1   1  /  1  页   跳转

捉摸不定的(7D0CF05F.dll)!会迷踪术.

捉摸不定的(7D0CF05F.dll)!会迷踪术.

7D0CF05F.dll

可能是一种程序勾子.注入了系统服务启动程序中.无法删除.查到一些路径,但无法找到该文件.进入安全模式和DOS也一样查不到.
危害:杀毒软件无法启动.严重影响多种软件的正常使用.
因无法找到文件.只找到一个名字相同的可疑帮忙文件。也就只能把那帮忙文件和一个扫描结果放上来.请求各位帮我把几把诊.
最后编辑2007-02-09 15:35:23
分享到:
gototop
 

发现这里上传不了文件...
扫描的东西太长....晕死.
gototop
 


[SVCHOST.EXE]
PID = 0x2e0
CommandLine = C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
0x1000000
C:\WINDOWS\system32\svchost.exe
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Generic Host Process for Win32 Services
2004-08-23 16:00:00

ntdll.dll
0x7c920000
C:\WINDOWS\system32\ntdll.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
NT Layer DLL
2004-08-23 16:00:00

kernel32.dll
0x7c800000
C:\WINDOWS\system32\kernel32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows NT BASE API Client DLL
2004-08-23 16:00:00

ADVAPI32.dll
0x77da0000
C:\WINDOWS\system32\advapi32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Advanced Windows 32 Base API
2004-08-23 16:00:00

RPCRT4.dll
0x77e50000
C:\WINDOWS\system32\rpcrt4.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Remote Procedure Call Runtime
2004-08-23 16:00:00

ShimEng.dll
0x5cc30000
C:\WINDOWS\system32\shimeng.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Shim Engine DLL
2004-08-23 16:00:00

AcGenral.DLL
0x58fb0000
C:\WINDOWS\AppPatch\AcGenral.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Compatibility DLL
2004-08-23 16:00:00

USER32.dll
0x77d10000
C:\WINDOWS\system32\user32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows XP USER API Client DLL
2004-08-23 16:00:00

GDI32.dll
0x77ef0000
C:\WINDOWS\system32\gdi32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
GDI Client DLL
2004-08-23 16:00:00

WINMM.dll
0x76b10000
C:\WINDOWS\system32\winmm.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
MCI API DLL
2004-08-23 16:00:00

ole32.dll
0x76990000
C:\WINDOWS\system32\ole32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft OLE for Windows
2004-08-23 16:00:00

msvcrt.dll
0x77be0000
C:\WINDOWS\system32\msvcrt.dll
7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows NT CRT DLL
2004-08-23 16:00:00

OLEAUT32.dll
0x770f0000
C:\WINDOWS\system32\oleaut32.dll
5.1.2600.2180
Microsoft Corporation

2004-08-23 16:00:00

MSACM32.dll
0x77bb0000
C:\WINDOWS\system32\msacm32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft ACM Audio Filter
2004-08-23 16:00:00

VERSION.dll
0x77bd0000
C:\WINDOWS\system32\version.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Version Checking and File Installation Libraries
2004-08-23 16:00:00

SHELL32.dll
0x773a0000
C:\WINDOWS\system32\shell32.dll
6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Shell Common Dll
2004-08-23 16:00:00

SHLWAPI.dll
0x77f40000
C:\WINDOWS\system32\shlwapi.dll
6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Shell Light-weight Utility Library
2004-08-23 16:00:00

USERENV.dll
0x759d0000
C:\WINDOWS\system32\userenv.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Userenv
2004-08-23 16:00:00

UxTheme.dll
0x5ad70000
C:\WINDOWS\system32\uxtheme.dll
6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft UxTheme Library
2004-08-07 09:36:16

IMM32.DLL
0x76300000
C:\WINDOWS\system32\imm32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows XP IMM32 API Client DLL
2004-08-23 16:00:00

LPK.DLL
0x62c20000
C:\WINDOWS\system32\lpk.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Language Pack
2004-08-23 16:00:00

USP10.dll
0x73fa0000
C:\WINDOWS\system32\usp10.dll
1.0420.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Uniscribe Unicode script processor
2004-08-23 16:00:00

serwvdrv.dll
0x5ce30000
C:\WINDOWS\system32\serwvdrv.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Unimodem Serial Wave driver
2004-08-23 16:00:00

umdmxfrm.dll
0x5b0f0000
C:\WINDOWS\system32\umdmxfrm.dll
5.1.2600.0 (xpclient.010817-1148)
Microsoft Corporation
Unimodem Tranform Module
2004-08-23 16:00:00

comctl32.dll
0x77180000
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
6.0 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
User Experience Controls Library
2004-08-24 00:00:00

comctl32.dll
0x5d170000
C:\WINDOWS\system32\comctl32.dll
5.82 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Common Controls Library
2004-08-23 16:00:00

NTMARTA.DLL
0x76cb0000
C:\WINDOWS\system32\ntmarta.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows NT MARTA provider
2004-08-23 16:00:00

WLDAP32.dll
0x76f30000
C:\WINDOWS\system32\wldap32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Win32 LDAP API DLL
2004-08-23 16:00:00

SAMLIB.dll
0x71b70000
C:\WINDOWS\system32\samlib.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
SAM Library DLL
2004-08-23 16:00:00

rpcss.dll
0x76230000
c:\WINDOWS\system32\rpcss.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Distributed COM Services
2004-08-23 16:00:00

WS2_32.dll
0x71a20000
c:\WINDOWS\system32\ws2_32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Socket 2.0 32-Bit DLL
2004-08-23 16:00:00

WS2HELP.dll
0x71a10000
c:\WINDOWS\system32\ws2help.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Socket 2.0 Helper for Windows NT
2004-08-23 16:00:00

Secur32.dll
0x77fc0000
c:\WINDOWS\system32\secur32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Security Support Provider Interface
2004-08-23 16:00:00

xpsp2res.dll
0x20000000
C:\WINDOWS\system32\xpsp2res.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Service Pack 2 Messages
2004-08-23 16:00:00

termsrv.dll
0x761c0000
c:\WINDOWS\system32\termsrv.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Terminal Server Service
2004-08-24 00:00:00

ICAAPI.dll
0x74ed0000
c:\WINDOWS\system32\icaapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
DLL Interface to TermDD Device Driver
2004-08-24 00:00:00

SETUPAPI.dll
0x76060000
c:\WINDOWS\system32\setupapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Setup API
2004-08-23 16:00:00

WINTRUST.dll
0x76c00000
C:\WINDOWS\system32\wintrust.dll
5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft Trust Verification APIs
2004-08-23 16:00:00

CRYPT32.dll
0x765e0000
C:\WINDOWS\system32\crypt32.dll
5.131.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Crypto API32
2004-08-23 16:00:00

MSASN1.dll
0x76db0000
C:\WINDOWS\system32\msasn1.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
ASN.1 Runtime APIs
2004-08-23 16:00:00

IMAGEHLP.dll
0x76c60000
C:\WINDOWS\system32\imagehlp.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows NT Image Helper
2004-08-23 16:00:00

AUTHZ.dll
0x77fe0000
c:\WINDOWS\system32\authz.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Authorization Framework
2004-08-23 16:00:00

mstlsapi.dll
0x75070000
c:\WINDOWS\system32\mstlsapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Microsoft? Terminal Server Licensing
2004-08-23 16:00:00

ACTIVEDS.dll
0x77c90000
c:\WINDOWS\system32\activeds.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
ADs Router Layer DLL
2004-08-23 16:00:00

adsldpc.dll
0x76de0000
c:\WINDOWS\system32\adsldpc.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
ADs LDAP Provider C DLL
2004-08-23 16:00:00

NETAPI32.dll
0x5fdd0000
C:\WINDOWS\system32\netapi32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Net Win32 API DLL
2004-08-23 16:00:00

ATL.DLL
0x76af0000
c:\WINDOWS\system32\atl.dll
3.05.2284
Microsoft Corporation
ATL Module for Windows XP (Unicode)
2004-08-23 16:00:00

REGAPI.dll
0x76b90000
C:\WINDOWS\system32\regapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Registry Configuration APIs
2004-08-23 16:00:00

rsaenh.dll
0xffd0000
C:\WINDOWS\system32\rsaenh.dll
5.1.2600.2161 (xpsp.040706-1629)
Microsoft Corporation
Microsoft Enhanced Cryptographic Provider
2004-08-23 16:00:00

CLBCATQ.DLL
0x76fa0000
C:\WINDOWS\system32\clbcatq.dll
2001.12.4414.258
Microsoft Corporation

2004-08-24 00:00:00

COMRes.dll
0x77020000
C:\WINDOWS\system32\comres.dll
2001.12.4414.258
Microsoft Corporation

2004-08-23 16:00:00

urlmon.dll
0x75c60000
C:\WINDOWS\system32\urlmon.dll
6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
OLE32 Extensions for Win32
2004-08-23 16:00:00

Psapi.dll
0x76bc0000
C:\WINDOWS\system32\psapi.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Process Status Helper
2004-08-23 16:00:00

MSCTF.dll
0x74680000
C:\WINDOWS\system32\MSCTF.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
MSCTF Server DLL
2004-08-23 16:00:00

7D0CF05F.dll
0xed0000
C:\Program Files\Common Files\System\7D0CF05F.dll



2006-12-11 11:08:32

wsock32.dll
0x71a40000
C:\WINDOWS\system32\wsock32.dll
5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Microsoft Corporation
Windows Socket 32-Bit DLL
2004-08-23 16:00:00

gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT