中了好像是廣告毒

把SREngLOG.log...Post上來啊..

[CODE]

2007-04-08,15:22:44

System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed

Follow item(s) have been choosed:
    All Boot Items (Including Registry, Startup Folders, Services and so on)
    Browser Add-ons
    Runing Processes (Including process model information)
    File Associations
    Winsock Provider
    Autorun.Inf
    HOSTS File


Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
    <EPSON Stylus CX6900F Series><C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBKP.EXE /FU "C:\WINDOWS\TEMP\E_SAE.tmp" /EF "HKCU">  [N/A]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Publisher]
    <ISUSPM Startup><"C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup>  [Macrovision Corporation]
    <ISUSScheduler><"C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start>  [Macrovision Corporation]
    <TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot>  [RealNetworks, Inc.]
    <SoundMan><SOUNDMAN.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <DiskeeperSystray><"C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe">  [Diskeeper Corporation]
    <CloantoSoftwareManager><"C:\Program Files\Common Files\Cloanto\Software Manager\softmngr.exe" /s>  [(Verified)Cloanto Corporation]
    <NeroFilterCheck><C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe>  [Nero AG]
    <RemoteControl><"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe">  [Cyberlink Corp.]
    <LanguageShortcut><"C:\Program Files\CyberLink\PowerDVD\Language\Language.exe">  []
    <SpybotSnD><"C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe">  [(Verified)Safer Networking Ltd.]
    <avast!><C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe>  [(Verified)ALWIL Software]
    <QuickTime Task><"C:\Program Files\QuickTime\qttask.exe" -atboottime>  [Apple Computer, Inc.]
    <ppmate><C:\Program Files\PPMate\PPMate\ppmate.exe -autoplay>  [N/A]
    <UnlockerAssistant><"C:\Program Files\Unlocker\UnlockerAssistant.exe" -H>  []
    <Adobe Photo Downloader><"C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe">  [N/A]
    <RemoveWGA><C:\Documents and Settings\Ted Cheung\桌面\XP_break\XP更新破解\2\removewga1.1\RemoveWGA.exe -startup>  [N/A]
    <KernelFaultCheck><%systemroot%\system32\dumprep 0 -k>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    <WinlogonNotify: WgaLogon><WgaLogon.dll>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WRNotifier]
    <WinlogonNotify: WRNotifier><WRLogonNTF.dll>  [Webroot Software, Inc.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
    <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <DAEMON Tools><; "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033>  [N/A]
    <DiskeeperSystray><; "C:\Program Files\Executive Software\Diskeeper\DkIcon.exe">  [N/A]
    <InfoPenMSN><; C:\Program Files\InfoKing\InfoPenMSN\Pro\InfoPenIM.exe>  [N/A]
    <iTunesHelper><; C:\Program Files\iTunes\iTunesHelper.exe>  [N/A]
    <LogitechVideoRepair><; C:\Program Files\Logitech\Video\ISStart.exe>  [Logitech Inc.]
    <LogitechVideoTray><; C:\Program Files\Logitech\Video\LogiTray.exe>  [Logitech Inc.]
    <MessengerPlus3><; "C:\Program Files\MessengerPlus! 3\MsgPlus.exe">  [N/A]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <NBJ><; "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe">  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <NeroFilterCheck><; C:\WINDOWS\system32\NeroCheck.exe>  [N/A]
    <Profiler><; C:\Program Files\Saitek\Software\ProfilerU.exe>  [Saitek]
    <SaiMfd><; C:\Program Files\Saitek\Software\SaiMfd.exe>  [Saitek]
    <WinampAgent><; C:\Program Files\Winamp\winampa.exe>  []

==================================
最后编辑2007-04-08 17:46:31