HijackThis_815汉化版扫描日志 V1.99.1
保存于 17:42:24, 日期 2009-3-22
操作系统: Windows XP SP3 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP3 (6.00.2900.5512)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
D:\QQ2009\Bin\QQ.exe
D:\QQ2009\Bin\HKDlls\KQAdTray.exe
D:\QQ2009\Bin\TXPlatform.exe
C:\WINDOWS\system32\conime.exe
C:\Program Files\SogouInput\4.0.0.1959\PinyinUp.exe
C:\Program Files\Thunder\Program\Thunder5.exe
E:\HijackThis1991zww.exe
O2 - BHO: Thunder AtOnce - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll
O4 - 启动项HKLM\\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - 启动项HKLM\\Run: [ESET_vc52Live] C:\Program Files\ESET\ESET Smart Security\ESET_vc52Live.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ctfmon] ctfmon.exe
O4 - Startup: QQ游戏启动加速程序.lnk = D:\QQGAME\Accel.exe
O8 - IE右键菜单中的新增项目: 使用迅雷下载 - C:\Program Files\Thunder\Program\geturl.htm
O8 - IE右键菜单中的新增项目: 使用迅雷下载全部链接 - C:\Program Files\Thunder\Program\getallurl.htm
O8 - IE右键菜单中的新增项目: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - 浏览器额外的按钮: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - 浏览器额外的“工具”菜单项: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O16 - DPF: {18226BF8-DC0B-4D81-80E9-A41AE37BB73A} (EWA Control) -
http://download.pplive.com/webinstall/install.CABO16 - DPF: {20C2C286-BDE8-441B-B73D-AFA22D914DA5} (PowerList Control) -
http://download.ppstream.com/bin/powerplayer.cabO16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (EditCtrl Class) -
https://img.alipay.com/download/2121/aliedit.cabO16 - DPF: {9CA74596-B5BB-4634-971C-F0224115A15F} (tcast control) -
http://nba.tom.com/video/tcastV1.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{2D3F8507-8BB0-4E12-892C-8A65EBC6BEED}: NameServer = 218.85.152.99 218.85.157.99
O17 - HKLM\System\CS1\Services\Tcpip\..\{2D3F8507-8BB0-4E12-892C-8A65EBC6BEED}: NameServer = 218.85.152.99 218.85.157.99
O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
O23 - NT 服务: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - NT 服务: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; MAXTHON 2.0)