Logfile of HijackThis v1.99.1
Scan saved at 22:25:41, on 2000-1-1
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\SVCH0ST.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\ChinaNet\VnetClient.exe
E:\张寅\QQ\QQ.exe
E:\张寅\QQ\TIMPlatfrom.exe
C:\WINDOWS\explorer.exe
D:\张寅\HijackThis.exe
C:\Program Files\Internet Explorer\iexplore.exe
O2 - BHO: VnetCookie Class - {4E83D567-4697-4F7B-B1F0-A513B01DB89A} - c:\PROGRA~1\chinanet\VNETTR~1.DLL
O2 - BHO: BHOHelper Class - {67A90DD6-128D-43AB-B97C-565D2DD42A28} - C:\Program Files\real\atloader.dll
O2 - BHO: 超级兔子上网精灵 - {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} - D:\张寅\MagicSet\haokanbar.dll
O3 - Toolbar: 超级兔子上网精灵 - {43869BB3-22FD-4F15-9B46-238106BA2F4E} - D:\张寅\MagicSet\haokanbar.dll
O4 - HKLM\..\Run: [adx.exe] C:\Program Files\real\adx.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: 上传到QQ网络硬盘 - E:\张寅\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - E:\张寅\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - E:\张寅\QQ\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - E:\张寅\QQ\SendMMS.htm
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - E:\张寅\QQ\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - E:\张寅\QQ\QQ.EXE
O14 - IERESET.INF: START_PAGE_URL=http://www.foundertech.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{80142C6E-59C7-4F05-B05A-406E6EB686FD}: NameServer = 202.96.104.26 202.96.104.16
O23 - Service: KSD2Service - Unknown owner - C:\WINDOWS\system32\SVCH0ST.exe
O23 - Service: DNS (serverte) - Unknown owner - C:\WINDOWS\system32\servert.exe
这是用HJ扫描可疑进程后保存的日志````请问下哪些可以消灭掉```还有最近我用超级兔子检测时老是检测出C:\WINDOWS\system32\SVCH0ST.exe这个可疑进程``可是却清除不掉``请问下是不是病毒``还有最近老是莫名其妙弹出浏览器广告```请高人指点- -帮我解决下```拜谢```OTZ