1   1  /  1  页   跳转

【求助】请看是什么毒,附日志

【求助】请看是什么毒,附日志

我用的是F-secure抗病毒软件,时不时显示计算机有病毒.
昨天的问题:屏幕左上角显示版本日期时间,经设置开机密码后没再出现.
请指点,谢谢!
HijackThis_815汉化版扫描日志 V1.99.1
保存于      11:04:03 PM, 日期 10/4/2006
操作系统:  Windows XP SP2 (WinNT 5.01.2600)
浏览器:    Internet Explorer v7.00 (7.00.5700.0006)

当前运行的进程:         
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE
C:\Program Files\Common Files\EPSON\eEBAPI\SAgent2.exe
C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE
C:\Program Files\F-Secure\Common\FSMA32.EXE
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\F-Secure\Anti-Virus\fssm32.exe
C:\Program Files\F-Secure\Common\FSMB32.EXE
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\F-Secure\Common\FCH32.EXE
C:\Program Files\F-Secure\Common\FAMEH32.EXE
C:\Program Files\F-Secure\Anti-Virus\fsqh.exe
C:\Program Files\F-Secure\Anti-Virus\fsrw.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\F-Secure\Common\FSM32.EXE
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe
c:\windows\system32\wbem\winlogon.exe
C:\Program Files\F-Secure\Anti-Virus\fsav32.exe
C:\Program Files\F-Secure\Common\FNRB32.EXE
C:\Program Files\F-Secure\Common\FIH32.EXE
C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
C:\PROGRA~1\F-Secure\ANTI-S~1\fsaw.exe
C:\Program Files\F-Secure\FSGUI\fsguidll.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Hijackthis1991zww\HijackThis1991zww.exe

O2 - BHO: 5940bar BHO - {15953528-6C01-481A-8DB4-01888FB85B7D} - C:\WINDOWS\system32\CN5940~1.DLL (file missing)
O2 - BHO: (no name) - {2A4956FD-BE98-4104-ABEB-97029B3175BB} - C:\WINDOWS\system32\sys32dev.dll (file missing)
O2 - BHO: (no name) - {31EBA2E2-58B2-4980-9C41-F12F5F1422C5} - (no file)
O2 - BHO: SYM - {36BF6929-DCBC-4CCD-A620-C5E3BBA77B95} - C:\WINDOWS\system32\usercrd.dll
O2 - BHO: SafeMe Internet Explorer Helper - {3AE06CEE-58A6-4F5F-AF89-6C5350842F16} - C:\WINDOWS\system32\SafeHelper12.dll
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O2 - BHO: 3???í?×óé?í???áé - {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} - C:\PROGRA~1\SUPERR~1\MagicSet\haokanbar.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O2 - BHO: ThunderBHO - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll (file missing)
O2 - BHO: (no name) - {CE7C3CF0-98A8-474D-B2B5-1ED7E2E3B004} - (no file)
O3 - IE工具栏增项: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll (file missing)
O3 - IE工具栏增项: 3???í?×óé?í???áé - {43869BB3-22FD-4F15-9B46-238106BA2F4E} - C:\PROGRA~1\SUPERR~1\MagicSet\haokanbar.dll (file missing)
O4 - 启动项HKLM\\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - 启动项HKLM\\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
O4 - 启动项HKLM\\Run: [F-Secure TNB] "C:\Program Files\F-Secure\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - 启动项HKLM\\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: baana.lnk = ?
O4 - Global Startup: F-Secure Automatic Update.lnk = C:\Program Files\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe
O8 - IE右键菜单中的新增项目: &Block this popup - C:\Program Files\F-Secure\Anti-Spyware\blockpopups.htm
O8 - IE右键菜单中的新增项目: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - IE右键菜单中的新增项目: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O8 - IE右键菜单中的新增项目: Add to QQ Customized Emoticons - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - IE右键菜单中的新增项目: Add to QQ Customized Panel - C:\Program Files\Tencent\QQ\AddPanel.htm
O8 - IE右键菜单中的新增项目: Add to QQ Emoticons - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - IE右键菜单中的新增项目: Add to QQ Emotions - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - IE右键菜单中的新增项目: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - IE右键菜单中的新增项目: Send Picture with QQ MMS - C:\Program Files\Tencent\QQ\SendMMS.htm
O8 - IE右键菜单中的新增项目: Send the Picture by QQ MMS - C:\Program Files\Tencent\QQ\SendMMS.htm
O8 - IE右键菜单中的新增项目: Upload to QQ Network Hard Disk - C:\Program Files\Tencent\QQ\AddToNetDisk.htm
O8 - IE右键菜单中的新增项目: 使用影音传送带下载 - C:\Program Files\Xi\NetTransport 2\NTAddLink.html
O8 - IE右键菜单中的新增项目: 使用影音传送带下载全部链接 - C:\Program Files\Xi\NetTransport 2\NTAddList.html
O8 - IE右键菜单中的新增项目: 使用网际快车下载 - C:\Program Files\FlashGet\jc_link.htm
O8 - IE右键菜单中的新增项目: 使用网际快车下载全部链接 - C:\Program Files\FlashGet\jc_all.htm
O9 - 浏览器额外的按钮: ???ˉ??à× - {0062C9BD-B349-40DE-91A0-755F37ACD559} - C:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - 浏览器额外的“工具”菜单项: ???ˉ??à× - {0062C9BD-B349-40DE-91A0-755F37ACD559} - C:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - 浏览器额外的按钮: IE Shield - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure\Anti-Spyware\ieshield.dll
O9 - 浏览器额外的“工具”菜单项: IE Shield... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure\Anti-Spyware\ieshield.dll
O9 - 浏览器额外的按钮: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - C:\Program Files\Tencent\QQ\QQ.EXE
O9 - 浏览器额外的“工具”菜单项: Tencent QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - C:\Program Files\Tencent\QQ\QQ.EXE
O9 - 浏览器额外的按钮: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O9 - 浏览器额外的“工具”菜单项: QQì?2ê1¤??ì?éè?? - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - C:\Program Files\Tencent\QQ\QQIEHelper.dll
O9 - 浏览器额外的按钮: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - 浏览器额外的“工具”菜单项: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O10 - 未知的文件在 Winsock LSP: c:\program files\f-secure\fsps\program\fslsp.dll
O10 - 未知的文件在 Winsock LSP: c:\program files\f-secure\fsps\program\fslsp.dll
O10 - 未知的文件在 Winsock LSP: c:\program files\f-secure\fsps\program\fslsp.dll
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {342999A3-728D-4DF6-BB81-CDD1A743096A} (MRActivXUI Class) - http://comp.mediaring.com/consumer/pcphone/ver5.3.0.0/wbaxuiph530.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/16926de0e78bdb258314/netzip/RdxIE601.cab
O16 - DPF: {5D9E4B6D-CD17-4D85-99D4-6A52B394EC3B} (WSDownloader Control) - http://www.webshots.com/samplers/WSDownloader.ocx
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1139302038370
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1139302002008
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dll
O16 - DPF: {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} -
O17 - HKLM\System\CCS\Services\Tcpip\..\{369F3B00-8752-4A4B-80B8-D4B2D2270A62}: NameServer = 212.50.131.153 213.139.190.3
O17 - HKLM\System\CS1\Services\Tcpip\..\{369F3B00-8752-4A4B-80B8-D4B2D2270A62}: NameServer = 212.50.131.153 213.139.190.3
O17 - HKLM\System\CS2\Services\Tcpip\..\{369F3B00-8752-4A4B-80B8-D4B2D2270A62}: NameServer = 212.50.131.153 213.139.190.3
O18 - 列举现有的协议: dic - {C21F5C32-F57A-4A0D-8E0A-B672691C52D0} - C:\PROGRA~1\Kingsoft\POWERW~1\XDictExB.dll
O18 - 列举现有的协议: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - 列举现有的协议: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - NT 服务: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - NT 服务: F-Secure Automatic Update (BackWeb Plug-in - 7681197) - F-Secure Automatic Update - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE
O23 - NT 服务: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\eEBAPI\SAgent2.exe
O23 - NT 服务: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corp. - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - NT 服务: F-Secure Network Request Broker - F-Secure Corporation - C:\Program Files\F-Secure\Common\FNRB32.EXE
O23 - NT 服务: fsbwsys - F-Secure Corp. - C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
O23 - NT 服务: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
O23 - NT 服务: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
O23 - NT 服务: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - NT 服务: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
O23 - NT 服务: KSD2Service - Unknown owner - C:\WINDOWS\system32\SVCH0ST.exe (file missing)
O23 - NT 服务: Network Logons (NetWorkLogons) - Unknown owner - rundll32.exe (file missing)

最后编辑2006-10-07 18:54:59
分享到:
gototop
 

2006-10-04,23:34:06

System Repair Engineer 2.2.6.605
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600)
- Administrative User - Completed Functions Allowed

Follow item(s) have been choosed:
    All Boot Items (Including Registry, Startup Folders, Services and so on)
    Browser Add-ons
    Runing Processes (Including process model information)
    File Associations
    Winsock Provider
    Autorun.Inf
    HOSTS File


Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
    <run><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <Windows Defender><"C:\Program Files\Windows Defender\MSASCui.exe" -hide>  [(Verified)Microsoft Corporation]
    <F-Secure Manager><"C:\Program Files\F-Secure\Common\FSM32.EXE" /splash>  [F-Secure Corporation]
    <F-Secure TNB><"C:\Program Files\F-Secure\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW>  [F-Secure Corporation]
    <WinPatrol><C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe>  [(Verified)BillP Studios]
    <InCD><; >  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><explorer.exe>  [(Verified)Microsoft Corporation]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{553858A7-4922-4e7e-B1C1-97140C1C16EF}><C:\WINDOWS\system32\ieframe.dll>  [(Verified)Microsoft Corporation]

==================================
Startup Folders
[F-Secure Automatic Update]
  <C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\F-Secure Automatic Update.lnk --> C:\PROGRA~1\F-Secure\BackWeb\7681197\program\F-SECU~1.EXE [F-Secure Automatic Update]><N>
[baana]
  <C:\Documents and Settings\YU.YUANYUAN\Start Menu\Programs\Startup\baana.lnk -->  [N/A]><N>

==================================
Services
[ASP.NET State Service / aspnet_state]
  <C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><Microsoft Corporation>
[ASP.NET Work State Service / aspwstate]
  <C:\WINDOWS\System32\svchost.exe -k aspwstate-->c:\windows\system32\aspwswin.dll><Microsoft Corporation>
[Ati HotKey Poller / Ati HotKey Poller]
  <C:\WINDOWS\System32\Ati2evxx.exe><N/A>
[F-Secure Automatic Update / BackWeb Plug-in - 7681197]
  <C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE><F-Secure Automatic Update>
[EPSON Printer Status Agent2 / EPSONStatusAgent2]
  <C:\Program Files\Common Files\EPSON\eEBAPI\SAgent2.exe><SEIKO EPSON CORPORATION>
[FSGKHS / F-Secure Gatekeeper Handler Starter]
  <"C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe"><F-Secure Corp.>
[F-Secure Network Request Broker / F-Secure Network Request Broker]
  <"C:\Program Files\F-Secure\Common\FNRB32.EXE"><F-Secure Corporation>
[fsbwsys / fsbwsys]
  <"C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe"><F-Secure Corp.>
[F-Secure Anti-Virus Firewall Daemon / FSDFWD]
  <"C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe"><F-Secure Corporation>
[F-Secure Management Agent / FSMA]
  <"C:\Program Files\F-Secure\Common\FSMA32.EXE"><F-Secure Corporation>
[HP Configuration Interface Service / HPConfig]
  <C:\WINDOWS\system32\HPConfig.exe><Hewlett-Packard>
[HPWirelessMgr / HPWirelessMgr]
  <C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe><Hewlett-Packard Co.>
[Spectrum24 Events Monitor / IPRIP]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\acss.dll><N/A>
[KSD2Service / KSD2Service]
  <C:\WINDOWS\system32\SVCH0ST.exe><N/A>
[Network Logons / NetWorkLogons]
  <rundll32.exe KB27861001.log,start><Microsoft Corporation>
[NetFrame Wireless Configuration / NFSWZCSVC]
  <C:\WINDOWS\System32\svchost.exe -k NFSWZCSVC-->c:\windows\system32\nfswzwin32.dll><Microsoft Corporation>
[DNS Cache / WIDETS]
  <C:\WINDOWS\SYSTEM32\RUNDLL.EXE C:\WINDOWS\SYSTEM32\WBEM\SMTPCONFS.DLL,Export 1087><Microsoft Corporation>

==================================
Drivers
[AFS2K / AFS2K]
  <C:\WINDOWS\SYSTEM32\DRIVERS\AFS2K.SYS><Oak Technology Inc.>
[ALi Audio Accelerator WDM driver / aliadwdm]
  <system32\drivers\ac97ali.sys><Acer Laboratories Inc.>
[AliIde / AliIde]
  <\SystemRoot\System32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
[ati2mtag / ati2mtag]
  <System32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[InCD Storage Helper Driver / BsStor]
  <\SystemRoot\System32\DRIVERS\bsstor.sys><B.H.A Co.,Ltd.>
[InCD UDF Driver / BsUDF]
  <C:\WINDOWS\SYSTEM32\DRIVERS\BsUDF.SYS><ahead software>
[ATI Cabo AGP Filter / caboagp]
  <\SystemRoot\System32\DRIVERS\atisgkaf.sys><ATI Technologies Inc.>
[Conexant AMC 3D ENVIRONMENTAL AUDIO / CALIAUD]
  <system32\drivers\caliaud.sys><Conexant Systems Inc.>
[CALIHALA / CALIHALA]
  <system32\drivers\calihal.sys><Conexant Systems Inc.>
[DirectPort / DirectPort]
  <\??\C:\WINDOWS\system32\Drivers\DirectPort.sys><eBit Soft>
[National Semiconductor Corp. DP83815/816 NDIS 5.0 Miniport Driver / DP83815]
  <System32\DRIVERS\DP83815.SYS><National Semiconductor Corp.>
[dtscsi / dtscsi]
  <\SystemRoot\System32\Drivers\dtscsi.sys><N/A>
[F-Secure File System Filter / F-Secure Filter]
  <\??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSfilter.sys><N/A>
[F-Secure Gatekeeper / F-Secure Gatekeeper]
  <\??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSgk.sys><N/A>
[F-Secure File System Recognizer / F-Secure Recognizer]
  <\??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSrec.sys><N/A>
[NETGEAR FA330/FA312/FA311 Fast Ethernet Adapter Driver / FA312]
  <System32\DRIVERS\FA312nd5.sys><NETGEAR Corp.>
[F-Secure Firewall Driver / FSFW]
  <\SystemRoot\System32\drivers\fsdfw.sys><F-Secure Corporation>
[GPIB Board Class Driver / gpibclsb]
  <\SystemRoot\System32\Drivers\gpibclsb.sys><N/A>
[GPIB Device Class Driver / gpibclsd]
  <\SystemRoot\System32\Drivers\gpibclsd.sys><N/A>
[Hamachi Network Interface / hamachi]
  <system32\DRIVERS\hamachi.sys><Applied Networking Inc.>
[HP Configuration Interface / HPCI]
  <System32\DRIVERS\hpci.sys><Hewlett-Packard>
[HSFHWALI / HSFHWALI]
  <System32\DRIVERS\HSFHWALI.sys><Conexant Systems, Inc.>
[HSF_DP / HSF_DP]
  <System32\DRIVERS\HSF_DP.sys><Conexant Systems, Inc.>
[mdmxsdk / mdmxsdk]
  <System32\DRIVERS\mdmxsdk.sys><Conexant>
[mlnxfltr / mlnxfltr]
  <system32\drivers\mlnxfltr.sys><Windows (R) 2000 DDK provider>
[MultiLINX / MultiLINX]
  <system32\drivers\mltlnx.sys><Windows (R) 2000 DDK provider>
[npkcrypt / npkcrypt]
  <\??\C:\Program Files\Tencent\QQ\npkcrypt.sys><INCA Internet Co., Ltd.>
[PADUS ASPI SHELL / pfc]
  <system32\drivers\pfc.sys><Padus, Inc.>
[Direct Parallel Link Driver / Ptilink]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20]
  <\SystemRoot\System32\DRIVERS\PxHelp20.sys><Sonic Solutions>
[Secdrv / Secdrv]
  <System32\DRIVERS\secdrv.sys><N/A>
[Sony Digital Imaging Base / sonyhcb]
  <\SystemRoot\System32\DRIVERS\sonyhcb.sys><Sony Corporation>
[Sony Digital Imaging Video / sonyhcs]
  <System32\DRIVERS\sonyhcs.sys><Sony Corporation>
[sptd / sptd]
  <\SystemRoot\System32\Drivers\sptd.sys><N/A>
[StreamDispatcher / StreamDispatcher]
  <System32\DRIVERS\strmdisp.sys><Conexant Systems, Inc.>
[VCD VNC Virtual Network Adapter / vcddev]
  <system32\DRIVERS\vcdvnic.sys><VNN B.J.>
gototop
 

==================================
Browser Add-ons
[]
  {2A4956FD-BE98-4104-ABEB-97029B3175BB} <C:\WINDOWS\system32\sys32dev.dll, N/A>
[SYM]
  {36BF6929-DCBC-4CCD-A620-C5E3BBA77B95} <C:\WINDOWS\system32\usercrd.dll, >
[SafeMe Internet Explorer Helper]
  {3AE06CEE-58A6-4F5F-AF89-6C5350842F16} <C:\WINDOWS\system32\SafeHelper12.dll, LINKMEDIA Tech>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[SSVHelper Class]
  {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll, Sun Microsystems, Inc.>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <C:\PROGRA~1\FlashGet\jccatch.dll, N/A>
[启动迅雷]
  {0062C9BD-B349-40DE-91A0-755F37ACD559} <C:\Program Files\Thunder Network\Thunder\Thunder.exe, Thunder Networking Technologies,LTD>
[F-Secure IE Shield COM button]
  {300DB664-75B5-47c0-8B45-A44ACCF73C00} <C:\Program Files\F-Secure\Anti-Spyware\ieshield.dll, F-Secure Corporation>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[]
  {e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, N/A>
[Shockwave ActiveX Control]
  {166B1BCA-3F9C-11CF-8075-444553540000} <C:\WINDOWS\system32\macromed\Director\SwDir.dll, Macromedia, Inc.>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[Cult3D ActiveX Player]
  {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} <C:\WINDOWS\System32\Cult3D\IECult.dll, Cycore AB>
[MRActivXUI Class]
  {342999A3-728D-4DF6-BB81-CDD1A743096A} <C:\WINDOWS\System32\mraxuiph.dll, >
[RdxIE Class]
  {56336BCB-3D8A-11D6-A00B-0050DA18DE71} <C:\WINDOWS\Downloaded Program Files\RdxIE.dll, RealNetworks, Inc.>
[WSDownloader Control]
  {5D9E4B6D-CD17-4D85-99D4-6A52B394EC3B} <C:\WINDOWS\DOWNLO~1\WSDOWN~1.OCX, Webshots>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\System32\wuweb.dll, Microsoft Corporation>
[MUWebControl Class]
  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <C:\WINDOWS\system32\muweb.dll, Microsoft Corporation>
[Java Plug-in]
  {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll, Sun Microsystems, Inc.>
[YahooYMailTo Class]
  {A17E30C4-A9BA-11D4-8673-60DB54C10000} <C:\PROGRA~1\Yahoo!\Common\ymmapi.dll, N/A>
[Java Plug-in]
  {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in]
  {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in]
  {CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.5.0_07]
  {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_07\bin\npjpi150_07.dll, Sun Microsystems, Inc.>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[]
  {2A4956FD-BE98-4104-ABEB-97029B3175BB} <C:\WINDOWS\system32\sys32dev.dll, N/A>
[SYM]
  {36BF6929-DCBC-4CCD-A620-C5E3BBA77B95} <C:\WINDOWS\system32\usercrd.dll, >
[SafeMe Internet Explorer Helper]
  {3AE06CEE-58A6-4F5F-AF89-6C5350842F16} <C:\WINDOWS\system32\SafeHelper12.dll, LINKMEDIA Tech>
[超级兔子上网精灵]
  {43869BB3-22FD-4F15-9B46-238106BA2F4E} <C:\PROGRA~1\SUPERR~1\MagicSet\haokanbar.dll, N/A>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Active Desktop Mover]
  {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
[SSVHelper Class]
  {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll, Sun Microsystems, Inc.>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <C:\PROGRA~1\FlashGet\jccatch.dll, N/A>
[MSN]
  {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll, N/A>
[FlashGet Bar]
  {E0E899AB-F487-11D5-8D29-0050BA6940E3} <C:\PROGRA~1\FlashGet\fgiebar.dll, Amaze Soft>
[&Block this popup]
  <C:\Program Files\F-Secure\Anti-Spyware\blockpopups.htm, N/A>
[&ê1ó???à×????]
  <, N/A>
[&ê1ó???à×????è?2?á′?ó]
  <, N/A>
[&使用迅雷下载]
  <C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[&使用迅雷下载全部链接]
  <C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[Add to QQ Customized Emoticons]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[Add to QQ Customized Panel]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[Add to QQ Emoticons]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[Add to QQ Emotions]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[E&xport to Microsoft Excel]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[Send Picture with QQ MMS]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
[Send the Picture by QQ MMS]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
[Upload to QQ Network Hard Disk]
  <C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[使用影音传送带下载]
  <C:\Program Files\Xi\NetTransport 2\NTAddLink.html, N/A>
[使用影音传送带下载全部链接]
  <C:\Program Files\Xi\NetTransport 2\NTAddList.html, N/A>
[使用网际快车下载]
  <C:\Program Files\FlashGet\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <C:\Program Files\FlashGet\jc_all.htm, N/A>
gototop
 

555,没人指点一二吗?
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT