750, 0] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4\gdiplus.dll [Microsoft Corporation, 5.1.3102.5581 (xpsp_sp3_qfe.080415-1416)] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] D:\09QQ\Bin\AppUtil.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\MainFrame.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\TaskTray.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\TXPFProxy.dll [(Verified)N/A] D:\09QQ\Bin\AppMisc.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\ChatFrame.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\ConfigCenter.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\CustomFace.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\IM.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\KernelMisc.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\LongCnn.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\ContactInfoFrame.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\MsgMgr.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\SkinMgr.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\QInterLive.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\AppCtrl.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\SystemMsg.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.PaiPai\Bin\PaiPai.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.AudioVideo\Bin\AudioVideo.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.MMOG\Bin\MMOG.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.Soso\Bin\Soso.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.Qzone\Bin\Qzone.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.Weather\Bin\Weather.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.SoBar\Bin\SoBar.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.PaiPaiGift\Bin\PaiPaiGift.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.QQLive\Bin\QQLive.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.QQMusic\Bin\QQMusic.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\Com.Tencent.taotao\Bin\Taotao.dll [(Verified)Tencent, 1, 25, 660, 0] C:\Program Files\Common Files\Tencent\TXSSO\Bin\SSOPlatform.dll [(Verified)Tencent, 1.0.1.22] D:\09QQ\Bin\BasicCtrlDll.dll [(Verified)TENCENT, 8,0,773,1801] D:\09QQ\Plugin\Com.Tencent.QQShow\Bin\FlashAvatarDll.dll [(Verified)Tencent, 1.25.1.25] C:\WINDOWS\system32\msdmo.dll [(Verified)N/A] D:\09QQ\Plugin\com.tencent.advertisement\Bin\Advertisement.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.snsapp\Bin\SNSApp.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.NetBar\Bin\NetBar.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.wireless\Bin\Wireless.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.qqshow\Bin\QQShow.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.wenwen\Bin\WenWen.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.qqgame\Bin\QQGame.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.mail\Bin\Mail.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.crm\Bin\CRM.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.paycenter\Bin\PayCenter.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.qqring\Bin\QQRing.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.qqvip\Bin\QQVip.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\InformationBox.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\GroupApp.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.memo\Bin\Memo.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.qbar\Bin\QBar.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.qqpet\Bin\QQPet.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.today\Bin\Today.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Plugin\com.tencent.filetransfer\Bin\FileTransfer.dll [(Verified)Tencent, 1, 25, 660, 0] D:\09QQ\Bin\vqqsdl.dll [(Verified)Tencent, 5, 0, 3, 24] D:\09QQ\Bin\AddrSearch.dll [(Verified)Tencent, 2, 3, 10, 12] [PID: 3132 / Administrator] D:\09QQ\Bin\TXPlatform.exe [(Verified)Tencent, 1, 25, 660, 0] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] D:\09QQ\Bin\TXPFProxy.dll [(Verified)N/A] [PID: 140 / Administrator] C:\Program Files\Internet Explorer\IEXPLORE.EXE [(Verified)Microsoft Corporation, 7.00.6000.20583 (vista_ldr.070420-1500)] C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4\gdiplus.dll [Microsoft Corporation, 5.1.3102.5581 (xpsp_sp3_qfe.080415-1416)] D:\360\360safe\safemon\urlproc.dll [(Verified)360.CN, 1, 0, 0, 1006] C:\WINDOWS\system32\Macromed\Flash\Flash10c.ocx [(Verified)Adobe Systems, Inc., 10,0,32,18] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\QzoneMusic.dll [(Verified)深圳腾讯科技, 3, 1, 164, 203] [PID: 452 / Administrator] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\QzoneMusic.exe [(Verified)深圳腾讯科技, 3, 1, 164, 203] C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] D:\360\360safe\safemon\safemon.dll [(Verified)360.CN, 5, 0, 0, 1021] C:\WINDOWS\system32\nview.dll [N/A] C:\WINDOWS\system32\NVWRSZHC.DLL [NVIDIA Corporation, 6.14.10.11025] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\QQMusicPlayer.dll [(Verified)Tencent, 1, 6, 55, 207] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\QQMediaPlayer.dll [(Verified)Tencent, 1, 6, 55, 207] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\msdmo.dll [(Verified)N/A] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\vqqsdl.dll [(Verified)Tencent Technology (Shenzhen) Company Limited, 3, 15, 160, 216] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\TNProxy.dll [(Verified)Tencent Technology(Shenzhen) Company Limited, 2, 1, 101, 60] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\QQMusicDldEx.dll [(Verified)Tencent Technology (Shenzhen) Company Limited, 1, 2, 86, 86] D:\09QQ\Bin\TXPFProxy.dll [(Verified)N/A] D:\09QQ\Plugin\Com.Tencent.QQMusic\bin\QQMusic\QQPlayer.dll [(Verified)深圳腾讯科技, 3, 1, 164, 203] ================================================================ 文件关联 ================================================================ Autorun.Inf ================================================================ Winsock提供者 ================================================================ 隐藏进程 [PID: 1732] D:\360\360safebox\safeboxTray.exe [(Verified)360安全中心, 2, 5, 2, 1009] [PID: 256] D:\360\360safe\safemon\360tray.exe [(Verified)360安全中心, 5, 2, 0, 1013] ================================================================ 可疑文件 ================================================================ HOSTS 127.0.0.1 localhost [/CODE]