查看: 3171|回复: 9
收起左侧

[已解决] 急求各位高手帮忙解决!!

 关闭 [复制链接]
arthor_pan
发表于 2007-8-5 08:08:12 | 显示全部楼层 |阅读模式
急求各位高手帮忙解决!!

各位高手:小弟的电脑只要一连接网络,za就会提醒有阻断间谍网址http://www.l7l71.com
同时卡巴会提醒
恶意 HTTP 对象 <http://www.l7l71.com/down/wd.exe>: 拒绝访问.
恶意 HTTP 对象 <http://www.l7l71.com/down/sg.exe>: 拒绝访问.
恶意 HTTP 对象 <http://www.l7l71.com/down/cs.exe>: 拒绝访问.
恶意 HTTP 对象 <http://www.l7l71.com/down/wd.exe>: 拒绝访问.
恶意 HTTP 对象 <http://www.l7l71.com/down/sg.exe>: 拒绝访问.
恶意 HTTP 对象 <http://www.l7l71.com/down/cs.exe>: 拒绝访问.
还有:
恶意 HTTP 对象 <http://www.l7l71.com/down/sg.exe/stream/data0001>: 已检测 广告程序 not-a-
virus:AdWare.Win32.BHO.cx.
恶意 HTTP 对象 <http://www.l7l71.com/down/wd.exe/UPack>: 已检测 木马程序 Trojan-
Downloader.Win32.Small.ewc
恶意 HTTP 对象 <http://www.l7l71.com/down/cs.exe/PE_Patch/NSPack>: 已检测 木马程序 Trojan-
Downloader.Win32.Agent.awz.
不知如何处理这个问题,请高手指教,感谢!!

该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2007-08-05  07:48:40
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180 Build:62900.2180
计算机物理内存:767.53MB - 当前可用内存:487.14MB
100 - 未知 - Process: zlclient.exe [Zone Labs Client] -
R0 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.baidu.com/
O8 - 未知 - Extra context menu item: &使用BitComet下载 - res://C:\Program
Files\BitComet\BitComet.exe/AddLink.htm
O8 - 未知 - Extra context menu item: &使用BitComet下载全部链接 - res://C:\Program
Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - 未知 - Extra context menu item: &使用BitComet下载本页视频 - res://C:\Program
Files\BitComet\BitComet.exe/AddVideo.htm
O20 - 未知 - AppInit DLLs: jzgpri.dll
O23 - 未知 - Service: 469B2DE2 [78BA7F2C] -  - (not running)
O23 - 未知 - Service: 9EA3BC2F [9EA3BC2F] -  - (not running)
O23 - 未知 - Service: vsmon [Monitors internet traffic and generates alerts for disallowed access.] -
C:\WINDOWS\system32\ZoneLabs\vsmon.exe -service - (running)
=======================================
100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调
用win32壳子系统和运行在windows登陆过程。] - C:\windows\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] -
C:\windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On
SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\windows\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\windows\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\windows\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
C:\windows\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
C:\windows\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
C:\windows\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
C:\windows\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
C:\windows\system32\svchost.exe -k LocalService
100 - 安全 - Process: vsmon.exe [一款个人防火墙软件。] -
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,
包括开始菜单、任务栏,桌面和文件管理。] - C:\windows\Explorer.EXE
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\windows\system32
\spoolsv.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] -
C:\windows\system32\nvsvc32.exe
100 - 安全 - Process: SMAgent.exe [一个声卡相关软件。] - C:\Program Files\Analog
Devices\SoundMAX\SMAgent.exe
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] - C:\WINDOWS\system32\wdfmgr.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\windows\System32\alg.exe
100 - 安全 - Process: htpatch.exe [矽统科技相关软件。] - C:\WINDOWS\htpatch.exe
100 - 安全 - Process: SMTray.exe [一个声卡相关软件。] - C:\Program Files\Analog
Devices\SoundMAX\SMTray.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\windows\system32\ctfmon.exe
100 - 安全 - Process: VnetClient.exe [vnet虚拟拨号软件,用于adsl宽带拨号。] - C:\Program
Files\ChinaNet\VnetClient.exe
100 - 安全 - Process: IEXPLORE.EXE [microsoft internet explorer浏览器用于浏览网页。] - C:\Program
Files\Internet Explorer\iexplore.exe
100 - 安全 - Process: taskmgr.exe [windows自带的任务管理器程序,用于察看系统中的进程信息。] -
C:\windows\system32\taskmgr.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士相关程序。] - C:\Program Files\360safe\360Safe.exe
100 - 安全 - Process: IEXPLORE.EXE [microsoft internet explorer浏览器用于浏览网页。] - C:\Program
Files\Internet Explorer\iexplore.exe
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\windows\system32\blank.htm
O2 - 安全 - BHO: (AcroIEHlprObj Class) - [Adobe Reader, 查看和打印 Adobe 便携文档格式 (PDF) 文件。] -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0
\Reader\ActiveX\AcroIEHelper.dll
O2 - 安全 - BHO: (BitComet Helper) - [下载软件BitComet的相关程序。] - {39F7E362-828A-4B5A-BCAF-
5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.6.14.dll
O2 - 安全 - BHO: (VnetCookie Class) - [星空极速, 拨号软件。] - {4E83D567-4697-4F7B-B1F0-A513B01DB89A} -
c:\PROGRA~1\chinanet\VNETTR~1.DLL
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-
1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll
O4 - 安全 - HKLM\..\Run: [IMJPMIG8.1] [微软Microsoft输入法编辑器程序。] "C:\WINDOWS\IME\imjp8_1
\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 安全 - HKLM\..\Run: [PHIME2002ASync] [输入法软件相关程序。] C:\WINDOWS\system32
\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 安全 - HKLM\..\Run: [PHIME2002A] [输入法软件相关程序。] C:\WINDOWS\system32
\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 安全 - HKLM\..\Run: [HTpatch] [sis芯片主板的agp补丁。] C:\WINDOWS\htpatch.exe
O4 - 默认 - HKLM\..\Run: [Smapp] [analog device公司推出的soundmax的音频控制程序] C:\Program Files\Analog
Devices\SoundMAX\SMTray.exe
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE
C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [nwiz] [是NVidia的Nview特性相关程序。该程序用于用户对其特性进行配置,将桌面扩展
到多台显示器上。 ] nwiz.exe /install
O4 - 安全 - HKLM\..\Run: [kav] [卡巴斯基杀毒软件相关程序。] "C:\Program Files\Kaspersky Lab\Kaspersky
Anti-Virus 6.0\avp.exe"
O4 - 安全 - HKLM\..\Run: [Zone Labs Client] [zonelabs公司出品的个人防火墙软件。] "C:\Program Files\Zone
Labs\ZoneAlarm\zlclient.exe"
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\windows\system32\ctfmon.exe
O8 - 安全 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder
Network\Thunder\Program\GetUrl.htm
O8 - 安全 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder
Network\Thunder\Program\GetAllUrl.htm
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - C:\Program Files\Kaspersky Lab\Kaspersky
Anti-Virus 6.0\scieplugin.dll
O9 - 安全 - Extra button: Windows Messenger(HKLM) - C:\Program Files\Messenger\msmsgs.exe
O23 - 安全 - Service: AVP [卡巴斯基杀毒软件相关程序。] - "C:\Program Files\Kaspersky Lab\Kaspersky Anti-
Virus 6.0\avp.exe" -r - (running)
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\windows\system32\nvsvc32.exe - (running)
O23 - 安全 - Service: SoundMAX Agent Service (default) [是Analog SoundMAX声卡产品相关程序。] - C:\Program
Files\Analog Devices\SoundMAX\SMAgent.exe - (running)
=======================================
arthor_pan
 楼主| 发表于 2007-8-5 08:11:33 | 显示全部楼层
O31 - 未知 - Notify: crypt32chain - C:\windows\system32\crypt32.dll - Microsoft Corporation - Crypto

API32 - 5.131.2600.2180 - 590336 - 72699584f8106e818bd12c8bfd0a4155
O31 - 未知 - Notify: cryptnet - C:\windows\system32\cryptnet.dll - Microsoft Corporation - Crypto Network

Related API - 5.131.2600.2180 - 63488 - c288e0360ff43aac8d51cc5e4e85d783
O31 - 未知 - Notify: cscdll - C:\windows\system32\cscdll.dll - Microsoft Corporation - Offline Network

Agent - 5.1.2600.2180 - 99840 - b72912a7a40f80bcb0f8d260a170c31c
O31 - 未知 - Notify: klogon - C:\WINDOWS\system32\klogon.dll - Kaspersky Lab - Logon Visualizer -

6.0.0.299 - 28778 - 7072750eb5c0f0cd54b48f972855ca61
O31 - 未知 - Notify: ScCertProp - C:\windows\system32\wlnotify.dll - Microsoft Corporation - Common DLL

to receive Winlogon notifications - 5.1.2600.2180 - 89088 - 7c3b85b65d099a8b63495746ae0fec13
O31 - 未知 - Notify: Schedule - C:\windows\system32\wlnotify.dll - Microsoft Corporation - Common DLL to

receive Winlogon notifications - 5.1.2600.2180 - 89088 - 7c3b85b65d099a8b63495746ae0fec13
O31 - 未知 - Notify: sclgntfy - C:\windows\system32\sclgntfy.dll - Microsoft Corporation - Secondary

Logon Service Notification DLL - 5.1.2600.2180 - 18944 - 892f92ac9f27e644335bb34fe553aa5b
O31 - 未知 - Notify: SensLogn - C:\windows\system32\WlNotify.dll - Microsoft Corporation - Common DLL to

receive Winlogon notifications - 5.1.2600.2180 - 89088 - 7c3b85b65d099a8b63495746ae0fec13
O31 - 未知 - Notify: termsrv - C:\windows\system32\wlnotify.dll - Microsoft Corporation - Common DLL to

receive Winlogon notifications - 5.1.2600.2180 - 89088 - 7c3b85b65d099a8b63495746ae0fec13
O31 - 未知 - Notify: wlballoon - C:\windows\system32\wlnotify.dll - Microsoft Corporation - Common DLL to

receive Winlogon notifications - 5.1.2600.2180 - 89088 - 7c3b85b65d099a8b63495746ae0fec13
O31 - 未知 - SODL: {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\windows\system32\SHELL32.dll - Microsoft

Corporation - Windows Shell Common Dll - 6.0.2900.2180 - 8241664 -
O31 - 未知 - SODL: {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\windows\system32\SHELL32.dll - Microsoft

Corporation - Windows Shell Common Dll - 6.0.2900.2180 - 8241664 -
O31 - 未知 - SODL: {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\windows\system32\webcheck.dll - Microsoft

Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SODL: {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll - Microsoft

Corporation - Systray shell service object - 5.1.2600.2180 - 121344 - d2f9483c30433d7be767366da04f2128
O31 - 未知 - SEApproved: {00022613-0000-0000-C000-000000000046} - C:\windows\system32\mmsys.cpl -

Microsoft Corporation - Control Panel Drivers Applet - 5.1.2600.2180 - 600064 -

9f562939e7bd35431fefc21485730893
O31 - 未知 - SEApproved: {176d6597-26d3-11d1-b350-080036a75b03} - C:\windows\system32\icmui.dll -

Microsoft Corporation - Microsoft Color Matching System User Interface DLL - 5.1.2600.0 - 54784 -

25e23917a19873e24457d9bd433108e8
O31 - 未知 - SEApproved: {1F2E5C40-9550-11CE-99D2-00AA006E086C} - C:\windows\system32\rshx32.dll -

Microsoft Corporation - Security Shell Extension - 5.1.2600.2180 - 37888 -

8a55ff4a4eb50948d0646425fb807b55
O31 - 未知 - SEApproved: {3EA48300-8CF6-101B-84FB-666CCB9BCD32} - C:\windows\system32\docprop.dll -

Microsoft Corporation - OLE DocFile Property Page - 5.1.2600.0 - 46080 - b6f75dd82f6a3596ef934b0e648f4199
O31 - 未知 - SEApproved: {40dd6e20-7c17-11ce-a804-00aa003ca9f6} - C:\windows\system32\ntshrui.dll -

Microsoft Corporation - Shell extensions for sharing - 5.1.2600.2180 - 137216 -

0632b991ec450c435d4751dd50c709e6
O31 - 未知 - SEApproved: {41E300E0-78B6-11ce-849B-444553540000} - C:\windows\system32\themeui.dll -

Microsoft Corporation - Windows Theme API - 6.0.2900.2180 - 371200 - de87eb3566a5d8ea462c15adede02434
O31 - 未知 - SEApproved: {42071712-76d4-11d1-8b24-00a0c9068ff3} - C:\windows\system32\deskadp.dll -

Microsoft Corporation - Advanced display adapter properties - 6.0.2600.0 - 16384 -

2df0148bcdf1a691e47ae5fe7a3220c0
O31 - 未知 - SEApproved: {42071713-76d4-11d1-8b24-00a0c9068ff3} - C:\windows\system32\deskmon.dll -

Microsoft Corporation - Advanced display monitor properties - 6.0.2600.0 - 16896 -

1ae273152358333693595948a63c0ea7
O31 - 未知 - SEApproved: {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: {4E40F770-369C-11d0-8922-00A024AB2DBB} - C:\windows\system32\dssec.dll -

Microsoft Corporation - Directory Service Security UI - 5.1.2600.2180 - 48640 -

670868c9fd5851bf2d12c0d5a2b9f1f7
O31 - 未知 - SEApproved: {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} - C:\windows\system32\SlayerXP.dll -

Microsoft Corporation - Compatibility Tab Shell Extension DLL - 5.1.2600.2180 - 24576 -

d41a5736bf7003ab80a6321e50f7e46d
O31 - 未知 - SEApproved: {56117100-C0CD-101B-81E2-00AA004AE837} - C:\windows\system32\shscrap.dll -

Microsoft Corporation - Shell scrap object handler - 5.1.2600.2180 - 25600 -

7a1db136abb94d5d6fdad6318e98b18d
O31 - 未知 - SEApproved: {59099400-57FF-11CE-BD94-0020AF85B590} - C:\windows\system32\diskcopy.dll -

Microsoft Corporation - Windows DiskCopy - 6.0.2600.0 - 1501696 - dd9a5ae9be5964086f98030f2765c5e6
O31 - 未知 - SEApproved: {59be4990-f85c-11ce-aff7-00aa003ca9f6} - C:\windows\system32\ntlanui2.dll -

Microsoft Corporation - Network object shell UI - 5.1.2600.0 - 14336 - 36feaeb24262211c77548bd118eb82d6
O31 - 未知 - SEApproved: {5DB2625A-54DF-11D0-B6C4-0800091AA605} - C:\windows\System32\icmui.dll -

Microsoft Corporation - Microsoft Color Matching System User Interface DLL - 5.1.2600.0 - 54784 -

25e23917a19873e24457d9bd433108e8
O31 - 未知 - SEApproved: {675F097E-4C4D-11D0-B6C1-0800091AA605} - C:\windows\system32\icmui.dll -

Microsoft Corporation - Microsoft Color Matching System User Interface DLL - 5.1.2600.0 - 54784 -

25e23917a19873e24457d9bd433108e8
O31 - 未知 - SEApproved: 无效的CLSID:Shell extensions for file compression -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {77597368-7b15-11d0-a0c2-080036af3f03} - C:\windows\system32\printui.dll -

Microsoft Corporation - Print UI DLL - 5.1.2600.2180 - 524288 - 498b3eccadf9bdc1d7308f9d917edbcd
O31 - 未知 - SEApproved: {7988B573-EC89-11cf-9C00-00AA00A14F56} - C:\windows\system32\dskquoui.dll -

Microsoft Corporation - Windows Shell Disk Quota UI DLL - 5.1.2600.0 - 144384 -

43c63e2827663aca2d8af934fa2e8b19
O31 - 未知 - SEApproved: 无效的CLSID:加密上下文菜单 -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {85BBD920-42A0-1069-A2E4-08002B30309D} - C:\windows\system32\syncui.dll -

Microsoft Corporation - Windows Briefcase - 5.1.2600.2180 - 177152 - ba9145cfd1be57dc715e7452c1a07533
O31 - 未知 - SEApproved: {88895560-9AA2-1069-930E-00AA0030EBC8} - C:\WINDOWS\system32\hticons.dll -

Hilgraeve, Inc. - HyperTerminal Applet Library - 5.1.2600.0 - 44544 - 455e63cc325be7a6d87059b0e457bcc9
O31 - 未知 - SEApproved: {BD84B380-8CA2-1069-AB1D-08000948F534} - C:\windows\system32\fontext.dll -

Microsoft Corporation - Windows Font Folder - 5.1.2600.2180 - 375808 - a17cc4f4e6e37c097e6e96d60955c129
O31 - 未知 - SEApproved: {DBCE2480-C732-101B-BE72-BA78E9AD5B27} - C:\windows\system32\icmui.dll -

Microsoft Corporation - Microsoft Color Matching System User Interface DLL - 5.1.2600.0 - 54784 -

25e23917a19873e24457d9bd433108e8
O31 - 未知 - SEApproved: {F37C5810-4D3F-11d0-B4BF-00AA00BBB723} - C:\windows\system32\rshx32.dll -

Microsoft Corporation - Security Shell Extension - 5.1.2600.2180 - 37888 -

8a55ff4a4eb50948d0646425fb807b55
O31 - 未知 - SEApproved: {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} - C:\windows\system32\ntshrui.dll -

Microsoft Corporation - Shell extensions for sharing - 5.1.2600.2180 - 137216 -

0632b991ec450c435d4751dd50c709e6
O31 - 未知 - SEApproved: {f92e8c40-3d33-11d2-b1aa-080036a75b03} - C:\windows\system32\deskperf.dll -

Microsoft Corporation - Advanced display performance properties - 5.1.2600.0 - 18432 -

82f4dd2113aff745c63abdba3ecf2c56
O31 - 未知 - SEApproved: {7444C717-39BF-11D1-8CD9-00C04FC29D45} - C:\WINDOWS\system32\cryptext.dll -

Microsoft Corporation - Crypto Shell Extensions - 5.131.2600.2180 - 52736 -

13d12db2bc54067f2c42ba310845b275
O31 - 未知 - SEApproved: {7444C719-39BF-11D1-8CD9-00C04FC29D45} - C:\WINDOWS\system32\cryptext.dll -

Microsoft Corporation - Crypto Shell Extensions - 5.131.2600.2180 - 52736 -

13d12db2bc54067f2c42ba310845b275
O31 - 未知 - SEApproved: {7007ACC7-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll -

Microsoft Corporation - Network Connections Shell - 5.1.2600.2180 - 1655808 -

32e0dd36b48a5117dfa2335f252fb709
O31 - 未知 - SEApproved: {992CFFA0-F557-101A-88EC-00DD010CCC48} - C:\WINDOWS\system32\NETSHELL.dll -

Microsoft Corporation - Network Connections Shell - 5.1.2600.2180 - 1655808 -

32e0dd36b48a5117dfa2335f252fb709
O31 - 未知 - SEApproved: {E211B736-43FD-11D1-9EFB-0000F8757FCD} - C:\windows\system32\wiashext.dll -

Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 579072 -

974fd9f48f26dd9f0269b0395ffa0afb
O31 - 未知 - SEApproved: {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} - C:\windows\system32\wiashext.dll -

Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 579072 -

974fd9f48f26dd9f0269b0395ffa0afb
O31 - 未知 - SEApproved: {905667aa-acd6-11d2-8080-00805f6596d2} - C:\windows\system32\wiashext.dll -

Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 579072 -

974fd9f48f26dd9f0269b0395ffa0afb
O31 - 未知 - SEApproved: {3F953603-1008-4f6e-A73A-04AAC7A992F1} - C:\windows\system32\wiashext.dll -

Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 579072 -

974fd9f48f26dd9f0269b0395ffa0afb
O31 - 未知 - SEApproved: {83bbcbf3-b28a-4919-a5aa-73027445d672} - C:\windows\system32\wiashext.dll -

Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 579072 -

974fd9f48f26dd9f0269b0395ffa0afb
O31 - 未知 - SEApproved: {F0152790-D56E-4445-850E-4F3117DB740C} - C:\WINDOWS\system32\remotepg.dll -

Microsoft Corporation - Remote Sessions CPL Extension - 5.1.2600.2180 - 57344 -

a508232105d8a7a5660e23c1c886119e
O31 - 未知 - SEApproved: {60254CA5-953B-11CF-8C96-00AA00B8708C} - C:\WINDOWS\system32\wshext.dll -

Microsoft Corporation - Microsoft (r) Shell Extension for Windows Script Host - 5.6.0.8820 - 65536 -

a6494ff57bd1bdcc5ead54e6805731af
O31 - 未知 - SEApproved: {2206CDB2-19C1-11D1-89E0-00C04FD7A829} - C:\Program Files\Common

Files\System\Ole DB\oledb32.dll - Microsoft Corporation - Microsoft Data Access - OLE DB Core Services -

2.81.1117.0 - 487424 - c2f457544fe0452f23662781696082d0
O31 - 未知 - SEApproved: {DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll -

Microsoft Corporation - Task Scheduler interface DLL - 5.1.2600.2180 - 260608 -

a3c34b78cfef3961ba6e1795c4ef5382
O31 - 未知 - SEApproved: {797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll -

Microsoft Corporation - Task Scheduler interface DLL - 5.1.2600.2180 - 260608 -

a3c34b78cfef3961ba6e1795c4ef5382
O31 - 未知 - SEApproved: {D6277990-4C6A-11CF-8D87-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll -

Microsoft Corporation - Task Scheduler interface DLL - 5.1.2600.2180 - 260608 -

a3c34b78cfef3961ba6e1795c4ef5382
O31 - 未知 - SEApproved: {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {0DF44EAA-FF21-4412-828E-260A8728E7F1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {D20EA4E1-3957-11d2-A40B-0C5020524152} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {D20EA4E1-3957-11d2-A40B-0C5020524153} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {596AB062-B4D2-4215-9F74-E9109B0A8153} - C:\windows\system32\twext.dll -

Microsoft Corporation - Previous Versions property page - 6.0.3800.2180 - 44032 -

27f92676e617a1334caa2e4c5f55931d
O31 - 未知 - SEApproved: {9DB7A13C-F208-4981-8353-73CC61AE2783} - C:\windows\system32\twext.dll -

Microsoft Corporation - Previous Versions property page - 6.0.3800.2180 - 44032 -

27f92676e617a1334caa2e4c5f55931d
O31 - 未知 - SEApproved: {875CB1A1-0F29-45de-A1AE-CFB4950D0B78} - C:\windows\system32\shmedia.dll -

Microsoft Corporation - Media File Property Extractor Shell Extension - 6.0.2900.2180 - 147968 -

0c5f6e6b6ffd3b1469f0af3957ca8ae4
O31 - 未知 - SEApproved: {40C3D757-D6E4-4b49-BB41-0E5BBEA28817} - C:\windows\system32\shmedia.dll -

Microsoft Corporation - Media File Property Extractor Shell Extension - 6.0.2900.2180 - 147968 -

0c5f6e6b6ffd3b1469f0af3957ca8ae4
O31 - 未知 - SEApproved: {E4B29F9D-D390-480b-92FD-7DDB47101D71} - C:\windows\system32\shmedia.dll -

Microsoft Corporation - Media File Property Extractor Shell Extension - 6.0.2900.2180 - 147968 -

0c5f6e6b6ffd3b1469f0af3957ca8ae4
O31 - 未知 - SEApproved: {87D62D94-71B3-4b9a-9489-5FE6850DC73E} - C:\windows\system32\shmedia.dll -

Microsoft Corporation - Media File Property Extractor Shell Extension - 6.0.2900.2180 - 147968 -

0c5f6e6b6ffd3b1469f0af3957ca8ae4
O31 - 未知 - SEApproved: {A6FD9E45-6E44-43f9-8644-08598F5A74D9} - C:\windows\system32\shmedia.dll -

Microsoft Corporation - Media File Property Extractor Shell Extension - 6.0.2900.2180 - 147968 -

0c5f6e6b6ffd3b1469f0af3957ca8ae4
O31 - 未知 - SEApproved: {c5a40261-cd64-4ccf-84cb-c394da41d590} - C:\windows\system32\shmedia.dll -

Microsoft Corporation - Media File Property Extractor Shell Extension - 6.0.2900.2180 - 147968 -

0c5f6e6b6ffd3b1469f0af3957ca8ae4
O31 - 未知 - SEApproved: {5E6AB780-7743-11CF-A12B-00AA004AE837} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {22BF0C20-6DA7-11D0-B373-00A0C9034938} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {91EA3F8B-C99B-11d0-9815-00C04FD91972} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {6413BA2C-B461-11d1-A18A-080036B11A03} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {F61FFEC1-754F-11d0-80CA-00AA005B4383} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {7BA4C742-9E81-11CF-99D3-00AA004AE837} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {30D02401-6A81-11d0-8274-00C04FD5AE38} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {169A0691-8DF9-11d1-A1C4-00C04FD75D13} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {07798131-AF23-11d1-9111-00A0C98BA67D} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {AF4F6510-F982-11d0-8595-00AA004CD6D8} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {01E04581-4EEE-11d0-BFE9-00AA005B4383} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
arthor_pan
 楼主| 发表于 2007-8-5 08:13:50 | 显示全部楼层
O31 - 未知 - SEApproved: {A08C11D2-A228-11d0-825B-00AA005B4383} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {00BB2763-6A77-11D0-A535-00C04FD7D062} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {7376D660-C583-11d0-A3A5-00C04FD706EC} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {6756A641-DE71-11d0-831B-00AA005B4383} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {7e653215-fa25-46bd-a339-34a2790f3cb7} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {acf35015-526e-4230-9596-becbe19f0ac9} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {00BB2764-6A77-11D0-A535-00C04FD7D062} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {03C036F1-A186-11D0-824A-00AA005B4383} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {00BB2765-6A77-11D0-A535-00C04FD7D062} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {ECD4FC4E-521C-11D0-B792-00A0C90312E1} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {3CCF8A41-5C85-11d0-9796-00AA00B90ADF} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {ECD4FC4C-521C-11D0-B792-00A0C90312E1} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {ECD4FC4D-521C-11D0-B792-00A0C90312E1} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {DD313E04-FEFF-11d1-8ECD-0000F87A470C} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} - C:\windows\system32\browseui.dll -

Microsoft Corporation - Shell Browser UI Library - 6.0.2900.2180 - 1016832 -

5e533ead07fd7eaf922620bf7ef2179f
O31 - 未知 - SEApproved: {EFA24E61-B078-11d0-89E4-00C04FC9E26E} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {0A89A860-D7B1-11CE-8350-444553540000} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {E7E4BC40-E76A-11CE-A9BB-00AA004AE837} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {A5E46E3A-8849-11D1-9D8C-00C04FC99D61} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {FBF23B40-E3F0-101B-8488-00AA003E56F8} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {3C374A40-BAE4-11CF-BF7D-00AA006946EE} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {FF393560-C2A7-11CF-BFF4-444553540000} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {7BD29E00-76C1-11CF-9DD0-00A0C9034933} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {7BD29E01-76C1-11CF-9DD0-00A0C9034933} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {67EA19A0-CCEF-11d0-8024-00C04FD75D13} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {131A6951-7F78-11D0-A979-00C04FD705A2} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {9461b922-3c5a-11d2-bf8b-00c04fb93661} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {3DC7A020-0ACD-11CF-A9BB-00AA004AE837} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {871C5380-42A0-1069-A2EA-08002B30309D} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {EFA24E64-B078-11d0-89E4-00C04FC9E26E} - C:\windows\system32\shdocvw.dll -

Microsoft Corporation - Shell Doc Object and Control Library - 6.0.2900.2180 - 1482752 -

61058c7bf5258ca1a21245412064e02a
O31 - 未知 - SEApproved: {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} - C:\WINDOWS\system32\sendmail.dll -

Microsoft Corporation - Send Mail - 6.0.2900.2180 - 54272 - bec31e41494db72e9ee3ab4ed079a95d
O31 - 未知 - SEApproved: {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} - C:\WINDOWS\system32\sendmail.dll -

Microsoft Corporation - Send Mail - 6.0.2900.2180 - 54272 - bec31e41494db72e9ee3ab4ed079a95d
O31 - 未知 - SEApproved: {88C6C381-2E85-11D0-94DE-444553540000} - C:\windows\system32\occache.dll -

Microsoft Corporation - Object Control Viewer - 6.0.2900.2180 - 93696 - 612c403e1e1c4c131e76f2eb1058ad0d
O31 - 未知 - SEApproved: {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {F5175861-2688-11d0-9C5E-00AA00A45957} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {08165EA0-E946-11CF-9C87-00AA005127ED} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {7D559C10-9FE9-11d0-93F7-00AA0059CE02} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {E6CC6978-6B6E-11D0-BECA-00C04FD940BE} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {D8BD2030-6FC9-11D0-864F-00AA006809D9} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} - C:\windows\system32\webcheck.dll -

Microsoft Corporation - Web Site Monitor - 6.0.2900.2180 - 265728 - 510fdc5d2c361e6212d50ffb4765b160
O31 - 未知 - SEApproved: {352EC2B7-8B9A-11D1-B8AE-006008059382} - C:\windows\system32\appwiz.cpl -

Microsoft Corporation - Shell Application Manager - 5.1.2600.2180 - 538112 -

e1f1246b14afdfe158aba1cbc180edf5
O31 - 未知 - SEApproved: {0B124F8F-91F0-11D1-B8B5-006008059382} - C:\windows\system32\appwiz.cpl -

Microsoft Corporation - Shell Application Manager - 5.1.2600.2180 - 538112 -

e1f1246b14afdfe158aba1cbc180edf5
O31 - 未知 - SEApproved: {CFCCC7A0-A282-11D1-9082-006008059382} - C:\windows\system32\appwiz.cpl -

Microsoft Corporation - Shell Application Manager - 5.1.2600.2180 - 538112 -

e1f1246b14afdfe158aba1cbc180edf5
O31 - 未知 - SEApproved: {e84fda7c-1d6a-45f6-b725-cb260c236066} - C:\windows\system32\shimgvw.dll -

Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 434176 -

f821f00300542e7f7f5576ea100ef803
O31 - 未知 - SEApproved: {66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} - C:\windows\system32\shimgvw.dll -

Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 434176 -

f821f00300542e7f7f5576ea100ef803
O31 - 未知 - SEApproved: {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {3F30C968-480A-4C6C-862D-EFC0897BB84B} - C:\WINDOWS\system32\shimgvw.dll -

Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 434176 -

f821f00300542e7f7f5576ea100ef803
O31 - 未知 - SEApproved: {9DBD2C50-62AD-11d0-B806-00C04FD706EC} - C:\WINDOWS\system32\shimgvw.dll -

Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 434176 -

f821f00300542e7f7f5576ea100ef803
O31 - 未知 - SEApproved: {EAB841A0-9550-11cf-8C16-00805F1408F3} - C:\WINDOWS\system32\shimgvw.dll -

Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 434176 -

f821f00300542e7f7f5576ea100ef803
O31 - 未知 - SEApproved: {eb9b1153-3b57-4e68-959a-a3266bc3d7fe} - C:\windows\system32\shimgvw.dll -

Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 434176 -

f821f00300542e7f7f5576ea100ef803
O31 - 未知 - SEApproved: {CC6EEFFB-43F6-46c5-9619-51D571967F7D} - C:\windows\system32\netplwiz.dll -

Microsoft Corporation - Map Network Drives/Network Places Wizard - 5.1.2600.2180 - 847360 -

6f40e5876b5c351d56103d68a8e48d14
O31 - 未知 - SEApproved: {add36aa8-751a-4579-a266-d66f5202ccbb} - C:\windows\system32\netplwiz.dll -

Microsoft Corporation - Map Network Drives/Network Places Wizard - 5.1.2600.2180 - 847360 -

6f40e5876b5c351d56103d68a8e48d14
O31 - 未知 - SEApproved: {6b33163c-76a5-4b6c-bf21-45de9cd503a1} - C:\windows\system32\netplwiz.dll -

Microsoft Corporation - Map Network Drives/Network Places Wizard - 5.1.2600.2180 - 847360 -

6f40e5876b5c351d56103d68a8e48d14
O31 - 未知 - SEApproved: {58f1f272-9240-4f51-b6d4-fd63d1618591} - C:\windows\system32\netplwiz.dll -

Microsoft Corporation - Map Network Drives/Network Places Wizard - 5.1.2600.2180 - 847360 -

6f40e5876b5c351d56103d68a8e48d14
O31 - 未知 - SEApproved: {7A9D77BD-5403-11d2-8785-2E0420524153} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} - C:\windows\system32\zipfldr.dll -

Microsoft Corporation - Compressed (zipped) Folders - 6.0.2900.2180 - 328192 -

bc22aaebdf88c075f9494fbd8a8dbd48
O31 - 未知 - SEApproved: {BD472F60-27FA-11cf-B8B4-444553540000} - C:\windows\system32\zipfldr.dll -

Microsoft Corporation - Compressed (zipped) Folders - 6.0.2900.2180 - 328192 -

bc22aaebdf88c075f9494fbd8a8dbd48
O31 - 未知 - SEApproved: {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} - C:\windows\system32\zipfldr.dll -

Microsoft Corporation - Compressed (zipped) Folders - 6.0.2900.2180 - 328192 -

bc22aaebdf88c075f9494fbd8a8dbd48
O31 - 未知 - SEApproved: {f39a0dc0-9cc8-11d0-a599-00c04fd64433} - C:\windows\system32\cdfview.dll -

Microsoft Corporation - Channel Definition File Viewer - 6.0.2900.2180 - 149504 -

a31f282b665d5b8d51161d6a965ceade
O31 - 未知 - SEApproved: {f3aa0dc0-9cc8-11d0-a599-00c04fd64434} - C:\windows\system32\cdfview.dll -

Microsoft Corporation - Channel Definition File Viewer - 6.0.2900.2180 - 149504 -

a31f282b665d5b8d51161d6a965ceade
O31 - 未知 - SEApproved: {f3ba0dc0-9cc8-11d0-a599-00c04fd64435} - C:\windows\system32\cdfview.dll -

Microsoft Corporation - Channel Definition File Viewer - 6.0.2900.2180 - 149504 -

a31f282b665d5b8d51161d6a965ceade
O31 - 未知 - SEApproved: {f3da0dc0-9cc8-11d0-a599-00c04fd64437} - C:\windows\system32\cdfview.dll -

Microsoft Corporation - Channel Definition File Viewer - 6.0.2900.2180 - 149504 -

a31f282b665d5b8d51161d6a965ceade
O31 - 未知 - SEApproved: {f3ea0dc0-9cc8-11d0-a599-00c04fd64438} - C:\windows\system32\cdfview.dll -

Microsoft Corporation - Channel Definition File Viewer - 6.0.2900.2180 - 149504 -

a31f282b665d5b8d51161d6a965ceade
O31 - 未知 - SEApproved: {692F0339-CBAA-47e6-B5B5-3B84DB604E87} - C:\windows\system32\extmgr.dll -

Microsoft Corporation - Extensions Manager - 6.0.2900.2180 - 55808 - 252f969e160a7748f1eca923d39322ea
O31 - 未知 - SEApproved: {63da6ec0-2e98-11cf-8d82-444553540000} - C:\WINDOWS\system32\msieftp.dll -

Microsoft Corporation - Microsoft Internet Explorer FTP Folder Shell Extension - 6.0.2900.2180 - 240128 -

2890020c31dc456a894b0e3f8f784030
O31 - 未知 - SEApproved: {883373C3-BF89-11D1-BE35-080036B11A03} - C:\WINDOWS\system32\docprop2.dll -

Microsoft Corporation - Microsoft DocProp Shell Ext - 5.1.2600.2180 - 47104 -

d8a09d6994fc51966f5f5e2163597e5b
O31 - 未知 - SEApproved: {A9CF0EAE-901A-4739-A481-E35B73E47F6D} - C:\WINDOWS\system32\docprop2.dll -

Microsoft Corporation - Microsoft DocProp Shell Ext - 5.1.2600.2180 - 47104 -

d8a09d6994fc51966f5f5e2163597e5b
O31 - 未知 - SEApproved: {8EE97210-FD1F-4B19-91DA-67914005F020} - C:\WINDOWS\system32\docprop2.dll -

Microsoft Corporation - Microsoft DocProp Shell Ext - 5.1.2600.2180 - 47104 -

d8a09d6994fc51966f5f5e2163597e5b
O31 - 未知 - SEApproved: {0EEA25CC-4362-4A12-850B-86EE61B0D3EB} - C:\WINDOWS\system32\docprop2.dll -

Microsoft Corporation - Microsoft DocProp Shell Ext - 5.1.2600.2180 - 47104 -

d8a09d6994fc51966f5f5e2163597e5b
O31 - 未知 - SEApproved: {6A205B57-2567-4A2C-B881-F787FAB579A3} - C:\WINDOWS\system32\docprop2.dll -

Microsoft Corporation - Microsoft DocProp Shell Ext - 5.1.2600.2180 - 47104 -

d8a09d6994fc51966f5f5e2163597e5b
O31 - 未知 - SEApproved: {28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} - C:\WINDOWS\system32\docprop2.dll -

Microsoft Corporation - Microsoft DocProp Shell Ext - 5.1.2600.2180 - 47104 -

d8a09d6994fc51966f5f5e2163597e5b
O31 - 未知 - SEApproved: {8A23E65E-31C2-11d0-891C-00A024AB2DBB} - C:\windows\system32\dsquery.dll -

Microsoft Corporation - Directory Service Find - 5.1.2600.2180 - 235520 -

60fa0d832389b1782912094c522808d0
O31 - 未知 - SEApproved: {9E51E0D0-6E0F-11d2-9601-00C04FA31A86} - C:\windows\system32\dsquery.dll -

Microsoft Corporation - Directory Service Find - 5.1.2600.2180 - 235520 -

60fa0d832389b1782912094c522808d0
O31 - 未知 - SEApproved: {163FDC20-2ABC-11d0-88F0-00A024AB2DBB} - C:\windows\system32\dsquery.dll -

Microsoft Corporation - Directory Service Find - 5.1.2600.2180 - 235520 -

60fa0d832389b1782912094c522808d0
O31 - 未知 - SEApproved: {F020E586-5264-11d1-A532-0000F8757D7E} - C:\windows\system32\dsquery.dll -

Microsoft Corporation - Directory Service Find - 5.1.2600.2180 - 235520 -

60fa0d832389b1782912094c522808d0
O31 - 未知 - SEApproved: {0D45D530-764B-11d0-A1CA-00AA00C16E65} - C:\windows\system32\dsuiext.dll -

Microsoft Corporation - Directory Service Common UI - 5.1.2600.2180 - 112128 -

6e520a18fdb7c99ab16d7993eaf42a6f
arthor_pan
 楼主| 发表于 2007-8-5 08:15:07 | 显示全部楼层
O31 - 未知 - SEApproved: {ECF03A33-103D-11d2-854D-006008059367} - C:\windows\system32\mydocs.dll -

Microsoft Corporation - My Documents Folder UI - 6.0.2900.2180 - 88576 - d3efc3130c939f32446708cb364770b7
O31 - 未知 - SEApproved: {ECF03A32-103D-11d2-854D-006008059367} - C:\windows\system32\mydocs.dll -

Microsoft Corporation - My Documents Folder UI - 6.0.2900.2180 - 88576 - d3efc3130c939f32446708cb364770b7
O31 - 未知 - SEApproved: {4a7ded0a-ad25-11d0-98a8-0800361b1103} - C:\windows\system32\mydocs.dll -

Microsoft Corporation - My Documents Folder UI - 6.0.2900.2180 - 88576 - d3efc3130c939f32446708cb364770b7
O31 - 未知 - SEApproved: {750fdf0e-2a26-11d1-a3ea-080036587f03} - C:\windows\System32\cscui.dll -

Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 304128 -

0aa4845708362d9cbf94d5042c88de3c
O31 - 未知 - SEApproved: {10CFC467-4392-11d2-8DB4-00C04FA31A66} - C:\windows\System32\cscui.dll -

Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 304128 -

0aa4845708362d9cbf94d5042c88de3c
O31 - 未知 - SEApproved: {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} - C:\windows\System32\cscui.dll -

Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 304128 -

0aa4845708362d9cbf94d5042c88de3c
O31 - 未知 - SEApproved: {143A62C8-C33B-11D1-84FE-00C04FA34A14} - C:\WINDOWS\msagent\agentpsh.dll -

Microsoft Corporation - Microsoft Agent Property Sheet Handler - 2.0.0.3422 - 24064 -

8d41023c2731791daab333fcac2e823b
O31 - 未知 - SEApproved: {ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} - C:\WINDOWS\system32\dfsshlex.dll -

Microsoft Corporation - Distributed File System shell extension - 5.1.2600.2180 - 28672 -

63b077bad8e8c3842643cfc6437dfa06
O31 - 未知 - SEApproved: {60fd46de-f830-4894-a628-6fa81bc0190d} - C:\windows\system32\photowiz.dll -

Microsoft Corporation - Photo Printing Wizard - 5.1.2600.2180 - 167424 - ee978b86e0e0e1bf8e5e3a7f0d6658b2
O31 - 未知 - SEApproved: {7A80E4A8-8005-11D2-BCF8-00C04F72C717} - C:\windows\System32\mmcshext.dll -

Microsoft Corporation - MMC Shell Extension DLL - 5.1.2600.2180 - 50688 -

bed3ca2f68d9475f46a59daf21a74d21
O31 - 未知 - SEApproved: {0CD7A5C0-9F37-11CE-AE65-08002B2E1262} - C:\windows\system32\cabview.dll -

Microsoft Corporation - Cabinet File Viewer Shell Extension - 6.0.2900.2180 - 83456 -

ff407ffa45842cd4e44ddf7dcd83646b
O31 - 未知 - SEApproved: {32714800-2E5F-11d0-8B85-00AA0044F941} - C:\Program Files\Outlook

Express\wabfind.dll - Microsoft Corporation - Find People - 6.0.2900.2180 - 32768 -

ac5bb39e99d9146009c888f96d54f4eb
O31 - 未知 - SEApproved: {8DD448E6-C188-4aed-AF92-44956194EB1F} - C:\WINDOWS\system32\wmpshell.dll -

Microsoft Corporation - Windows Media Player Launcher - 10.0.0.3802 - 86016 -

184e6b5c5301631c2d477b0debe5c6b1
O31 - 未知 - SEApproved: {CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} - C:\WINDOWS\system32\wmpshell.dll -

Microsoft Corporation - Windows Media Player Launcher - 10.0.0.3802 - 86016 -

184e6b5c5301631c2d477b0debe5c6b1
O31 - 未知 - SEApproved: {F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} - C:\WINDOWS\system32\wmpshell.dll -

Microsoft Corporation - Windows Media Player Launcher - 10.0.0.3802 - 86016 -

184e6b5c5301631c2d477b0debe5c6b1
O31 - 未知 - SEApproved: {1CDB2949-8F65-4355-8456-263E7C208A5D} - C:\WINDOWS\system32\nvshell.dll -

NVIDIA Corporation - NVIDIA Desktop Explorer, Version 40.72  - 6.13.10.4072 - 516167 -

a6a84435f1cf4e30d17b13d965377142
O31 - 未知 - SEApproved: {1E9B04FB-F9E5-4718-997B-B8DA88302A47} - C:\WINDOWS\system32\nvshell.dll -

NVIDIA Corporation - NVIDIA Desktop Explorer, Version 40.72  - 6.13.10.4072 - 516167 -

a6a84435f1cf4e30d17b13d965377142
O31 - 未知 - SEApproved: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -

-  - 120832 - 715577224e4c608a651ff649ba985af5
O31 - 未知 - SEApproved: {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - C:\Program Files\Kaspersky

Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll - Kaspersky Lab - Script Monitor Internet Explorer plugin -

6.0.0.299 - 184430 - 3f6db09f466b9e4f252549e62a21d6a5
O31 - 未知 - SEApproved: {640167b4-59b0-47a6-b335-a6b3c0695aea} - C:\windows\system32\Audiodev.dll -

Microsoft Corporation - 便携媒体设备命令行解释器扩展 - 5.2.3802.3802 - 484352 -

d56ea61a4265c0cd19764ed7b13c4b30
O31 - 未知 - SEApproved: {cc86590a-b60a-48e6-996b-41d25ed39a1e} - C:\windows\system32\Audiodev.dll -

Microsoft Corporation - 便携媒体设备命令行解释器扩展 - 5.2.3802.3802 - 484352 -

d56ea61a4265c0cd19764ed7b13c4b30
O31 - 未知 - Directory Menu: {A470F8CF-A1E8-4f65-8335-227475AA5C46} - C:\windows\system32\SHELL32.dll -

Microsoft Corporation - Windows Shell Common Dll - 6.0.2900.2180 - 8241664 -
O31 - 未知 - Directory Menu: {750fdf0e-2a26-11d1-a3ea-080036587f03} - C:\windows\System32\cscui.dll -

Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 304128 -

0aa4845708362d9cbf94d5042c88de3c
O31 - 未知 - Directory Menu: {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} - C:\windows\system32\ntshrui.dll -

Microsoft Corporation - Shell extensions for sharing - 5.1.2600.2180 - 137216 -

0632b991ec450c435d4751dd50c709e6
O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll

-  -  -  - 120832 - 715577224e4c608a651ff649ba985af5
O31 - 未知 - LSA: Authentication Packages - C:\windows\system32\msv1_0.dll - Microsoft Corporation -

Microsoft Authentication Package v1.0 - 5.1.2600.2180 - 129536 - bb1fedab741fffff709830a0350a5354
O31 - 未知 - LSA: Notification Packages - C:\windows\system32\scecli.dll - Microsoft Corporation -

Windows Security Configuration Editor Client Engine - 5.1.2600.2180 - 171008 -

2260f9ae1b1a6299f2140355bbea399d
O31 - 未知 - LSA: Security Packages - C:\windows\system32\kerberos.dll - Microsoft Corporation - Kerberos

Security Package - 5.1.2600.2180 - 294400 - 0b035f9de7147dda91567875b82b23c7
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - C:\windows\system32\digest.dll - Microsoft Corporation - Digest

SSPI Authentication Package - 6.0.2900.2180 - 68096 - abc2c0dcc02a9c33d6f127fe14142309

=======================================

O40 - winlogon.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - winlogon.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - winlogon.exe - Kaspersky Lab - C:\WINDOWS\system32\klogon.dll - Logon Visualizer -

7072750eb5c0f0cd54b48f972855ca61
O40 - winlogon.exe - Microsoft Corporation - C:\windows\system32\asycfilt.dll -  -

d5dba4af017da0bca3d82175358715ff
O40 - services.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - services.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - lsass.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - lsass.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - svchost.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - svchost.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - svchost.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - svchost.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - svchost.exe -  - C:\windows\System32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - svchost.exe - SoundMAX - C:\windows\System32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - svchost.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - svchost.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - svchost.exe -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - svchost.exe - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - Explorer.EXE -  - C:\windows\system32\jzgpri.dll -  - dc6e3d1b2a7e874c4f8f1672a6dc9096
O40 - Explorer.EXE - SoundMAX - C:\windows\system32\SYNCOR11.DLL - SynthCore R2.0 Midi Interface Driver -

bd9b4450d00d4ac891407b8c0e08de9c
O40 - Explorer.EXE -  - C:\windows\system32\xatc.dll -  -
O40 - Explorer.EXE - Microsoft Corporation - C:\PROGRA~1\WINDOW~2\wmpband.dll - Windows Media Player -

afe426be0816048761503cc722734730
O40 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll

- Windows Shell Extension - 62281a8da78c81f4f4695c3de52ba680
O40 - Explorer.EXE - Thunder Networking Technologies,LTD - C:\Program Files\Thunder

Network\Thunder\ComDlls\XunLeiBHO_001.dll - XunLeiBHO - 20feda3437be41aaa31db3062e154215
O40 - Explorer.EXE - Microsoft Corporation - C:\windows\system32\shmedia.dll - Media File Property

Extractor Shell Extension - 0c5f6e6b6ffd3b1469f0af3957ca8ae4
O40 - Explorer.EXE - Microsoft Corporation - C:\windows\system32\MSVFW32.dll - Microsoft Video for

Windows DLL - ef81837f6f37fde2851c92181c49653a
O40 - Explorer.EXE - Microsoft Corporation - C:\windows\system32\AVIFIL32.dll - Microsoft AVI File

support library - dd83188bcf94cee456a6a4577cf7973b

=======================================

O41 - aeaudio - Andrea Audio Stub Driver - C:\WINDOWS\system32\drivers\aeaudio.sys - (running) - Andrea

Audio Stub Driver - Andrea Electronics Corporation - 11c04b17ed2abbb4833694bcd644ac90
O41 - aq7r1jkju - aq7r1jkju - C:\WINDOWS\system32\drivers\aq7r1jkju.sys - (running) -  -  -
O41 - gameenum - Game Port Enumerator - C:\WINDOWS\system32\drivers\gameenum.sys - (running) - Game Port

Enumerator - Microsoft Corporation - 5f92fd09e5610a5995da7d775eadcd12
O41 - hckba4r - hckba4r - C:\WINDOWS\system32\drivers\hckba4r.sys - (running) -  -  -

9c2b5ecd2f5fd0321e1767d20344926b
O41 - kl1 - Kaspersky Unified Driver - C:\WINDOWS\system32\drivers\kl1.sys - (running) - Kaspersky

Unified Driver - Kaspersky Lab - 5445b03cd42dedf5f85b9daf712fdd09
O41 - klif - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys - (running) - spuper-ptor - Kaspersky Lab

- 92210989cc1d06f997b9628d8e4b1819
O41 - npkcrypt - nProtect KeyCrypt Driver - C:\Program Files\Tencent\QQ\npkcrypt.sys - (running) -

nProtect KeyCrypt Driver - INCA Internet Co., Ltd. - 8bcb281a2540e7aff0cd00f9878fe21f
O41 - sisagp - SiS NT AGP Filter - C:\WINDOWS\system32\drivers\SISAGPX.SYS - (running) - SiS NT AGP

Filter - Silicon Integrated Systems Corporation - 1630fbdbcb0cf3a60c02b6f140bab98b
O41 - SiSide - SiS PCI Mini IDE Driver - C:\WINDOWS\system32\drivers\siside.sys - (running) - SiS PCI

Mini IDE Driver - Silicon Integrated Systems Corp. - 065533f24037ccc7eee3ea8647c9ef20
O41 - sisidex - SISIDEX Driver - C:\WINDOWS\system32\drivers\sisidex.sys - (running) - SISIDEX Driver -

Windows (R) 2000 DDK provider - 6225224b8e846ac230f8d9b343635910
O41 - SISNIC - SiS PCI Fast Ethernet Adapter Driver - C:\WINDOWS\system32\drivers\sisnic.sys - (running)

- SiS PCI Fast Ethernet Adapter Driver - SiS Corporation - 8204c49cde112f7b9c2f15707fe2cc5a
O41 - sisperf - SiS Filter Driver - C:\WINDOWS\system32\drivers\sisperf.sys - (running) - SiS Filter

Driver - Silicon Integrated Systems Corp. - 596d4a7052002d2bd344d8937da6f66d
O41 - smwdm - SoundMAX Integrated Digital Audio  - C:\WINDOWS\system32\drivers\smwdm.sys - (running) -

SoundMAX Integrated Digital Audio  - Analog Devices, Inc. - 3c8c1c6485a4a7e79a24ec688f1c4646
O41 - EagleNT - EagleNT - C:\WINDOWS\system32\drivers\EagleNT.sys - (not running) -  -  -
O41 - NPF - NPF - C:\windows\system32\drivers\npf.sys - (not running) -  -  -

=======================================
360Safe.exe=3.5.2.1005
AntiAdwa.dll=3.5.1.1001
AntiEng.dll=3.5.2.1002
AntiActi.dll=2.0.0.3000
CleanHis.dll=3.0.2.1000
safelive.exe=1.0.0.2007
live.dll=1.0.1.1018

=======================================
操作历史报告:
----------清理恶评及系统插件历史----------

2007-07-21 11:13
查杀恶意软件 - romdrivers下载器 - 危险 - C:\PROGRA~1\INTERN~1\msvcrt.dll

2007-07-21 11:16
查杀恶意软件 - romdrivers下载器 - 危险 -
2007-07-21 11:20
查杀恶意软件 - romdrivers下载器 - 危险 - C:\PROGRA~1\INTERN~1\msvcrt.dll

2007-07-21 11:58
查杀恶意软件 - romdrivers下载器 - 危险 -

2007-07-28 00:05
插件管理 - romdrivers下载器 -
2007-08-04 07:47
清理恶评插件 - WinDHCPsvc - C:\windows\system32\windhcp.ocx
2007-08-04 07:47
清理恶评插件 - cpush广告软件 - C:\Program Files\Common Files\CPUSH
2007-08-04 08:47
清理恶评插件 - WinDHCPsvc - C:\windows\system32\windhcp.ocx
清理恶评插件 - acpidisk驱动 - C:\windows\system32\drivers\acpidisk.sys
清理恶评插件 - PCTools -
2007-08-04 23:22
清理恶评插件 - WinDHCPsvc - C:\windows\system32\windhcp.ocx
清理恶评插件 - acpidisk驱动 - C:\windows\system32\drivers\acpidisk.sys
2007-08-04 23:23
清理恶评插件 - PCTools -

----------全面诊断修复历史----------

2007-08-04 08:49
O4 - 未知 - MSDWG32 - LYLoadbr.exe
O4 - 未知 - MSDCG32     - LYLeador.exe
O4 - 未知 - MSDOG32 - LYLoador.exe
O4 - 未知 - MSDSG32 - LYLoadar.exe
O4 - 未知 - MSDMG32 - LYLoadmr.exe
O4 - 未知 - MSDHG32 - LYLoadhr.exe
O4 - 未知 - MSDQG32 - LYLoadqr.exe
2007-08-04 09:36
O8 - 未知 - 上传到QQ网络硬盘 - C:\Program Files\Tencent\QQ\AddToNetDisk.htm
O8 - 未知 - 添加到QQ自定义面板 - C:\Program Files\Tencent\QQ\AddPanel.htm
O8 - 未知 - 添加到QQ表情 - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - 未知 - 用QQ彩信发送该图片 - C:\Program Files\Tencent\QQ\SendMMS.htm
2007-08-04 09:37
O23 - 未知 - WinDHCPsvc -
2007-08-04 21:43
O20 - 未知 - 自启动项AppInit_DLLs - dhbpri.dll
2007-08-04 23:28
O20 - 未知 - 自启动项AppInit_DLLs - jzgpri.dll

=======================================
童年
头像被屏蔽
发表于 2007-8-5 08:36:52 | 显示全部楼层
WinDHCPsvc清理给你参考一下。。。。。。。。。。。


病毒/木马名称:WinDHCPsvc downloader木马
病毒/木马进程:WinDHCPsvc.exe
服务名称:WinDHCPsvc
显示名称:Windows DHCP Service
文件位置:C:\WINDOWS\WINDHCP.OCX
服务参数:C:\WINDOWS\SYSTEM32\RUNDLL32.EXE WINDHCP.OCX,START
文件说明:(风险级别高)

中毒症状:
1、后台自动下载、伪装系统程序、强制安装、无法彻底删除。360安全卫士、木马杀客、等反流氓软件可以找到的WinDHCPsvc  downloader木马,但是无法清除。而且到注册表里手动也无法删除WinDHCPsvc  downloader木马。2、没有启动IE的情况下, 不停的运行多个iexplore.exe还是大写的,iexplore.exe文件地址属于XP自带的IE没错。所以一般杀毒软件全部检测为正常。其他系统进程正常,也没多出异常的进程。
但是细心的人就会发现服务中多出了:windows DHCP service <C:\WINDOWS\system32\rundll32.exe windhcp.ocx,start><Microsoft Corporation>
“恶意软件清理”会提示检测到“WinDHCPsvc”,指向HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WinDHCPsvc     但是无法清除;
360safe的服务项里面会有服务windows DHCP service ,虽然你选中并点击“修复选中项”,重新扫描之后还是安然无恙。
病毒/木马专杀分析:
是病毒.HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root键项键值都有权限保护,要将“完全访问”添加入权限再可删除。


windhcpsvc 木马专杀方法(查杀方法):
1.杀毒前关闭系统还原:右键 我的电脑-属性-系统还原-在所有驱动器上关闭系统还原 打勾即可。   
2.清除IE的临时文件:打开IE 点工具--Internet选项-Internet临时文件-点“删除文件”按钮-将 删除所有脱机内容 打勾-点确定删除。
3.用强制删除工具 PowerRMV 删除以下两个文件,分别填入下面的文件(包括完整的路径) ,勾选“抑止杀灭对象再次生成”,点杀灭 ,有找不到提示的请忽略:
                     c:\windows\system32\twunk32.exe
                     c:\Program Files\Tencent\QQ2006\TIMPlatfrom.exe
这个是你QQ的安装目录,不一定是这个目录,反正就是的QQ目录里面,找到这个文件TIMPlatfrom.exe 。这里请注意了: 我们正常的文件是 TIMPlatform.exe而不是 TIMPlatfrom.exe
2.删除注册表[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]下面的load键。
3.删除注册表[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDHCPsvc
4.定位到[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WinDHCPsvc]将“完全访问”添加入LEGACY_WinDHCPsvc的访问权限,删除LEGACY_WinDHCPsvc项。

重启OK.

提示:以上操作尽量在安全模式下删除。
arthor_pan
 楼主| 发表于 2007-8-5 10:06:47 | 显示全部楼层
啊!谢谢高手指导!进行中
arthor_pan
 楼主| 发表于 2007-8-5 19:58:25 | 显示全部楼层
不行啊!在系统中找不到所说的两个文件,在注册表中也没有所提到的键值
magicx
发表于 2007-8-5 20:13:53 | 显示全部楼层
首先建议你杀下毒··中了木马的话我推荐用EWIDO查杀···
呵呵···记得在安全模式下杀哦···
然后呢···用360安全卫士修复下IE··
arthor_pan
 楼主| 发表于 2007-8-5 22:16:18 | 显示全部楼层
晕!
我早就在安全模式下已杀毒,用360进行检测说已没有木马,卡巴也没查出毒.但是只要一连上网络,za就报告拦截间谍网址http://www.l7l71.com.不知道什么原因啊!
zjwllilinjie
发表于 2007-8-8 08:32:07 | 显示全部楼层
安装AVG后,查一下马.试一下.
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-20 18:11 , Processed in 0.136589 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表