1234   1  /  4  页   跳转

小女急请各位大哥救命啊~

小女急请各位大哥救命啊~

我电脑中了病毒,现在换了好几个杀毒软件都不能启动了,连强大的瑞星也启动了,小女子听人说这是被病毒修改了电脑的什么设置所致,
是不是注册表阿,哪位大哥大姐救救我啊!我不想重装系统。。。5555555555。。。。。
最后编辑2007-05-24 13:05:53
分享到:
gototop
 

是不是我起得太早了,各位还没起床阿 呵呵
着急啊!
gototop
 

引用:
【303266474的贴子】下载 System Repair Engineer,
http://www.kztechs.com/sreng/download.html
1 解压缩sreng2.zip
2 运行SREng.exe
3 智能扫描=》扫描=》保存报告
4 把日志中的报告完整拷贝贴上来,不要修改
日志一次发不完,请分次发上来
………………


一直到上述照做了,运行软件,系统提示找不到该软件
和刚一安装杀软时候问题一样,之后怎么点击也没反应。。。怎么办?
gototop
 

这是昨晚上用avg查毒的报告,目前所有杀软都不能用


+ Scan result:       



H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\NK7F034V\yieacore3[1].cab/yieacore.dll/cdnaux.dll -> Adware.Cdn : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\JXRHUTFY\yalliveex3[1].cab/yalliveex.dll -> Adware.Cdnup : Cleaned.
HKU\S-1-5-21-602162358-2049760794-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{38928D50-8A48-44C2-945F-D2F23F771410} -> Adware.CnsMin : Cleaned.
HKU\S-1-5-21-602162358-2049760794-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6671A431-5C3D-463D-A7CF-5587F9B7E191} -> Adware.Generic : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\XNK3SPQA\yaslive[1].cab/yalive.dll/Assist\yasbar.dll/sremove.exe -> Adware.Yassist : Cleaned.
F:\TK4\Taikou4.exe -> Backdoor.Agent.aas : Cleaned.
C:\Program Files\安装程序\XP_SP2_tcpPatch.exe -> Backdoor.Hupigon : Cleaned.
E:\Program Files\PPStream\xpsp2\XPSP2Patch.exe -> Backdoor.Hupigon : Cleaned.
E:\金山毒霸终身升级版\金山毒霸2006完美升级破解补丁[7月3日]\UpCrack.EXE -> Backdoor.Hupigon : Cleaned.
E:\Program Files\Super Rabbit\MagicSet\SRRest.exe -> Backdoor.Lot.ml : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\0U2OOZX3\yaskeepmain3[1].cab/yasrdd.dll -> Downloader.Baido : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\0U2OOZX3\yaskeepmain3[1].cab/yasrde.exe -> Downloader.Baido : Cleaned.
E:\Warcraft III\Tools\TFTkeygen.exe -> Dropper.PT : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@entrepreneur.122.2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@3.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@atdmt[1].txt -> TrackingCookie.Atdmt : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Cleaned.
H:\Documents and Settings\gtozhouhang\Cookies\gtozhouhang@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
H:\KAV2006.rar/KAV2006\Update.EXE -> Trojan.Agent.yy : Cleaned.
H:\KAV2006.rar/KAV2006\н¨Îļþ¼Ð\½ðɽ¶¾°Ô\Update.EXE -> Trojan.Agent.yy : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temp\16.exe -> Trojan.OnLineGames.qh : Cleaned.
H:\WINDOWS\system32\mh100.exe -> Trojan.OnLineGames.ue : Cleaned.
H:\WINDOWS\system32\nwizqjsj.exe -> Trojan.OnLineGames.ug : Cleaned.
H:\System Volume Information\_restore{9B17A8C5-1448-4E1B-863A-5B69F2B08FC7}\RP144\snapshot\MFEX-2.DAT -> Trojan.QQPass.pf : Cleaned.
H:\System Volume Information\_restore{9B17A8C5-1448-4E1B-863A-5B69F2B08FC7}\RP144\snapshot\MFEX-3.DAT -> Trojan.QQPass.pf : Cleaned.
H:\System Volume Information\_restore{9B17A8C5-1448-4E1B-863A-5B69F2B08FC7}\RP145\snapshot\MFEX-2.DAT -> Trojan.QQPass.pf : Cleaned.
H:\System Volume Information\_restore{9B17A8C5-1448-4E1B-863A-5B69F2B08FC7}\RP145\snapshot\MFEX-3.DAT -> Trojan.QQPass.pf : Cleaned.
H:\WINDOWS\system32\nwizAsktao.exe -> Trojan.WOW.qp : Cleaned.
H:\WINDOWS\system32\nwizwmsjs.exe -> Trojan.WOW.qp : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\0U2OOZX3\menu[1].js -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\0U2OOZX3\wbk9E.tmp -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\F3R0R5CM\main[1].js -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\JXRHUTFY\wbk123.tmp -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\JXRHUTFY\wbk158.tmp -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\JXRHUTFY\wbk3B0.tmp -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\JXRHUTFY\wbk419.tmp -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\JXRHUTFY\wbk422.tmp -> Worm.Fujacks.k : Cleaned.
H:\Documents and Settings\gtozhouhang\Local Settings\Temporary Internet Files\Content.IE5\XNK3SPQA\menu[3].js -> Worm.Fujacks.k : Cleaned.


虽然提示清除  可是磁盘已就不能正常打开,杀阮也不能用
对了 我电脑中的是u盘传播的

连正规杀软都干不过的病毒
一个查木马的软件没抱太大希望。。。
gototop
 

你好强啊!
开始扫瞄了!
是不是杀软也能这么运行?
gototop
 

[CODE]

2007-05-24,09:45:43

System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)

Windows XP Home Edition Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><H:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
    <usbmon><; F:\USBCleaner6.0\usbmon.exe>  [zju]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
    <run><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <ATICCC><"H:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe">  []
    <BaiduXUpdate><; "c:\Program Files\Baidu\BaiduX\MovieUpdate.exe" --Update>  [Baidu.com, Inc.]
    <cmdbcs><H:\WINDOWS\cmdbcs.exe>  []
    <mppds><H:\WINDOWS\mppds.exe>  []
    <upxdnd><H:\DOCUME~1\GTOZHO~1\LOCALS~1\Temp\upxdnd.exe>  [N/A]
    <!AVG Anti-Spyware><"H:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized>  [Anti-Malware Development a.s.]
    <rxmoefa><H:\WINDOWS\system32\shulbhs.exe>  [N/A]
    <ShStatEXE><"H:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE>  [Network Associates, Inc.]
    <McAfeeUpdaterUI><"H:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey>  [Network Associates, Inc.]
    <Network Associates Error Reporting Service><"H:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe">  [Network Associates, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><H:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <WPDShServiceObj><H:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
    <IE7 Uninstall Stub><H:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows Component Publisher]
gototop
 

启动文件夹
[百度下吧]
  <H:\Documents and Settings\All Users\「开始」菜单\程序\启动\百度下吧.lnk --> C:\PROGRA~1\Baidu\BaiduX\BaiduX.exe [Baidu Corporation]><H>

==================================
服务
[Application Management / AppMgmt][Stopped/Manual Start]
  <H:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
[ASP.NET State Service / aspnet_state][Stopped/Manual Start]
  <H:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><Microsoft Corporation>
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
  <H:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[AVG Anti-Spyware Guard / AVG Anti-Spyware Guard][Running/Auto Start]
  <H:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe><Anti-Malware Development a.s.>
[Kingsoft Personal Firewall Service / KPfwSvc][Stopped/Auto Start]
  <"H:\KAV2006\KPfwSvc.EXE"><N/A>
[Kingsoft Antivirus KWatch Service / KWatchSvc][Stopped/Auto Start]
  <H:\KAV2006\KWatch.EXE><N/A>
[Remote Packet Capture Protocol v.0 (experimental) / rpcapd][Stopped/Manual Start]
  <"H:\Program Files\WinPcap\rpcapd.exe" -d -f "H:\Program Files\WinPcap\rpcapd.ini"><N/A>
[Rising Process Communication Center / RsCCenter][Stopped/Auto Start]
  <"H:\Program Files\Rising\Rav\CCenter.exe"><N/A>
[Dell Wireless WLAN Tray Service / wltrysvc][Running/Auto Start]
  <H:\WINDOWS\System32\WLTRYSVC.EXE H:\WINDOWS\System32\bcmwltry.exe><N/A>
[Network Associates Task Manager / McTaskManager][Running/Auto Start]
  <"H:\Program Files\Network Associates\VirusScan\VsTskMgr.exe"><Network Associates, Inc.>
[Network Associates McShield / McShield][Running/Auto Start]
  <"H:\Program Files\Network Associates\VirusScan\Mcshield.exe"><Network Associates, Inc.>
[McAfee Framework 服务 / McAfeeFramework][Running/Auto Start]
  <H:\Program Files\Network Associates\Common Framework\FrameworkService.exe /ServiceStart><Network Associates, Inc.>
gototop
 

驱动程序
[AMD Processor Driver / AmdK8][Running/System Start]
  <system32\DRIVERS\AmdK8.sys><Advanced Micro Devices>
[ati2mtag / ati2mtag][Running/Manual Start]
  <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[atiide / atiide][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\atiide.sys><ATI Technologies Inc.>
[AVG Anti-Spyware Driver / AVG Anti-Spyware Driver][Running/System Start]
  <\??\H:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys><N/A>
[AVG Anti-Spyware Clean Driver / AvgAsCln][Running/System Start]
  <System32\DRIVERS\AvgAsCln.sys><GRISOFT, s.r.o.>
[DELL 无线网卡驱动程序 / BCM43XX][Stopped/Manual Start]
  <system32\DRIVERS\bcmwl5.sys><Broadcom Corporation>
[Broadcom 440x 10/100 Integrated Controller XP Driver / bcm4sbxp][Running/Manual Start]
  <system32\DRIVERS\bcm4sbxp.sys><Broadcom Corporation>
[Microsoft UAA Bus Driver for High Definition Audio / HDAudBus][Running/Manual Start]
  <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HSF_DPV / HSF_DPV][Running/Manual Start]
  <system32\DRIVERS\HSX_DPV.sys><Conexant Systems, Inc.>
[HSXHWAZL / HSXHWAZL][Running/Manual Start]
  <system32\DRIVERS\HSXHWAZL.sys><Conexant Systems, Inc.>
[KWatch3 / KWatch3][Running/System Start]
  <\??\H:\WINDOWS\system32\drivers\KWatch3.SYS><Kingsoft Corporation>
[mdmxsdk / mdmxsdk][Running/Auto Start]
  <system32\DRIVERS\mdmxsdk.sys><Conexant>
[NetGroup Packet Filter Driver / NPF][Stopped/Manual Start]
  <system32\drivers\npf.sys><Politecnico di Torino>
[npkcrypt / npkcrypt][Running/Auto Start]
  <\??\H:\WINDOWS\system32\qqedit\npkcrypt.sys><INCA Internet Co., Ltd.>
[npkcusb / npkcusb][Running/Auto Start]
  <\??\H:\WINDOWS\system32\qqedit\npkcusb.sys><INCA Internet Co., Ltd.>
[p2pfilter / p2pfilter][Stopped/Manual Start]
  <\??\C:\Program Files\NetSoft\P2POver\p2pfilter.sys><N/A>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[rimmptsk / rimmptsk][Running/Manual Start]
  <system32\DRIVERS\rimmptsk.sys><REDC>
[Secdrv / Secdrv][Running/Auto Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[SigmaTel High Definition Audio CODEC / STHDA][Running/Manual Start]
  <system32\drivers\sthda.sys><SigmaTel, Inc.>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
  <system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[Conexant Setup API / UIUSys][Stopped/Manual Start]
  <system32\DRIVERS\UIUSYS.SYS><N/A>
[winachsf / winachsf][Running/Manual Start]
  <system32\DRIVERS\HSX_CNXT.sys><Conexant Systems, Inc.>
[NaiAvFilter1 / NaiAvFilter1][Running/Manual Start]
  <system32\drivers\naiavf5x.sys><Network Associates, Inc.>
[NaiAvTdi1 / NaiAvTdi1][Stopped/System Start]
  <system32\drivers\mvstdi5x.sys><Network Associates, Inc.>
[EntDrv51 / EntDrv51][Running/Manual Start]
  <\??\H:\WINDOWS\system32\drivers\EntDrv51.sys><Network Associates, Inc>
gototop
 

浏览器加载项
[IE7pro BHO]
  {00011268-E188-40DF-A514-835FCD78B1BF} <C:\Program Files\安装程序\IE7pro0911beta中文绿色版\IE7pro0911beta\IE7pro\IE7pro.dll, IE7pro.com>
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[IE7pro ToolsExt]
  {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} <C:\Program Files\安装程序\IE7pro0911beta中文绿色版\IE7pro0911beta\IE7pro\IE7pro.dll, IE7pro.com>
[启动Web迅雷]
  {962EFB8E-2683-42d4-AC74-AAA4C759B9C6} <http://my.xunlei.com, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, TENCENT>
[MMCPlayer Class]
  {05C1004E-2596-48E5-8E26-39362985EEB9} <H:\WINDOWS\Downloaded Program Files\MMCShell.dll, Sohu.com Inc.>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <H:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[Symantec RuFSI Utility Class]
  {644E432F-49D3-41A1-8DD5-E099162EEEC5} <H:\WINDOWS\Downloaded Program Files\rufsi.dll, Symantec Corporation>
[MUWebControl Class]
  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <H:\WINDOWS\system32\muweb.dll, Microsoft Corporation>
[SysMonOCX Control]
  {9BDBC41E-C335-4263-83C0-ECE78EE28A33} <H:\WINDOWS\DOWNLO~1\SYSMON~1.OCX, AhnLab>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <H:\WINDOWS\system32\Flash9b.ocx, Adobe Systems, Inc.>
[Rising Web Scan Object]
  {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <H:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[vc Control]
  {E689D735-1487-420D-9049-16ED198FE411} <H:\WINDOWS\DOWNLO~1\vco.ocx, >
[金山毒霸在线产品升级]
  {E847C78C-C210-4195-8799-FBF3BF89797D} <H:\PROGRA~1\KOS\KOSInit.OCX, 金山软件股份有限公司>
[WebThunder Browser Helper]
  {00000AAA-A363-466E-BEF5-9BB68697AA7F} <E:\Program Files\Thunder Network\WebThunder\WebThunderBHO_016.dll, Thunder Networking Technologies,LTD>
[IE7pro BHO]
  {00011268-E188-40DF-A514-835FCD78B1BF} <C:\Program Files\安装程序\IE7pro0911beta中文绿色版\IE7pro0911beta\IE7pro\IE7pro.dll, IE7pro.com>
[WebThunder Class]
  {03507A1A-E0C5-4404-AA26-205385C0892D} <, N/A>
[MMCPlayer Class]
  {05C1004E-2596-48E5-8E26-39362985EEB9} <H:\WINDOWS\Downloaded Program Files\MMCShell.dll, Sohu.com Inc.>
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[Fade]
  {16B280C5-EE70-11D1-9066-00C04FD9189D} <H:\WINDOWS\system32\Dxtmsft.dll, Microsoft Corporation>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <H:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[EWA Control]
  {18226BF8-DC0B-4D81-80E9-A41AE37BB73A} <E:\PROGRA~1\PPLive\SYNACA~2.OCX, Synacast>
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <H:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <H:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[XML DOM Document]
  {2933BF90-7B36-11D2-B20E-00C04F983E60} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[DHTML Edit Control Safe for Scripting for IE5]
  {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <H:\WINDOWS\system32\dllcache\dhtmled.ocx, Microsoft Corporation>
[Tabular Data Control]
  {333C7BC4-460F-11D0-BC04-0080C7055A83} <H:\WINDOWS\system32\tdc.ocx, Microsoft Corporation>
[HHCtrl Object]
  {52A2AAAE-085D-4187-97EA-8C30DB990436} <H:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[Shell Name Space]
  {55136805-B2DE-11D1-B9F2-00A0C98BC547} <H:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[金山毒霸在线杀毒]
  {577A1997-6FD0-4972-B234-885DA583F9CE} <H:\PROGRA~1\KOS\KOSClean.OCX, 金山软件股份有限公司>
[PowerPlayer Control]
  {5EC7C511-CD0F-42E6-830C-1BD9882F3458} <e:\PROGRA~1\PPStream\POWERP~1.DLL, PPStream Inc.>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <H:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Symantec RuFSI Utility Class]
  {644E432F-49D3-41A1-8DD5-E099162EEEC5} <H:\WINDOWS\Downloaded Program Files\rufsi.dll, Symantec Corporation>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <H:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[MUWebControl Class]
  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <H:\WINDOWS\system32\muweb.dll, Microsoft Corporation>
[Active Desktop Mover]
  {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
[MediaComm Class]
  {7670648D-461B-42AF-BDFE-46D26AF5EFF2} <e:\Program Files\Thunder Network\WebThunder\MediaAddin12.dll, Thunder Networking Technologies,LTD>
[Microsoft Web Browser]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <H:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[SysMonOCX Control]
  {9BDBC41E-C335-4263-83C0-ECE78EE28A33} <H:\WINDOWS\DOWNLO~1\SYSMON~1.OCX, AhnLab>
[RMGetLicense Class]
  {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <H:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>
[SPlayerCtrl Class]
  {B0CE7123-982E-4A0C-A0D6-E4F32B9BAEDF} <c:\PROGRA~1\sina\STVPLA~1\STVPLA~1.DLL, 北京新浪信息技术有限公司>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[Messenger Object]
  {B69003B3-C55E-4B48-836C-BC5946FC3B28} <, N/A>
[RDS.DataSpace]
  {BD96C556-65A3-11D0-983A-00C04FC29E36} <H:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[Tencent Safety Online Base Module]
  {C09B522F-8AED-4E21-A65C-DC1AB652BAEE} <H:\WINDOWS\system32\TSOBase\TSOBase.ocx, Tencent Corporation>
[QQPlayerSvr Proxy Control]
  {CD108273-D434-43E6-AA90-1469F97EB398} <C:\Program Files\Tencent\QQ\QQPlayerProxy.dll, Tencent>
[AUDIO__MP3 Moniker Class]
  {CD3AFA76-B84F-48F0-9393-7EDC34128127} <H:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__X_MS_WMA Moniker Class]
  {CD3AFA84-B84F-48F0-9393-7EDC34128127} <H:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
  {CD3AFA94-B84F-48F0-9393-7EDC34128127} <H:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Msxml]
  {CFC399AF-D876-11D0-9C10-00C04FC99C8E} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <H:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <H:\WINDOWS\system32\Flash9b.ocx, Adobe Systems, Inc.>
[RevealTrans]
  {E31E87C4-86EA-4940-9B8A-5BD5D179A737} <H:\WINDOWS\system32\Dxtmsft.dll, Microsoft Corporation>
[Rising Web Scan Object]
  {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <H:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
[vc Control]
  {E689D735-1487-420D-9049-16ED198FE411} <H:\WINDOWS\DOWNLO~1\vco.ocx, >
[CPasswordEditCtrl Object]
  {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <H:\WINDOWS\system32\qqedit\qqedit.dll, 腾讯科技(深圳)有限公司>
[金山毒霸在线产品升级]
  {E847C78C-C210-4195-8799-FBF3BF89797D} <H:\PROGRA~1\KOS\KOSInit.OCX, 金山软件股份有限公司>
[TimwpDll.TimwpCheck]
  {ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4} <C:\PROGRA~1\Tencent\QQ\Timwp.dll, >
[XML HTTP Request]
  {ED8C108E-4349-11D2-91A4-00C04F7969E8} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[Scripting.Dictionary]
  {EE09B103-97E0-11CF-978F-00A02463E06F} <H:\WINDOWS\system32\scrrun.dll, Microsoft Corporation>
[XML DOM Document 3.0]
  {F5078F32-C551-11D3-89B9-0000F81FE221} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[Free Threaded XML DOM Document 3.0]
  {F5078F33-C551-11D3-89B9-0000F81FE221} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XML HTTP 3.0]
  {F5078F35-C551-11D3-89B9-0000F81FE221} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XSL Template 3.0]
  {F5078F36-C551-11D3-89B9-0000F81FE221} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XML DOM Document]
  {F6D90F11-9C73-11D3-B32E-00C04F990BB4} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[XML HTTP]
  {F6D90F16-9C73-11D3-B32E-00C04F990BB4} <H:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
[Install Class]
  {FADDB70B-4C98-4AF4-BE8B-A10430B7915A} <H:\Program Files\Common Files\Baidu\BaiduX\Detect.dll, Baidu Corporation>
[上传到QQ网络硬盘]
  <C:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[使用Web迅雷下载]
  <E:\Program Files\Thunder Network\WebThunder\GetUrl.htm, N/A>
[使用Web迅雷下载全部链接]
  <E:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm, N/A>
[添加到QQ自定义面板]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
[用比特精灵下载(&B)]
  <C:\Program Files\BitSpirit\bsurl.htm, N/A>
gototop
 

正在运行的进程
[PID: 544][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 592][\??\H:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 620][\??\H:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 664][H:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\AppPatch\AcAdProc.dll]  [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
    [H:\WINDOWS\system32\EntApi.dll]  [Network Associates, Inc, 8.0.0.277]
    [H:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [H:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 676][H:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\EntApi.dll]  [Network Associates, Inc, 8.0.0.277]
    [H:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [H:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 836][H:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4140]
    [H:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2503]
[PID: 848][H:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\EntApi.dll]  [Network Associates, Inc, 8.0.0.277]
    [H:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [H:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 956][H:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\EntApi.dll]  [Network Associates, Inc, 8.0.0.277]
    [H:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [H:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 1080][H:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [H:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
    [H:\WINDOWS\system32\EntApi.dll]  [Network Associates, Inc, 8.0.0.277]
[PID: 1228][H:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [H:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
    [H:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
    [H:\WINDOWS\system32\rzrznc.dll]  [N/A, ]
    [H:\WINDOWS\system32\gsompq.dll]  [N/A, ]
    [H:\WINDOWS\system32\WPDShServiceObj.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [H:\WINDOWS\system32\PortableDeviceTypes.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [H:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [H:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [c:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [H:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll]  [Anti-Malware Development a.s., 7, 5, 0, 49]
    [H:\WINDOWS\system32\msadp32.acm]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [H:\WINDOWS\system32\EntApi.dll]  [Network Associates, Inc, 8.0.0.277]
gototop
 
1234   1  /  4  页   跳转
页面顶部
Powered by Discuz!NT