O8 - Extra context menu item: &V使用Vagaa哇嘎下载 -
C:\Vagaa\Data\vg.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - C:\Program
Files\Tencent\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - C:\Program
Files\Tencent\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - C:\Program
Files\Tencent\QQ\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - C:\Program
Files\Tencent\QQ\SendMMS.htm
O8 - Extra context menu item: 访问通用网址 - C:\Program
Files\CNNIC\Cdn\cnnic.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java 控制台 -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: 中文域名 - {35980F6E-A137-4E50-953D-813BB8556899} -
C:\WINNT\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: 中文域名 -
{35980F6E-A137-4E50-953D-813BB8556899} - C:\WINNT\system32\shdocvw.dll
O9 - Extra button: Yahoo 3.5G电邮 -
{507F9113-CD77-4866-BA92-0E86DA3D0B97} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail (file
missing)
O9 - Extra button: 名品折扣 - {59BC54A2-56B3-44a0-93E5-432D58746E26} -
http://adtaobao.allyes.com/main/adfclick?db=adtaobao&bid=138,140,18&cid
=816,8,1&sid=5042&show=ignore&url=http://www.taobao.com/vertical/mall/p
ro.php?allyesPara=816 (file missing)
O9 - Extra button: 中文上网 - {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} -
C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O9 - Extra 'Tools' menuitem: 中文上网 -
{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} -
C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O9 - Extra button: 雅虎助手 - {5D73EE86-05F1-49ed-B850-E423120EC338} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist (file
missing)
O9 - Extra button: 雅虎WIDGET - {6354ABE6-05F1-49ed-B850-E423120EC338}
- http://cn.widget.yahoo.com/index.htm?source=Cns (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} -
C:\Program Files\Tencent\QQ\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ -
{c95fe080-8f5d-11d2-a20b-00aa003c157b} - C:\Program
Files\Tencent\QQ\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} -
C:\Program Files\Tencent\QQ\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 -
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\Program
Files\Tencent\QQ\QQIEHelper.dll
O9 - Extra button: 情景聊天 - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomsg (file
missing)
O9 - Extra button: (no name) - {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair (file
missing)
O9 - Extra 'Tools' menuitem: 修复浏览器 -
{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair (file
missing)
O9 - Extra button: (no name) - {FD00D911-7529-4084-9946-A29F1BDF4FE5} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean (file
missing)
O9 - Extra 'Tools' menuitem: 清理上网记录 -
{FD00D911-7529-4084-9946-A29F1BDF4FE5} -
http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean (file
missing)
O11 - Options group: [!CNS] 中文上网
O11 - Options group: [CDNCLIENT] 中文上网
O15 - Trusted IP range: 134.105.64.164
O16 - DPF: {3D8F74EE-8692-4F8F-B8D2-7522E732519E} (WebActivater
Control) - http://game.qq.com/QQGame2.cab
O16 - DPF: {7BD7A34E-F3EE-44B1-95A7-E04C2B7FB90C} (IDFlowViewX Control)
-
http://zjob.zjtelecom.cn/csscfg.nsf/AttachFile/IDFlowView/$FILE/IDFlowV
iew.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime
Environment 1.4.2) - http://www.ctuonline.com.cn/www/tools/jvm.exe
O16 - DPF: {977AEDDD-6591-49D6-8EA3-C0DF2440EE23}
(AddressDialogActiveForm Control) -
http://zjomh.zjtelecom.cn/csscfg.nsf/AttachFile/GeneralMailAddressDialo
g/$FILE/AddressDialogActiveFormProj.ocx
O16 - DPF: {AB70C611-DE79-4DB5-B637-CCA50876E4D8}
(passport.File
ObjectCtrl) -
http://zjob.zjtelecom.cn/csscfg.nsf/AttachFile/passport/$FILE/passport.
CAB
O16 - DPF: {B2E71C7D-BDEC-458F-A0B9-83AD483BBBA2} (AdslTest Control) -
http://134.105.64.164:18001/ccatstep/ocx/client/PAdslTest.inf
O16 - DPF: {DC7094C6-8F61-42ED-AECE-63F5EEF647C5} (UpdateC2 Control) -
http://www.uusee.com/player/updateC2.cab
O16 - DPF: {F138084D-84D7-48CD-BEA8-04772457516E} (VqqSpeedDlProxy
Class) - http://im.qq.com/vqqsdl061107.cab
O17 -
HKLM\System\CCS\Services\Tcpip\..\{ECDD58C4-8578-4653-B9BB-5CB341CF8086
}: NameServer = 134.96.32.27,218.74.122.74
O18 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} -
C:\PROGRA~1\KuGoo3\InExtend\KUGOO3~1.OCX
O20 - AppInit_DLLs: 235780M.BMP
O23 - Service: 32275 - Unknown owner -
\\134.105.233.139\Admin$\eraseme_85687.exe (file missing)
O23 - Service: 33457 - Unknown owner -
\\134.105.233.139\Admin$\eraseme_36042.exe (file missing)
O23 - Service: 44473 - Unknown owner -
\\134.105.233.139\Admin$\eraseme_38446.exe (file missing)
O23 - Service: 45321 - Unknown owner -
\\134.105.233.139\Admin$\eraseme_08620.exe (file missing)
O23 - Service: 54780 - Unknown owner -
\\134.105.233.139\Admin$\eraseme_87617.exe (file missing)
O23 - Service: 67704 - Unknown owner -
\\134.105.233.139\Admin$\eraseme_60732.exe (file missing)
O23 - Service: pcAnywhere Host Service (awhost32) - Symantec
Corporation - C:\Program Files\Symantec\pcAnywhere\awhost32.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) -
VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: eblikcw - Unknown owner -
\\134.105.231.19\E$\fnesvc32.exe" -service (file missing)
O23 - Service: System Local Kernel Service (kernel) - Unknown owner -
C:\Documents and Settings\All Users\Application
Data\Microsoft\Office\SYSTEM\SAqibk6bli.exe (file missing)
O23 - Service: lvelno - Unknown owner -
\\134.105.231.19\E$\znksvc32.exe" -service (file missing)
O23 - Service: OfficeScanNT 实时扫描 (ntrtscan) - Trend Micro Inc. -
C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe
O23 - Service: OfficeScanNT 个人防火墙 (OfcPfwSvc) - Trend Micro Inc. -
C:\Program Files\Trend Micro\OfficeScan Client\OfcPfwSvc.exe
O23 - Service: OracleOraHome81ClientCache - Unknown owner -
F:\Oracle\Ora81\BIN\ONRSD.EXE (file missing)
O23 - Service: OracleOraHome81ManagementServer - Unknown owner -
F:\Oracle\Ora81\bin\OMSNTsrv.exe (file missing)
O23 - Service: PSEXESVC - Sysinternals - C:\WINNT\System32\PSEXESVC.EXE
O23 - Service: Smart Card Helper (SCardDrv) - Unknown owner -
C:\WINNT\system32\scardsvr32.exe (file missing)
O23 - Service: Server Advance (ServerAC) - Unknown owner -
C:\WINNT\system32\Security.exe (file missing)
O23 - Service: OfficeScanNT 侦听程序 (tmlisten) - Trend Micro Inc. -
C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe
O23 - Service: User Mode Driver-Manager - Unknown owner -
C:\WINNT\wdfmgrr.exe (file missing)
O23 - Service: Windows Management NetWork Service Extensions - Unknown
owner - NetManager.exe (file missing)
O23 - Service: Windows Messenger - Unknown owner - C:\WINNT\msnmsgr.exe