HijackThis_815汉化版扫描日志 V1.99.1
保存于 18:55:15, 日期 2006-10-12
操作系统: Windows XP SP2 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP2 (6.00.2900.2180)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CNNIC\Cdn\cdnup.exe
C:\WINDOWS\system32\Com\SERVICES.EXE
c:\program files\rising\rfw\RfwMain.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Tencent\QQ\QQ.exe
C:\Program Files\Tencent\QQ\TIMPlatform.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\conime.exe
C:\WINDOWS\system32\alexa.exe
C:\PROGRA~1\Yahoo!\ASSIST~1\ylive.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\3721\ske\TrojanAssistant.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\guo\桌面\HijackThis1991zww.exe
O2 - BHO: (no name) - {00014B58-338A-45F2-81E2-6A86F27399B7} - C:\PROGRA~1\INTERN~1\PLUGINS\BOBOHE~1.DLL
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v5.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {0926A1D1-D8BC-4D32-94A8-D5B445EC0D0F} - C:\WINDOWS\system32\Sybbf.dll (file missing)
O2 - BHO: ChajianHelper Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\WINDOWS\system32\SYSREA~1.DLL
O2 - BHO: wmpdrm - {0E674588-66B7-4E19-9D0E-2053B800F69F} - C:\WINDOWS\system32\wmpdrm.dll (file missing)
O2 - BHO: (no name) - {0E71F47C-7AEE-4273-BF73-CB2442206949} - C:\WINDOWS\system32\Fqal.dll (file missing)
O2 - BHO: (no name) - {1CC86918-A4DE-4E22-8229-05B83F8F10F3} - C:\WINDOWS\system32\Ufidp.dll (file missing)
O2 - BHO: (no name) - {1E00AE19-A0CF-4141-9027-808C40160BC8} - C:\WINDOWS\system32\Ndbges.dll (file missing)
O2 - BHO: (no name) - {254D1419-D518-4928-AC96-A870F4DA79B5} - C:\WINDOWS\system32\Ltoqsq.dll (file missing)
O2 - BHO: yPhtb - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
O2 - BHO: Anti Fish - {38928D50-8A48-44C2-945F-D2F23F771410} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O2 - BHO: (no name) - {42DEF931-023F-43CA-B339-3EF13911AE1B} - C:\WINDOWS\system32\Rtjh.dll (file missing)
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O2 - BHO: (no name) - {58D0310E-0154-45A4-B8E4-28E8BD900186} - C:\WINDOWS\system32\Ttuyqp.dll (file missing)
O2 - BHO: CdnForIE Class - {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} - C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O2 - BHO: Router Layer - {5EB7CB50-E375-4718-B4C0-9AD12EFA2F84} - C:\WINDOWS\System32\aclayer.dll (file missing)
O2 - BHO: YDragSearch - {62EED7C6-9F02-42f9-B634-98E2899E147B} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
O2 - BHO: Vision - {6671A431-5C3D-463d-A7CF-5587F9B7E191} - C:\PROGRA~1\MMSASS~1\mmsass~1.dll (file missing)
O2 - BHO: (no name) - {688ED341-A6BA-47BA-AA62-876A8A158AAF} - C:\WINDOWS\system32\Tauvx.dll (file missing)
O2 - BHO: (no name) - {6999ACD3-C080-4791-9D70-7BE62E995618} - C:\WINDOWS\system32\Rvglrf.dll (file missing)
O2 - BHO: stdup - {6A512BF7-EC78-4e8d-9841-6C02E8FA9838} - C:\WINDOWS\SYSTEM32\stdup.dll (file missing)
O2 - BHO: MSHlper Class - {721E6521-4CAD-4A8D-A7F1-4E230B31EF19} - C:\WINDOWS\system32\MSHLP.DLL (file missing)
O2 - BHO: (no name) - {7378B502-BB66-4B02-98BF-5B041C0B30B4} - C:\WINDOWS\system32\Ofkrhk.dll (file missing)
O2 - BHO: (no name) - {8E81E163-C4D6-4E20-850A-1928A7FEBBD5} - C:\WINDOWS\system32\Jujv.dll (file missing)
O2 - BHO: (no name) - {A1A139B6-9069-4662-B3F8-07E081CBF07B} - C:\WINDOWS\system32\Qxqynh.dll (file missing)
O2 - BHO: (no name) - {AB26CA07-4FE7-4914-A0AE-0DCC0118F13B} - C:\WINDOWS\system32\Evuagh.dll (file missing)
O2 - BHO: (no name) - {AD684D49-F982-4CFF-8CD9-A105F340CD90} - C:\WINDOWS\system32\Uewhky.dll (file missing)
O2 - BHO: DownloadBHO T2BHO - {B1D147E7-873E-4909-8127-695D9BB78728} - C:\WINDOWS\Downloaded Program Files\barhelp24.0.dll
O2 - BHO: (no name) - {B36FAF42-EF78-4B8D-8E11-FD36555A2C5E} - C:\WINDOWS\system32\Rtga.dll (file missing)
O2 - BHO: (no name) - {B9E5AC0A-9DB5-4147-8444-604CFACEB5F2} - C:\WINDOWS\system32\Teyiy.dll (file missing)
O2 - BHO: (no name) - {BDDD6710-A2B5-44BB-87D0-785B96243310} - C:\WINDOWS\system32\Kuyw.dll (file missing)
O2 - BHO: is
Object Class - {BE0B5843-553A-48C2-9A42-258A1D791AFC} - C:\PROGRA~1\hbclient\tbcast.dll (file missing)
O2 - BHO: shdocvwhlp Class - {BE442802-3911-46E0-B227-076B15A4EAD3} - C:\WINDOWS\system32\mssnmp16.dll (file missing)
O2 - BHO: (no name) - {C5AAE91C-E86F-4E2B-9818-C68556D61F1F} - C:\WINDOWS\system32\Uhyp.dll (file missing)
O2 - BHO: (no name) - {D2125A51-1316-4B8D-9D46-0BE73056010E} - C:\WINDOWS\system32\Sqsqi.dll (file missing)
O2 - BHO: (no name) - {DBC203C4-CF7A-4E77-B1DD-7864FCD436A3} - C:\WINDOWS\system32\Zccork.dll (file missing)
O2 - BHO: 1 - {E78F50F9-51CF-40EC-AE3F-4F802528150B} - C:\WINDOWS\Downloader.dll (file missing)
O2 - BHO: (no name) - {F4109E18-88AC-4762-8541-4A7D365C90F5} - C:\WINDOWS\system32\Raher.dll (file missing)
O2 - BHO: (no name) - {F4D75857-A946-4D47-84EE-0DFF6592D1ED} - C:\WINDOWS\system32\Nrdzlf.dll (file missing)
O2 - BHO: WMHlprObj Class - {F5824EFB-728A-4726-A5A5-85A68B20EDC3} - C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll (file missing)
O3 - IE工具栏增项: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
O3 - IE工具栏增项: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O4 - 启动项HKLM\\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 启动项HKLM\\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - 启动项HKLM\\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - 启动项HKLM\\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 启动项HKLM\\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - 启动项HKLM\\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - 启动项HKLM\\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - 启动项HKLM\\Run: [SECUPDATE] C:\Program Files\MySec\secupdateaai.exe -sv
O4 - 启动项HKLM\\Run: [Realplayer.exe] C:\WINDOWS\system32\Realplayer.exe
O4 - 启动项HKLM\\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - 启动项HKLM\\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Baizhao] C:\PROGRA~1\BAIZHAO\Baizhao.exe
O4 - HKCU\..\Run: [Realplayer.exe] C:\WINDOWS\system32\Realplayer.exe
O4 - Startup: 腾讯QQ.lnk = C:\Program Files\Tencent\QQ\QQ.exe