续上:
内核驱动
+ HKLM\System\CurrentControlSet\Services
BaseTDI
[A ] 13. c:\windows\system32\drivers\basetdi.sys
bcm4sbxp
[A ] 14. c:\windows\system32\drivers\bcm4sbxp.sys
BCMModem
[A ] 15. c:\windows\system32\drivers\bcmsm.sys
FilterService
[A ] 16. c:\windows\system32\drivers\lvuvcflt.sys
HOOKAPI
[A ] 17. c:\program files\rising\rav\hookapi.sys
HookCont
[A ] 18. c:\windows\system32\drivers\hookcont.sys
HookNtos
[A ] 19. c:\windows\system32\drivers\hookntos.sys
HookReg
[A ] 20. c:\windows\system32\drivers\hookreg.sys
HookSys
[A ] 21. c:\windows\system32\drivers\hooksys.sys
HookUrl
[A ] 22. c:\program files\rising\rfw\hookurl.sys
ialm
[A ] 23. c:\windows\system32\drivers\ialmnt5.sys
Lvckap
[A ] 24. c:\windows\system32\drivers\lvckap.sys
lvmvdrv
[A ] 25. c:\windows\system32\drivers\lvmvdrv.sys
LVPrcMon
[A ] 26. c:\windows\system32\drivers\lvprcmon.sys
LVUSBSta
[A ] 27. c:\windows\system32\drivers\lvusbsta.sys
LVUVC
[A ] 28. c:\windows\system32\drivers\lvuvc.sys
npkcrypt
[A ] 29. d:\program files\tencent\qq2007\npkcrypt.sys
OMCI
[A ] 30. c:\windows\system32\drivers\omci.sys
RfwBase
[A ] 31. c:\windows\system32\drivers\rfwbase.sys
RsAntiSpyware
[A ] 32. c:\windows\system32\drivers\rsboot.sys
RsFwDrv
[A ] 33. c:\program files\rising\rfw\rsfwdrv.sys
RsNTGDI
[A ] 34. c:\windows\system32\drivers\rsntgdi.sys
Secdrv
[A ] 35. c:\windows\system32\drivers\secdrv.sys
STAC97
[A ] 36. c:\windows\system32\drivers\stac97.sys
VDFltIp
[A ] 37. c:\windows\system32\drivers\vdfltip.sys
{6080A529-897E-4629-A488-ABA0C29B635E}
[A ] 38. c:\windows\system32\drivers\ialmsbw.sys
{D31A0762-0CEB-444e-ACFF-B049A1F6FE91}
[A ] 39. c:\windows\system32\drivers\ialmkchw.sys
+ 系统登陆自运行
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
igfxcui
[AM] 40. c:\windows\system32\igfxsrvc.dll
+ IE浏览器加载模块
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper
Objects
{01443AEC-0FD1-40fd-9C87-E93D1494C233}
[AM] 41. d:\program files\迅雷\comdlls\tdatonce_now.dll
{0D42E1BD-09DD-4873-A826-9C7E793EB7B6}
[AM] 42. d:\program files\迅雷\components\resworker\dsiehelper.dll
{889D2FEB-5411-4565-8998-1DD2C5261283}
[AM] 43. d:\program files\迅雷\comdlls\xunleibho_now.dll
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
Exec
[A ] 44. d:\program files\迅雷\thunder.exe
Script
[A ] 45. c:\windows\web\related.htm
oèÝ»®þbbs.ikaka.comsPo¨þ&dec