查看: 1474|回复: 8
收起左侧

[已解决] 系统出现点问题,大家帮忙解决下!!

 关闭 [复制链接]
清蒸波波面
发表于 2008-1-20 09:52:25 | 显示全部楼层 |阅读模式
Explorer.EXE,总是提出错误,要重起EXP,如图:
到底哪里出现了问题?大家帮忙解决下,谢谢啦!!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
跳舞中的洛丽塔
头像被屏蔽
发表于 2008-1-20 11:03:32 | 显示全部楼层
先用360或者window清理助手
清理下恶意插件
在修复下ie
看看
stforests
发表于 2008-1-20 11:43:24 | 显示全部楼层
还有sreng2也修复不少360修不了的东东
卡巴007 该用户已被删除
发表于 2008-1-20 11:51:24 | 显示全部楼层
扫描sreng报告上来。sreng下载见我的签名。
点智能扫描,勾选所有选项,扫描。
扫描前尽量关闭应用程序。如果程序无法运行,请重命名成123.com或aaa.exe。
清蒸波波面
 楼主| 发表于 2008-1-20 12:17:14 | 显示全部楼层
扫描上来了,麻烦给看上下:
[CODE]

2008-01-20,12:06:50

System Repair Engineer 2.5.16.900
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
    <run><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <CnxDslTaskBar><"C:\Program Files\MALATA\MAE-301U\CnxDslTb.exe" "MALATA\MAE-301U">  [N/A]
    <twister><"E:\费尔托斯特杀毒软件\twister.exe" -a>  [Filseclab Corporation]
    <FY_FireWall><E:\风云防火墙\FengYun\FYFireWall.exe>  [www.218.cc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><"logonui.exe">  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><; >  [N/A]
    <PHIME2002A><; >  [N/A]
    <PHIME2002ASync><; >  [N/A]
    <StormCodec_Helper><; >  [N/A]

==================================
启动文件夹
[费尔消息服务]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\费尔消息服务.lnk --> C:\PROGRA~1\COMMON~1\FILSEC~1\FilMsg.exe [费尔安全实验室]><N>
[QQ游戏启动加速程序]
  <C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk --> E:\Tencent\QQGame\Accel.exe [深圳市腾讯计算机系统有限公司]><N>

==================================
服务
[Contrl Center of Storm Media / ccosm][Running/Auto Start]
  <E:\StormII\stormliv.exe /asservice><北京暴风网际科技有限公司>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>

==================================
驱动程序
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[AmdK8 Compatible Device / AmdK8][Stopped/Manual Start]
  <System32\drivers\amdk8.sys><Advanced Micro Devices>
[CdaC15BA / CdaC15BA][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS><Macrovision Europe Ltd>
[Conexant AccessRunner USB ADSL Adapter Filter Driver / CnxEtP][Running/Manual Start]
  <system32\DRIVERS\CnxEtP.sys><Conexant Systems, Inc.>
[Conexant AccessRunner USB ADSL Interface Device Driver / CnxEtU][Running/Manual Start]
  <system32\DRIVERS\CnxEtU.sys><Conexant Systems, Inc.>
[Conexant AccessRunner ADSL WAN PPPoE Adapter Driver / CnxTgNP][Running/Manual Start]
  <system32\DRIVERS\CnxTgNP.sys><Conexant Systems, Inc.>
[VIA Rhine-Family Fast Ethernet Adapter Driver Service / FETND5BV][Stopped/Manual Start]
  <system32\DRIVERS\fetnd5bv.sys><VIA Technologies, Inc.>
[Filseclab Dynamic Defense System Driver / filar][Running/System Start]
  <\??\C:\PROGRA~1\COMMON~1\FILSEC~1\filar.sys><Filseclab Corporation>
[Filseclab Process Protection Driver / filpp][Running/Manual Start]
  <\??\C:\PROGRA~1\COMMON~1\FILSEC~1\filpp.sys><Filseclab Corporation>
[FYTdifltDrv / FYTdifltDrv][Running/System Start]
  <\??\E:\风云防火墙\FengYun\FYTdiDrv.sys><www.218.cc>
[ialm / ialm][Stopped/Manual Start]
  <system32\DRIVERS\ialmnt5.sys><Intel Corporation>
[Filseclab Twister Kernel Module / IMMDRV][Running/Manual Start]
  <\??\E:\费尔托~1\immdrv.sys><Filseclab Corp.>
[KAVBootC / KAVBootC][Running/Boot Start]
  <\SystemRoot\system32\Drivers\KAVBootC.sys><Kingsoft Corporation>
[KAVSafe / KAVSafe][Running/Auto Start]
  <\??\C:\WINDOWS\system32\Drivers\KAVSafe.sys><Kingsoft Corporation>
[npkcrypt / npkcrypt][Stopped/Auto Start]
  <\??\C:\Program Files\Tencent\QQ\npkcrypt.sys><N/A>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
  <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[S3SavageNB / S3SavageNB][Running/Manual Start]
  <system32\DRIVERS\s3gnbm.sys><S3 Graphics, Inc.>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[VIA AGP Filter / viaagp1][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\viaagp1.sys><VIA Technologies, Inc.>
[videX32 / videX32][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\videX32.sys><VIA Technologies, Inc.>
清蒸波波面
 楼主| 发表于 2008-1-20 12:17:35 | 显示全部楼层
==================================
浏览器加载项
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <E:\讯雷5\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <E:\讯雷5\Thunder\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <, N/A>
[一键恢复]
  {12F5C784-5373-48C9-8416-7FE0794C83FE} <c:\mscd\一键恢复系统.cmd, N/A>
[网上报修]
  {CF8BCD7E-DFD9-4643-B401-D6863121A411} <http://www.syte.cn/bx/, N/A>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[ScreenCapture Class]
  {BFB79EE1-04AE-4D4A-B85E-27EE5F30C095} <C:\WINDOWS\system32\TXGYMailActiveX.dll, Tencent Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[ThunderAtOnce Class]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <E:\讯雷5\Thunder\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <E:\讯雷5\Thunder\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <E:\讯雷5\Thunder\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[使用迅雷下载]
  <E:\讯雷5\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <E:\讯雷5\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
  <, N/A>

==================================
正在运行的进程
[PID: 388 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 452 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 476 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 520 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\AppPatch\AcAdProc.dll]  [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 532 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 680 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 736 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 788 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 864 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 896 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1148 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[PID: 1300 / SYSTEM][E:\StormII\stormliv.exe]  [北京暴风网际科技有限公司, 3, 8, 1, 13]
    [E:\StormII\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]
[PID: 1356 / Administrator][C:\Program Files\MALATA\MAE-301U\CnxDslTb.exe]  [Conexant Systems, Inc., 040.001.014.000]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
[PID: 1364 / Administrator][E:\费尔托斯特杀毒软件\twister.exe]  [Filseclab Corporation, 7, 3, 1, 23211]
    [E:\费尔托斯特杀毒软件\Twshlext.DLL]  [Filseclab Corp., 2, 0, 2, 1058]
    [E:\费尔托斯特杀毒软件\Quarantine.dll]  [Filseclab Corp., 2, 0, 0, 581]
    [E:\费尔托斯特杀毒软件\W32Tools.dll]  [Filseclab Corp., 2, 0, 3, 2136]
    [E:\费尔托斯特杀毒软件\virsubm.dll]  [Filseclab Corp., 2, 0, 3, 533]
    [E:\费尔托斯特杀毒软件\psmgr.dll]  [Filseclab Corp., 1, 0, 1, 1071]
    [E:\费尔托斯特杀毒软件\zipexp.dll]  [Filseclab Corp., 1, 0, 2, 177]
    [E:\费尔托斯特杀毒软件\emlib.dll]  [Filseclab Corp., 1, 0, 2, 1254]
    [E:\费尔托斯特杀毒软件\ctools.dll]  [Filseclab Corp., 1, 0, 0, 19]
    [E:\费尔托斯特杀毒软件\Regpro.dll]  [Filseclab Corp., 2, 0, 1, 1268]
    [E:\费尔托斯特杀毒软件\Schedule.dll]  [Filseclab Corp., 1, 0, 1, 34]
    [E:\费尔托斯特杀毒软件\lsf.dll]  [Filseclab Corp., 1, 0, 1, 286]
    [E:\费尔托斯特杀毒软件\falgorit.dll]  [Filseclab Corp., 1, 0, 0, 446]
    [E:\费尔托斯特杀毒软件\message.dll]  [Filseclab Corp., 1, 0, 1, 1598]
    [E:\费尔托斯特杀毒软件\fgui.dll]  [Filseclab Corp., 1, 0, 1, 128]
    [E:\费尔托斯特杀毒软件\kdf.dll]  [Filseclab Corp., 1, 0, 3, 1019]
    [E:\费尔托斯特杀毒软件\twsupd.dll]  [Filseclab Corp., 2, 0, 1, 705]
    [E:\费尔托斯特杀毒软件\FAPIConv.dll]  [Filseclab Corp., 1, 0, 0, 45]
    [E:\费尔托斯特杀毒软件\mdcoder.dll]  [Filseclab Corp., 1, 0, 0, 21]
    [E:\费尔托斯特杀毒软件\Decexp.dll]  [Filseclab Corp., 2, 0, 2, 2050]
    [E:\费尔托斯特杀毒软件\Unchm.dll]  [Filseclab Corp., 1, 0, 3, 124]
    [E:\费尔托斯特杀毒软件\unrar.dll]  [N/A, ]
    [E:\费尔托斯特杀毒软件\unemb.dll]  [Filseclab Corp., 2, 0, 2, 528]
    [E:\费尔托斯特杀毒软件\unsevzip.dll]  [Filseclab Corp., 2, 0, 2, 134]
    [E:\费尔托斯特杀毒软件\unmisc.dll]  [Filseclab Corp., 1, 0, 1, 211]
    [E:\费尔托斯特杀毒软件\AntiRK.dll]  [Filseclab Corporation, 2, 0, 0, 2719]
    [E:\费尔托斯特杀毒软件\filvss.dll]  [Filseclab Corporation, 2, 0, 0, 847]
    [E:\费尔托斯特杀毒软件\tsc.dll]  [Filseclab Corp., 2, 0, 1, 104]
    [E:\费尔托斯特杀毒软件\filau.dll]  [Filseclab, 2, 0, 0, 21]
    [E:\费尔托斯特杀毒软件\fvistask.dll]  [Filseclab Corporation, 2, 0, 0, 0]
    [E:\费尔托斯特杀毒软件\unzip32.dll]  [Info-ZIP, 5.52]
    [E:\费尔托斯特杀毒软件\unacev2.dll]  [N/A, ]
    [E:\费尔托斯特杀毒软件\filvss.cn]  [Filseclab Corporation, 2, 0, 0, 848]
    [E:\费尔托斯特杀毒软件\AntiRK.cn]  [Filseclab Corporation, 2, 0, 0, 2720]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
    [E:\费尔托斯特杀毒软件\plus.dll]  [Filseclab Corporation, 2.0.502.1050]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1376 / Administrator][E:\风云防火墙\FengYun\FYFireWall.exe]  [www.218.cc, 1.2.7.10]
    [E:\风云防火墙\FengYun\ArpInfo.dll]  [N/A, ]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
[PID: 1384 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
[PID: 1428 / Administrator][C:\Program Files\Common Files\Filseclab\FilMsg.exe]  [费尔安全实验室, 4, 0, 7, 1047]
    [C:\Program Files\Common Files\Filseclab\twsupd.dll]  [Filseclab Corp., 2, 0, 1, 705]
    [C:\Program Files\Common Files\Filseclab\W32Tools.dll]  [Filseclab Corp., 2, 0, 3, 2136]
    [C:\Program Files\Common Files\Filseclab\FAPIConv.dll]  [Filseclab Corp., 1, 0, 0, 45]
    [C:\Program Files\Common Files\Filseclab\mdcoder.dll]  [Filseclab Corp., 1, 0, 0, 21]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
[PID: 1992 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 444 / Administrator][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2900.2527 (xpsp.040919-1030)]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
    [C:\WINDOWS\system32\WPDShServiceObj.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\PortableDeviceTypes.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\PortableDeviceApi.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [E:\费尔托斯特杀毒软件\Twshlext.dll]  [Filseclab Corp., 2, 0, 2, 1058]
    [E:\Windows优化大师\WoptiEncryptModule.dll]  [共软网络, 1.0.8.103]
    [C:\WINDOWS\system32\wpdshext.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [C:\WINDOWS\system32\Audiodev.dll]  [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
    [E:\StormII\spfa.dll]  [北京暴风网际科技有限公司, 2, 7, 4, 2]
[PID: 2716 / Administrator][E:\Tencent\QQ\QQ.exe]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQBaseClassInDll.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQHelperDll.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\BasicCtrlDll.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
    [E:\Tencent\QQ\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [E:\Tencent\QQ\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [E:\Tencent\QQ\QQAPI.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\LoginCtrl.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\LoginCtrlRes.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQRes.dll]  [TENCENT, 7,0,431,1723]
    [E:\Tencent\QQ\QQMainFrame.dll]  [N/A, ]
    [E:\Tencent\QQ\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\Tencent\QQ\QQPlugin.dll]  [N/A, ]
    [E:\Tencent\QQ\UnReadMsgMgr.dll]  [N/A, ]
    [E:\Tencent\QQ\CQQApplication.dll]  [N/A, ]
    [E:\Tencent\QQ\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [E:\Tencent\QQ\NewSkin.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\MailSummary.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQSpace.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [E:\Tencent\QQ\OEMApplication.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQGroupMng.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQAvatar.dll]  [N/A, ]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [E:\Tencent\QQ\QQAllInOne.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\SCCore.dll]  [TENCENT, 1, 6, 0, 2]
    [E:\Tencent\QQ\CameraDll.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\UserDefinedHead.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQCustomFace.dll]  [N/A, ]
    [C:\WINDOWS\system32\msadp32.acm]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\Tencent\QQ\QQSysMsgMng.dll]  [N/A, ]
    [E:\Tencent\QQ\QQConfigPlugin.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\ImageOle.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQMagicFace.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\GroupConnection.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\LongConnection.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQFileTransfer.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\PersonalDesktop.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
    [C:\WINDOWS\system32\WINABCX.IME]  [PKUETI, 5.22.216]
    [E:\Tencent\QQ\CommercesMng.dll]  [TENCENT, 7,1,638,1773]
    [E:\Tencent\QQ\AddrSearch.dll]  [腾讯科技(深圳)有限公司, 2, 1, 9, 97]
[PID: 2740 / Administrator][E:\Tencent\QQ\TXPlatform.exe]  [Tencent, 1, 0, 170, 0]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
[PID: 2600 / Administrator][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
[PID: 3832 / Administrator][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.281\SREngPS.EXE]  [Smallfrogs Studio, 2.5.16.900]
    [E:\风云防火墙\FengYun\FYMon.dll]  [www.218.cc, 1.2.3.238]
    [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.281\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]

==================================
文件关联
.TXT  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  Error. [winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1       localhost

==================================
进程特权扫描
特殊特权被允许: SeSystemtimePrivilege [PID = 1356, C:\PROGRAM FILES\MALATA\MAE-301U\CNXDSLTB.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1356, C:\PROGRAM FILES\MALATA\MAE-301U\CNXDSLTB.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1356, C:\PROGRAM FILES\MALATA\MAE-301U\CNXDSLTB.EXE]
特殊特权被允许: SeSystemtimePrivilege [PID = 1364, E:\费尔托斯特杀毒软件\TWISTER.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1364, E:\费尔托斯特杀毒软件\TWISTER.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1364, E:\费尔托斯特杀毒软件\TWISTER.EXE]
特殊特权被允许: SeSystemtimePrivilege [PID = 1376, E:\风云防火墙\FENGYUN\FYFIREWALL.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1376, E:\风云防火墙\FENGYUN\FYFIREWALL.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1376, E:\风云防火墙\FENGYUN\FYFIREWALL.EXE]
特殊特权被允许: SeSystemtimePrivilege [PID = 1428, C:\PROGRAM FILES\COMMON FILES\FILSECLAB\FILMSG.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1428, C:\PROGRAM FILES\COMMON FILES\FILSECLAB\FILMSG.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1428, C:\PROGRAM FILES\COMMON FILES\FILSECLAB\FILMSG.EXE]

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]
dxhyshxd
发表于 2008-1-20 12:45:15 | 显示全部楼层

不知道我这个帖子对你有没有帮助!

卡巴007 该用户已被删除
发表于 2008-1-20 13:15:14 | 显示全部楼层
撤消优化大师所做的优化。

用sreng修复文件关联、shell和IE。
清蒸波波面
 楼主| 发表于 2008-1-20 14:43:11 | 显示全部楼层
修复了,但还是出问题!!没有用
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-6-8 00:13 , Processed in 0.130879 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表