HijackThis_zww汉化版扫描日志 V1.99.1
保存于 8:10:16, 日期 2006-6-9
操作系统: Windows XP SP1 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP1 (6.00.2800.1106)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
g:\Program Files\Permeo\Security Driver\nbproxy.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\conime.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\ctfmon.exe
G:\Program Files\Permeo\Security Driver\EBIcon.exe
G:\Program Files\ttt2006\bin\tttconfig.exe
G:\Program Files\ttt2006\bin\ttt.exe
G:\Program Files\ttt2006\bin\ttt.exe
G:\Program Files\Tencent\qq\QQ.exe
G:\Program Files\Tencent\qq\TIMPlatform.exe
G:\Program Files\Tencent\qq\QQ.exe
G:\Program Files\Tencent\qq\QQ.exe
G:\Program Files\Maxthon\Maxthon.exe
C:\WINDOWS\System32\RUNDLL32.exe
C:\WINDOWS\System32\RUNDLL32.exe
F:\软件资料夹\杀毒软件\HijackThis V1.99.1 汉化版\HijackThis1991汉化版\HijackThis1991zww.exe
R3 - URLSearchHook: (no name) - {982CB676-38F0-4D9A-BB72-D9371ABE876E} - (no file)
R3 - URLSearchHook: SgUrlSearHook Class - {BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D} -
C:\WINDOWS\System32\socul.dll (file missing)
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\System32
\xunleibho_v8.dll
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F57} - C:\WINDOWS\System32
\ThunderBHO_v07.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program
Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - G:\Program
Files\P4P\sodaie.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - G:\PROGRA~1
\FLASHGET\jccatch.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program
files\google\googletoolbar1.dll
O2 - BHO: AssistII - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\PROGRA~1\3721\Assist\asbar.dll
O2 - BHO: MSN 搜索工具栏 Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN
Toolbar Suite\TB\02.05.0000.1105\zh-cn\msntb.dll
O3 - IE工具栏增项: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - G:\PROGRA~1
\FLASHGET\fgiebar.dll
O3 - IE工具栏增项: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32
\msdxm.ocx
O3 - IE工具栏增项: 上网助手 - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\PROGRA~1\3721
\Assist\asbar.dll
O3 - IE工具栏增项: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program
files\google\googletoolbar1.dll
O3 - IE工具栏增项: MSN 搜索工具栏 - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN
Toolbar Suite\TB\02.05.0000.1105\zh-cn\msntb.dll
O3 - IE工具栏增项: 搜狗工具条 - {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} - G:\Program
Files\P4P\ToolBar.dll
O4 - 启动项HKCU\\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - “启动”文件夹: 通通通2006.lnk = G:\Program Files\ttt2006\bin\tttconfig.exe
O4 - Global Startup: AutoCAD 启动加速器.lnk = C:\Program Files\Common Files\Autodesk
Shared\acstart16.exe
O4 - Global Startup: Windows 桌面搜索.lnk = C:\Program Files\MSN Toolbar
Suite\DS\02.05.0001.1119\zh-cn\bin\WindowsSearch.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0
\Reader\reader_sl.exe
O4 - Global Startup: Windows Update.URL
O4 - Global Startup: Permeo Security Driver Startup.lnk = G:\Program Files\Permeo\Security
Driver\EBIcon.exe
O8 - IE右键菜单中的新增项目: &使用迅雷下载 - G:\Program Files\Thunder Network\Thunder\geturl.htm
O8 - IE右键菜单中的新增项目: &使用迅雷下载全部链接 - G:\Program Files\Thunder
Network\Thunder\getallurl.htm
O8 - IE右键菜单中的新增项目: Google 搜索(&G) - res://c:\program
files\google\GoogleToolbar1.dll/cmsearch.html
O8 - IE右键菜单中的新增项目: MSN 搜索(&M) - res://C:\Program Files\MSN Toolbar
Suite\TB\02.05.0000.1105\zh-cn\msntb.dll/search.htm
O8 - IE右键菜单中的新增项目: 上传到QQ网络硬盘 - G:\Program Files\Tencent\qq\AddToNetDisk.htm
O8 - IE右键菜单中的新增项目: 使用搜狗直通车下载 - G:\Program Files\P4P\dl.htm
O8 - IE右键菜单中的新增项目: 使用网际快车下载 - G:\Program Files\FlashGet\jc_link.htm
O8 - IE右键菜单中的新增项目: 使用网际快车下载全部链接 - G:\Program Files\FlashGet\jc_all.htm
O8 - IE右键菜单中的新增项目: 发送图片到手机 - G:\Program Files\P4P\cx.htm
O8 - IE右键菜单中的新增项目: 添加到QQ自定义面板 - G:\Program Files\Tencent\qq\AddPanel.htm
O8 - IE右键菜单中的新增项目: 添加到QQ表情 - G:\Program Files\Tencent\qq\AddEmotion.htm
O8 - IE右键菜单中的新增项目: 用QQ彩信发送该图片 - G:\Program Files\Tencent\qq\SendMMS.htm
O8 - IE右键菜单中的新增项目: 类似网页 - res://c:\program
files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - IE右键菜单中的新增项目: 缓存的网页快照 - res://c:\program
files\google\GoogleToolbar1.dll/cmcache.html
O8 - IE右键菜单中的新增项目: 翻译英文字词(&T) - res://c:\program
files\google\GoogleToolbar1.dll/cmwordtrans.html
O10 - 未知的文件在 Winsock LSP: g:\program files\permeo\security driver\s5spi.dll
O10 - 未知的文件在 Winsock LSP: g:\program files\permeo\security driver\s5spi.dll
O10 - 未知的文件在 Winsock LSP: g:\program files\permeo\security driver\s5spi.dll
O10 - 未知的文件在 Winsock LSP: g:\program files\permeo\security driver\s5spi.dll
O10 - 未知的文件在 Winsock LSP: g:\program files\permeo\security driver\s5spi.dll
O10 - 未知的文件在 Winsock LSP: g:\program files\permeo\security driver\s5spi.dll
O16 - DPF: {1F831FA1-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) -
file://C:\Program Files\AutoCAD
2002\InstFred.ocx
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?
1119439790843
O16 - DPF: {7253A666-8D4A-11D7-A4DC-00E04C504779} (BDC Control) - http://www.fyliao.com/BDC.cab
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (AcDcToday 控件) -
file://C:\Program
Files\AutoCAD 2002\AcDcToday.ocx
O16 - DPF: {AE563722-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) -
file://C:\Program
Files\AutoCAD 2002\InstBanr.ocx
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (AcPreview 控件) -
file://C:\Program
Files\AutoCAD 2002\AcPreview.ocx
O23 - NT 服务: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk
Shared\Service\AdskScSrv.exe
O23 - NT 服务: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus
Personal\kavsvc.exe
O23 - NT 服务: Security Driver NetBT Proxy (nbproxy) - Permeo Technologies, Inc. - g:\Program
Files\Permeo\Security Driver\nbproxy.exe