瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 中了9505上网导航的病毒半个多月!首页被永久锁定,救命!

12   1  /  2  页   跳转

中了9505上网导航的病毒半个多月!首页被永久锁定,救命!

中了9505上网导航的病毒半个多月!首页被永久锁定,救命!

电脑不定时重启,瑞星有查出三个病毒但是却无法杀死。首页被锁定在http://hao.allxun.com/这个网址上,名字叫9505上网导航!痛苦。。。经常CPU达到100%,电脑走不动。曾下载专杀工具也搞不定,请高手帮助!下面是我用卡卡导出的日志。
最后编辑2006-12-03 23:04:22
分享到:
gototop
 

[smss.exe]
PID = 0x1b4
CommandLine =
smss.exe
0x48580000
C:\WINDOWS\system32\smss.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT Session Manager
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00




[csrss.exe]
PID = 0x1ec
CommandLine = C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
csrss.exe
0x4a680000
c:\windows\system32\csrss.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Client Server Runtime Process
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

CSRSRV.dll
0x75aa0000
C:\WINDOWS\system32\csrsrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Client Server Runtime Process
2001-09-05 12:00:00

basesrv.dll
0x75ab0000
C:\WINDOWS\system32\basesrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Server DLL
2001-09-05 12:00:00

winsrv.dll
0x75ac0000
C:\WINDOWS\system32\winsrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Server DLL
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

KERNEL32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00
gototop
 

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

sxs.dll
0x75e00000
C:\WINDOWS\system32\sxs.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Fusion 2.5
2001-09-05 12:00:00




[winlogon.exe]
PID = 0x204
CommandLine = winlogon.exe
winlogon.exe
0x1000000
c:\windows\system32\winlogon.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT Logon Application
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

AUTHZ.dll
0x76c90000
C:\WINDOWS\system32\authz.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Authorization Framework
2001-09-05 12:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT CRT DLL
2001-09-05 12:00:00

CRYPT32.dll
0x76230000
C:\WINDOWS\system32\crypt32.dll
5.131.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Crypto API32
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

MSASN1.dll
0x76210000
C:\WINDOWS\system32\msasn1.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
ASN.1 Runtime APIs
2001-09-05 12:00:00

NDdeApi.dll
0x758a0000
C:\WINDOWS\system32\nddeapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Network DDE Share Management APIs
2001-09-05 12:00:00

PROFMAP.dll
0x75890000
C:\WINDOWS\system32\profmap.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00

NETAPI32.dll
0x71ba0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Net Win32 API DLL
2001-09-05 12:00:00

USERENV.dll
0x759d0000
C:\WINDOWS\system32\userenv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00
gototop
 

PSAPI.DLL
0x76bc0000
C:\WINDOWS\system32\psapi.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Process Status Helper
2001-09-05 12:00:00

REGAPI.dll
0x76b90000
C:\WINDOWS\system32\regapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Registry Configuration APIs
2001-09-05 12:00:00

Secur32.dll
0x76f60000
C:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

SETUPAPI.dll
0x765e0000
C:\WINDOWS\system32\setupapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Setup API
2001-09-05 12:00:00

sfc_os.dll
0x76c30000
C:\WINDOWS\system32\sfc_os.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows 文件保护
2001-09-05 12:00:00

WINTRUST.dll
0x76c00000
C:\WINDOWS\system32\wintrust.dll
5.131.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Trust Verification APIs
2001-09-05 12:00:00

ole32.dll
0x77180000
C:\WINDOWS\system32\ole32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Microsoft OLE for Windows
2001-09-05 12:00:00

IMAGEHLP.dll
0x76c60000
C:\WINDOWS\system32\imagehlp.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Windows NT Image Helper
2001-09-05 12:00:00

VERSION.dll
0x77bd0000
C:\WINDOWS\system32\version.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Version Checking and File Installation Libraries
2001-09-05 12:00:00

WINSTA.dll
0x762d0000
C:\WINDOWS\system32\winsta.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Winstation Library
2001-09-05 12:00:00

WS2_32.dll
0x71a20000
C:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
C:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

MSGINA.dll
0x758d0000
C:\WINDOWS\system32\msgina.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT Logon GINA DLL
2001-09-05 12:00:00

SHELL32.dll
0x773a0000
C:\WINDOWS\system32\shell32.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Windows Shell Common Dll
2001-11-20 20:00:00

SHLWAPI.dll
0x63180000
C:\WINDOWS\system32\SHLWAPI.DLL
6.00.2730.1200
Microsoft Corporation
Shell Light-weight Utility Library
2004-01-16 07:56:04

COMCTL32.dll
0x77310000
C:\WINDOWS\system32\comctl32.dll
5.82 (xpclient.010817-1148)
Microsoft Corporation
Common Controls Library
2001-09-05 12:00:00

ODBC32.dll
0x1f7b0000
C:\WINDOWS\system32\odbc32.dll
3.520.7713.0
Microsoft Corporation
Microsoft Data Access - ODBC Driver Manager
2001-09-05 12:00:00

comdlg32.dll
0x76320000
C:\WINDOWS\system32\comdlg32.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Common Dialogs DLL
2001-09-05 12:00:00

comctl32.dll
0xa50000
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
6.0 (xpclient.010817-1148)
Microsoft Corporation
User Experience Controls Library
2001-09-05 20:00:00

odbcint.dll
0x1f850000
C:\WINDOWS\system32\odbcint.dll
3.520.7713.0
Microsoft Corporation
Microsoft Data Access - ODBC Resources
2001-09-05 12:00:00

SHSVCS.dll
0x76ba0000
C:\WINDOWS\system32\shsvcs.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Windows Shell Services Dll
2001-09-05 12:00:00

sfc.dll
0x76b80000
C:\WINDOWS\system32\sfc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows File Protection
2001-09-05 12:00:00

WINSCARD.DLL
0x72360000
C:\WINDOWS\system32\winscard.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Smart Card API
2001-09-05 12:00:00

WTSAPI32.dll
0x76f20000
C:\WINDOWS\system32\wtsapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Terminal Server SDK APIs
2001-09-05 12:00:00

sxs.dll
0x75e00000
C:\WINDOWS\system32\sxs.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Fusion 2.5
2001-09-05 12:00:00

WINMM.dll
0x76b10000
C:\WINDOWS\system32\winmm.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
MCI API DLL
2001-09-05 12:00:00

uxtheme.dll
0x5adc0000
C:\WINDOWS\system32\uxtheme.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Microsoft UxTheme Library
2001-09-05 12:00:00

rsaenh.dll
0xffd0000
C:\WINDOWS\system32\rsaenh.dll
5.1.2518.0 (main.010714-2114)
Microsoft Corporation
Microsoft Base Cryptographic Provider
2001-09-05 12:00:00

cscdll.dll
0x76570000
C:\WINDOWS\system32\cscdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Offline Network Agent
2001-09-05 12:00:00

WlNotify.dll
0x758b0000
C:\WINDOWS\system32\wlnotify.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Common DLL to receive Winlogon notifications
2001-09-05 12:00:00

WINSPOOL.DRV
0x72f70000
C:\WINDOWS\system32\winspool.drv
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Windows Spooler Driver
2001-09-05 12:00:00

MPR.dll
0x71a90000
C:\WINDOWS\system32\mpr.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Multiple Provider Router DLL
2001-09-05 12:00:00

SAMLIB.dll
0x71b70000
C:\WINDOWS\system32\samlib.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
SAM Library DLL
2001-09-05 12:00:00

msv1_0.dll
0x76ce0000
C:\WINDOWS\system32\msv1_0.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Authentication Package v1.0
2001-09-05 12:00:00

wldap32.dll
0x76f30000
C:\WINDOWS\system32\wldap32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Win32 LDAP API DLL
2001-09-05 12:00:00

cscui.dll
0x76590000
C:\WINDOWS\system32\cscui.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Client Side Caching UI
2001-09-05 12:00:00

wdmaud.drv
0x72c90000
C:\WINDOWS\system32\wdmaud.drv
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
WDM Audio driver mapper
2001-09-05 12:00:00

msacm32.drv
0x72c80000
C:\WINDOWS\system32\msacm32.drv
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Sound Mapper
2001-09-05 12:00:00

MSACM32.dll
0x77bb0000
C:\WINDOWS\system32\msacm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft ACM Audio Filter
2001-09-05 12:00:00

midimap.dll
0x77ba0000
C:\WINDOWS\system32\midimap.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft MIDI Mapper
2001-09-05 12:00:00

COMRes.dll
0x77020000
C:\WINDOWS\system32\comres.dll
2001.12.4414.42
Microsoft Corporation

2001-09-05 12:00:00

OLEAUT32.dll
0x770f0000
C:\WINDOWS\system32\oleaut32.dll
3.50.5014.0
Microsoft Corporation
Microsoft OLE 3.50  for Windows NT(TM) and Windows 95(TM) Operating Systems
2001-09-05 12:00:00

NTMARTA.DLL
0x76cb0000
C:\WINDOWS\system32\ntmarta.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT MARTA provider
2001-09-05 12:00:00

CLBCATQ.DLL
gototop
 

开始-运行键入regedit修改注册表HKEY_USER\.DEFAULT\Software\Policies\Mcrosoft\InternetExplorer\Control Panel下DWORD值"homegage"的健值把1改成0
gototop
 

0x76fa0000
C:\WINDOWS\system32\clbcatq.dll
2001.12.4414.42
Microsoft Corporation

2001-09-05 20:00:00

wbemprox.dll
0x74e50000
C:\WINDOWS\system32\wbem\wbemprox.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
WMI
2001-09-05 20:00:00

wbemcomn.dll
0x751f0000
C:\WINDOWS\system32\wbem\wbemcomn.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
WMI
2001-09-05 20:00:00

wbemsvc.dll
0x74e30000
C:\WINDOWS\system32\wbem\wbemsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
WMI
2001-09-05 20:00:00

fastprox.dll
0x755f0000
C:\WINDOWS\system32\wbem\fastprox.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
WMI
2001-09-05 20:00:00




[services.exe]
PID = 0x230
CommandLine = C:\WINDOWS\system32\services.exe
services.exe
0x1000000
C:\WINDOWS\system32\services.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Services and Controller app
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT CRT DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

USERENV.dll
0x759d0000
C:\WINDOWS\system32\userenv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00

SCESRV.dll
0x75840000
C:\WINDOWS\system32\scesrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Security Configuration Editor Engine
2001-09-05 12:00:00

AUTHZ.dll
0x76c90000
C:\WINDOWS\system32\authz.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Authorization Framework
2001-09-05 12:00:00

umpnpmgr.dll
0x75820000
C:\WINDOWS\system32\umpnpmgr.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
User-mode Plug-and-Play Service
2001-09-05 12:00:00

WINSTA.dll
0x762d0000
C:\WINDOWS\system32\winsta.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Winstation Library
2001-09-05 12:00:00

NCObjAPI.DLL
0x5f9a0000
C:\WINDOWS\system32\ncobjapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation

2001-09-05 12:00:00

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

secur32.dll
0x76f60000
C:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

eventlog.dll
0x75800000
C:\WINDOWS\system32\eventlog.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Event Logging Service
2001-09-05 12:00:00
gototop
 

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

secur32.dll
0x76f60000
C:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

eventlog.dll
0x75800000
C:\WINDOWS\system32\eventlog.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Event Logging Service
2001-09-05 12:00:00

WS2_32.dll
0x71a20000
C:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
C:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

PSAPI.DLL
0x76bc0000
C:\WINDOWS\system32\psapi.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Process Status Helper
2001-09-05 12:00:00

wtsapi32.dll
0x76f20000
C:\WINDOWS\system32\wtsapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Terminal Server SDK APIs
2001-09-05 12:00:00

netapi32.dll
0x71ba0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Net Win32 API DLL
2001-09-05 12:00:00




[lsass.exe]
PID = 0x23c
CommandLine = C:\WINDOWS\system32\lsass.exe
lsass.exe
0x1000000
C:\WINDOWS\system32\lsass.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
LSA Shell (Export Version)
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

LSASRV.dll
0x74480000
C:\WINDOWS\system32\lsasrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
LSA Server DLL
2001-09-05 12:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT CRT DLL
2001-09-05 12:00:00

Secur32.dll
0x76f60000
C:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

SAMSRV.dll
0x743a0000
C:\WINDOWS\system32\samsrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
SAM Server DLL
2001-09-05 12:00:00

cryptdll.dll
0x76760000
C:\WINDOWS\system32\cryptdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Cryptography Manager
2001-09-05 12:00:00

DNSAPI.dll
0x76ef0000
C:\WINDOWS\system32\dnsapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
DNS Client API DLL
2001-09-05 12:00:00

WS2_32.dll
0x71a20000
C:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
C:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

MSASN1.dll
0x76210000
C:\WINDOWS\system32\msasn1.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
ASN.1 Runtime APIs
2001-09-05 12:00:00

NETAPI32.dll
0x71ba0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Net Win32 API DLL
2001-09-05 12:00:00

SAMLIB.dll
0x71b70000
C:\WINDOWS\system32\samlib.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
SAM Library DLL
2001-09-05 12:00:00

MPR.dll
0x71a90000
C:\WINDOWS\system32\mpr.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Multiple Provider Router DLL
2001-09-05 12:00:00

NTDSAPI.dll
0x76770000
C:\WINDOWS\system32\ntdsapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT5DS
2001-09-05 12:00:00

WLDAP32.dll
0x76f30000
C:\WINDOWS\system32\wldap32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Win32 LDAP API DLL
2001-09-05 12:00:00

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

msprivs.dll
0x74310000
C:\WINDOWS\system32\msprivs.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Privilege Translations
2001-09-05 12:00:00

kerberos.dll
0x71c70000
C:\WINDOWS\system32\kerberos.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Kerberos Security Package
2001-09-05 12:00:00

msv1_0.dll
0x76ce0000
C:\WINDOWS\system32\msv1_0.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Authentication Package v1.0
2001-09-05 12:00:00

netlogon.dll
0x74410000
C:\WINDOWS\system32\netlogon.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Net Logon Services DLL
2001-09-05 12:00:00

w32time.dll
0x76790000
C:\WINDOWS\system32\w32time.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Time Service
2001-09-05 12:00:00

MSVCP60.dll
0x75ff0000
C:\WINDOWS\system32\msvcp60.dll
6.00.8972.0
Microsoft Corporation
Microsoft (R) C++ Runtime Library
2001-09-05 12:00:00

iphlpapi.dll
0x76d30000
C:\WINDOWS\system32\iphlpapi.dll
5.1.2600.2 (xpclient.010817-1148)
Microsoft Corporation
IP Helper API
2001-09-05 12:00:00

netman.dll
0x76db0000
C:\WINDOWS\system32\netman.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Network Connections Manager
2001-09-05 12:00:00

MPRAPI.dll
0x76d10000
C:\WINDOWS\system32\mprapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT MP Router Administration DLL
2001-09-05 12:00:00

ACTIVEDS.dll
0x76e10000
C:\WINDOWS\system32\activeds.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
ADs Router Layer DLL
2001-09-05 12:00:00

adsldpc.dll
0x76de0000
C:\WINDOWS\system32\adsldpc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
ADs LDAP Provider C DLL
2001-09-05 12:00:00

ATL.DLL
0x76af0000
C:\WINDOWS\system32\atl.dll
3.00.9238
Microsoft Corporation
ATL Module for Windows NT (Unicode)
2001-09-05 12:00:00

ole32.dll
0x77180000
C:\WINDOWS\system32\ole32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Microsoft OLE for Windows
2001-09-05 12:00:00

OLEAUT32.dll
0x770f0000
C:\WINDOWS\system32\oleaut32.dll
3.50.5014.0
Microsoft Corporation
Microsoft OLE 3.50  for Windows NT(TM) and Windows 95(TM) Operating Systems
2001-09-05 12:00:00

rtutils.dll
0x76e50000
C:\WINDOWS\system32\rtutils.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Routing Utilities
2001-09-05 12:00:00

SETUPAPI.dll
0x765e0000
C:\WINDOWS\system32\setupapi.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Setup API
2001-09-05 12:00:00

RASAPI32.dll
0x76eb0000
C:\WINDOWS\system32\rasapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Remote Access API
2001-09-05 12:00:00

rasman.dll
0x76e60000
C:\WINDOWS\system32\rasman.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Remote Access Connection Manager
2001-09-05 12:00:00

TAPI32.dll
0x76e80000
C:\WINDOWS\system32\tapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft(R) Windows(TM) Telephony API Client DLL
2001-09-05 12:00:00

SHLWAPI.dll
0x63180000
C:\WINDOWS\system32\SHLWAPI.DLL
6.00.2730.1200
Microsoft Corporation
Shell Light-weight Utility Library
2004-01-16 07:56:04

WINMM.dll
0x76b10000
C:\WINDOWS\system32\winmm.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
MCI API DLL
2001-09-05 12:00:00
gototop
 

SHELL32.dll
0x773a0000
C:\WINDOWS\system32\shell32.dll
6.00.2600.0000 (xpclient.010817-1148)
Microsoft Corporation
Windows Shell Common Dll
2001-11-20 20:00:00

WZCSvc.DLL
0x76d70000
C:\WINDOWS\system32\wzcsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Wireless Zero Configuration Service
2001-09-05 12:00:00

WMI.dll
0x76d00000
C:\WINDOWS\system32\wmi.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
WMI DC and DP functionality
2001-09-05 12:00:00

DHCPCSVC.DLL
0x76d50000
C:\WINDOWS\system32\dhcpcsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
DHCP Client Service
2001-09-05 12:00:00

CRYPT32.dll
0x76230000
C:\WINDOWS\system32\crypt32.dll
5.131.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Crypto API32
2001-09-05 12:00:00

WTSAPI32.dll
0x76f20000
C:\WINDOWS\system32\wtsapi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Terminal Server SDK APIs
2001-09-05 12:00:00
gototop
 

WINSTA.dll
0x762d0000
C:\WINDOWS\system32\winsta.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Winstation Library
2001-09-05 12:00:00

USERENV.dll
0x759d0000
C:\WINDOWS\system32\userenv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00

comctl32.dll
0x940000
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
6.0 (xpclient.010817-1148)
Microsoft Corporation
User Experience Controls Library
2001-09-05 20:00:00

comctl32.dll
0x77310000
C:\WINDOWS\system32\comctl32.dll
5.82 (xpclient.010817-1148)
Microsoft Corporation
Common Controls Library
2001-09-05 12:00:00

schannel.dll
0x767c0000
C:\WINDOWS\system32\schannel.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
TLS / SSL Security Provider
2001-09-05 12:00:00

wdigest.dll
0x742e0000
C:\WINDOWS\system32\wdigest.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Digest Access
2001-09-05 12:00:00

rsaenh.dll
0xffd0000
C:\WINDOWS\system32\rsaenh.dll
5.1.2518.0 (main.010714-2114)
Microsoft Corporation
Microsoft Base Cryptographic Provider
2001-09-05 12:00:00

scecli.dll
0x74370000
C:\WINDOWS\system32\scecli.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Security Configuration Editor Client Engine
2001-09-05 12:00:00

ipsecsvc.dll
0x74340000
C:\WINDOWS\system32\ipsecsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows IPSec SPD Server DLL
2001-09-05 12:00:00

oakley.DLL
0x74530000
C:\WINDOWS\system32\oakley.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Oakley Key Manager
2001-09-05 12:00:00

WINIPSEC.DLL
0x742d0000
C:\WINDOWS\system32\winipsec.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows IPSec SPD Client DLL
2001-09-05 12:00:00

pstorsvc.dll
0x74300000
C:\WINDOWS\system32\pstorsvc.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Protected storage server
2001-09-05 12:00:00

mswsock.dll
0x719c0000
C:\WINDOWS\system32\mswsock.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Microsoft Windows Sockets 2.0 Service Provider
2001-09-05 12:00:00

wshtcpip.dll
0x71a00000
C:\WINDOWS\system32\wshtcpip.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Sockets Helper DLL
2001-09-05 12:00:00

psbase.dll
0x74320000
C:\WINDOWS\system32\psbase.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Protected Storage default provider
2001-09-05 12:00:00

dssenh.dll
0xffa0000
C:\WINDOWS\system32\dssenh.dll
5.1.2518.0 (main.010714-2114)
Microsoft Corporation
Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider
2001-09-05 12:00:00




[svchost.exe]
PID = 0x2e0
CommandLine = C:\WINDOWS\system32\svchost -k rpcss
svchost.exe
0x1000000
C:\WINDOWS\system32\svchost.exe
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Generic Host Process for Win32 Services
2001-09-05 12:00:00

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

rpcss.dll
0x757b0000
c:\WINDOWS\system32\rpcss.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Distributed COM Services
2001-09-05 12:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT CRT DLL
2001-09-05 12:00:00

WS2_32.dll
0x71a20000
c:\WINDOWS\system32\ws2_32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2001-09-05 12:00:00

WS2HELP.dll
0x71a10000
c:\WINDOWS\system32\ws2help.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

Secur32.dll
0x76f60000
c:\WINDOWS\system32\secur32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Security Support Provider Interface
2001-09-05 12:00:00

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2001-09-05 12:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Language Pack
2001-09-05 12:00:00

USP10.dll
0x72f10000
C:\WINDOWS\system32\usp10.dll
1.0407.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Uniscribe Unicode script processor
2001-09-05 12:00:00

userenv.dll
0x759d0000
C:\WINDOWS\system32\userenv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Userenv
2001-09-05 12:00:00
gototop
 

晕啊,好长啊,,贴不完了。我就贴后面一点的吧。
[QQ.exe]
PID = 0x1e4
CommandLine = "C:\Program Files\Tencent\QQ\QQ.exe"
QQ.exe
0x400000
C:\Program Files\Tencent\QQ\QQ.exe
0, 0, 0, 0
TENCENT
QQ
2006-09-07 12:21:06

ntdll.dll
0x77f50000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
NT Layer DLL
2001-09-05 12:00:00

kernel32.dll
0x77e40000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows NT BASE API Client DLL
2001-09-05 12:00:00

QQBaseClassInDll.dll
0x10000000
C:\Program Files\Tencent\QQ\QQBaseClassInDll.dll
1, 0, 0, 1

QQBaseClassInDll DLL
2006-09-11 11:27:48

QQHelperDll.dll
0x570000
C:\Program Files\Tencent\QQ\QQHelperDll.dll
1, 0, 0, 1

QQHelperDll DLL
2006-08-31 20:08:30

BasicCtrlDll.dll
0x60090000
C:\Program Files\Tencent\QQ\BasicCtrlDll.dll
5, 0, 200, 370
Tencent
BasicCtrlDll DLL
2006-08-31 20:09:14

AVICAP32.dll
0x73af0000
C:\WINDOWS\system32\avicap32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
AVI Capture window class
2001-09-05 12:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Windows XP USER API Client DLL
2001-09-05 12:00:00

GDI32.dll
0x77c40000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
GDI Client DLL
2001-09-05 12:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Advanced Windows 32 Base API
2001-09-05 12:00:00

RPCRT4.dll
0x77c90000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.0 (XPClient.010817-1148)
Microsoft Corporation
Remote Procedure Call Runtime
2001-09-05 12:00:00

WINMM.dll
0x76b10000
C:\WINDOWS\system32\winmm.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
MCI API DLL
2001-09-05 12:00:00

VERSION.dll
0x77bd0000
C:\WINDOWS\system32\version.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Version Checking and File Installation Libraries
2001-09-05 12:00:00
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT