问题项目如下:
=================================
注册表
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RavMonS><C:\WINDOWS\soni.exe> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\aetsprov]
<N/A><C:\WINDOWS\system32\regsvr32.exe /s C:\WINDOWS\system32\aetsprov.dll> [File is missing]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\blphcgh8j0e939.scr> [File is missing]
==================================
服务
[Ias / Ias][Stopped/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\ias.dll><N/A>
[WbWin / WbWin][Stopped/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\avtapit.dll><N/A>
==================================
驱动程序
[acgum / acgum][Stopped/Boot Start]
<\SystemRoot\system32\drivers\acgum.sys><N/A>
[Apcdli / Apcdli][Stopped/Auto Start]
<\??\C:\Program Files\Microsoft Office\SYSTEM\apcdli.sys><N/A>
[cdnprot / cdnprot][Stopped/Boot Start]
<\SystemRoot\system32\drivers\cdnprot.sys><N/A>
[dnsw / dnsww][Stopped/Boot Start]
<\SystemRoot\system32\drivers\dnsww.syss><N/A>
[nujl / nujld][Stopped/Boot Start]
<\SystemRoot\system32\drivers\nujld.sys><N/A>
[tgvkg / tgvkg][Stopped/Boot Start]
<\SystemRoot\system32\drivers\tgvkg.sys><N/A>
[zydwo / zydwo][Stopped/Boot Start]
<\SystemRoot\system32\drivers\zydwo.sys><N/A>
==================================
浏览器加载项
[网站排名工具条BHO]
{489873CE-F3E1-44A3-8E89-04BE26BE4446} <C:\Program Files\zzToolBar\Toolbar_bho.dll, N/A>
[CdnForIE Class]
{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, N/A>
[网站排名工具条]
{0A1230F1-EB52-4CA3-9D34-DE2ABC2EED35} <C:\Program Files\zzToolBar\ToolBand.dll, N/A>
[网站排名工具条]
{0A1230F1-EB52-4CA3-9D34-DE2ABC2EED35} <C:\Program Files\zzToolBar\ToolBand.dll, N/A>
[网站排名工具条BHO]
{489873CE-F3E1-44A3-8E89-04BE26BE4446} <C:\Program Files\zzToolBar\Toolbar_bho.dll, N/A>
[CdnForIE Class]
{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, N/A>
[Music]
{68F25C63-E798-4255-89CE-243AA3757638} <C:\Program Files\Yiqilai\tools\music.dll, N/A>
==================================
正在运行的进程
C:\Program Files\rhclh8j0e939\rhclh8j0e939.exe
C:\WINDOWS\system32\gmugql.dll
==================================
Winsock 提供者
Adobe Windows Driver over [MSAFD Tcpip [TCP/IP]]
C:\WINDOWS\system32\gmugql.dll(, N/A)
Adobe Windows Driver
C:\WINDOWS\system32\gmugql.dll(, N/A)
==================================