1   1  /  1  页   跳转

自动弹出网页www.daqi.com

自动弹出网页www.daqi.com

HijackThis@Qoo的扫描日志  V1.97.7
Scan saved at 12:36:37, on 2006-4-29
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\KV2006\KVSrvXP.exe
C:\Program Files\KV2006\kvwsc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\官方安全文件\显卡超频\超频\pstrip.exe
C:\Program Files\KV2006\KVMonXP.kxp
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\KV2006\TrojDie.kxp
C:\Program Files\KV2006\KRegEx.exe
C:\Program Files\KV2006\UIHost.exe
D:\官方安全文件\BT加速\BitComet Accelerator\BitComet Accelerator.exe
D:\官方安全文件\BT\BitComet\BitComet.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\jj4\jjsvr4.exe
E:\临时解压缩文件夹\HijackThis.exe

O2 - BHO: (no name) - {42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} - C:\Program Files\KV2006\KVBHO.dll
O2 - BHO: (no name) - {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} - C:\Program Files\KV2006\KvShell.dll
O3 - Toolbar: ????? - {B5A34A93-D538-43A7-8371-864CB6148D12} - C:\Program Files\KV2006\KvShell.dll
O3 - Toolbar: ????? - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O3 - Toolbar: BitCometBar - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - D:\
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [PowerStrip] d:\
O4 - HKLM\..\Run: [StormCodec_Helper] "D:\
O4 - HKLM\..\Run: [KvMonXP] C:\Program Files\KV2006\KVMonXP.kxp /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: NTUSER.DAT
O4 - Startup: ntuser.dat.LOG
O4 - Startup: ntuser.ini
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\
O8 - Extra context menu item: 添加到QQ表情 - D:\
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O10 - Hijacked Internet access by New.Net
O10 - Unknown file in Winsock LSP: c:\program files\kv2006\kvsock.dll
O10 - Unknown file in Winsock LSP: c:\program files\kv2006\kvsock.dll
O10 - Unknown file in Winsock LSP: c:\program files\kv2006\kvsock.dll
O10 - Unknown file in Winsock LSP: c:\program files\kv2006\kvsock.dll
O10 - Unknown file in Winsock LSP: c:\program files\kv2006\kvsock.dll
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (CEditCtrl Object) - https://img.alipay.com/download/1007/aliedit.cab
O16 - DPF: {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} (AxInputControl Class) - https://mybank.icbc.com.cn/icbc/perbank/AXSafeControls.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{E1A7FA12-A2B4-4DDB-B38A-43E9D286134C}: NameServer = 218.74.122.75 218.74.122.74
O17 - HKLM\System\CCS\Services\Tcpip\..\{E91B408E-B091-4405-9B5D-CFA7966D12AD}: NameServer = 218.74.122.74,218.74.122.75

日志  请帮忙
最后编辑2006-04-29 21:48:16
分享到:
gototop
 

请下载使用 System Repair Engineer 2.0.12.350 ,使用“智能扫描”,按下“扫描”

按钮进行扫描,扫描完成后按下“保存报告”按钮保存报告日志文件(SREng.LOG),其

中包含启动项、服务、浏览器加载项、进程和文件关联等信息,把保存的报告日志文件

内容复制-粘贴上来
http://forum.ikaka.com/topic.asp?board=67&artid=5188931
gototop
 

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  <load><>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <PowerStrip><d:\官方安全文件\显卡超频\超频\pstrip.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <StormCodec_Helper><"D:\官方安全文件\暴风影音\Storm Codec\StormSet.exe" /S /opti>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  <KvMonXP><C:\Program Files\KV2006\KVMonXP.kxp /auto>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  <shell><Explorer.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  <Userinit><C:\WINDOWS\system32\userinit.exe,>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  <AppInit_DLLs><>

==================================
启动文件夹
服务
[KVSrvXP / KVSrvXP]
  <C:\Program Files\KV2006\KVSrvXP.exe /Service><Jiangmin Co. Ltd>
[KVWSC / KVWSC]
  <"C:\Program Files\KV2006\kvwsc.exe"><Jiangmin Co.Ltd>

==================================
浏览器加载项
[FiltrateWebObj Class]
  {42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <C:\Program Files\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[BrowseHelper Class]
  {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[江民杀毒工具栏]
  {B5A34A93-D538-43A7-8371-864CB6148D12} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\kakatool.dll, Beijing Rising Technology Co., Ltd.>
[BitCometBar]
  {3F1ABCDB-A875-46c1-8345-B72A4567E486} <D:\官方安全文件\BT\BitComet\BitCometBar\BitCometBar0.3.dll, N/A>
[CEditCtrl Object]
  {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\AliEdit.dll, www.alipay.com>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>
[BitCometBar]
  {3F1ABCDB-A875-46C1-8345-B72A4567E486} <D:\官方安全文件\BT\BitComet\BitCometBar\BitCometBar0.3.dll, N/A>
[FiltrateWebObj Class]
  {42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <C:\Program Files\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[CEditCtrl Object]
  {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\AliEdit.dll, www.alipay.com>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
[BrowseHelper Class]
  {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[Microsoft Web 浏览器]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[AxSubmitControl Class]
  {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\WINDOWS\DOWNLO~1\SUBMIT~1.DLL, >
[Microsoft Scriptlet Component]
  {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[卡卡上网安全助手]
  {AFF6E516-CBE5-4F8A-9C2F-38A68013E766} <C:\WINDOWS\system32\kakatool.dll, Beijing Rising Technology Co., Ltd.>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[江民杀毒工具栏]
  {B5A34A93-D538-43A7-8371-864CB6148D12} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\kakatool.dll, Beijing Rising Technology Co., Ltd.>
[上传到QQ网络硬盘]
  <D:\普通工具软件\wqq\AddToNetDisk.htm, N/A>
[添加到QQ自定义面板]
  <D:\普通工具软件\wqq\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\普通工具软件\wqq\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\普通工具软件\wqq\SendMMS.htm, N/A>
gototop
 

正在运行的进程
[PID: 568][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 648][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 672][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 716][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 728][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
[PID: 876][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 944][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
    [C:\Program Files\NewDotNet\newdotnet6_38.dll]  <New.net, Inc.><6, 0, 0, 38>
[PID: 1040][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
[PID: 1088][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
[PID: 1168][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
[PID: 1396][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\NewDotNet\newdotnet6_38.dll]  <New.net, Inc.><6, 0, 0, 38>
[PID: 1552][C:\Program Files\KV2006\KVSrvXP.exe]  <Jiangmin Co. Ltd><9.2.0.50822>
    [C:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [C:\Program Files\KV2006\SvcSafe.dll]  <Jiangmin Co. Ltd><9, 2, 0, 51107>
    [C:\Program Files\KV2006\lang\SvcSafe0804.lng]  <N/A><N/A>
    [C:\Program Files\KV2006\Scan.dll]  <Jiangmin Co. Ltd><1.0.0.50822>
    [C:\Program Files\KV2006\FileGD.dll]  <Jiangmin Co.Ltd><9.2.0.50809>
    [C:\Program Files\KV2006\KvSPI.dll]  <JiangMin Co. Ltd><9, 2, 2, 51029>
    [C:\Program Files\KV2006\ScanHost.dll]  <Jiangmin Co. Ltd><9, 2, 0, 50822>
    [C:\Program Files\KV2006\KVWPSet.dll]  <Jiangmin Co.Ltd><9, 0, 5, 1012>
    [C:\Program Files\KV2006\EngPS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 50817>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
    [C:\Program Files\KV2006\KVEnhC.DLL]  <Jiangmin Co.Ltd><9, 1, 0, 50822>
    [C:\Program Files\KV2006\KVEnhS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 51029>
    [C:\Program Files\KV2006\KVEnhJ.dll]  <Jiangmin Co.Ltd><9, 1, 0, 50822>
    [C:\Program Files\KV2006\KVExtCab.dll]  <JiangMin Co. Ltd><9, 2, 0, 50822>
    [C:\Program Files\KV2006\KVExtEml.dll]  <Jiangmin Co. Ltd.><9, 2, 0, 51207>
    [C:\Program Files\KV2006\KVExtLZH.dll]  <JiangMin Co. Ltd.><9, 2, 0, 50822>
    [C:\Program Files\KV2006\KvExtRar.dll]  <JiangMin Co. Ltd.><9, 2, 0, 51012>
    [C:\Program Files\KV2006\KvExtZip.dll]  <JiangMin Co Ltd.><9, 2, 0, 50822>
    [C:\Program Files\KV2006\KVExtZ.dll]  <Jiangmin Co. Ltd><9.2.0.503>
    [C:\Program Files\KV2006\KVExtGz.dll]  <Jiangmin Co. Ltd><9, 0, 0, 51031>
    [C:\Program Files\KV2006\KVExtTar.dll]  <Jiangmin Co. Ltd><9, 2, 0, 50822>
    [C:\Program Files\KV2006\KVEnhK.dll]  <Jiangmin Co.Ltd><9, 1, 0, 51209>
    [C:\Program Files\KV2006\Fix.dll]  <Jiangmin Co.Ltd><9, 2, 0, 51011>
    [C:\Program Files\KV2006\KVCkMail.dll]  <N/A><N/A>
    [C:\Program Files\NewDotNet\newdotnet6_38.dll]  <New.net, Inc.><6, 0, 0, 38>
[PID: 1572][C:\Program Files\KV2006\kvwsc.exe]  <Jiangmin Co.Ltd><9, 0, 5, 908>
    [C:\Program Files\KV2006\EngPS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 50817>
    [C:\Program Files\KV2006\EngFace.dll]  <Jiangmin Co.Ltd><9.0.0.50809>
    [C:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
[PID: 2028][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
[PID: 1020][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [D:\官方安全文件\显卡超频\超频\pshook.dll]  <EnTech Taiwan><4.10.3.11>
    [C:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [C:\Program Files\KV2006\GUIExt.dll]  <Jiangmin Co.Ltd><9, 0, 5, 927>
    [C:\Program Files\KV2006\lang\GUIExt0804.lng]  <JiangMin Ltd.><7, 1, 0, 200>
    [C:\Program Files\KV2006\KVBHO.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\KVAddrDb.dll]  <Jiangmin Co.Ltd><9, 0, 0, 1018>
    [C:\Program Files\KV2006\KvShell.dll]  <Jiangmin Co.Ltd><9, 0, 5, 830>
    [C:\Program Files\KV2006\lang\Kvxp0804.lng]  <N/A><N/A>
    [C:\Program Files\KV2006\APIImpl.dll]  <JiangMin Ltd.><9.0.0.500>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\PYJJ4.IME]  <加加工作组><4.0.0.20>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
[PID: 1152][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  <RealNetworks, Inc.><0.1.0.3018>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
[PID: 1252][D:\官方安全文件\显卡超频\超频\pstrip.exe]  <EnTech Taiwan><4.10.03.52>
    [D:\官方安全文件\显卡超频\超频\psdesk.dll]  <EnTech Taiwan><4.10.3.12>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [D:\官方安全文件\显卡超频\超频\pshook.dll]  <EnTech Taiwan><4.10.3.11>
    [C:\Program Files\KV2006\KVMonXP.kxp]  <Jiangmin Co.Ltd><9, 0, 5, 1207>
    [C:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [C:\Program Files\KV2006\lang\Kvxp0804.lng]  <N/A><N/A>
    [C:\Program Files\KV2006\GUIExt.dll]  <Jiangmin Co.Ltd><9, 0, 5, 927>
    [C:\Program Files\KV2006\lang\GUIExt0804.lng]  <JiangMin Ltd.><7, 1, 0, 200>
    [C:\Program Files\KV2006\EngFace.dll]  <Jiangmin Co.Ltd><9.0.0.50809>
    [C:\Program Files\KV2006\EngPS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 50817>
    [C:\Program Files\KV2006\KvOffice.dll]  <JiangMin New Tech.><9.0.0.1213>
    [C:\Program Files\KV2006\lang\KVOffice0804.lng]  <N/A><N/A>
    [C:\Program Files\KV2006\VirusUpload.dll]  <N/A><2, 0, 0, 0>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\PProtect.dll]  <Jiangmin Co. Ltd.><9.0.0.921>
[PID: 1296][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\TrojDie.kxp]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [C:\Program Files\KV2006\lang\TrojDie0804.lng]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\GUIExt.dll]  <Jiangmin Co.Ltd><9, 0, 5, 927>
    [C:\Program Files\KV2006\lang\GUIExt0804.lng]  <JiangMin Ltd.><7, 1, 0, 200>
    [C:\Program Files\KV2006\PProtect.dll]  <Jiangmin Co. Ltd.><9.0.0.921>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [D:\官方安全文件\显卡超频\超频\pshook.dll]  <EnTech Taiwan><4.10.3.11>
    [C:\Program Files\KV2006\ComUIPS.dll]  <Jiangmin Ltd.><9. 5. 5. 20>
[PID: 1472][C:\Program Files\KV2006\KRegEx.exe]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\KRegEx.dll]  <Jiangmin Co. Ltd.><9.0.0.825>
    [C:\Program Files\KV2006\KRegTrust.dll]  <Jiangmin Co. Ltd.><9.0.0.825>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
[PID: 1696][C:\Program Files\KV2006\UIHost.exe]  <Jiangmin Co. Ltd><9.2.0.50822>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [C:\Program Files\KV2006\ComUI.dll]  <Jiangmin Ltd.><9. 0. 0.509>
    [C:\Program Files\KV2006\ComUIPS.dll]  <Jiangmin Ltd.><9. 5. 5. 20>
[PID: 2368][D:\官方安全文件\BT加速\BitComet Accelerator\BitComet Accelerator.exe]  <BitComet Accelerator><3, 0, 0, 0>
    [D:\官方安全文件\BT加速\BitComet Accelerator\packet.dll]  <Politecnico di Torino><2, 3, 0, 33>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [D:\官方安全文件\显卡超频\超频\pshook.dll]  <EnTech Taiwan><4.10.3.11>
[PID: 2700][D:\官方安全文件\BT\BitComet\BitComet.exe]  <www.BitComet.com><0.62.>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
    [D:\官方安全文件\显卡超频\超频\pshook.dll]  <EnTech Taiwan><4.10.3.11>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [C:\Program Files\NewDotNet\newdotnet6_38.dll]  <New.net, Inc.><6, 0, 0, 38>
[PID: 476][C:\Program Files\jj4\jjsvr4.exe]  <加加开发组><4.0.0.19>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
[PID: 3540][C:\Documents and Settings\rt\桌面\SREng.exe]  <Smallfrogs Studio><2.0.12.350>
    [C:\Program Files\KV2006\KVHookG.dll]  <Jiangmin Co.Ltd><9.0.0.0813>
    [D:\官方安全文件\显卡超频\超频\pshook.dll]  <EnTech Taiwan><4.10.3.11>
    [C:\Program Files\KV2006\KVSock.dll]  <Jiangmin Co. Ltd.><1, 2, 24, 51208>
    [C:\Program Files\NewDotNet\newdotnet6_38.dll]  <New.net, Inc.><6, 0, 0, 38>
gototop
 

文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
Jiangmin-MSAFD Tcpip [TCP/IP]
    C:\Program Files\KV2006\KVSock.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-MSAFD Tcpip [UDP/IP]
    C:\Program Files\KV2006\KVSock.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-RSVP UDP Service Provider
    C:\Program Files\KV2006\KVSock.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-RSVP TCP Service Provider
    C:\Program Files\KV2006\KVSock.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin_Filter
    C:\Program Files\KV2006\KVSock.dll(Jiangmin Co. Ltd., A winsock layer)

==================================
gototop
 

说真的,这些东东是什么我也不知道,但似乎只有这些东东才会让你的系统弹出广告了。所以,如果你也不知道,建议就修复它们了。
关闭所有浏览窗口以及一些不必要的程序
运行System Repair Engineer,使用“系统修复,浏览器加载项”来删除以上选项。
CEditCtrl Object]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\AliEdit.dll, www.alipay.com>
[AxInputControl Class]
{73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
CEditCtrl Object]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\AliEdit.dll, www.alipay.com>
[AxInputControl Class]
{73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
[AxSubmitControl Class]
{8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\WINDOWS\DOWNLO~1\SUBMIT~1.DLL, >
修复后请重启,如果问题还未解决,再弄个报告来。
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT