楼主: 84515070
收起左侧

[已解决] 电脑反复重启 一出现XP就重启 幸好有雨过天晴

 关闭 [复制链接]
84515070
 楼主| 发表于 2007-10-7 09:11:38 | 显示全部楼层
[C:\Program Files\Yuguo\shdapi.dll]  [N/A, ]
    [C:\Program Files\Yuguo\idle.dll]  [N/A, ]
    [C:\Program Files\Yuguo\shdservps.dll]  [N/A, ]
[PID: 3244 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1736 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashWebSv.exe]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\ashBase.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\aswCmnB.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\aswCmnS.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\Aavm4h.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\ashTask.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\aswAux.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\ChineseS\Base.dll]  [ALWIL Software, 4, 7, 1038, 0]
    [C:\Program Files\Alwil Software\Avast4\ashWsFtr.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\aswScan.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll]  [ALWIL Software, 4, 7, 1043, 0]
    [C:\Program Files\Alwil Software\Avast4\aswEngin.dll]  [ALWIL Software, 4, 7, 1043, 0]
[PID: 3736 / SYSTEM][C:\Program Files\PC Connectivity Solution\ServiceLayer.exe]  [Nokia., 6, 84, 83, 3]
    [C:\Program Files\PC Connectivity Solution\NclTools.dll]  [Nokia, 6, 84, 33, 0]
    [C:\Program Files\PC Connectivity Solution\Transports\NCLIrDAMM.dll]  [Nokia Corp., 6, 84, 33, 0]
    [C:\Program Files\PC Connectivity Solution\Transports\NCLRSMM.dll]  [Nokia Corp., 6, 84, 41, 0]
    [C:\Program Files\PC Connectivity Solution\Transports\NCLUSBMM.dll]  [Nokia Corp., 6, 84, 55, 1]
    [C:\Program Files\PC Connectivity Solution\Transports\NclMSBTMM.dll]  [Nokia Corp., 6, 84, 55, 0]
[PID: 2228 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3136 / hp][C:\Program Files\ChinaNet\VnetClient.exe]  [, 2005, 11, 14, 1]
    [C:\Program Files\ChinaNet\Communicate.dll]  [0, 2005, 3, 3, 1]
    [C:\Program Files\ChinaNet\DialModule.dll]  [GDCN, 2007, 4, 4, 16]
    [C:\Program Files\ChinaNet\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll]  [TENCENT, 5, 0, 1, 19]
    [C:\PROGRA~1\ChinaNet\CLIENT~1.DLL]  [, 2004, 2, 28, 1]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX]  [, 2005, 7, 27, 1]
    [C:\PROGRA~1\ChinaNet\sign.dll]  [0, 2004, 12, 1, 1]
    [C:\PROGRA~1\ChinaNet\PostPlug.dll]  [, 2004, 12, 16, 2]
    [C:\PROGRA~1\ChinaNet\ADVERT~1.OCX]  [, 2005, 10, 13, 1]
    [C:\PROGRA~1\ChinaNet\Gif89a.dll]  [, 2005, 6, 21, 1]
    [C:\PROGRA~1\ChinaNet\VnetBs.ocx]  [, 2004, 11, 18, 1]
    [C:\PROGRA~1\ChinaNet\ACCOUN~2.DLL]  [, 2005, 11, 14, 1]
    [C:\PROGRA~1\ChinaNet\AccountMgr.dll]  [, 2007, 3, 22, 10]
    [C:\PROGRA~1\ChinaNet\VnetSkin.ocx]  [GDDC, 2005, 11, 14, 1]
    [C:\PROGRA~1\ChinaNet\DialogStyle.dll]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\ChinaNet\Timer.ocx]  [, 2007, 3, 28, 17]
    [C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX]  [, 2005, 2, 24, 1]
    [C:\PROGRA~1\ChinaNet\NEWMES~1.DLL]  [, 2005, 8, 26, 1]
    [C:\PROGRA~1\ChinaNet\PassCtrl.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\wpcap.dll]  [Politecnico di Torino, 3, 0, 0, 18]
    [C:\WINDOWS\system32\pthreadVC.dll]  [N/A, ]
    [C:\WINDOWS\system32\packet.dll]  [Politecnico di Torino, 3, 0, 0, 18]
    [C:\PROGRA~1\ChinaNet\PlugPush.dll]  [, 2004, 12, 21, 1]
    [C:\PROGRA~1\ChinaNet\ALLINT~1.DLL]  [, 2004, 11, 23, 1]
    [C:\PROGRA~1\ChinaNet\VNETLO~1.OCX]  [, 2005, 10, 9, 1]
    [C:\PROGRA~1\ChinaNet\StatNum.dll]  [, 2004, 11, 18, 1]
    [C:\PROGRA~1\ChinaNet\VNETON~1.OCX]  [, 2005, 3, 2, 1]
    [C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL]  [GDCN, 2005, 10, 9, 1]
    [C:\PROGRA~1\ChinaNet\VnetOptLog.dll]  [, 2005, 9, 13, 9]
    [C:\Program Files\Yuguo\idle.dll]  [N/A, ]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx]  [Adobe Systems, Inc., 9,0,45,0]
[PID: 2372 / SYSTEM][C:\WINDOWS\system32\wuauclt.exe]  [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
    [C:\WINDOWS\system32\wups2.dll]  [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
[PID: 504 / hp][C:\Program Files\Internet Explorer\IEXPLORE.EXE]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [C:\WINDOWS\system32\IEFRAME.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll]  [TENCENT, 5, 0, 1, 19]
    [C:\Program Files\TENCENT\SSPlus\SAddr.dll]  [Tencent, 5, 0, 1, 17]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\IEUI.dll]  [Microsoft Corporation, 7.00.5730.13 (longhorn(wmbla).070711-1130)]
    [C:\WINDOWS\system32\xmllite.dll]  [Microsoft Corporation, 1.00.1018.0]
    [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
    [C:\Program Files\Internet Explorer\ieproxy.dll]  [Microsoft Corporation, 7.00.5730.13 (longhorn(wmbla).070711-1130)]
    [C:\Program Files\Yuguo\idle.dll]  [N/A, ]
    [K:\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.2.9]
    [K:\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 5, 13]
    [c:\PROGRA~1\chinanet\VNETTR~1.DLL]  [, 2005, 4, 6, 1]
    [c:\PROGRA~1\chinanet\Communicate.dll]  [0, 2005, 3, 3, 1]
    [C:\PROGRA~1\ChinaNet\CLIENT~1.DLL]  [, 2004, 2, 28, 1]
    [K:\360safe\safemon\safemon.dll]  [, 3, 6, 1, 1001]
    [C:\WINDOWS\system32\ieapfltr.dll]  [Microsoft Corporation, 7.0.6000.16461]
    [C:\WINDOWS\system32\wpdshext.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\Audiodev.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [K:\Thunder\ComDlls\ThunderAgent_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 3, 20]
[PID: 2416 / hp][K:\Thunder\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5, 7, 1, 338]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [K:\Thunder\Program\ThunderEx.dll]  [, 1, 1, 6, 12]
    [C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll]  [TENCENT, 5, 0, 1, 19]
    [K:\Thunder\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 2, 1, 26]
    [K:\Thunder\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 17, 2, 124]
    [K:\Thunder\Program\stlport_vc646.dll]  [STLport Consulting, Inc., 4.6.2003.1031]
    [K:\Thunder\Program\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 17, 2, 124]
    [K:\Thunder\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 8]
    [K:\Thunder\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
    [K:\Thunder\Components\DownAndPlay\DownAndPlay.dll]  [, 1, 0, 2, 20]
    [K:\Thunder\Program\iTargetAD.dll]  [N/A, ]
    [C:\Program Files\Yuguo\idle.dll]  [N/A, ]
    [K:\Thunder\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 1, 3, 0, 7]
    [K:\Thunder\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 13, 5, 59]
    [K:\Thunder\Program\MSVCIRT.dll]  [Microsoft Corporation, 7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [K:\Thunder\Components\Security\ThunderSafe.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 5, 29]
    [K:\Thunder\Program\XLNet.Dll]  [Thunder Networking Technologies,LTD, 1, 2, 1, 9]
    [K:\Thunder\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 1, 3, 13]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [K:\Thunder\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 15]
    [K:\Thunder\Plugins\BhoAdv\bho_adv.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.0]
    [K:\Thunder\Plugins\XLSafeHost\XLSafeHost.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 5, 30]
    [K:\Thunder\Plugins\XLSafeHost\ThunderKAV\ThunderKAV.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 5, 28]
    [K:\Thunder\Plugins\KLScan\PluginKLScan.dll]  [Thunder Networking Technologies,LTD, 1.0.0.11]
    [K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\kave.dll]  [Kaspersky Lab., 5, 0, 0, 62]
[PID: 2432 / hp][K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\ScanningProcess.exe]  [N/A, ]
    [K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prloader.dll]  [Kaspersky Lab, 6.0.1.305]
    [C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll]  [TENCENT, 5, 0, 1, 19]
    [K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prkernel.ppl]  [Kaspersky Lab, 6.0.1.305]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\prefetch.ppl]  [Kaspersky Labs, 1, 0, 0, 56]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\avpmgr.ppl]  [Kaspersky Lab, 6.0.1.305]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\wdiskio.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\nfio.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\avlib.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\dtreg.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\prutil.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\avp1.ppl]  [Kaspersky Lab, 6.0.0.299]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\l_llio.ppl]  [Kaspersky Labs, 6.0.9.75]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\ichstrms.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\hashcont.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\hccmp.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\uniarc.ppl]  [Kaspersky Lab, 6.0.0.16]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\minizip.ppl]  [Kaspersky Lab, 6.0.0.16]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\prseqio.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\hashmd5.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\inflate.ppl]  [Kaspersky Lab, 6.0.0.16]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\tempfile.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\cab.ppl]  [Kaspersky Lab, 6.0.0.16]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\arj.ppl]  [Kaspersky Lab, 6.0.0.16]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\rar.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\mdb.ppl]  [Kaspersky Lab, 6.0.0.300]
    [C:\WINDOWS\system32\MAPI32.dll]  [Microsoft Corporation, 1.0.2536.0 (XPClient.010817-1148)]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\msoe.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\iwgen.ppl]  [Kaspersky Lab, 6.0.0.276]
[PID: 1380 / hp][K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\ScanningProcess.exe]  [N/A, ]
    [K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prloader.dll]  [Kaspersky Lab, 6.0.1.305]
    [C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll]  [TENCENT, 5, 0, 1, 19]
    [K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prkernel.ppl]  [Kaspersky Lab, 6.0.1.305]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\prefetch.ppl]  [Kaspersky Labs, 1, 0, 0, 56]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\avpmgr.ppl]  [Kaspersky Lab, 6.0.1.305]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\wdiskio.ppl]  [Kaspersky Lab, 6.0.0.276]
84515070
 楼主| 发表于 2007-10-7 09:11:57 | 显示全部楼层
[k:\thunder\plugins\xlsafehost\thunderkav\bin\nfio.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\avlib.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\dtreg.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\prutil.ppl]  [Kaspersky Lab, 6.0.0.276]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\avp1.ppl]  [Kaspersky Lab, 6.0.0.299]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\l_llio.ppl]  [Kaspersky Labs, 6.0.9.75]
    [k:\thunder\plugins\xlsafehost\thunderkav\bin\ichstrms.ppl]  [Kaspersky Lab, 6.0.0.276]
[PID: 960 / hp][K:\新建文件夹 (3)\20070507051\SREngPS.EXE]  [Smallfrogs Studio, 2.5.16.900]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
    [C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll]  [TENCENT, 5, 0, 1, 19]
    [C:\Program Files\Yuguo\idle.dll]  [N/A, ]
    [K:\新建文件夹 (3)\20070507051\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]

==================================
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  Error. [winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1       localhost

==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1044, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1100, C:\WINDOWS\SYSTEM32\LSASS.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1476, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeSystemtimePrivilege [PID = 1476, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1508, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1308, C:\WINDOWS\SYSTEM32\SPOOLSV.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1456, C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGUARD.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1808, C:\WINDOWS\RTHDCPL.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1908, C:\WINDOWS\SYSTEM32\HKCMD.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1916, C:\WINDOWS\SYSTEM32\IGFXPERS.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1968, C:\WINDOWS\SYSTEM32\RUNDLL32.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 540, K:\AVG ANTI-SPYWARE 7.5\EWIDO ANTI-SPYWARE 4.0\EWIDO.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1064, K:\NOKIA PC SUITE 6\LAUNCHAPPLICATION.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2080, C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGNT.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2096, C:\PROGRAM FILES\YUGUO\EAZTRAY.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2104, C:\WINDOWS\SYSTEM32\CTFMON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2280, K:\RAINLENDAR2\RAINLENDAR2.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3244, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3736, C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3136, C:\PROGRAM FILES\CHINANET\VNETCLIENT.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2416, K:\THUNDER\PROGRAM\THUNDER5.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2432, K:\THUNDER\PLUGINS\XLSAFEHOST\THUNDERKAV\BIN\SCANNINGPROCESS.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1380, K:\THUNDER\PLUGINS\XLSAFEHOST\THUNDERKAV\BIN\SCANNINGPROCESS.EXE]

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]
84515070
 楼主| 发表于 2007-10-7 09:25:28 | 显示全部楼层
刚才又把盘装上去 ,把除了图片的一个解压缩文件删掉了,这次它没叫我重启。。
84515070
 楼主| 发表于 2007-10-7 09:47:22 | 显示全部楼层
我想发已解决的帖子可是怎么把高手的回复添进去啊。。
风雪
发表于 2007-10-7 10:08:39 | 显示全部楼层
用xdelbox(http://www.i170.com/attach/97670969-F47C-4A8B-9529-F0F602EFA902下载)删除下面文件(按住鼠标左键向下拖动,用鼠标从第一行拖动从上往下到最后一行,右键复制,或者(添入“文件路径”点击“添加”路径),在xdelbox窗口空白处点右键-从剪贴板导入,在抑制再生前打钩,在要删除文件上点击右键,选择立刻重启删除,如果有提示不用理会,确定。运行xdelbox前最好卸载所有可移动存储介质(包括U盘,MP3,手机存储卡等))。
C:\Program Files\TENCENT\SSPlus\SAddr.dll
C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll
C:\WINDOWS\\System32\Drivers\bootdrv.sys
C:\WINDOWS\\system32\drivers\ADProt.sys
运行SREngPS.EXE——启动项目——注册表删除下面的。
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <stup.exe><Rundll32.exe C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll,Rundll32 R>  [TENCENT]

运行 SREngPS.EXE在"启动项目->服务->"驱动程序"选中"隐藏微软服务" 然后将下面名称的服务
"删除服务"->"设置"->"否" (注意: 按"否"是确认删除服务,按"是"为取消操作)
[ADProt / ADProt][Running/System Start]
  <\SystemRoot\system32\drivers\ADProt.sys><腾讯科技(深圳)有限公司>
[bootdrv / bootdrv][Stopped/Boot Start]
  <\SystemRoot\System32\Drivers\bootdrv.sys><N/A>

Windows清理助手升级查一下:
http://www.arswp.com/download/arswp2/arswp2.zip

THUNDERKAV\下面的卡巴,小红伞,Avast4,PC Tools Firewall 是否有冲突,首先是PC Tools Firewall 的设置到防火墙区看一些不少人有重启机器的现象。然后Avast4与卡巴的冲突。
84515070
 楼主| 发表于 2007-10-7 10:25:12 | 显示全部楼层
它说加载C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll时错误,拒绝访问。
风雪
发表于 2007-10-7 10:33:05 | 显示全部楼层
楼主按照我说的做。
84515070
 楼主| 发表于 2007-10-7 10:44:28 | 显示全部楼层
重启之后显示不能加载那个,注册表那个我找不到啊,服务我删掉了
麻烦了  再给点方法
风雪
发表于 2007-10-7 10:47:46 | 显示全部楼层
开始——运行——regedit——编辑——查找——SPlus.dll删除。然后点击查找下一个直到没有提示为止。
或者使用AutoRuns v8.73 汉化版删除相应的加载。
http://www.crsky.com/soft/5285.html
84515070
 楼主| 发表于 2007-10-7 10:48:22 | 显示全部楼层
哦,注册表那个删了,现在就剩那个重启之后显示无法加载的了
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-23 09:37 , Processed in 0.093629 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表