中了威金还有很多鸟病毒 求大家看看帮帮忙哈
谢谢了
CODE]
2007-04-06,22:54:50
System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
<MSMSGS><"C:\Program Files\Messenger\msmsgs.exe" /background> [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [(Verified)Microsoft Windows Publisher]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [(Verified)Microsoft Windows Publisher]
<RaidTool><C:\Program Files\VIA\RAID\raid_tool.exe> [VIA Technologies]
<StormCodec_Helper><"C:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti> []
<KernelFaultCheck><%systemroot%\system32\dumprep 0 -k> [N/A]
<NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<BigDogPath><C:\WINDOWS\VM_STI.EXE USB PC Camera 301P> [N/A]
<RavTask><"D:\杀毒\Rising\Rav\RavTask.exe" -system> [Beijing Rising Technology Co., Ltd.]
<jkeulc11><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\jkeulc11.dll",Start> []
<360Safetray><C:\Program Files\360safe\safemon\360Tray.exe /start> [奇虎网]
<360tray.exe><C:\Program Files\safe360\360tray.exe> [N/A]
<upxndnd><C:\DOCUME~1\bo\LOCALS~1\Temp\upxndnd.exe> []
<cmddbcs><C:\WINDOWS\cmddbcs.exe> []
<bkyljm49><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\bkyljm49.dll",Start> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<twin><C:\WINDOWS\system32\ctfnom.exe> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
==================================
启动文件夹
[QQ游戏启动加速程序]
<C:\Documents and Settings\bo\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk --> E:\QQGAME\Accel.exe [深圳市腾讯计算机系统有限公司]><N>
[腾讯QQ珊瑚虫版]
<C:\Documents and Settings\bo\「开始」菜单\程序\启动\腾讯QQ珊瑚虫版.lnk --> E:\qq\CoralQQ.exe [珊瑚虫工作室]><N>
==================================
服务
[34FDBFA4 / 34FDBFA4][Stopped/Auto Start]
<C:\WINDOWS\system32\34FDBFA4.EXE -service><N/A>
[Background Intelligent Transfer Service / BITS][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\dhcpcsc32.dll><N/A>
[FD0E3A9E / FD0E3A9E][Stopped/Auto Start]
<C:\WINDOWS\system32\FD0E3A9E.EXE -service><Microsoft Corporation>
[Human Interface Device Access / HidServ][Stopped/Disabled]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[NT Data Provider / Mercha2][Running/Auto Start]
<C:\WINDOWS\SYSTEM32\RUNDLL2000.EXE C:\WINDOWS\SYSTEM32\WBEM\INBJJ.DLL,Export 1087><Microsoft Corporation>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
<C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[Rising Process Communication Center / RsCCenter][Running/Auto Start]
<"D:\杀毒\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[Rising RealTime Monitor / RsRavMon][Running/Auto Start]
<"D:\杀毒\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
[Application Accelerator / Tech][Running/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\psxul.dll><Microsoft Corporation>
[Vsn vvkh Service / vvkh][Stopped/Auto Start]
<C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\COMMON~1\byqn\ifxu.dll,Service><Microsoft Corporation>
[SysWinStartForMedia / WinStartForMedia][Stopped/Auto Start]
<C:\Windows\system32\WBGKQVAFJOTX.EXE><N/A>
[Portable Media / WmdmPWD][Running/Auto Start]
<C:\WINDOWS\system32\Svchost.exe -k WmdmPWD-->C:\WINDOWS\system32\MDserivces\services\svchost.dll><Microsoft Corporation>
==================================
驱动程序
[85828 / 85828][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\Drivers\85796.sys><Driver>
[atznkd7 / atznkd72][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\atznkd72.sys><N/A>
[BaseTDI / BaseTDI][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\basetdi.sys><Beijing Rising Technology Co., Ltd.>
[bkyljm4 / bkyljm49][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\bkyljm49.sys><Microsoft Corporation>
[bqoupkn / bqoupkn][Stopped/Boot Start]
<\SystemRoot\system32\drivers\bqoupkn.sys><N/A>
[diaicbfg / diaicbfg][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\diaicbfg.sys><N/A>
[didigech / didigech][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\didigech.sys><N/A>
[EagleNT / EagleNT][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\drivers\EagleNT.sys><N/A>
[ExpScaner / ExpScaner][Running/Auto Start]
<\??\D:\杀毒\Rising\Rav\ExpScan.sys><>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Running/Manual Start]
<system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[HookCont / HookCont][Running/Auto Start]
<\??\D:\杀毒\Rising\Rav\HOOKCONT.sys><Rising>
[HookReg / HookReg][Running/Auto Start]
<\??\D:\杀毒\Rising\Rav\HookReg.sys><>
[HookSys / HookSys][Running/Auto Start]
<\??\D:\杀毒\Rising\Rav\HookSys.sys><Rising>
[iigbiibf / iigbiibf][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\iigbiibf.sys><N/A>
[jkeulc1 / jkeulc11][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\jkeulc11.sys><Microsoft Corporation>
[MEMSCAN / MEMSCAN][Running/Auto Start]
<\??\D:\杀毒\Rising\Rav\MEMSCAN.sys><瑞星软件有限公司>
[msdirectx / msdirectx][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\msdirectx.sys><N/A>
[Netgroup Packet Filter / NPF][Stopped/Manual Start]
<system32\drivers\npf.sys><CACE Technologies>
[npkcrypt / npkcrypt][Running/Auto Start]
<\??\E:\qq\npkcrypt.sys><INCA Internet Co., Ltd.>
[nv / nv][Running/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[nw_pfr / nw_pfr][Stopped/Boot Start]
<\SystemRoot\system32\drivers\nw_pfr.sys><N/A>
[pacdcacm / pacdcacm][Stopped/Manual Start]
<system32\DRIVERS\pacdcacm.sys><Panasonic>
[ppcrjf73 / ppcrjf73][Stopped/Boot Start]
<\SystemRoot\system32\\drivers\\system32\\drivers\\%s.sys.sys><N/A>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[RsNTGDI / RsNTGDI][Running/Boot Start]
<\SystemRoot\system32\Drivers\RsNTGdi.sys><Beijing Rising Technology Co., Ltd.>
[RSPPSYS / RSPPSYS][Running/Auto Start]
<\??\D:\杀毒\RISING\RAV\RSPPSYS.sys><Rising>
[rs_mtq / rs_mtq][Stopped/Boot Start]
<\SystemRoot\system32\drivers\rs_mtq.sys><N/A>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><N/A>
[udxzld1 / udxzld19][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\udxzld19.sys><N/A>
[ViaIde / ViaIde][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\viaide.sys><Microsoft Corporation>
[viamraid / viamraid][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\viamraid.sys><VIA Technologies inc,.ltd>
[VIA AC'97 Audio Controller (WDM) / VIAudio][Running/Manual Start]
<system32\drivers\viaudio.sys><VIA Technologies, Inc.>
[VIA USB Host Controller Lower Filter / vulfnths][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\vulfnth.sys><VIA Technologies, Inc.>
[VIA USB Roothub Lower Filter / vulfntrs][Running/Manual Start]
<\SystemRoot\System32\Drivers\vulfntr.sys><VIA Technologies, Inc.>
[wcwtvm33 / wcwtvm33][Stopped/Boot Start]
<\SystemRoot\system32\\drivers\\system32\\drivers\\%s.sys.sys><N/A>
[World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
<system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[xlnrcr61 / xlnrcr61][Stopped/Boot Start]
<\SystemRoot\system32\\drivers\\xlnrcr61.sys><N/A>
[USB PC Camera 301P / ZSMC301b][Running/Manual Start]
<System32\Drivers\usbVM31b.sys><VM>
[52250 / 52250][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\Drivers\51906.sys><Driver>
[xpsp1tdi / xpsp1tdi][Running/]
<2 - 系统找不到指定的文件。
><N/A>
[VideoCapPCI2 / VideoCapPCI2][Running/]
<2 - 系统找不到指定的文件。
><N/A>
[xpsp1reg / xpsp1reg][Running/]
<2 - 系统找不到指定的文件。
><N/A>
[VideoCapUSB2 / VideoCapUSB2][Running/]
<2 - 系统找不到指定的文件。
><N/A>
==================================