O2 - BHO: (no name) - {35980F6E-A137-4E50-953D-813BB8556899}? - (no file)
O2 - BHO: (no name) - {6E28339B-7A2A-47B6-AEB2-46BA53782373}? - (no file)
O2 - BHO: BrowserHAP Class - {AEF6F648-78D8-4456-BEE7-5ADE23D209FD} - C:\Program Files\HBClient\hapast.dll
O2 - BHO: (no name) - {CE7C3CF0-4B15-11D1-ABED-709549C10000}? - (no file)
O2 - BHO: (no name) - {D032570A-5F63-4812-A094-87D007C23012}? - (no file)
O2 - BHO: (no name) - {F5824EFB-728A-4726-A5A5-85A68B20EDC3}? - (no file)
O4 - HKLM\..\Run: [] regedit -s C:\$NtUninstallQ5926809$\sp4custom.dll
O4 - HKLM\..\Run: [NetUpdate] C:\WINNT\system32\NetUpdate.exe
O4 - HKLM\..\Run: [hbpassport] C:\PROGRA~1\HBCLIENT\hbast.exe
O4 - HKCU\..\Run: [] regedit -s C:\$NtUninstallQ5926809$\sp4custom.dll
O4 - HKCU\..\Run: [3721] C:\$NtUninstallQ5926809$\3721.bat
O16 - DPF: {24311111-1111-1121-1111-111191113457} -
file://c:\eied_s7.cab
O16 - DPF: {33331111-1111-1111-1111-611111193457} -
file://c:\ex.cab
O16 - DPF: {33331111-1111-1111-1111-611111193458} -
file://c:\ex.cab
O21 - SSODL: SystemCheck2 - {54645654-2225-4455-44A1-9F4543D34545} - C:\WINNT\system32\vbsys2.dll
O23 - Service: MSGSERVICE - Unknown owner - C:\WINNT\msgsrv.exe (file missing)
修复上面,还真不少
删除文件
C:\Program Files\HBClient
C:\$NtUninstallQ5926809$\sp4custom.dll
C:\WINNT\system32\NetUpdate.exe
C:\$NtUninstallQ5926809$\sp4custom.dll
C:\$NtUninstallQ5926809$\3721.bat
c:\eied_s7.cab
c:\ex.cab
C:\WINNT\system32\vbsys2.dll