瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】紧急,为何有两个iexplore,一个大写一个小写,请看日志

12   1  /  2  页   跳转

【求助】紧急,为何有两个iexplore,一个大写一个小写,请看日志

【求助】紧急,为何有两个iexplore,一个大写一个小写,请看日志

上午还好好的,我从网上下了一个 冰点还原企业版,一点安装,系统有无反应(WINXP SP2刚升级的)。我试了两次都这样。重启,无意中发现系统进程里有两个iexplore.exe,一个大写,一个小写,请看下面的日志。
    以为中了,于是用SpyEmergency查,查出一些,但不知是不是以前就那样。又用SpybotSD查,也查出一些,但也不知是不是以前就这样。用刚升级的江民杀,也没发现。进启动项,也正常,并没有iexplore.exe这一项,但为何开机就有这个进程!!而且它并不打开任何页面,一点反应也没有。
    朋友们,请赐教!

------------下面是刚扫描的日志
Logfile of HijackThis v1.99.1
Scan saved at 13:01:24, on 2006-8-15
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\Program Files\Ahead\InCD\InCDsrv.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\WINDOWS\SOUNDMAN.EXE
E:\PROGRA~1\SkyNet\FireWall\pfw.exe
E:\Program Files\KV2006\KVMonXP.kxp
E:\WINDOWS\VM_STI.EXE
E:\Program Files\KV2006\KVSrvXP.exe
E:\Program Files\KV2006\kvwsc.exe
E:\Program Files\Internet Explorer\iexplore.exe
E:\Program Files\KV2006\TrojDie.kxp
E:\Program Files\KV2006\KRegEx.exe
E:\Program Files\KV2006\UIHost.exe
E:\WINDOWS\system32\taskmgr.exe
E:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\setup\安全区\HijackThis V1.99.1汉化版\HijackThis.exe

O2 - BHO: FiltrateWebObj Class - {42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} - E:\Program Files\KV2006\KVBHO.dll
O2 - BHO: BrowseHelper Class - {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} - E:\Program Files\KV2006\KvShell.dll
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - E:\Program Files\winbf\FlashGet1.71\jccatch.dll
O3 - Toolbar: 江民杀毒工具栏 - {B5A34A93-D538-43A7-8371-864CB6148D12} - E:\Program Files\KV2006\KvShell.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SKYNET Personal FireWall] E:\PROGRA~1\SkyNet\FireWall\pfw.exe
O4 - HKLM\..\Run: [KvMonXP] "E:\Program Files\KV2006\KVMonXP.kxp" /auto
O4 - HKLM\..\Run: [BigDogPath] E:\WINDOWS\VM_STI.EXE ZSMC USB PC Camera
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: 使用网际快车下载 - E:\Program Files\winbf\FlashGet1.71\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - E:\Program Files\winbf\FlashGet1.71\jc_all.htm
O8 - Extra context menu item: 使用超级解霸播放 - d:\Program Files\Herosoft\Hero 9\MPURLGET.HTM
O8 - Extra context menu item: 使用迅雷下载 - d:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - Extra context menu item: 使用迅雷下载全部链接 - d:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://E:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: 豪杰超级解霸9 - {367E0A21-8601-4986-9C9A-153BF5ACA118} - d:\Program Files\Herosoft\Hero 9\STHSDVD.EXE
O9 - Extra 'Tools' menuitem: 豪杰超级解霸9 - {367E0A21-8601-4986-9C9A-153BF5ACA118} - d:\Program Files\Herosoft\Hero 9\STHSDVD.EXE
O9 - Extra button: 信息检索 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - E:\Program Files\winbf\FlashGet1.71\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - E:\Program Files\winbf\FlashGet1.71\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1147260780413
O17 - HKLM\System\CCS\Services\Tcpip\..\{BB99F4B6-B3CE-44C3-9615-9C6292C9875B}: NameServer = 192.168.1.1
O20 - Winlogon Notify: igfxcui - E:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: InCD Helper (InCDsrv) - Nero AG - E:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: KVSrvXP - Jiangmin Co. Ltd - E:\Program Files\KV2006\KVSrvXP.exe
O23 - Service: KVWSC - Jiangmin Co.Ltd - E:\Program Files\KV2006\kvwsc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PDEngine - Raxco Software, Inc. - E:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - E:\Program Files\Raxco\PerfectDisk\PDSched.exe

最后编辑2006-08-15 14:57:20
分享到:
gototop
 

自己顶一下,这到底是不是病毒?我一向很小心的,唉
gototop
 

请下载 System Repair Engineer,使用“智能扫描”,按下“扫描”按钮进行扫描,扫描完成后按下“保存报告”按钮保存报告日志文件(SREng.LOG),把保存的报告日志文件内容复制-粘贴上来
下载网址
http://www.kztechs.com/sreng/sreng2.zip
http://forum.ikaka.com/topic.asp?board=67&artid=5188931
日志一次粘不完,分次粘完,请不要修改。
gototop
 

多谢,刚才扫描了,下面是结果

2006-08-15,14:28:12

System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <SoundMan><SOUNDMAN.EXE>  [Realtek Semiconductor Corp.]
    <SKYNET Personal FireWall><E:\PROGRA~1\SkyNet\FireWall\pfw.exe>  [广州众达天网技术有限公司]
    <KvMonXP><"E:\Program Files\KV2006\KVMonXP.kxp" /auto>  [Jiangmin Co.Ltd]
    <BigDogPath><E:\WINDOWS\VM_STI.EXE ZSMC USB PC Camera>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [Microsoft Corporation]
    <Userinit><E:\WINDOWS\system32\userinit.exe,>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [Microsoft Corporation]

==================================
启动文件夹
服务
[InCD Helper / InCDsrv]
  <E:\Program Files\Ahead\InCD\InCDsrv.exe><Nero AG>
[KVSrvXP / KVSrvXP]
  <E:\Program Files\KV2006\KVSrvXP.exe /Service><Jiangmin Co. Ltd>
[KVWSC / KVWSC]
  <"E:\Program Files\KV2006\kvwsc.exe"><Jiangmin Co.Ltd>
[NVIDIA Display Driver Service / NVSvc]
  <E:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[PDEngine / PDEngine]
  <"E:\Program Files\Raxco\PerfectDisk\PDEngine.exe"><Raxco Software, Inc.>
[PDScheduler / PDSched]
  <"E:\Program Files\Raxco\PerfectDisk\PDSched.exe"><Raxco Software, Inc.>

==================================
浏览器加载项
[FiltrateWebObj Class]
  {42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <E:\Program Files\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[BrowseHelper Class]
  {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <E:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <E:\Program Files\winbf\FlashGet1.71\jccatch.dll, Amaze Soft>
[豪杰超级解霸9]
  {367E0A21-8601-4986-9C9A-153BF5ACA118} <d:\Program Files\Herosoft\Hero 9\STHSDVD.EXE, herosoft>
[信息检索(&R)]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <E:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[FlashGet]
  {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <E:\Program Files\winbf\FlashGet1.71\flashget.exe, Amaze Soft>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <E:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[江民杀毒工具栏]
  {B5A34A93-D538-43A7-8371-864CB6148D12} <E:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <E:\WINDOWS\system32\legitcheckcontrol.dll, Microsoft Corporation>
[Office Update Installation Engine]
  {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <E:\WINDOWS\opuc.dll, Microsoft Corporation>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <E:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <E:\WINDOWS\system32\legitcheckcontrol.dll, Microsoft Corporation>
[Office Update Installation Engine]
  {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <E:\WINDOWS\opuc.dll, Microsoft Corporation>
[FiltrateWebObj Class]
  {42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <E:\Program Files\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <E:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[MediaComm Class]
  {7670648D-461B-42AF-BDFE-46D26AF5EFF2} <d:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin04.dll, Thunder Networking Technologies,LTD>
[BrowseHelper Class]
  {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <E:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <E:\Program Files\winbf\FlashGet1.71\jccatch.dll, Amaze Soft>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[江民杀毒工具栏]
  {B5A34A93-D538-43A7-8371-864CB6148D12} <E:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[RDS.DataSpace]
  {BD96C556-65A3-11D0-983A-00C04FC29E36} <E:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <E:\WINDOWS\system32\macromed\flash\Flash.ocx, Macromedia, Inc.>
[使用网际快车下载]
  <E:\Program Files\winbf\FlashGet1.71\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <E:\Program Files\winbf\FlashGet1.71\jc_all.htm, N/A>
[使用超级解霸播放]
  <d:\Program Files\Herosoft\Hero 9\MPURLGET.HTM, N/A>
[使用迅雷下载]
  <d:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[使用迅雷下载全部链接]
  <d:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://E:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
 
  还有见下面
gototop
 

接上

==================================
正在运行的进程
[PID: 644][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 720][\??\E:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 744][\??\E:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 788][E:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 800][E:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 956][E:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1036][E:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1144][E:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1184][E:\Program Files\Ahead\InCD\InCDsrv.exe]  <Nero AG><4, 3, 23, 2>
    [E:\Program Files\Common Files\Ahead\Lib\DriveLocker.dll]  <Ahead Software AG><1, 0, 0, 17>
    [E:\Program Files\Ahead\InCD\incdshx.dll]  <Nero AG><4, 3, 23, 2>
[PID: 1352][E:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1436][E:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
    [E:\WINDOWS\system32\fppmon2.dll]  <FinePrint Software, LLC><2.46>
    [E:\WINDOWS\system32\fppr232.dll]  <FinePrint Software, LLC><2.46>
[PID: 1468][E:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [E:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [E:\Program Files\winbf\Spy Emergency\SpyEmergencyExt.dll]  <NETGATE><2, 0, 315, 0>
    [E:\Program Files\KV2006\KvShell.dll]  <Jiangmin Co.Ltd><9, 0, 5, 830>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [E:\Program Files\KV2006\lang\Kvxp0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\APIImpl.dll]  <JiangMin Ltd.><9.0.0.500>
    [E:\Program Files\KV2006\KVBHO.dll]  <Jiangmin Co.Ltd><9.0.6.0113>
    [E:\Program Files\KV2006\KVAddrDb.dll]  <Jiangmin Co.Ltd><9, 0, 0, 1018>
    [d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [E:\Program Files\winbf\FlashGet1.71\jccatch.dll]  <Amaze Soft><1, 1, 4, 0>
[PID: 1656][E:\WINDOWS\SOUNDMAN.EXE]  <Realtek Semiconductor Corp.><5.1.0.28>
[PID: 1664][E:\PROGRA~1\SkyNet\FireWall\pfw.exe]  <广州众达天网技术有限公司><2.7.7.1000>
    [E:\PROGRA~1\SkyNet\FireWall\SKYMISC.DLL]  <N/A><N/A>
    [E:\PROGRA~1\SkyNet\FireWall\COMPRESSWRAP.DLL]  <N/A><N/A>
    [E:\Program Files\KV2006\KVMonXP.kxp]  <Jiangmin Co.Ltd><9, 2, 0, 60103>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [E:\Program Files\KV2006\lang\Kvxp0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\GUIExt.dll]  <Jiangmin Co.Ltd><9, 0, 5, 927>
    [E:\Program Files\KV2006\lang\GUIExt0804.lng]  <JiangMin Ltd.><7, 1, 0, 200>
    [E:\Program Files\KV2006\EngFace.dll]  <Jiangmin Co.Ltd><9.0.0.50809>
    [E:\Program Files\KV2006\EngPS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 50817>
    [E:\Program Files\KV2006\KvMemory.dll]  <Jiangmin Co. Ltd.><9, 0, 6, 0214>
    [E:\Program Files\KV2006\KvOffice.dll]  <JiangMin New Tech.><9.0.0.1213>
    [E:\Program Files\KV2006\lang\KVOffice0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\KVHookG_1.dll]  <Jiangmin Co.Ltd><9.0.0.1226>
    [E:\Program Files\KV2006\PProtect.dll]  <Jiangmin Co. Ltd.><9.0.0.921>
[PID: 1680][E:\WINDOWS\VM_STI.EXE]  <VM.><4.2.610.4>
    [E:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
[PID: 1768][E:\Program Files\KV2006\KVSrvXP.exe]  <Jiangmin Co. Ltd><9.2.0.50822>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [E:\Program Files\KV2006\SvcSafe.dll]  <Jiangmin Co. Ltd><9, 2, 0, 51107>
    [E:\Program Files\KV2006\lang\SvcSafe0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\RegProt.dll]  <Jiangmin Co.Ltd><9, 0, 5, 1212>
    [E:\Program Files\KV2006\Scan.dll]  <Jiangmin Co., Ltd.><1.0.6.07110>
    [E:\Program Files\KV2006\FileGD.dll]  <Jiangmin Co.Ltd><9.2.0.50809>
    [E:\Program Files\KV2006\KvSPI.dll]  <Jiangmin Co. Ltd.><1.0.6.06030>
    [E:\Program Files\KV2006\lang\KVSpi0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\ScanHost.dll]  <Jiangmin Co. Ltd><9, 2, 0, 50822>
    [E:\Program Files\KV2006\KVWPSet.dll]  <Jiangmin Co.Ltd><9, 0, 0, 60220>
    [E:\Program Files\KV2006\EngPS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 50817>
    [E:\Program Files\KV2006\KVEnhS.dll]  <Jiangmin Co., Ltd.><9, 2, 6, 02040>
    [E:\Program Files\KV2006\KVEnhJ.dll]  <Jiangmin Co.Ltd><9, 1, 0, 50822>
    [E:\Program Files\KV2006\KVExtCab.dll]  <JiangMin Co. Ltd><9, 2, 0, 50822>
    [E:\Program Files\KV2006\KVExtEml.dll]  <Jiangmin Co. Ltd.><9, 2, 6, 07050>
    [E:\Program Files\KV2006\lang\KVExtEml0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\KVExtGz.dll]  <Jiangmin Co. Ltd><9, 0, 6, 04200>
    [E:\Program Files\KV2006\KVExtLZH.dll]  <JiangMin Co. Ltd.><9, 2, 6, 0316>
    [E:\Program Files\KV2006\KvExtRar.dll]  <JiangMin Co. Ltd.><9, 2, 6, 04020>
    [E:\Program Files\KV2006\KVExtTar.dll]  <Jiangmin Co. Ltd><9, 2, 0, 50822>
    [E:\Program Files\KV2006\KVExtZ.dll]  <Jiangmin Co. Ltd><9.2.0.503>
    [E:\Program Files\KV2006\KvExtZip.dll]  <JiangMin Co Ltd.><9, 2, 0, 50822>
    [E:\Program Files\KV2006\KVEnhK.dll]  <Jiangmin Co.Ltd><9, 1, 0, 51209>
    [E:\Program Files\KV2006\Fix.dll]  <Jiangmin Co.Ltd><9, 2, 6, 07110>
    [E:\Program Files\KV2006\KvCkMail.dll]  <N/A><9, 0, 6, 619>
    [E:\Program Files\KV2006\lang\KvMailRes0804.lng]  <N/A><N/A>
[PID: 1780][E:\Program Files\KV2006\kvwsc.exe]  <Jiangmin Co.Ltd><9, 0, 5, 908>
    [E:\Program Files\KV2006\EngPS.dll]  <Jiangmin Co.Ltd><9, 2, 0, 50817>
    [E:\Program Files\KV2006\EngFace.dll]  <Jiangmin Co.Ltd><9.0.0.50809>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
[PID: 652][E:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [E:\Program Files\KV2006\KVHookG_1.dll]  <Jiangmin Co.Ltd><9.0.0.1226>
    [E:\Program Files\KV2006\TrojDie.kxp]  <Jiangmin Co.Ltd><9.0.6.0413>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [E:\Program Files\KV2006\lang\TrojDie0804.lng]  <Jiangmin Co.Ltd><9.0.0.0813>
    [E:\Program Files\KV2006\GUIExt.dll]  <Jiangmin Co.Ltd><9, 0, 5, 927>
    [E:\Program Files\KV2006\lang\GUIExt0804.lng]  <JiangMin Ltd.><7, 1, 0, 200>
    [E:\Program Files\KV2006\PProtect.dll]  <Jiangmin Co. Ltd.><9.0.0.921>
    [E:\Program Files\KV2006\ComUIPS.dll]  <Jiangmin Ltd.><9. 5. 5. 20>
    [E:\Program Files\KV2006\KVHookG_1.dll]  <Jiangmin Co.Ltd><9.0.0.1226>
[PID: 1124][E:\Program Files\KV2006\KRegEx.exe]  <Jiangmin Co.Ltd><9.0.6.210>
    [E:\Program Files\KV2006\KRegEx.dll]  <Jiangmin Co. Ltd.><9.0.6.0119>
    [E:\Program Files\KV2006\KRegTrust.dll]  <Jiangmin Co. Ltd.><9.0.0.825>
    [E:\Program Files\KV2006\KVHookG_1.dll]  <Jiangmin Co.Ltd><9.0.0.1226>
[PID: 1192][E:\Program Files\KV2006\UIHost.exe]  <Jiangmin Co. Ltd><9.2.0.50822>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [E:\Program Files\KV2006\ComUI.dll]  <Jiangmin Ltd.><9. 0. 0.509>
    [E:\Program Files\KV2006\ComUIPS.dll]  <Jiangmin Ltd.><9. 5. 5. 20>
[PID: 1880][E:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [E:\Program Files\KV2006\KVBHO.dll]  <Jiangmin Co.Ltd><9.0.6.0113>
    [E:\Program Files\KV2006\KVAddrDb.dll]  <Jiangmin Co.Ltd><9, 0, 0, 1018>
    [E:\Program Files\KV2006\KvShell.dll]  <Jiangmin Co.Ltd><9, 0, 5, 830>
    [E:\Program Files\KV2006\UpdateX.dll]  <JiangMin Co.Ltd.><9, 0, 5, 831>
    [E:\Program Files\KV2006\lang\Kvxp0804.lng]  <N/A><N/A>
    [E:\Program Files\KV2006\APIImpl.dll]  <JiangMin Ltd.><9.0.0.500>
    [d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [E:\Program Files\winbf\FlashGet1.71\jccatch.dll]  <Amaze Soft><1, 1, 4, 0>
    [E:\Program Files\KV2006\KVHookG_1.dll]  <Jiangmin Co.Ltd><9.0.0.1226>
[PID: 436][H:\Downloads\新下区\sreng2\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [E:\Program Files\KV2006\KVHookG_1.dll]  <Jiangmin Co.Ltd><9.0.0.1226>

==================================
文件关联
.TXT  Error. [emeditor.txt]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["E:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  Error. [豪杰超级解霸_VBS]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

运行(双击)System Repair Engineer,使用“系统修复,文件关联,勾选“全选”点“修复”使所有扩展名都恢复正常。

日志看不出问题
如果想要给系统备份,我建议你看以下的帖子
给菜鸟的东东
http://forum.ikaka.com/topic.asp?board=3&artid=8124643
gototop
 

还是两个IEXPLORE.EXE,一个大写,一个小写。第一次遇到这情况,请指点,多谢!

  [PID: 652][E:\Program Files\Internet Explorer\iexplore.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>

    [PID: 1880][E:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>

  路径是一样的,为什么显示一大一小?以前从没遇到过。
gototop
 

日志没问题哦。。hehe
gototop
 

这是正常的,建议你不要担心。
gototop
 

多谢解答!正常?可为什么以前从没遇到这情况?是什么原因引起的?
  下面是进程图

附件附件:

下载次数:1025
文件类型:image/pjpeg
文件大小:
上传时间:2006-8-15 14:49:26
描述:
预览信息:EXIF信息



gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT