瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 我的IE被改 每次重起主页被改为www.haohao1.com

123   2  /  3  页   跳转

我的IE被改 每次重起主页被改为www.haohao1.com

[c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.2025>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1924>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.2033>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1937>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.2021>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.2015>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.2028>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1928>
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1972>
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3dlegacy.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1968>
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1920>
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.2010>
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1991>
    [c:\program files\ati technologies\ati.ace\cli.aspect.videooverlay.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1960>
    [c:\program files\ati technologies\ati.ace\cli.aspect.powerplay3.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1976>
    [c:\program files\ati technologies\ati.ace\cli.aspect.smartgart.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1964>
    [c:\program files\ati technologies\ati.ace\cli.aspect.vpurecover.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1955>
    [c:\program files\ati technologies\ati.ace\cli.aspect.workstationconfig.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1951>
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive3.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1983>
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1987>
    [c:\program files\ati technologies\ati.ace\cli.aspect.integratedumaframebuffer.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1995>
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu2.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1911>
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu.graphics.dashboard.dll]  <ATI Technologies Inc.><1.2.2172.1941>
    [c:\program files\ati technologies\ati.ace\cli.aspect.infocentre.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25456>
    [c:\program files\ati technologies\ati.ace\cli.aspect.verylargedesktop.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25447>
    [c:\program files\ati technologies\ati.ace\cli.aspect.displaysoptions.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25463>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecrt.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25463>
    [c:\program files\ati technologies\ati.ace\cli.aspect.deviceproperty.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25444>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecrt2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25450>
    [c:\program files\ati technologies\ati.ace\cli.aspect.deviceproperty2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25444>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25468>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25448>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25468>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25449>
    [c:\program files\ati technologies\ati.ace\cli.aspect.customformats.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25444>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25465>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25468>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25469>
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp2.graphics.shared.dll]  <ATI Technologies
gototop
 

Inc.><1.2.2117.25465>
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25457>
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3dlegacy.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25466>
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25458>
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25445>
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25466>
    [c:\program files\ati technologies\ati.ace\cli.aspect.videooverlay.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25449>
    [c:\program files\ati technologies\ati.ace\cli.aspect.powerplay3.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25450>
    [c:\program files\ati technologies\ati.ace\cli.aspect.smartgart.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25446>
    [c:\program files\ati technologies\ati.ace\cli.aspect.vpurecover.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25447>
    [c:\program files\ati technologies\ati.ace\cli.aspect.workstationconfig.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25447>
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive3.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25467>
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25456>
    [c:\program files\ati technologies\ati.ace\cli.aspect.integratedumaframebuffer.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25448>
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu2.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25458>
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25464>
[PID: 1272][C:\Program Files\ATI Technologies\ATI.ACE\cli.exe]  <ATI Technologies Inc.><1.11.0.0>
    [c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_a034f600\mscorlib.dll]  <N/A><N/A>
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_de115053\system.windows.forms.dll]  <N/A><N/A>
    [c:\program files\ati technologies\ati.ace\cli.implementation.dll]  <ATI Technologies Inc.><1.2.2172.1893>
    [c:\program files\ati technologies\ati.ace\log.foundation.dll]  <ATI Technologies Inc.><1.2.2117.25442>
    [c:\program files\ati technologies\ati.ace\cli.foundation.dll]  <ATI Technologies Inc.><1.2.2117.25443>
    [c:\program files\ati technologies\ati.ace\log.foundation.service.dll]  <ATI Technologies Inc.><1.2.2172.2072>
    [c:\program files\ati technologies\ati.ace\log.foundation.shared.dll]  <ATI Technologies Inc.><1.2.2117.25464>
    [c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_abd9d92d\system.dll]  <N/A><N/A>
    [c:\program files\ati technologies\ati.ace\cli.foundation.xmanifestation.dll]  <ATI Technologies Inc.><1.2.2172.2072>
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_53e47fcf\system.xml.dll]  <N/A><N/A>
    [c:\program files\ati technologies\ati.ace\cli.component.systemtray.dll]  <ATI Technologies Inc.><1.2.2172.2048>
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.shared.dll]  <ATI Technologies Inc.><1.2.2117.25443>
    [c:\program files\ati technologies\ati.ace\dem.graphics.displaysmanager.shared.dll]  <ATI Technologies Inc.><1.2.2117.25443>
    [c:\program files\ati technologies\ati.ace\cli.component.runtime.dll]  <ATI Technologies Inc.><1.2.2172.2073>
    [c:\program files\ati technologies\ati.ace\apm.foundation.dll]  <ATI Technologies Inc.><1.2.2117.25457>
    [c:\windows\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_fe6b1dc8\system.drawing.dll]  <N/A><N/A>
    [c:\program files\ati technologies\ati.ace\zh-chs\cli.component.systemtray.resources.dll]  <ATI Technologies Inc.><1.2.2172.2048>
[PID: 284][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\kakatool.dll]  <Beijing Rising Technology Co., Ltd.><2, 0, 0, 9>
    [D:\QQ\QQIEHelper.dll]  <深圳市腾讯计算机系统有限公司><1, 1, 0, 5>
    [C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll]  <Sun Microsystems, Inc.><5.0.60.5>
    [D:\迅雷5\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [D:\卡巴\Kaspersky Anti-Virus Personal\scrchpg.dll]  <Kaspersky Lab><5.0.1.18>
    [D:\卡巴\Kaspersky Anti-Virus Personal\scrch_ag.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\FSSync.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\pr_rmt.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\ccclient.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\klipc.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\KLUtil.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\rpt.dll]  <Kaspersky Lab><5.0.388.2>
    [D:\卡巴\Kaspersky Anti-Virus Personal\CCIFACE.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\prloader.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\prkernel.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\prstring.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\pr_srv.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\pr_clnt.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\tempfile.ppl]  <Kaspersky Lab><5.0.388.0>
    [C:\WINDOWS\system32\Macromed\Flash\flash.ocx]  <Macromedia, Inc.><8,0,22,0>
[PID: 1232][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\kakatool.dll]  <Beijing Rising Technology Co., Ltd.><2, 0, 0, 9>
    [D:\QQ\QQIEHelper.dll]  <深圳市腾讯计算机系统有限公司><1, 1, 0, 5>
    [C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll]  <Sun Microsystems, Inc.><5.0.60.5>
    [D:\迅雷5\ComDlls\XunLeiBHO_002.dll]  <Thunder Networking Technologies,LTD><5, 0, 0, 2>
    [D:\卡巴\Kaspersky Anti-Virus Personal\scrchpg.dll]  <Kaspersky Lab><5.0.1.18>
    [D:\卡巴\Kaspersky Anti-Virus Personal\scrch_ag.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\FSSync.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\pr_rmt.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\ccclient.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\klipc.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\KLUtil.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\rpt.dll]  <Kaspersky Lab><5.0.388.2>
    [D:\卡巴\Kaspersky Anti-Virus Personal\CCIFACE.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\prloader.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\prkernel.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\prstring.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\pr_srv.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\pr_clnt.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\tempfile.ppl]  <Kaspersky Lab><5.0.388.0>
    [D:\迅雷5\ComDlls\ThunderAgent_003.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 10>
    [C:\WINDOWS\system32\Macromed\Flash\flash.ocx]  <Macromedia, Inc.><8,0,22,0>
gototop
 

[PID: 508][D:\迅雷5\Program\Thunder5.exe]  <Thunder Networking Technologies,LTD><5.3.0.220>
    [D:\迅雷5\Program\UpdateDownload.dll]  <Thunder Networking Technologies,LTD><1, 0, 1, 8>
    [D:\迅雷5\Program\download_interface.dll]  <Thunder Networking Technologies,LTD><1, 0, 4, 71>
    [D:\迅雷5\Program\log4cplus.dll]  <><1, 0, 2, 1>
    [D:\迅雷5\Program\stlport_vc646.dll]  <STLport Consulting, Inc.><4.6.2003.1031>
    [D:\迅雷5\Program\asyn_dns.dll]  <N/A><N/A>
    [D:\迅雷5\Program\msgmanage.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 15>
    [D:\迅雷5\Program\historyinfo_manage.dll]  <Thunder Networking Technologies,LTD><5, 2, 0, 148>
    [D:\迅雷5\Program\RegisterDll.dll]  <Thunder Networking Technologies,LTD><2, 1, 0, 18>
    [D:\迅雷5\Program\FloatBar.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 2>
    [D:\迅雷5\Components\InMedia\iEmbedShell.dll]  < ><1, 0, 0, 11>
    [D:\迅雷5\Components\InMedia\iEmbed04.dll]  < ><2, 3, 0, 37>
    [D:\迅雷5\Components\P4PClient\P4PClient.dll]  <Thunder Networking Technologies,LTD><1, 0, 3, 8>
    [D:\迅雷5\Program\iTargetAd.dll]  <Thunder Networking Technologies,LTD><1, 0, 1, 55>
    [D:\卡巴\Kaspersky Anti-Virus Personal\scrchpg.dll]  <Kaspersky Lab><5.0.1.18>
    [D:\卡巴\Kaspersky Anti-Virus Personal\scrch_ag.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\FSSync.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\pr_rmt.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\ccclient.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\klipc.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\KLUtil.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\rpt.dll]  <Kaspersky Lab><5.0.388.2>
    [D:\卡巴\Kaspersky Anti-Virus Personal\CCIFACE.dll]  <Kaspersky Lab><5.0.388.1>
    [D:\卡巴\Kaspersky Anti-Virus Personal\prloader.dll]  <Kaspersky Lab><5.0.388.0>
    [D:\卡巴\Kaspersky Anti-Virus Personal\prkernel.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\prstring.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\pr_srv.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\pr_clnt.ppl]  <Kaspersky Lab><5.0.388.0>
    [d:\卡巴\kaspersky anti-virus personal\tempfile.ppl]  <Kaspersky Lab><5.0.388.0>
    [C:\WINDOWS\system32\Macromed\Flash\flash.ocx]  <Macromedia, Inc.><8,0,22,0>
[PID: 3412][D:\安装程序\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
gototop
 

扫描的内容我已经全部传上去了
根据SREngLOG的扫描
Userinit.exe 提示说有问题 中了毒 卡巴杀不出
键值是winlogon
gototop
 

我刚刚进入文件夹C:\WINDOWS\system32
发现有两个userinit.exe
其中一个的创建时间就是我发现IE被篡改的时间
估计那个就是病毒程序 请问如果那个是的话
原来的程序 和注册表怎么修复?

谢谢拉```
gototop
 

刚刚重起电脑后观察 IE主页已经修好
但是用SREngLOG 查看注册表时 提示Userinit 的键值不是正常值
请问正常值是多少啊?

谢谢了 SREngLOG正是个好软件啊

顺便问一下 WinlogonNotify:AtiExtEvent 的正常路径是什么啊?
gototop
 

那个userint我早发现了
并在系统里删了  重起也没有再出现
但是SREng仍然说键指错误
IE主页篡改的问题已经修好 就是用SREng提示键值错误

附件附件:

下载次数:143
文件类型:image/pjpeg
文件大小:
上传时间:2006-8-17 21:23:02
描述:



gototop
 

这个是我把userlnit 改为userinit后的结果

附件附件:

下载次数:135
文件类型:image/pjpeg
文件大小:
上传时间:2006-8-17 21:25:15
描述:



gototop
 

再次在注册表中 搜索ueserint发现
UserInterfaceObject.AtiPropertySheetACE.1
  不知道这个和eserint有没有关系

搜索userlnit没有显示
gototop
 

2006-08-17,21:40:10

System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  []
    <run><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <SunJavaUpdateSched><C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe>  [Sun Microsystems, Inc.]
    <SoundMan><SOUNDMAN.EXE>  [Realtek Semiconductor Corp.]
    <ATICCC><"C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay>  []
    <KAVPersonal50><"D:\卡巴\Kaspersky Anti-Virus Personal\kav.exe" /minimize>  [Kaspersky Lab]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [Microsoft Corporation]
    <Userinit><C:\WINDOWS\system32\userinit.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
    <WinlogonNotify: AtiExtEvent><Ati2evxx.dll>  [ATI Technologies Inc.]

==================================
启动文件夹
服务
[Ati HotKey Poller / Ati HotKey Poller]
  <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[ATI Smart / ATI Smart]
  <C:\WINDOWS\system32\ati2sgag.exe><>
[kavsvc / kavsvc]
  <"D:\卡巴\Kaspersky Anti-Virus Personal\kavsvc.exe"><Kaspersky Lab>

==================================
浏览器加载项
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <D:\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[SSVHelper Class]
  {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll, Sun Microsystems, Inc.>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <D:\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\kakatool.dll, Beijing Rising Technology Co., Ltd.>
[Java Plug-in]
  {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in]
  {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.5.0_06]
  {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll, Sun Microsystems, Inc.>
[Rising Web Scan Object]
  {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <D:\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[SSVHelper Class]
  {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll, Sun Microsystems, Inc.>
[Microsoft Web 浏览器]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\flash.ocx, Macromedia, Inc.>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\kakatool.dll, Beijing Rising Technology Co., Ltd.>
[Rising Web Scan Object]
  {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[&使用迅雷下载]
  <D:\迅雷5\Program\GetUrl.htm, N/A>
[&使用迅雷下载全部链接]
  <D:\迅雷5\Program\GetAllUrl.htm, N/A>
[添加到QQ自定义面板]
  <D:\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\QQ\SendMMS.htm, N/A>
gototop
 
123   2  /  3  页   跳转
页面顶部
Powered by Discuz!NT