瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

123456   3  /  6  页   跳转

[求助] 莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

回复:莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

我的360阿什么的都无故本删...

下载杀毒软件没用,一打开就消失了
gototop
 

回复:莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

8楼的可以不被删除


是JAVAHC病毒

楼主看看能否打开该网页
专杀工具:http://www.duba.net/zhuansha/259.shtml
gototop
 

回复:莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

http://www.namipan.com/index.php

上面这地址,去选择标准上传,将日志发那去

然后给正确的链接地址

快给日志,别磨蹭了
百年以后,你的墓碑旁 刻着的名字不是我
gototop
 

回复 22F aaccbbdd 的帖子

不可以
gototop
 

回复 23F 天月来了 的帖子

不行阿,每次一到25%就掉回14%
gototop
 

回复 22F aaccbbdd 的帖子

一打开就变成http://www.yahoo.cn/?loop=true
gototop
 

回复:莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

[CODE]

2009-07-22,16:18:03

System Repair Engineer 2..6..12..1018
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <360Safetray><C:\Program Files\360safe\safemon\360Tray.exe /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    <360Safebox><"C:\Program Files\360Safebox\safeboxTray.exe" /r>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    <runeip><"G:\新建文件夹\rstray.exe" /startup>  [File is missing]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    <KKDelay><G:\新建文件夹\RunOnce.exe>  [(Verified)Beijing Rising Information Technology Corporation Limited]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon,>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{762D618C-E2CB-4217-8275-03302A93073F}><C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon>  []
    <{B8898C49-7B3A-4306-A9EF-8E186EDEE5EA}><C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll>  []
    <{B2780DCE-0B89-4886-9D4B-8810DE6239AD}><C:\WINDOWS\fonts\bzMtuqTck9.fon>  []
    <{76B9BA7A-81D0-4979-8598-8471F2AB5186}><C:\WINDOWS\system32\76B9BA7A.dll>  []
    <{22EEBD06-A251-44C3-BB16-426025319471}><C:\WINDOWS\system32\e999G49bN.dll>  []
    <{CEBB8F8A-308B-43E9-9789-B6FD6BE1BD97}><C:\WINDOWS\system32\v54M9wWBuNGTf2m.dll>  []
    <{0CF2A461-4E55-4A3F-8375-97982911BBF0}><C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon>  []
    <{9726072A-8039-4958-B609-565CF7A16B38}><C:\WINDOWS\system32\JPccCJnKygDdp3.dll>  []
    <{704C3595-DB85-40F6-A601-8D6F346907BD}><C:\WINDOWS\system32\704C3595.dll>  []
    <{15882A2F-A06D-486E-8958-E84C86CBF273}><C:\WINDOWS\fonts\fyrwJf5Qfhh.fon>  []
    <{0623DE09-E49D-4695-AA24-88BA7B58A395}><C:\WINDOWS\fonts\xPjWNGd8cERq.fon>  []
    <{5C901F36-6395-4667-AF85-B1B64AD3693F}><C:\WINDOWS\system32\XatgKbDb3Yxc.dll>  []
    <{37C5D66A-8B1B-4545-8112-3751194F6A4A}><C:\WINDOWS\system32\taNjsFa2tT2Dh.dll>  []
    <{23DA65D2-C696-4EE4-BEE8-B4841DEC3E30}><C:\WINDOWS\system32\ndxq9awMc.dll>  []
    <{C1606DC4-C352-4B1F-A0B5-52DF3204E05D}><C:\WINDOWS\system32\up9fEkYRsKHT.dll>  []
    <{E4814792-EFA3-4C20-93D0-8B130A59F9A8}><C:\WINDOWS\system32\E4814792.dll>  []
    <{6C9D7D87-F357-42BF-B5EE-84BEA0C94352}><C:\WINDOWS\fonts\QVsqUWphY6xa.fon>  []
    <{1055CA44-51F8-486B-8CBD-DC7AD4213F1E}><C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon>  []
    <{4356A0F0-2E1B-4AA8-B9A7-C5CAC40C7BC8}><C:\Documents and Settings\Administrator\Application Data\D3.dll>  []
    <{71C4F360-FF1E-413E-B17A-0CA267A78E97}><C:\WINDOWS\system32\qB5BKZy7vR5m.dll>  []
    <{CD95107F-52A5-42A4-9914-18949993E798}><C:\WINDOWS\fonts\tY5UFS434YYd.fon>  []
    <{9D3E893F-55DA-42BF-94EF-B634AB358A24}><C:\WINDOWS\system32\wadSSw5k.dll>  []
    <{08223B03-1B38-4A33-A83A-A4D3CC1D6E4E}><C:\WINDOWS\system32\08223B03.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{7C16B06B-8D27-38D2-5AF4-E38D27D27C16}><C:\WINDOWS\system32\RWBGLQ.dll>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5c386e54-d4b0-2905-2905-e5c1f7edd34a}]
    <N/A><C:\WINDOWS\system32\utovbti\lsass.exe /s>  []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
    <N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <egui><; >  [N/A]
    <FixCamera><; C:\WINDOWS\FixCamera.exe>  []
    <NMGameX_AutoRun><; C:\WINDOWS\system32\Rundll32.exe NMGameX.dll,LiveProcess /aa>  [File is missing]
    <QvodPlayer><; "C:\Program Files\QvodPlayer\QvodPlayer.exe" -autorun>  [Shenzhen QVOD Technology Co.,Ltd]
    <snp325><; C:\WINDOWS\vsnp325.exe>  []
    <SoundMan><; SOUNDMAN.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <SpeedNet><; >  [N/A]
    <tsnp325><; C:\WINDOWS\tsnp325.exe>  []

==================================
启动文件夹
N/A

==================================
服务
[Ati HotKey Poller / Ati HotKey Poller][Stopped/Disabled]
  <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[ATI Smart / ATI Smart][Stopped/Disabled]
  <C:\WINDOWS\system32\ati2sgag.exe><>
[Windows Presentation Foundation Font Cache 3.0.0.0 / FontCache3.0.0.0][Stopped/Manual Start]
  <C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe><Microsoft Corporation>
[Windows CardSpace / idsvc][Stopped/Disabled]
  <"C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"><Microsoft Corporation>
[McAfee Framework Service / McAfeeFramework][Running/Auto Start]
  <"G:\Common Framework\FrameworkService.exe" /ServiceStart><McAfee, Inc.>
[McAfee McShield / McShield][Running/Auto Start]
  <"G:\杀毒\Mcshield.exe"><McAfee, Inc.>
[McAfee Task Manager / McTaskManager][Running/Auto Start]
  <"G:\杀毒\VsTskMgr.exe"><McAfee, Inc.>
[Net.Tcp Port Sharing Service / NetTcpPortSharing][Stopped/Disabled]
  <"C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"><Microsoft Corporation>

==================================
驱动程序
[Mobinex Virtual Webcam - 9You, WDM Video Capture / 9you][Running/Auto Start]
  <system32\DRIVERS\9you.sys><Windows (R) 2000 DDK provider>
[aaatimeo / aaatimeo][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\aaatimeo.sys><Microsoft Corporation>
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[AFAMgt / AFAMgt][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\afamgt.sys><Adaptec, Inc.>
[ahcix86 / ahcix86][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ahcix86.sys><ATI Technologies Inc.>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[AliIde / AliIde][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
[AMD AGP Bus Filter Driver / amdagp][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\amdagp.sys><Advanced Micro Devices, Inc.>
[amdbusdr / amdbusdr][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\amdbusdr.sys><AMD>
[AMD EIDE 驱动程衼E / amdeide][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\AmdEide.sys><AMD>
[AMD K8 Processor Driver / AmdK8][Stopped/Manual Start]
  <System32\DRIVERS\amdk8.sys><Advanced Micro Devices>
[SiI-3112 SATALink  Controller / ASH1205][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ASH1205.sys><Silicon Image, Inc.>
[ata1200a / ata1200a][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ata1200a.sys><Adaptec, Inc.>
[ati2mtag / ati2mtag][Running/Manual Start]
  <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[atiide / atiide][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\atiide.sys><ATI Technologies Inc.>
[ATSpy / ATSpy][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\ATSpy.sys><N/A>
[Promise driver accelerator / bb-run][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\bb-run.sys><Promise Technology, Inc.>
[DELL CERC SATA 1.5/6ch RAID Miniport Driver / cercsr6][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\cercsr6.sys><Adaptec, Inc.>
[CmdIde / CmdIde][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
[Cpq32fs2 / Cpq32fs2][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\Cpq32fs2.sys><Hewlett-Packard Company>
[Promise Removable Disk Control Driver / dontgo][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\DontGo.sys><Promise Technology, Inc.>
[EagleNT / EagleNT][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\EagleNT.sys><N/A>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start]
  <system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[fttxr52P / fttxr52P][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\fttxr52P.sys><Promise Technology, Inc.>
[HpCISSm2 / HpCISSm2][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\HpCISSm2.sys><Hewlett-Packard Company>
[hptmv6 / hptmv6][Stopped/Boot Start]
  <\SystemRoot\system32\DRIVERS\hptmv6.sys><HighPoint Technologies, Inc.>
[hvmgc / hvmgc][Running/Boot Start]
  <\SystemRoot\system32\drivers\pjofv.sys><N/A>
[Intel  RAID Controller / iaStor55][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\iaStor55.sys><Intel Corporation>
[Intel RAID  Controller / iaStor70][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\iaStor70.sys><Intel Corporation>
[IGALIVE / IGALIVE][Running/Auto Start]
  <\??\C:\Program Files\IGALIVE\IGALIVE.sys><N/A>
[IlvMoneyDRIVER53 / IlvMoneyDRIVER53][Stopped/Manual Start]
  <\??\G:\DNF外挂\M E1129\IlvMoney1129.sys><N/A>
[McAfee Inc. / mfeapfk][Running/Manual Start]
  <system32\drivers\mfeapfk.sys><McAfee, Inc.>
[McAfee Inc. / mfeavfk][Running/Manual Start]
  <system32\drivers\mfeavfk.sys><McAfee, Inc.>
[McAfee Inc. / mfebopk][Running/Manual Start]
  <system32\drivers\mfebopk.sys><McAfee, Inc.>
[McAfee Inc. / mfehidk][Running/Manual Start]
  <system32\drivers\mfehidk.sys><McAfee, Inc.>
[VSCore mferkdk / mferkdk][Running/System Start]
  <\??\G:\杀毒\mferkdk.sys><McAfee, Inc.>
[McAfee Inc. / mfetdik][Running/System Start]
  <system32\drivers\mfetdik.sys><McAfee, Inc.>
[mtlrd / mtlrd][Running/Auto Start]
  <\??\C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\wmp\mtlrd.sys><N/A>
[mv61xx / mv61xx][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\mv61xx.sys><Marvell Semiconductor, Inc.>
[mvSata / mvSata][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\mvsata.sys><Marvell Semiconductors Inc.>
[NTGDT / NTGDT][Running/System Start]
  <\??\C:\WINDOWS\system32\Drivers\NTGDT.SYS><N/A>
[nv / nv][Stopped/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[nvgts / nvgts][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\nvgts.sys><NVIDIA Corporation>
[NVIDIA nForce RAID Driver / nvrd32][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\nvrd32.sys><NVIDIA Corporation>
[pcidump / pcidump][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\pcidump.sys><N/A>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[ql2100 / ql2100][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ql2100.sys><QLogic Corporation>
[ql2200 / ql2200][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ql2200.sys><QLogic Corporation>
[QQGameProtect / QQGameProtect][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\QQGameProtect.sys><TENCENT>
[Feitian ROCKEY4 Device Service / ROCKEYNT][Running/Manual Start]
  <system32\DRIVERS\Rockey4.sys><Feitian Technologies Co., Ltd.>
[rr172x / rr172x][Stopped/Boot Start]
  <\SystemRoot\system32\DRIVERS\rr172x.sys><HighPoint Technologies, Inc.>
[rr174x / rr174x][Stopped/Boot Start]
  <\SystemRoot\system32\DRIVERS\rr174x.sys><HighPoint Technologies, Inc.>
[rr2340 / rr2340][Stopped/Boot Start]
  <\SystemRoot\system32\DRIVERS\rr2340.sys><HighPoint Technologies, Inc.>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Running/Manual Start]
  <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[SafeBoxKrnl / SafeBoxKrnl][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\SafeBoxKrnl.sys><360安全中心>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[sejt1 / sejt1][Stopped/Manual Start]
  <\??\G:\DNF外挂\8月29\AE\sejt.sys><N/A>
[SATALink External Device Filter / SiRemFil][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\SiRemFil.sys><Silicon Image, Inc.>
[SIS AGP Bus Filter / sisagp][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\sisagp.sys><Silicon Integrated Systems Corporation>
[sisraidx / sisraidx][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\sisraidx.sys><Silicon Integrated Systems Corp.>
[USB PC Camera (SNPSTD325) / SNP325][Running/Manual Start]
  <system32\DRIVERS\snp325.sys><Sonix Co. Ltd.>
[TAP-Win32 Adapter V8 / tap0801][Stopped/Manual Start]
  <system32\DRIVERS\tap0801.sys><The OpenVPN Project>
[TesDrvPt / TesDrvPt][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\TesDrvPt.sys><TENCENT>
[TesSafe / TesSafe][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\TesSafe.sys><N/A>
[ViBus / ViBus][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ViBus.sys><VIA Technologies, Inc.>
[videX32 / videX32][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\videX32.sys><VIA Technologies, Inc.>
[VIA SATA IDE Device Driver / ViPrt][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\ViPrt.sys><VIA Technologies, Inc.>
[VIA SATA IDE Hot-plug Driver / xfilt][Stopped/Disabled]
  <\SystemRoot\system32\DRIVERS\xfilt.sys><VIA Technologies,Inc>

==================================
浏览器加载项
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <F:\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[]
  {16B05A05-27C1-E38D-F49E-8D27C17C16B0} <C:\WINDOWS\system32\LQVAFK.dll, Microsoft Corporation>
[QQToolbar]
  {29CF293A-1E7D-4069-9E11-E39698D0AF95} <C:\Program Files\Tencent\QQToolbar\IEBar.dll, (Signed) TENCENT>
[scriptproxy]
  {7DB2D5A0-7241-4E79-B68D-6309F01C5231} <G:\杀毒\Scriptcl.dll, (Signed) McAfee, Inc.>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[卡卡上网安全助手]
  {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} <C:\WINDOWS\system32\UrlFilter.dll, (Signed) Beijing Rising Information Technology Co., Ltd.>
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[启动迅雷5]
  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <F:\Thunder\Thunder.exe, (Signed) Thunder Networking Technologies,LTD>
[QQToolbar]
  {29CF293A-1E7D-4069-9E11-E39698D0AF95} <C:\Program Files\Tencent\QQToolbar\IEBar.dll, (Signed) TENCENT>
[MMCPlayer Class]
  {05C1004E-2596-48E5-8E26-39362985EEB9} <C:\WINDOWS\Downloaded Program Files\MMCShell.dll, (Signed) Sohu.com Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx, (Signed) Adobe Systems, Inc.>
[XPPlayer Class]
  {F3E70CEA-956E-49CC-B444-73AFE593AD7F} <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.5871.223.(328).dll, (Signed) Xunlei Networking Technologies,LTD>
[ThunderAtOnce Class]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <F:\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[]
  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <, >
[]
  {16B05A05-27C1-E38D-F49E-8D27C17C16B0} <C:\WINDOWS\system32\LQVAFK.dll, Microsoft Corporation>
[]
  {2318C2B1-4965-11D4-9B18-009027A5CD4F} <, >
[QQToolbar]
  {29CF293A-1E7D-4069-9E11-E39698D0AF95} <C:\Program Files\Tencent\QQToolbar\IEBar.dll, (Signed) TENCENT>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <F:\Thunder\ComDlls\ThunderAgent_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[scriptproxy]
  {7DB2D5A0-7241-4E79-B68D-6309F01C5231} <G:\杀毒\Scriptcl.dll, (Signed) McAfee, Inc.>
[Microsoft Web 浏览器]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, (Signed) Microsoft Corporation>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[卡卡上网安全助手]
  {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} <C:\WINDOWS\system32\UrlFilter.dll, (Signed) Beijing Rising Information Technology Co., Ltd.>
[]
  {AA58ED58-01DD-4D91-8333-CF10577473F7} <, >
[]
  {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <, >
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx, (Signed) Adobe Systems, Inc.>
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[使用迅雷下载]
  <F:\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <F:\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
  <G:\QQ\QQ2008正式版\AddEmotion.htm, N/A>
gototop
 

回复:莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

==================================
正在运行的进程
[PID: 496 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 564 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 592 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\Ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4124]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
[PID: 636 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.3520 (xpsp_sp2_qfe.090206-1239)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
[PID: 648 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
[PID: 780 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
[PID: 860 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
[PID: 940 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [c:\windows\system32\COMRes.dll]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
[PID: 1020 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
[PID: 1080 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
[PID: 1352 / Administrator][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\v54M9wWBuNGTf2m.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\system32\XatgKbDb3Yxc.dll]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\system32\ndxq9awMc.dll]  [N/A, ]
    [C:\WINDOWS\system32\up9fEkYRsKHT.dll]  [N/A, ]
    [C:\WINDOWS\system32\E4814792.dll]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\system32\qB5BKZy7vR5m.dll]  [N/A, ]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\system32\wadSSw5k.dll]  [N/A, ]
    [C:\WINDOWS\system32\ZiCU.dll]  [N/A, ]
    [C:\WINDOWS\system32\RWBGLQ.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
    [C:\WINDOWS\system32\LQVAFK.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]
    [G:\杀毒\Scriptcl.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [F:\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 120]
    [F:\Thunder\Components\ResWorker\DsBho_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
    [F:\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [F:\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.34]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\dfshim.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\WINDOWS\system32\mscoree.dll]  [Microsoft Corporation, 2.0.50727.832 (QFE.050727-8300)]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [G:\杀毒\shext.dll]  [McAfee, Inc., 8.5.0.781]
    [G:\Q播\QvodPlayer\QvodBand.dll]  [Shenzhen QVOD Technology Co.,Ltd, 3, 0, 0, 0]
[PID: 1760 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
[PID: 1812 / SYSTEM][G:\Common Framework\FrameworkService.exe]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\nailog2.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [G:\Common Framework\naXML2_71.dll]  [N/A, ]
    [G:\Common Framework\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [G:\Common Framework\naCmnLib2_71.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\applib.dll]  [McAfee, Inc., 3.6.0.574]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [G:\Common Framework\0409\AgentRes.dll]  [McAfee, Inc., 3.6.0.574]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [G:\Common Framework\Logging.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\InternetManager.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\naInet.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\UserSpace.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\SecureFrameworkFactory.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\Management.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\cmalib.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\naPolicyManager.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\naisign2.DLL]  [N/A, ]
    [C:\WINDOWS\system32\epoPGPSDK.dll]  [PGP Corporation, 3.5.3]
    [G:\Common Framework\ScriptSubSys.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\UpdateSubSys.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\Scheduler.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\TCSubSys.dll]  [McAfee, Inc., 3.6.0.574]
[PID: 224 / SYSTEM][G:\杀毒\Mcshield.exe]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\LockDown.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\mytilus.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\mytilus2.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [G:\杀毒\RES0402\McShield.dll]  [McAfee, Inc., VSCORE.13.3.2.128]
    [G:\杀毒\FTL.Dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\naiann.dll]  [McAfee, Inc., 8.5.0.913]
    [G:\杀毒\VsEvntUI.dll]  [N/A, ]
    [G:\杀毒\NAEvent.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\shutil.dll]  [McAfee, Inc., 8.5.0.895]
    [G:\杀毒\wmain.dll]  [McAfee, Inc., 8.5.0.781]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [G:\Common Framework\GenEvtInf.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [G:\Common Framework\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [G:\Common Framework\SecureFrameworkFactory.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\杀毒\scriptsv.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [C:\Program Files\Common Files\McAfee\Engine\mcscan32.dll]  [McAfee, Inc., 5.2.00]
    [G:\杀毒\mfebopa.dll]  [McAfee, Inc., SYSCORE.13.3.0.149.x86]
    [G:\杀毒\mfehida.dll]  [McAfee, Inc., SYSCORE.13.3.0.149.x86]
    [G:\杀毒\mfeapfa.dll]  [McAfee, Inc., SYSCORE.13.3.0.149.x86]
    [G:\杀毒\mfeavfa.dll]  [McAfee, Inc., SYSCORE.13.3.0.149.x86]
[PID: 260 / SYSTEM][G:\杀毒\VsTskMgr.exe]  [McAfee, Inc., 8.5.0.913]
    [G:\杀毒\LockDown.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\mytilus2.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\mytilus.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\shutil.dll]  [McAfee, Inc., 8.5.0.895]
    [G:\杀毒\wmain.dll]  [McAfee, Inc., 8.5.0.781]
    [G:\杀毒\condl.dll]  [McAfee, Inc., 8.5.0.857]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [G:\杀毒\RES0402\McShield.dll]  [McAfee, Inc., VSCORE.13.3.2.128]
    [G:\杀毒\MIDUtil.Dll]  [McAfee, Inc., 8.5.0.148]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [G:\杀毒\BBCpl.dll]  [McAfee, Inc., 8.5.0.895]
    [G:\杀毒\coptcpl.dll]  [McAfee, Inc., 8.5.0.857]
    [G:\杀毒\EmCfgCpl.dll]  [McAfee, Inc., 8.5.0.781]
    [G:\杀毒\nvpcpl.dll]  [McAfee, Inc., 8.5.0.781]
    [G:\杀毒\ftcfg.dll]  [McAfee, Inc., 8.5.0.913]
    [G:\杀毒\OASCpl.dll]  [McAfee, Inc., 8.5.0.909]
    [G:\杀毒\QuarCpl.dll]  [McAfee, Inc., 8.5.0.913]
    [G:\杀毒\vsodscpl.dll]  [McAfee, Inc., 8.5.0.913]
    [G:\杀毒\VsEvntUI.dll]  [N/A, ]
    [G:\杀毒\NAEvent.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\ftl.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [G:\杀毒\vsupdcpl.dll]  [McAfee, Inc., 8.5.0.913]

接上面
gototop
 

回复:莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

[PID: 544 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
[PID: 960 / SYSTEM][G:\Common Framework\naPrdMgr.exe]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\naisign2.DLL]  [N/A, ]
    [C:\WINDOWS\system32\epoPGPSDK.dll]  [PGP Corporation, 3.5.3]
    [G:\Common Framework\naXML2_71.dll]  [N/A, ]
    [G:\Common Framework\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [G:\Common Framework\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [G:\Common Framework\nailog2.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\naCmnLib2_71.dll]  [McAfee, Inc., 3.6.0.574]
    [G:\Common Framework\applib.dll]  [McAfee, Inc., 3.6.0.574]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [G:\Common Framework\0409\AgentRes.dll]  [McAfee, Inc., 3.6.0.574]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [G:\杀毒\VsPlugin.dll]  [McAfee, Inc., 8.5.0.913]
[PID: 2224 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\System32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\WINDOWS\System32\COMRes.dll]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
[PID: 2232 / Administrator][C:\WINDOWS\system32\rundll32.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\WINDOWS\system32\LQVAFK.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
[PID: 3752 / Administrator][F:\Thunder\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5.8.6.607]
    [F:\Thunder\Program\BugReport.dll]  [Thunder Networking Technologies,LTD, 1, 4, 1, 20]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
    [F:\Thunder\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 3, 10, 72]
    [F:\Thunder\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 3, 3, 2, 325]
    [F:\Thunder\Program\mp.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 2]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [F:\Thunder\Program\asyn_frame.dll]  [Thunder Networking Technologies,LTD, 1, 3, 2, 28]
    [F:\Thunder\Program\ATL71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
    [F:\Thunder\Program\XLNet.Dll]  [Thunder Networking Technologies,LTD, 1, 5, 2, 25]
    [F:\Thunder\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 1, 1, 10]
    [F:\Thunder\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
    [F:\Thunder\Components\DownAndPlay\DownAndPlay.dll]  [, 1, 0, 12, 30]
    [F:\Thunder\Program\backend_agent.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 25]
    [F:\Thunder\Program\zlib1.dll]  [, 1.2.3]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
    [F:\Thunder\Program\ptl.dll]  [Thunder Networking Technologies,LTD, 3, 2, 2, 35]
    [F:\Thunder\Program\dl_peer_id.dll]  [Thunder Networking Technologies,LTD, 3, 1, 2, 3]
    [F:\Thunder\Program\xl_stat.dll]  [, 1, 1, 2, 6]
    [C:\WINDOWS\system32\up9fEkYRsKHT.dll]  [N/A, ]
    [F:\Thunder\Program\iTargetAD.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 35]
    [F:\Thunder\Program\p2p_upload.dll]  [Thunder Networking Technologies,LTD, 1,1,2,13]
    [C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx]  [Adobe Systems, Inc., 10,0,12,36]
    [F:\Thunder\Program\p2p.dll]  [Thunder Networking Technologies,LTD, 1,1,2,37]
    [F:\Thunder\Program\fs.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 13]
    [F:\Thunder\Program\xldc.dll]  [Thunder Networking Technologies,LTD, 4, 0, 2, 28]
    [F:\Thunder\Program\stream.dll]  [Thunder Networking Technologies,LTD, 2, 1, 2, 401]
    [F:\Thunder\Program\p2sp.dll]  [Thunder Networking Technologies,LTD, 1, 1, 2, 43]
    [F:\Thunder\Program\down_dispatcher.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 29]
    [G:\杀毒\Scriptcl.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [F:\Thunder\Program\p2p_local_res.dll]  [Thunder Networking Technologies,LTD, 1,1,2,18]
    [F:\Thunder\Program\al.dll]  [Thunder Networking Technologies,LTD, 1,1,2,23]
    [F:\Thunder\Program\xldcsubtask.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 13]
    [F:\Thunder\Components\InMedia\iEmbedShell.dll]  [ , 3, 4, 10, 117]
    [F:\Thunder\Components\InMedia\iEmbed19.dll]  [Thunder Networking Technologies,LTD, 3, 4, 10, 117]
    [F:\Thunder\Components\InMedia\PlayerHelper.dll]  [thunder, 1, 2, 7, 61]
    [F:\Thunder\Components\InMedia\XLIPC.DLL]  [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
    [F:\Thunder\Components\P4PClient\P4PClient.dll]  [Thunder Networking Technologies,LTD, 2, 2, 5, 70]
    [F:\Thunder\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 2, 5, 0, 90]
    [F:\Thunder\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 17, 0, 67]
    [F:\Thunder\Program\MSVCIRT.dll]  [Microsoft Corporation, 7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [F:\Thunder\Program\imdt.dll]  [Thunder Networking Technologies,LTD, 1.2.0.21]
    [F:\Thunder\Components\Security\ThunderSafe.dll]  [深圳市迅雷网络技术有限公司, 2, 1, 5, 99]
    [F:\Thunder\Components\Security\ConfigManager.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 0, 1]
    [F:\Thunder\Components\Security\SafeManager.dll]  [Xunlei Networking Technologies,LTD, 1, 0, 5, 20]
    [F:\Thunder\Components\Security\SafeStatistic.dll]  [Xunlei Networking Technologies,LTD, 1, 0, 0, 1]
    [F:\Thunder\Program\XLNetU.Dll]  [Thunder Networking Technologies,LTD, 1, 5, 1, 24]
    [F:\Thunder\Components\Community\audioCtrl.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 2]
    [F:\Thunder\Components\Community\xlaudio.dll]  [, 1, 0, 2, 4]
    [F:\Thunder\Program\xlvdt.dll]  [Thunder Networking Technologies,LTD, 1.0.2.6]
    [F:\Thunder\Plugins\XLSafeHost\XLSafeHost.dll]  [深圳市迅雷网络技术有限公司, 1, 2, 7, 87]
    [F:\Thunder\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 1, 7, 25]
    [F:\Thunder\Program\LiveUpdate.dll]  [Thunder Networking Technologies,LTD, 1, 2, 4, 26]
    [F:\Thunder\Program\emule_id.dll]  [, 1, 0, 2, 11]
    [F:\Thunder\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 19]
    [F:\Thunder\Components\InMedia\MediaAddin18.dll]  [Thunder Networking Technologies,LTD, 3, 1, 6, 81]
    [F:\Thunder\Components\Tips\TipsClient.dll]  [Thunder Networking Technologies,LTD, 2, 2, 14, 120]
    [F:\Thunder\Components\VPSHELL\VPSHELL.dll]  [迅雷网络, 4, 0, 0, 38]
    [F:\Thunder\Components\UserExperience\UserExperience.dll]  [Thunder Networking Technologies,LTD, 1, 0, 3, 5]
    [F:\Thunder\Components\ResWorker\DsXlCom.dll]  [, 1, 0, 0, 30]
    [F:\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [F:\Thunder\Components\ResWorker\MediaWorker.dll]  [Thunder Networking Technologies,LTD, 1, 2, 0, 22]
    [F:\Thunder\Components\Tips\XLIPC.DLL]  [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
    [F:\Thunder\Components\DownloadStat\DownloadStat.dll]  [Thunder Networking Technologies,LTD, 1, 4, 1, 6]
    [F:\Thunder\Program\bd.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 19]
[PID: 3304 / Administrator][c:\program files\internet explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [F:\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.34]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\LQVAFK.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]
    [C:\Program Files\Tencent\QQToolbar\IEBar.dll]  [TENCENT, 3, 1, 25, 11]
    [C:\Documents and Settings\Administrator\Application Data\TENCENT\QQToolbar\buttons\Toolbar.dll]  [TENCENT, 3, 1, 25, 11]
    [C:\Documents and Settings\Administrator\Application Data\TENCENT\QQToolbar\buttons\TBAddr.dll]  [Tencent, 3, 1, 17, 11]
    [G:\杀毒\Scriptcl.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [F:\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 120]
    [F:\Thunder\Components\ResWorker\DsBho_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
    [F:\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [C:\WINDOWS\system32\UrlFilter.dll]  [Beijing Rising Information Technology Co., Ltd., 6, 0, 0, 15]
    [G:\新建文件夹\UrlRule.dll]  [Beijing Rising Information Technology Co., Ltd., 1.0.0.15]
    [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1012]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
    [C:\WINDOWS\system32\up9fEkYRsKHT.dll]  [N/A, ]
    [C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx]  [Adobe Systems, Inc., 10,0,12,36]
[PID: 368 / Administrator][c:\program files\internet explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
    [C:\WINDOWS\system32\COMRes.dll]  [N/A, ]
    [F:\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.34]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\LQVAFK.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]
    [C:\Program Files\Tencent\QQToolbar\IEBar.dll]  [TENCENT, 3, 1, 25, 11]
    [C:\Documents and Settings\Administrator\Application Data\TENCENT\QQToolbar\buttons\Toolbar.dll]  [TENCENT, 3, 1, 25, 11]
    [C:\Documents and Settings\Administrator\Application Data\TENCENT\QQToolbar\buttons\TBAddr.dll]  [Tencent, 3, 1, 17, 11]
    [G:\杀毒\Scriptcl.dll]  [McAfee, Inc., VSCORE.13.3.2.128.x86]
    [F:\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 120]
    [F:\Thunder\Components\ResWorker\DsBho_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
    [F:\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
    [C:\WINDOWS\system32\UrlFilter.dll]  [Beijing Rising Information Technology Co., Ltd., 6, 0, 0, 15]
    [G:\新建文件夹\UrlRule.dll]  [Beijing Rising Information Technology Co., Ltd., 1.0.0.15]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
    [C:\WINDOWS\system32\up9fEkYRsKHT.dll]  [N/A, ]
[PID: 3728 / Administrator][G:\新建文件夹 (2)\新建文件夹\SREng老版本2.6.12.1018.EXE]  [1111, 2..6..12..1018]
    [C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon]  [N/A, ]
    [C:\WINDOWS\system32\loanoltrd.dll]  [N/A, ]
    [C:\Documents and Settings\Administrator\Application Data\D3.dll]  [N/A, ]
    [C:\WINDOWS\system32\mtlrd.dll]  [, 4.4.3.0]
    [C:\WINDOWS\fonts\tY5UFS434YYd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon]  [N/A, ]
    [C:\WINDOWS\fonts\QVsqUWphY6xa.fon]  [N/A, ]
    [C:\WINDOWS\system32\taNjsFa2tT2Dh.dll]  [N/A, ]
    [C:\WINDOWS\fonts\xPjWNGd8cERq.fon]  [N/A, ]
    [C:\WINDOWS\fonts\fyrwJf5Qfhh.fon]  [N/A, ]
    [C:\WINDOWS\system32\704C3595.dll]  [N/A, ]
    [C:\WINDOWS\system32\JPccCJnKygDdp3.dll]  [N/A, ]
    [C:\WINDOWS\system32\e999G49bN.dll]  [N/A, ]
    [C:\WINDOWS\system32\76B9BA7A.dll]  [N/A, ]
    [C:\WINDOWS\fonts\bzMtuqTck9.fon]  [N/A, ]
    [C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll]  [N/A, ]
    [C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon]  [N/A, ]
    [C:\WINDOWS\system32\up9fEkYRsKHT.dll]  [N/A, ]
    [C:\WINDOWS\system32\GameLink.dll]  [www.Easy2Game.com, 17, 2, 6, 8]

==================================
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
Easy2Game-TCPChain
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-UDPChain
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-UDPChain
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-TCPChain
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-TCPFilter
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-UDPFilter
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-UDPFilter
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
Easy2Game-TCPFilter
    C:\WINDOWS\system32\GameLink.dll(www.Easy2Game.com, Easy2Game Service Provider)
RSVP UDP Service Provider
    C:\WINDOWS\system32\ESPI11.dll(DYWT, ESPI)
RSVP TCP Service Provider
    C:\WINDOWS\system32\ESPI11.dll(DYWT, ESPI)

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
N/A

==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 592, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]

==================================
API HOOK
入口点错误:RegEnumValueA (危险等级: 高,  被下面模块所HOOK: C:\WINDOWS\system32\loanoltrd.dll)
入口点错误:RegEnumValueW (危险等级: 高,  被下面模块所HOOK: C:\WINDOWS\system32\loanoltrd.dll)
入口点错误:RegOpenKeyExA (危险等级: 高,  被下面模块所HOOK: C:\WINDOWS\system32\loanoltrd.dll)
入口点错误:CreateFileA (危险等级: 高,  被下面模块所HOOK: C:\WINDOWS\system32\loanoltrd.dll)
入口点错误:CreateFileW (危险等级: 高,  被下面模块所HOOK: C:\WINDOWS\system32\loanoltrd.dll)

==================================
隐藏进程
N/A

==================================


[/CODE]


接上面,这是内里面的东西
gototop
 

回复: 莪今天中了那什么数字+xeex的东西怎么解决阿!!!!!!!!!!!!!!!!!!

使用附件重启后

附件: SP2.rar (2009-7-22 18:07:37, 566.37 K)
该附件被下载次数 161




1.建议使用XDelBox(Xdelbox解压后运行)删除以下文件:(XDelBox1.8下载)
使用说明:(先勾选抑制再生)删除时复制所有要删除文件的路径,在待删除文件列表里点击右键选择从剪贴板导入不检查路径,导入后在要删除文件上点击右键,选择立刻重启删除,电脑会重启进入DOS界面进行删除操作。运行xdelbox前最好卸载所有可移动存储介质(包括U盘,MP3,手机存储卡等)。
 

注:
如XDELBOX不能使用,试试附件

附件: EasyDelete.rar (2009-7-22 18:07:37, 100.17 K)
该附件被下载次数 150



附件: c-_j_-x-_j.rar (2009-7-22 18:07:37, 375.76 K)
该附件被下载次数 146



c:\windows\system32\wadssw5k.dll
c:\windows\fonts\ty5ufs434yyd.fon
c:\windows\system32\utovbti\lsass.exe 
c:\windows\system32\qb5bkzy7vr5m.dll
c:\documents and settings\administrator\application data\d3.dll
c:\windows\fonts\bqgc5yhmsd4yd.fon
c:\windows\fonts\qvsquwphy6xa.fon
c:\windows\system32\e4814792.dll
c:\windows\system32\up9fekyrskht.dll
c:\windows\system32\ndxq9awmc.dll
c:\windows\system32\tanjsfa2tt2dh.dll
c:\windows\system32\xatgkbdb3yxc.dll
c:\windows\fonts\xpjwngd8cerq.fon
c:\windows\fonts\fyrwjf5qfhh.fon
c:\windows\system32\704c3595.dll
c:\windows\system32\jpcccjnkygddp3.dll
c:\windows\fonts\e4kaa97nsz8wj9uv.fon
c:\windows\system32\v54m9wwbungtf2m.dll
c:\windows\system32\e999g49bn.dll
c:\windows\system32\76b9ba7a.dll
c:\windows\fonts\bzmtuqtck9.fon
c:\windows\system32\qh6xx7vn48svpnk.dll
c:\windows\fonts\zefe48cw9emcfar.fon
c:\windows\fonts\e4kaa97nsz8wj9uv.fon,
c:\windows\system32\08223b03.dll
c:\windows\system32\drivers\pcidump.sys
c:\documents and settings\all users\application data\microsoft\media player\wmp\mtlrd.sys
c:\windows\system32\drivers\pjofv.sys
c:\windows\system32\loanoltrd.dll
c:\windows\system32\mtlrd.dll
c:\windows\system32\zicu.dll
 
2.删除重启后使用SREng修复下面各项:
 
    启动项目 -- 注册表之如下项删除:
[{9D3E893F-55DA-42BF-94EF-B634AB358A24}]    <C:\WINDOWS\system32\wadSSw5k.dll>
[{CD95107F-52A5-42A4-9914-18949993E798}]    <C:\WINDOWS\fonts\tY5UFS434YYd.fon>
[N/A]    <C:\WINDOWS\system32\utovbti\lsass.exe /s>
[{CD95107F-52A5-42A4-9914-18949993E798}]    <C:\WINDOWS\fonts\tY5UFS434YYd.fon>
[{71C4F360-FF1E-413E-B17A-0CA267A78E97}]    <C:\WINDOWS\system32\qB5BKZy7vR5m.dll>
[{4356A0F0-2E1B-4AA8-B9A7-C5CAC40C7BC8}]    <C:\Documents and Settings\Administrator\Application Data\D3.dll>
[{1055CA44-51F8-486B-8CBD-DC7AD4213F1E}]    <C:\WINDOWS\fonts\bQgc5yHMSD4yd.fon>
[{6C9D7D87-F357-42BF-B5EE-84BEA0C94352}]    <C:\WINDOWS\fonts\QVsqUWphY6xa.fon>
[{E4814792-EFA3-4C20-93D0-8B130A59F9A8}]    <C:\WINDOWS\system32\E4814792.dll>
[{C1606DC4-C352-4B1F-A0B5-52DF3204E05D}]    <C:\WINDOWS\system32\up9fEkYRsKHT.dll>
[{23DA65D2-C696-4EE4-BEE8-B4841DEC3E30}]    <C:\WINDOWS\system32\ndxq9awMc.dll>
[{37C5D66A-8B1B-4545-8112-3751194F6A4A}]    <C:\WINDOWS\system32\taNjsFa2tT2Dh.dll>
[{5C901F36-6395-4667-AF85-B1B64AD3693F}]    <C:\WINDOWS\system32\XatgKbDb3Yxc.dll>
[{0623DE09-E49D-4695-AA24-88BA7B58A395}]    <C:\WINDOWS\fonts\xPjWNGd8cERq.fon>
[{15882A2F-A06D-486E-8958-E84C86CBF273}]    <C:\WINDOWS\fonts\fyrwJf5Qfhh.fon>
[{704C3595-DB85-40F6-A601-8D6F346907BD}]    <C:\WINDOWS\system32\704C3595.dll>
[{9726072A-8039-4958-B609-565CF7A16B38}]    <C:\WINDOWS\system32\JPccCJnKygDdp3.dll>
[{0CF2A461-4E55-4A3F-8375-97982911BBF0}]    <C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon>
[{CEBB8F8A-308B-43E9-9789-B6FD6BE1BD97}]    <C:\WINDOWS\system32\v54M9wWBuNGTf2m.dll>
[{22EEBD06-A251-44C3-BB16-426025319471}]    <C:\WINDOWS\system32\e999G49bN.dll>
[{76B9BA7A-81D0-4979-8598-8471F2AB5186}]    <C:\WINDOWS\system32\76B9BA7A.dll>
[{B2780DCE-0B89-4886-9D4B-8810DE6239AD}]    <C:\WINDOWS\fonts\bzMtuqTck9.fon>
[{B8898C49-7B3A-4306-A9EF-8E186EDEE5EA}]    <C:\WINDOWS\system32\Qh6xX7VN48sVPnK.dll>
[{762D618C-E2CB-4217-8275-03302A93073F}]    <C:\WINDOWS\fonts\zEfE48cw9EmcFaR.fon>
注意该项[AppInit_DLLs]修改:把<C:\WINDOWS\fonts\E4kaa97Nsz8WJ9UV.fon,>修改为<>即清空
[{08223B03-1B38-4A33-A83A-A4D3CC1D6E4E}]    <C:\WINDOWS\system32\08223B03.dll>
 
    启动项目 -- 服务-- 驱动程序之如下项禁用:
[pcidump / pcidump]    <\??\C:\WINDOWS\system32\drivers\pcidump.sys>
[mtlrd / mtlrd]    <\??\C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\wmp\mtlrd.sys>
[hvmgc / hvmgc]    <\SystemRoot\system32\drivers\pjofv.sys>

    系统修复-- HOSTS文件--重置
 
**************以上分析报告由SREngLog分析助手提供******************
分析:小狮子
时间:2009-7-22
SREngLog分析助手 1.4 BY 草莽书生 (20090209 更新 BY 小金)
gototop
 
123456   3  /  6  页   跳转
页面顶部
Powered by Discuz!NT