瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 大家帮帮我啊~我中了Backdoor.Gpigeon.2006.ikn

123   2  /  3  页   跳转

大家帮帮我啊~我中了Backdoor.Gpigeon.2006.ikn

好了,我按您说的都做了!!用瑞星杀了下好象没有出现了!!先谢谢了

刚才那位朋友提醒了下[BlackHole Remote Control Services / BRC_Services][Running/Auto Start]
<"C:\WINNT\system32\brc_Server.exe" /service><N/A>
请问要删了吗?
gototop
 

重起好象没有了!真的非常感谢你啊~顺便问句上面那位朋友说的
[BlackHole Remote Control Services / BRC_Services][Running/Auto Start]
<"C:\WINNT\system32\brc_Server.exe" /service><N/A>也要删掉吗?
gototop
 

谢谢你们两位的帮助~~~万分感谢~
gototop
 

这个病毒那些木马客星,木马杀客,金山专杀,安全卫士360之类的专杀工具都发现不了我全用了,只有瑞星杀毒和瑞星灰鸽子专杀才能查到,但是就是治标不治本,重新启动就又有了,按你的办法总算是没有再出现了,希望再也不要复发了,呵呵!偶像啊以后多跟你们学学~
gototop
 

taylor05771和火影两位麻烦再帮我看看我最新的扫描结果看看还有什么问题不,再次感谢你们~~~

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <Internat.exe><internat.exe>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <Synchronization Manager><mobsync.exe /logon>  [(Verified)Microsoft Windows 2000 Publisher]
    <Cmaudio><; RunDll32 cmicnfg.cpl,CMICtrlWnd>  [N/A]
    <CmPCIaudio><; RunDll32 CMICNFG3.CPL,CMICtrlWnd>  [N/A]
    <C-Media Mixer><; Mixer.exe /startup>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <Super Rabbit Desktop Set><D:\超级兔子\DS.EXE /Load>  [Super Rabbit Software]
    <svpecld><C:\WINNT\system32\svpecld.exe>  []
    <RavTask><"C:\Program Files\Rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <runeip><C:\Program Files\Rising\AntiSpyware\runiep.exe>  [Beijing Rising Technology Co., Ltd.]
    <StormCodec_Helper><"D:\爆风\StormSet.exe" /S /opti>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows 2000 Publisher]
    <Userinit><C:\WINNT\system32\userinit.exe,>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <Network.ConnectionTray><C:\WINNT\system32\NETSHELL.dll>  [(Verified)Microsoft Windows 2000 Publisher]
    <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Component Publisher]
    <SysTray><stobject.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
    <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
    <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wzcnotif]
    <WinlogonNotify: wzcnotif><wzcdlg.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Windows Media Player><C:\WINNT\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
    <自定义浏览器><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6A5110B5-E14B-4268-A065-EF89FF33C325}]
    <EnableRevocation><regsvr32.exe /s /n /i:"S 2 true 3 true 4 true 5 true 6 true 7 true" initpki.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Component Publisher]

==================================
gototop
 

taylor05771和火影两位麻烦再帮我看看我最新的扫描结果看看还有什么问题不,再次感谢你们~~~

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <Internat.exe><internat.exe>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <Synchronization Manager><mobsync.exe /logon>  [(Verified)Microsoft Windows 2000 Publisher]
    <Cmaudio><; RunDll32 cmicnfg.cpl,CMICtrlWnd>  [N/A]
    <CmPCIaudio><; RunDll32 CMICNFG3.CPL,CMICtrlWnd>  [N/A]
    <C-Media Mixer><; Mixer.exe /startup>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <Super Rabbit Desktop Set><D:\超级兔子\DS.EXE /Load>  [Super Rabbit Software]
    <svpecld><C:\WINNT\system32\svpecld.exe>  []
    <RavTask><"C:\Program Files\Rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <runeip><C:\Program Files\Rising\AntiSpyware\runiep.exe>  [Beijing Rising Technology Co., Ltd.]
    <StormCodec_Helper><"D:\爆风\StormSet.exe" /S /opti>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows 2000 Publisher]
    <Userinit><C:\WINNT\system32\userinit.exe,>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <Network.ConnectionTray><C:\WINNT\system32\NETSHELL.dll>  [(Verified)Microsoft Windows 2000 Publisher]
    <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Component Publisher]
    <SysTray><stobject.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
    <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
    <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wzcnotif]
    <WinlogonNotify: wzcnotif><wzcdlg.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Windows Media Player><C:\WINNT\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
    <自定义浏览器><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6A5110B5-E14B-4268-A065-EF89FF33C325}]
    <EnableRevocation><regsvr32.exe /s /n /i:"S 2 true 3 true 4 true 5 true 6 true 7 true" initpki.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows 2000 Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Component Publisher]

==================================
gototop
 

浏览器加载项
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <D:\迅雷\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <D:\迅雷\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[启动迅雷5]
  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <D:\迅雷\Thunder.exe, Thunder Networking Technologies,LTD>
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <D:\QQ\QQ.EXE, TENCENT>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\system32\msdxm.ocx, Microsoft Corporation>
[MMCPlayer Class]
  {05C1004E-2596-48E5-8E26-39362985EEB9} <C:\WINNT\Downloaded Program Files\MMCShell.dll, Sohu.com Inc.>
[CEditCtrl Object]
  {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINNT\system32\aliedit\AliEdit.dll, www.alipay.com>
[VCR.Scan]
  {E4F500BF-C1A3-11D6-9697-0090961B771E} <C:\WINNT\Downloaded Program Files\VCRSCAN.OCX, New Technology Wave Inc.>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <D:\迅雷\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[FGCatchUrl]
  {FB5DA724-162B-11D3-8B9B-AA70B4B0B524} <D:\网际快车\jccatch.dll, N/A>
[上传到QQ网络硬盘]
  <D:\QQ\AddToNetDisk.htm, N/A>
[使用迅雷下载]
  <D:\迅雷\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <D:\迅雷\Program\getallurl.htm, N/A>
[添加到QQ自定义面板]
  <D:\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\QQ\SendMMS.htm, N/A>

==================================
gototop
 

正在运行的进程
[PID: 144][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\System32\sfcfiles.dll]  [Microsoft Corporation, 5.00.2195.7038]
[PID: 168][\??\C:\WINNT\system32\csrss.exe]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\CSRSRV.dll]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\basesrv.dll]  [Microsoft Corporation, 5.00.2195.7011]
    [C:\WINNT\system32\winsrv.dll]  [Microsoft Corporation, 5.00.2195.7135]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\LPK.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\USP10.dll]  [Microsoft Corporation, 1.0325.2195.6692]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\RPCRT4.dll]  [Microsoft Corporation, 5.00.2195.7085]
[PID: 996][C:\WINNT\Explorer.EXE]  [Microsoft Corporation, 5.00.3700.6690]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\RPCRT4.dll]  [Microsoft Corporation, 5.00.2195.7085]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\LPK.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\USP10.dll]  [Microsoft Corporation, 1.0325.2195.6692]
    [C:\WINNT\system32\shim.dll]  [Microsoft Corporation, 5.00.2195.6717]
    [C:\WINNT\AppPatch\AcLayers.DLL]  [Microsoft Corporation, 5.00.2195.6717]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3900.7105]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.7059]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3529.0]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\cscui.dll]  [Microsoft Corporation, 5.00.2195.6705]
    [C:\WINNT\system32\CSCDLL.DLL]  [Microsoft Corporation, 5.00.2195.6713]
    [C:\WINNT\system32\SHDOCVW.DLL]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\browseui.dll]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\LINKINFO.DLL]  [Microsoft Corporation, 5.00.2195.7069]
    [C:\WINNT\system32\ntshrui.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\ATL.DLL]  [Microsoft Corporation, 3.00.9435]
    [C:\WINNT\system32\NETAPI32.DLL]  [Microsoft Corporation, 5.00.2195.7108]
    [C:\WINNT\system32\Secur32.dll]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.7100]
    [C:\WINNT\system32\WSOCK32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.7017]
    [C:\WINNT\system32\NETRAP.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.dll]  [Microsoft Corporation, 5.00.2195.6944]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.7002]
    [C:\WINNT\system32\mydocs.dll]  [Microsoft Corporation, 5.00.3502.6601]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\System32\ntlanman.dll]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\System32\NETUI0.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\NETUI1.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\NETSHELL.dll]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\webcheck.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\stobject.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\BATMETER.DLL]  [Microsoft Corporation, 5.00.3502.6601]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\POWRPROF.DLL]  [Microsoft Corporation, 5.00.3502.6601]
    [C:\WINNT\system32\WINMM.DLL]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\IAC97U4.dll]  [C-Media Corporation, 4.10.00.003Aa]
    [C:\WINNT\system32\SMIDI32.DLL]  [N/A, ]
    [C:\WINNT\system32\MSI.DLL]  [Microsoft Corporation, 3.1.4000.4033]
    [C:\WINNT\system32\wdmaud.drv]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\msacm32.drv]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MSACM32.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\es.dll]  [Microsoft Corporation, 2000.2.3529.0]
    [C:\WINNT\system32\TxfAux.Dll]  [Microsoft Corporation, 2000.2.3529.0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\WINNT\system32\browselc.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [D:\迅雷\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 1, 4]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1593]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6926]
    [C:\WINNT\system32\MSASN1.dll]  [Microsoft Corporation, 5.00.2195.6905]
    [D:\迅雷\Components\ResWorker\DsBho_00.dll]  [, 1, 0, 0, 2]
    [C:\WINNT\system32\MSVCP60.dll]  [Microsoft Corporation,
gototop
 

6.00.8168.0]
    [D:\迅雷\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 4]
    [C:\WINNT\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2800.1593]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\mlang.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\mshtml.dll]  [Microsoft Corporation, 6.00.2800.1593]
    [C:\WINNT\system32\c_is2022.dll]  [Microsoft Corporation, 5.00.2195.6688]
    [C:\WINNT\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\MSLS31.DLL]  [Microsoft Corporation, 3.10.337.0]
    [C:\WINNT\system32\webvw.dll]  [Microsoft Corporation, 5.00.3900.7069]
    [C:\WINNT\system32\imgutil.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\mshtmled.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\msadp32.acm]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\docprop2.dll]  [Microsoft Corporation, 5.00.2178.1]
    [C:\WINNT\system32\MSVFW32.DLL]  [Microsoft Corporation, 5.00.2195.6612]
    [C:\WINNT\system32\AVIFIL32.DLL]  [Microsoft Corporation, 5.00.2195.6612]
    [C:\WINNT\system32\faxshell.dll]  [Microsoft Corporation, 5.00.2134.1]
[PID: 1132][D:\超级兔子\DS.EXE]  [Super Rabbit Software, 1.50]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\MSVBVM60.DLL]  [Microsoft Corporation, 6.00.9690]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\RPCRT4.dll]  [Microsoft Corporation, 5.00.2195.7085]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.7059]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\LPK.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\USP10.dll]  [Microsoft Corporation, 1.0325.2195.6692]
    [C:\WINNT\system32\vb6chs.dll]  [Microsoft Corporation, 6.00.8988]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3900.7105]
    [C:\WINNT\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\COMCTL32.dll]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
[PID: 1156][C:\Program Files\Rising\AntiSpyware\runiep.exe]  [Beijing Rising Technology Co., Ltd., 1, 0, 1, 6]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\MFC42.DLL]  [Microsoft Corporation, 6.00.9586.0]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\RPCRT4.dll]  [Microsoft Corporation, 5.00.2195.7085]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3900.7105]
    [C:\WINNT\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\COMCTL32.dll]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\LPK.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\USP10.dll]  [Microsoft Corporation,
gototop
 

1.0325.2195.6692]
    [C:\WINNT\system32\MFC42LOC.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\Program Files\Rising\AntiSpyware\iep_ctrl.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 4]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 1196][C:\WINNT\system32\internat.exe]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\RPCRT4.dll]  [Microsoft Corporation, 5.00.2195.7085]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\MSVCRT.DLL]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.7002]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3900.7105]
    [C:\WINNT\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\LPK.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\USP10.dll]  [Microsoft Corporation, 1.0325.2195.6692]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[PID: 272][D:\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\kernel32.dll]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation, 5.00.3700.6693]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1907 (xpsp2.070219-1040)]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\RPCRT4.dll]  [Microsoft Corporation, 5.00.2195.7085]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3900.7105]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\oledlg.dll]  [Microsoft Corporation, 1.0]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.7059]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6926]
    [C:\WINNT\system32\MSASN1.dll]  [Microsoft Corporation, 5.00.2195.6905]
    [C:\WINNT\system32\WINMM.dll]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\WS2_32.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1593]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\LPK.DLL]  [Microsoft Corporation, 5.00.2195.6692]
    [C:\WINNT\system32\USP10.dll]  [Microsoft Corporation, 1.0325.2195.6692]
    [C:\WINNT\system32\IAC97U4.dll]  [C-Media Corporation, 4.10.00.003Aa]
    [C:\WINNT\system32\SMIDI32.DLL]  [N/A, ]
    [C:\WINNT\system32\RICHED20.DLL]  [Microsoft Corporation, 5.30.23.1227]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
    [C:\WINNT\system32\sfc.dll]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\sfcfiles.dll]  [Microsoft Corporation, 5.00.2195.7038]
    [C:\WINNT\system32\Sensapi.dll]  [Microsoft Corporation, 5.00.2195.6627]
    [C:\WINNT\system32\wintrust.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.00.2195.6613]
    [C:\WINNT\system32\rsaenh.dll]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\USERENV.dll]  [Microsoft Corporation, 5.00.2195.7002]
    [C:\WINNT\system32\secur32.dll]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\netapi32.dll]  [Microsoft Corporation, 5.00.2195.7108]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.7100]
    [C:\WINNT\system32\WSOCK32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.7017]
    [C:\WINNT\system32\NETRAP.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.dll]  [Microsoft Corporation, 5.00.2195.6944]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3529.0]
    [C:\WINNT\system32\LINKINFO.DLL]  [Microsoft Corporation, 5.00.2195.7069]
    [C:\WINNT\system32\ntshrui.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\ATL.DLL]  [Microsoft Corporation, 3.00.9435]
    [C:\WINNT\system32\cscui.dll]  [Microsoft Corporation, 5.00.2195.6705]
    [C:\WINNT\system32\CSCDLL.DLL]  [Microsoft Corporation, 5.00.2195.6713]
[PID: 1052][D:\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.7006]
    [C:\WINNT\system32\kernel32.dll]  [Microsoft Corporation, 5.00.2195.7099]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.7133]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation,
gototop
 
123   2  /  3  页   跳转
页面顶部
Powered by Discuz!NT