瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 病毒wn.exe,首页无法修改,烦请好心人帮助!(有日志)

1   1  /  1  页   跳转

病毒wn.exe,首页无法修改,烦请好心人帮助!(有日志)

病毒wn.exe,首页无法修改,烦请好心人帮助!(有日志)

首页总是ooooos.com,现在开机有时都不行,急死人了。恳请高手相助,非常感谢!
电脑装的东西有点多,如果有其它问题也请赐教!

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\System32\ctfmon.exe>  [(Verified)Microsoft Corporation]
    <Yahoo! Pager><C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet>  [Yahoo! Inc.]
    <RealPlayer><"C:\Program Files\Real\RealOne Player\realplay.exe" /RunUPGToolCommandReBoot>  [RealNetworks, Inc.]
    <PcSync><C:\Nokia\PC 套件\Nokia PC Suite 6\PcSync2.exe /NoDialog>  [Time Information Services Ltd.]
    <pit><C:\WINDOWS\SVCHOST.EXE>  [N/A]
    <shell><"C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe">  [N/A]
    <updatereal><C:\WINDOWS\realupdate.exe other>  [N/A]
    <msnnt><C:\WINDOWS\winamph.exe>  []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <{04716C4D-04A9-2052-0708-020213200056}><"C:\Program Files\Common Files\{04716C4D-04A9-2052-0708-020213200056}\Update.exe" te-110-12-0000057>  [N/A]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><C:\WINDOWS\system\tpkIM32.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Corporation]
    <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Corporation]
    <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Corporation]
    <Mouse Suite 98 Daemon><ICO.EXE>  [N/A]
    <HKSERV.EXE><C:\Program Files\Sony\HotKey Utility\HKserv.exe>  [Sony Corporation]
    <JOGSERV2.EXE><C:\Program Files\Sony\Jog Dial Navigator\JogServ2.exe>  [Sony Corporation]
    <TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot>  [RealNetworks, Inc.]
    <RavTimeXP><C:\WINDOWS\WEB\FD.exe>  [N/A]
    <system><C:\WINDOWS\system....exe>  [N/A]
    <PCSuiteTrayApplication><C:\Nokia\PC套件~1\NOKIAP~1\LAUNCH~1.EXE -onlytray>  [Nokia]
    <QuickTime Task><"C:\Program Files\QuickTime\qttask.exe" -atboottime>  [Apple Computer, Inc.]
    <D-Link AirPlus G><C:\Program Files\D-Link\AirPlus G\AirGCFG.exe>  [D-Link]
    <ANIWZCS2Service><C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe>  [Alpha Networks Inc.]
    <autolog><>  [N/A]
    <RavTask><"C:\Program Files\rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <HPDJ Taskbar Utility><C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe>  [(Verified)HP]
    <HP Software Update><"C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe">  [Hewlett-Packard]
    <HP Component Manager><"C:\Program Files\HP\hpcoretech\hpcmpmgr.exe">  [Hewlett-Packard Company]
    <DeviceDiscovery><C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe>  [Hewlett-Packard]
    <CdnCtr><C:\Program Files\CNNIC\Cdn\cdnup.exe>  [N/A]
    <Desktop><C:\WINDOWS\System32\rundll32.exe "C:\Program Files\DeskAdTop\Run.dll" ,Rundll>  [N/A]
    <spoolsv><C:\WINDOWS\System32\spoolsv\spoolsv.exe -printer>  [广州傲讯信息科技有限公司]
    <winla><c:\winla\winla.exe>  []
    <wdfmgr32><C:\WINDOWS\System32\wdfmgr32.exe>  [N/A]
    <SOUNDM><winsmd.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    <Chfa><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <KernelFaultCheck><C:\WINDOWS\winabc3.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Corporation]
    <Userinit><userinit.exe,>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><350217M.BMP>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{B83FC273-3522-4CC6-92EC-75CC86678DA4}><>  [N/A]
    <{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll>  [Beijing Rising Technology Co., Ltd.]
    <{993B960F-A6FF-11E0-9A84-00C04FD8DBD8}><C:\WINDOWS\System32\h93b960f.log>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
最后编辑2006-11-02 17:02:34
分享到:
gototop
 

<QQHelper><C:\WINDOWS\Downloaded Program Files\jvm.dll>  [N/A]

==================================
启动文件夹
N/A

==================================
服务
[Human Interface Device Access / HidServ]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[IMAPI CD-Burning COM Service / ImapiService]
  <C:\WINDOWS\system32\imapi.exe><Microsoft Corporation>
[Network Logons / NetWorkLogons]
  <rundll32.exe KB27861012.log,start><Microsoft Corporation>
[Rising Process Communication Center / RsCCenter]
  <"C:\Program Files\rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
  <"C:\Program Files\rising\Rav\Ravmond.exe"><N/A>
[Distributed Link Tracking Server / TrkWks]
  <C:\WINDOWS\system32\svchost.exe -k netsvsc-->%SystemRoot%\system32\est.dll><Microsoft Corporation>
[Portable Media Serial Number Service / WmdmPmSN]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\System32\mspmsnsv.dll><Microsoft Corporation>
[MRTServ / MRTServ]
  <C:\WINDOWS\System32\MRTServ.exe><Microsoft Corporation>

==================================
驱动程序
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[ANIO Service / ANIO]
  <\??\C:\WINDOWS\System32\ANIO.SYS><Alpha Networks Inc.>
[Rising TDI Base Driver / BaseTDI]
  <System32\DRIVERS\BaseTDI.SYS><Beijing Rising Technology Co., Ltd.>
[cdnprot / cdnprot]
  <\SystemRoot\system32\drivers\cdnprot.sys><中国互联网络信息中心(CNNIC)>
[cdntran / cdntran]
  <system32\drivers\cdntran.sys><CNNIC>
[Sony DMI Call service / DMICall]
  <System32\DRIVERS\DMICall.sys><Sony Corporation>
[Intel(R) PRO Adapter Driver / E100B]
  <System32\DRIVERS\e100b325.sys><Intel Corporation>
[ExpScaner / ExpScaner]
  <\??\C:\Program Files\rising\Rav\ExpScan.sys><>
[Fallback / Fallback]
  <System32\DRIVERS\fallback.sys><Conexant Systems>
[Fsks / Fsks]
  <System32\DRIVERS\fsksnt.sys><Conexant Systems>
[HookCont / HookCont]
  <\??\C:\Program Files\rising\Rav\HOOKCONT.sys><Rising tech Co. ltd>
[HookReg / HookReg]
  <\??\C:\Program Files\rising\Rav\HookReg.sys><>
[HookSys / HookSys]
  <\??\C:\Program Files\rising\Rav\HookSys.sys><Rising>
[ialm / ialm]
  <System32\DRIVERS\ialmnt5.sys><Intel Corporation>
[Ich / Ich]
  <System32\DRIVERS\Ich.sys><Conexant Systems>
[jcicbhgi / jcicbhgi]
  <C:\WINDOWS\SYSTEM32\DRIVERS\jcicbhgi.SYS><中国互联网络信息中心(CNNIC)>
[K56 / K56]
  <System32\DRIVERS\k56nt.sys><Conexant Systems>
[mdmxsdk / mdmxsdk]
  <System32\DRIVERS\mdmxsdk.sys><Conexant>
[MEMSCAN / MEMSCAN]
  <\??\C:\Program Files\rising\Rav\MEMSCAN.sys><瑞星软件有限公司>
[MZU_RK / MZU_RK]
  <\??\C:\WINDOWS\System32\MZU_DRV.sys><N/A>
[Nokia USB Generic / Nokia USB Generic]
  <system32\drivers\nmwcdc.sys><Nokia>
[Nokia USB Modem / Nokia USB Modem]
  <system32\drivers\nmwcdcm.sys><Nokia>
[Nokia USB Phone Parent / Nokia USB Phone Parent]
  <system32\drivers\nmwcd.sys><Nokia>
[nrbtoe9 / nrbtoe98]
  <\SystemRoot\System32\DRIVERS\nrbtoe98.sys><N/A>
[PCANDIS5 Protocol Driver / PCANDIS5]
  <\??\C:\WINDOWS\System32\PCANDIS5.SYS><Printing Communications Assoc., Inc. (PCAUSA)>
[Direct Parallel Link Driver / Ptilink]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Rksample / Rksample]
  <System32\DRIVERS\rksample.sys><Conexant Systems>
[WAN 微型端口 (PPP over Ethernet 协议) / RMSPPPOE]
  <System32\DRIVERS\RMSPPPOE.SYS><Robert Schlabbach>
[DWL-G122(rev.B) USB Wireless LAN Driver / rt2500usb]
  <System32\DRIVERS\rt2500usb.sys><Ralink Technology Inc.>
[Secdrv / Secdrv]
  <System32\DRIVERS\secdrv.sys><N/A>
[Sony Notebook Control Device / SNC]
  <System32\DRIVERS\SonyNC.sys><Sony Corporation>
[SoftFax / SoftFax]
  <System32\DRIVERS\faxnt.sys><Conexant Systems>
[Sony USB Filter Driver (SONYPVU1) / SONYPVU1]
  <System32\DRIVERS\SONYPVU1.SYS><Sony Corporation>
[Sony Programmable I/O Control Device / SPI]
  <System32\DRIVERS\SonyPI.sys><Sony Corporation>
[Tones / Tones]
  <System32\DRIVERS\tonesnt.sys><Conexant Systems>
[V124 / V124]
  <System32\DRIVERS\v124nt.sys><Conexant Systems>
[winachsf / winachsf]
  <System32\DRIVERS\HSF_CNXT.sys><Conexant Systems>
[World Standard Teletext Codec / WSTCODEC]
  <System32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[AIM 3.0 Part 01 Codec Driver VCH-A / {A7E39B01-B403-11d4-BD18-00D0B7A1821E}]
  <system32\drivers\Vch.sys><Intel Corporation>
gototop
 

==================================
浏览器加载项
[]
  {003169BC-AB68-482F-AEA6-B51A47BDDB83} <C:\WINDOWS\system32\ATIDEMGREDEM.dll, N/A>
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[IEMonitor Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\Program Files\DeskAdTop\deskipn.dll, >
[wmpdrm]
  {0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\System32\wmpdrm.dll, Allsum Info. Tech. Ltd.>
[MyIEHelper Class]
  {16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\UserData\IEHelper_5025.dll, Microsoft Corporation>
[CdnForIE Class]
  {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[TBSB00889 Class]
  {5C908B42-EB90-44d2-9A01-0881F727F99B} <C:\PROGRA~1\ABOBEF~1\ABOBEF~1.DLL, IE Toolbar>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <E:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[AcroIEToolbarHelper Class]
  {AE7CD045-E861-484f-8273-0445EE161910} <C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll, N/A>
[888Bar]
  {C004DEC2-2623-438e-9CA2-C9043AB28508} <C:\Program Files\Common Files\{34716C4D-04A9-2052-0708-020213200056}\888Bar.dll, N/A>
[IEHlprObj Class]
  {EAACBF9E-4B91-45FF-93ED-B297093951EA} <C:\Program Files\Internet Explorer\PLUGINS\Flash_Player.dll, Adobe System>
[WMHlprObj Class]
  {F5824EFB-728A-4726-A5A5-85A68B20EDC3} <C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll, CNNIC>
[手机短信]
  {00000000-0000-0001-0001-596BAEDD1289} <http://sms.3721.com/ie/index.htm?pid=200, N/A>
[]
  {2499216C-4BA5-11D5-BD9C-000103C116D5} <C:\Program Files\Yahoo!\Common\ylogin.dll, Yahoo! Inc.>
[]
  {4528BBE0-4E08-11D5-AD55-00010333D0AD} <C:\Program Files\Yahoo!\Messenger\yhexbmes1107_2.dll, Yahoo! Inc.>
[Yahoo 1G电邮]
  {507F9113-CD77-4866-BA92-0E86DA3D0B97} <http://cn.mail.yahoo.com/promo/rd1, N/A>
[CdnForIE Class]
  {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[上网助手]
  {5D73EE86-05F1-49ed-B850-E423120EC338} <http://assistant.3721.com/index.htm?fb=Cns, N/A>
[CibaCtrl Class]
  {8DE0FCD4-5EB5-11D3-AD25-00002100131B} <C:\PROGRA~1\KINGSO~1\Setup\IEPlugin.dll, >
[金山毒霸网站]
  {ABFC18BB-ED0C-425d-9EF4-42624205BBA4} <url:http://www.iduba.net, N/A>
[JoyoCtrl Class]
  {C8CE29C5-7589-11D3-B81B-0080C8DC5DC8} <C:\PROGRA~1\KINGSO~1\Setup\IEPlugin.dll, >
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, N/A>
[FlashGet]
  {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <E:\PROGRA~1\FLASHGET\JETCAR.EXE, Amaze Soft>
[情景聊天]
  {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/, N/A>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\MSMSGS.EXE, Microsoft Corporation>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINDOWS\System32\msdxm.ocx, Microsoft Corporation>
[IE伴郎]
  {B225B89D-5E95-4194-98E8-149993071B31} <C:\PROGRA~1\NETMEE~1\CALLCO~1.DLL, 5522 Soft>
[Adobe PDF]
  {47833539-D0C5-4125-9FA8-0819E2EAAC93} <C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll, N/A>
[888Bar]
  {C004DEC2-2623-438e-9CA2-C9043AB28508} <C:\Program Files\Common Files\{34716C4D-04A9-2052-0708-020213200056}\888Bar.dll, N/A>
[Abobe Flash Play9]
  {BD328E49-38AB-42CB-8EEA-73AA4CD2A6FD} <C:\Program Files\Abobe Flash Play9\Abobe Flash Player 9.dll, IE Toolbar>
[MMCPlayer Class]
  {05C1004E-2596-48E5-8E26-39362985EEB9} <C:\WINDOWS\Downloaded Program Files\MMCShell.dll, Sohu.com Inc.>
[Update Class]
  {9F1C11AA-197B-4942-BA54-47A8489BB47F} <C:\WINDOWS\System32\iuctl.dll, Microsoft Corporation>
[YahooYMailTo Class]
  {A17E30C4-A9BA-11D4-8673-60DB54C10000} <C:\WINDOWS\Downloaded Program Files\ymmapi.dll, Yahoo! Inc.>
[Ppinstall Control]
  {CF051549-EDE1-40F5-B440-BCD646CF2C25} <C:\WINDOWS\DOWNLO~1\PPINST~1.OCX, 网易 NetEase>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
[MultiDist]
  {FC87A650-207D-4392-A6A1-82ADBC56FA64} <C:\WINDOWS\DOWNLO~1\MulDist.ocx, N/A>
[使用网际快车下载]
  <E:\Program Files\FlashGet\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <E:\Program Files\FlashGet\jc_all.htm, N/A>
[添加到QQ自定义面板]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
[访问通用网址]
  <C:\Program Files\CNNIC\Cdn\cnnic.htm, N/A>

==================================
正在运行的进程
[PID: 788][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 836][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 864][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 916][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.1_x-ww_8d353f14\gdiplus.dll]  [Microsoft Corporation, 5.1.3100.0 (xpclnt_qfe.010827-1803)]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 928][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1128][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1216][C:\Program Files\rising\Rav\CCenter.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 1240][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\shell32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\System32\winhttp.dll]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1476][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 1512][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1744][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.0 (XPClient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\AdobePDF.dll]  [Adobe Systems Incorporated., 6.0.000]
    [C:\Program Files\Adobe\Acrobat 6.0\Distillr\adistres.dll]  [Adobe Systems Incorporated., 6.0.0.2003051500]
    [C:\WINDOWS\system32\hpzsnt09.dll]  [HP, 2.236.4.0]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1892][C:\Program Files\rising\Rav\RavStub.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 16]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[PID: 360][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
gototop
 

[PID: 388][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [c:\windows\system32\est.dll]  [Microsoft Corporation, 5.2.2600.2180]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
[PID: 1360][C:\Program Files\CNNIC\Cdn\cdnup.exe]  [, 2, 4, 0, 10]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdntdns.dll]  [CNNIC, 2, 2, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 428][C:\Program Files\Sony\HotKey Utility\HKserv.exe]  [Sony Corporation, Version 2.3.00.01301]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Sony\HotKey Utility\HKRes.dll]  [Sony Corporation, Version 2.1.01.08140]
    [C:\Program Files\Common Files\Sony Shared\Jog Dial Utility\JogDial.dll]  [Sony Corporation, 7, 0, 1, 2140]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  [Sony Corporation, 2.4.00.12040]
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  [Sony Corporation, 4.02.8170]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 192][C:\Program Files\Sony\Jog Dial Navigator\JogServ2.exe]  [Sony Corporation, 7, 0, 2, 3050]
    [C:\Program Files\Sony\Jog Dial Navigator\ComCenter.dll]  [Sony Corporation, 1, 0, 1, 2140]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Sony\Jog Dial Navigator\JogLocale.dll]  [Sony, 1, 0, 2, 4050]
    [C:\Program Files\Sony\Jog Dial Navigator\StateMgr.dll]  [Sony Corporation, 1, 0, 2, 4030]
    [C:\Program Files\Sony\Jog Dial Navigator\View.dll]  [Sony Corporation, 1, 0, 2, 4040]
    [C:\Program Files\Sony\Jog Dial Navigator\TrayIcon.dll]  [Sony Corporation, 1, 0, 1, 2140]
    [C:\Program Files\Sony\Jog Dial Navigator\Remocon.dll]  [Sony Corporation, 1, 0, 1, 2260]
    [C:\Program Files\Sony\Jog Dial Navigator\Sound.dll]  [Sony Corporation, 1, 0, 1, 2140]
    [C:\Program Files\Sony\Jog Dial Navigator\Indctr.dll]  [Sony Corporation, 1, 0, 2, 4040]
    [C:\Program Files\Sony\Jog Dial Navigator\Setting.dll]  [Sony Corporation, 1, 0, 2, 3050]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  [Sony Corporation, 2.4.00.12040]
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  [Sony Corporation, 4.02.8170]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 284][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  [RealNetworks, Inc., 0.1.0.1622]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 996][C:\Nokia\PC套件~1\NOKIAP~1\LAUNCH~1.EXE]  [Nokia, 6, 70, 41, 5]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\System32\ConnAPI.DLL]  [Nokia., 6, 70, 39, 5]
    [C:\Nokia\PC套件~1\NOKIAP~1\PCSCM.dll]  [Nokia, 6, 70, 58, 3]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Common Files\PCSuite\ConfServer\ConfServer.dll]  [Nokia, 6, 70, 14, 1]
    [C:\WINDOWS\System32\MSXML4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Nokia\PC套件~1\NOKIAP~1\Lang\LaunchApplication_chi-sc.NLR]  [Nokia, 6, 70, 31, 1]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 1380][C:\Program Files\QuickTime\qttask.exe]  [Apple Computer, Inc., 6.5]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 1404][C:\Program Files\D-Link\AirPlus G\AirGCFG.exe]  [D-Link, 3, 3, 1, 50422]
    [C:\WINDOWS\System32\wlanapi.dll]  [Alpha Networks Inc., 1, 3, 21, 50328]
    [C:\WINDOWS\System32\ANIOApi.dll]  [Alpha Networks Inc., 2, 0, 0, 40127]
    [C:\WINDOWS\System32\AQCKGen.dll]  [Alpha Networks Inc., 1, 0, 0, 30603]
    [C:\WINDOWS\System32\WlanApp.dll]  [Alpha Networks Inc., 1, 0, 10, 50322]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\D-Link\AirPlus G\WlanMon.dll]  [D-Link, 3, 3, 1, 50324]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2076][C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE]  [Nokia., 6, 70, 45, 1]
    [C:\WINDOWS\system32\NclTools.dll]  [Nokia., 6, 70, 12, 0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLIrDAMM.dll]  [Nokia Corp., 6, 70, 20, 1]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLRSMM.dll]  [Nokia, 6, 70, 30, 0]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLUSBMM.dll]  [Nokia, 6, 70, 32, 1]
    [C:\Program Files\Common Files\PCSuite\Services\NclDS.dll]  [Nokia, 6, 70, 9, 0]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2264][C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe]  [Alpha Networks Inc., 1, 0, 6, 41216]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\ANIWZCS2.DLL]  [Alpha Networks Inc., 2, 4, 14, 50421]
    [C:\WINDOWS\System32\AQCKGen.dll]  [Alpha Networks Inc., 1, 0, 0, 30603]
    [C:\WINDOWS\System32\ANIOApi.dll]  [Alpha Networks Inc., 2, 0, 0, 40127]
    [C:\WINDOWS\System32\WlanApp.dll]  [Alpha Networks Inc., 1, 0, 10, 50322]
    [C:\WINDOWS\System32\wlanapi.dll]  [Alpha Networks Inc., 1, 3, 21, 50328]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2320][C:\Program Files\rising\Rav\RavTask.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 22]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [C:\Program Files\rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 11]
    [C:\Program Files\rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
gototop
 

[PID: 2364][C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe]  [HP, 2.236.4.0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\spool\drivers\w32x86\3\HPZR3209.dll]  [HP, 2.236.4.0]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2380][C:\Program Files\rising\Rav\Ravmon.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 1, 33]
    [C:\Program Files\rising\Rav\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 26]
    [C:\Program Files\rising\Rav\BWList.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 19]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [C:\Program Files\rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 11]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\rising\Rav\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2396][C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe]  [Hewlett-Packard, 1, 0, 0, 2]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2424][C:\Program Files\HP\hpcoretech\hpcmpmgr.exe]  [Hewlett-Packard Company, 2.1.1]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\HP\hpcoretech\HPVCR70.dll]  [Microsoft Corporation, 7.00.9466.0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\WINDOWS\System32\MSXML4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2456][C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe]  [Hewlett-Packard, 1, 0, 0, 1]
    [C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpodvd08.dll]  [Hewlett-Packard, 2, 0, 2, 2]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxm08.dll]  [Hewlett-Packard Co., 4.2.0.127]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2564][C:\WINDOWS\System32\rundll32.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\Run.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
[PID: 2636][C:\WINDOWS\command\rundll32.exe]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\c99xop.dll]  [N/A, N/A]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 3140][C:\WINDOWS\System32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
[PID: 3312][C:\Nokia\PC 套件\Nokia PC Suite 6\PcSync2.exe]  [Time Information Services Ltd., 2.00 (467)]
    [C:\Nokia\PC 套件\Nokia PC Suite 6\PCSCM.dll]  [Nokia, 6, 70, 58, 3]
    [C:\WINDOWS\System32\ConnAPI.DLL]  [Nokia., 6, 70, 39, 5]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Nokia\PC 套件\Nokia PC Suite 6\PCSL.dll]  [Nokia, 6, 70, 4, 0]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\NOKIA\PC 套件\NOKIA PC SUITE 6\Lang\PcSync2_chi-sc.nlr]  [Time Information Services Ltd., 8.00 (467)]
    [C:\NOKIA\PC 套件\NOKIA PC SUITE 6\Resource\PcSync2_Nokia.ngr]  [Time Information Services Ltd., 8.00 (467)]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Common Files\Nokia\Adapters\NclSet.dll]  [Nokia, 6.70.9.0]
    [C:\Program Files\Common Files\Nokia\Adapters\Nclaeo.dsc]  [Nokia Mobile Phones Ltd., 4.00.008]
    [C:\Program Files\Common Files\Nokia\MPAPI\MPAPIps.dll]  [Nokia Corporation, 6.70.73.0]
    [C:\Program Files\Common Files\PCSuite\ConfServer\ConfServer.dll]  [Nokia, 6, 70, 14, 1]
    [C:\WINDOWS\System32\MSXML4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Nokia\PC 套件\Nokia PC Suite 6\CommonSelectDevice.dll]  [Nokia, 6, 70, 65, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
gototop
 

[PID: 3368][C:\WINDOWS\SVCHOST.EXE]  [N/A, N/A]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\krnln.fnr]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\shell.fne]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\shellEx.fne]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\EThread.fne]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\internet.fne]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\MyLib.fne]  [, 1, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 3520][C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Yahoo!\Messenger\res_msgr.dll]  [Yahoo! Inc., 4, 0, 0, 961]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 4024][C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe]  [Nokia Corporation, 6.70.161.0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Common Files\Nokia\MPAPI\MPAPIps.dll]  [Nokia Corporation, 6.70.73.0]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 3924][C:\WINDOWS\System32\conime.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2436][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Common Files\Microsoft Shared\MSInfo\ms993b96.dll]  [N/A, N/A]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\vb5chs.dll]  [Microsoft Corporation, 05.00.4319 (SP2)]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
[PID: 5040][C:\WINDOWS\System32\MRTServ.exe]  [Microsoft Corporation, 1.18.1507.0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 4092][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\WINDOW~3\wmpband.dll]  [Microsoft Corporation, 9.00.00.2980]
    [C:\WINDOWS\Downloaded Program Files\ymmapi.dll]  [Yahoo! Inc., 2001, 11, 14, 1]
    [C:\Program Files\Adobe\Acrobat 6.0\Acrobat Elements\ContextMenu.dll]  [Adobe Systems Inc., 1.0.0.2003051500]
    [C:\WINDOWS\Downloaded Program Files\jar1.4.2.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 21]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\as.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\bm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\bse.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\lup.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\navangel.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\h93b960f.log]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [E:\PROGRA~1\FLASHGET\jccatch.dll]  [Amaze Soft, 1, 1, 3, 0]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[PID: 3500][C:\Documents and Settings\viviantxy\桌面\sreng2\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
gototop
 

文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
61.135.150.114 www.8000qq.com
61.135.150.114 www.800f.net
61.135.150.114 www.1000sf.cn
61.135.150.114 jfengsha.comfb
61.135.150.114 www.1000yf.net
61.135.150.114 www.159sifu.com
61.135.150.114 www.9s5.cn
61.135.150.114 www.spbuy.net
61.135.150.114 www.wym.cn
61.135.150.114 www.cc4f.cn
61.135.150.114 mafan.net
61.135.150.114 www.6688qn.net
61.135.150.114 www.177z.com
61.135.150.114 www.131sf.net
61.135.150.114 tj.cntg.cn
61.135.150.114 www.spbuy.net
61.135.150.114 www.china45.net
61.135.150.114 www.ok22.com
61.135.150.114 www.17mi.net
61.135.150.114 www.sf8.com.cn
61.135.150.114 www.13177.com
61.135.150.114 ip94.fd4f.com
61.135.150.114 www.521it.net
61.135.150.114 www.ytdj.cn
61.135.150.114 www.fwoool.cn
61.135.150.114 www.5u37.net
61.135.150.114 www.87sf.com
61.135.150.114 ww1.swoool.com
61.135.150.114 wooljsz.cn
61.135.150.114 www.57wool.com
61.135.150.114 www.58816.com
61.135.150.114 www.spbuy.net
61.135.150.114 chuanqisjsf.blwool.com
61.135.150.114 www.woool188.com
61.135.150.114 www.sf1260.com
61.135.150.114 linf23.b12.cnwg.cn
61.135.150.114 www.wooolweb.com
61.135.150.114 www.yq520.net
61.135.150.114 www.cs222.com
61.135.150.114 www.ok22.com
61.135.150.114 www.7100sf.com
61.135.150.114 www.1352sf.com
61.135.150.114 www.458wool.cn
61.135.150.114 www.555woool.cn
61.135.150.114 www.kaosf.com
61.135.150.114 www.siyuwl.com
61.135.150.114 www.csjsz.cn
61.135.150.114 www.13177.com
61.135.150.114 www.458cs.com
61.135.150.114 www.5573.com
61.135.150.114 www.02945.com
61.135.150.114 www.pkchina.net
61.135.150.114 www.5181314.com
61.135.150.114 www.fknf2.com
61.135.150.114 www2.yoursf.com
61.135.150.114 www.paocs.com
61.135.150.114 www.sfboke.com
61.135.150.114 www.tt878.com
61.135.150.114 ww1.woool188.com
61.135.150.114 www.cs119.com
61.135.150.114 www.xdwoool.net
61.135.150.114 www.tt515.com
61.135.150.114 www.cs176.com
61.135.150.114 www.552sf.com
61.135.150.114 www.ipmir.com
61.135.150.114 www.898woool.com
61.135.150.114 www.qqks.com
61.135.150.114 www.368idc.com
61.135.150.114 www.csbaba.com
61.135.150.114 www.4745.cn
61.135.150.114 www.636400.com
61.135.150.114 www.oursf.cn
61.135.150.114 www.laiba173.com
61.135.150.114 www.14455.com
61.135.150.114 www.zheshan.net
61.135.150.114 zt.aaaaasf.cn
61.135.150.114 www.zt1314.cn
61.135.150.114 www.zt4f.net
61.135.150.114 www.zt002.com
61.135.150.114 www.amir3.com
61.135.150.114 www.sf1717.com
61.135.150.114 www.cq333.cn
61.135.150.114 www.3316.cn
61.135.150.114 www.sosmir3.com
61.135.150.114 www.95279.com
61.135.150.114 www.sf1788.com
61.135.150.114 www.4fboss.com
61.135.150.114 www.45net.net
61.135.150.114 www.ytdj.cn
61.135.150.114 www.laiba173.com
61.135.150.114 www.wow1314.com
61.135.150.114 www.zgwow.com
61.135.150.114 www.1000wow.net
61.135.150.114 www.gowowsf.com
61.135.150.114 www.wowsf.com
61.135.150.114 www.wxwow.com
61.135.150.114 520.xinwow.com
61.135.150.114 www.wowhelp.cn
61.135.150.114 www.800wow.com
61.135.150.114 www.56wow.com
61.135.150.114 www.45wow.com
61.135.150.114 www.sfhao123.net
61.135.150.114 www.lian2.cn
61.135.150.114 www.14455.com
61.135.150.114 www.sfgoogle.cn
61.135.150.114 www.45top.com
61.135.150.114 www.915mu.com
61.135.150.114 www.gm911.net
61.135.150.114 www.4000mu.com
61.135.150.114 www.99musf.com
61.135.150.114 www.mu45.com
61.135.150.114 www.369mu.com
61.135.150.114 www.525sf.com
61.135.150.114 www.2345w.com
61.135.150.114 www.3jsf.net
61.135.150.114 www.ttfsf.com
61.135.150.114 www.521ee.com
61.135.150.114 www.997j.com
61.135.150.114 www.wz4f.net
61.135.150.114 www.hott2.com
61.135.150.114 www.398q.com
61.135.150.114 www.tt1314.com
61.135.150.114 www.tt2sf.net
61.135.150.114 www.sifu114.com
61.135.150.114 www.2z2.cn
61.135.150.114 www.haosf.com
61.135.150.114 www.cqsf999.com
61.135.150.114 www.zhaosf.com
61.135.150.114 www.920666.com
61.135.150.114 www.450666.com
61.135.150.114 www.3000ok.com
61.135.150.114 www.3000ok.net
61.135.150.114 www.sf001.com
61.135.150.114 www.92045.com
61.135.150.114 www.45bang.com
61.135.150.114 www.30ok.com
61.135.150.114 www.cqsf999.com
61.135.150.114 www.sf123.com
61.135.150.114 www.sf920.com
61.135.150.114 www.99945.com
61.135.150.114 www.176sf.com
61.135.150.114 www.mir2mir2.com
61.135.150.114 www.33520.com
61.135.150.114 www.xp13.com
61.135.150.114 www.45yes.com
61.135.150.114 www.920666.com
61.135.150.114 www.450666.com
61.135.150.114 www.92095.com
61.135.150.114 www.17ww.com
61.135.150.114 www.4000sf.com
61.135.150.114 www.haouc.com
61.135.150.114 www.921uc.com
61.135.150.114 17126.uc999.com
61.135.150.114 www.45pao.com
61.135.150.114 www.177g.com
61.135.150.114 www.95217.com
61.135.150.114 www.2345sf.com
gototop
 

请求帮助!自己顶!
gototop
 

非常非常感谢!已经得到解决,现在的问题是有个什么"快搜"卸载不了,每次上网时还会弹出其它网页,并且明显C盘根目录下有新增病毒,不知道怎么办,还是请求支援!
再次感谢!
gototop
 

不好意思,现在问题大了,我刚想按照你说的做,但发现开不了机了,显示ntldr is missing。晕!怎么办呢?谢谢!
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT