瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 我的电脑可能中毒了,请高手帮忙看看。【求助】

12   2  /  2  页   跳转

我的电脑可能中毒了,请高手帮忙看看。【求助】


    [C:\Program Files\Winamp\Plugins\in_!mpg123.dll]  [Shibatch Software, 1, 0, 0, 0]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\Program Files\Winamp\Plugins\in_wave.dll]  [N/A, ]
    [C:\Program Files\Winamp\libsndfile.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_wm.dll]  [N/A, ]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Winamp\Plugins\in_vorbis.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_tara.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_vqf.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_zip.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_dshow.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_nsv.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\in_flic.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_lame.dll]  [MUKOLI, 1.6.3]
    [C:\Program Files\Winamp\Plugins\Out_AAC.dll]  [, 1, 5, 0, 0]
    [C:\Program Files\Winamp\id3lib.dll]  [http://www.id3lib.org/, 3.8.3]
    [C:\Program Files\Winamp\Plugins\out_filewrite.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_asio(dll).dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_ds.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_ds_ssrc.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_wave.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_wave_ssrc.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\out_disk.dll]  [Nullsoft, 5,3,4,1155]
    [C:\Program Files\Winamp\Plugins\out_sqr.dll]  [SqrSoft?, 1, 7, 5, 0]
    [C:\Program Files\Winamp\Plugins\out_ks36.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\dsp_omxw.dll]  [N/A, ]
    [C:\Program Files\Winamp\dsp_omxe.dll]  [Octiv Inc., 1, 5, 0, 0]
    [C:\Program Files\Winamp\Plugins\gen_tips.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_ff.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_ml.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_dash.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_nowplaying.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_bookmarks.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_history.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_local.dll]  [N/A, ]
    [C:\Program Files\Winamp\nde.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_playlists.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_disc.dll]  [N/A, ]
    [C:\Program Files\Winamp\primosdk.dll]  [Sonic Solutions, 3.6.36.500]
    [C:\Program Files\Winamp\PX.dll]  [Sonic Solutions, 3.6.36.500]
    [C:\WINDOWS\system32\PXDRV.DLL]  [Sonic Solutions, 1.01.95a]
    [C:\Program Files\Winamp\Plugins\ml_online.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_gusb_us.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_wire.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_transcode.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_pmp.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\pmp_ipod.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\pmp_njb.dll]  [N/A, ]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\Program Files\Winamp\plugins\in_zip\unrar.dll]  [N/A, ]
    [C:\Program Files\Winamp\plugins\in_zip\unacev2.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\pmp_p4s.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\pmp_usb.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_rg.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\ml_cue.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_MiniLyrics.dll]  [N/A, ]
    [C:\Program Files\Winamp\MiniLyrics\MiniLyrics.dll]  [N/A, ]
    [C:\Program Files\Nero\Nero 7\Nero Fast CD-DVD Burning Plug-in\NeroBurnPlugin.dll]  [Nero AG, 2, 0, 2, 6]
    [C:\Program Files\Nero\Nero 7\Nero Fast CD-DVD Burning Plug-in\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Nero\Nero 7\Nero Fast CD-DVD Burning Plug-in\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Winamp\Plugins\gen_context.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_dragndrop.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_find_on_disk.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_saveas.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_msn.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_tray.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_hotkeys.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_jumpex.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_timerestore.dll]  [N/A, ]
    [C:\Program Files\Winamp\Plugins\gen_cue.dll]  [N/A, ]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 17.0.54.0]
    [C:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 17.0.116.0]
    [C:\WINDOWS\system32\wpdshext.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\Audiodev.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
    [C:\Program Files\Unlocker\UnlockerCOM.dll]  [N/A, ]
    [C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll]  [Nero AG, 2, 7, 3, 2]
    [C:\Program Files\Nero\Nero 7\Nero BackItUp\MFC71U.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MFC71CHS.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\PROGRA~1\WINZIP\WZSHLSTB.DLL]  [WinZip Computing LP, 4.1 (32-bit)]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [C:\Program Files\TuneUp Utilities 2007\SDShelEx-win32.dll]  [TuneUp Software GmbH, 2.0.0.2]
    [C:\Program Files\TechSmith\SnagIt 8\SnagItShellExt.dll]  [TechSmith Corporation, 8.2.1.215]
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [C:\WINDOWS\system32\mp3infp.dll]  [win32lab.com, 2.54.5.0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\shellex.dll]  [Kaspersky Lab, 6.0.0.299]
    [C:\Program Files\Nero\Nero 7\Nero CoverDesigner\CoverEdExtension.dll]  [Nero AG, 2, 7, 3, 0]
    [C:\Program Files\Nero\Nero 7\Nero CoverDesigner\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Common Files\Autodesk shared\dwf common\DWFShellExtension.dll]  [Autodesk, Inc., 1.1.0.278]
    [C:\Program Files\7-Zip\7-zip.dll]  [N/A, ]
[PID: 1968][C:\Program Files\Maxthon2\Maxthon.exe]  [Maxthon International ltd., 2, 0, 1, 7022]
    [C:\Program Files\Maxthon2\mxpp.dll]  [Maxthon, 1, 0, 0, 12]
    [C:\Program Files\Maxthon2\MxSk.dll]  [Maxthon, 1, 0, 0, 104]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\Program Files\Maxthon2\MxProxy2.dll]  [, 1, 0, 0, 2473]
    [C:\Program Files\Maxthon2\MxFav.dll]  [Maxthon, 1, 0, 0, 9]
    [C:\Program Files\Maxthon2\maxzlib.dll]  [, 1.2.3]
    [C:\Program Files\Maxthon2\mxtool.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Maxthon2\mxfeedU.dll]  [, 1, 0, 45, 45]
    [C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL]  [Microsoft Corporation, 12.0.4518.1014]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]
    [C:\Program Files\Internet Explorer\ieproxy.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [d:\Thunder Network\Thunder\ComDlls\ThunderAgent_007.dll]  [Thunder Networking Technologies,LTD, 5, 0, 1, 14]
    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
    [C:\WINDOWS\system32\WINABCX.IME]  [PKUETI, 5.22.216]
    [C:\WINDOWS\system32\WNWB.IME]  [深圳世强软件开发部 www.wnwb.com , 2005, 7, 5, 1]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 17.0.116.0]
    [C:\Program Files\Common Files\Ahead\Lib\NeroDigitalExt.dll]  [Nero AG, 2, 0, 0, 8]
    [C:\Program Files\Common Files\Ahead\Lib\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Common Files\Ahead\Lib\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Common Files\Ahead\Lib\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MFC71CHS.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\mp3infp.dll]  [win32lab.com, 2.54.5.0]
    [C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 8.0.0.0]
    [C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.CHS]  [Adobe Systems, Inc., 8.0.0.0]
gototop
 


[PID: 2740][d:\Thunder Network\Thunder\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5, 5, 6, 274]
    [d:\Thunder Network\Thunder\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 14]
    [d:\Thunder Network\Thunder\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 12, 2, 56]
    [d:\Thunder Network\Thunder\Program\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 12, 2, 56]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [d:\Thunder Network\Thunder\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 8]
    [d:\Thunder Network\Thunder\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [d:\Thunder Network\Thunder\Program\iTargetAD.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 16]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 17.0.54.0]
    [d:\Thunder Network\Thunder\Components\DiagnoseHelper\DiagnoseHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
    [d:\Thunder Network\Thunder\Components\PortVerify\PortVerify.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [d:\Thunder Network\Thunder\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [d:\Thunder Network\Thunder\Components\DTAG\DTAG.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 2]
    [d:\Thunder Network\Thunder\Components\DTAG\ExtractMediaTag.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [d:\Thunder Network\Thunder\Program\LiveUpdate.dll]  [, 1, 0, 1, 17]
    [d:\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll]  [ , 1, 0, 0, 15]
    [d:\Thunder Network\Thunder\Components\InMedia\iEmbed08.dll]  [ , 3, 2, 0, 63]
    [d:\Thunder Network\Thunder\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 15]
    [d:\Thunder Network\Thunder\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 2, 1, 43]
    [d:\Thunder Network\Thunder\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 7]
    [d:\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 14]
    [d:\Thunder Network\Thunder\Components\VPSHELL\VPSHELL.dll]  [, 1, 1, 0, 4]
    [d:\Thunder Network\Thunder\Components\VPSHELL\VideoPicture.dll]  [XunLei, 1, 1, 0, 4]
    [d:\Thunder Network\Thunder\Components\Tips\TipsClient.dll]  [Thunder Networking Technologies,LTD, 2, 1, 1, 50]
    [d:\Thunder Network\Thunder\Plugins\TingTing\TingTing.dll]  [Thunder Networking Technologies,LTD, 1, 1, 1, 12]
    [d:\Thunder Network\Thunder\Plugins\BhoAdv\bho_adv.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.0]
    [d:\Thunder Network\Thunder\Plugins\ThunderKAV\ThunderKAV.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.17]
    [d:\Thunder Network\Thunder\Program\XLNet.Dll]  [Xunlei, 1, 1, 0, 6]
[PID: 2804][D:\Tools\霏凡抓图.exe]  [N/A, ]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 17.0.54.0]
    [C:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[PID: 3704][D:\Tools\SREng24\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.0.299]

==================================
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
API HOOK
RVA  错误: LoadLibraryA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF6849B25)
RVA  错误: LoadLibraryExA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF6849D67)
RVA  错误: LoadLibraryExW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF6849F0B)
RVA  错误: LoadLibraryW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF6849C49)
RVA  错误: GetProcAddress (危险等级: 高,  被下面模块所HOOK: Dest Addr: 0xF6849E8F)

==================================
隐藏进程
N/A

==================================


[/CODE]
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT