跪求各位大个帮忙看下进程 有没有病毒啊

Logfile of HijackThis v1.99.1
Scan saved at 20:20:06, on 2007-10-2
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
D:\Rising\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
D:\RISING\RISING\RAV\Ravmond.exe
d:\rising\rising\rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
D:\RISING\RISING\RAV\RavStub.exe
d:\rising\rising\rfw\RfwMain.exe
C:\WINDOWS\system32\BoBoTurbo\BoBoTurbo.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ZSSnp211.exe
C:\WINDOWS\Domino.exe
C:\WINDOWS\System32\alg.exe
D:\Rising\Rising\Rav\RavTask.exe
D:\Rising\Rising\Rav\Ravmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Media Player\WMPNetwk.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\jxj.css
C:\WINDOWS\system32\conime.exe
C:\WINDOWS\system32\avwlbst.exe
C:\WINDOWS\system32\Win_Form13.exe
C:\Program Files\Rising\AntiSpyware\runiep.exe
D:\迅雷\Program\Thunder5.exe
D:\My Documents\Maxthon\Maxthon.exe
C:\WINDOWS\regedit.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator\桌面\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Thunder AtOnce - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - D:\迅雷\ComDlls\TDAtOnce_Now.dll
O2 - BHO: Tencent Browser Helper - {0C7C23EF-A848-485B-873C-0ED954731014} - C:\Program Files\TENCENT\SSPlus\SAddr.dll
O2 - BHO: ThunderBHO - {7605CC7B-00FD-4A5F-BAFD-828342DE6279} - D:\迅雷\ComDlls\xunleiBHO_Now.dll
O2 - BHO: (no name) - {C74CDF30-68C2-49B4-9918-EBD66B8D9FBF} - C:\WINDOWS\system32\coegduamns.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ZSSnp211] C:\WINDOWS\ZSSnp211.exe
O4 - HKLM\..\Run: [Domino] C:\WINDOWS\Domino.exe
O4 - HKLM\..\Run: [Thunder] "D:\迅雷\Thunder.exe" /s
O4 - HKLM\..\Run: [RfwMain] "D:\Rising\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [MsPrint32D] C:\WINDOWS\cdtxhw.exe
O4 - HKLM\..\Run: [DiskMan32] C:\WINDOWS\yhnxag.exe
O4 - HKLM\..\Run: [WinSysM] C:\WINDOWS\IGM.exe
O4 - HKLM\..\Run: [stup.exe] Rundll32.exe C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll,Rundll32 R
O4 - HKLM\..\Run: [UnlockerAssistant] C:\Documents and Settings\Administrator\桌面\新建文件夹 (2)\Unlocker\UnlockerAssistant.exe
O4 - HKLM\..\RunOnce: [KKDelay] C:\Program Files\Rising\AntiSpyware\RunOnce.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Cn99QDNS] C:\Program Files\cn99qdns\Cn99qdns.exe
O4 - HKCU\..\Run: [PhDesktop] D:\花生壳\PeanutHull5\PhDesktop.exe
O4 - HKCU\..\Run: [eMuleAutoStart] D:\dianlv\eMule\emule.exe -AutoStart
O4 - Startup: 腾讯QQ.lnk = D:\qq\QQ.exe
O8 - Extra context menu item: &V使用Vagaa哇嘎下载 - E:\vagaa\Vagaa\Data\vg.htm
O8 - Extra context menu item: 使用迅雷下载 - D:\迅雷\Program\geturl.htm
O8 - Extra context menu item: 使用迅雷下载全部链接 - D:\迅雷\Program\getallurl.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ表情 - D:\qq\AddEmotion.htm
O9 - Extra button: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - D:\迅雷\Thunder.exe
O9 - Extra 'Tools' menuitem: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - D:\迅雷\Thunder.exe
O9 - Extra button: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - F:\浩方\浩方对战平台\GameClient.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\sqmapi32.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\sqmapi32.dll
O11 - Options group: [TBH] 中文搜搜
O17 - HKLM\System\CCS\Services\Tcpip\..\{C96C081F-458F-4E25-AE91-68EDC74BB830}: NameServer = 202.103.24.68,202.103.0.117
O18 - Protocol: KuGoo - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\system32\KuGoo3DownXControl.ocx
O18 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\system32\KuGoo3DownXControl.ocx
O20 - AppInit_DLLs: kvmxdma.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: BoBoTurbo - 广州易播信息科技有限公司 - C:\WINDOWS\system32\BoBoTurbo\BoBoTurbo.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PeanutHull DDNS Service (Peanuthull5Core) - 上海贝锐 - D:\花生壳\PeanutHull5\PhCore.exe
O23 - Service: Rising Proxy  Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - d:\rising\rising\rfw\rfwproxy.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - d:\rising\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - D:\Rising\Rising\Rav\CCenter.exe
O23 - Service: Rising RealTime Monitor (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\RISING\RISING\RAV\Ravmond.exe
O23 - Service: Serv-U FTP 服务器 (Serv-U) - Rhino Software, Inc. +1(262) 560-9627 - D:\servu\Serv-U\ServUDaemon.exe
O23 - Service: Telephots google (WindowsDo) - Unknown owner - C:\WINDOWS\system32\servet.exe (file missing)

附件附件:

下载次数:119
文件类型:application/octet-stream
文件大小:
上传时间:2007-10-2 20:52:28
描述:

最后编辑2007-10-02 20:52:28.873000000