瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 这是我的HijackThis v1.99.1日志,大家帮我看看我的机子有什么问题?

1   1  /  1  页   跳转

这是我的HijackThis v1.99.1日志,大家帮我看看我的机子有什么问题?

这是我的HijackThis v1.99.1日志,大家帮我看看我的机子有什么问题?

这是我的HijackThis v1.99.1日志,大家帮我看看我的机子有什么问题?最近机子好慢.....
最后编辑2006-06-16 13:09:27
分享到:
gototop
 

Logfile of HijackThis v1.99.1
Scan saved at 23:15:48, on 2006-6-14
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\ServeHost.exe
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\SearchNet\SearchNet.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HuaCi\huaci\zsearch.exe
C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\NB Probe\NBProbe.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\WINDOWS\system32\conime.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Rising\Rav\Ravmond.exe
C:\Program Files\Rising\Rav\RAVMON.EXE
C:\Program Files\Rising\Rav\RavStub.exe
D:\Program Files\qq\QQ.exe
D:\Program Files\qq\QQ.exe
D:\Program Files\qq\TIMPlatform.exe
D:\Program Files\TT\TTraveler.exe
D:\Program Files\HijackThis.exe
gototop
 

R3 - URLSearchHook: (no name) - {9850A9AC-7086-4CB2-91B3-43343992B059} - C:\WINDOWS\system32\Plfjsj.dll (file missing)
R3 - URLSearchHook: (no name) - {2C165ACB-C25C-41DA-B935-DE1905524E53} - C:\WINDOWS\system32\Qutb.dll (file missing)
R3 - URLSearchHook: (no name) - {EE4EEE69-A2AC-4394-BA66-7E8912471E97} - C:\WINDOWS\system32\Xynqgz.dll (file missing)
R3 - URLSearchHook: (no name) - {BD298DE2-2440-4C1C-A21E-204E7DF81283} - C:\WINDOWS\system32\Bedj.dll (file missing)
R3 - URLSearchHook: (no name) - {D2D8D67E-4D61-43F8-9773-01F03A4A97EE} - C:\WINDOWS\system32\Zaulox.dll (file missing)
R3 - URLSearchHook: (no name) - {B1A27672-7532-41AB-80C1-76DB2ECE10FC} - C:\WINDOWS\system32\Tvpcn.dll (file missing)
R3 - URLSearchHook: (no name) - {F6061EBF-9A8A-42A1-BBF4-31C3A7279654} - C:\WINDOWS\system32\Otebcs.dll (file missing)
R3 - URLSearchHook: (no name) - {7EAB9C06-D8D4-4908-AA2A-0EEEA3F3FA6D} - C:\WINDOWS\system32\Mepavv.dll
R3 - URLSearchHook: (no name) - {9F8D57BA-5AF9-4242-9CCF-E5141AB6BD8D} - C:\WINDOWS\system32\Jziz.dll
R3 - URLSearchHook: (no name) - {4247F61B-C8AD-4CD6-B541-A8C6CC43E02F} - C:\WINDOWS\system32\Upltyv.dll
R3 - URLSearchHook: (no name) - {AFA9247D-6924-43E8-A30D-4E9A2C935E9F} - C:\WINDOWS\system32\Nhmpf.dll
R3 - URLSearchHook: (no name) - {00A717F5-FC4D-4009-961C-08DE699BA90A} - C:\WINDOWS\system32\Imbtak.dll
R3 - URLSearchHook: (no name) - {B5116AB2-4875-4080-828C-975B1609B4C5} - C:\WINDOWS\system32\Rdvt.dll
R3 - URLSearchHook: (no name) - {97BEEA7D-71A2-4797-BEDA-9E7F932D7CD7} - C:\WINDOWS\system32\Anmaky.dll
R3 - URLSearchHook: (no name) - {5AA7F761-AF23-4124-95C3-AF201E51520F} - C:\WINDOWS\system32\Mmcw.dll
R3 - URLSearchHook: (no name) - {C1394A5D-2FBA-433F-9DE6-75F3CA57F635} - C:\WINDOWS\system32\Rsxx.dll
R3 - URLSearchHook: (no name) - {3C2E5492-B70F-4899-9BD1-9EA654BA99EF} - C:\WINDOWS\system32\Gjsis.dll
R3 - URLSearchHook: (no name) - {CB3078F7-242E-4FE7-BF6D-9563E5D0738F} - C:\WINDOWS\system32\Wrlxeh.dll
R3 - URLSearchHook: (no name) - {A9904F43-AB30-4DD6-B181-B68F9025A05B} - C:\WINDOWS\system32\Jdum.dll
R3 - URLSearchHook: (no name) - {225F24A0-5CF5-4691-8AE2-BCB922552DC6} - C:\WINDOWS\system32\Vmsmmj.dll
R3 - URLSearchHook: (no name) - {99C1FB87-D791-4AEB-9A03-CE635EFB3731} - C:\WINDOWS\system32\Imyyy.dll
R3 - URLSearchHook: (no name) - {0BB877E5-6C4F-4B50-84D9-E28133DE2353} - C:\WINDOWS\system32\Leuhf.dll
R3 - URLSearchHook: (no name) - {CD65391E-5540-4A20-A921-78AC0FC31D69} - C:\WINDOWS\system32\Udie.dll
R3 - URLSearchHook: (no name) - {6760D9F5-215C-4EE5-8F7A-2EE161302D58} - C:\WINDOWS\system32\Iswk.dll
R3 - URLSearchHook: (no name) - {671A3399-3758-4477-A344-1D4D7DD4DECC} - C:\WINDOWS\system32\Zrmtwr.dll
R3 - URLSearchHook: (no name) - {609FF61D-C973-458C-BA28-523CF50A0869} - C:\WINDOWS\system32\Cclo.dll
R3 - URLSearchHook: (no name) - {6186E96D-6E83-44BA-B403-898C47897E69} - C:\WINDOWS\system32\Jiva.dll
R3 - URLSearchHook: (no name) - {4422A5B6-CDF5-4425-9747-A18AFD3D9CD7} - C:\WINDOWS\system32\Rfupij.dll
R3 - URLSearchHook: Tencent SearchHook - {DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9} - C:\Program Files\TENCENT\Adplus\SSAddr.dll
R3 - URLSearchHook: (no name) - {2069B379-B831-4A37-B10E-214ABD105B1C} - C:\WINDOWS\system32\Vgctot.dll
R3 - URLSearchHook: (no name) - {B6E2B854-8D48-43E6-84AF-3527646E5661} - C:\WINDOWS\system32\Ulyq.dll
R3 - URLSearchHook: (no name) - {5D5A7CEE-0700-480A-A7CB-BED40C1B8717} - C:\WINDOWS\system32\Iorhbk.dll
R3 - URLSearchHook: (no name) - {58E5486B-EC85-4473-B2D4-E0AABF22DEA3} - C:\WINDOWS\system32\Okwp.dll
R3 - URLSearchHook: (no name) - {5C258F1C-5F26-44A5-BA8E-E478B4D488C1} - C:\WINDOWS\system32\Rihw.dll
R3 - URLSearchHook: (no name) - {D95174CE-1EC0-44BA-939B-A6FA3F0A086A} - C:\WINDOWS\system32\Bsoise.dll
R3 - URLSearchHook: (no name) - {91D9A7AF-FE6A-42F3-8AE8-C80BB47A348C} - C:\WINDOWS\system32\Fmorw.dll
R3 - URLSearchHook: (no name) - {4FBBD9E3-3895-4B99-900B-8A63510D4918} - C:\WINDOWS\system32\Irfsd.dll
gototop
 

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: ThunderIEHelper - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v14.dll
O2 - BHO: (no name) - {00A717F5-FC4D-4009-961C-08DE699BA90A} - C:\WINDOWS\system32\Imbtak.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {0BB877E5-6C4F-4B50-84D9-E28133DE2353} - C:\WINDOWS\system32\Leuhf.dll
O2 - BHO: Tencent Browser Helper - {0C7C23EF-A848-485B-873C-0ED954731014} - C:\Program Files\TENCENT\Adplus\SSAddr.dll
O2 - BHO: (no name) - {2069B379-B831-4A37-B10E-214ABD105B1C} - C:\WINDOWS\system32\Vgctot.dll
O2 - BHO: (no name) - {225F24A0-5CF5-4691-8AE2-BCB922552DC6} - C:\WINDOWS\system32\Vmsmmj.dll
O2 - BHO: IE Address Browser Helper - {2A0176FE-008B-4706-90F5-BBA532A49731} - C:\Program Files\SearchNet\SNHpr.dll
O2 - BHO: (no name) - {2C165ACB-C25C-41DA-B935-DE1905524E53} - C:\WINDOWS\system32\Qutb.dll (file missing)
O2 - BHO: (no name) - {35980F6E-A137-4E50-953D-813BB8556899} - (no file)
O2 - BHO: (no name) - {3C2E5492-B70F-4899-9BD1-9EA654BA99EF} - C:\WINDOWS\system32\Gjsis.dll
O2 - BHO: IE Browser Helper - {3CE496D1-1746-41CD-9489-3C0B93DF10E2} - C:\WINDOWS\Downlo~1\gzb1.dll
O2 - BHO: (no name) - {4247F61B-C8AD-4CD6-B541-A8C6CC43E02F} - C:\WINDOWS\system32\Upltyv.dll
O2 - BHO: (no name) - {4422A5B6-CDF5-4425-9747-A18AFD3D9CD7} - C:\WINDOWS\system32\Rfupij.dll
O2 - BHO: (no name) - {4FBBD9E3-3895-4B99-900B-8A63510D4918} - C:\WINDOWS\system32\Irfsd.dll
O2 - BHO: (no name) - {58E5486B-EC85-4473-B2D4-E0AABF22DEA3} - C:\WINDOWS\system32\Okwp.dll
O2 - BHO: (no name) - {5AA7F761-AF23-4124-95C3-AF201E51520F} - C:\WINDOWS\system32\Mmcw.dll
O2 - BHO: (no name) - {5C258F1C-5F26-44A5-BA8E-E478B4D488C1} - C:\WINDOWS\system32\Rihw.dll
O2 - BHO: (no name) - {5D5A7CEE-0700-480A-A7CB-BED40C1B8717} - C:\WINDOWS\system32\Iorhbk.dll
O2 - BHO: (no name) - {609FF61D-C973-458C-BA28-523CF50A0869} - C:\WINDOWS\system32\Cclo.dll
O2 - BHO: (no name) - {6186E96D-6E83-44BA-B403-898C47897E69} - C:\WINDOWS\system32\Jiva.dll
O2 - BHO: (no name) - {671A3399-3758-4477-A344-1D4D7DD4DECC} - C:\WINDOWS\system32\Zrmtwr.dll
O2 - BHO: (no name) - {6760D9F5-215C-4EE5-8F7A-2EE161302D58} - C:\WINDOWS\system32\Iswk.dll
O2 - BHO: BandIE Class - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\baidubar.dll
O2 - BHO: (no name) - {7EAB9C06-D8D4-4908-AA2A-0EEEA3F3FA6D} - C:\WINDOWS\system32\Mepavv.dll
O2 - BHO: (no name) - {91D9A7AF-FE6A-42F3-8AE8-C80BB47A348C} - C:\WINDOWS\system32\Fmorw.dll
O2 - BHO: (no name) - {97BEEA7D-71A2-4797-BEDA-9E7F932D7CD7} - C:\WINDOWS\system32\Anmaky.dll
O2 - BHO: (no name) - {9850A9AC-7086-4CB2-91B3-43343992B059} - C:\WINDOWS\system32\Plfjsj.dll (file missing)
O2 - BHO: (no name) - {99C1FB87-D791-4AEB-9A03-CE635EFB3731} - C:\WINDOWS\system32\Imyyy.dll
O2 - BHO: (no name) - {9F8D57BA-5AF9-4242-9CCF-E5141AB6BD8D} - C:\WINDOWS\system32\Jziz.dll
O2 - BHO: (no name) - {A9904F43-AB30-4DD6-B181-B68F9025A05B} - C:\WINDOWS\system32\Jdum.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {AFA9247D-6924-43E8-A30D-4E9A2C935E9F} - C:\WINDOWS\system32\Nhmpf.dll
O2 - BHO: (no name) - {B1A27672-7532-41AB-80C1-76DB2ECE10FC} - C:\WINDOWS\system32\Tvpcn.dll (file missing)
O2 - BHO: (no name) - {B5116AB2-4875-4080-828C-975B1609B4C5} - C:\WINDOWS\system32\Rdvt.dll
O2 - BHO: (no name) - {B6E2B854-8D48-43E6-84AF-3527646E5661} - C:\WINDOWS\system32\Ulyq.dll
O2 - BHO: (no name) - {BD298DE2-2440-4C1C-A21E-204E7DF81283} - C:\WINDOWS\system32\Bedj.dll (file missing)
O2 - BHO: (no name) - {C1394A5D-2FBA-433F-9DE6-75F3CA57F635} - C:\WINDOWS\system32\Rsxx.dll
O2 - BHO: (no name) - {CB3078F7-242E-4FE7-BF6D-9563E5D0738F} - C:\WINDOWS\system32\Wrlxeh.dll
O2 - BHO: (no name) - {CD65391E-5540-4A20-A921-78AC0FC31D69} - C:\WINDOWS\system32\Udie.dll
O2 - BHO: (no name) - {D2D8D67E-4D61-43F8-9773-01F03A4A97EE} - C:\WINDOWS\system32\Zaulox.dll (file missing)
O2 - BHO: (no name) - {D95174CE-1EC0-44BA-939B-A6FA3F0A086A} - C:\WINDOWS\system32\Bsoise.dll
O2 - BHO: (no name) - {EE4EEE69-A2AC-4394-BA66-7E8912471E97} - C:\WINDOWS\system32\Xynqgz.dll (file missing)
O2 - BHO: (no name) - {F6061EBF-9A8A-42A1-BBF4-31C3A7279654} - C:\WINDOWS\system32\Otebcs.dll (file missing)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
gototop
 

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: 百度超级搜霸 - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\baidubar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [StormCodec_Helper] "C:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [MoveSearch] C:\Program Files\HuaCi\huaci\zsearch.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [NB Probe] C:\Program Files\ASUS\NB Probe\NBProbe.exe
O4 - HKLM\..\Run: [IMSCMig] C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload
O4 - HKLM\..\Run: [Thunder] "D:\Program Files\xun lei\ThunderShell.exe" /s
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [SearchNet_Up] "C:\Program Files\SearchNet\ServeUp.exe"
O4 - HKLM\..\Run: [qx4enz8] RunDll32 "C:\WINDOWS\Downlo~1\qx4enz8.dll",Run
O4 - HKLM\..\Run: [ExFilter] Rundll32.exe "C:\PROGRA~1\CNNIC\Cdn\cdnspie.dll,ExecFilter solo"
O4 - HKLM\..\Run: [stup.exe] C:\PROGRA~1\TENCENT\Adplus\stup.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: 腾讯QQ.lnk = D:\Program Files\qq\QQ.exe
O4 - Startup: 划词搜索.lnk = C:\Program Files\HuaCi\huaci\zsearch.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &使用迅雷下载 - D:\Program Files\xun lei\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - D:\Program Files\xun lei\getallurl.htm
O8 - Extra context menu item: Google 搜索(&G) - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\Program Files\qq\AddToNetDisk.htm
O8 - Extra context menu item: 反向链接 - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\Program Files\qq\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\Program Files\qq\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\Program Files\qq\SendMMS.htm
O8 - Extra context menu item: 百度--MP3搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUMP3.HTM
O8 - Extra context menu item: 百度--图片搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUIMG.HTM
O8 - Extra context menu item: 百度--新闻搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUNEWS.HTM
O8 - Extra context menu item: 百度--歌词搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDULYRIC.HTM
O8 - Extra context menu item: 百度--网页搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUSEARCH.HTM
O8 - Extra context menu item: 百度--词典搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDU_DIC.HTM
O8 - Extra context menu item: 百度--贴吧搜索 - RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUPOST.HTM
O8 - Extra context menu item: 类似网页 - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: 缓存的网页快照 - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: 翻译英文字词(&T) - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - D:\Program Files\浩方对战平台\GameClient.exe (file missing)
gototop
 

O9 - Extra button: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: 信息检索 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: 易趣购物 - {BE9C13C3-9E46-4db1-BC05-BD8DA44599F2} - http://adfarm.mediaplex.com/ad/ck/4080-23171-9517-209?cn=song;icon;hp&mpro=http://www.ebay.com.cn (file missing)
O9 - Extra 'Tools' menuitem: 易趣购物 - {BE9C13C3-9E46-4db1-BC05-BD8DA44599F2} - http://adfarm.mediaplex.com/ad/ck/4080-23171-9517-209?cn=song;icon;hp&mpro=http://www.ebay.com.cn (file missing)
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\qq\QQ.EXE (file missing)
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\qq\QQ.EXE (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [TBH]  搜搜地址栏搜索
O16 - DPF: {C661F36D-DF85-4EF4-83C7-E107B83D04B1} (WebActivater Control) - http://dl_dir.qq.com/3dshow/3DShowVM.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2EBDF9FC-3297-49C3-ADA9-E03BE07577A6}: NameServer = 202.112.144.30,202.112.144.65
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Remote Log - 北京中搜在线软件有限公司 - C:\WINDOWS\system32\ServeHost.exe
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: TH - Sysinternals - www.sysinternals.com - C:\DOCUME~1\user\LOCALS~1\Temp\TH.exe

gototop
 


http://www.crsky.com/soft/2924.html
下载超级兔子..用超级兔子清理王卸载流氓软件...

进安全模式卸载...

卸载完回正常模式重新扫个日志..
gototop
 

O23 - Service: TH - Sysinternals - www.sysinternals.com - C:\DOCUME~1\user\LOCALS~1\Temp\TH.exe
修复此项,找到C:\Documents and Settings\user\Local Settings\Temp\TH.exe,用WINRAR压缩打包,加密码123,发送到我的邮箱yicong2005@163.com
让我怀疑的不仅是它的位置,还有他的版本信息,www.sysinternals.com怎么会出这种东西?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT