[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><nhmxajkl.dll> []
<{17AC9076-C898-B098-D098-A18319080971}><C:\WINDOWS\system32\nhmxajkl.dll> []
<{4F4F0064-71E0-4f0d-0004-708476C7815F}><C:\WINDOWS\system32\midimapwl.dll> [Microsoft Corporation]
<{4F4F0064-71E0-4f0d-0005-708476C7815F}><C:\WINDOWS\system32\midimapzx.dll> [Microsoft Corporation]
<{4F4F0064-71E0-4f0d-0017-708476C7815F}><C:\WINDOWS\system32\midimaptl.dll> [Microsoft Corporation]
<{22023698-6984-8541-9654-698745012522}><C:\WINDOWS\system32\skqnbbib.dll> []
<{6A041F13-A111-12A3-B0CF-F99818AA68A6}><C:\WINDOWS\system32\zxmscwin.dll> []
<{35694105-5108-9405-3695-954187462153}><C:\WINDOWS\system32\mpwdcapi.dll> []
<{33512378-9874-5641-1025-985420368733}><C:\WINDOWS\system32\oswxcttb.dll> []
<{14698742-2059-3025-9058-954023874141}><C:\WINDOWS\system32\jkhxaklo.dll> []
<{35671234-7890-ABCD-CDEF-567801237653}><C:\WINDOWS\system32\yxcschlp.dll> []
<{57FD640A-158F-48AC-FD14-1597F14A9775}><C:\WINDOWS\system32\mndsesrv.dll> []
<{4A069845-2036-6084-9054-6087502480A4}><C:\WINDOWS\system32\ozfydbyt.dll> []
<{3C648541-1025-9650-9057-6541258720C3}><C:\WINDOWS\system32\mndhcdwd.dll> []
<{2D698451-2015-6358-9871-2015987452D2}><C:\WINDOWS\system32\apzhbtde.dll> []
<midimapwl><C:\WINDOWS\system32\midimapwl.dll> [Microsoft Corporation]
<midimaptl><C:\WINDOWS\system32\midimaptl.dll> [Microsoft Corporation]
<midimapzx><C:\WINDOWS\system32\midimapzx.dll> [Microsoft Corporation]
C:\WINDOWS\system32\ccwle080307.exe
<"D:\Program Files\Rising\Rav\CCenter.exe"><N/A>
[File Replication Service / Ntfrs][Running/Auto Start]
<C:\WINDOWS\system32\ntfrs.exe><Microsoft Corporation>
[IIS Manager / IIS Manager ][Stopped/Manual Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\1.tmp><N/A>
<\??\C:\WINDOWS\system32\drivers\oreans32.sys><N/A>
<system32\DRIVERS\snpstd3.sys><>
{14698742-2059-3025-9058-954023874141} <C:\WINDOWS\system32\jkhxaklo.dll, N/A>
[]
{17AC9076-C898-B098-D098-A18319080971} <C:\WINDOWS\system32\nhmxajkl.dll, N/A>
[]
{22023698-6984-8541-9654-698745012522} <C:\WINDOWS\system32\skqnbbib.dll, N/A>
[]
{2D698451-2015-6358-9871-2015987452D2} <C:\WINDOWS\system32\apzhbtde.dll, N/A>
[]
{33512378-9874-5641-1025-985420368733} <C:\WINDOWS\system32\oswxcttb.dll, N/A>
[]
{35671234-7890-ABCD-CDEF-567801237653} <C:\WINDOWS\system32\yxcschlp.dll, N/A>
[]
{35694105-5108-9405-3695-954187462153} <C:\WINDOWS\system32\mpwdcapi.dll, N/A>
[]
{3C648541-1025-9650-9057-6541258720C3} <C:\WINDOWS\system32\mndhcdwd.dll, N/A>
[]
{4A069845-2036-6084-9054-6087502480A4} <C:\WINDOWS\system32\ozfydbyt.dll, N/A>
[]
{57FD640A-158F-48AC-FD14-1597F14A9775} <C:\WINDOWS\system32\mndsesrv.dll, N/A>
[]
{6A041F13-A111-12A3-B0CF-F99818AA68A6} <C:\WINDOWS\system32\zxmscwin.dll, N/A>
楼主中木马群了,上面的都可能是可疑文件,瑞星的一个进程(CC***)可能也被感染了(可能清除病毒之后需要重装瑞星,否则会清除不彻底,最好是让他们帮你直接清除瑞星的启动删除瑞星文件.),可疑文件很多,建议去
http://bbs.ikaka.com/showforum-109.aspx发帖求助吧,那儿的版主专业些.