HijackThis_zww汉化版扫描日志 V1.99.1
保存于 10:58:41, 日期 2006-2-17
操作系统: Windows XP (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 (6.00.2600.0000)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\lsas32.exe
C:\Program Files\NewRemoteControl\NewRmtService.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Rising\Rfw\rfwmain.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\System32\seedupdate.exe
C:\WINDOWS\System32\Ctfmon.exe
C:\program files\zangoclient\zanu.exe
C:\Program Files\LEGEND\联想标准功能键盘驱动程序安装\skdaemon.exe
D:\Common\Bin\WinCinemaMgr.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\DuDu\DddClient\DuDuAcc.exe
D:\迅雷\Thunder.exe
C:\Program Files\DuDu\DddClient\dudupros.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Tencent\QQ\QQ.exe
C:\Program Files\Tencent\QQ\TMDlls\TIMPlatform.exe
D:\迅雷\TDUpdate.exe
D:\迅雷\MediaIssue\Issue.exe
C:\WINDOWS\System32\conime.exe
C:\Program Files\Tencent\QQTang\Client.exe
C:\WINDOWS\System32\rav32.exe
C:\WINDOWS\System32\assiste.exe
C:\Program Files\HijackThis1991汉化版\HijackThis1991zww.exe
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - _{BB936323-19FA-4521-BA29-ECA6A121BC78} - (no file)
O1 - Hosts: 210.17.251.234 bbbppp.com
O1 - Hosts: 210.17.251.234 www.bbbppp.com
O1 - Hosts: 210.17.251.234 666fff.com
O1 - Hosts: 210.17.251.234 www.666fff.com
O1 - Hosts: 210.17.251.234 ok0809.com
O1 - Hosts: 210.17.251.234 www.ok0809.com
O1 - Hosts: 210.17.251.234 qq558899.com
O1 - Hosts: 210.17.251.234 www.qq558899.com
O1 - Hosts: 210.17.251.234 hkqw.com
O1 - Hosts: 210.17.251.234 www.hkqw.com
O1 - Hosts: 210.17.251.234 65188.com
O1 - Hosts: 210.17.251.234 www.65188.com
O1 - Hosts: 210.17.251.234 665858.com
O1 - Hosts: 210.17.251.234 www.665858.com
O1 - Hosts: 210.17.251.234 tm5656.com
O1 - Hosts: 210.17.251.234 www.tm5656.com
O1 - Hosts: 210.17.251.234 88235.com
O1 - Hosts: 210.17.251.234 www.88235.com
O1 - Hosts: 210.17.251.234 k88688.com
O1 - Hosts: 210.17.251.234 www.k88688.com
O1 - Hosts: 210.17.251.234 22688.cn
O1 - Hosts: 210.17.251.234 www.22688.cn
O1 - Hosts: 210.17.251.234 30887.com
O1 - Hosts: 210.17.251.234 www.30887.com
O1 - Hosts: 210.17.251.234 331188.net
O1 - Hosts: 210.17.251.234 www.331188.net
O1 - Hosts: 210.17.251.234 50958.com
O1 - Hosts: 210.17.251.234 www.50958.com
O1 - Hosts: 210.17.251.234 518778.com
O1 - Hosts: 210.17.251.234 www.518778.com
O1 - Hosts: 210.17.251.234 hongkong3618.com
O1 - Hosts: 210.17.251.234 www.hongkong3618.com
O1 - Hosts: 210.17.251.234 kk4444.com
O1 - Hosts: 210.17.251.234 www.kk4444.com
O1 - Hosts: 210.17.251.234 xp668.com
O1 - Hosts: 210.17.251.234 www.xp668.com
O1 - Hosts: 210.17.251.234 iebar.t2t2.com
O1 - Hosts: 210.17.251.234 fh94.com
O1 - Hosts: 210.17.251.234 www.fh94.com
O1 - Hosts: 210.17.251.234 ww678.com
O1 - Hosts: 210.17.251.234 www.ww678.com
O1 - Hosts: 210.17.251.234 00559.com
O1 - Hosts: 210.17.251.234 www.00559.com
O1 - Hosts: 210.17.251.234 25889.com
O1 - Hosts: 210.17.251.234 www.25889.com
O1 - Hosts: 210.17.251.234 49558.com
O1 - Hosts: 210.17.251.234 www.49558.com
O1 - Hosts: 210.17.251.234 6868888.com
O1 - Hosts: 210.17.251.234 www.6868888.com
O1 - Hosts: 210.17.251.234 7575333.com
O1 - Hosts: 210.17.251.234 www.7575333.com
O1 - Hosts: 210.17.251.234 85599.com
O1 - Hosts: 210.17.251.234 www.85599.com
O1 - Hosts: 210.17.251.234 88993.com
O1 - Hosts: 210.17.251.234 www.88993.com
O1 - Hosts: 210.17.251.234 f689.com
O1 - Hosts: 210.17.251.234 www.f689.com
O1 - Hosts: 210.17.251.234 hk3728.com
O1 - Hosts: 210.17.251.234 www.hk3728.com
O1 - Hosts: 210.17.251.234 k3355.com
O1 - Hosts: 210.17.251.234 www.k3355.com
O1 - Hosts: 210.17.251.234 kk766.com
O1 - Hosts: 210.17.251.234 www.kk766.com
O1 - Hosts: 210.17.251.234 kkkiii.com
O1 - Hosts: 210.17.251.234 www.kkkiii.com
O1 - Hosts: 210.17.251.234 kkkjjj.com
O1 - Hosts: 210.17.251.234 www.kkkjjj.com
O1 - Hosts: 210.17.251.234 pp678.com
O1 - Hosts: 210.17.251.234 www.pp678.com
O1 - Hosts: 210.17.251.234 56598.com
O1 - Hosts: 210.17.251.234 www.56598.com
O1 - Hosts: 210.17.251.234 hk5868.com
O1 - Hosts: 210.17.251.234 hk5868.com
O1 - Hosts: 210.17.251.234 qq558899.com
O1 - Hosts: 210.17.251.234 www.qq558899.com
O1 - Hosts: 210.17.251.234 tm669.com
O1 - Hosts: 210.17.251.234 www.tm669.com
O1 - Hosts: 210.17.251.234 68599.com
O1 - Hosts: 210.17.251.234 www.68599.com
O1 - Hosts: 210.17.251.234 358619.com
O1 - Hosts: 210.17.251.234 www.358619.com
O1 - Hosts: 210.17.251.234 3c6.com
O1 - Hosts: 210.17.251.234 www.3c6.com
O1 - Hosts: 210.17.251.234 f888888.com
O1 - Hosts: 210.17.251.234 www.f888888.com
O1 - Hosts: 210.17.251.234 hh8hh.com
O1 - Hosts: 210.17.251.234 www.hh8hh.com
O1 - Hosts: 210.17.251.234 hongkong998.com
O1 - Hosts: 210.17.251.234 www.hongkong998.com
O1 - Hosts: 210.17.251.234 lh8688.com
O1 - Hosts: 210.17.251.234 www.lh8688.com
O1 - Hosts: 210.17.251.234 lh8688.net
O1 - Hosts: 210.17.251.234 www.lh8688.net
O1 - Hosts: 210.17.251.234 p888888.com
O1 - Hosts: 210.17.251.234 www.p888888.com
O1 - Hosts: 210.17.251.234 vv6888.com
O1 - Hosts: 210.17.251.234 www.vv6888.com
O1 - Hosts: 210.17.251.234 y8y88.com
O1 - Hosts: 210.17.251.234 www.y8y88.com
O1 - Hosts: 210.17.251.234 y8y88.net
O1 - Hosts: 210.17.251.234 www.y8y88.net
O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem220.dll (file missing)
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\System32\xunleibho_v5.dll
O2 - BHO: SABHO - {21B4ACC4-8874-4AEC-AEAC-F567A249B4D4} - c:\program files\zangoclient\zanuhook.dll
O2 - BHO: Wbho Class - {40E3A34A-3282-41F8-AD2C-051BAB96AD4A} - C:\WINDOWS\System32\Usign.dll
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O2 - BHO: DDDMon Class - {6BDE1669-B490-48E3-B668-456314F2D6C3} - C:\Program Files\DuDu\DddClient\dddiemon.dll
O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - C:\Program Files\SideFind\sfbho.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: 上网助手 - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\Program Files\3721\Assist\asbar.dll
O2 - BHO: IE - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - C:\WINDOWS\DOWNLO~1\CnsHook.dll
O2 - BHO: YiSou - {EF1D17A9-089F-40cc-8D64-7324CDEBA0DB} - C:\PROGRA~1\YiSou\yisoub.dll
O3 - IE工具栏增项: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - IE工具栏增项: 上网助手 - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\Program Files\3721\Assist\asbar.dll
O3 - IE工具栏增项: 一搜工具条 - {115F6E46-FCBC-41ed-B3B5-3BDDD4AAB5E5} - C:\PROGRA~1\YiSou\yisou.dll
O3 - IE工具栏增项: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - IE工具栏增项: 完美网译通 - {F43BD772-ABDD-43b7-A96A-3E9E61946EC0} - C:\WINDOWS\WORLD2\TOOLBAR\hmtoolbar.dll
O3 - IE工具栏增项: ISTbar - {FAA356E4-D317-42a6-AB41-A3021C6E7D52} - C:\Program Files\ISTbar\istbarcm.dll
O3 - IE工具栏增项: BitCometBar - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - D:\BitComet\BitCometBar\BitCometBar0.1.dll
O4 - 启动项HKLM\\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - 启动项HKLM\\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [NewRmtService ] C:\Program Files\NewRemoteControl\NewRmtService.exe
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - 启动项HKLM\\Run: [nwiz] nwiz.exe /install
O4 - 启动项HKLM\\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - 启动项HKLM\\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 启动项HKLM\\Run: [CnsMin] Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
O4 - 启动项HKLM\\Run: [update] seedupdate.exe
O4 - 启动项HKLM\\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
O4 - 启动项HKLM\\Run: [internat] internat.exe
O4 - 启动项HKLM\\Run: [internat.exe] internat.exe
O4 - 启动项HKLM\\Run: [] C:\WINDOWS\System32\Ctfmon.exe
O4 - 启动项HKLM\\Run: [!!QQKav] C:\Documents and Settings\lenovo\桌面\qqkav.exe