各位高手帮忙看吓啊
Logfile of HijackThis v1.99.1
Scan saved at 8:59:54, on 2006-6-22
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\Program Files\Borland\InterBase\bin\ibguard.exe
C:\Program Files\Borland\InterBase\bin\ibserver.exe
C:\WINDOWS\Explorer.EXE
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Tencent\QQ\QQ.exe
C:\Program Files\Tencent\QQ\QQ.exe
C:\Program Files\Tencent\QQ\QQ.exe
C:\WINDOWS\system32\wuauclt.exe
F:\HijackThis V1.99\HijackThis.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v6.dll
O2 - BHO: MonitorURL Class - {08A312BB-5409-49FC-9347-54BB7D069AC6} - C:\PROGRA~1\DESKAD~1\deskipn.dll
O2 - BHO: ChajianHelper Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\WINDOWS\system32\SYSREA~1.DLL
O2 - BHO: Zhongsou Browser Helper - {2A0176FE-008B-4706-90F5-BBA532A49731} - C:\Program Files\SearchNet\SNHpr.dll (file missing)
O2 - BHO: Kmedia - {42D25F15-CF07-4A72-B191-DB0792BF310C} - C:\WINDOWS\system32\Kmedia.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: 上传到QQ网络硬盘 - C:\Program Files\Tencent\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 使用网际快车下载 - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: 使用网际快车下载全部链接 - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - C:\Program Files\Tencent\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - C:\Program Files\Tencent\QQ\SendMMS.htm
O9 - Extra button: 体验家园主页 - {6096E38F-5AC1-4391-8EC4-75DFA92FB32F} - http://www.xpboy.com (file missing)
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: 易趣购物 - {DE60714F-AC17-427e-861A-FD60CBDF119A} - http://click2.ad4all.net/url2/urlmanage/url.asp?id=1 (file missing)
O9 - Extra 'Tools' menuitem: 易趣购物 - {DE60714F-AC17-427e-861A-FD60CBDF119A} - http://click2.ad4all.net/url2/urlmanage/url.asp?id=1 (file missing)
O15 - Trusted Zone: http://www.7liao.com
O15 - Trusted Zone: http://hegll.oicp.net
O15 - Trusted Zone: http://hegll.vicp.net
O15 - Trusted IP range: http://59.35.192.30
O15 - Trusted IP range: http://61.235.91.137
O16 - DPF: {018594C7-F286-4117-A26D-8D7CE53C0D86} (PU_VendorInOut_UI.PU_VendorInOut) - http://59.35.192.30:8899/power2000/DownLoad/PU/PU_VendorInOut_UI.CAB
O16 - DPF: {036E1920-9157-4A3F-B0EE-C7A0DB66A3E5} (GL_CuVcPayment_UI.GL_CuVcPayment) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_CuVcPayment_UI.CAB
O16 - DPF: {04CED5C3-B80A-4436-9BD8-970BD6736B49} (FA_Setting_UI.FA_Setting) - http://59.35.192.30:8899/power2000/DownLoad/FA/FA_Setting_UI.CAB
O16 - DPF: {10C733D4-47AC-44F2-979F-B0A7D8C7C946} (ST_MoveBill_UI.ST_MoveBill) - http://59.35.192.30:8899/power2000/DownLoad/ST/ST_MoveBill_UI.CAB
O16 - DPF: {1BC9B132-DF42-4D6E-8C4E-87702B63D5B3} (DS_ClientTotal_UI.DS_ClientTotal) - http://59.35.192.30:8899/power2000/DownLoad/DS/DS_ClientTotal_UI.CAB
O16 - DPF: {1C60EE44-2C95-437B-8BDB-84A736B01C09} (PU_InBill_UI.PU_InBill) - http://59.35.192.30:8899/power2000/DownLoad/PU/PU_InBill_UI.CAB
O16 - DPF: {1F2EBC7B-AB6D-49A0-B558-FE6DB1307C96} (FD_ArtCate_UI.FD_ArtCate) - http://59.35.192.30:8899/power2000/DownLoad/FD/FD_ArtCate_UI.CAB
O16 - DPF: {1FB76DD4-D55D-4BDB-AF15-4D5274CCB660} (FD_Zone_UI.FD_Zone) - http://59.35.192.30:8899/power2000/DownLoad/FD/FD_Zone_UI.CAB
O16 - DPF: {21B06612-C2AF-49B4-BA51-742C331562AF} (FA_CateDepr_UI.FA_CateDepr) - http://59.35.192.30:8899/power2000/DownLoad/FA/FA_CateDepr_UI.CAB
O16 - DPF: {23EA5C68-ECFF-4DF8-9AC0-1EADDD1FC195} (DS_ClientInOut_UI.DS_ClientInOut) - http://59.35.192.30:8899/power2000/DownLoad/DS/DS_ClientInOut_UI.CAB
O16 - DPF: {296712B7-AB9E-4C62-BECE-B7E1A633722E} (SM_Layout_UI.SM_Layout) - http://59.35.192.30:8899/power2000/DownLoad/SM/SM_Layout_UI.CAB
O16 - DPF: {310B43C0-D5B1-4283-BDAF-4FD042176670} (GL_MultiCol_UI.GL_MultiCol) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_MultiCol_UI.CAB
O16 - DPF: {33FAAA39-F8E0-459B-8B6D-89727CFE5B09} (FD_Dept_UI.FD_Dept) - http://59.35.192.30:8899/power2000/DownLoad/FD/FD_Dept_UI.CAB
O16 - DPF: {3C642BFC-4969-496A-BB4C-6FCCF886A953} (GL_ProfitVc_UI.GL_ProfitVc) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_ProfitVc_UI.CAB
O16 - DPF: {3FEDE885-6AB5-4C71-B204-1090ED75393A} (HG_InBill_UI.HG_InBill) - http://59.35.192.30:8899/power2000/DownLoad/CU/HG_InBill_UI.CAB
O16 - DPF: {40C430A6-5D78-4060-BBA6-F927D8B82366} (CRUFL_Power2000_API.GL) - http://59.35.192.30:8899/power2000/DownLoad/SY/CRUFL_Power2000_API.CAB
O16 - DPF: {475247DE-B09A-467C-82B5-D2BDD764FAF2} (CA_PayBill_UI.CA_PayBill) - http://59.35.192.30:8899/power2000/DownLoad/CA/CA_PayBill_UI.CAB
O16 - DPF: {49956E7D-0266-4AB4-A4E3-D6801B736012} (FD_Oper_UI.FD_Oper) - http://59.35.192.30:8899/power2000/DownLoad/FD/FD_Oper_UI.CAB
O16 - DPF: {4E054337-E470-4DCF-8D89-4A76943CE796} (SY_MSWinCommonCtl.SY_MSWinCommon) - http://59.35.192.30:8899/power2000/DownLoad/SY/SY_MSWinCommonCtl.CAB
O16 - DPF: {4FC2B786-9418-472B-8544-C93345BF632A} (DS_ArticleDetail_UI.DS_ArticleDetail) - http://59.35.192.30:8899/power2000/DownLoad/DS/DS_ArticleDetail_UI.CAB
O16 - DPF: {586A05F7-0D58-4078-9E93-B1E20E4F8593} (Power2000_UI.Power2000) - http://59.35.192.30:8899/power2000/DownLoad/SY/Power2000_UI.CAB
O16 - DPF: {5917CB6F-1061-4B8F-A0A9-831D5CE89CBB} (ST_IOTotal_UI.ST_IOTotal) - http://59.35.192.30:8899/power2000/DownLoad/ST/ST_IOTotal_UI.CAB
O16 - DPF: {629A9E42-54F5-410A-BF54-5607735EC76D} (ST_UnPack_UI.ST_UnPack) - http://59.35.192.30:8899/power2000/DownLoad/ST/ST_UnPack_UI.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1125405223875
O16 - DPF: {65531A85-3DC5-499D-B601-7699507BBCA7} (ST_IODetail_UI.ST_IODetail) - http://59.35.192.30:8899/power2000/DownLoad/ST/ST_IODetail_UI.CAB
O16 - DPF: {65B39546-C622-4C6A-93DD-C4E6C7FAA1C4} (GL_Acc_UI.GL_Acc) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_Acc_UI.CAB
O16 - DPF: {66DB4616-3BC3-4913-9347-EEC79D86B79D} (PU_OutBill_UI.PU_OutBill) - http://59.35.192.30:8899/power2000/DownLoad/PU/PU_OutBill_UI.CAB
O16 - DPF: {6DB39024-7048-43B7-818F-5204EA1E9442} (DS_Client_UI.DS_Client) - http://59.35.192.30:8899/power2000/DownLoad/DS/DS_Client_UI.CAB
O16 - DPF: {6E2CF86C-B2C1-4B66-B7EB-E71EAD55D55A} (GL_CuEnterAcc_UI.GL_CuEnterAcc) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_CuEnterAcc_UI.CAB
O16 - DPF: {737FBB00-BA52-46F5-8341-CC445E24B4FD} (SY_RichTextCtl.SY_RichText) - http://59.35.192.30:8899/power2000/DownLoad/SY/SY_RichTextCtl.CAB
O16 - DPF: {77520D63-DA71-41A2-B4A5-5DD9212E0818} (GL_Voucher_UI.GL_Voucher) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_Voucher_UI.CAB
O16 - DPF: {82377933-80D2-411D-B806-9B2B938BB48A} (ST_OutBill_UI.ST_OutBill) - http://59.35.192.30:8899/power2000/DownLoad/ST/ST_OutBill_UI.CAB
O16 - DPF: {847030F0-EFAC-4388-BE61-B5F05592C6A9} (GL_CuVcRecBill_UI.GL_CuVcRecBill) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_CuVcRecBill_UI.CAB
O16 - DPF: {854864AE-821E-41A7-9E7F-FE3FB40FFD94} (CA_Recment_UI.CA_Recment) - http://59.35.192.30:8899/power2000/DownLoad/CA/CA_Recment_UI.CAB
O16 - DPF: {8837919F-9941-4BB8-B14F-672B1529D74D} (PU_InQuery_UI.PU_InQuery) - http://59.35.192.30:8899/power2000/DownLoad/PU/PU_InQuery_UI.CAB
O16 - DPF: {8865253D-1B57-47EB-9B4A-D5AF3F274D10} (GL_CuVcStock_UI.GL_CuVcStock) - http://59.35.192.30:8899/power2000/DownLoad/GL/GL_CuVcStock_UI.CAB
O16 - DPF: {888C0DEC-64C1-4693-A523-AF5C0CD7AD4A} (DS_OutBill_UI.DS_OutBill) - http://59.35.192.30:8899/power2000/DownLoad/DS/DS_OutBill_UI.CAB