查看: 2673|回复: 13
收起左侧

[已解决] 请问大大~如果我电脑中过病毒~然后我重冠电脑只重冠一个磁碟,病毒还存在?

 关闭 [复制链接]
waiplay 该用户已被删除
发表于 2007-9-15 17:26:08 | 显示全部楼层 |阅读模式
之前我曾经中过病毒~然后我就重冠电脑~可是我只重冠其中一个磁碟~另一个磁碟没重冠~
那请问病毒还存在?!
可是用卡巴扫描过''我的电脑''没有出现任何病毒迹象~那证明是安全的?~
无敌敏敏
发表于 2007-9-15 18:18:41 | 显示全部楼层
用HijackThis和SREng扫一遍~
毒来啦
发表于 2007-9-15 18:32:16 | 显示全部楼层
用SRE直接扫描一遍,然后把日志传上来分析
ldy381898
发表于 2007-9-15 18:47:15 | 显示全部楼层
楼主的用词好稀奇哦,呵呵!
jpzy
发表于 2007-9-15 19:10:20 | 显示全部楼层
不好说!一般的病毒可能没有问题!比如占据现在主要威胁的木马,灰鸽子等,可能只感染了系统盘,重做系统以后,病毒也就随之消失了!

但是现在病毒的传播手段越来越多的采用多渠道,优盘传播已经成为了一个主要的传播方式,优盘病毒的感染方式主要是修改磁盘打开方式,拷贝病毒可执行文件到磁盘根目录并隐藏,创建Autorun.inf保证病毒能够自动运行!当然还有修改注册表,加载启动项服务项,连接到木马网站下载木马,甚至感染可执行文件等……

对付这样的病毒,光是重装系统已经不能彻底删掉了!最好是重装以后不要双击任何磁盘,用查杀率高,而且有清除能力的杀软(防止损失)来扫描整个磁盘。必要的时候要手动用工具删除个磁盘根目录下的Autorun.inf和病毒文件~!

在未用杀软彻底扫描,或者用工具查看过各磁盘目录的情况下,不要双击磁盘,用任务管理器来浏览目录!尽量不要双击保存在磁盘上的任何可执行文件,尽量从可信的地方用干净的优盘拷贝必要的安全软件!!

[ 本帖最后由 jpzy 于 2007-9-15 19:12 编辑 ]
waiplay 该用户已被删除
 楼主| 发表于 2007-9-15 21:31:45 | 显示全部楼层
原帖由 毒来啦 于 2007-9-15 18:32 发表
用SRE直接扫描一遍,然后把日志传上来分析

大大不知道你要的报告不知道是不是这个!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
waiplay 该用户已被删除
 楼主| 发表于 2007-9-15 22:01:51 | 显示全部楼层
我想维修可是一直维修失败~失败的原因是版本不是最新~可是我已经到他给我的网站下载最新版本~可是下载更新了~还是不行~还说版本不是最新的!怎么办~救救我!!
shuipao
发表于 2007-9-15 22:23:54 | 显示全部楼层

回复 7楼 waiplay 的帖子

如下操作,将得到的日志发上来.
按「智能扫描」,再按「扫描
最后,按「保存报告」,保存到桌面
SREngLOG.log 中内容完整的复制粘贴到论坛上来(快捷提示:ctrl+a全选,ctrl+c复制,ctrl+v粘贴),不要做任何修改。
如出现无法运行,请重命名或修改扩展名,如abc.exe/abc.com/abc.bat/abc.scr等
waiplay 该用户已被删除
 楼主| 发表于 2007-9-15 22:44:37 | 显示全部楼层
[CODE]
2007-09-15,22:41:46
System Repair Engineer 2.5.16.900
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed
Follow item(s) have been choosed:
    All Boot Items (Including Registry, Startup Folders, Services and so on)
    Browser Add-ons
    Runing Processes (Including process model information)
    File Associations
    Winsock Provider
    Autorun.Inf
    HOSTS File
    Process Privileges Scan

Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IgfxTray><C:\WINDOWS\system32\igfxtray.exe>  [(Verified)Microsoft Windows Publisher]
    <HotKeysCmds><C:\WINDOWS\system32\hkcmd.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <Persistence><C:\WINDOWS\system32\igfxpers.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <SoundMAXPnP><C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe>  [Analog Devices, Inc.]
    <SoundMAX><"C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray>  [Analog Devices, Inc.]
    <IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Windows Publisher]
    <MSPY2002><C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Publisher]
    <AVP><"C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe">  [(Verified)Kaspersky Lab]
    <Lingoes><"C:\Program Files\Lingoes\Translator\Lingoes.exe" -cphs>  [Lingoes Project]
    <Storm2Set><C:\WINDOWS\system32\rundll32.exe "C:\PROGRA~1\StormII\StormSet.dll",CheckEnv>  [(Verified)Beijing Baofeng Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><wbsys.dll>  [Stardock.Net, Inc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
    <WinlogonNotify: igfxcui><igfxdev.dll>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
    <WinlogonNotify: klogon><C:\WINDOWS\system32\klogon.dll>  [(Verified)Kaspersky Lab]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WBSrv]
    <WinlogonNotify: WBSrv><C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbsrv.dll>  [Stardock]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{4b218e3e-bc98-4770-93d3-2731b9329278}]
    <Internet Explorer><%SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection MarketplaceLinkInstall 896 %systemroot%\inf\ie.inf>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
==================================
Startup Folders
[BlueSoleil]
  <C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BlueSoleil.lnk --> C:\PROGRA~1\IVTCOR~1\BLUESO~1\BLUESO~1.EXE [IVT Corporation]><N>
==================================
Services
[Kaspersky Internet Security 7.0 / AVP][Running/Auto Start]
  <"C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" -r><Kaspersky Lab>
[BlueSoleil Hid Service / BlueSoleil Hid Service][Running/Auto Start]
  <C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe><N/A>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[SoundMAX Agent Service / SoundMAX Agent Service (default)][Running/Auto Start]
  <C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe><Analog Devices, Inc.>
==================================
Drivers
[aeaudio / aeaudio][Running/Manual Start]
  <system32\drivers\aeaudio.sys><Andrea Electronics Corporation>
[Bluetooth Audio Service / BlueletAudio][Running/Manual Start]
  <system32\DRIVERS\blueletaudio.sys><IVT Corporation>
[Bluetooth PAN Network Adapter / BT][Running/Manual Start]
  <system32\DRIVERS\btnetdrv.sys><IVT Corporation>
[Bluetooth HID Enumerator / BTHidEnum][Running/Manual Start]
  <system32\DRIVERS\vbtenum.sys><N/A>
[Bluetooth HID Manager Service / BTHidMgr][Running/Boot Start]
  <\SystemRoot\System32\Drivers\BTHidMgr.sys><IVT Corporation>
[FXDRV / FXDRV][Stopped/Manual Start]
  <\??\E:\Fxdrv.sys><N/A>
[ialm / ialm][Running/Manual Start]
  <system32\DRIVERS\ialmnt5.sys><Intel Corporation>
[kl1 / kl1][Running/Boot Start]
  <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
[klif / klif][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[Kaspersky Anti-Virus NDIS Filter / klim5][Running/Manual Start]
  <system32\DRIVERS\klim5.sys><Kaspersky Lab>
[MidiSyn / MidiSyn][Stopped/Manual Start]
  <system32\drivers\MidiSyn.sys><Analog Devices, Inc.>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Logitech QuickCam Express / QCDonner][Running/Manual Start]
  <system32\DRIVERS\OVCD.sys><Microsoft Corporation>
[Realtek 10/100/1000 NIC Family all in one NDIS XP Driver / RTL8023xp][Running/Manual Start]
  <system32\DRIVERS\Rtlnicxp.sys><Realtek Semiconductor Corporation>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
  <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><N/A>
[senfilt / senfilt][Running/Manual Start]
  <system32\drivers\senfilt.sys><Sensaura>
[smwdm / smwdm][Running/Manual Start]
  <system32\drivers\smwdm.sys><Analog Devices, Inc.>
[Virtual Serial port driver / VComm][Running/Manual Start]
  <system32\DRIVERS\VComm.sys><IVT Corporation>
[Bluetooth VComm Manager Service / VcommMgr][Running/Manual Start]
  <System32\Drivers\VcommMgr.sys><IVT Corporation>
[World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
  <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[Bluetooth USB For Bluetooth Service / Btcsrusb][Stopped/Manual Start]
  <System32\Drivers\btcusb.sys><IVT Corporation>
==================================
Browser Add-ons
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[BitComet Helper]
  {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.8.30.dll, BitComet>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[Web Anti-Virus statistics]
  {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll, Kaspersky Lab>
[BitComet Button]
  {461CC20B-FB6E-4f16-8FE8-C29359DB100E} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.8.30.dll, BitComet>
[&Research]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9d.ocx, Adobe Systems, Inc.>
[ThunderAtOnce Class]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[BitComet Helper]
  {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.8.30.dll, BitComet>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <C:\Program Files\Thunder\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9d.ocx, Adobe Systems, Inc.>
[&使用BitComet下载]
  <res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm, N/A>
[&使用BitComet下载全部链接]
  <res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm, N/A>
[&使用BitComet下载本页视频]
  <res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm, N/A>
[Add to Anti-Banner]
  <C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm, N/A>
[E&xport to Microsoft Excel]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[使用迅雷下载]
  <C:\Program Files\Thunder\Program\GetUrl.htm, N/A>
[使用迅雷下载全部链接]
  <C:\Program Files\Thunder\Program\GetAllUrl.htm, N/A>
waiplay 该用户已被删除
 楼主| 发表于 2007-9-15 22:47:43 | 显示全部楼层
==================================
Running Processes
[PID: 904 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1008 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1032 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\WINDOWS\system32\klogon.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbsrv.dll]  [Stardock, 5, 0, 0, 1]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1076 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
[PID: 1088 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
[PID: 1276 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
[PID: 1352 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
[PID: 1516 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
[PID: 1612 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
[PID: 1708 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
[PID: 1952 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\WINDOWS\system32\mdimon.dll]  [Microsoft Corporation, 11.3.2175.0]
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll]  [Microsoft Corporation, 11.3.2175.0]
[PID: 360 / Taurius][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\scrchpg.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\tray.dll]  [N/A, ]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Internet Explorer\mui\0404\browselc.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [C:\Program Files\Internet Explorer\mui\0404\shdoclc.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ShellEx.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\WINDOWS\system32\igfxpph.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\igfxress.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\prremote.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\prloader.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\WINDOWS\system32\msadp32.acm]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.15]
    [C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 18]
    [C:\Program Files\Thunder\Components\ResWorker\DsBho_00.dll]  [, 1, 0, 0, 11]
    [C:\Program Files\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 12]
    [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
[PID: 512 / Taurius][C:\WINDOWS\system32\igfxtray.exe]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.4308]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\igfxress.dll]  [Intel Corporation, 3.0.0.4308]
[PID: 524 / Taurius][C:\WINDOWS\system32\hkcmd.exe]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.4308]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4308]
    [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.4308]
[PID: 532 / Taurius][C:\WINDOWS\system32\igfxpers.exe]  [Intel Corporation, 3.0.0.4308]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4308]
[PID: 540 / Taurius][C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe]  [Analog Devices, Inc., 5, 0, 2, 2]
    [C:\Program Files\Analog Devices\SoundMAX\SMWDMIF.dll]  [Analog Devices, Inc., 5, 0, 3, 001]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 548 / Taurius][C:\Program Files\Analog Devices\SoundMAX\Smax4.exe]  [Analog Devices, Inc., 5, 0, 2, 6]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
[PID: 704 / Taurius][C:\Program Files\Lingoes\Translator\Lingoes.exe]  [Lingoes Project, 1, 5, 7, 0]
    [C:\Program Files\Lingoes\Translator\LGui64u.dll]  [Lingoes Corporation, 1, 2, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\scrchpg.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\klscav.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
[PID: 724 / Taurius][C:\WINDOWS\system32\CTFMON.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
[PID: 232 / SYSTEM][C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe]  [N/A, ]
[PID: 1668 / SYSTEM][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe]  [Analog Devices, Inc., 3, 2, 6, 0]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
[PID: 1744 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
[PID: 3000 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3532 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\System32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
[PID: 3460 / Taurius][C:\Program Files\Windows Live\Messenger\msnmsgr.exe]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Windows Live\Messenger\MSNCore.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Windows Live\Messenger\msidcrl40.dll]  [Microsoft Corporation, 4.100.313.1]
    [C:\Program Files\Windows Live\Messenger\ContactsUX.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\Windows Live\Messenger\msgslang.8.5.1288.0816.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Windows Live\Messenger\msgsres.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Windows Live\Messenger\MSGSWCAM.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\WINDOWS\system32\sirenacm.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
    [C:\Program Files\Windows Live\Messenger\lmcdata.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\scrchpg.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Windows Live\Messenger\dfsr.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Windows Live\Messenger\usnsvcps.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Windows Live\Messenger\custsat.dll]  [Microsoft Corporation, 9.0.3790.2428 (srv03_sp1_qfe.050422-1043)]
    [C:\Program Files\Windows Live\Messenger\abssm.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Windows Live\Messenger\contact.dll]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\Program Files\Windows Live\Messenger\fsshext.8.5.1288.0816.dll]  [Microsoft Corporation, 8.5.1288.0816]
[PID: 1656 / SYSTEM][C:\Program Files\Windows Live\Messenger\usnsvc.exe]  [Microsoft Corporation, 8.5.1288.0816]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\Windows Live\Messenger\usnsvcps.dll]  [Microsoft Corporation, 8.5.1288.0816]
[PID: 1628 / Taurius][D:\My application\网络加速器.exe]  [AttonSoft, LLC,  ]
    [C:\WINDOWS\system32\wbsys.dll]  [Stardock.Net, Inc, 4, 0, 0, 0]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
[PID: 3928 / Taurius][C:\WINDOWS\system32\wuauclt.exe]  [Microsoft Corporation, 5.4.3790.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
[PID: 1172 / Taurius][C:\Program Files\Maxthon2\Maxthon.exe]  [Maxthon International ltd., 2, 0, 3, 4643]
    [C:\Program Files\Maxthon2\MxExt.dll]  [N/A, ]
    [C:\Program Files\Maxthon2\mxpp.dll]  [Maxthon, 1, 0, 0, 61]
    [C:\Program Files\Maxthon2\MxSk.dll]  [Maxthon, 1, 0, 0, 119]
    [C:\Program Files\Maxthon2\MxProxy2.dll]  [, 1, 0, 0, 3531]
    [C:\Program Files\Maxthon2\IMxWebBoost.dll]  [Maxthon, 1, 0, 0, 67]
    [C:\Program Files\Maxthon2\mxdb.dll]  [N/A, ]
    [C:\Program Files\Maxthon2\mxsafe.dll]  [Maxthon, 1, 0, 0, 477]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Maxthon2\MxFav.dll]  [Maxthon, 1, 0, 0, 220]
    [C:\Program Files\Maxthon2\maxzlib.dll]  [, 1.2.3]
    [C:\Program Files\Maxthon2\mxtool.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Maxthon2\mxfeedU.dll]  [, 1, 0, 45, 82]
    [C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL]  [Microsoft Corporation, 11.0.5510]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\scrchpg.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\klscav.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\prremote.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\prloader.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\prkernel.ppl]  [Kaspersky Lab, 7.0.0.125]
    [c:\program files\kaspersky lab\kaspersky internet security 7.0\params.ppl]  [Kaspersky Lab, 7.0.0.125]
    [c:\program files\kaspersky lab\kaspersky internet security 7.0\pxstub.ppl]  [Kaspersky Lab, 7.0.0.125]
    [c:\program files\kaspersky lab\kaspersky internet security 7.0\tempfile.ppl]  [Kaspersky Lab, 7.0.0.125]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 2808 / Taurius][C:\Program Files\SRE\SREngPS.EXE]  [Smallfrogs Studio, 2.5.16.900]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wblind.dll]  [Stardock Corporation, 5.5]
    [C:\Program Files\WindowBlinds\WindowBlinds\WindowBlinds\wbhelp.dll]  [Stardock.Net, Inc, 4.01]
    [C:\Program Files\Lingoes\Translator\opentext.dll]  [N/A, ]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\SRE\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\miscr3.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\adialhk.dll]  [Kaspersky Lab, 7.0.0.125]
    [C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\dnsq.dll]  [Kaspersky Lab, 7.0.0.125]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-22 20:49 , Processed in 0.136889 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表