1   1  /  1  页   跳转

[求助] 那位大虾帮我看看日志

那位大虾帮我看看日志

因为最近ie老是出问题,
早上扫描后自己修复了几项
那位大侠再给看看。是否还有问题



日志文件 Trend Micro HijackThis v 2.0.2
日志保存时间: 9:50:46,2009-9-25
操作系统: Windows XP SP3 (WinNT 5.01.2600)
IE版本: Internet Explorer v6.00 SP3 (6.00.2900.5512)
启动模式: 正常
正在运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
D:\Program Files\Rising\Ris\RavMonD.exe
C:\WINDOWS\System32\svchost.exe
D:\Program Files\360\360Safe\deepscan\krnl360svc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
D:\Program Files\Rising\AntiSpyware\rstray.exe
D:\Program Files\Rising\Ris\RsTray.exe
C:\WINDOWS\system32\ctfmon.exe
D:\Program Files\SolidWorks\swScheduler\swBOEngine.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
D:\Program Files\Maxthon2\Maxthon.exe
D:\Program Files\Tencent\RTXC\RTX.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
D:\Backup\QQ\QQ.exe
D:\Backup\QQ\TXPlatform.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
D:\Backup\QQ\QQ.exe
D:\Program Files\China Mobile\Fetion\FetionFX.exe
D:\Program Files\Rising\Ris\rsmain.exe
C:\Program Files\Internet Explorer\iexplore.exe
E:\软件\hijackthis_v2.02h\HijackThis.exe
O2 - BHO: HaoKanBar BrowserHelper - {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} - D:\Program Files\Super Rabbit\MagicSet\haokanbar.dll
O2 - BHO: Windows Live 登录帮助程序 - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - IE 工具栏: 超级兔子上网精灵 - {43869BB3-22FD-4F15-9B46-238106BA2F4E} - D:\Program Files\Super Rabbit\MagicSet\haokanbar.dll
O4 - HKLM\..\Run: [runeip] "d:\Program Files\Rising\AntiSpyware\rstray.exe" /startup
O4 - HKLM\..\Run: [RisTray] "D:\Program Files\Rising\Ris\RsTray.exe" -system
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [ctfmon.exe] ctfmon.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [ctfmon.exe] ctfmon.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O4 - Startup: SolidWorks Task Scheduler 引擎.lnk = D:\Program Files\SolidWorks\swScheduler\swBOEngine.exe
O8 - 扩展右键菜单项: 使用WEB迅雷下载 - D:\Program Files\Thunder Network\WebThunder\GetUrl.htm
O8 - 扩展右键菜单项: 使用WEB迅雷下载全部链接 - D:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm
O8 - 扩展右键菜单项: 使用网页迅雷下载 - D:\Program Files\Thunder Network\WebThunder\GetUrl.htm
O8 - 扩展右键菜单项: 使用网页迅雷下载全部链接 - D:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm
O8 - 扩展右键菜单项: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - 额外的按钮: 启动网页迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com(文件不存在)
O9 - 额外的“工具”菜单项目: 启动网页迅雷 - {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} - http://my.xunlei.com(文件不存在)
O9 - 额外的按钮: IE风行者 - {61F0024B-8278-4999-B7E6-2718426D9FE6} - C:\PROGRA~1\IEfxz\iefxz.dll (HKCU)
O9 - 额外的“工具”菜单项目: IE风行者 - {61F0024B-8278-4999-B7E6-2718426D9FE6} - C:\PROGRA~1\IEfxz\iefxz.dll (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{72C38EC8-D07D-4545-8948-CE2D5C270540}: NameServer = 202.106.0.20,192.168.3.2
O17 - HKLM\System\CS1\Services\Tcpip\..\{72C38EC8-D07D-4545-8948-CE2D5C270540}: NameServer = 202.106.0.20,192.168.3.2
O17 - HKLM\System\CS2\Services\Tcpip\..\{72C38EC8-D07D-4545-8948-CE2D5C270540}: NameServer = 202.106.0.20,192.168.3.2
O20 - AppInit_DLLs: kmon.dll
O23 - NT 服务:  C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - NT 服务:  FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - NT 服务:  360 Kernel Server (krnl360svc) - 360安全中心 - D:\Program Files\360\360Safe\deepscan\krnl360svc.exe
O23 - NT 服务:  NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - NT 服务:  Ris Service (RsRisMon) - Beijing Rising Information Technology Co., Ltd. - D:\Program Files\Rising\Ris\RavMonD.exe
O23 - NT 服务:  SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
--
文件结束 - 4907 字节

用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022)
分享到:
gototop
 

回复:那位大虾帮我看看日志

O9 - 额外的按钮: IE风行者 - {61F0024B-8278-4999-B7E6-2718426D9FE6} - C:\PROGRA~1\IEfxz\iefxz.dll (HKCU)
O9 - 额外的“工具”菜单项目: IE风行者 - {61F0024B-8278-4999-B7E6-2718426D9FE6} - C:\PROGRA~1\IEfxz\iefxz.dll (HKCU)

这两项应该没用的。
百年以后,你的墓碑旁 刻着的名字不是我
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT