任务管理器里面进程多了几个可疑进程,少了几个原来有的进程.
用不了杀毒程序.
扫描日志怎么发上来,这个帖子给的一个帖子的字数太少了.
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
进程特权扫描
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [(Verified)Microsoft Windows Publisher]
<SunJavaUpdateSched><"C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"> [(Verified)"Sun Microsystems, Inc."]
<IgfxTray><C:\WINDOWS\system32\igfxtray.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<HotKeysCmds><C:\WINDOWS\system32\hkcmd.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<AGRSMMSG><AGRSMMSG.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<LtMoh><C:\Program Files\ltmoh\Ltmoh.exe> [Agere Systems]
<SynTPLpr><C:\Program Files\Synaptics\SynTP\SynTPLpr.exe> [(Verified)Microsoft Windows Publisher]
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Microsoft Windows Publisher]
<SENS Keyboard V4 Launcher><"C:\Program Files\SAMSUNG\SENS Keyboard V4 Launcher\SENSKBD.EXE"> [SAMSUNG Electronics Co., Ltd.]
<RavTask><"C:\Program Files\Rising\Rav\RavTask.exe" -system> [(Verified)Beijing Rising Science and Technology Corporation Limited]
<runeip><"C:\Program Files\Rising\AntiSpyware\runiep.exe" /startup> [Beijing Rising Technology Co., Ltd.]
<fmsiocps><C:\WINDOWS\fmsiocps.exe> []
<anistio><C:\WINDOWS\anistio.exE> []
<dionpis><C:\WINDOWS\dionpis.exe> []
<isndntio><C:\WINDOWS\isndntio.exe> []
<mfchlp64><C:\WINDOWS\mfchlp64.exe> []
<nclvipnc><C:\WINDOWS\cvpcvdbk.exe> []
<fmsjhif><C:\WINDOWS\fmsjhif.exe> []
<fmsbbqi><C:\WINDOWS\fmsbbqi.exe> []
<dbhlp32><C:\WINDOWS\dbhlp32.exe> []
<tciocp64><C:\WINDOWS\tciocp64.exe> []
<hefcndy><C:\WINDOWS\hefcndy.exe> []
<ticisms><C:\WINDOWS\ticisms.exe> []
<ptshell><C:\WINDOWS\ptshell.exe> []
<huifitc><C:\WINDOWS\huifitc.exe> []
<bincdwsa><C:\WINDOWS\bincdwsa.exe> []
<fmbiost><C:\WINDOWS\fmbiost.exe> []
<dndsioc><C:\WINDOWS\dndsioc.exe> []
<yuiabct><C:\WINDOWS\yuiabct.exe> []
<WINSvr64><C:\WINDOWS\WINSvr64.exe> []
<wipicdec><C:\WINDOWS\wipicdec.exe> []
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)