当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\VM_STI.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
C:\Vrv\Client\vrvmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\alg.exe
F:\QQ2006\QQ.exe
F:\QQ2006\TIMPlatform.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\taskmgr.exe
D:\迅雷\Thunder.exe
C:\Vrv\Client\VRV.EXE
E:\新建文件夹\hijackthisV1.99.1.exe
E:\新建文件夹\新建文件夹\HijackThis1991汉化版\HijackThis1991zww.exe
R3 - URLSearchHook: (no name) - {BB936323-19FA-4521-BA29-ECA6A121BC78} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O1 - Hosts: 207.46.198.60 www.microsoft.com #0
O1 - Hosts: 218.15.233.238 www.jujumao.com #0
O1 - Hosts: 202.103.172.40 www.jujumao.net #0
O1 - Hosts: 218.206.122.42 www.onlinedown.net #0
O1 - Hosts: 202.103.67.243 www.mzvod.com #0
O1 - Hosts: 221.231.130.228 www.cmfu.com #0
O1 - Hosts: 218.5.72.126 search.btchina.net #0
O1 - Hosts: 61.145.73.17 www.poco.cn #0
O1 - Hosts: 220.181.27.5 www.baidu,com #0
O1 - Hosts: 202.165.102.20 cns.3721,com #0
O1 - Hosts: 218.95.7.2 game.jx163.com #0
O1 - Hosts: 218.95.7.2 www.jx163.com #0
O1 - Hosts: 218.30.13.34 www.sina.com #0
O1 - Hosts: 218.30.111.40 www.hjsm.net #0
O1 - Hosts: 218.78.212.48 www.05133.com #0
O1 - Hosts: 61.172.252.88 www.woool.com #0
O1 - Hosts: 218.87.123.7 jx263.com #0
O1 - Hosts: 219.239.95.136 263.com #0
O1 - Hosts: 222.46.16.140 www.bucuo.com.cn #0
O1 - Hosts: 211.89.128.78 www.pxgdwl.com #0
O1 - Hosts: 61.152.234.67 www.chinaren.com #0
O1 - Hosts: 61.145.126.68 www.163.com.cn #0
O1 - Hosts: 218.87.31.5 jx163.com #0
O1 - Hosts: 61.129.90.134 www.9you.com.cn #0
O1 - Hosts: 202.43.217.78 yahoo.com.cn #0
O1 - Hosts: 61.152.104.17 www.wjshu.com #0
O1 - Hosts: 207.46.19.30 www.microsoft.com #0
O1 - Hosts: 218.15.233.238 www.jujumao.com #0
O1 - Hosts: 202.103.172.40 www.jujumao.net #0
O1 - Hosts: 218.206.122.42 www.onlinedown.net #0
O1 - Hosts: 202.103.67.243 www.mzvod.com #0
O1 - Hosts: 221.231.130.228 www.cmfu.com #0
O1 - Hosts: 218.5.72.126 search.btchina.net #0
O1 - Hosts: 61.145.73.17 www.poco.cn #0
O1 - Hosts: 220.181.27.5 www.baidu.com #0
O1 - Hosts: 202.165.102.20 cns.3721,com #0
O1 - Hosts: 218.95.7.2 game.jx163.com #0
O1 - Hosts: 218.95.7.2 www.jx163.com #0
O1 - Hosts: 218.30.13.34 www.sina.com #0
O1 - Hosts: 218.30.111.40 www.hjsm.net #0
O1 - Hosts: 218.78.212.48 www.05133.com #0
O1 - Hosts: 61.172.252.88 www.woool.com #0
O1 - Hosts: 218.87.123.7 jx263.com #0
O1 - Hosts: 219.239.95.136 263.com #0
O1 - Hosts: 222.46.16.140 www.bucuo.com.cn #0
O1 - Hosts: 211.89.128.78 www.pxgdwl.com #0
O1 - Hosts: 61.152.234.67 www.chinaren.com #0
O1 - Hosts: 61.145.126.68 www.163.com.cn #0
O1 - Hosts: 218.87.31.5 jx163.com #0
O1 - Hosts: 61.129.90.134 www.9you.com.cn #0
O1 - Hosts: 202.43.217.78 yahoo.com.cn #0
O1 - Hosts: 61.152.104.17 www.wjshu.com #0
O2 - BHO: ThunderIEHelper - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v14.dll
O2 - BHO: wmpdrm - {0E674588-66B7-4E19-9D0E-2053B800F69F} - C:\WINDOWS\system32\wmpdrm.dll
O2 - BHO: MyIEHelper Class - {16A770A0-0E87-4278-B748-2460D64A8386} - C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_8009.dll
O2 - BHO: QuickBtn - {1A199C20-DE2B-4838-AE3F-B5257ECE2B7E} - C:\Program Files\CoolWebsite\QuickLink.dll
O2 - BHO: Yahoo!Photo - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
O2 - BHO: Anti Fish - {38928D50-8A48-44C2-945F-D2F23F771410} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O2 - BHO: VnetCookie Class - {4E83D567-4697-4F7B-B1F0-A513B01DB89A} - c:\PROGRA~1\chinanet\VNETTR~1.DLL
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - F:\QQ2006\QQIEHelper.dll
O2 - BHO: YDragSearch - {62EED7C6-9F02-42f9-B634-98E2899E147B} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
O2 - BHO: MMSAssist - {6671A431-5C3D-463d-A7CF-5587F9B7E191} - C:\PROGRA~1\MMSASS~1\MMSASS~2.DLL
O2 - BHO: std software - {6A512BF7-EC78-4e8d-9841-6C02E8FA9838} - C:\WINDOWS\SYSTEM32\stdup.dll
O2 - BHO: BandIE Class - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\baidubar.dll
O2 - BHO: NewWeb Controller - {9ACEEE30-143F-471A-AA45-72B061FE7D60} - C:\WINDOWS\system32\WinSC.dll
O2 - BHO: IeControler Class - {9AFD91F9-6B03-4D22-A1E1-67D224CB7AB1} - D:\ADSL\IEMate.dll (file missing)
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FLASHGET\jccatch.dll
O2 - BHO: (no name) - {A9930D97-9CF0-42A0-A10D-4F28836579D5} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: IE - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - C:\WINDOWS\DOWNLO~1\CnsHook.dll
O3 - IE工具栏增项: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - IE工具栏增项: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O3 - IE工具栏增项: 百度超级搜霸 - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\baidubar.dll
O3 - IE工具栏增项: BitCometBar - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - D:\BT\BitComet\BitCometBar\BitCometBar0.3.dll (file missing)
O3 - IE工具栏增项: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - 启动项HKLM\\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera 301x
O4 - 启动项HKLM\\Run: [CnsMin] Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
O4 - 启动项HKLM\\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - 启动项HKLM\\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 启动项HKLM\\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 启动项HKLM\\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - 启动项HKLM\\Run: [YLive.exe] C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
O4 - 启动项HKLM\\Run: [StormCodec_Helper] "D:\外挂\新建文件夹\Storm Codec\StormSet.exe" /S /opti
O4 - 启动项HKLM\\Run: [Thunder] "E:\新建文件夹\ThunderShell.exe" /s
O4 - 启动项HKLM\\Run: [NMGameX_AutoRun] C:\WINDOWS\system32\Rundll32.exe NMGameX.dll,LiveProcess /aa
O4 - 启动项HKLM\\Run: [Update] C:\Program Files\Common Files\UPDAT\Update.exe
O4 - 启动项HKLM\\Run: [NetSpeeder] "D:\ADSL\NetSpeeder.exe" hide
O4 - 启动项HKLM\\Run: [res] C:\WINDOWS\system32\res.exe
O4 - 启动项HKLM\\Run: [spoolsv] C:\WINDOWS\system32\spoolsv\spoolsv.exe -printer
O4 - 启动项HKLM\\Run: [xysecond] C:\Vrv\Client\vrvmon.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [pbmini] C:\Program Files\pcast\PodcastbarMini\PodcastBarMiniStater.exe
O4 - Startup: 腾讯QQ.lnk = F:\QQ2006\QQ.exe
O8 - IE右键菜单中的新增项目: >> 彩信发送 << - res://C:\PROGRA~1\MMSASS~1\MMSASS~2.DLL/mms.htm
O8 - IE右键菜单中的新增项目: &使用迅雷下载 - D:\迅雷\geturl.htm
O8 - IE右键菜单中的新增项目: &使用迅雷下载全部链接 - D:\迅雷\getallurl.htm