瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 IE被挟持,不时弹出网页,主页被恶意更改,高手来帮忙!谢谢!

1   1  /  1  页   跳转

IE被挟持,不时弹出网页,主页被恶意更改,高手来帮忙!谢谢!

IE被挟持,不时弹出网页,主页被恶意更改,高手来帮忙!谢谢!

2006-08-23,19:44:57

System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [Microsoft Corporation]
    <LogitechSoftwareUpdate><"C:\Program Files\Logitech\Video\ManifestEngine.exe" boot>  []
    <msnnt><C:\WINDOWS\winampe.exe>  []
    <NIW><C:\WINDOWS\system32\NIW.exe>  []
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [Microsoft Corporation]
    <PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [Microsoft Corporation]
    <PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [Microsoft Corporation]
    <TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot>  [RealNetworks, Inc.]
    <Synchronization Manager><%SystemRoot%\system32\mobsync.exe /logon>  [Microsoft Corporation]
    <LVCOMSX><C:\WINDOWS\system32\LVCOMSX.EXE>  [Logitech Inc.]
    <LogitechVideoRepair><C:\Program Files\Logitech\Video\ISStart.exe >  [Logitech Inc.]
    <LogitechVideoTray><C:\Program Files\Logitech\Video\LogiTray.exe>  [Logitech Inc.]
    <WebThunder><C:\Program Files\Thunder Network\WebThunder\WebThunder.exe>  [深圳市迅雷网络技术有限公司]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <KernelFaultCheck><C:\WINDOWS\system32\wdm.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><EXPLORER.EXE>  [Microsoft Corporation]
    <Userinit><C:\WINDOWS\system32\Userinit.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><C:\WINDOWS\system32\SoDAHK.DLL>  [Sogou.com Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll>  [Beijing Rising Technology Co., Ltd.]
    <{C54B4AFB-7A2A-6C3E-BA4D-C20F0294B724}><C:\WINDOWS\system32\Anskya0.dll>  []
    <{288BD9BD-F0DC-46B1-81B5-2B61DF8077CE}><C:\WINDOWS\system32\.dll>  []
    <{CF49F9F2-A8D3-464F-83EC-6AFC6573C267}><C:\WINDOWS\system32\33.dll>  []
    <{9DE65ACD-2184-4BA2-99AC-F04B1EE03C37}><C:\WINDOWS\system32\Directxms2.dll>  []
    <{1A404685-7563-4d02-B0F6-58B308A406A9}><c:\progra~1\tencent\qqgame\newddz\idxltbjv.dll>  []
    <{F3F54390-D513-4D99-A5DA-476EA9DC6022}><C:\Program Files\Internet Explorer\PLUGINS\system2.sys>  []
    <{F3D0D422-CE6D-47B3-9CE6-C54DD63F1ADB}><C:\Program Files\Internet Explorer\PLUGINS\new123.sys>  []
    <{6E44887F-5214-41F2-AB46-4728735C4CC6}><C:\Program Files\Internet Explorer\PLUGINS\system.sys>  []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <DelayRun><C:\WINDOWS\system\5eadcc90.dll>  []
[HKEY_CURRENT_USER\Control Panel\Desktop]
    <SCRNSAVE.EXE><; E:\盛大-~1\data\GUI\mov\kartss.scr>  []

==================================
启动文件夹
[瑞星监控中心]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\瑞星监控中心.lnk><N>
[IE-Bar]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\IE-Bar.lnk><N>

==================================
服务
[C-DillaCdaC11BA / C-DillaCdaC11BA]
  <C:\WINDOWS\system32\drivers\CDAC11BA.EXE><Macrovision>
[P4P Service / P4P Service]
  <C:\Program Files\Common Files\Sogou PXP\p2psvr.exe><Sohu.com Inc.>
[Remote Managements Instrumenta / Remss_Ser]
  <C:\WINDOWS\system32\netstart.exe -service><N/A>
[Rising Process Communication Center / RsCCenter]
  <"C:\Program Files\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
  <"C:\Program Files\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
最后编辑2006-08-24 12:14:30
分享到:
gototop
 

浏览器加载项
[WebThunder Browser Helper]
  {00000AAA-A363-466E-BEF5-9BB68697AA7F} <C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll, Thunder Networking Technologies,LTD>
[MonitorURL Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, >
[CPub Object]
  {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} <C:\Program Files\P4P\sodaie.dll, Sogou.com Inc.>
[CAdLogic Object]
  {11F09AFD-75AD-4E51-AB43-E09E9351CE16} <C:\Program Files\Common Files\CPUSH\cpush.dll, Sogou.com Inc.>
[Adobe-Plugins Manager]
  {2AFA7CEC-26D9-4256-AF57-497A13180BA5} <C:\WINDOWS\System32\Agm.dll, AdoBeSoft Co.>
[Deliverer Class]
  {3E290290-1728-4C1E-863A-AA12526333F6} <C:\WINDOWS\system32\ControlPanel.{21EC2020-3AEA-1069-A2DD-08002B30309d}\ControlPanel\ADDeliverer.dll, N/A>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[IEYHlprObj Class]
  {5C761D09-377E-4EAC-ADA1-C9CDE39B5674} <C:\WINDOWS\IEYHelper.dll, Eastday Corporation>
[DragSearch BHO]
  {62EED7C6-9F02-42f9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL, N/A>
[JMX.JmxCenter]
  {63859236-76BF-493C-A587-DF479EBA2D4B} <C:\WINDOWS\system32\EJMX.dll, 广州盛行网络有限公司>
[Status Class]
  {7BDAF75A-0D6F-4F50-AFE9-333D08DF4005} <C:\PROGRA~1\baigoo\baigoobh.dll, >
[estAliveObj Class]
  {A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[isObject Class]
  {BE0B5843-553A-48C2-9A42-258A1D791AFC} <C:\PROGRA~1\hbclient\tbcast.dll, Shanghai Henbang Technology Co., Ltd>
[shdocvwhlp Class]
  {BE442802-3911-46E0-B227-076B15A4EAD3} <C:\WINDOWS\system32\mskey16.dll, MicroCropration>
[WebDownloader Class]
  {E78F50F9-51CF-40EC-AE3F-4F802528150B} <C:\WINDOWS\Downloader.dll, N/A>
[BHelper Class]
  {F2E37336-BFDB-409B-8D0E-6F013C438B20} <C:\WINDOWS\system32\5eaocc90.dll, N/A>
[寻宝乐趣多]
  {59BC54A2-56B3-44a0-93E5-432D58746E26}? <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=taobao, N/A>
[雅虎助手]
  {5D73EE86-05F1-49ed-B850-E423120EC338}? <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist, N/A>
[kele8]
  {84920E5F-3788-49cd-A274-E365578DF174} <http://www.kele8.com/, N/A>
[我的订阅]
  {8755CE6E-0BF7-4441-8751-FB728941B0B4} <C:\Program Files\P4P\rss.dll, Sohu.com Inc.>
[启动Web迅雷]
  {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} <http://my.xunlei.com, N/A>
[比较购物搜索(&C)]
  {A36ABCF0-1C8F-46e7-A67C-0489DC21B9CC} <C:\WINDOWS\YayaBands.dll, Eastday Corporation>
[比较购物搜索(&C)]
  {A36ABCF0-1C8F-46e7-A67C-0489DC21B9CC}? <C:\WINDOWS\YayaBands.dll, Eastday Corporation>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\kakatool.dll, N/A>
[IE标准栏]
  {954F618B-0DEC-4D1A-9317-E0FC96F87865} <C:\WINDOWS\system32\amstreamxb1.dll, >
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Filetran Control]
  {88734439-46D0-42C0-A13F-7E881EE550CF} <D:\BLUESK~1\filetran.ocx, Bluesky Studio(http://www.bluesky.cn)>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[WebThunder Browser Helper]
  {00000AAA-A363-466E-BEF5-9BB68697AA7F} <C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll, Thunder Networking Technologies,LTD>
[HBHelper.HBActivex]
  {038318E8-0C2D-4DF5-A7AF-B4FB373F501E} <C:\PROGRA~1\hbclient\HBHelper.dll, Shanghai Henbang Technology Co., Ltd>
[MonitorURL Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, >
[CPub Object]
  {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} <C:\Program Files\P4P\sodaie.dll, Sogou.com Inc.>
[CAdLogic Object]
  {11F09AFD-75AD-4E51-AB43-E09E9351CE16} <C:\Program Files\Common Files\CPUSH\cpush.dll, Sogou.com Inc.>
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>
[XML DOM Document]
  {2933BF90-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\system32\msxml3.dll, N/A>
[Adobe-Plugins Manager]
  {2AFA7CEC-26D9-4256-AF57-497A13180BA5} <C:\WINDOWS\System32\Agm.dll, AdoBeSoft Co.>
[DHTML Edit Control Safe for Scripting for IE5]
  {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, Microsoft Corporation>
[Tabular Data Control]
  {333C7BC4-460F-11D0-BC04-0080C7055A83} <C:\WINDOWS\system32\tdc.ocx, Microsoft Corporation>
[Deliverer Class]
  {3E290290-1728-4C1E-863A-AA12526333F6} <C:\WINDOWS\system32\ControlPanel.{21EC2020-3AEA-1069-A2DD-08002B30309d}\ControlPanel\ADDeliverer.dll, N/A>
[HHCtrl Object]
  {41B23C28-488E-4E5C-ACE2-BB0BBABE99E8} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[IEYHlprObj Class]
  {5C761D09-377E-4EAC-ADA1-C9CDE39B5674} <C:\WINDOWS\IEYHelper.dll, Eastday Corporation>
[DragSearch BHO]
  {62EED7C6-9F02-42F9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL, N/A>
[JMX.JmxCenter]
  {63859236-76BF-493C-A587-DF479EBA2D4B} <C:\WINDOWS\system32\EJMX.dll, 广州盛行网络有限公司>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[MediaComm Class]
  {7670648D-461B-42AF-BDFE-46D26AF5EFF2} <C:\Program Files\Thunder Network\WebThunder\MediaAddin06.dll, Thunder Networking Technologies,LTD>
[Status Class]
  {7BDAF75A-0D6F-4F50-AFE9-333D08DF4005} <C:\PROGRA~1\baigoo\baigoobh.dll, >
[BrowserObject Class]
  {808EAF87-61B8-4EEA-8B85-27480D1BDBEE} <C:\PROGRA~1\baigoo\bgook.dll, baigoo>
[我的订阅]
  {8755CE6E-0BF7-4441-8751-FB728941B0B4} <C:\Program Files\P4P\rss.dll, Sohu.com Inc.>
[Microsoft Web 浏览器]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[CAutoLinkBHO Object]
  {8AB8528F-AC8B-416D-9B84-92D97729C195} <C:\Program Files\P4P\autolink.dll, Sohu.com Inc.>
[IE标准栏]
  {954F618B-0DEC-4D1A-9317-E0FC96F87865} <C:\WINDOWS\system32\amstreamxb1.dll, >
[estAliveObj Class]
  {A2B7A0F0-B697-4A71-8D91-43443F57D7BB} <C:\WINDOWS\estAlive.dll, Eastday Corporation>
[Fc2Boot Class]
  {ABA7CC7F-019D-47DB-A0D2-B3C2B3AC1B44} <D:\Program Files\FancyBoxII Games\system\ActiveX\fc2boot.dll, 北京线线通科技开发有限公司>
[Microsoft Scriptlet Component]
  {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[卡卡上网安全助手]
  {AFF6E516-CBE5-4F8A-9C2F-38A68013E766} <C:\WINDOWS\system32\kakatool.dll, N/A>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[RDS.DataSpace]
  {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[isObject Class]
  {BE0B5843-553A-48C2-9A42-258A1D791AFC} <C:\PROGRA~1\hbclient\tbcast.dll, Shanghai Henbang Technology Co., Ltd>
[shdocvwhlp Class]
  {BE442802-3911-46E0-B227-076B15A4EAD3} <C:\WINDOWS\system32\mskey16.dll, MicroCropration>
[AUDIO__MID Moniker Class]
  {CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__X_MS_WMA Moniker Class]
  {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
  {CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\kakatool.dll, N/A>
[搜狗工具条]
  {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} <C:\Program Files\P4P\ToolBar.dll, Sogou.com Inc.>
[WebDownloader Class]
  {E78F50F9-51CF-40EC-AE3F-4F802528150B} <C:\WINDOWS\Downloader.dll, N/A>
[BHelper Class]
  {F2E37336-BFDB-409B-8D0E-6F013C438B20} <C:\WINDOWS\system32\5eaocc90.dll, N/A>
[上传到QQ网络硬盘]
  <C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[使用Web迅雷下载]
  <C:\Program Files\Thunder Network\WebThunder\GetUrl.htm, N/A>
[使用Web迅雷下载全部链接]
  <C:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm, N/A>
[使用搜狗直通车下载]
  <C:\Program Files\P4P\dl.htm, N/A>
[发送图片到手机]
  <C:\Program Files\P4P\cx.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[添加到“我的订阅”]
  <C:\Program Files\P4P\rss.htm, N/A>
[用QQ彩信发送该图片]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
gototop
 

正在运行的进程
[PID: 316][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 476][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 500][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [c:\progra~1\tencent\qqgame\newddz\idxltbjv.dll]  <><1, 0, 0, 11>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
[PID: 544][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 556][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 700][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 776][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
[PID: 860][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
[PID: 924][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1016][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1152][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1376][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\AcSignIcon.dll]  <Autodesk><16.0.0.86>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [c:\progra~1\tencent\qqgame\newddz\idxltbjv.dll]  <><1, 0, 0, 11>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  <Autodesk><16.0.0.86>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\amstreamxb1.dll]  <><0.6.0.76>
    [C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll]  <Thunder Networking Technologies,LTD><6, 0, 0, 2>
    [C:\WINDOWS\system32\mskey16.dll]  <MicroCropration><1, 0, 0, 1>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [C:\WINDOWS\system\CamExL20.ax]  <Logitech Inc.><8.4.1.1092>
    [C:\WINDOWS\system32\ffdshow.ax]  <N/A><N/A>
    [C:\Program Files\Ringz Studio\Storm Codec\Codecs\VSFilter.dll]  <Gabest><1, 0, 0, 9>
    [C:\WINDOWS\system32\sctongjiv.dll]  <www.seecha.com><1, 0, 1, 3>
    [C:\WINDOWS\system32\socul.dll]  <><1, 0, 1, 3>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\WINDOWS\System32\Agm.dll]  <AdoBeSoft Co.><4, 4, 26, 1>
    [C:\WINDOWS\system32\EJMX.dll]  <广州盛行网络有限公司><1.02.0009>
    [C:\PROGRA~1\baigoo\baigoobh.dll]  <><1, 0, 1, 1008>
    [C:\WINDOWS\system32\5eaocc90.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx]  <Macromedia, Inc.><8,0,24,0>
[PID: 1836][C:\WINDOWS\system32\drivers\CDAC11BA.EXE]  <Macrovision><4.20.020>
[PID: 1880][C:\Program Files\Common Files\Sogou PXP\p2psvr.exe]  <Sohu.com Inc.><2, 0, 0, 19>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\Program Files\P4P\tbupdate.dll]  <Sogou.com Inc.><1, 0, 1, 1>
    [C:\Program Files\P4P\p4pipc.dll]  <Sogou.com Inc.><1, 0, 0, 13>
[PID: 196][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 808][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  <RealNetworks, Inc.><0.1.0.3018>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 1228][C:\WINDOWS\system32\LVCOMSX.EXE]  <Logitech Inc.><8.4.7.1036>
    [C:\WINDOWS\system32\lvmaenum.dll]  <Logitech Inc.><8.4.7.1036>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\lvcomcx.dll]  <Logitech Inc.><8.4.7.1036>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 1288][C:\Program Files\Logitech\Video\LogiTray.exe]  <Logitech Inc.><8.4.7.1034>
    [C:\Program Files\Logitech\Video\QCUI2.dll]  <Logitech Inc.><8.4.7.1034>
    [C:\Program Files\Logitech\Video\LTWVC12n.dll]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LTFIL12n.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LTKRN12n.dll]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LQCUI2.dll]  <Logitech Inc.><8.4.7.1034>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\Program Files\Logitech\Video\LLogTray.dll]  <Logitech Inc.><8.4.7.1034>
    [C:\Program Files\Logitech\Video\LTDIS12N.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LTIMG12N.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LTEFX12N.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LFFAX12N.DLL]  <LEAD Technologies, Inc.><12.1.0.020>
    [C:\Program Files\Logitech\Video\LFCMP12N.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LFTIF12N.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\Program Files\Logitech\Video\LFBMP12N.DLL]  <LEAD Technologies, Inc.><12.1.0.058>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\lvmaenum.dll]  <Logitech Inc.><8.4.7.1036>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\lvcomcx.dll]  <Logitech Inc.><8.4.7.1036>
    [C:\Program Files\Logitech\Video\FXSvrps.dll]  <Logitech Inc.><8.4.7.1034>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 1324][C:\Program Files\Thunder Network\WebThunder\WebThunder.exe]  <深圳市迅雷网络技术有限公司><1, 1, 6, 41>
    [C:\Program Files\Thunder Network\WebThunder\taskmanage.dll]  <Thunder Networking Technologies,LTD><1, 1, 0, 42>
    [C:\Program Files\Thunder Network\WebThunder\download_interface.dll]  <Thunder Networking Technologies,LTD><1, 0, 3, 70>
    [C:\Program Files\Thunder Network\WebThunder\asyn_dns.dll]  <N/A><N/A>
    [C:\Program Files\Thunder Network\WebThunder\RegisterDll.dll]  <Thunder Networking Technologies,LTD><2, 0, 0, 13>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\Program Files\Thunder Network\WebThunder\historyinfo_manage.dll]  <Thunder Networking Technologies,LTD><5, 2, 0, 150>
    [C:\Program Files\Thunder Network\WebThunder\UpdateDownload.dll]  <Thunder Networking Technologies,LTD><1, 0, 1, 8>
    [C:\Program Files\Thunder Network\WebThunder\UpdateExec.dll]  <Thunder Networking Technologies,LTD><1, 0, 1, 5>
    [C:\Program Files\Thunder Network\WebThunder\iEmbedShell.dll]  < ><1, 0, 0, 10>
    [C:\Program Files\Thunder Network\WebThunder\iEmbed03.dll]  < ><2, 2, 1, 33>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
gototop
 

接上面 
[C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
[PID: 1364][C:\PROGRA~1\baigoo\Baigoo.exe]  <baigoo.com><1, 0, 0, 1008>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\PROGRA~1\baigoo\Bgooex.dll]  <><1, 0, 0, 1008>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 1728][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 1696][C:\WINDOWS\system32\conime.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 2348][C:\Program Files\Logitech\Video\FxSvr2.exe]  <Logitech Inc.><8.4.7.1034>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\lvmaenum.dll]  <Logitech Inc.><8.4.7.1036>
    [C:\WINDOWS\system32\lvcomcx.dll]  <Logitech Inc.><8.4.7.1036>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\Program Files\Logitech\Video\FXSvrps.dll]  <Logitech Inc.><8.4.7.1034>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
[PID: 2088][c:\program files\internet explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
[PID: 4008][c:\program files\internet explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
[PID: 3944][c:\program files\internet explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
[PID: 3048][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [C:\WINDOWS\UEDITE32.DLL]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
[PID: 3264][C:\WINDOWS\system32\SVOHOST.exe]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
[PID: 1460][C:\WINDOWS\5.exe]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
[PID: 2748][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\WINDOWS\UEDITE32.DLL]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
[PID: 1740][C:\WINDOWS\22.exe]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
[PID: 2328][C:\DOCUME~1\cs\LOCALS~1\Temp\RarSFX9\svchost.exe]  <基地><1.00>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
[PID: 676][c:\windows\system32\svchqs.exe]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
[PID: 4000][C:\WINDOWS\system32\rundll32.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [C:\WINDOWS\59cd11d\1.dll]  <千橡互联><3, 0, 1, 0>
    [C:\WINDOWS\59cd11d\3.dll]  <千橡互联><3, 0, 1, 0>
    [C:\WINDOWS\59cd11d\4.dll]  <千橡互联><3, 0, 1, 0>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
gototop
 

继续接
[C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
[PID: 1640][C:\WINDOWS\system32\Rundll32.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\hbclient\tbcast.dll]  <Shanghai Henbang Technology Co., Ltd><1, 1, 3, 8>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
[PID: 2900][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\AcSignIcon.dll]  <Autodesk><16.0.0.86>
    [C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_011.dll]  <Thunder Networking Technologies,LTD><6, 0, 0, 2>
    [C:\PROGRA~1\DESKAD~1\deskipn.dll]  <><1, 0, 0, 1>
    [C:\Program Files\P4P\sodaie.dll]  <Sogou.com Inc.><1, 2, 0, 4>
    [C:\Program Files\P4P\ToolBar.dll]  <Sogou.com Inc.><1, 4, 8, 3>
    [C:\Program Files\P4P\autolink.dll]  <Sohu.com Inc.><1, 0, 2, 3>
    [C:\Program Files\Common Files\CPUSH\cpush.dll]  <Sogou.com Inc.><1.0.0.1>
    [C:\WINDOWS\System32\Agm.dll]  <AdoBeSoft Co.><4, 4, 26, 1>
    [C:\WINDOWS\system32\ControlPanel.{21EC2020-3AEA-1069-A2DD-08002B30309d}\ControlPanel\ADDeliverer.dll]  <N/A><0, 9, 9, 3>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\Program Files\Tencent\QQ\QQIEHelper.dll]  <深圳市腾讯计算机系统有限公司><1, 1, 0, 5>
    [C:\WINDOWS\IEYHelper.dll]  <Eastday Corporation><1, 0, 0, 13>
    [C:\WINDOWS\YayaBands.dll]  <Eastday Corporation><1, 0, 0, 5>
    [C:\WINDOWS\YayaVerAtl.dll]  <Eastday Corporation><1, 0, 0, 48>
    [C:\WINDOWS\system32\EJMX.dll]  <广州盛行网络有限公司><1.02.0009>
    [C:\PROGRA~1\baigoo\baigoobh.dll]  <><1, 0, 1, 1008>
    [C:\WINDOWS\estAlive.dll]  <Eastday Corporation><1, 0, 0, 4>
    [C:\PROGRA~1\hbclient\tbcast.dll]  <Shanghai Henbang Technology Co., Ltd><1, 1, 3, 8>
    [C:\WINDOWS\system32\mskey16.dll]  <MicroCropration><1, 0, 0, 1>
    [C:\WINDOWS\system32\5eaocc90.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\PROGRA~1\baigoo\bgook.dll]  <baigoo><1, 0, 0, 1008>
    [C:\PROGRA~1\baigoo\plugin\bgoobar\bgoobar.dll]  <BAIGOO><1, 0, 0, 1007>
    [C:\PROGRA~1\baigoo\plugin\bgoobar\BRes2052.dll]  <Baigoo><1, 0, 0, 1009>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx]  <Macromedia, Inc.><8,0,24,0>
    [C:\WINDOWS\system32\UNISPIM.IME]  <北京清华紫光软件股份有限公司><3.0.0.3045>
    [C:\WINDOWS\system32\upengine.dll]  <北京清华紫光软件股份有限公司><3.0.0.3045>
[PID: 2620][C:\WINDOWS\system32\RUNDLL32.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\SoDAHK.DLL]  <Sogou.com Inc.><1, 0, 1, 5>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\COMMON~1\CPUSH\cpush.dll]  <Sogou.com Inc.><1.0.0.1>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
[PID: 816][C:\WINDOWS\system32\NIW.exe]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>
[PID: 652][C:\Program Files\WinRAR\WinRAR.exe]  <N/A><N/A>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\AcSignIcon.dll]  <Autodesk><16.0.0.86>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\packet.dll]  <CACE Technologies><3, 1, 0, 27>
    [C:\WINDOWS\system32\WanPacket.dll]  <CACE Technologies><3, 1, 0, 27>
[PID: 160][C:\DOCUME~1\cs\LOCALS~1\Temp\Rar$EX00.729\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [c:\nxldr.dat]  <N/A><N/A>
    [C:\PROGRA~1\baigoo\baigoohk.dll]  < ><1, 0, 0, 1008>
    [C:\WINDOWS\system32\winscok.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\ztdll.dll]  <N/A><N/A>
    [C:\ZTPINNEW\ZT_DLL.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\33.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\wshcon32.dll]  <><4, 0, 0, 0>

==================================
文件关联
.TXT  Error. [C:\WINDOWS\system32\impai.exe "%1"]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
gototop
 

【回复“秋日里的蓝天”的帖子】
谢谢第5楼,可是还是会弹出那种网页~算了吧,谢谢5楼哈~!
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT