1   1  /  1  页   跳转

菜鸟求助``数字进程问题```

菜鸟求助``数字进程问题```

进程出现数字exe进程``即使关了机子也很卡``还原无效``难道就只有格式化了么``郁闷啊``
谁能帮我看看啥问题```[code]2009-11-01,17:02:57
System Repair Engineer 2.8.1.1279
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描
    计划任务
    Windows 安全更新检查
    API HOOK
    隐藏进程

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
    <QQ2009><"D:\Program Files\QQ2007\Bin\QQ.exe" /background>  [(Verified)Tencent Technology(Shenzhen) Company Limited]
    <msconfigs><C:\WINDOWS\system32\g2dxn.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <switch><c:\windows\system32\壁纸自动换.exe>  []
    <KernelFaultCheck><%systemroot%\system32\dumprep 0 -k>  [File is missing]
    <360Safetray><"C:\Program Files\360safe\safemon\360Tray.exe" /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    <Smapp><C:\Program Files\Analog Devices\SoundMAX\SMTray.exe>  [Analog Devices, Inc.]
    <msconfigs><C:\WINDOWS\system32\g2dxn.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf,C:\WINDOWS\Fonts\kb11165319.dll,C:\WINDOWS\Fonts\kb21165347.dll,C:\WINDOWS\Fonts\kb41165412.dll,C:\WINDOWS\Fonts\kb11165834.dll,C:\WINDOWS\Fonts\kb2116591.dll,C:\WINDOWS\Fonts\kb41165923.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{F9B6B005-901D-48c8-A35D-BA745F98FBD3}><C:\WINDOWS\Fonts\kb41165923.dll>  []
    <{C4BD9D5C-04CA-45E6-8539-98B07D99B6BC}><C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf>  []
    <{012AA32F-36E6-405F-9F3F-588E0AA73FBB}><C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf>  []
    <{30E05169-5E63-4038-9709-5FAD6E488ED2}><C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf>  []
    <{526EB425-7F56-4773-8D70-B8E45AA8E2B6}><C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur>  []
    <{7AE7870E-5223-4BFF-BFB7-0827A749DF0C}><C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf>  []
    <{87DE8A1A-96C5-4420-B222-EF998F697CE7}><C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf>  []
    <{84639C2D-CD75-4081-B515-329AFCECBF19}><C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur>  []
    <{122B901E-493F-4AD9-BC69-7DE8C3E52FCC}><C:\WINDOWS\system32\122B901E.dll>  []
    <{7CC109E5-B2FC-4FEE-AF04-74B2DCBD2540}><C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf>  []
    <{CD478099-014D-4B3A-A4BB-B518F1019BC7}><C:\WINDOWS\system32\SCEVFJRCmaB7.dll>  []
    <{93DA1E7D-7C46-4F90-8674-EC90511FCA72}><C:\WINDOWS\system32\CDuAUVkGy9.dll>  []
    <{B7F1BFDC-4B6C-4E2F-AF7A-638D2D47802C}><C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf>  []
    <{827E2FB4-1047-43DE-848D-E12BB0C97AAB}><C:\WINDOWS\Tasks\SbrmpxjdCrgRAFhz4gHh.inf>  []
    <{1719B301-B494-4185-9379-242461F9CF02}><C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf>  []
    <{C3634CF6-FD22-4F3D-BBB4-AE36174A868C}><C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf>  []
    <{8708994F-1758-4C2C-9A3F-FA22D6CCCB41}><C:\WINDOWS\fonts\A97CRaCB.fon>  []
    <{CA74B10B-4DDF-4ee0-966F-7B232A45068E}><C:\WINDOWS\Fonts\kb11165834.dll>  []
    <{C3BDE61A-DB4C-4a68-8A01-CD4A29B88974}><C:\WINDOWS\Fonts\kb2116591.dll>  []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Publisher]
    <SysTray><C:\WINDOWS\system32\stobject.dll>  [(Verified)Microsoft Windows Publisher]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
    <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
    <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
    <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
    <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
    <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
    <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
    <浏览器自定义组件><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Control Panel\Desktop]
    <SCRNSAVE.EXE><C:\WINDOWS\system32\ssmypics.scr>  [(Verified)Microsoft Windows Publisher]
==================================
启动文件夹
N/A
==================================
服务
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
  <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[SoundMAX Agent Service / SoundMAX Agent Service (default)][Running/Auto Start]
  <C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe><Analog Devices, Inc.>
[主动防御 / ZhuDongFangYu][Running/Auto Start]
  <"C:\Program Files\360safe\deepscan\zhudongfangyu.exe"><360安全中心>
==================================
驱动程序
[360SelfProtection / 360SelfProtection][Running/System Start]
  <system32\drivers\360SelfProtection.sys><360安全中心>
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[aeaudio / aeaudio][Running/Manual Start]
  <system32\drivers\aeaudio.sys><Andrea Electronics Corporation>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Stopped/Manual Start]
  <system32\drivers\ALCXWDM.SYS><N/A>
[AliIde / AliIde][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
[ati2mtag / ati2mtag][Running/Manual Start]
  <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[BFSDRV / BFSDRV][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\bfsdrv.sys><360安全中心>
[BREGDRV / BREGDRV][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\bregdrv.sys><360安全中心>
[CmdIde / CmdIde][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
[e2eCap - WDM Video Capture / E2ECAP][Running/Auto Start]
  <system32\DRIVERS\e2ecap.sys><e2eSoft>
[EfiSystemMon / EfiMon][Running/System Start]
  <System32\Drivers\Efimon.sys><奇虎网>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start]
  <system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[HookPort / HookPort][Running/Boot Start]
  <\SystemRoot\System32\Drivers\Hookport.sys><360安全中心>
[M5289 / M5289][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\m5289.sys><ULi Electronics Inc.>
[npkcrypt / npkcrypt][Stopped/Auto Start]
  <\??\C:\Program Files\QQ2006\npkcrypt.sys><N/A>
[nv / nv][Stopped/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Quantum DeepScanner Servers / qutmdserv][Running/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\qutmdrv.sys><360安全中心>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[smwdm / smwdm][Running/Manual Start]
  <system32\drivers\smwdm.sys><Analog Devices, Inc.>
[TCP/IP Protocol Driver / Tcpip][Running/System Start]
  <system32\DRIVERS\tcpip.sys><Microsoft Corporation>
[ULi Based Ethernet NT Driver / ULI5261][Running/Manual Start]
  <system32\DRIVERS\ULILAN.SYS><ULi Electronics Inc.>
[ULi M526X Ethernet NT Driver / ULI5261XP][Stopped/Manual Start]
  <system32\DRIVERS\ULILAN51.SYS><ULi Electronics Inc.>
[ULi AGP Bus Filter Driver / uliagpkx][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\agpkx.sys><ULi Electronics Inc.>
[vb / vb][Stopped/Manual Start]
  <\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~15942.ex><N/A>
[VMware Pointing Device / vmmouse][Running/Manual Start]
  <system32\DRIVERS\vmmouse.sys><VMware, Inc.>
[xx / xx][Stopped/Manual Start]
  <\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~12792.ex><N/A>

用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; QQDownload 1.7; TheWorld)
分享到:
gototop
 

回复:菜鸟求助``数字进程问题```

==================================
浏览器加载项
[Thunder Browser Helper]
  {00000000-12C8-4305-82F9-43058F20E8D2} <C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[QQCycloneHelper Class]
  {00000000-12C9-4305-82F9-43058F20E8D2} <C:\Program Files\Tencent\QQDownload\QQIEHelper01.dll, (Signed) 腾讯公司>
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
[Thunder Browser Helper]
  {00000000-12C8-4305-82F9-43058F20E8D2} <C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[QQCycloneHelper Class]
  {00000000-12C9-4305-82F9-43058F20E8D2} <C:\Program Files\Tencent\QQDownload\QQIEHelper01.dll, (Signed) 腾讯公司>
[ThunderAtOnce Class]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <C:\Program Files\Thunder\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[360SafeLive]
  {87515F61-A66C-4319-A0E0-D416CB8059E3} <C:\Program Files\360safe\Safelive.dll, (Signed) >
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx, (Signed) Adobe Systems, Inc.>
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[&使用超级旋风下载]
  <C:\Program Files\Tencent\QQDownload\geturl.htm, N/A>
[&使用超级旋风下载全部链接]
  <C:\Program Files\Tencent\QQDownload\getAllurl.htm, N/A>
[使用迅雷下载]
  <C:\Program Files\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <C:\Program Files\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
  <D:\Program Files\QQ2007\Bin\AddEmotion.htm, N/A>
==================================
正在运行的进程
[PID: 552 / SYSTEM][\SystemRoot\System32\smss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 612 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 640 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\Ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4175]
[PID: 684 / SYSTEM][C:\WINDOWS\system32\services.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 696 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 840 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4176]
    [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2512]
    [C:\WINDOWS\system32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2522]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 868 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 980 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1076 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\System32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1144 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1368 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1384 / SYSTEM][C:\Program Files\360safe\deepscan\zhudongfangyu.exe]  [360安全中心, 1, 0, 0, 1007]
    [C:\Program Files\360safe\deepscan\CloudCom2.dll]  [360安全中心, 3, 0, 0, 1006]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\Program Files\360safe\deepscan\heavygate.dll]  [360安全中心, 3, 6, 11, 0]
    [C:\Program Files\360safe\SoftMgr\360SoftMgrS.dll]  [奇虎网, 2, 1, 5, 1005]
    [C:\Program Files\360safe\deepscan\qutmload.dll]  [360.CN, 1, 0, 0, 1001]
[PID: 1692 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 2020 / SYSTEM][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe]  [Analog Devices, Inc., 3, 2, 6, 0]
[PID: 916 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\System32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 252 / SYSTEM][C:\WINDOWS\system32\wbem\wmiprvse.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1456 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4176]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2512]
    [C:\WINDOWS\system32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2522]
    [C:\WINDOWS\system32\ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4175]
[PID: 956 / Administrator][C:\WINDOWS\Explorer.EXE]  [(Verified) Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\system32\122B901E.dll]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\system32\SCEVFJRCmaB7.dll]  [N/A, ]
    [C:\WINDOWS\system32\CDuAUVkGy9.dll]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\SbrmpxjdCrgRAFhz4gHh.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\Fonts\kb11165834.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\system32\browselc.dll]  [Microsoft Corporation, 6.00.2600.0000]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
[PID: 1868 / Administrator][C:\Program Files\Analog Devices\SoundMAX\SMTray.exe]  [Analog Devices, Inc., 3, 2, 18, 0]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
[PID: 1968 / Administrator][C:\WINDOWS\system32\Kbkfg.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
[PID: 1728 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
[PID: 1564 / Administrator][D:\Program Files\QQ2007\Bin\QQ.exe]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\Common.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\WS2_32.dll]  [N/A, ]
    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL]  [Microsoft Corporation, 8.00.50727.4053]
    [D:\Program Files\QQ2007\Bin\KernelUtil.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\GF.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\xGraphic32.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\AppUtil.dll]  [Tencent, 1, 32, 1060, 0]
    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.5581 (xpsp_sp3_qfe.080415-1416)]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [D:\Program Files\QQ2007\Bin\TXPFProxy.dll]  [Tencent, 1, 32, 1060, 0]
gototop
 

回复:菜鸟求助``数字进程问题```

[D:\Program Files\QQ2007\Plugin\Com.Tencent.QQShow\Bin\FlashAvatarDll.dll]  [Tencent, 1.26.1.26]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx]  [Adobe Systems, Inc., 9,0,115,0]
    [D:\Program Files\QQ2007\Bin\IM.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\KernelMisc.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\AppMisc.dll]  [N/A, ]
    [D:\Program Files\QQ2007\Bin\AppCtrl.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\ChatFrame.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\ConfigCenter.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\CustomFace.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\LongCnn.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\ContactInfoFrame.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\MsgMgr.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\SkinMgr.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\QInterLive.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\SystemMsg.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.PaiPai\Bin\PaiPai.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.AudioVideo\Bin\AudioVideo.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.MMOG\Bin\MMOG.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.Soso\Bin\Soso.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.Qzone\Bin\Qzone.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.Weather\Bin\Weather.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.SoBar\Bin\SoBar.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.PaiPaiGift\Bin\PaiPaiGift.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.QQLive\Bin\QQLive.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.QQMusic\Bin\QQMusic.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\Com.Tencent.taotao\Bin\Taotao.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\MainFrame.dll]  [Tencent, 1, 32, 1060, 0]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
    [C:\Program Files\Common Files\Tencent\TXSSO\Bin\SSOPlatform.dll]  [Tencent, 1.1.1.13]
    [C:\Program Files\Common Files\Tencent\TXSSO\Bin\SSOCommon.DLL]  [Tencent, 1.1.1.3]
    [D:\Program Files\QQ2007\Bin\TaskTray.dll]  [Tencent, 1, 32, 1060, 0]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [D:\Program Files\QQ2007\Bin\AppMisc.dat]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\GroupApp.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.snsapp\Bin\SNSApp.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.paycenter\Bin\PayCenter.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qbar\Bin\QBar.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqvipmisc\Bin\QQVipMisc.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.wenwen\Bin\WenWen.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.netbar\Bin\NetBar.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.wireless\Bin\Wireless.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqshow\Bin\QQShow.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.crm\Bin\CRM.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.vas\Bin\VAS.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\InformationBox.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqgame\Bin\QQGame.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqpet\Bin\QQPet.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.mail\Bin\Mail.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqvip\Bin\QQVip.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.memo\Bin\Memo.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.filetransfer\Bin\FileTransfer.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqring\Bin\QQRing.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.advertisement\Bin\Advertisement.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Plugin\com.tencent.today\Bin\Today.dll]  [Tencent, 1, 32, 1060, 0]
    [D:\Program Files\QQ2007\Bin\vqqsdl.dll]  [Tencent, 5, 0, 3, 24]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb11165834.dll]  [N/A, ]
    [C:\WINDOWS\system32\122B901E.dll]  [N/A, ]
    [C:\WINDOWS\system32\SCEVFJRCmaB7.dll]  [N/A, ]
    [C:\WINDOWS\system32\CDuAUVkGy9.dll]  [N/A, ]
    [C:\WINDOWS\Tasks\SbrmpxjdCrgRAFhz4gHh.inf]  [N/A, ]
    [D:\Program Files\QQ2007\Plugin\com.tencent.qqwebsite\Bin\QQWebsite.dll]  [Tencent, 1, 32, 1060, 0]
[PID: 1364 / Administrator][C:\WINDOWS\system32\conime.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
[PID: 2236 / Administrator][D:\Program Files\QQ2007\Bin\TXPlatform.exe]  [Tencent, 1, 32, 1060, 0]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [D:\Program Files\QQ2007\Bin\WS2_32.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
    [D:\Program Files\QQ2007\Bin\TXPFProxy.dll]  [Tencent, 1, 32, 1060, 0]
[PID: 3180 / Administrator][C:\WINDOWS\system32\taskmgr.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb11165834.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
[PID: 3304 / Administrator][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\35808.dat]  [N/A, ]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Fonts\kb21165347.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165412.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb11165834.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
[PID: 2600 / Administrator][C:\Documents and Settings\Administrator\桌面\SREngLdr.EXE]  [Smallfrogs Studio, 2.8.1.1279]
[PID: 2592 / Administrator][C:\Documents and Settings\Administrator\桌面\SRE9b4eb966.EXE]  [Smallfrogs Studio, 2.8.1.1279]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\fonts\A97CRaCB.fon]  [N/A, ]
    [C:\WINDOWS\system32\A2CbFrBy28J6zdXNZgqCtJ6Ae.inf]  [N/A, ]
    [C:\WINDOWS\system32\BtmBAnd89jc9PsPq5EKNj.inf]  [N/A, ]
    [C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf]  [N/A, ]
    [C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.inf]  [N/A, ]
    [C:\WINDOWS\Tasks\Wfayv6njQnCsg.inf]  [N/A, ]
    [C:\WINDOWS\system32\rb37sCqvGmszGJ3aQYB5qRczx.inf]  [N/A, ]
    [C:\WINDOWS\system32\ujMhyGsS7tRV9gU2HHMkJcu7DPU.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\SjRjQgREDp3P8B4rEEg.cur]  [N/A, ]
    [C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf]  [N/A, ]
    [C:\WINDOWS\Downloaded Program Files\WUstNjhyfQfpv8PQbC.cur]  [N/A, ]
    [C:\WINDOWS\system32\AMNCZw74h8gwd6CpYGkrZDy8.inf]  [N/A, ]
    [C:\Documents and Settings\Administrator\桌面\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]==================================
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
98.126.44.146  show.qq.com
98.126.122.106  bbs1.qq.com
98.126.44.146  music.qq.com
98.126.44.146  minix.soso.com
98.126.44.146  ic.qzone.qq.com
98.126.44.146  adsclick.qq.com
98.126.122.106  adsfile.qq.com
98.126.122.106  adsview.qq.com
98.126.122.106  minigame.qq.com
127.1.1.1      xb520dx.kmip.net
127.1.1.1      dxz.974671.com
127.1.1.1      www.dy2004.com
127.1.1.1      www.114Baines.com
127.1.1.1      tj.3800down.com
127.1.1.1      a6tt4.114anhui.com
127.1.1.1      ak.114anhui.com
127.1.1.1      wwd.243542.com
127.1.1.1      w8.lao998.com
127.1.1.1      nhy7ubgv.114anhui.com
127.1.1.1      g6tt4.114anhui.com
127.1.1.1      x.qingsewuyuet.cn
127.1.1.1      www.114Baines.com
127.1.1.1      ok3.114graph.com
127.1.1.1      nhy7ubgv.114anhui.com
127.1.1.1      www.ok182.com
127.1.1.1      down.my227.com
127.1.1.1      n1xln1l1nx.3322.org
127.1.1.1      txt119.kmip.net
127.1.1.1      126.123fga.cn
127.1.1.1      ya.com.9d1u.cn
127.1.1.1      demo.jikesoft.cn
127.1.1.1      bmw8x.cn
127.1.1.1      mck.o0oq.cn
127.1.1.1      0.9d3f.cn
127.1.1.1      www.114baines.com
127.0.1.1      zsmdo.cn
127.1.1.1      wwd.976777.com
127.1.1.1      www.tt2sf.net
127.1.1.1      msn.com.9d1u.cn
127.1.1.1      ll.wwooaini88.com
127.1.1.1      jh.jhjsyehxkd.cn
127.1.1.1      kcs.cn
127.1.1.1      mck.o0oq.cn
127.1.1.1      x.moneyinfom.com
127.1.1.1      1.888888ok.com.cn
127.1.1.1      3w.97sesewww.cn
127.0.0.1      b.nmbrx.com
127.0.0.1      localhost
==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 640, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1868, C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1968, C:\WINDOWS\SYSTEM32\KBKFG.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 3304, C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\35808.DAT]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3304, C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\35808.DAT]
特殊特权被允许: SeDebugPrivilege [PID = 2600, C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\SRENGLDR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2600, C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\SRENGLDR.EXE]
==================================
计划任务
N/A
==================================
Windows 安全更新检查
Microsoft .NET Framework 版本 1.1,简体中文版
KB920342,  Windows XP 更新程序 (KB920342)
KB892130,  Windows 正版增值验证工具 (KB892130)
KB950762,  Windows XP 安全更新程序 (KB950762) MS08-036
KB951376,  Microsoft XP 安全更新程序 (KB951376) MS08-030
KB940157,  用于 Windows XP 的 Windows 搜索 4.0 (KB940157)
KB951748,  Windows XP 安全更新程序 (KB951748) MS08-037
KB944338,  Windows XP 安全更新程序 (KB944338) MS08-022
KB951066,  用于 Windows XP 的 Outlook Express 安全更新程序 (KB951066) MS08-048
KB952954,  Windows XP 安全更新程序 (KB952954) MS08-046
KB950974,  Microsoft XP 安全更新程序 (KB950974) MS08-049
KB952287,  Windows XP 更新程序 (KB952287)
KB954154,  Microsoft XP 安全更新程序 (KB954154) MS08-054
KB958644,  Windows XP 安全更新程序 (KB958644) MS08-067
KB955069,  Windows XP 安全更新程序 (KB955069) MS08-069
KB957097,  Windows XP 安全更新程序 (KB957097) MS08-068
KB956802,  Windows XP 安全更新程序 (KB956802) MS08-071
KB952069,  Windows XP Service Pack 2 安全更新程序 (KB952069) MS08-076
KB956803,  Windows XP 安全更新程序 (KB956803) MS08-066
KB958687,  Windows XP 安全更新程序 (KB958687) MS09-001
KB960225,  Windows XP 安全更新程序 (KB960225) MS09-007
KB967715,  Windows XP 更新程序 (KB967715)
KB905474,  Windows Genuine Advantage 通知 (KB905474)
KB909520,  Microsoft 基本智能卡加密服务提供程序包: x86 (KB909520)
KB923561,  Windows XP 安全更新程序 (KB923561) MS09-010
KB956572,  Windows XP 安全更新程序 (KB956572) MS09-012
KB952004,  Windows XP 安全更新程序 (KB952004) MS09-012
KB960803,  Windows XP 安全更新程序 (KB960803) MS09-013
KB959426,  Windows XP 安全更新程序 (KB959426) MS09-015
KB936929,  Windows XP Service Pack 3 (KB936929)
KB961501,  Windows XP 安全更新程序 (KB961501) MS09-022
KB968537,  Windows XP 安全更新程序 (KB968537) MS09-025
KB970238,  Windows XP 安全更新程序 (KB970238) MS09-026
KB951847,  Microsoft .NET Framework 3.5 Service Pack 1 和 .NET Framework 3.5 Family Update (KB951847) x86
KB971633,  Windows XP 安全更新程序 (KB971633) MS09-028
KB971032,  Windows XP 安全更新程序 (KB971032) MS09-040
KB971557,  Windows XP 安全更新程序 (KB971557) MS09-038
KB973540,  Windows XP Service Pack 2 安全更新程序 (KB973540) MS09-037
KB973869,  Windows XP 安全更新程序 (KB973869) MS09-037
KB958470,  Windows XP 安全更新程序 (KB958470) MS09-044
KB973354,  Windows XP 安全更新程序 (KB973354) MS09-037
KB973507,  Windows XP 安全更新程序 (KB973507) MS09-037
KB960859,  Windows XP 安全更新程序 (KB960859) MS09-042
KB973815,  Windows XP 安全更新程序 (KB973815) MS09-037
KB971657,  Windows XP 安全更新程序 (KB971657) MS09-041
KB970653,  Windows XP 更新程序 (KB970653)
KB961371,  Windows XP 安全更新程序 (KB961371) MS09-029
KB944036,  用于 Windows XP 的 Internet Explorer 8
KB956844,  Windows XP 安全更新程序 (KB956844) MS09-046
KB971961,  用于 Windows XP 的 Jscript 5.6 的安全更新程序 (KB971961) MS09-045
KB968816,  用于 Windows XP SP 2 的 Windows Media Format Runtime 9、9.5 和 11 的安全更新程序 (KB968816) MS09-047
KB931125,  根证书更新 [2009 年 9 月] (KB931125)
KB974455,  用于 Windows XP 的 Internet Explorer 6 累积安全更新程序 (KB974455) MS09-054
KB973525,  用于 Windows XP 的 ActiveX Killbit 累积安全更新程序 (KB973525) MS09-055
KB954155,  用于 Windows XP SP 2 的 Windows Media Format Runtime 9、9.5 和 11 的安全更新程序 (KB954155) MS09-051
KB975025,  Windows XP 安全更新程序 (KB975025) MS09-051
KB974571,  Windows XP 安全更新程序 (KB974571) MS09-056
KB974112,  Windows XP 安全更新程序 (KB974112) MS09-052
KB971486,  Windows XP 安全更新程序 (KB971486) MS09-058
KB958869,  Windows XP 安全更新程序 (KB958869) MS09-062
KB969059,  Windows XP 安全更新程序 (KB969059) MS09-057
KB890830,  Windows 恶意软件删除工具 - 2009 年 10 月 (KB890830)
KB968389,  Windows XP 更新程序 (KB968389)
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================[/code]
gototop
 

回复:菜鸟求助``数字进程问题```

饿``没有人再么???
gototop
 

回复: 菜鸟求助``数字进程问题```

http://cu003.www.duba.net/duba/tools/dubatools/ksm2/ksm2.exe

下载后断网运行
重启后再来分日志
gototop
 

回复:菜鸟求助``数字进程问题```

另外补丁该打的都要打上
gototop
 

回复:菜鸟求助``数字进程问题```

是这个么···
[CODE]

2009-11-01,18:32:48

System Repair Engineer 2.8.1.1279
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描
    计划任务
    Windows 安全更新检查
    API HOOK
    隐藏进程


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
    <QQ2009><"D:\Program Files\QQ2007\Bin\QQ.exe" /background>  [(Verified)Tencent Technology(Shenzhen) Company Limited]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <switch><c:\windows\system32\壁纸自动换.exe>  []
    <KernelFaultCheck><%systemroot%\system32\dumprep 0 -k>  [File is missing]
    <360Safetray><"C:\Program Files\360safe\safemon\360Tray.exe" /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    <Smapp><C:\Program Files\Analog Devices\SoundMAX\SMTray.exe>  [Analog Devices, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><C:\WINDOWS\Tasks\wDJYwCRU4TKNpWMYJrdAtnCeqnE.inf,C:\WINDOWS\Fonts\kb11165834.dll,C:\WINDOWS\Fonts\kb2116591.dll,C:\WINDOWS\Fonts\kb41165923.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{F9B6B005-901D-48c8-A35D-BA745F98FBD3}><C:\WINDOWS\Fonts\kb41165923.dll>  []
    <{C3BDE61A-DB4C-4a68-8A01-CD4A29B88974}><C:\WINDOWS\Fonts\kb2116591.dll>  []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Publisher]
    <SysTray><C:\WINDOWS\system32\stobject.dll>  [(Verified)Microsoft Windows Publisher]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
    <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
    <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
    <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
    <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
    <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
    <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
    <浏览器自定义组件><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Control Panel\Desktop]
    <SCRNSAVE.EXE><C:\WINDOWS\system32\ssmypics.scr>  [(Verified)Microsoft Windows Publisher]

==================================
启动文件夹
N/A

==================================
服务
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
  <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[Kingsoft Rescue Service / Kingsoft Rescue Service][Running/Auto Start]
  <C:\Program Files\kingsoft\KSM2.0\KSMSvc.exe><>
[Kingsoft Antivirus XEngine Service(Beta) / KxEServBeta][Running/Auto Start]
  <C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxeserv.exe><Kingsoft Corporation>
[SoundMAX Agent Service / SoundMAX Agent Service (default)][Running/Auto Start]
  <C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe><Analog Devices, Inc.>
[主动防御 / ZhuDongFangYu][Running/Auto Start]
  <"C:\Program Files\360safe\deepscan\zhudongfangyu.exe"><360安全中心>

==================================
驱动程序
[360SelfProtection / 360SelfProtection][Running/System Start]
  <system32\drivers\360SelfProtection.sys><360安全中心>
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[aeaudio / aeaudio][Running/Manual Start]
  <system32\drivers\aeaudio.sys><Andrea Electronics Corporation>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Stopped/Manual Start]
  <system32\drivers\ALCXWDM.SYS><N/A>
[AliIde / AliIde][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
[ati2mtag / ati2mtag][Running/Manual Start]
  <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[BFSDRV / BFSDRV][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\bfsdrv.sys><360安全中心>
[BREGDRV / BREGDRV][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\bregdrv.sys><360安全中心>
[CmdIde / CmdIde][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
[e2eCap - WDM Video Capture / E2ECAP][Running/Auto Start]
  <system32\DRIVERS\e2ecap.sys><e2eSoft>
[EfiSystemMon / EfiMon][Running/System Start]
  <System32\Drivers\Efimon.sys><奇虎网>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start]
  <system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[HookPort / HookPort][Running/Boot Start]
  <\SystemRoot\System32\Drivers\Hookport.sys><360安全中心>
[KSRBC / KSRBC][Running/Boot Start]
  <\SystemRoot\system32\Drivers\BC.sys><Kingsoft Corporation>
[M5289 / M5289][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\m5289.sys><ULi Electronics Inc.>
[npkcrypt / npkcrypt][Stopped/Auto Start]
  <\??\C:\Program Files\QQ2006\npkcrypt.sys><N/A>
[nv / nv][Stopped/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Quantum DeepScanner Servers / qutmdserv][Running/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\qutmdrv.sys><360安全中心>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[smwdm / smwdm][Running/Manual Start]
  <system32\drivers\smwdm.sys><Analog Devices, Inc.>
[TCP/IP Protocol Driver / Tcpip][Running/System Start]
  <system32\DRIVERS\tcpip.sys><Microsoft Corporation>
[ULi Based Ethernet NT Driver / ULI5261][Running/Manual Start]
  <system32\DRIVERS\ULILAN.SYS><ULi Electronics Inc.>
[ULi M526X Ethernet NT Driver / ULI5261XP][Stopped/Manual Start]
  <system32\DRIVERS\ULILAN51.SYS><ULi Electronics Inc.>
[ULi AGP Bus Filter Driver / uliagpkx][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\agpkx.sys><ULi Electronics Inc.>
[vb / vb][Stopped/Manual Start]
  <\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~15942.ex><N/A>
[VMware Pointing Device / vmmouse][Running/Manual Start]
  <system32\DRIVERS\vmmouse.sys><VMware, Inc.>
[xx / xx][Stopped/Manual Start]
  <\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~12792.ex><N/A>

==================================
浏览器加载项
[Thunder Browser Helper]
  {00000000-12C8-4305-82F9-43058F20E8D2} <C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, N/A>
[QQCycloneHelper Class]
  {00000000-12C9-4305-82F9-43058F20E8D2} <C:\Program Files\Tencent\QQDownload\QQIEHelper01.dll, (Signed) 腾讯公司>
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
[Thunder Browser Helper]
  {00000000-12C8-4305-82F9-43058F20E8D2} <C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, N/A>
[QQCycloneHelper Class]
  {00000000-12C9-4305-82F9-43058F20E8D2} <C:\Program Files\Tencent\QQDownload\QQIEHelper01.dll, (Signed) 腾讯公司>
[]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <, >
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <C:\Program Files\Thunder\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[360SafeLive]
  {87515F61-A66C-4319-A0E0-D416CB8059E3} <C:\Program Files\360safe\Safelive.dll, (Signed) >
[SafeMon Class]
  {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx, (Signed) Adobe Systems, Inc.>
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[&使用超级旋风下载]
  <C:\Program Files\Tencent\QQDownload\geturl.htm, N/A>
[&使用超级旋风下载全部链接]
  <C:\Program Files\Tencent\QQDownload\getAllurl.htm, N/A>
[使用迅雷下载]
  <C:\Program Files\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <C:\Program Files\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
  <D:\Program Files\QQ2007\Bin\AddEmotion.htm, N/A>

==================================
正在运行的进程
[PID: 560 / SYSTEM][\SystemRoot\System32\smss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 620 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 652 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\Ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4175]
[PID: 712 / SYSTEM][C:\WINDOWS\system32\services.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
[PID: 724 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 892 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4176]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2512]
    [C:\WINDOWS\system32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2522]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 936 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1060 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1128 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
gototop
 

回复:菜鸟求助``数字进程问题```

[C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\System32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1224 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1268 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4176]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2512]
    [C:\WINDOWS\system32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2522]
    [C:\WINDOWS\system32\ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4175]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1360 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1400 / SYSTEM][C:\Program Files\360safe\deepscan\zhudongfangyu.exe]  [360安全中心, 1, 0, 0, 1007]
    [C:\Program Files\360safe\deepscan\CloudCom2.dll]  [360安全中心, 3, 0, 0, 1006]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\Program Files\360safe\deepscan\heavygate.dll]  [360安全中心, 3, 6, 11, 0]
    [C:\Program Files\360safe\SoftMgr\360SoftMgrS.dll]  [奇虎网, 2, 1, 5, 1005]
    [C:\Program Files\360safe\deepscan\qutmload.dll]  [360.CN, 1, 0, 0, 1001]
[PID: 1604 / SYSTEM][C:\Program Files\kingsoft\KSM2.0\KSMSvc.exe]  [, 2009, 4, 8, 3]
    [C:\Program Files\kingsoft\KSM2.0\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]
    [C:\Program Files\kingsoft\KSM2.0\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.762]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\Program Files\kingsoft\KSM2.0\KSMCore.dll]  [, 2009, 10, 29, 713]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxebase.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\SCOM.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxecore\kxelog.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxecore\kxecore.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\kingsoft\KSM2.0\jsonv6.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\kingsoft\KSM2.0\kscanner.dll]  [Kingsoft Corporation, 2009, 9, 15, 341]
    [C:\Program Files\kingsoft\KSM2.0\KFARep.dll]  [, 2009, 10, 30, 216]
[PID: 1644 / Administrator][C:\WINDOWS\Explorer.EXE]  [(Verified) Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1022]
[PID: 1740 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 1976 / SYSTEM][C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxeserv.exe]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\jsonv6.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\scom.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxebase.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxecore\kxelog.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxecore\kxecore.dll]  [Kingsoft Corporation, 2009,08,26,57]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Common Files\Kingsoft\CommonService_Beta\kxecore\kxestat.dll]  [Kingsoft Corporation, 2009,08,26,57]
[PID: 200 / SYSTEM][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe]  [Analog Devices, Inc., 3, 2, 6, 0]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
[PID: 1232 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\System32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 2232 / SYSTEM][C:\WINDOWS\system32\wuauclt.exe]  [(Verified) Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 2520 / Administrator][C:\Program Files\Analog Devices\SoundMAX\SMTray.exe]  [Analog Devices, Inc., 3, 2, 18, 0]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2536 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
[PID: 2772 / Administrator][C:\WINDOWS\system32\taskmgr.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1022]
[PID: 3004 / Administrator][C:\Documents and Settings\Administrator\桌面\SREngLdr.EXE]  [Smallfrogs Studio, 2.8.1.1279]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
[PID: 3028 / Administrator][C:\Documents and Settings\Administrator\桌面\SRE9b4eb966.EXE]  [Smallfrogs Studio, 2.8.1.1279]
    [C:\WINDOWS\Fonts\kb2116591.dll]  [N/A, ]
    [C:\WINDOWS\Fonts\kb41165923.dll]  [N/A, ]
    [C:\WINDOWS\system32\SYNCOR11.DLL]  [SoundMAX, 1.2.3]
    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1022]
    [C:\Documents and Settings\Administrator\桌面\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]

==================================
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1 localhost

==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 652, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3004, C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\桌面\SRENGLDR.EXE]

==================================
计划任务
N/A

==================================
Windows 安全更新检查
N/A

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]
gototop
 

回复:菜鸟求助``数字进程问题```

~~5楼的是让你用金山急救箱杀毒,6楼的是让你在杀毒后,把漏洞打全~~
打的漏洞是这些:
Microsoft .NET Framework 版本 1.1,简体中文版
KB920342,  Windows XP 更新程序 (KB920342)
KB892130,  Windows 正版增值验证工具 (KB892130)
KB950762,  Windows XP 安全更新程序 (KB950762) MS08-036
KB951376,  Microsoft XP 安全更新程序 (KB951376) MS08-030
KB940157,  用于 Windows XP 的 Windows 搜索 4.0 (KB940157)
KB951748,  Windows XP 安全更新程序 (KB951748) MS08-037
KB944338,  Windows XP 安全更新程序 (KB944338) MS08-022
KB951066,  用于 Windows XP 的 Outlook Express 安全更新程序 (KB951066) MS08-048
KB952954,  Windows XP 安全更新程序 (KB952954) MS08-046
KB950974,  Microsoft XP 安全更新程序 (KB950974) MS08-049
KB952287,  Windows XP 更新程序 (KB952287)
KB954154,  Microsoft XP 安全更新程序 (KB954154) MS08-054
KB958644,  Windows XP 安全更新程序 (KB958644) MS08-067
KB955069,  Windows XP 安全更新程序 (KB955069) MS08-069
KB957097,  Windows XP 安全更新程序 (KB957097) MS08-068
KB956802,  Windows XP 安全更新程序 (KB956802) MS08-071
KB952069,  Windows XP Service Pack 2 安全更新程序 (KB952069) MS08-076
KB956803,  Windows XP 安全更新程序 (KB956803) MS08-066
KB958687,  Windows XP 安全更新程序 (KB958687) MS09-001
KB960225,  Windows XP 安全更新程序 (KB960225) MS09-007
KB967715,  Windows XP 更新程序 (KB967715)
KB905474,  Windows Genuine Advantage 通知 (KB905474)
KB909520,  Microsoft 基本智能卡加密服务提供程序包: x86 (KB909520)
KB923561,  Windows XP 安全更新程序 (KB923561) MS09-010
KB956572,  Windows XP 安全更新程序 (KB956572) MS09-012
KB952004,  Windows XP 安全更新程序 (KB952004) MS09-012
KB960803,  Windows XP 安全更新程序 (KB960803) MS09-013
KB959426,  Windows XP 安全更新程序 (KB959426) MS09-015
KB936929,  Windows XP Service Pack 3 (KB936929)
KB961501,  Windows XP 安全更新程序 (KB961501) MS09-022
KB968537,  Windows XP 安全更新程序 (KB968537) MS09-025
KB970238,  Windows XP 安全更新程序 (KB970238) MS09-026
KB951847,  Microsoft .NET Framework 3.5 Service Pack 1 和 .NET Framework 3.5 Family Update (KB951847) x86
KB971633,  Windows XP 安全更新程序 (KB971633) MS09-028
KB971032,  Windows XP 安全更新程序 (KB971032) MS09-040
KB971557,  Windows XP 安全更新程序 (KB971557) MS09-038
KB973540,  Windows XP Service Pack 2 安全更新程序 (KB973540) MS09-037
KB973869,  Windows XP 安全更新程序 (KB973869) MS09-037
KB958470,  Windows XP 安全更新程序 (KB958470) MS09-044
KB973354,  Windows XP 安全更新程序 (KB973354) MS09-037
KB973507,  Windows XP 安全更新程序 (KB973507) MS09-037
KB960859,  Windows XP 安全更新程序 (KB960859) MS09-042
KB973815,  Windows XP 安全更新程序 (KB973815) MS09-037
KB971657,  Windows XP 安全更新程序 (KB971657) MS09-041
KB970653,  Windows XP 更新程序 (KB970653)
KB961371,  Windows XP 安全更新程序 (KB961371) MS09-029
KB944036,  用于 Windows XP 的 Internet Explorer 8
KB956844,  Windows XP 安全更新程序 (KB956844) MS09-046
KB971961,  用于 Windows XP 的 Jscript 5.6 的安全更新程序 (KB971961) MS09-045
KB968816,  用于 Windows XP SP 2 的 Windows Media Format Runtime 9、9.5 和 11 的安全更新程序 (KB968816) MS09-047
KB931125,  根证书更新 [2009 年 9 月] (KB931125)
KB974455,  用于 Windows XP 的 Internet Explorer 6 累积安全更新程序 (KB974455) MS09-054
KB973525,  用于 Windows XP 的 ActiveX Killbit 累积安全更新程序 (KB973525) MS09-055
KB954155,  用于 Windows XP SP 2 的 Windows Media Format Runtime 9、9.5 和 11 的安全更新程序 (KB954155) MS09-051
KB975025,  Windows XP 安全更新程序 (KB975025) MS09-051
KB974571,  Windows XP 安全更新程序 (KB974571) MS09-056
KB974112,  Windows XP 安全更新程序 (KB974112) MS09-052
KB971486,  Windows XP 安全更新程序 (KB971486) MS09-058
KB958869,  Windows XP 安全更新程序 (KB958869) MS09-062
KB969059,  Windows XP 安全更新程序 (KB969059) MS09-057
KB890830,  Windows 恶意软件删除工具 - 2009 年 10 月 (KB890830)
KB968389,  Windows XP 更新程序 (KB968389)
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT