Logfile of HijackThis v1.99.1
Scan saved at 洁J14:09:17, on 2006-7-28
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
D:\常用软件\kv2004\KV2004\KVSrvXp.exe
C:\Program Files\Common Files\Sogou PXP\p2psvr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
D:\系统工具\vrv\vrvmon.exe
D:\系统工具\rising\Rfw\Rfw.exe
C:\WINDOWS\SOUNDMAN.EXE
D:\系统工具\PDVDServ.exe
D:\系统工具\vrv\vrvnet.exe
D:\常用软件\kv2004\KV2004\KVMonXP.kxp
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\常用软件\新建文件夹 (2)\qttask.exe
C:\WINDOWS\System32\ctfmon.exe
D:\常用软件\qq2005\QQ.exe
D:\常用软件\qq2005\TIMPlatform.exe
D:\常用软件\TT\TT 2\TTraveler.exe
C:\Program Files\FlashGet\flashget.exe
D:\常用软件\HijackThis V1.99.1 汉化版\ha_hijackthis_1991\HijackThis.exe
R3 - URLSearchHook: MyURLSearchHook Class - {982CB676-38F0-4D9A-BB72-D9371ABE876E} - C:\Program Files\P4P\ToolBar.dll
R3 - URLSearchHook: SgUrlSearHook Class - {BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D} - C:\WINDOWS\System32\socul.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\userinit.exe
O2 - BHO: PPGou BHO - {00000000-0000-0000-0000-C4CA9A05F1E2} - D:\常用软件\PPDOG~1\PPGou2\PPG2IE~1.DLL
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\System32\xunleibho_v5.dll
O2 - BHO: 搜搜地址栏搜索 - {0C7C23EF-A848-485B-873C-0ED954731014} - C:\Program Files\TENCENT\Adplus\SSAddr.dll
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - C:\Program Files\P4P\sodaie.dll
O2 - BHO: xBarHelper.MoveCatchPic - {0CF098A0-CBAC-4EFB-8451-3AFC201C7222} - C:\Program Files\xBar\xBarHelper.dll
O2 - BHO: IDDTInitObj Class - {15DDE989-CD45-4561-BF99-D22C0D5C2B74} - D:\常S用萌软砑件\uc\UC\UCddt\ddtinit.dll (file missing)
O2 - BHO: (no name) - {1CEF9819-AE18-40D5-8F5F-1928B45E7EC9} - C:\WINDOWS\System32\Fxslk.dll
O2 - BHO: (no name) - {33B17D8D-8FDE-4176-8BC9-909D9CE56852} - C:\WINDOWS\System32\Fosdyr.dll
O2 - BHO: yPhtb - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
O2 - BHO: MsHelp Class - {33C3992F-1963-49BE-88D7-974C8EE564B5} - C:\WINDOWS\System32\MsHelper.dll
O2 - BHO: CNNIC_IDN - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
O2 - BHO: Anti Fish - {38928D50-8A48-44C2-945F-D2F23F771410} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\常用软件\qq2005\QQIEHelper.dll
O2 - BHO: DragSearch BHO - {62EED7C6-9F02-42f9-B634-98E2899E147B} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
O2 - BHO: (no name) - {669751ED-D558-49AE-B01A-3B374CC7910E} - C:\WINDOWS\System32\ssup.dll
O2 - BHO: KillObj Class - {66C28884-4E5D-494B-80C9-CAA27528FD6D} - D:\常S用萌软砑件\uc\UC\UCddt\ddtkillw.ocx (file missing)
O2 - BHO: (no name) - {66FBA8F8-A13E-4C5D-B15D-072629A25B34} - C:\WINDOWS\System32\Gxkfx.dll (file missing)
O2 - BHO: BrowseHelper Class - {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} - D:\常用软件\kv2004\KV2004\KvShell.dll
O2 - BHO: (no name) - {827950AE-6C01-4253-9050-EB6D3CB5B761} - C:\WINDOWS\System32\Lowzz.dll (file missing)
O2 - BHO: (no name) - {99AED5D1-DE0C-4A86-80C1-44343EC5FCF5} - C:\WINDOWS\System32\Jelmtm.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FLASHGET\jccatch.dll
O2 - BHO: (no name) - {A9930D97-9CF0-42A0-A10D-4F28836579D5} - D:\常用软件\kugoo\KuGoo3\KuGoo3DownXControl.ocx
O2 - BHO: (no name) - {BE9F6573-9819-4C8A-A23C-CF3077B1864C} - C:\WINDOWS\System32\Givqer.dll
O2 - BHO: IEHlprObj Class - {CE7C3CF0-4B15-11D1-ABED-709549C10000} - C:\WINDOWS\System32\IEHelper.dll
O2 - BHO: CnsHook Class - {D157330A-9EF3-49F8-9A67-4141AC41ADD4} - C:\WINDOWS\downlo~1\CnsHook.dll
O2 - BHO: Csyshelper
Object - {E16BB625-16F1-4338-AA38-098F6873AC24} - C:\WINDOWS\System32\syshelper.dll
O2 - BHO: (no name) - {EBDB292A-6CAA-4EB9-8BDD-B7260D9138B9} - C:\WINDOWS\System32\Tfpz.dll
O2 - BHO: (no name) - {F7DBC2A5-A15D-4C82-A3DD-079B8F3E4A8C} - C:\WINDOWS\System32\Ztak.dll (file missing)
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: 江民杀毒工具栏 - {B5A34A93-D538-43A7-8371-864CB6148D12} - D:\常用软件\kv2004\KV2004\KvShell.dll
O3 - Toolbar: 新浪点点通 - {F60C7D81-8471-4D40-AAFE-56D318F34C2D} - D:\常用软件\uc\UC\UCddt\DDTONG~1.DLL (file missing)
O3 - Toolbar: 完美网译通 - {F43BD772-ABDD-43b7-A96A-3E9E61946EC0} - C:\WINDOWS\WORLD2\TOOLBAR\hmtoolbar.dll
O3 - Toolbar: 捜狗直通车 - {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} - C:\Program Files\P4P\ToolBar.dll
O3 - Toolbar: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O3 - Toolbar: 实用搜索 - {15ADF205-4C54-4cfe-AC88-1EA0BA6D06A0} - C:\Program Files\ScanToolbar\ScanBar.dll
O3 - Toolbar: BitCometBar - {3F1ABCDB-A875-46c1-8345-B72A4567E486} - D:\常用软件\BT\BitComet\BitCometBar\BitCometBar0.2.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [xysecond] D:\系统工具\vrv\vrvmon.exe
O4 - HKLM\..\Run: [rfw] D:\系统工具\rising\Rfw\Rfw.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [RemoteControl] D:\系统工具\PDVDServ.exe
O4 - HKLM\..\Run: [vrvnet] d:\系统工具\vrv\vrvnet.exe
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\Run: [KvMonXP] D:\常用软件\kv2004\KV2004\KVMonXP.kxp /auto
O4 - HKLM\..\Run: [YDTMain.exe] C:\PROGRA~1\YDT\YDTMain.exe
O4 - HKLM\..\Run: [NMGameX_AutoRun] C:\WINDOWS\System32\Rundll32.exe nmgamex.dll,LiveProcess /aa
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ServiceHome] D:\常用软件\新建文件夹\PSH2.exe /startup
O4 - HKLM\..\Run: [xBarUpdate] C:\Program Files\xBar\xBarUpdate.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\常用软件\新建文件夹 (2)\qttask.exe" -atboottime
O4 - HKLM\..\Run: [stup.exe] C:\PROGRA~1\TENCENT\Adplus\stup.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [PPGou] D:\常用软件\ppgou\PPGou\PPGou.exe /h
O4 - Startup: 腾讯QQ.lnk = ?