我的电脑出了大问题
瑞星卡卡电脑诊断日志 v1.30 (2009-3-28 13:38:9) 北京瑞星信息技术有限公司
注释: [A]表示该文件存在自启动关联;
[M]表示该文件在内存中;
+ 注册表自运行项目
+ 系统服务
+ HKLM\System\CurrentControlSet\Services
AODService
[A ] 1. c:\program files\amd\overdrive\aodassist.exe
Ati HotKey Poller
[A ] 2. c:\windows\system32\ati2evxx.exe
Autodesk Licensing Service
[A ] 3. c:\program files\common files\autodesk shared\service\adskscsrv.exe
cFosSpeedS
[AM] 4. d:\dd\网络提速\spd.exe
HotspotShieldService
[AM] 5. c:\program files\hotspot shield\bin\openvpnas.exe
IDriverT
[A ] 6. c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe
JavaQuickStarterService
[AM] 7. c:\program files\java\jre6\bin\jqs.exe
[A ] 8. c:\program files\java\jre6\lib\deploy\jqs\jqs.conf
mysql
[AM] 9. d:\冒险岛私服\xkodinms\mysql5.2\bin\mysqld-nt.exe
npkcmsvc
[AM] 10. d:\冒险岛\冒险岛online\npkcmsvc.exe
ose
[A ] 11. c:\program files\common files\microsoft shared\source engine\ose.exe
Protectedstoerq
[AM] 12. c:\windows\system32\config\software6.dat
RavCCenter
[AM] 13. c:\program files\rising\rav\ccenter.exe
RavTask
[AM] 14. c:\program files\rising\rav\ravtask.exe
RsRavMon
[AM] 15. c:\program files\rising\rav\ravmond.exe
RsScanSrv
[AM] 16. c:\program files\rising\rav\scanfrm.exe
srol
[A ] 17. c:\program files\fuzos\mascev.exe
UMWdf
[AM] 18. c:\windows\system32\wdfmgr.exe
xkmysql
[AM] 9. d:\冒险岛私服\xkodinms\mysql5.2\bin\mysqld-nt.exe
+ 内核驱动
+ HKLM\System\CurrentControlSet\Services
360procmon
[A ] 19. d:\program files\360\360safe\safemon\360procmon.sys
AmdK8
[A ] 20. c:\windows\system32\drivers\amdk8.sys
AmdLLD
[A ] 21. c:\windows\system32\drivers\amdlld.sys
cFosSpeed
[A ] 22. c:\windows\system32\drivers\cfosspeed.sys
cpuz126
[A ] 23. c:\docume~1\admini~1\locals~1\temp\cpuz.sys
DKbFltr
[A ] 24. c:\windows\system32\drivers\dkbfltr.sys
ElbyCDIO
[A ] 25. c:\windows\system32\drivers\elbycdio.sys
EverestDriver
[A ] 26. c:\program files\everest\kerneld.wnt
HDAudBus
[A ] 27. c:\windows\system32\drivers\hdaudbus.sys
hookcont
[A ] 28. c:\windows\system32\drivers\hookcont.sys
hooksys
[A ] 29. c:\windows\system32\drivers\hooksys.sys
IntcAzAudAddService
[A ] 30. c:\windows\system32\drivers\rtkhdaud.sys
MXD
[A ] 31. c:\documents and settings\administrator\桌面\冒险追梦第1版\sww.sys
nocashio
[A ] 32. c:\windows\system32\drivers\nocashio.sys
npkcrypt
[A ] 33. d:\冒险岛\冒险岛online\npkcrypt.sys
ntiowp
[A ] 34. c:\windows\system32\drivers\ntiowp.sys
pmlxzjmd
[A ] 35. c:\windows\system32\drivers\pmlxzjmd.sys
QuakeDRV
[A ] 36. c:\windows\system32\drivers\quakedrv.sys
RRamdisk
[A ] 37. c:\windows\system32\drivers\rramdisk.sys
RsNTGDI
[A ] 38. c:\windows\system32\drivers\rsntgdi.sys
RTHDMIAzAudService
[A ] 39. c:\windows\system32\drivers\rthdmi.sys
RTLE8023xp
[A ] 40. c:\windows\system32\drivers\rtenicxp.sys
SafeBoxKrnl
[A ] 41. c:\windows\system32\drivers\safeboxkrnl.sys
Secdrv
[A ] 42. c:\windows\system32\drivers\secdrv.sys
sptd
[A ] 43. c:\windows\system32\drivers\sptd.sys
tapvpn
[A ] 44. c:\windows\system32\drivers\tapvpn.sys
VClone
[A ] 45. c:\windows\system32\drivers\vclone.sys
wmpobj
[A ] 46. c:\documents and settings\all users\application data\microsoft\media player\obj\wmpobj.sys
xgxpf
[A ] 47. c:\windows\system32\drivers\hiq.sys
+ 系统登陆自运行
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
AtiExtEvent
[AM] 48. c:\windows\system32\ati2evxx.dll
logondll
[AM] 49. c:\windows\system32\fly702.dll
+ IE浏览器加载模块
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
{c95a4e8e-816d-4655-8c79-d736da1adb6d}
[AM] 50. c:\program files\hotspot_shield\tbhot0.dll
{6C3797D2-3FEF-4cd4-B654-D3AE55B4128C}
[A ] 51. c:\program files\kingsoft\fastait 2009\addins\ieband.dll
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
{72BBBC08-F7E1-4434-A293-3A96DB488D4D}
[AM] 52. c:\program files\thunder network\thunder\comdlls\xunleibho13.dll
{98B7C13A-E9CD-4959-8B46-FBEAB41E42A8}
[AM] 53. c:\windows\system32\urlfilter.dll
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
Exec
[A ] 54. c:\program files\thunder network\thunder\thunder.exe
Exec
[A ] 55. c:\windows\network diagnostic\xpnetdiag.exe
+ 资源管理器加载模块
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
text/xml
[AM] 56. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Handler
ic32pp
[A ] 57. c:\windows\wc98pp.dll
+ HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}
[A ] 58. c:\windows\system32\ieudinit.exe
+ HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers
{F9DB5320-233E-11D1-9F84-707F02C10627}
[AM] 59. c:\program files\common files\adobe\acrobat\activex\pdfshell.dll
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
HyperTerminal Icon Ext
[A ] 60. c:\windows\system32\hticons.dll
IE Search Band
[AM] 61. c:\windows\system32\ieframe.dll
IE AutoComplete
[AM] 61. c:\windows\system32\ieframe.dll
Shell DocObject Viewer
[AM] 61. c:\windows\system32\ieframe.dll
InternetShortcut
[AM] 61. c:\windows\system32\ieframe.dll
Microsoft Url History Service
[AM] 61. c:\windows\system32\ieframe.dll
History
[AM] 61. c:\windows\system32\ieframe.dll
Temporary Internet Files
[AM] 61. c:\windows\system32\ieframe.dll
Temporary Internet Files
[AM] 61. c:\windows\system32\ieframe.dll
Microsoft Url Search Hook
[AM] 61. c:\windows\system32\ieframe.dll
The Internet
[AM] 61. c:\windows\system32\ieframe.dll
Internet Name Space
[AM] 61. c:\windows\system32\ieframe.dll
WinRAR shell extension
[AM] 62. c:\program files\winrar\rarext.dll
Portable Media Devices
[AM] 63. c:\windows\system32\audiodev.dll
Portable Media Devices Menu
[AM] 63. c:\windows\system32\audiodev.dll
Web Folders
[A ] 64. c:\program files\common files\microsoft shared\web folders\msonsext.dll
Microsoft Office HTML Icon Handler
[AM] 65. c:\program files\microsoft office\office11\msohev.dll
EncryptFile
[AM] 66. c:\program files\wopti\woptiencryptmodule.dll
Extractor Shell Extension
[AM] 67. d:\桌面2\1\extractor\extractorext.dll
IE Microsoft BrowserBand
[AM] 61. c:\windows\system32\ieframe.dll
IE Fade Task
[AM] 61. c:\windows\system32\ieframe.dll
IE Menu Desk Bar
[AM] 61. c:\windows\system32\ieframe.dll
IE Navigation Bar
[AM] 61. c:\windows\system32\ieframe.dll
IE Menu Site
[AM] 61. c:\windows\system32\ieframe.dll
IE Menu Band
[AM] 61. c:\windows\system32\ieframe.dll
IE Microsoft History AutoComplete List
[AM] 61. c:\windows\system32\ieframe.dll
IE Tracking Shell Menu
[AM] 61. c:\windows\system32\ieframe.dll
IE IShellFolderBand
[AM] 61. c:\windows\system32\ieframe.dll
IE BandProxy
[AM] 61. c:\windows\system32\ieframe.dll
Microsoft Web Browser
[AM] 61. c:\windows\system32\ieframe.dll
IE MRU AutoComplete List
[AM] 61. c:\windows\system32\ieframe.dll
IE RSS Feeder Folder
[AM] 61. c:\windows\system32\ieframe.dll
IE Microsoft Shell Folder AutoComplete List
[AM] 61. c:\windows\system32\ieframe.dll
IE Microsoft Multiple AutoComplete List Container
[AM] 61. c:\windows\system32\ieframe.dll
IE Shell Rebar BandSite
[AM] 61. c:\windows\system32\ieframe.dll
IE Shell Band Site Menu
[AM] 61. c:\windows\system32\ieframe.dll
&Links
[AM] 61. c:\windows\system32\ieframe.dll
IE Registry Tree Options Utility
[AM] 61. c:\windows\system32\ieframe.dll
IE Custom MRU AutoCompleted List
[AM] 61. c:\windows\system32\ieframe.dll
VirtualCloneDrive
[A ] 68. c:\program files\elaborate bytes\virtualclonedrive\elbyvcdshell.dll
7-Zip Shell Extension
[AM] 69. c:\program files\7-zip\7-zip.dll
RISING
[AM] 70. c:\windows\system32\ravext.dll
+ 用户登陆自运行项目
+ HKLM\Software\Microsoft\Windows\CurrentVersion\Run
cFosSpeed
[AM] 71. d:\dd\网络提速\cfosspeed.exe
runeip
[AM] 72. c:\program files\rising\antispyware\rstray.exe
RavTray
[AM] 73. c:\program files\rising\rav\rstray.exe
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
KKDelay
[A ] 74. c:\program files\rising\antispyware\runonce.exe
+ 开机执行
+ HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order
BootExecute
[A ] 75. c:\windows\system32\bsmain.exe
[A ] 76. c:\windows\system32\kknative.exe
+ 映像劫持
+ HKCR\.html
htmlfile\Edit\Command
[A ] 77. c:\program files\microsoft office\office11\msohtmed.exe
htmlfile\Print\Command
[A ] 77. c:\program files\microsoft office\office11\msohtmed.exe
+ HKCR\.htm
htmlfile\Edit\Command
[A ] 77. c:\program files\microsoft office\office11\msohtmed.exe
htmlfile\Print\Command
[A ] 77. c:\program files\microsoft office\office11\msohtmed.exe
+ HKCR\.mp3
Audio.MP3\open\Command
[A ] 78. c:\program files\ttplayer\ttplayer.exe
Audio.MP3\PlayList\Command
[A ] 78. c:\program files\ttplayer\ttplayer.exe
+ 程序初始化和已知动态连接库
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
AppInit_DLLs
[AM] 79. c:\windows\system32\kmon.dll
+ HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs
comdlg32
[A ] 80. c:\documents and settings\administrator\桌面\comdlg32.dll
+ 其他自启动项目
+ C:\Documents and Settings\Administrator\「开始」菜单\程序\启动
百度Hi.lnk
[A ] 81. c:\program files\baidu\baidu hi\baiduhi.exe
+ C:\WINDOWS\Tasks
SogouImeMgr.job
[A ] 82. c:\program files\sogouinput\4.0.0.2088\pinyinrepair.exe
+ 正在运行的进程
+ 000000c0(192) spd.exe
00400000[00061000]
[AM] 4. d:\dd\网络提速\spd.exe
60000000[00074000]
[AM] 79. c:\windows\system32\kmon.dll
5DCA0000[001B5000]
[ M] 83. c:\windows\system32\iertutil.dll
+ 000000e4(228) svchost.exe
+ 0000010c(268) RavTask.exe
00400000[00020000]
[AM] 14. c:\program files\rising\rav\ravtask.exe
10000000[00017000]
[ M] 84. c:\program files\rising\rav\rsconf.dll
003E0000[0000E000]
[ M] 85. c:\program files\rising\rav\rsappmgr.dll
00780000[00031000]
[ M] 86. c:\program files\rising\rav\cfgdll.dll
009D0000[00010000]
[ M] 87. c:\program files\rising\rav\proccomm.dll
7C340000[00056000]
[ M] 88. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 89. c:\windows\system32\msvcp71.dll
009F0000[00018000]
[ M] 90. c:\program files\rising\rav\rsstub.dll
00CE0000[00029000]
[ M] 91. c:\program files\rising\rav\rstask.dll
+ 0000015c(348) svchost.exe
00940000[0001F000]
[AM] 12. c:\windows\system32\config\software6.dat
00F10000[00030000]
[ M] 92. c:\windows\system32\config\msci06.exe
5DCA0000[001B5000]
[ M] 83. c:\windows\system32\iertutil.dll
011B0000[00009000]
[ M] 93. c:\windows\system32\normaliz.dll
+ 00000160(352) svchost.exe
00710000[00009000]
[ M] 93. c:\windows\system32\normaliz.dll
5DCA0000[001B5000]
[ M] 83. c:\windows\system32\iertutil.dll
+ 00000174(372) openvpnas.exe
00400000[00018000]
[AM] 5. c:\program files\hotspot shield\bin\openvpnas.exe
6B240000[0003C000]
[ M] 94. c:\program files\hotspot shield\bin\libcurl.dll
61D80000[00125000]
[ M] 95. c:\program files\hotspot shield\bin\libeay32.dll
6B080000[0003A000]
[ M] 96. c:\program files\hotspot shield\bin\libssl32.dll
60000000[00074000]
[AM] 79. c:\windows\system32\kmon.dll
5DCA0000[001B5000]
[ M] 83. c:\windows\system32\iertutil.dll
+ 00000200(512) RavMonD.exe
00400000[00020000]
[AM] 15. c:\program files\rising\rav\ravmond.exe
10000000[00029000]
[ M] 97. c:\program files\rising\rav\combase.dll
7C3A0000[0007B000]
[ M] 89. c:\windows\system32\msvcp71.dll
7C340000[00056000]
[ M] 88. c:\windows\system32\msvcr71.dll
00A00000[00019000]
[ M] 98. c:\program files\rising\rav\moncomm.dll
00A20000[0001D000]
[ M] 99. c:\program files\rising\rav\monbase.dll
00A50000[00067000]
[ M] 100. c:\program files\rising\rav\rslog.dll
00AE0000[00018000]
[ M] 101. c:\program files\rising\rav\mondrv.dll
00B10000[00023000]
[ M] 102. c:\program files\rising\rav\defmon.dll
00B50000[00010000]
[ M] 103. c:\program files\rising\rav\moncom08.dll
00B70000[0006C000]
[ M] 104. c:\program files\rising\rav\monrule.dll
00C20000[00028000]
[ M] 105. c:\program files\rising\rav\filemon.dll
00C60000[0002B000]
[ M] 106. c:\program files\rising\rav\mailmon.dll
00CA0000[00012000]
[ M] 107. c:\program files\rising\rav\hookweb.dll
00D20000[00010000]
[ M] 87. c:\program files\rising\rav\proccomm.dll
01030000[0000E000]
[ M] 85. c:\program files\rising\rav\rsappmgr.dll
01050000[00031000]
[ M] 86. c:\program files\rising\rav\cfgdll.dll
01190000[0002D000]
[ M] 108. c:\program files\rising\rav\comx3.dll
011C0000[00019000]
[ M] 109. c:\program files\rising\rav\syslay.dll
01330000[00020000]
[ M] 110. c:\program files\rising\rav\hooksys.dll
01400000[0001F000]
[ M] 111. c:\program files\rising\rav\proccom.dll
01420000[00024000]
[ M] 112. c:\program files\rising\rav\rscommx2.dll
01560000[00013000]
[ M] 113. c:\program files\rising\rav\hookcont.dll
015A0000[00067000]
[ M] 114. c:\program files\rising\rav\rsnetsvr.dll
01960000[00070000]
[ M] 115. c:\program files\rising\rav\bacore.dll
01AE0000[0003C000]
[ M] 116. c:\program files\rising\rav\recomp.dll
01B30000[00036000]
[ M] 117. c:\program files\rising\rav\refs.dll
01B80000[0002A000]
[ M] 118. c:\program files\rising\rav\rsstore.dll
01BC0000[0000D000]
[ M] 119. c:\program files\rising\rav\scanadd.dll
01BD0000[00026000]
[ M] 120. c:\program files\rising\rav\scanner.dll
01E10000[00030000]
[ M] 121. c:\program files\rising\rav\viruslib.dll
01F50000[00028000]
[ M] 122. c:\program files\rising\rav\relibldr.dll
03FD0000[00022000]
[ M] 123. c:\program files\rising\rav\ffr.dll
04110000[00021000]
[ M] 124. c:\program files\rising\rav\nvfile.dll
13AB0000[00045000]
[ M] 125. c:\program files\rising\rav\scanexec.dll
049B0000[002DD000]
[ M] 126. c:\program files\rising\rav\unexe.dll
04CA0000[000DB000]
[ M] 127. c:\program files\rising\rav\scanex.dll
05120000[000F7000]
[ M] 128. c:\program files\rising\rav\extfile.dll
054C0000[00029000]
[ M] 129. c:\program files\rising\rav\pearc.dll
05500000[00029000]
[ M] 130. c:\program files\rising\rav\scanpe.dll
07260000[0001B000]
[ M] 131. c:\program files\rising\rav\ur000.dat
07290000[00035000]
[ M] 132. c:\program files\rising\rav\urutils.dll
07AD0000[000B7000]
[ M] 133. c:\program files\rising\rav\revm.dll
05470000[00013000]
[ M] 134. c:\program files\rising\rav\ur025.dat
02810000[00023000]
[ M] 135. c:\program files\rising\rav\scansct.dll
02850000[00012000]
[ M] 136. c:\program files\rising\rav\ur001.dat
14210000[00039000]
[ M] 137. c:\program files\rising\rav\extmail.dll
028A0000[0003A000]
[ M] 138. c:\program files\rising\rav\scriptci.dll
01230000[0006C000]
[ M] 139. c:\program files\rising\rav\uroutine.dll
012C0000[0001D000]
[ M] 140. c:\program files\rising\rav\ur004.dat
用户系统信息:Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) )