查看: 6521|回复: 17
收起左侧

今日第二帖:下午系统被劫持——晕,这种事情终于让我给碰上了

[复制链接]
jojoliuxiao
头像被屏蔽
发表于 2007-4-2 17:30:06 | 显示全部楼层 |阅读模式
今天上午还美滋滋的发了一个帖子,没想到,下午就出事了!

事情经过:

下午正躺在床上上网,忽然网速变慢,以至于qq、msn都上不去了(大家都知道,一般如果qq都上不去,那网络肯定完蛋!)。我还以为是MDF出了问题,前两天我刚装上MDF,还是菜鸟一个,因此捣鼓了一会MDF,但是网络还是没有反应。因此我怀疑可能是网络的问题。由于我用的是无线路由,断网现象偶尔发生(我偷偷用别人家的热点,没有密码的),我也没有在意。

于是转战单机游戏。因为怕麻烦,没有在麦咖啡的规则里排除游戏,因此,将咖啡规则停掉。当时我玩得是极品飞车, 进入游戏之后,差点没有把我给从床上惊下来,这车子自己会开,我操!我还想的我这电脑再智能,也不至于有自己的思维吧。我呆了一会,意识到:电脑被劫持了!有人在控制我的电脑!!更可恨的是,我居然对电脑失去了控制权!!!


立即解决:

于是我用电脑上的快捷键,立即屏蔽掉了无线网络,这样那个控制电脑的人就无从将他的指令输入电脑里。
然后退出游戏,打开任务管理器,察看进程,没有异常现象。打开avg,利用他的进程察看器,发现有一个叫做talkback.exe的进程,位于c盘,感觉从来没有安装过。于是,结束进程并利用优化大师的智能卸载功能删除程序。
全盘查毒

教训:

事后,我检查了一下麦咖啡的监控日志。发现,
2007-3-28        11:30:36        已由访问保护规则禁止         HSIAO\Owner        C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe        C:\Program Files\Common Files\Network Associates\TalkBack\Data\TalkBack.ini        防病毒爆发控制:将所有共享项设为只读        已阻止的操作: 写入
2007-4-1        10:16:05        已由访问保护规则禁止         HSIAO\Owner        C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe        C:\Program Files\Common Files\Network Associates\TalkBack\Data\TalkBack.ini        防病毒爆发控制:将所有共享项设为只读        已阻止的操作: 写入

警报,由此可见,这家伙几天之前就试图给我装talkback.exe这个软件,但由于规则阻挡没有成功,昨天又又给我装还是没有成功。肯定后来由于我把规则停掉,终于成功,侵入我的电脑。


建议:

奉劝麦友们,不要存在侥幸心理,要时刻保持警惕,尽量不要关闭规则保护。我就是想着,咱一普通老百姓有什么秘密让别人惦记着?但是万一中标,即使没有什么损失,心里也会觉得不爽不是?


疑惑:

我这台电脑就我自己用,从来未借于他人。那个人是怎么进入我的电脑植入远程控制软件的呢?有没有大虾简单说一下原理,以便对症下药。
我只是猜测这次事件是由一个叫做talkback.exe的软件引起的。有没有什么方法测试是否是由其他隐藏更深的软件引起的呢?

我使用的是小邪邪版主的精简版的规则,是否还需要加上一些规则防范这种入侵事件?


谢谢大家!
idey
发表于 2007-4-2 17:50:35 | 显示全部楼层
talkback.exe?什么木马 ?
zea10t
发表于 2007-4-2 17:51:35 | 显示全部楼层
talkback.exe是错误反馈进程吧?还有那个TBMon.exe也是咖啡正常的进程。

从这两条日志看不出什么问题,建议用SREng扫描以下看看。
niuniu7879
发表于 2007-4-2 17:56:02 | 显示全部楼层
谢谢分享经验。我有防火墙的,应该可以防御这种攻击吧
Loneliness
发表于 2007-4-2 18:11:51 | 显示全部楼层
晕。。竟然有这种事。。
等下文
jojoliuxiao
头像被屏蔽
 楼主| 发表于 2007-4-2 18:17:36 | 显示全部楼层
talkback.exe我在网上查了一下,没有确切或具体的说法,好像其他程序也用到他。有可能这个远程控制软件伪装成他或者其他的软件也说不定。甚至说我根本没有找到他
但这个所谓的talkback.exe的确是在没有经过使用者同意的情况下安装的,不管它是正规的还是不正规的也好。

我怀疑是不是现在流行的灰鸽子。我正在找软件查
idey
发表于 2007-4-2 18:33:44 | 显示全部楼层
talkback.exe在那个文件夹下?
小邪邪
发表于 2007-4-2 18:42:51 | 显示全部楼层
TBMon.exe跟TalkBack.ini都是正常的,其它的有待观察
jojoliuxiao
头像被屏蔽
 楼主| 发表于 2007-4-2 20:00:05 | 显示全部楼层
这是我用三楼兄弟提供的工具检查的结果的一部分,希望高手出来解答

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Component Publisher]
    <igfxtray><C:\WINDOWS\system32\igfxtray.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <igfxhkcmd><C:\WINDOWS\system32\hkcmd.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <igfxpers><C:\WINDOWS\system32\igfxpers.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <High Definition Audio Property Page Shortcut><CHDAudPropShortcut.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <EnergyUtility><C:\Program Files\Lenovo\EnergyCut\utilty.exe>  [TODO: <Company name>]
    <EnergyCut><C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe>  []
    <SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <BsMnt><C:\WINDOWS\BisonCam\BsMnt.exe>  []
    <ShStatEXE><"D:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE>  [(Verified)"McAfee, Inc."]
    <McAfeeUpdaterUI><"D:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey>  [(Verified)"McAfee, Inc."]
    <IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>  [(Verified)Microsoft Corporation]
    <!AVG Anti-Spyware><"D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized>  [Anti-Malware Development a.s.]
    <TopDesk><E:\临时下载\TopDesk\TopDesk\topdesk.exe>  [汉化: tracky(tracky2002@163.com)]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{57B86673-276A-48B2-BAE7-C6DBB3020EB8}><d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll>  [Anti-Malware Development a.s.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
    <WinlogonNotify: igfxcui><igfxdev.dll>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
    <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows Component Publisher]

====
jojoliuxiao
头像被屏蔽
 楼主| 发表于 2007-4-2 20:01:36 | 显示全部楼层
正在运行的进程
[PID: 640][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 688][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1060][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [D:\Program Files\McAfee\Common Framework\JrMac.dll]  [McAfee, Inc., 1.0.0.125]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll]  [Anti-Malware Development a.s., 7, 5, 0, 47]
    [C:\Program Files\Lenovo\EnergyCut\HookLib.dll]  [N/A, ]
    [D:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll]  [McAfee, Inc., VSCORE.13.3.1.100.x86]
    [d:\Program Files\Thunder Network\Thunder\Components\VPShell\RealMediaSplitter.ax]  [Gabest, 1, 0, 1, 0]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [C:\WINDOWS\system32\l3codeca.acm]  [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]
    [d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll]  [Thunder Networking Technologies,LTD, 5, 0, 1, 4]
    [d:\Program Files\360safe\safemon\safemon.dll]  [, 3, 2, 0, 1001]
    [d:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [D:\Program Files\Tencent\QQ\qdshm.dll]  [, 1, 0, 101, 20]
    [D:\Program Files\Tencent\QQ\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [D:\Program Files\McAfee\VirusScan Enterprise\shext.dll]  [McAfee, Inc., 8.5.0.781]
    [d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll]  [Anti-Malware Development a.s., 7, 5, 0, 49]
[PID: 2440][C:\WINDOWS\system32\igfxtray.exe]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxress.dll]  [Intel Corporation, 3.0.0.4543]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2456][C:\WINDOWS\system32\hkcmd.exe]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.4543]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2472][C:\WINDOWS\system32\igfxpers.exe]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4543]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2668][C:\Program Files\Lenovo\EnergyCut\utilty.exe]  [TODO: <Company name>, 1.0.0.1]
    [C:\Program Files\Lenovo\EnergyCut\kbdhook.dll]  [N/A, ]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2716][C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe]  [N/A, ]
    [C:\Program Files\Lenovo\EnergyCut\HookLib.dll]  [N/A, ]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2744][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe]  [Synaptics, Inc., 8.0.9 20May05]
    [C:\WINDOWS\system32\SynCOM.dll]  [Synaptics, Inc., 8.0.9 20May05]
    [C:\WINDOWS\system32\SynTPAPI.dll]  [Synaptics, Inc., 8.0.9 20May05]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2828][C:\WINDOWS\BisonCam\BsMnt.exe]  [, 1, 0, 0, 1]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2844][D:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE]  [McAfee, Inc., 8.5.0.830]
    [D:\Program Files\McAfee\VirusScan Enterprise\LockDown.dll]  [McAfee, Inc., VSCORE.13.3.1.100.x86]
    [D:\Program Files\McAfee\VirusScan Enterprise\ftcfg.dll]  [McAfee, Inc., 8.5.0.781]
    [D:\Program Files\McAfee\VirusScan Enterprise\mytilus2.dll]  [McAfee, Inc., VSCORE.13.3.2.101.x86]
    [D:\Program Files\McAfee\VirusScan Enterprise\mytilus.dll]  [McAfee, Inc., VSCORE.13.3.1.100.x86]
    [D:\Program Files\McAfee\VirusScan Enterprise\wmain.dll]  [McAfee, Inc., 8.5.0.781]
    [D:\Program Files\McAfee\VirusScan Enterprise\shutil.dll]  [McAfee, Inc., 8.5.0.830]
    [D:\Program Files\McAfee\VirusScan Enterprise\RES0402\McShield.dll]  [McAfee, Inc., VSCORE.13.3.1.101]
    [D:\Program Files\McAfee\VirusScan Enterprise\Graphics.dll]  [McAfee, Inc., 8.5.0.781]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2852][D:\Program Files\McAfee\Common Framework\UdaterUI.exe]  [McAfee, Inc., 3.6.0.453]
    [D:\Program Files\McAfee\Common Framework\nailog.dll]  [McAfee, Inc., 3.6.0.453]
    [D:\Program Files\McAfee\Common Framework\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [D:\Program Files\McAfee\Common Framework\naCmnLib71.dll]  [McAfee, Inc., 3.6.0.453]
    [D:\Program Files\McAfee\Common Framework\naXML71.dll]  [N/A, ]
    [D:\Program Files\McAfee\Common Framework\NaiSign.DLL]  [N/A, ]
    [C:\WINDOWS\system32\epoPGPSDK.dll]  [PGP Corporation, 3.5.3]
    [D:\Program Files\McAfee\Common Framework\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [D:\Program Files\McAfee\Common Framework\applib.dll]  [McAfee, Inc., 3.6.0.453]
    [D:\Program Files\McAfee\Common Framework\cmalib.dll]  [McAfee, Inc., 3.6.0.453]
    [D:\Program Files\McAfee\Common Framework\0804\UpdRes.dll]  [Network Associates, Inc., 3.5.0.435]
    [D:\Program Files\McAfee\Common Framework\0804\AgentRes.dll]  [Network Associates, Inc., 3.5.0.435]
    [D:\Program Files\McAfee\Common Framework\SecureFrameworkFactory.dll]  [McAfee, Inc., 3.6.0.453]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2912][D:\Program Files\McAfee\Common Framework\McTray.exe]  [McAfee, Inc., 1.0.0.125]
    [D:\Program Files\McAfee\Common Framework\JrMac.dll]  [McAfee, Inc., 1.0.0.125]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 2984][D:\PROGRA~1\NETWOR~1\MCAFEE~1\Firetray.exe]  [McAfee, Inc., 8.5]
    [C:\WINDOWS\system32\FireCL.dll]  [McAfee, Inc., 8.5]
    [C:\WINDOWS\system32\FireCore.dll]  [McAfee, Inc., 2.5]
    [C:\WINDOWS\system32\FireCNL.dll]  [McAfee, Inc., 2.5]
    [d:\PROGRA~1\NETWOR~1\MCAFEE~1\Resource\0804\CLibRL.dll]  [Networks Associates Technology, Inc., 8.5]
    [d:\PROGRA~1\NETWOR~1\MCAFEE~1\nailite.dll]  [Network Associates, Inc., 1.0.452]
    [d:\PROGRA~1\NETWOR~1\MCAFEE~1\Resource\0804\TrayRL.dll]  [Networks Associates Technology, Inc., 8.5]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 3072][D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe]  [Anti-Malware Development a.s., 7, 5, 0, 50]
    [D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\engine.dll]  [Anti-Malware Development a.s., 4, 2, 0, 15]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 3084][E:\临时下载\TopDesk\TopDesk\topdesk.exe]  [汉化: tracky(tracky2002@163.com), 1.4.2]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 3116][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
[PID: 3020][C:\WINDOWS\system32\WISPTIS.EXE]  [Microsoft Corporation, 1.0.2201.0 (xpsp1.020820-1800)]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [C:\Program Files\Common Files\Microsoft Shared\INK\TPCPS.DLL]  [Microsoft Corporation, 1.0.2201.0 (xpsp1.020820-1800)]
[PID: 1668][C:\WINDOWS\system32\igfxsrvc.exe]  [Intel Corporation, 3.0.0.4543]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4543]
    [C:\WINDOWS\system32\igfxdev.dll]  [Intel Corporation, 3.0.0.4543]
[PID: 1908][D:\Program Files\Maxthon\Maxthon.exe]  [Maxthon International Ltd., 1, 5, 9, 80]
    [D:\Program Files\Maxthon\maxzlib.dll]  [ , 1, 0, 0, 2]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll]  [Thunder Networking Technologies,LTD, 5, 0, 1, 4]
    [D:\Program Files\Maxthon\Services\RealTime\real_time.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
[PID: 2392][D:\Program Files\Thunder Network\ThunderMini\Program\ThunderMini.exe]  [Thunder Networking Technologies,LTD, 2, 0, 0, 29]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [D:\Program Files\Thunder Network\ThunderMini\Program\download_interface.dll]  [N/A, ]
    [D:\Program Files\Thunder Network\ThunderMini\Program\UpdateDownload.dll]  [Thunder Networking Technologies,LTD, 1, 0, 1, 6]
    [d:\Program Files\Thunder Network\ThunderMini\Components\InMedia\iEmbedShell.dll]  [ , 1, 0, 0, 6]
    [d:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed08.dll]  [ , 3, 2, 0, 63]
[PID: 2468][d:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5, 6, 0, 280]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [d:\Program Files\Thunder Network\Thunder\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 20]
    [d:\Program Files\Thunder Network\Thunder\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 13, 2, 61]
    [d:\Program Files\Thunder Network\Thunder\Program\stlport_vc646.dll]  [STLport Consulting, Inc., 4.6.2003.1031]
    [d:\Program Files\Thunder Network\Thunder\Program\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 13, 2, 61]
    [d:\Program Files\Thunder Network\Thunder\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 8]
    [d:\Program Files\Thunder Network\Thunder\Program\iTargetAD.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 17]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [d:\Program Files\Thunder Network\Thunder\Components\DiagnoseHelper\DiagnoseHelper.dll]  [Thunder Networking Technologies,LTD, 1, 1, 1, 13]
    [d:\Program Files\Thunder Network\Thunder\Components\PortVerify\PortVerify.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [d:\Program Files\Thunder Network\Thunder\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [d:\Program Files\Thunder Network\Thunder\Components\DTAG\DTAG.dll]  [Thunder Networking Technologies,LTD, 1, 2, 0, 7]
    [d:\Program Files\Thunder Network\Thunder\Components\DTAG\ExtractMediaTag.dll]  [Thunder Networking Technologies,LTD, 1, 2, 0, 7]
    [d:\Program Files\Thunder Network\Thunder\Program\LiveUpdate.dll]  [Thunder Networking Technologies,LTD, 1, 1, 1, 20]
    [d:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll]  [ , 1, 0, 0, 15]
    [d:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed08.dll]  [ , 3, 2, 0, 63]
    [d:\Program Files\Thunder Network\Thunder\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 20]
    [d:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 13, 2, 61]
    [d:\Program Files\Thunder Network\Thunder\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 9]
    [d:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 18]
    [d:\Program Files\Thunder Network\Thunder\Program\XLNet.Dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 6]
    [d:\Program Files\Thunder Network\Thunder\Components\VPSHELL\VPSHELL.dll]  [, 1, 2, 0, 5]
    [d:\Program Files\Thunder Network\Thunder\Components\VPSHELL\VideoPicture.dll]  [XunLei, 1, 2, 0, 5]
    [d:\Program Files\Thunder Network\Thunder\Components\Tips\TipsClient.dll]  [Thunder Networking Technologies,LTD, 2, 1, 1, 50]
    [d:\Program Files\Thunder Network\Thunder\Components\UserExperience\UserExperience.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [d:\Program Files\Thunder Network\Thunder\Plugins\BhoAdv\bho_adv.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.0]
[PID: 3008][E:\临时下载\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [E:\临时下载\TopDesk\TopDesk\topdesk.dll]  [N/A, ]
    [E:\临时下载\sreng2\Plugins\NWMON.SRE]  [Smallfrogs Studio, 1, 0, 0, 8]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-23 04:36 , Processed in 0.125480 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表