完美卸载 - 系统检查检测报告!
建议:修复时请按照高手的反馈编号在修复工具中打勾进行修复.
--------------------------系统环境-------------------------
检测日期: 2006-5-6 13:28
Windows: Microsoft Windows XP
ServicePack: Service Pack 1
Update: 2600.xpsp2.050301-1526
Internet Explorer: 6.0.2800.1106
-----------------------网络基础安全测试--------------------
密码安全检测:已经设置了管理员密码,建议:将密码复杂度和长度提高!
网络漏洞检测:空连接检查安全!
服务名称 是否运行 描述
RemoteRegistry [已停止] [说明:这个服务可能被利用远程操作注册表]
Windows Time [已停止] [说明:这个服务可能被黑客利用来启动木马]
Telnet [已停止] [说明:这个服务可能被黑客登录到您计算机]
Messenger [已停止] [说明:这个服务常被广告商用来发垃圾广告]
Server [已停止] [说明:如果你的电脑不用局域网中,可以关闭]
-----------------------计算机网络端口----------------------
协议 端口号 端口类型
TCP 135 微软DCE RPC end-point mapper服务
TCP 445 Microsoft-DS
TCP 1025 未知类型
TCP 139 微软Netbios Name服务(用于文件及打印机共享)
TCP 445 公共Internet文件系统(CIFS)
TCP 500 Internet密钥交换
TCP 1027 UC聊天软件,Trojan.Huigezi.e
TCP 1029 SubSARI
TCP 1037 未知类型
TCP 137 未知类型
TCP 138 未知类型
--------------------计算机系统组件体检----------------------
[编号:0]
[名称:\SystemRoot\System32\smss.exe]
[类型:运行进程]
[内容:未知]
[编号:1]
[名称:\??\C:\WINDOWS\system32\csrss.exe]
[类型:运行进程]
[内容:未知]
[编号:2]
[名称:\??\C:\WINDOWS\system32\winlogon.exe]
[类型:运行进程]
[内容:未知]
[编号:3]
[名称:C:\WINDOWS\system32\services.exe]
[类型:运行进程]
[内容:Microsoft(R) Windows(R) Operating System (C) Microsoft Corporation. All rights reserved.]
[编号:4]
[名称:C:\WINDOWS\system32\lsass.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:5]
[名称:C:\WINDOWS\system32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:6]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:7]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:8]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:9]
[名称:C:\WINDOWS\System32\nvsvc32.exe]
[类型:运行进程]
[内容:NVIDIA Driver Helper Service, Version 56.55 (C) NVIDIA Corporation. All rights reserved.]
[编号:10]
[名称:C:\WINDOWS\Explorer.EXE]
[类型:运行进程]
[内容:Microsoft(R) Windows(R) Operating System (C) Microsoft Corporation. All rights reserved.]
[编号:11]
[名称:C:\WINDOWS\System32\Rundll32.exe]
[类型:运行进程]
[内容:未知]
[编号:12]
[名称:C:\WINDOWS\System32\wdfmgr.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:13]
[名称:C:\WINDOWS\VM_STI.EXE]
[类型:运行进程]
[内容:VM., 2002. VM., 2002.]
[编号:14]
[名称:C:\WINDOWS\system32\rundll32.exe]
[类型:运行进程]
[内容:未知]
[编号:15]
[名称:C:\WINDOWS\System32\ctfmon.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:16]
[名称:C:\Program Files\完美卸载V2006\MainCon.exe]
[类型:运行进程]
[内容:MainCon 应用程序 版权所有 (C) 2004]
[编号:17]
[名称:C:\Program Files\完美卸载V2006\SysRepairer.exe]
[类型:运行进程]
[内容:SysRepairer 应用程序 版权所有 (C) 2005]
[编号:18]
[名称:C:\Program Files\完美卸载V2006\SysSec.exe]
[类型:运行进程]
[内容:完美卸载V2006-ChinaHijackThis 版权所有 (C) 2006]
[编号:19]
[分隔符:---------------------------------------------------------------------]
[编号:20]
[名称:C:\WINDOWS\downlo~1\CnsMin.dll]
[类型:已加载DLL]
[内容:3721 CnsMin 版权所有 (C) 2001 - 2005]
[编号:21]
[名称:C:\PROGRA~1\3721\helper.dll]
[类型:已加载DLL]
[内容:Helper Module Copyright 2004]
[编号:22]
[名称:C:\PROGRA~1\3721\alrex.dll]
[类型:已加载DLL]
[内容:alrex Module Copyright 2006]
[编号:23]
[名称:C:\WINDOWS\System32\NVCPL.DLL]
[类型:已加载DLL]
[内容:NVIDIA Compatible Windows 2000 Display driver, Version 56.55 (C) NVIDIA Corporation. All rights reserved.]
[编号:24]
[名称:C:\WINDOWS\System32\nvshell.dll]
[类型:已加载DLL]
[内容:NVIDIA Desktop Explorer, Version 56.55 (C) NVIDIA Corporation. All rights reserved.]
[编号:25]
[名称:C:\WINDOWS\System32\NVWRSZHC.DLL]
[类型:已加载DLL]
[内容:NVIDIA nView Desktop and Window Manager Copyright (C) 2001-2002 NVIDIA Corporation]
[编号:26]
[名称:C:\PROGRA~1\3721\autolive.dll]
[类型:已加载DLL]
[内容:AutoLive Module Copyright 2004]
[编号:27]
[名称:C:\PROGRA~1\3721\alLiveEx.dll]
[类型:已加载DLL]
[内容: LiveEx Copyright ? 2006]
[编号:28]
[名称:C:\WINDOWS\System32\xunleibho_v14.dll]
[类型:已加载DLL]
[内容:XunLeiBHO Module Copyright 2004-2006]
[编号:29]
[名称:C:\WINDOWS\downlo~1\CnsHook.dll]
[类型:已加载DLL]
[内容:3721 CNS Module 版权所有 (C) 2001 - 2004]
[编号:30]
[名称:C:\WINDOWS\downlo~1\CnsMinIO.dll]
[类型:已加载DLL]
[内容:3721 CnsMinIO 版权所有 (C) 2001 - 2004]
[编号:31]
[名称:C:\WINDOWS\downlo~1\cnsio.dll]
[类型:已加载DLL]
[内容:3721 CnsIO 版权所有 (C) 2001 - 2004]
[编号:32]
[名称:C:\WINDOWS\System32\msdmo.dll]
[类型:已加载DLL]
[内容:(null) (null)]
[编号:33]
[名称:C:\WINDOWS\System32\VM31bPrp.Ax]
[类型:已加载DLL]
[内容:VM., 2002. VM., 2002.]
[编号:34]
[分隔符:---------------------------------------------------------------------]
[编号:35]
[名称:IMJPMIG8.1]
[类型:开机启动]
[内容:"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32]
[编号:36]
[名称:PHIME2002ASync]
[类型:开机启动]
[内容:C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC]
[编号:37]
[名称:PHIME2002A]
[类型:开机启动]
[内容:C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName]
[编号:38]
[名称:Cmaudio]
[类型:开机启动]
[内容:RunDll32 cmicnfg.cpl,CMICtrlWnd]
[编号:39]
[名称:NvCplDaemon]
[类型:开机启动]
[内容:RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup]
[编号:40]
[名称:CnsMin]
[类型:开机启动]
[内容:Rundll32.exe C:\WINDOWS\downlo~1\CnsMin.dll,Rundll32]
[编号:41]
[名称:BigDogPath]
[类型:开机启动]
[内容:C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera 301x]
[编号:42]
[名称:NvMediaCenter]
[类型:开机启动]
[内容:RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit]
[编号:43]
[名称:helper.dll]
[类型:开机启动]
[内容:C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32]
[编号:44]
[名称:TkBellExe]
[类型:开机启动]
[内容:"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot]
[编号:45]
[分隔符:---------------------------------------------------------------------]
[编号:46]
[名称:AFD 网络支持环境]
[类型:服务:未知]
[内容:\SystemRoot\System32\drivers\afd.sys]
[编号:47]
[名称:标准 IDE/ESDI 硬盘控制器]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\drivers\atapi.sys]
[编号:48]
[名称:C-Media WDM Audio Interface]
[类型:服务:C-Media Audio Driver (WDM) Copyright (C) C-Media Inc. 1998-2004]
[内容:C:\WINDOWS\system32\drivers\cmuda.sys]
[编号:49]
[名称:CnsMinKP]
[类型:服务:KMD Copyright (c) 3721 Corporation.]
[内容:C:\WINDOWS\system32\drivers\cnsminkp.sys]
[编号:50]
[名称:icddrv]
[类型:服务:未知]
[内容:c:\windows\system32\drivers\icddrv.sys]
[编号:51]
[名称:kavsvc]
[类型:服务:Kaspersky Anti-Virus Personal Copyright ? Kaspersky Lab 1996-2005.]
[内容:"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe"]
[编号:52]
[名称:Kl1]
[类型:服务:Kaspersky Anti-Virus Personal Copyright ? Kaspersky Lab 1996-2005.]
[内容:C:\WINDOWS\system32\drivers\kl1.sys]
[编号:53]
[名称:Klif]
[类型:服务:KLIF Copyright (c) Kaspersky Labs 1999-2004]
[内容:C:\WINDOWS\system32\drivers\klif.sys]
[编号:54]
[名称:Klmc]
[类型:服务:Kaspersky Anti-Virus Personal Copyright ? Kaspersky Lab 1996-2005.]
[内容:C:\WINDOWS\system32\drivers\klmc.sys]
[编号:55]
[名称:npkcrypt]
[类型:服务:nProtect KeyCrypt Driver Copyright (C) INCA Internet. 2000-2005]
[内容:c:\program files\tencent\qq\npkcrypt.sys]
[编号:56]
[名称:NPPTNT2]
[类型:服务:nProtect NPSC Kernel Mode Driver for NT Copyright ? 2000-2005 INCA Internet]
[内容:c:\windows\system32\npptnt2.sys]
[编号:57]
[名称:NVIDIA Display Driver Service]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\nvsvc32.exe]
[编号:58]
[名称:oreans32]
[类型:服务:未知]
[内容:c:\windows\system32\drivers\oreans32.sys]
[编号:59]
[名称:StarForce Protection Environment Driver v6]
[类型:服务:未知]
[内容:\SystemRoot\System32\drivers\prodrv06.sys]