查看: 3647|回复: 10
收起左侧

[求助] 大家帮忙参考下SREng的日志。装了NIS2009的机子,开机超慢

[复制链接]
dustychen
头像被屏蔽
发表于 2008-9-25 20:25:11 | 显示全部楼层 |阅读模式
[CODE]
2008-09-25,19:59:15
System Repair Engineer 2.6.12.1018
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 3 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\windows\system32\ctfmon.exe>  [(Verified)Microsoft Windows Component Publisher]
    <FishDesk><D:\Program Files\鱼鱼桌面\FishDesk.exe>  [鱼鱼软件]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Component Publisher]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    <WinlogonNotify: WgaLogon><WgaLogon.dll>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
    <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
    <N/A><C:\windows\system32\Rundll32.exe C:\windows\system32\mscories.dll,Install>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8b15971b-5355-4c82-8c07-7e181ea07608}]
    <Fax><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\fxsocm.inf,Fax.Install.PerUser>  [(Verified)Microsoft Windows Publisher]
==================================
启动文件夹
N/A
==================================
服务
[Windows Presentation Foundation Font Cache 3.0.0.0 / FontCache3.0.0.0][Stopped/Manual Start]
  <C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe><Microsoft Corporation>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[ms hlink / hlink][Stopped/Disabled]
  <C:\windows\system32\hlink.exe><N/A>
[Windows CardSpace / idsvc][Stopped/Manual Start]
  <"C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"><Microsoft Corporation>
[Machine Debug Manager / MDM][Stopped/Disabled]
  <"C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"><Microsoft Corporation>
[Net.Tcp Port Sharing Service / NetTcpPortSharing][Stopped/Disabled]
  <"C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"><Microsoft Corporation>
[Norton Internet Security / Norton Internet Security][Running/Auto Start]
  <"D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe" /s "Norton Internet Security" /m "D:\Program Files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll" /prefetch:1><Symantec Corporation>
==================================
驱动程序
[360TimeProt / 360TimeProt][Running/Auto Start]
  <\??\C:\windows\system32\drivers\360TimeProt.sys><N/A>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[TP-LINK Wireless Network Adapter Service / AR5211][Stopped/Manual Start]
  <system32\DRIVERS\ar5211.sys><Atheros Communications, Inc.>
[Symantec Heuristics Driver / BHDrvx86][Running/System Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\BHDrvx86.sys><Symantec Corporation>
[Symantec Hash Provider / ccHP][Running/System Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\ccHPx86.sys><Symantec Corporation>
[CdaC15BA / CdaC15BA][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\CDAC15BA.SYS><Macrovision Europe Ltd>
[Symantec Eraser Control driver / eeCtrl][Running/System Start]
  <\??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys><Symantec Corporation>
[EraserUtilRebootDrv / EraserUtilRebootDrv][Running/Manual Start]
  <\??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys><Symantec Corporation>
[usb Card Device / ft2kEnum][Running/Manual Start]
  <system32\DRIVERS\ic2kenum.sys><OEM Corporation>
[USB Chip Holder Service / GDBaseSmc][Running/Manual Start]
  <system32\DRIVERS\Chip_smc.sys><OEM>
[USB Chip Service / GD_USB][Stopped/Manual Start]
  <system32\DRIVERS\Chip_usb.sys><>
[HSFHWSIS / HSFHWSIS][Stopped/Manual Start]
  <system32\DRIVERS\HSFHWSIS.sys><Conexant Systems, Inc.>
[HSF_DP / HSF_DP][Stopped/Manual Start]
  <system32\DRIVERS\HSF_DP.sys><Conexant Systems, Inc.>
[HSF_DPV / HSF_DPV][Stopped/Manual Start]
  <system32\DRIVERS\HSF_DPV.sys><Conexant Systems, Inc.>
[IDSxpx86 / IDSxpx86][Running/System Start]
  <\??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20080923.001\IDSxpx86.sys><Symantec Corporation>
[mdmxsdk / mdmxsdk][Running/Auto Start]
  <system32\DRIVERS\mdmxsdk.sys><Conexant>
[ATK0100 ACPI UTILITY / MTsensor][Running/Manual Start]
  <system32\DRIVERS\ATKACPI.sys><>
[NAVENG / NAVENG][Running/Manual Start]
  <\??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080924.037\NAVENG.SYS><Symantec Corporation>
[NAVEX15 / NAVEX15][Running/Manual Start]
  <\??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080924.037\NAVEX15.SYS><Symantec Corporation>
[npkcrypt / npkcrypt][Stopped/Auto Start]
  <\??\D:\Program Files\Tencent\npkcrypt.sys><N/A>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[SmartCard Reader Device  / Reader_Device][Running/Manual Start]
  <system32\DRIVERS\usbic2k.sys><OEM>
[Ricoh MediaCard Driver / rmedia][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\rmedia.sys><REDC>
[Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver / RTL8023xp][Running/Manual Start]
  <system32\DRIVERS\Rtlnicxp.sys><Realtek Semiconductor Corporation>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
  <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[Sony Ericsson Device 089 driver (WDM) / se59bus][Stopped/Manual Start]
  <system32\DRIVERS\se59bus.sys><MCCI>
[Sony Ericsson Device 089 USB WMC Device Management Drivers (WDM) / se59mgmt][Stopped/Manual Start]
  <system32\DRIVERS\se59mgmt.sys><MCCI>
[Sony Ericsson Device 089 USB WMC OBEX Interface / se59obex][Stopped/Manual Start]
  <system32\DRIVERS\se59obex.sys><MCCI>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[SiS315 / SiS315][Running/Manual Start]
  <system32\DRIVERS\sisgrp.sys><Silicon Integrated Systems Corporation>
[SiSkp / SiSkp][Running/System Start]
  <system32\DRIVERS\srvkp.sys><Silicon Integrated Systems Corporation>
[sptd / sptd][Running/Boot Start]
  <\SystemRoot\System32\Drivers\sptd.sys><N/A>
[SRTSP / SRTSP][Running/System Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SRTSP.SYS><Symantec Corporation>
[SRTSPX / SRTSPX][Running/System Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SRTSPX.SYS><Symantec Corporation>
[SYMDNS / SYMDNS][Running/Manual Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SYMDNS.SYS><Symantec Corporation>
[Symantec Extended File Attributes / SymEFA][Running/Boot Start]
  <\SystemRoot\system32\drivers\NIS\1000000.07D\SYMEFA.SYS><Symantec Corporation>
[SymEvent / SymEvent][Running/Manual Start]
  <\??\C:\windows\system32\Drivers\SYMEVENT.SYS><Symantec Corporation>
[SYMFW / SYMFW][Running/Manual Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SYMFW.SYS><Symantec Corporation>
[SYMIDS / SYMIDS][Running/Manual Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SYMIDS.SYS><Symantec Corporation>
[Symantec Network Security Intermediate Filter Service / SymIM][Stopped/Manual Start]
  <system32\DRIVERS\SymIM.sys><Symantec Corporation>
[SymIMMP / SymIMMP][Running/Manual Start]
  <system32\DRIVERS\SymIM.sys><Symantec Corporation>
[SYMNDIS / SYMNDIS][Running/Manual Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SYMNDIS.SYS><Symantec Corporation>
[SYMREDRV / SYMREDRV][Running/Manual Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SYMREDRV.SYS><Symantec Corporation>
[SYMTDI / SYMTDI][Running/System Start]
  <\??\C:\windows\system32\drivers\NIS\1000000.07D\SYMTDI.SYS><Symantec Corporation>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
  <system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[用于 Windows XP 的 Intel(R) PRO/Wireless 7100 适配器驱动程序 / w70n51][Running/Manual Start]
  <system32\DRIVERS\w70n51.sys><Intel? Corporation>
[winachsf / winachsf][Stopped/Manual Start]
  <system32\DRIVERS\HSF_CNXT.sys><Conexant Systems, Inc.>
==================================
dustychen
头像被屏蔽
 楼主| 发表于 2008-9-25 20:27:49 | 显示全部楼层
浏览器加载项
[ThunderAtOnce Class]
  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <D:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Thunder Browser Helper]
  {06849E9E-C8D7-4D59-B87D-784B7D6BE0B3} <D:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Adobe PDF Reader Link Helper]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
[CLDown Object]
  {0BECAB3A-E1F8-45E6-8332-38DD750EBA01} <D:\Program Files\Tuotu\TuoTuHelper_v8.dll, Tuotu.com>
[]
  {105E4D0C-5E21-41ED-90F9-013EEF271BD6} <C:\WINDOWS\system32\widgetdownload.dll, 鱼鱼桌面秀widget插件下载工具>
[Symantec NCO BHO]
  {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} <D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coIEPlg.dll, (Signed) Symantec Corporation>
[Symantec Intrusion Prevention]
  {6D53EC84-6AAE-4787-AEEE-F4628F01010C} <D:\Program Files\Norton Internet Security\Engine\16.0.0.125\IPSBHO.DLL, (Signed) Symantec Corporation>
[Download_Bho Class]
  {A986E409-30CC-4185-89BB-AB212C104524} <C:\Program Files\PPLiveVA\DownloaderManager.dll, (Signed) >
[Adobe PDF Conversion Toolbar Helper]
  {AE7CD045-E861-484f-8273-0445EE161910} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, (Signed) Adobe Systems Incorporated>
[信息检索(&R)]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL, (Signed) Microsoft Corporation>
[PPLive]
  {95B3F550-91C4-4627-BCC4-521288C52977} <C:\Program Files\PPLive\PPLive.exe, (Signed) N/A>
[]
  {e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, (Signed) N/A>
[Adobe PDF]
  {47833539-D0C5-4125-9FA8-0819E2EAAC93} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, (Signed) Adobe Systems Incorporated>
[Norton Toolbar]
  {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} <D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coIEPlg.dll, (Signed) Symantec Corporation>
[Office Genuine Advantage Validation Tool]
  {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} <C:\windows\system32\OGACheckControl.DLL, (Signed) >
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>
[]
  {32564D57-9980-0010-8000-00AA00389B71} <, >
[]
  {33564D57-9980-0010-8000-00AA00389B71} <, >
[]
  {3447504D-9980-0010-8000-00AA00389B71} <, >
[GDGetTokenInfo Class]
  {3AA9CF07-DF20-48FF-98BE-DED276E40146} <C:\windows\system32\GDREAD~1.DLL, >
[InfoSecNetSign Class]
  {5CB840B5-A94E-4AD9-B785-4866E3B04476} <C:\WINDOWS\DOWNLO~1\ICBCNE~1.DLL, (Signed) Infosec Technologies Co., Ltd.>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\windows\system32\wuweb.dll, (Signed) Microsoft Corporation>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\windows\system32\INPUTC~1.DLL, >
[AxSubmitControl Class]
  {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\windows\system32\SUBMIT~1.DLL, >
[CSetLET Class]
  {C35D7AE1-0865-4A30-BF07-29FA29324155} <C:\windows\system32\GDSetLET.dll, >
[Office Update Installation Engine]
  {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} <C:\windows\opuc.dll, Microsoft Corporation>
[AxUSBKey Class]
  {DA215190-98B2-47DE-AE24-DA95481DFFBA} <C:\windows\system32\USBKey.dll, >
[AxUSBKey Class]
  {E4BFF825-2E50-4BCC-8497-6EFDFB6C9B3D} <C:\windows\system32\ICBCUS~1.DLL, 北京信安世纪公司>
[]
  {0055C089-8582-441B-A0BF-17B458C2A3A8} <, >
[ThunderAtOnce Class]
  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <D:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Office Genuine Advantage Validation Tool]
  {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} <C:\windows\system32\OGACheckControl.DLL, (Signed) >
[Thunder Browser Helper]
  {06849E9E-C8D7-4D59-B87D-784B7D6BE0B3} <D:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Adobe PDF Reader Link Helper]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
[CLDown Object]
  {0BECAB3A-E1F8-45E6-8332-38DD750EBA01} <D:\Program Files\Tuotu\TuoTuHelper_v8.dll, Tuotu.com>
[InfosecCertInstall Class]
  {0EB487C8-E9AC-43A6-8C4C-083999B0622F} <C:\windows\system32\certInStall.dll, (Signed) >
[]
  {105E4D0C-5E21-41ED-90F9-013EEF271BD6} <C:\WINDOWS\system32\widgetdownload.dll, 鱼鱼桌面秀widget插件下载工具>
[CEnroll Class]
  {127698E4-E730-4E5C-A2B1-21490A70C8A1} <C:\windows\system32\xenroll.dll, (Signed) Microsoft Corporation>
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>
[InformationCardSigninHelper Class]
  {19916E01-B44E-4E31-94A4-4696DF46157B} <C:\WINDOWS\system32\icardie.dll, (Signed) Microsoft Corporation>
[ThunderServer.WebThunder]
  {1DE5794D-B609-4A3E-9E40-22594D5BEAAC} <D:\Program Files\Thunder\ComDlls\Faker.dll, N/A>
[]
  {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <, >
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\windows\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
[ctl4RA Class]
  {27984DB8-C851-439E-B625-81740482BE7C} <C:\windows\system32\PRINTC~1.DLL, 北京信安世纪公司>
[XML DOM Document]
  {2933BF90-7B36-11D2-B20E-00C04F983E60} <C:\windows\system32\msxml3.dll, (Signed) Microsoft Corporation>
[]
  {3447504D-9980-0010-8000-00AA00389B71} <, >
[GDGetTokenInfo Class]
  {3AA9CF07-DF20-48FF-98BE-DED276E40146} <C:\windows\system32\GDREAD~1.DLL, >
[]
  {4453D895-F2A1-4A38-A285-1EF9BD3F6D5D} <, >
[Adobe PDF]
  {47833539-D0C5-4125-9FA8-0819E2EAAC93} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, (Signed) Adobe Systems Incorporated>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <D:\Program Files\Thunder\ComDlls\ThunderAgent_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Microsoft Terminal Services Client Control (redist)]
  {4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[Microsoft Terminal Services Client Control (redist)]
  {4EDCB26C-D24C-4e72-AF07-B576699AC0DE} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[Shell Name Space]
  {55136805-B2DE-11D1-B9F2-00A0C98BC547} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[]
  {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} <, >
[InfoSecNetSign Class]
  {5CB840B5-A94E-4AD9-B785-4866E3B04476} <C:\WINDOWS\DOWNLO~1\ICBCNE~1.DLL, (Signed) Infosec Technologies Co., Ltd.>
[Symantec NCO BHO]
  {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} <D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coIEPlg.dll, (Signed) Symantec Corporation>
[]
  {616DACC1-C5E6-4646-B36A-3FA4FC726BAD} <, >
[CJfchk Object]
  {632C6705-17AB-4407-9281-F60D0A7726BE} <D:\Program Files\ppfilm\JfCheck.dll, N/A>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\windows\system32\wuweb.dll, (Signed) Microsoft Corporation>
[JetCar.Netscape]
  {69C7BEA7-0A70-4291-81ED-405D19AEE270} <D:\Program Files\Thunder\ComDlls\Faker.dll, N/A>
[]
  {6BC568F9-096D-49BB-AEEC-0E8EEDEFFEA6} <, >
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\windows\system32\wmp.dll, (Signed) Microsoft Corporation>
[]
  {6C3797D2-3FEF-4CD4-B654-D3AE55B4128C} <, >
[Symantec Intrusion Prevention]
  {6D53EC84-6AAE-4787-AEEE-F4628F01010C} <D:\Program Files\Norton Internet Security\Engine\16.0.0.125\IPSBHO.DLL, (Signed) Symantec Corporation>
[CCtInf Class]
  {6DBB2904-082D-4DB0-944A-21C22BA121F4} <C:\windows\system32\BANKCE~1.DLL, >
[Active Desktop Mover]
  {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, (Signed) N/A>
[Windows Script Host Shell Object]
  {72C24DD5-D70A-438B-8A42-98424B88AFB8} <C:\WINDOWS\system32\wshom.ocx, (Signed) Microsoft Corporation>
[Microsoft Terminal Services Client Control (redist)]
  {7390f3d8-0439-4c05-91e3-cf5cb290c3d0} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[AxInputControl Class]
  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\windows\system32\INPUTC~1.DLL, >
[Microsoft Terminal Services Client Control (redist)]
  {7584c670-2274-4efb-b00b-d6aaba6d3850} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[]
  {7E853D72-626A-48EC-A868-BA8D5E23E045} <, >
[Norton Toolbar]
  {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} <D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coIEPlg.dll, (Signed) Symantec Corporation>
[360SafeLive]
  {87515F61-A66C-4319-A0E0-D416CB8059E3} <C:\Program Files\360safe\live.dll, (Signed) 360.cn>
[Microsoft Web Browser]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[AxSubmitControl Class]
  {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\windows\system32\SUBMIT~1.DLL, >
[Microsoft Terminal Services Client Control (redist)]
  {9059f30f-4eb1-4bd2-9fdc-36f43a218f4a} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
[]
  {95B3F550-91C4-4627-BCC4-521288C52977} <, >
[Download_Bho Class]
  {A986E409-30CC-4185-89BB-AB212C104524} <C:\Program Files\PPLiveVA\DownloaderManager.dll, (Signed) >
[Adobe PDF Conversion Toolbar Helper]
  {AE7CD045-E861-484F-8273-0445EE161910} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, (Signed) Adobe Systems Incorporated>
[RDS.DataSpace]
  {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, (Signed) Microsoft Corporation>
[CSetLET Class]
  {C35D7AE1-0865-4A30-BF07-29FA29324155} <C:\windows\system32\GDSetLET.dll, >
[Office Update Installation Engine]
  {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} <C:\windows\opuc.dll, Microsoft Corporation>
[AUDIO__MID Moniker Class]
  {CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\windows\system32\wmp.dll, (Signed) Microsoft Corporation>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, (Signed) RealNetworks, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, (Signed) Adobe Systems, Inc.>
[AxUSBKey Class]
  {DA215190-98B2-47DE-AE24-DA95481DFFBA} <C:\windows\system32\USBKey.dll, >
[]
  {E2E2DD38-D088-4134-82B7-F2BA38496583} <, >
[AxUSBKey Class]
  {E4BFF825-2E50-4BCC-8497-6EFDFB6C9B3D} <C:\windows\system32\ICBCUS~1.DLL, 北京信安世纪公司>
[QQIEHelper.QQRightClick]
  {E654770F-10E4-47BC-A309-4CAD96A096E6} <D:\Program Files\Thunder\ComDlls\Faker.dll, N/A>
[XML HTTP Request]
  {ED8C108E-4349-11D2-91A4-00C04F7969E8} <C:\windows\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Scripting.Dictionary]
  {EE09B103-97E0-11CF-978F-00A02463E06F} <C:\windows\system32\scrrun.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
  {F6D90F11-9C73-11D3-B32E-00C04F990BB4} <C:\windows\system32\msxml3.dll, (Signed) Microsoft Corporation>
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[上传到QQ网络硬盘]
  <D:\Program Files\Tencent\AddToNetDisk.htm, N/A>
[使用脱兔下载]
  <D:\Program Files\Tuotu\TT_one.htm, N/A>
[使用脱兔下载全部链接]
  <D:\Program Files\Tuotu\TT_all.htm, N/A>
[使用迅雷下载]
  <D:\Program Files\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
  <D:\Program Files\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
  <D:\Program Files\Tencent\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\Program Files\Tencent\AddEmotion.htm, N/A>
[添加到网络硬盘]
  <D:\Program Files\Tencent\AddToNetDisk.htm, N/A>
[转换为 Adobe PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[转换为现有 PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[转换选定的链接为 Adobe PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html, N/A>
[转换选定的链接为现有 PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html, N/A>
[转换选项为 Adobe PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[转换选项为现有 PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[转换链接目标为 Adobe PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[转换链接目标为现有 PDF]
  <res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
==================================
dustychen
头像被屏蔽
 楼主| 发表于 2008-9-25 20:28:31 | 显示全部楼层
正在运行的进程
[PID: 860 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1444 / SYSTEM][\??\C:\windows\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1660 / SYSTEM][\??\C:\windows\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[PID: 1992 / SYSTEM][C:\windows\system32\services.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 2028 / SYSTEM][C:\windows\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[PID: 1188 / SYSTEM][C:\windows\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1348 / NETWORK SERVICE][C:\windows\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1536 / SYSTEM][C:\windows\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1684 / NETWORK SERVICE][C:\windows\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 988 / CYL][C:\windows\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL]  [Symantec Corporation, 4.0.0.123]
    [D:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 96]
    [D:\Program Files\Tuotu\TuoTuHelper_v8.dll]  [Tuotu.com, 2.0.0.6]
    [C:\WINDOWS\system32\widgetdownload.dll]  [鱼鱼桌面秀widget插件下载工具, 1.3.0.0]
    [D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.CHS]  [Adobe Systems, Inc., 7.0.0.0]
    [D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
    [C:\windows\System32\spool\DRIVERS\W32X86\3\BRUMF04B.DLL]  [Brother Industries Ltd., 3.07]
    [C:\windows\System32\spool\DRIVERS\W32X86\3\BRLMF04B.DLL]  [Brother Industries Ltd., 3.07]
    [C:\windows\System32\spool\DRIVERS\W32X86\3\BROMF04B.DLL]  [Brother Industries Ltd., 3.07]
    [D:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.29]
    [D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll]  [Adobe Systems Incorporated, 7.0.9.2006121800]
    [C:\windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
[PID: 1488 / SYSTEM][C:\windows\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
    [C:\windows\system32\AdobePDF.dll]  [Adobe Systems Incorporated., 7.0.0.00]
    [C:\windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [D:\Program Files\Adobe\Acrobat 7.0\Distillr\AdistRes.CHS]  [, ]
    [C:\windows\system32\CNMLM6e.DLL]  [CANON INC., 1.80.2.50]
    [C:\windows\System32\spool\PRTPROCS\W32X86\CNMPD6e.DLL]  [CANON INC., 1.80.2.50]
    [C:\windows\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll]  [Microsoft Corporation, 6.0.5824.16384 (winmain(wmbla).060911-0725)]
[PID: 1812 / SYSTEM][D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccL80U.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccVrTrst.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\EFACli.dll]  [Symantec Corporation, 1.0.0.152]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvc.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\srtsp32.dll]  [Symantec Corporation, 11.0.0.74]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccIPC.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\DIMASTER.DLL]  [Symantec Corporation, 5.0.0.218]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSet.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\IPSPLUG.DLL]  [Symantec Corporation, 9.0.0.172]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\UIPERFSV.DLL]  [Symantec Corporation, 2009.0.0.165]
    [C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20080923.001\IDSxpx86.dll]  [Symantec Corporation, 9.0.0.172]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CCJOBMGR.DLL]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccGEvt.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccsubeng.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\FWCORE.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\HTEC.DLL]  [Symantec Corporation, 3.0.0.78]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\NCWTRUST.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\AVPSVC32.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\BHSVCPLG.DLL]  [Symantec Corporation, 5.0.0.207]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccGLog.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\SNDSVC.DLL]  [Symantec Corporation, 9.0.0.146]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTLMC.DLL]  [Symantec Corporation, 9.0.0.133]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\COSVCPLG.DLL]  [Symantec Corporation, 2009.0.0.104]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SymNeti.dll]  [Symantec Corporation, 9.0.0.146]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ISDATAPR.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\FWGenPlg.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AVIfc.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AppMgr32.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\BHClient.dll]  [Symantec Corporation, 5.0.0.207]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ISDATASV.DLL]  [Symantec Corporation, 16.0.0.125]
    [C:\WINDOWS\system32\msjetoledb40.dll]  [, ]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTLMS.DLL]  [Symantec Corporation, 9.0.0.133]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\HNCORE.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\avModule.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\FWHelper.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\FWSetup.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coDataPr.dll]  [Symantec Corporation, 2009.0.0.104]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\IMCfg.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\QBackup.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccScanw.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ecmldr32.DLL]  [Symantec Corporation, 71.3.0.25]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSEBind.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\HTecSub.dll]  [Symantec Corporation, 3.0.0.78]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\bbRGen.dll]  [Symantec Corporation, 5.0.0.207]
[PID: 924 / CYL][C:\windows\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
[PID: 1208 / CYL][D:\Program Files\鱼鱼桌面\FishDesk.exe]  [鱼鱼软件, 2.1.2.903]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL]  [Symantec Corporation, 4.0.0.123]
    [C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\pdm.dll]  [Microsoft Corporation, 7.10.3077]
    [C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\2052\mdmui.dll]  [Microsoft Corporation, 7.10.3077]
    [C:\windows\system32\msxml4.dll]  [Microsoft Corporation, 4.20.9848.0]
[PID: 596 / CYL][D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccL80U.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccVrTrst.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\EFACli.dll]  [Symantec Corporation, 1.0.0.152]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SymNeti.dll]  [Symantec Corporation, 9.0.0.146]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccIPC.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvc.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\srtsp32.dll]  [Symantec Corporation, 11.0.0.74]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\UIHOST.DLL]  [Symantec Corporation, 2009.0.0.165]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\NPCTRAY.DLL]  [Symantec Corporation, 2009.0.0.165]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\isDataPr.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\AVPAPP32.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\BHCLIENT.DLL]  [Symantec Corporation, 5.0.0.207]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AVIfc.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSet.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL]  [Symantec Corporation, 4.0.0.123]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccJobMgr.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccGEvt.dll]  [Symantec Corporation, 108.0.0.126]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CCEMLPXY.DLL]  [Symantec Corporation, 108.0.0.126]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coDataPr.dll]  [Symantec Corporation, 2009.0.0.104]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTALDIS.DLL]  [Symantec Corporation, 9.0.0.133]
    [D:\Program Files\Norton Internet Security\MUI\16.0.0.125\04\02\cltRes.loc]  [Symantec Corporation, 9.0.0.133]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SymRedir.dll]  [Symantec Corporation, 9.0.0.146]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\FWSESAL.DLL]  [Symantec Corporation, 16.0.0.125]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ACCTMGR.DLL]  [Symantec Corporation, 2009.0.0.104]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\SDKCMN.DLL]  [Symantec Corporation, 4.0.0.44]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTLMC.DLL]  [Symantec Corporation, 9.0.0.133]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\UIALERT.DLL]  [Symantec Corporation, 2009.0.0.165]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\asFilter.dll]  [Symantec Corporation, 4.0.0.123]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\asUniPlg.dll]  [Symantec Corporation, 4.0.0.123]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AVMail.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AppMgr32.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\NPCStatus.dll]  [Symantec Corporation, 2009.0.0.165]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\hsui.dll]  [Symantec Corporation, 2009.0.0.165]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\cltui.dll]  [Symantec Corporation, 2009.0.0.165]
    [C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\CLT\cltLMSx.dll]  [Symantec Corporation, 9.0.0.133]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\isPwd.dll]  [Symantec Corporation, 16.0.0.125]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SYMHTML.DLL]  [Symantec Corporation, 3.0.0.149]
    [D:\Program Files\Norton Internet Security\Engine\16.0.0.125\uiPerfsv.dll]  [Symantec Corporation, 2009.0.0.165]
[PID: 2628 / SYSTEM][C:\WINDOWS\system32\wbem\wmiprvse.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]
[PID: 1904 / CYL][D:\下载\sreng\SREngLdr.EXE]  [Smallfrogs Studio, 2.6.12.1018]
[PID: 1164 / CYL][D:\下载\sreng\SREecd55647.EXE]  [Smallfrogs Studio, 2.6.12.1018]
    [D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL]  [Symantec Corporation, 4.0.0.123]
    [D:\下载\sreng\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]
==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件

==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1208, D:\PROGRAM FILES\鱼鱼桌面\FISHDESK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1904, D:\下载\SRENG\SRENGLDR.EXE]
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================

[/CODE]
绯你不乖
发表于 2008-9-25 20:29:14 | 显示全部楼层
我也下个这个东西查查看。

[ 本帖最后由 xupejoy 于 2008-9-25 20:33 编辑 ]
dustychen
头像被屏蔽
 楼主| 发表于 2008-9-25 20:32:21 | 显示全部楼层
日志见附件。
具体症状是:
NIS2009简中版,没有多余的开机启动项合服务,但是开机巨慢。
但是开机后运行稳定,系统没有被拖慢的迹象。
再次感谢大家的意见!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
dustychen
头像被屏蔽
 楼主| 发表于 2008-9-25 20:33:52 | 显示全部楼层
原帖由 xupejoy 于 2008-9-25 20:29 发表
我也下个这个东西查查看。


除了一个NIS2009还有一个鱼鱼桌面秀,没有了。
ttttaaaa
发表于 2008-9-25 21:16:12 | 显示全部楼层
好多字- -
你有开启动时载入那个选项么?
随便瞟了一下好像也没什么特别奇怪的
dustychen
头像被屏蔽
 楼主| 发表于 2008-9-25 21:18:54 | 显示全部楼层
原帖由 ttttaaaa 于 2008-9-25 21:16 发表
好多字- -
你有开启动时载入那个选项么?
随便瞟了一下好像也没什么特别奇怪的


回LS的,这个开了。
是手动开启的,我想开机不自动载入难道还要我手动点不成?
想了想就把它设置为自动开启了。

[ 本帖最后由 dustychen 于 2008-9-25 21:21 编辑 ]
ttttaaaa
发表于 2008-9-25 21:31:01 | 显示全部楼层
关了试试
据说启动时载入是扫描内存- -
如果找不到原因可以把日志直接发到诺顿的客户支持邮件去问
dustychen
头像被屏蔽
 楼主| 发表于 2008-9-25 22:23:25 | 显示全部楼层
原帖由 ttttaaaa 于 2008-9-25 21:31 发表
关了试试
据说启动时载入是扫描内存- -
如果找不到原因可以把日志直接发到诺顿的客户支持邮件去问


谢谢ttttaaaa!
正是这个东西,现在关了。电脑已经恢复正常,开机启动30秒。真的很快!
^_^
晚上问了诺顿的在线客服,竟然说NIS2009没有发布,所以不能回答我的问题。。。
还警告我说去非官方网站下载,后果自负之类的话。。。
对老赛家的服务,无语了。。。
以前用KIS的时候,那个服务态度叫好啊。。。

[ 本帖最后由 dustychen 于 2008-9-25 22:29 编辑 ]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-29 08:37 , Processed in 0.128422 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表