查看: 2819|回复: 8
收起左侧

求助:浏览器疯狂搜索114,是中了什么招呢

[复制链接]
shbt8274
发表于 2007-2-11 01:08:18 | 显示全部楼层 |阅读模式
求助各位大大:
      日前发现IE很多网页无法打开,大部分都会自动跳出114.vnet.cn的页面,自动随机填入关键词搜索,更严重的时候,IE完全无法操作,浏览器疯狂search.114.vnet.cn里面的各种随机关键词,一直到死机。
      我一直使用KAV+AVG+OP,一般都很少中招。这次的意外惊喜对于菜鸟的我而言实在是不知道如何解决。清空cookie后,情况依旧。KAV没有检出,AVG也没有。闹了半天都不知道是中了什么招了。各位大大经验丰富,有什么好的建议吗?
xiaolong215
发表于 2007-2-11 01:32:50 | 显示全部楼层
我也是菜鸟  给你俩个意见  一 用兔子查下 看看能杀掉不 要不有个 恶意软件清理助手  查查    还有就是把IE卸载 从装下 是是了
红色
发表于 2007-2-11 01:51:15 | 显示全部楼层
这个是电信的114搜索引擎页面,电信和微软合作的结果
用360清除IE相关插件
wangjay1980
发表于 2007-2-11 10:11:36 | 显示全部楼层
用这个试试,你在装个360查查

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
shbt8274
 楼主| 发表于 2007-2-11 20:08:35 | 显示全部楼层

回复 #2 xiaolong215 的帖子

兔子试过了,没有。IE也删除了,重装IE6和7,情况依旧。今天一天都上不了K吧啊。我正在试用清理助手,希望能有好的回复。再次感谢各位大大。
shbt8274
 楼主| 发表于 2007-2-11 21:22:29 | 显示全部楼层
原帖由 <i>wangjay1980</i> 于 2007-2-11 10:11 发表<br />
用这个试试,你在装个360查查
<br />

都试过了,没想到还是查出了不少插件,我还以为已经很小心了呢。现在有些本来不能上的网站能去了。可是还是有依旧的情况,不过已经好很多了,能做到这样已经很满足了。
xianjue114 该用户已被删除
发表于 2007-2-11 22:39:07 | 显示全部楼层
把  电信互联星空 写在了!!!!!!!

[ 本帖最后由 xianjue114 于 2007-2-11 22:40 编辑 ]
wangjay1980
发表于 2007-2-11 23:42:15 | 显示全部楼层
你可以用SRE扫个报告
shbt8274
 楼主| 发表于 2007-2-14 15:15:36 | 显示全部楼层

回复 #8 wangjay1980 的帖子



  1. 2007-02-12,23:18:06

  2. System Repair Engineer 2.3.13.690
  3. Smallfrogs (http://www.KZTechs.com)

  4. Windows XP Professional Service Pack 2 (Build 2600)
  5. - 管理权限用户 - 完整功能

  6. 以下内容被选中:
  7.     所有的启动项目(包括注册表、启动文件夹、服务等)
  8.     浏览器加载项
  9.     正在运行的进程(包括进程模块信息)
  10.     文件关联
  11.     Winsock 提供者
  12.     Autorun.inf
  13.     HOSTS 文件


  14. 启动项目
  15. 注册表
  16. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  17.     <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Corporation]
  18. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  19.     <SystemTray><systray.exe>  [(Verified)Microsoft Corporation]
  20.     <!AVG Anti-Spyware><"D:\AVG\avgas.exe" /minimized>  [Anti-Malware Development a.s.]
  21.     <AVP><"D:\KAV\avp.exe">  [Kaspersky Lab]
  22.     <NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>  [NVIDIA Corporation]
  23.     <Outpost Firewall><D:\Outpost Firewall\outpost.exe /waitservice>  [Agnitum Ltd.]
  24.     <OutpostFeedBack><d:\Outpost Firewall\feedback.exe /dump:os_startup>  [Agnitum Ltd.]
  25. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  26.     <shell><Explorer.exe>  [(Verified)Microsoft Corporation]
  27.     <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Corporation]
  28.     <UIHost><logonui.exe>  [(Verified)Microsoft Corporation]

  29. ==================================
  30. 启动文件夹
  31. [XDICT]
  32.   <C:\Documents and Settings\Liene Lucifer\「开始」菜单\程序\启动\XDICT.lnk --> D:\POWERW~1\XDICT.EXE [Kingsoft Co, Ltd.]><N>

  33. ==================================
  34. 服务
  35. [ASP.NET State Service / aspnet_state][Stopped/Manual Start]
  36.   <C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><Microsoft Corporation>
  37. [AVG Anti-Spyware Guard / AVG Anti-Spyware Guard][Running/Auto Start]
  38.   <d:\AVG\guard.exe><Anti-Malware Development a.s.>
  39. [Kaspersky Anti-Virus 6.0 / AVP][Running/Auto Start]
  40.   <D:\KAV\avp.exe -r><Kaspersky Lab>
  41. [Human Interface Device Access / HidServ][Stopped/Disabled]
  42.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  43. [InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
  44.   <"C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe"><Macrovision Corporation>
  45. [kavsvc / kavsvc][Stopped/Auto Start]
  46.   <><N/A>
  47. [NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
  48.   <C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
  49. [Outpost Firewall Service / OutpostFirewall][Running/Auto Start]
  50.   <d:\Outpost Firewall\outpost.exe /service><Agnitum Ltd.>
  51. [StarWind iSCSI Service / StarWindService][Running/Auto Start]
  52.   <d:\Alcohol 120\StarWind\StarWindService.exe><Rocket Division Software>

  53. ==================================
  54. 驱动程序
  55. [Outpost Firewall PlugIn (ADBLOCK.DLL) / ADBLOCK.DLL][Running/Manual Start]
  56.   <\??\d:\Outpost Firewall\kernel\ADBLOCK.DLL><Agnitum Ltd.>
  57. [Service for WDM 3D Audio Driver / ALCXSENS][Running/Manual Start]
  58.   <system32\drivers\ALCXSENS.SYS><Sensaura Ltd>
  59. [Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  60.   <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
  61. [Outpost Firewall PlugIn (ARP.DLL) / ARP.DLL][Running/Manual Start]
  62.   <\??\d:\Outpost Firewall\kernel\ARP.DLL><Agnitum Ltd.>
  63. [AVG Anti-Spyware Driver / AVG Anti-Spyware Driver][Running/System Start]
  64.   <\??\d:\AVG\guard.sys><N/A>
  65. [AVG Anti-Spyware Clean Driver / AvgAsCln][Running/System Start]
  66.   <System32\DRIVERS\AvgAsCln.sys><GRISOFT, s.r.o.>
  67. [Cardex / Cardex][Stopped/Manual Start]
  68.   <\??\C:\WINDOWS\system32\drivers\TBPANEL.SYS><Windows (R) 2000 DDK provider>
  69. [Outpost Firewall PlugIn (CONTENT.DLL) / CONTENT.DLL][Running/Manual Start]
  70.   <\??\d:\Outpost Firewall\kernel\CONTENT.DLL><Agnitum Ltd.>
  71. [Outpost Firewall PlugIn (DNSCACHE.DLL) / DNSCACHE.DLL][Running/Manual Start]
  72.   <\??\d:\Outpost Firewall\kernel\DNSCACHE.DLL><Agnitum Ltd.>
  73. [dtscsi / dtscsi][Stopped/Manual Start]
  74.   <\SystemRoot\System32\Drivers\dtscsi.sys><DT Soft Ltd.>
  75. [3Com EtherLink XL 90XB/C Adapter Driver / EL90XBC][Running/Manual Start]
  76.   <system32\DRIVERS\el90xbc5.sys><3Com Corporation>
  77. [Outpost Firewall PlugIn (FTPFILT.DLL) / FTPFILT.DLL][Running/Manual Start]
  78.   <\??\d:\Outpost Firewall\kernel\FTPFILT.DLL><Agnitum Ltd.>
  79. [Outpost Firewall PlugIn (HTMLFILT.DLL) / HTMLFILT.DLL][Running/Manual Start]
  80.   <\??\d:\Outpost Firewall\kernel\HTMLFILT.DLL><Agnitum Ltd.>
  81. [Outpost Firewall PlugIn (HTTPFILT.DLL) / HTTPFILT.DLL][Running/Manual Start]
  82.   <\??\d:\Outpost Firewall\kernel\HTTPFILT.DLL><Agnitum Ltd.>
  83. [Outpost Firewall PlugIn (IMAPFILT.DLL) / IMAPFILT.DLL][Running/Manual Start]
  84.   <\??\d:\Outpost Firewall\kernel\IMAPFILT.DLL><Agnitum Ltd.>
  85. [kl1 / kl1][Running/Boot Start]
  86.   <\SystemRoot\System32\Drivers\kl1.sys><Kaspersky Lab>
  87. [Klick / Klick][Running/Boot Start]
  88.   <\SystemRoot\System32\drivers\klick.sys><Kaspersky Lab>
  89. [KLIF / KLIF][Running/Manual Start]
  90.   <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
  91. [Klin / Klin][Running/Boot Start]
  92.   <\SystemRoot\System32\drivers\klin.sys><Kaspersky Lab>
  93. [Klmc / Klmc][Running/System Start]
  94.   <System32\drivers\klmc.sys><Kaspersky Lab>
  95. [Outpost Firewall PlugIn (MAILFILT.DLL) / MAILFILT.DLL][Running/Manual Start]
  96.   <\??\d:\Outpost Firewall\kernel\MAILFILT.DLL><Agnitum Ltd.>
  97. [New0 / New0][Running/Auto Start]
  98.   <\??\C:\WINDOWS\system32\new.sys><N/A>
  99. [Outpost Firewall PlugIn (NNTPFILT.DLL) / NNTPFILT.DLL][Running/Manual Start]
  100.   <\??\d:\Outpost Firewall\kernel\NNTPFILT.DLL><Agnitum Ltd.>
  101. [npkcrypt / npkcrypt][Running/Auto Start]
  102.   <\??\D:\QQ\npkcrypt.sys><INCA Internet Co., Ltd.>
  103. [nv / nv][Running/Manual Start]
  104.   <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
  105. [Motorola USB Device / P2k][Stopped/Manual Start]
  106.   <system32\DRIVERS\P2k.sys><Motorola Inc>
  107. [Outpost Firewall PlugIn (POP3FILT.DLL) / POP3FILT.DLL][Running/Manual Start]
  108.   <\??\d:\Outpost Firewall\kernel\POP3FILT.DLL><Agnitum Ltd.>
  109. [StarForce Protection Environment Driver v6 / prodrv06][Running/System Start]
  110.   <\SystemRoot\System32\drivers\prodrv06.sys><Protection Technology>
  111. [StarForce Protection Helper Driver v2 / prohlp02][Running/Boot Start]
  112.   <\SystemRoot\System32\drivers\prohlp02.sys><Protection Technology>
  113. [StarForce Protection Synchronization Driver v1 / prosync1][Running/Boot Start]
  114.   <\SystemRoot\System32\drivers\prosync1.sys><Protection Technology>
  115. [Outpost Firewall PlugIn (PROTECT.DLL) / PROTECT.DLL][Running/Manual Start]
  116.   <\??\d:\Outpost Firewall\kernel\PROTECT.DLL><Agnitum Ltd.>
  117. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  118.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  119. [PxHelp20 / PxHelp20][Running/Boot Start]
  120.   <\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
  121. [QuakeDRV / QuakeDRV][Stopped/Boot Start]
  122.   <\SystemRoot\system32\DRIVERS\quakedrv.sys><N/A>
  123. [Outpost Firewall Sandbox Driver / SandBox][Running/System Start]
  124.   <\??\d:\Outpost Firewall\kernel\Sandbox.SYS><Agnitum Ltd.>
  125. [Secdrv / Secdrv][Running/Auto Start]
  126.   <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
  127. [Outpost Firewall PlugIn (SECRET.DLL) / SECRET.DLL][Running/Manual Start]
  128.   <\??\d:\Outpost Firewall\kernel\SECRET.DLL><Agnitum Ltd.>
  129. [StarForce Cure Driver (version 1.x) / sfcure01][Stopped/Manual Start]
  130.   <System32\drivers\sfcure01.sys><N/A>
  131. [StarForce Protection Environment Driver (version 1.x) / sfdrv01][Running/Boot Start]
  132.   <\SystemRoot\System32\drivers\sfdrv01.sys><Protection Technology>
  133. [StarForce Protection Helper Driver / sfhlp01][Running/Boot Start]
  134.   <\SystemRoot\System32\drivers\sfhlp01.sys><Protection Technology>
  135. [StarForce Protection Helper Driver (version 2.x) / sfhlp02][Running/Boot Start]
  136.   <\SystemRoot\System32\drivers\sfhlp02.sys><Protection Technology>
  137. [StarForce Protection Synchronization Driver (version 2.x) / sfsync02][Running/Boot Start]
  138.   <\SystemRoot\System32\drivers\sfsync02.sys><Protection Technology>
  139. [sptd / sptd][Running/Boot Start]
  140.   <\SystemRoot\System32\Drivers\sptd.sys><N/A>
  141. [TCP/IP Protocol Driver / Tcpip][Running/System Start]
  142.   <system32\DRIVERS\tcpip.sys><Microsoft Corporation>
  143. [TSP / TSP][Stopped/Manual Start]
  144.   <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
  145. [USB Web Camera / USBZC0301][Stopped/Manual Start]
  146.   <System32\Drivers\usbcam.sys><ZSMC>
  147. [vaxscsi / vaxscsi][Running/Manual Start]
  148.   <\SystemRoot\System32\Drivers\vaxscsi.sys><N/A>
  149. [VCD VNC Virtual Network Adapter / vcddev][Running/Manual Start]
  150.   <system32\DRIVERS\vcdvnic.sys><VNN B.J.>
  151. [Outpost Firewall Kernel Driver / VFILT][Running/System Start]
  152.   <\??\d:\Outpost Firewall\kernel\FILTNT.SYS><Agnitum Ltd.>
  153. [World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
  154.   <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
  155. [Sony Ericsson 520 driver (WDM) / z520bus][Stopped/Manual Start]
  156.   <system32\DRIVERS\z520bus.sys><MCCI>
  157. [Sony Ericsson 520 USB WMC Modem Filter / z520mdfl][Stopped/Manual Start]
  158.   <system32\DRIVERS\z520mdfl.sys><MCCI>
  159. [Sony Ericsson 520 USB WMC Modem Drivers / z520mdm][Stopped/Manual Start]
  160.   <system32\DRIVERS\z520mdm.sys><MCCI>
  161. [Sony Ericsson 520 USB WMC Device Management Drivers / z520mgmt][Stopped/Manual Start]
  162.   <system32\DRIVERS\z520mgmt.sys><MCCI>
  163. [Sony Ericsson 520 USB WMC OBEX Interface Drivers / z520obex][Stopped/Manual Start]
  164.   <system32\DRIVERS\z520obex.sys><MCCI>
  165. [VIMICRO USB PC Camera / ZSMC302][Running/Manual Start]
  166.   <System32\Drivers\usbVM31b.sys><VM>

  167. ==================================
  168. 浏览器加载项
  169. [Outpost Firewall Pro Quick Tune]
  170.   {44627E97-789B-40d4-B5C2-58BD171129A1} <d:\Outpost Firewall\Plugins\BrowserBar\ie_bar.dll, Agnitum Ltd.>

  171. ==================================
  172. 正在运行的进程
  173. [PID: 984][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  174. [PID: 1152][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  175. [PID: 1248][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  176.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  177. [PID: 1412][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  178. [PID: 1424][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  179. [PID: 1672][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  180. [PID: 1744][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  181. [PID: 1840][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  182. [PID: 1984][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  183. [PID: 2028][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  184. [PID: 684][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
  185.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  186. [PID: 940][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  187.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  188.     [C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
  189. [PID: 1076][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  190.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  191. [PID: 1168][D:\AVG\avgas.exe]  [Anti-Malware Development a.s., 7, 5, 0, 50]
  192.     [D:\AVG\engine.dll]  [Anti-Malware Development a.s., 4, 2, 0, 15]
  193.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  194. [PID: 1336][D:\Powerword\XDICT.EXE]  [Kingsoft Co, Ltd., 9, 0, 0, 1]
  195.     [D:\Powerword\accountactivate.dll]  [Kingsoft, 1, 0, 0, 1]
  196.     [D:\Powerword\dicmngr.dll]  [Kingsoft, 2, 0, 0, 1]
  197.     [D:\Powerword\doshow.dll]  [N/A, N/A]
  198.     [D:\Powerword\itextout.dll]  [Kingsoft, 1, 1, 0, 1]
  199.     [D:\Powerword\kpic10.dll]  [N/A, N/A]
  200.     [D:\Powerword\ijl11.dll]  [Intel Corporation, 1.1.2]
  201.     [D:\Powerword\normgrab.dll]  [Kingsoft Co, Ltd., 9, 0, 0, 1]
  202.     [D:\Powerword\tottsengine50.dll]  [Kingsoft Corporation, 1, 0, 0, 1]
  203.     [D:\Powerword\xfile.dll]  [N/A, N/A]
  204.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  205.     [D:\Powerword\DBCore10.dll]  [Kingsoft  Corp., 1, 5, 0, 1]
  206.     [D:\Powerword\XdictGrb.dll]  [Kingsoft Co, Ltd., 9, 0, 0, 2]
  207.     [D:\Powerword\KAVPassport.DLL]  [Kingsoft Corporation, 2005, 9, 27, 0]
  208.     [D:\KAV\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
  209.     [D:\KAV\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
  210.     [D:\KAV\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
  211.     [D:\KAV\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
  212.     [D:\KAV\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
  213.     [d:\kav\params.ppl]  [Kaspersky Lab, 6.0.1.411]
  214.     [d:\kav\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
  215.     [d:\kav\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
  216. [PID: 1068][C:\WINDOWS\system32\inetsrv\inetinfo.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  217.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  218. [PID: 1436][C:\WINDOWS\system32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.10.9133]
  219.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  220. [PID: 1388][d:\Outpost Firewall\outpost.exe]  [Agnitum Ltd., 4.0.590.7218]
  221.     [d:\Outpost Firewall\engine.dll]  [Agnitum Ltd., 4.0.1005.7229]
  222.     [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\MFC80.DLL]  [Microsoft Corporation, 8.00.50727.42]
  223.     [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.42]
  224.     [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.42]
  225.     [d:\Outpost Firewall\op_utils.dll]  [Agnitum Ltd., 4.0.1005.7229]
  226.     [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\MFC80CHS.DLL]  [Microsoft Corporation, 8.00.50727.42]
  227.     [d:\Outpost Firewall\Plugins\Ads\ad_int.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  228.     [d:\Outpost Firewall\Plugins\Content\cnt_int.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  229.     [d:\Outpost Firewall\Plugins\DNS\dns_int.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  230.     [d:\Outpost Firewall\Plugins\File\file_int.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  231.     [d:\Outpost Firewall\Plugins\Web\web_int.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  232.     [d:\Outpost Firewall\Plugins\BrowserBar\op_hdlr.dll]  [Agnitum Ltd., 4.0.1005.7229]
  233.     [d:\Outpost Firewall\op_data.dll]  [Agnitum Ltd., 4.0.1005.7229]
  234.     [d:\Outpost Firewall\netstat.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  235.     [d:\Outpost Firewall\Plugins\Protect\prot_int.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  236.     [d:\Outpost Firewall\Plugins\AntiSpyware\sp_ui.ofp]  [Agnitum Ltd., 4.0.1005.7229]
  237.     [d:\Outpost Firewall\op_cmn.dll]  [Agnitum Ltd., 4.0.1005.7229]
  238.     [d:\Outpost Firewall\Plugins\AntiSpyware\sp_scan.dll]  [Agnitum Ltd., 4.0.1005.7229]
  239.     [d:\Outpost Firewall\zlib.dll]  [N/A, 1.2.3]
  240.     [d:\Outpost Firewall\unrar.dll]  [N/A, N/A]
  241.     [d:\Outpost Firewall\Plugins\AntiSpyware\sp_cure.dll]  [Agnitum Ltd., 4.0.1005.7229]
  242.     [d:\Outpost Firewall\Plugins\AntiSpyware\sp_mon.dll]  [Agnitum Ltd., 4.0.1005.7229]
  243.     [d:\Outpost Firewall\opst_ui.dll]  [Agnitum Ltd., 4.0.1005.7229]
  244.     [d:\Outpost Firewall\op_ctrls.dll]  [Agnitum Ltd., 4.0.1005.7229]
  245. [PID: 1944][C:\WINDOWS\system32\tcpsvcs.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  246.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  247. [PID: 468][C:\WINDOWS\System32\snmp.exe]  [Microsoft Corporation, 5.1.2600.3038 (xpsp_sp2_gdr.061119-2303)]
  248.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  249. [PID: 1092][d:\Alcohol 120\StarWind\StarWindService.exe]  [Rocket Division Software, 2.6.1 Build 0x20050401]
  250.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  251. [PID: 848][C:\WINDOWS\system32\wdfmgr.exe]  [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]
  252. [PID: 2660][C:\WINDOWS\system32\wuauclt.exe]  [Microsoft Corporation, 5.8.0.2469 built by: lab01_n(wmbla)]
  253.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]
  254. [PID: 3424][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  255. [PID: 2400][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  256. [PID: 2968][E:\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.3.13.690]
  257.     [d:\Outpost Firewall\wl_hook.dll]  [Agnitum Ltd., 4.0.1005.7229]

  258. ==================================
  259. 文件关联
  260. .TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  261. .EXE  OK. ["%1" %*]
  262. .COM  OK. ["%1" %*]
  263. .PIF  OK. ["%1" %*]
  264. .REG  OK. [regedit.exe "%1"]
  265. .BAT  OK. ["%1" %*]
  266. .SCR  OK. ["%1" /S]
  267. .CHM  OK. ["C:\WINDOWS\hh.exe" %1]
  268. .HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
  269. .INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  270. .INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  271. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  272. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  273. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]

  274. ==================================
  275. Winsock 提供者
  276. N/A

  277. ==================================
  278. Autorun.inf
  279. N/A

  280. ==================================
  281. HOSTS 文件
  282. 127.0.0.1       localhost

  283. ==================================
  284. API HOOK
  285. 警告!System Repair Engineer 提醒
  286. 你下面的函数内容与预期值不符,他
  287. 们可能被一些恶意的软件所修改:
  288. 入口点错误:NtCreateThread
  289. 入口点错误:NtSetValueKey
  290. 入口点错误:NtTerminateProcess
  291. 入口点错误:ZwCreateThread
  292. 入口点错误:ZwSetValueKey
  293. 入口点错误:ZwTerminateProcess
  294. 入口点错误:CreateProcessA
  295. 入口点错误:CreateProcessW
  296. 入口点错误:CreateRemoteThread

  297. ==================================


复制代码
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-24 02:25 , Processed in 0.137729 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表