我的症状一样。麻烦给看看。
Logfile of HijackThis v1.99.1
Scan saved at 20:06:37 上午, on 2005-11-5
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
I:\WINDOWS\System32\smss.exe
I:\WINDOWS\system32\winlogon.exe
I:\WINDOWS\system32\services.exe
I:\WINDOWS\system32\lsass.exe
I:\WINDOWS\system32\svchost.exe
I:\WINDOWS\System32\svchost.exe
D:\RISING\RAV\Ravmond.exe
D:\RISING\RAV\RavStub.exe
I:\WINDOWS\system32\spoolsv.exe
I:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\rising\Rav\RavTray.exe
I:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Super Rabbit\MagicSet\srcdnoti.exe
D:\Maze\MazeSvr.exe
I:\Program Files\P4P\p2psvr.exe
D:\rising\Rav\RavService.exe
D:\rising\Rav\CCenter.exe
I:\WINDOWS\system32\taskmgr.exe
D:\rising\Rav\Rav.exe
D:\rising\Rav\RsAgent.exe
I:\WINDOWS\msagent\AgentSvr.exe
D:\realplayer\RealPlay.exe
I:\WINDOWS\system32\cmd.exe
I:\WINDOWS\system32\conime.exe
D:\Maxthon\Maxthon.exe
I:\WINDOWS\regedit.exe
F:\SoftwereDownload\Internet\IPMsg.exe
I:\WINDOWS\system32\drwtsn32.exe
I:\WINDOWS\system32\drwtsn32.exe
I:\WINDOWS\system32\rundll32.exe
I:\WINDOWS\system32\drwtsn32.exe
I:\WINDOWS\explorer.exe
I:\WINDOWS\system32\mmc.exe
F:\SoftwereDownload\Internet\ha_hijackthis\HijackThis.exe
R3 - URLSearchHook: MyURLSearchHook Class - {982CB676-38F0-4D9A-BB72-D9371ABE876E} - I:\Program Files\P4P\ToolBar.dll
O1 - Hosts: 202.204.105.7 sun250.cugb.edu.cn
O1 - Hosts: 218.30.105.133 www.tol24.com
O1 - Hosts: 202.100.222.1 www.tianyaclub.com
O1 - Hosts: 61.142.80.88 www.86film.com
O1 - Hosts: 218.30.110.209 lj1006.51.net
O1 - Hosts: 222.89.175.138 angelchen1020.ik8.com
O1 - Hosts: 61.145.112.142 www.dk123.com
O1 - Hosts: 210.51.168.62 www.cnenglish.net
O1 - Hosts: 202.100.222.25 www3.tianyaclub.com
O1 - Hosts: 61.172.244.164 log.hjbbs.com
O1 - Hosts: 61.142.80.88 www.86film.com
O1 - Hosts: 219.139.240.39 www.blogchinese.com
O1 - Hosts: 219.238.238.118 www.265.com
O1 - Hosts: 219.153.33.10 www.5566.net
O1 - Hosts: 61.172.198.177 www.suoyou.com
O1 - Hosts: 219.153.7.50 www.qq533.com
O1 - Hosts: 61.139.126.241 www.sowang.com
O1 - Hosts: 61.129.81.68 www.ca183.com
O1 - Hosts: 220.194.62.158 wysw.com
O1 - Hosts: 219.146.10.108 www.page.com.cn
O1 - Hosts: 61.153.48.250 www.da123.com
O1 - Hosts: 61.135.145.201 www.hao123.com
O1 - Hosts: 202.102.245.46 www.k369.com
O1 - Hosts: 202.165.103.236 www.yahoo-cool.com
O1 - Hosts: 60.195.250.111 wy.cnii.com.cn
O1 - Hosts: 218.201.44.82 bbs.cpcw.com
O1 - Hosts: 211.154.205.43 www.zol.com.cn
O1 - Hosts: 211.151.233.9 shcny.blogchina.com
O1 - Hosts: 219.239.88.110 www.yesky.com
O1 - Hosts: 218.12.56.248 dos.qiee.com
O1 - Hosts: 211.154.205.24 product.zol.com.cn
O1 - Hosts: 211.147.5.165 fun.ccidnet.com
O1 - Hosts: 61.172.200.244 www.169s.com
O1 - Hosts: 219.136.248.149 www.goeway.com
O1 - Hosts: 61.155.107.13 www.blogcn.com
O1 - Hosts: 211.151.233.9 winamp.blogchina.com
O1 - Hosts: 219.239.88.110 soft.yesky.com
O1 - Hosts: 219.239.88.110 soft.yesky.com
O1 - Hosts: 222.39.47.90 news.onlinedown.net
O1 - Hosts: 210.51.187.165 www.cnproxy.com
O1 - Hosts: 210.51.187.165 www.cnproxy.com
O1 - Hosts: 210.51.187.165 www.cnproxy.com
O1 - Hosts: 210.51.187.165 www.cnproxy.com
O1 - Hosts: 219.238.233.238 www.ikaka.com
O1 - Hosts: 219.239.88.110 www.yesky.com
O1 - Hosts: 61.140.60.69 download.21cn.com
O1 - Hosts: 202.100.72.25 it.westcn.com
O1 - Hosts: 61.185.81.109 www.easte.cn
O1 - Hosts: 219.136.248.149 www.goeway.com
O1 - Hosts: 222.189.228.87 ww1.supcode.com
O1 - Hosts: 218.7.188.61 www.17sun.net
O1 - Hosts: 218.5.79.140 www.wancd.com
O1 - Hosts: 222.77.177.163 www.58bt.com
O1 - Hosts: 218.5.79.75 www.tekin.cn
O1 - Hosts: 210.76.106.155 www.polsnet.com
O1 - Hosts: 61.129.33.155 www.emule.org.cn
O1 - Hosts: 61.129.33.155 www.emule.org.cn
O1 - Hosts: 202.204.105.8 www.cugb.edu.cn
O1 - Hosts: 202.204.105.22 jwc.cugb.edu.cn
O1 - Hosts: 202.204.105.8 www.cugb.edu.cn
O1 - Hosts: 202.204.105.7 sun250.cugb.edu.cn
O1 - Hosts: 202.108.9.77 mail.126.com
O1 - Hosts: 218.30.110.158 www.supersk8.net
O1 - Hosts: 61.147.118.206 www.y130.com
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - I:\WINDOWS\system32\xunleibho_v5.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - I:\Program Files\P4P\sodaie.dll
O2 - BHO: URLMonitor Class - {3ED9FFDA-79DB-4B2D-99B7-16EA3C4A3A92} - I:\WINDOWS\system32\hap.dll
O2 - BHO: QQBrowserHelper
Object Class - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\QQ\QQIEHelper.dll
O2 - BHO: DownloadValue Class - {616D4040-5712-4F0F-BCF1-5C6420A99E14} - I:\WINDOWS\system32\winhtp.dll
O2 - BHO: IeCapture Class - {67B6599D-1ACF-4EA9-9EAB-578DF0FE6F78} - I:\Program Files\Common Files\Baidu\Disk Search\dsie.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - D:\PROGRA~1\FLASHGET\jccatch.dll
O2 - BHO: 上网助手 - {BB936323-19FA-4521-BA29-ECA6A121BC78} - I:\Program Files\3721\Assist\asbar.dll
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - D:\NetTransport 2\NTIEHelper.dll
O2 - BHO: IE - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - I:\WINDOWS\downlo~1\CnsHook.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\FlashFXP\IEFlash.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - Toolbar: i&Bar搜索引擎 - {2E7D3330-EB94-4518-B0FE-E05379A5C1DA} - I:\PROGRA~1\iBar\10002\iBar.dll
O3 - Toolbar: 完美网译通 - {F43BD772-ABDD-43b7-A96A-3E9E61946EC0} - I:\WINDOWS\WORLD2\TOOLBAR\hmtoolbar.dll
O3 - Toolbar: 搜狗直通车 - {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} - I:\Program Files\P4P\ToolBar.dll
O3 - Toolbar: 上网助手 - {BB936323-19FA-4521-BA29-ECA6A121BC78} - I:\Program Files\3721\Assist\asbar.dll
O4 - HKLM\..\Run: [CnsMin] ; Rundll32.exe I:\WINDOWS\downlo~1\CnsMin.dll,Rundll32
O4 - HKLM\..\Run: [WhenUSearchWHSE] ; "I:\Program Files\WhenUSearch\whse.exe"
O4 - HKLM\..\Run: [RavMon] D:\rising\Rav\RavMon.exe -system
O4 - HKLM\..\Run: [TkBellExe] "I:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ProxyThorn] ; D:\ProxyThorn\ProxyThorn.exe