楼主: ccdqsb
收起左侧

请高手帮忙,卡巴杀不了的病毒!

[复制链接]
ccdqsb
 楼主| 发表于 2007-7-16 11:38:54 | 显示全部楼层
启动文件夹
[服务管理器]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\服务管理器.lnk --> C:\PROGRA~1\MI6841~1\80\Tools\Binn\sqlmangr.exe [Microsoft Corporation]><N>
[QQ游戏启动加速程序]
  <C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk --> C:\PROGRA~1\Tencent\QQGAME\Accel.exe [深圳市腾讯计算机系统有限公司]><N>
==================================
服务
[Adobe LM Service / Adobe LM Service][Stopped/Manual Start]
  <"C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
  <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[Autodesk Licensing Service / Autodesk Licensing Service][Running/Manual Start]
  <"C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe"><Autodesk>
[Kaspersky Internet Security 6.0 / AVP][Running/Auto Start]
  <"C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" -r><Kaspersky Lab>
[EPSON Printer Status Agent2 / EPSONStatusAgent2][Running/Auto Start]
  <C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe><SEIKO EPSON CORPORATION>
[HASP Loader / HASP Loader][Running/Auto Start]
  <C:\WINDOWS\system32\nhsrvice.exe -service><Aladdin Knowledge Systems Ltd.>
[Hard Disk Guard Service / HDGuardSrv][Running/Auto Start]
  <C:\Program Files\Intel\Intel Platform Administrator Client\HDGuard\hdsrv.exe><N/A>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[Macromedia Licensing Service / Macromedia Licensing Service][Stopped/Manual Start]
  <"C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><>
[Microsoft Search / MSSEARCH][Running/Auto Start]
  <"C:\Program Files\Common Files\System\MSSearch\Bin\mssearch.exe"><Microsoft Corporation>
[MSSQL$ENGINEERING_BASE / MSSQL$ENGINEERING_BASE][Running/Auto Start]
  <C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\sqlservr.exe -sENGINEERING_BASE><Microsoft Corporation>
[MSSQLServerADHelper / MSSQLServerADHelper][Stopped/Manual Start]
  <C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe><Microsoft Corporation>
[Intel(R) Platform Administrator Client - OS Client Service / OS Client Service][Stopped/Auto Start]
  <C:\Program Files\Intel\Intel Platform Administrator Client\Service\OSAgent.exe><Intel>
[SQLAgent$ENGINEERING_BASE / SQLAgent$ENGINEERING_BASE][Stopped/Manual Start]
  <C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\sqlagent.exe -i ENGINEERING_BASE><Microsoft Corporation>
==================================
驱动程序
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[adsight / adsight][Running/Manual Start]
  <System32\DRIVERS\adsight.sys><Intel Corporation>
[Aladdin HASP Key / akshasp][Stopped/Manual Start]
  <system32\DRIVERS\akshasp.sys><Aladdin Knowledge Systems Ltd.>
[Aladdin USB Key / aksusb][Stopped/Manual Start]
  <system32\DRIVERS\aksusb.sys><Aladdin Knowledge Systems Ltd.>
[AliIde / AliIde][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
[AMD K8 Processor Driver / AmdK8][Stopped/Manual Start]
  <System32\DRIVERS\amdk8.sys><Advanced Micro Devices>
[ADMtek AN983/AN985/ADM951X 10/100Mbps Fast Ethernet Adapter / AN983][Running/Manual Start]
  <system32\DRIVERS\AN983.sys><ADMtek Incorporated.>
[ati2mtag / ati2mtag][Running/Manual Start]
  <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[AVW98MON / AVW98MON][Stopped/Manual Start]
  <\??\C:\PROGRA~1\AVW98\AVW98MON.SYS><N/A>
[CmdIde / CmdIde][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
[Intel(R) PRO Network Connection Driver / E100B][Running/Manual Start]
  <system32\DRIVERS\e100b325.sys><Intel Corporation>
[fcdabus / fcdabus][Running/Manual Start]
  <system32\DRIVERS\fcdabus.sys><FarStone Inc.>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start]
  <system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[RamDisk Drive Service / fsRamDsk][Running/Manual Start]
  <System32\Drivers\fsRamDsk.sys><FarStone>
[FVDSCSI / FVDSCSI][Running/Manual Start]
  <system32\DRIVERS\fvdscsi.sys><FarStone Inc.>
[Hardlock / Hardlock][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\hardlock.sys><Aladdin Knowledge Systems Ltd.>
[Microsoft UAA Bus Driver for High Definition Audio / HDAudBus][Running/Manual Start]
  <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HardDisk guard driver / hdguard][Running/Boot Start]
  <\SystemRoot\System32\DRIVERS\hdguard.sys><Intel>
[kl1 / kl1][Running/Boot Start]
  <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
[klif / klif][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[npkcrypt / npkcrypt][Running/Auto Start]
  <\??\D:\QQ2007\npkcrypt.sys><INCA Internet Co., Ltd.>
[nv / nv][Stopped/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[PDEM SECURITY / PDEM SECURITY][Running/Auto Start]
  <\??\d:\Program Files\CAXA\CaxaVaultClient\pdemsecu.sys><cimsGL>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
  <\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><N/A>
[Sense3 / Sense3][Running/Auto Start]
  <System32\Drivers\sense3.sys><Beijing Senselock>
[Sonic Focus Plugin for Sigmatel HDA / sfng32][Running/Manual Start]
  <system32\drivers\sfng32.sys><Sonic Focus, Inc>
[SmiTrig / SmiTrig][Running/System Start]
  <System32\drivers\SmiTrig.sys><N/A>
[Sony USB Filter Driver (SONYPVU1) / SONYPVU1][Stopped/Manual Start]
  <system32\DRIVERS\SONYPVU1.SYS><Sony Corporation>
[SigmaTel High Definition Audio CODEC / STHDA][Running/Manual Start]
  <system32\drivers\sthda.sys><SigmaTel, Inc.>
[TSP / TSP][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[Usblink Driver / Usblink][Stopped/Manual Start]
  <System32\Drivers\ulink.sys><>
[Motorola USB Modem Driver for MPT / usbsermpt][Stopped/Manual Start]
  <system32\DRIVERS\usbsermpt.sys><Microsoft Corporation>
[VMware Pointing Device / vmmouse][Running/Manual Start]
  <system32\DRIVERS\vmmouse.sys><VMware, Inc.>
ccdqsb
 楼主| 发表于 2007-7-16 11:42:32 | 显示全部楼层
正在运行的进程
[PID: 708 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 784 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 812 / SYSTEM][\??\C:\WINDOWS\SYSTEM32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\SYSTEM32\Ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4158]
    [C:\WINDOWS\system32\klogon.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\WINDOWS\SYSTEM32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 856 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\AppPatch\AcAdProc.dll]  [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 868 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1020 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4158]
    [C:\WINDOWS\system32\HANWANGP.IME]  [HanWang Corporation, 4.00.950]
    [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2510]
    [C:\WINDOWS\system32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2515]
[PID: 1036 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1152 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1272 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
[PID: 1336 / SYSTEM][C:\WINDOWS\SYSTEM32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4158]
    [C:\WINDOWS\system32\HANWANGP.IME]  [HanWang Corporation, 4.00.950]
    [C:\WINDOWS\SYSTEM32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2510]
    [C:\WINDOWS\SYSTEM32\atipdlxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2515]
    [C:\WINDOWS\SYSTEM32\ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4158]
[PID: 1340 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1488 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
[PID: 1680 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
    [C:\WINDOWS\system32\EBPMON2.DLL]  [SEIKO EPSON CORPORATION, 2, 16, 0, 0]
    [C:\WINDOWS\system32\hpbmmon.dll]  [Hewlett-Packard, 10.00.14]
    [C:\WINDOWS\system32\hpdomon.dll]  [Hewlett-Packard, 03.42.00]
    [C:\WINDOWS\system32\HPBHealr.dll]  [N/A, ]
    [C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\hpltuint.dll]  [Hewlett-Packard Corporation, Microsoft Corporation, v4.67]
    [C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPBF252E.DLL]  [Hewlett-Packard Company, 4.20.0.400]
[PID: 1808 / SYSTEM][C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe]  [SEIKO EPSON CORPORATION, 2, 1, 0, 0]
    [C:\WINDOWS\system32\EBAPI2.DLL]  [SEIKO EPSON CORPORATION, 1, 3, 0, 0]
    [C:\Program Files\Common Files\EPSON\EBAPI\EBPLPT.DLL]  [SEIKO EPSON CORPORATION, 2, 16, 0, 0]
[PID: 1944 / SYSTEM][C:\WINDOWS\system32\nhsrvice.exe]  [Aladdin Knowledge Systems Ltd., 8.31]
    [C:\WINDOWS\system32\HANWANGP.IME]  [HanWang Corporation, 4.00.950]
[PID: 208 / SYSTEM][C:\Program Files\Intel\Intel Platform Administrator Client\HDGuard\hdsrv.exe]  [N/A, ]
[PID: 304 / SYSTEM][C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\sqlservr.exe]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\OPENDS60.DLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\UMS.DLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\SQLSORT.DLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\Resources\2052\sqlevn70.RLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\SSNETLIB.dll]  [Microsoft Corporation, 2000.080.0311.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\SSNMPN70.dll]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\SQLFTQRY.DLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\PROGRA~1\Aucotec\ENGINE~1\MICROS~1\80\MSSQL$~1\binn\SSmsLPCn.dll]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\Common Files\System\Ole DB\sqloledb.dll]  [Microsoft Corporation, 2000.085.1117.00 (xpsp_sp2_rtm.040803-2158)]
[PID: 608 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 656 / SYSTEM][C:\Program Files\Common Files\System\MSSearch\Bin\mssearch.exe]  [Microsoft Corporation, 9.107.5512.0]
    [C:\Program Files\Common Files\System\MSSearch\Bin\mssws.dll]  [Microsoft Corporation, 9.107.5512.0]
    [C:\PROGRA~1\COMMON~1\System\MSSearch\Bin\mssrch.dll]  [Microsoft Corporation, 9.107.5512.0]
    [C:\Program Files\Common Files\System\MSSearch\Bin\tquery.dll]  [Microsoft Corporation, 9.107.5512.0]
    [C:\PROGRA~1\COMMON~1\System\MSSearch\Bin\propdefs.dll]  [Microsoft Corporation, 9.107.5512.0]
    [C:\PROGRA~1\COMMON~1\System\MSSearch\Bin\srchidx.dll]  [Microsoft Corporation, 9.107.5512.0]
[PID: 1000 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 548 / Administrator][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\AcSignIcon.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 17.0.54.110]
    [C:\WINDOWS\system32\WPDShServiceObj.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\WINDOWS\system32\PortableDeviceTypes.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1168 / Administrator][C:\Program Files\360safe\safemon\360tray.exe]  [奇虎网, 3, 5, 2, 1001]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\Program Files\360safe\safemon\SafeKrnl.dll]  [奇虎网, 3, 5, 0, 1001]
    [C:\Program Files\360safe\AntiAdwa.dll]  [360Safe.com, 3, 5, 1, 1001]
    [C:\Program Files\360safe\live.dll]  [360safe.com, 1, 0, 1, 1017]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
[PID: 492 / Administrator][C:\Program Files\Picasa2\PicasaMediaDetector.exe]  [Google Inc., 2.7.36.40]
[PID: 500 / Administrator][C:\Program Files\Intel\Intel Platform Administrator Client\HDGuard\configure.exe]  [Intel, 1.0.0.1]
    [C:\Program Files\Intel\Intel Platform Administrator Client\HDGuard\Configure2CHN.dll]  [Intel, 1.0.0.1]
[PID: 696 / Administrator][C:\WINDOWS\system32\Wscript.exe]  [Microsoft Corporation, 5.6.0.8820]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
[PID: 444 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1052 / Administrator][C:\Program Files\MSN Messenger\MsnMsgr.Exe]  [Microsoft Corporation, 7.5.0311]
    [C:\Program Files\MSN Messenger\msidcrl.dll]  [Microsoft Corp., 3.110.0017.0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\Program Files\MSN Messenger\MSGSLANG.DLL]  [Microsoft Corporation, 7.5.0311]
    [C:\Program Files\MSN Messenger\custsat.dll]  [Microsoft Corporation, 9.0.3790.2428 (srv03_sp1_qfe.050422-1043)]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
[PID: 2532 / Administrator][C:\Program Files\Microsoft Chinese Date & Time\ICalClk.exe]  [Microsoft Corporation, 1.0.0129.0]
[PID: 832 / Administrator][C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\W95SCM.dll]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\SQLSVC.dll]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\WINDOWS\system32\odbcbcp.dll]  [Microsoft Corporation, 2000.085.1117.00 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\SQLRESLD.dll]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\Resources\2052\SQLSVC.RLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\Resources\2052\sqlmangr.RLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
[PID: 3944 / Administrator][C:\Program Files\qijian\qj\QJL1.exe]  [上海乾隆高科技有限公司, 5, 68, 0, 0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
[PID: 456 / Administrator][D:\QQ2007\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [D:\QQ2007\CoralAssist.dll]  [Coral Team, 5.0.0 build 20060829]
    [D:\QQ2007\CoralQQ.dll]  [Coral Team, 5.0 Build 20070309]
    [D:\QQ2007\KQL.dll]  [Coral Team, 5.0.0 build 20070301]
    [D:\QQ2007\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [D:\QQ2007\IPSearcher.dll]  [, 1.0.0.4]
    [D:\QQ2007\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\BasicCtrlDll.dll]  [Tencent, 7, 0, 101, 80]
    [D:\QQ2007\NoDisturbFilter.cqx]  [Coral Team, 1.0]
    [D:\QQ2007\ConfigHotkey.cqx]  [Coral Team, 1.0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [D:\QQ2007\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [D:\QQ2007\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [D:\QQ2007\QQAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [D:\QQ2007\AutoReconnect.cqx]  [Coral Team, 1.0.0]
    [D:\QQ2007\LoginCtrl.dll]  [N/A, ]
    [D:\QQ2007\LoginCtrlRes.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
    [D:\QQ2007\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [D:\QQ2007\QQMainFrame.dll]  [N/A, ]
    [D:\QQ2007\CQQApplication.dll]  [N/A, ]
    [D:\QQ2007\NewSkin.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\HostingMgr.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\CameraDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\MailSummary.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\CoralHotkey.cqx]  [Coral Team, 1.0]
    [D:\QQ2007\QQKnowledgeSearch.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQAllInOne.dll]  [N/A, ]
    [D:\QQ2007\GroupLive.dll]  [N/A, ]
    [D:\QQ2007\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [D:\QQ2007\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\QQ2007\QQSpace.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [D:\QQ2007\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQPlugin.dll]  [N/A, ]
    [D:\QQ2007\QQSysMsgMng.dll]  [N/A, ]
    [D:\QQ2007\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [D:\QQ2007\QRingMng.dll]  [N/A, ]
    [D:\QQ2007\QQAvatar.dll]  [N/A, ]
    [D:\QQ2007\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [D:\QQ2007\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [D:\QQ2007\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [D:\QQ2007\QQCustomFace.dll]  [N/A, ]
    [C:\WINDOWS\system32\msadp32.acm]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\QQ2007\QQPet.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\GroupConnection.dll]  [Tencent, 0, 3, 3, 5]
    [D:\QQ2007\BQQApplication.dll]  [N/A, ]
    [D:\QQ2007\CommercesMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [D:\QQ2007\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 280]
    [D:\QQ2007\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 6, 27, 1]
    [D:\QQ2007\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [D:\QQ2007\QQSceneMng.dll]  [N/A, ]
    [D:\QQ2007\QQPhoneHelper.dll]  [腾讯科技(深圳)有限公司, 2, 1, 9, 93]
    [D:\QQ2007\ImageOle.dll]  [TODO: <Company name>, 1.0.0.1]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
    [D:\QQ2007\QQZip.dll]  [tencent, 0, 3, 2, 4]
[PID: 1588 / Administrator][D:\QQ2007\TIMPlatform.exe]  [tencent, 0, 3, 1, 8]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [D:\QQ2007\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
[PID: 840 / Administrator][D:\QQ2007\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [D:\QQ2007\CoralAssist.dll]  [Coral Team, 5.0.0 build 20060829]
    [D:\QQ2007\CoralQQ.dll]  [Coral Team, 5.0 Build 20070309]
    [D:\QQ2007\KQL.dll]  [Coral Team, 5.0.0 build 20070301]
    [D:\QQ2007\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [D:\QQ2007\IPSearcher.dll]  [, 1.0.0.4]
    [D:\QQ2007\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\BasicCtrlDll.dll]  [Tencent, 7, 0, 101, 80]
    [D:\QQ2007\NoDisturbFilter.cqx]  [Coral Team, 1.0]
    [D:\QQ2007\ConfigHotkey.cqx]  [Coral Team, 1.0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [D:\QQ2007\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [D:\QQ2007\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [D:\QQ2007\QQAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [D:\QQ2007\AutoReconnect.cqx]  [Coral Team, 1.0.0]
    [D:\QQ2007\LoginCtrl.dll]  [N/A, ]
    [D:\QQ2007\LoginCtrlRes.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [D:\QQ2007\WizardCtrl.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQMainFrame.dll]  [N/A, ]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
    [D:\QQ2007\CQQApplication.dll]  [N/A, ]
    [D:\QQ2007\NewSkin.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\HostingMgr.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\CameraDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\MailSummary.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\CoralHotkey.cqx]  [Coral Team, 1.0]
    [D:\QQ2007\QQKnowledgeSearch.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQAllInOne.dll]  [N/A, ]
    [D:\QQ2007\GroupLive.dll]  [N/A, ]
    [D:\QQ2007\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [D:\QQ2007\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\QQ2007\QQSpace.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [D:\QQ2007\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQPlugin.dll]  [N/A, ]
    [D:\QQ2007\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
ccdqsb
 楼主| 发表于 2007-7-16 11:43:43 | 显示全部楼层
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
    [D:\QQ2007\GroupConnection.dll]  [Tencent, 0, 3, 3, 5]
[PID: 3736 / Administrator][D:\QQ2007\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [D:\QQ2007\CoralAssist.dll]  [Coral Team, 5.0.0 build 20060829]
    [D:\QQ2007\CoralQQ.dll]  [Coral Team, 5.0 Build 20070309]
    [D:\QQ2007\KQL.dll]  [Coral Team, 5.0.0 build 20070301]
    [D:\QQ2007\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [D:\QQ2007\IPSearcher.dll]  [, 1.0.0.4]
    [D:\QQ2007\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\BasicCtrlDll.dll]  [Tencent, 7, 0, 101, 80]
    [D:\QQ2007\NoDisturbFilter.cqx]  [Coral Team, 1.0]
    [D:\QQ2007\ConfigHotkey.cqx]  [Coral Team, 1.0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [D:\QQ2007\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [D:\QQ2007\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [D:\QQ2007\QQAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [D:\QQ2007\AutoReconnect.cqx]  [Coral Team, 1.0.0]
    [D:\QQ2007\LoginCtrl.dll]  [N/A, ]
    [D:\QQ2007\LoginCtrlRes.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll]  [Kaspersky Lab, 6.0.1.411]
    [D:\QQ2007\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [D:\QQ2007\QQMainFrame.dll]  [N/A, ]
    [D:\QQ2007\CQQApplication.dll]  [N/A, ]
    [D:\QQ2007\NewSkin.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\HostingMgr.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\CameraDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\MailSummary.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\CoralHotkey.cqx]  [Coral Team, 1.0]
    [D:\QQ2007\QQKnowledgeSearch.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQAllInOne.dll]  [N/A, ]
    [D:\QQ2007\GroupLive.dll]  [N/A, ]
    [D:\QQ2007\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [D:\QQ2007\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\QQ2007\QQSpace.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [D:\QQ2007\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQPlugin.dll]  [N/A, ]
    [D:\QQ2007\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [D:\QQ2007\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQSysMsgMng.dll]  [N/A, ]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [D:\QQ2007\QRingMng.dll]  [N/A, ]
    [C:\WINDOWS\system32\msadp32.acm]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\QQ2007\QQPet.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\QQCustomFace.dll]  [N/A, ]
    [D:\QQ2007\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [D:\QQ2007\VqqModule.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [D:\QQ2007\ImageOle.dll]  [TODO: <Company name>, 1.0.0.1]
    [D:\QQ2007\QQSceneMng.dll]  [N/A, ]
    [D:\QQ2007\QQAvatar.dll]  [N/A, ]
    [D:\QQ2007\GroupConnection.dll]  [Tencent, 0, 3, 3, 5]
    [D:\QQ2007\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 280]
    [D:\QQ2007\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 6, 27, 1]
    [D:\QQ2007\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [D:\QQ2007\BQQApplication.dll]  [N/A, ]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
    [c:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
    [D:\QQ2007\CommercesMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ2007\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [D:\QQ2007\QQPhoneHelper.dll]  [腾讯科技(深圳)有限公司, 2, 1, 9, 93]
[PID: 1560 / Administrator][C:\Program Files\AutoCAD 2007\acad.exe]  [Autodesk, Inc., R17.0.54.0]
    [C:\Program Files\AutoCAD 2007\ac1st17.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acdb17.dll]  [Autodesk, Inc., 17.0.54.110]
    [C:\Program Files\AutoCAD 2007\AcGe17.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acui17.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\anav.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\adui17.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\UserData.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\dswhip.dll]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\heidi9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\dlint9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\sfttabac.dll]  [Softel vdm, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AdImaging.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\adlmdll.dll]  [Autodesk, Inc., 7.0.0.24]
    [C:\Program Files\AutoCAD 2007\adctrls.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\adui17res.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AnavRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acui17res.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\DsWhipRes.dll]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\sfttabacRes.dll]  [Softel vdm, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AdImagingRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\AdskCleanup.0001.dir.0000\~df394b.tmp]  [N/A, ]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\AdskCleanup.0001.dir.0000\~de56d5.tmp]  [, 2.70.000]
    [C:\Program Files\AutoCAD 2007\ADCtrlsRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acadbtn.xmx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acadres.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acdb17chsres.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\WINDOWS\system32\mscoree.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\Program Files\AutoCAD 2007\adlmres.dll]  [Autodesk, Inc., 7.0.0.24]
    [C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\bb7446ec625a5142b44e00318ff30318\mscorlib.ni.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\Program Files\AutoCAD 2007\acdbmgd.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\Program Files\AutoCAD 2007\PrxyInet.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\PrxyInetRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\oleaprot.arx]  [Autodesk, 17.0.54.0]
    [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\7b0bb4c812022543bbdc613025a1be34\System.ni.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\435829c4862dc544acc74d3eb341a231\System.Xml.ni.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\793ef2680190c84cb56dee0bb7c25509\System.Drawing.ni.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\250fc13f12f53b45852d98b358458674\System.Windows.Forms.ni.dll]  [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
    [C:\Program Files\AutoCAD 2007\colorRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\drv\gdi9.hdi]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\drv\gdi9Res.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\drv\szb9.hdi]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\drv\rblast9.hdi]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\drv\gdifont9.hdi]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\acgs.dll]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acgsRes.dll]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\achapi17.dbx]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\hcreg9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\hcreg9Res.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\acmgd.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\vl.arx]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\VLMSG.DLL]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\VLLIB.DLL]  [Autodesk Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcApp.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcAppRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDblClkEdit.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDblClkEditPE.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDblClkEditRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acdim.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\ShareMFC.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDimRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\aceplotx.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcEplotXRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\achlnkui.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\achlnkuiRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcIDropMgr.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcIDropMgrRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcLayerP.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcLayerPRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcPltStamp.arx]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\apperr.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\plotcfg9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\pm9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\ShareAC.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\pctres9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\apperrRes.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\pmres9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcPltStampRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcSign.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcSignRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcSpaceTrans.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcSpaceTransRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcStd.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcStStdRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcStMgr.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcStRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTaskBar.arx]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTaskBarRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTp.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTc.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcUt.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTcUi.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTcRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcTcUiRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\whohas.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\whohasRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcCamera.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcSceneRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDwgRecovery.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDwgRecoveryRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDxUi.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDx.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\zh-CN\AcDxUi.resources.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDxNotify.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcDxNotifyRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcMgdShared.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\acetlodr.arx]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcLayer.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\zh-CN\AcLayer.resources.dll]  [Autodesk, Inc, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcPrevInput.arx]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\WSCommCntrAcCon.arx]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\WSCommCntrAcConRes.dll]  [Autodesk, 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcPrevInputRes.dll]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\plcfmgr.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\plcfmgrRes.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\plcferr.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\pmutil9.dll]  [Autodesk, Inc., 9.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcInfoSvc.arx]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\AutoCAD 2007\AcInfoSvcRes.dll]  [Autodesk, Inc., 17.0.54.0]
[PID: 2628 / Administrator][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\AdskCleanup.0001]  [Macrovision Europe Ltd., 1, 0, 0, 1]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
[PID: 2884 / SYSTEM][C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe]  [Autodesk, 2.70.000]
[PID: 3760 / Administrator][C:\Program Files\Common Files\Autodesk Shared\WSCommCntr1.exe]  [Autodesk, Inc., 17.0.54.0]
    [C:\Program Files\360safe\safemon\safemon.dll]  [, 3, 5, 0, 1001]
    [C:\Program Files\Common Files\Autodesk Shared\WebServices1.dll]  [Autodesk, Inc., 17.0.54.0]
[PID: 4072 / Administrator][C:\Program Files\AutoCAD R14\ACAD.EXE]  [Autodesk, Inc., S.0.79.0]
mds
发表于 2007-7-16 12:40:37 | 显示全部楼层
启动项目
注册表
<SigmatelSysTrayApp><sttray.exe>  
<USBDRIVE.dll><C:\WINDOWS\system32\USBDRIVE.dll>
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>
驱动程序
<System32\Drivers\ulink.sys>
用SRE删除上面几项
时间关系还没看完!
去置顶工具帖里下载usbcleaner查杀下!
ccdqsb
 楼主| 发表于 2007-7-17 11:37:54 | 显示全部楼层
谢谢版主的回复,我已经下载了USBKILLER,但是没有杀出任何病毒,麻烦版主再给想想其它办法!!!!
谢谢!!!!
magic659117852
发表于 2007-7-17 11:47:51 | 显示全部楼层
请贴完整日志.不要放过一个空格一条横线...建议附件好了..........
ccdqsb
 楼主| 发表于 2007-7-17 13:28:46 | 显示全部楼层
用usbcleaner20070628查了一下,发现并查出并删除了INF病毒,但是重新开机还有 ,另外,即使INF病毒删除了,我所发图片里的那个20K的备份文件还在,怎么办呢,去各位朋友帮忙拉!!!
谢谢!
shenrenrenren
头像被屏蔽
发表于 2007-7-17 13:36:54 | 显示全部楼层

回复 #17 ccdqsb 的帖子

奇怪的文件传到样本区分析。
ccdqsb
 楼主| 发表于 2007-7-17 16:30:05 | 显示全部楼层
SREngLOG文件传上来大家瞧瞧,只会用压缩文件上传,请各位见谅

新建 WinRAR 压缩文件.rar

9.69 KB, 下载次数: 17

magic659117852
发表于 2007-7-17 17:27:03 | 显示全部楼层
楼主确认下这个 C:\Program Files\Intel\Intel Platform Administrator Client\HDGuard\hdsrv.exe
是不是自己的东西?
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-23 20:34 , Processed in 0.101067 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表