瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【紧急求助】****帮我看一个日志,请问我应该怎么做??瑞星查出来191个毒****

12345   3  /  5  页   跳转

【紧急求助】****帮我看一个日志,请问我应该怎么做??瑞星查出来191个毒****

==================================
启动文件夹
[Microsoft Office]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Microsoft Office.lnk><N>
[IE-Bar]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\IE-Bar.lnk><N>

==================================
服务
[InstallDriver Table Manager / IDriverT]
  <"C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe"><Macrovision Corporation>
[Rising Process Communication Center / RsCCenter]
  <"C:\Program Files\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
  <"C:\Program Files\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
[Serv-U FTP Server / Serv-U]
  <D:\PROGRA~1\SERV-U\ServUDaemon.exe><Cat Soft>
[SoundMAX Agent Service / SoundMAX Agent Service (default)]
  <C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe><Analog Devices, Inc.>

==================================
浏览器加载项
[WebThunder Browser Helper]
  {00000AAA-A363-466E-BEF5-9BB68697AA7F} <D:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll, Thunder Networking Technologies,LTD>
[MonitorURL Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, >
[超级兔子上网精灵]
  {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, N/A>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[BHelper Class]
  {F2E37336-BFDB-409B-8D0E-6F013C438B20} <C:\WINDOWS\2c3oc5e1.dll, N/A>
[启动迅雷]
  {0062C9BD-B349-40DE-91A0-755F37ACD559} <C:\Program Files\Thunder Network\Thunder\Thunder.exe, Thunder Networking Technologies,LTD>
[启动Web迅雷]
  {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} <http://my.xunlei.com, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <D:\Program Files\Tencent\QQ\QQ.EXE, N/A>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <D:\Program Files\Tencent\QQ\QQIEHelper.dll, N/A>
[超级兔子上网精灵]
  {43869BB3-22FD-4F15-9B46-238106BA2F4E} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, N/A>
[CDCImageCtl Object]
  {2BB32346-0FBB-46FF-A8F6-55E8DDE302C9} <C:\WINDOWS\Downloaded Program Files\CONFLICT.2\DCImage.dll, MotionOne, Inc>
[DaumBGMCtrl Class]
  {6A2E758A-028B-46BB-A11D-0608AB5A4ED3} <C:\WINDOWS\system32\DaumBGM.dll, (?)????>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
[EmoWebInstallerCtl Class]
  {7FC751A9-492D-41B1-9F8D-D2C8809D8907} <C:\WINDOWS\Downloaded Program Files\EmoWebInstaller.dll, MotinOne Inc.>
[Cdmcco Class]
  {938527D1-CDB7-4147-998A-B20FCA5CC976} <C:\WINDOWS\Downloaded Program Files\dmcc2.dll, >
[MagicLockOCX Control]
  {9B75502C-BBED-4BBD-8FE2-822E5E0AD32C} <C:\WINDOWS\DOWNLO~1\MAGICL~1.OCX, >
[Submit Class]
  {A3CD7F74-93C9-4BC4-B892-CCDF1514F714} <C:\WINDOWS\Downloaded Program Files\safein.dll, Beijing eChannels Century Technology Co.,Ltd>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
[CAFE multiupload control]
  {E1CDC08F-F464-4682-AE6A-7689451387C0} <C:\WINDOWS\DOWNLO~1\dmcm.ocx, ?? ??????>
[CyImgChinaCtl Class]
  {EDEDED2E-A0A6-4085-BC52-A95255A96DBD} <C:\WINDOWS\Downloaded Program Files\CyImgChina.dll, N/A>
[WebThunder Browser Helper]
  {00000AAA-A363-466E-BEF5-9BB68697AA7F} <D:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll, Thunder Networking Technologies,LTD>
[MonitorURL Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, >
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>
[超级兔子上网精灵]
  {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <C:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll, N/A>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
[BHelper Class]
  {F2E37336-BFDB-409B-8D0E-6F013C438B20} <C:\WINDOWS\2c3oc5e1.dll, N/A>
[&使用迅雷下载]
  <C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[&使用迅雷下载全部链接]
  <C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[上传到QQ网络硬盘]
  <D:\Program Files\Tencent\qq\AddToNetDisk.htm, N/A>
[使用Web迅雷下载]
  <D:\Program Files\Thunder Network\WebThunder\GetUrl.htm, N/A>
[使用Web迅雷下载全部链接]
  <D:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm, N/A>
[添加到QQ自定义面板]
  <D:\Program Files\Tencent\qq\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\Program Files\Tencent\qq\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\Program Files\Tencent\qq\SendMMS.htm, N/A>
[用比特精灵下载(&B)]
  <D:\Program Files\BitSpirit\bsurl.htm, N/A>
gototop
 

==================================
正在运行的进程
[PID: 368][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 424][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 448][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\WINDOWS\system32\SSMWinlogonEx.dll]  <System Safety Limited><2.0.8.582>
[PID: 492][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
[PID: 504][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
[PID: 656][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
[PID: 704][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
[PID: 772][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\System32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
[PID: 820][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
[PID: 864][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
[PID: 1148][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll]  <Windows (R) 2000 DDK provider><5.00.2195.1620>
[PID: 1248][C:\WINDOWS\Explorer.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\winfinds.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [D:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll]  <Thunder Networking Technologies,LTD><6, 0, 0, 2>
    [C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [C:\WINDOWS\2c3oc5e1.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
    [D:\Program Files\HyperSnap\HSTxtCap.dll]  <Hyperionics Technology LLC><1, 0, 0, 1>
    [D:\Program Files\HyperSnap\dxsnap.dll]  <N/A><N/A>
[PID: 1452][C:\Program Files\Analog Devices\SoundMAX\SMTray.exe]  <Analog Devices, Inc.><3, 2, 17, 0>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
[PID: 1460][C:\Program Files\QuickTime\qttask.exe]  <Apple Computer, Inc.><7.0.3>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
gototop
 

[C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
[PID: 1476][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
[PID: 1648][D:\PROGRA~1\SERV-U\ServUDaemon.exe]  <Cat Soft><6.0.0.2>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\PROGRA~1\SERV-U\libeay32.DLL]  <N/A><N/A>
    [D:\PROGRA~1\SERV-U\ssleay32.DLL]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
[PID: 1688][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe]  <Analog Devices, Inc.><3, 2, 6, 0>
[PID: 1708][C:\WINDOWS\system32\wdfmgr.exe]  <Microsoft Corporation><5.2.3790.1230 built by: dnsrv(bld4act)>
[PID: 2028][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\System32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
[PID: 1508][C:\Program Files\Rising\Rav\Rav.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 75>
    [C:\Program Files\Rising\Rav\PlugIn\RsPgScan.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 17>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\RavUI.Dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 61>
    [C:\Program Files\Rising\Rav\RsGuiLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
    [C:\Program Files\Rising\Rav\PngDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\Scanner.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 30>
    [C:\Program Files\Rising\Rav\BWList.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
    [C:\Program Files\Rising\Rav\RavUIMsg.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 25>
    [C:\WINDOWS\system32\winfinds.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavQu.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 17>
    [C:\Program Files\Rising\Rav\libload.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
    [C:\Program Files\Rising\Rav\VirusLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\MVEngine.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 14>
    [C:\Program Files\Rising\Rav\Engine.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 30>
    [C:\Program Files\Rising\Rav\ScanExec.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\Unpacker.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
    [C:\Program Files\Rising\Rav\UnExe.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\ScanEx.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 14>
    [C:\Program Files\Rising\Rav\PostTrt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [D:\Program Files\HyperSnap\HSTxtCap.dll]  <Hyperionics Technology LLC><1, 0, 0, 1>
[PID: 1192][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [D:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll]  <Thunder Networking Technologies,LTD><6, 0, 0, 2>
    [C:\PROGRA~1\DESKAD~1\deskipn.dll]  <><1, 0, 0, 1>
    [C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\2c3oc5e1.dll]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  <Adobe Systems, Inc.><9,0,16,0>
    [C:\WINDOWS\system32\winfinds.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
gototop
 

[C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
    [D:\Program Files\HyperSnap\HSTxtCap.dll]  <Hyperionics Technology LLC><1, 0, 0, 1>
    [D:\Program Files\HyperSnap\dxsnap.dll]  <N/A><N/A>
[PID: 3332][C:\WINDOWS\system32\conime.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
[PID: 3380][C:\Program Files\System Safety Monitor\SysSafe.exe]  <System Safety Limited><2.0.8.582>
    [C:\Program Files\System Safety Monitor\ssmutil.dll]  <System Safety Limited><2.0.8.582>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
[PID: 3724][C:\WINDOWS\WINLOGON.EXE]  <uUCSUyiSdfw><0.00.0085>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
[PID: 1048][C:\WINDOWS\system32\conime.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
[PID: 3888][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\CCG0.exe]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
[PID: 1392][C:\WINDOWS\system32\rundll32.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\DOCUME~1\ADMINI~1\TEMPLA~1\af5a172\1.dll]  <千橡互联><3, 0, 1, 0>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\DOCUME~1\ADMINI~1\TEMPLA~1\af5a172\3.dll]  <千橡互联><3, 0, 1, 0>
    [C:\DOCUME~1\ADMINI~1\TEMPLA~1\af5a172\4.dll]  <千橡互联><3, 0, 1, 0>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
[PID: 3068][C:\WINDOWS\system32\cmd.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [c:\nxldr.dat]  <N/A><N/A>
[PID: 2776][C:\WINDOWS\system32\taskmgr.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\winfinds.dll]  <N/A><N/A>
    [D:\Program Files\HyperSnap\HSTxtCap.dll]  <Hyperionics Technology LLC><1, 0, 0, 1>
    [D:\Program Files\HyperSnap\dxsnap.dll]  <N/A><N/A>
[PID: 328][C:\Documents and Settings\Administrator\桌面\sreng2\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\winfinds.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\Program Files\HyperSnap\dxsnap.dll]  <N/A><N/A>
    [D:\Program Files\HyperSnap\HSTxtCap.dll]  <Hyperionics Technology LLC><1, 0, 0, 1>
[PID: 3864][D:\Program Files\HyperSnap\HprSnap6.exe]  <Hyperionics Technology LLC><6, 3, 1, 0>
    [D:\Program Files\HyperSnap\ltdlg10n.dll]  <LEAD Technologies, Inc.><10.0.0.023>
    [D:\Program Files\HyperSnap\LTKRN10N.dll]  <LEAD Technologies, Inc.><10.0.0.024>
    [D:\Program Files\HyperSnap\LTDIS10N.dll]  <LEAD Technologies, Inc.><10.0.0.024>
    [D:\Program Files\HyperSnap\LTFIL10N.DLL]  <LEAD Technologies, Inc.><10.0.0.024>
    [D:\Program Files\HyperSnap\LTIMG10N.dll]  <LEAD Technologies, Inc.><10.0.0.018>
    [D:\Program Files\HyperSnap\ltefx10n.dll]  <LEAD Technologies, Inc.><10.0.0.018>
    [D:\Program Files\HyperSnap\lttwn10n.dll]  <LEAD Technologies, Inc.><10.0.0.024>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [D:\Program Files\HyperSnap\HprRes6.dll]  <Hyperionics Technology LLC><6, 3, 1, 0>
    [C:\Program Files\Internet Explorer\PLUGINS\system.sys]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\WinHook.sys]  <N/A><N/A>
    [C:\Program files\Internet Explorer\PLUGINS\new123.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [D:\Program Files\HyperSnap\HSTxtCap.dll]  <Hyperionics Technology LLC><1, 0, 0, 1>
    [D:\Program Files\HyperSnap\dxsnap.dll]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\IEXPLORE.Sys]  <N/A><N/A>
    [C:\WINDOWS\system32\CCG2.DLL]  <N/A><N/A>
    [C:\Program Files\Internet Explorer\PLUGINS\system32.sys]  <N/A><N/A>
    [C:\WINDOWS\system32\winfinds.dll]  <N/A><N/A>
gototop
 

[D:\Program Files\HyperSnap\LFFAX10N.DLL]  <LEAD Technologies, Inc.><10.0.0.018>
    [D:\Program Files\HyperSnap\LFCMP10N.DLL]  <LEAD Technologies, Inc.><10.0.0.024>
    [D:\Program Files\HyperSnap\LFTIF10N.DLL]  <LEAD Technologies, Inc.><10.0.0.022>
    [D:\Program Files\HyperSnap\LFLMB10N.DLL]  <LEAD Technologies, Inc.><10.0.0.011>
    [D:\Program Files\HyperSnap\LFBMP10N.DLL]  <LEAD Technologies, Inc.><10.0.0.013>
    [D:\Program Files\HyperSnap\LFPCX10N.DLL]  <LEAD Technologies, Inc.><10.0.0.009>
[PID: 1204][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
[PID: 3688][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\VCDXP.IME]  <风清扬><4.00.950>
    [D:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll]  <Thunder Networking Technologies,LTD><6, 0, 0, 2>
    [C:\PROGRA~1\DESKAD~1\deskipn.dll]  <><1, 0, 0, 1>
    [C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [C:\WINDOWS\system32\SYNCOR11.DLL]  <SoundMAX><1.2.3>
    [C:\WINDOWS\2c3oc5e1.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\cn_spi32.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
gototop
 

看看我的SSM截图 一次贴不完分三张图

图一

附件附件:

下载次数:120
文件类型:image/pjpeg
文件大小:
上传时间:2006-8-25 13:31:25
描述:
预览信息:EXIF信息



gototop
 

看看我的SSM截图 一次贴不完分三张图

图二

附件附件:

下载次数:146
文件类型:image/pjpeg
文件大小:
上传时间:2006-8-25 13:32:07
描述:
预览信息:EXIF信息



gototop
 

看看我的SSM截图 一次贴不完分三张图


图三



请求帮助啊  我应该怎么做

附件附件:

下载次数:152
文件类型:image/pjpeg
文件大小:
上传时间:2006-8-25 13:33:11
描述:
预览信息:EXIF信息



gototop
 

System Safety Monitor老是提高警报啊

C:\Documents and Settings\Administrator\Local Settings\Temp\g0ld.com
C:\WINDOWS\explorer.exe
Windows Explorer (Microsoft Corporation)


C:\WINDOWS\system32\cmd.exe
Windows Command Processor (Microsoft Corporation)

C:\Program Files\Internet Explorer\iexplore.com
(uUCSUyiSdfw)


C:\WINDOWS\system32\cmd.exe

Windows Command Processor (Microsoft Corporation)


C:\WINDOWS\system32\conime.exe

Console IME (Microsoft Corporation)
gototop
 

哭 都上哪去了啊  请帮帮我~ 弄得快疯了
gototop
 
12345   3  /  5  页   跳转
页面顶部
Powered by Discuz!NT