查看: 3164|回复: 10
收起左侧

[已解决] 求助,浏览网页后卡巴自动关闭,之后就无法启动

 关闭 [复制链接]
风暴金属
发表于 2007-4-3 08:07:45 | 显示全部楼层 |阅读模式
当时浏览网页的时候,突然跳出个什么80端口被关闭,然后卡巴的图标就黑了,重启机子卡巴也没有自动跟着启动,手动启动卡巴也没反应,请问这是怎么回事啊?
wangjay1980
发表于 2007-4-3 08:13:42 | 显示全部楼层
系统时间被改
风暴金属
 楼主| 发表于 2007-4-3 08:59:31 | 显示全部楼层

能告诉我怎么修改么?

风暴金属
 楼主| 发表于 2007-4-3 09:05:10 | 显示全部楼层

我看了当时电脑右下角的时间显示,没错~~~

wangjay1980
发表于 2007-4-3 10:15:48 | 显示全部楼层
查查毒吧,估计已经中了,现在还是启动不了卡吧?
风暴金属
 楼主| 发表于 2007-4-3 19:39:06 | 显示全部楼层

是啊~~~还是无法启动,卡巴也没查出什么来!

风暴金属
 楼主| 发表于 2007-4-3 19:40:12 | 显示全部楼层

晕,瞧我这话说的,卡巴都启动不了,还查什么哦

wangjay1980
发表于 2007-4-3 19:53:14 | 显示全部楼层
用SRE扫个报告看看
鸟逗
发表于 2007-4-3 20:34:36 | 显示全部楼层
我也中了此毒,有什么办法没有啊??
风暴金属
 楼主| 发表于 2007-4-3 20:47:27 | 显示全部楼层

刚扫的报告,麻烦给看看



  1. 2007-04-03,20:36:49

  2. System Repair Engineer 2.4.12.806
  3. Smallfrogs ([url]http://www.KZTechs.com[/url])

  4. Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

  5. 以下内容被选中:
  6.     所有的启动项目(包括注册表、启动文件夹、服务等)
  7.     浏览器加载项
  8.     正在运行的进程(包括进程模块信息)
  9.     文件关联
  10.     Winsock 提供者
  11.     Autorun.inf
  12.     HOSTS 文件


  13. 启动项目
  14. 注册表
  15. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  16.     <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
  17.     <KvXP><; "D:\各类安~1\kv2005\KV2005\KvXP.kxp" /ScanBoot>  [N/A]
  18.     <pyjj><D:\各类安装程序\陈桥五笔\jj4\jjsvr4.exe>  [加加在线]
  19. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  20.     <IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>  [(Verified)Microsoft Corporation]
  21.     <BigDogPath><; C:\WINDOWS\VM_STI.EXE USB PC Camera 301P>  [N/A]
  22.     <KvMonXP><; "D:\各类安~1\kv2005\KV2005\KVMonXP.kxp" /auto>  [N/A]
  23.     <KernelFaultCheck><%systemroot%\system32\dumprep 0 -k>  [N/A]
  24.     <StormCodec_Helper><"D:\各类安装程序\暴风影音\Storm Codec\StormSet.exe" /S /opti>  []
  25.     <TkBellExe><; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot>  [RealNetworks, Inc.]
  26.     <DAEMON Tools-2052><"C:\Program Files\D-Tools\daemon.exe"  -lang 2052>  [DAEMON'S HOME]
  27.     <winform><; C:\WINDOWS\winform.exe>  []
  28.     <kav><"D:\各类安装程序\卡巴斯基\avp.exe">  [Kaspersky Lab]
  29. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  30.     <shell><Explorer.exe crs.exe>  []
  31.     <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
  32.     <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
  33. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
  34.     <WinlogonNotify: klogon><C:\WINDOWS\system32\klogon.dll>  [Kaspersky Lab]
  35. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  36.     <IMJPMIG8.1><; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [N/A]
  37.     <PHIME2002A><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Publisher]
  38.     <PHIME2002ASync><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]

  39. ==================================
  40. 启动文件夹
  41. [QQ游戏启动加速程序]
  42.   <C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk --> D:\各类安~1\QQGame\Accel.exe [深圳市腾讯计算机系统有限公司]><N>

  43. ==================================
  44. 服务
  45. [51067C7B / 51067C7B][Stopped/Auto Start]
  46.   <C:\WINDOWS\system32\51067C7B.EXE -service><Microsoft Corporation>
  47. [卡巴斯基反病毒软件6.0 / AVP][Stopped/Auto Start]
  48.   <D:\各类安装程序\卡巴斯基\avp.exe -r><Kaspersky Lab>
  49. [Human Interface Device Access / HidServ][Stopped/Disabled]
  50.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  51. [InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
  52.   <"C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe"><Macrovision Corporation>
  53. [KVSrvXP / KVSrvXP][Stopped/Auto Start]
  54.   <><N/A>
  55. [KVWSC / KVWSC][Stopped/Auto Start]
  56.   <"D:\各类安装程序\kv2005\KV2005\kvwsc.exe"><N/A>

  57. ==================================
  58. 驱动程序
  59. [00001d5d / 00001d5d][Stopped/Boot Start]
  60.   <\SystemRoot\system32\drivers\00001d5d.SYS><N/A>
  61. [Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Running/Manual Start]
  62.   <system32\drivers\ac97intc.sys><Intel Corporation>
  63. [AliIde / AliIde][Stopped/Boot Start]
  64.   <\SystemRoot\System32\DRIVERS\aliide.sys><N/A>
  65. [CmdIde / CmdIde][Running/Boot Start]
  66.   <\SystemRoot\System32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
  67. [d347bus / d347bus][Running/Boot Start]
  68.   <\SystemRoot\system32\DRIVERS\d347bus.sys><>
  69. [d347prt / d347prt][Running/Boot Start]
  70.   <\SystemRoot\System32\Drivers\d347prt.sys><>
  71. [kl1 / kl1][Running/Boot Start]
  72.   <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
  73. [klif / klif][Running/System Start]
  74.   <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
  75. [kmsinput / kmsinput][Stopped/Manual Start]
  76.   <\??\C:\WINDOWS\system32\drivers\kmsinput.sys><N/A>
  77. [KSysCall / KSysCall][Stopped/System Start]
  78.   <\??\D:\各类安装程序\kv2005\KV2005\KSysCall.sys><N/A>
  79. [KVDriver for NT (KVDP_2) / KVDP_2][Stopped/Manual Start]
  80.   <\??\D:\各类安~1\kv2005\KV2005\KVDP_2.sys><N/A>
  81. [MegaIDE / MegaIDE][Running/Boot Start]
  82.   <\SystemRoot\System32\DRIVERS\MegaIDE.sys><LSI Logic Corporation.>
  83. [ndcia / ndcia][Stopped/Manual Start]
  84.   <2 - 系统找不到指定的文件。
  85. ><N/A>
  86. [npkcrypt / npkcrypt][Running/Auto Start]
  87.   <\??\D:\各类安装程序\qq2004\QQ2006\新建文件夹\npkcrypt.sys><INCA Internet Co., Ltd.>
  88. [nv / nv][Running/Manual Start]
  89.   <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
  90. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  91.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  92. [romman / romman][Stopped/System Start]
  93.   <2 - 系统找不到指定的文件。
  94. ><N/A>
  95. [Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Running/Manual Start]
  96.   <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
  97. [Secdrv / Secdrv][Running/Auto Start]
  98.   <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
  99. [SSProt / SSProt][Stopped/Boot Start]
  100.   <\SystemRoot\system32\drivers\SSProt.sys><腾讯科技(深圳)有限公司>
  101. [stdio / stdio][Running/Auto Start]
  102.   <\??\C:\WINDOWS\system32\drivers\stdio.sys><Microsoft Corporation>
  103. [World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
  104.   <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
  105. [USB PC Camera 301P / ZSMC301b][Running/Manual Start]
  106.   <System32\Drivers\usbVM31b.sys><VM>

  107. ==================================
  108. 浏览器加载项
  109. [Thunder Browser Helper]
  110.   {30EA3130-39DA-4E20-8B0D-4E03F37A8DBF} <D:\各类安装程序\迅雷\ComDlls\XunLeiBHO_006.dll, Thunder Networking Technologies,LTD>
  111. []
  112.   {30ea3131-39da-4e20-8b0d-4e03f37a8dbf} <C:\WINDOWS\system32\4e20cfsb.dll, N/A>
  113. []
  114.   {9d8a85f8-d549-4a45-ae2b-1b294ae19f4f} <C:\WINDOWS\system32\4a45ntos.dll, N/A>
  115. [IeCatch2 Class]
  116.   {A5366673-E8CA-11D3-9CD9-0090271D075B} <D:\各骼类喟安瞺~1\网?际士快斐车礬\FLASHGET\jccatch.dll, N/A>
  117. [启动迅雷5]
  118.   {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <D:\各类安装程序\迅雷\Thunder.exe, Thunder Networking Technologies,LTD>
  119. [Web反病毒保护]
  120.   {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <D:\各类安装程序\卡巴斯基\scieplugin.dll, Kaspersky Lab>
  121. [@shdoclc.dll,-866]
  122.   {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
  123. [QQ]
  124.   {c95fe080-8f5d-11d2-a20b-00aa003c157b} <D:\各类安装程序\qq2004\QQ2006\新建文件夹\QQ.EXE, TENCENT>
  125. [d549]
  126.   {DFCB34B6-902D-426E-AE2B-1B294AE19F4F} <C:\WINDOWS\system32\4a45ntos.dll, N/A>
  127. [Rising Web Scan Object]
  128.   {E4E2F180-CB8B-4DE9-ACBB-DA745D3BA153} <C:\WINDOWS\Downloaded Program Files\OL2005.dll, Beijing Rising Technology Co., Ltd.>
  129. [Windows Media Player]
  130.   {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
  131. [HTML Document]
  132.   {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\Mshtml.dll, N/A>
  133. [DHTML Edit Control Safe for Scripting for IE5]
  134.   {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\WINDOWS\system32\dllcache\dhtmled.ocx, Microsoft Corporation>
  135. [Thunder Browser Helper]
  136.   {30EA3130-39DA-4E20-8B0D-4E03F37A8DBF} <D:\各类安装程序\迅雷\ComDlls\XunLeiBHO_006.dll, Thunder Networking Technologies,LTD>
  137. []
  138.   {30EA3131-39DA-4E20-8B0D-4E03F37A8DBF} <C:\WINDOWS\system32\4e20cfsb.dll, N/A>
  139. [Windows Media Player]
  140.   {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  141. [Microsoft Web 浏览器]
  142.   {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
  143. []
  144.   {9D8A85F8-D549-4A45-AE2B-1B294AE19F4F} <C:\WINDOWS\system32\4a45ntos.dll, N/A>
  145. [IeCatch2 Class]
  146.   {A5366673-E8CA-11D3-9CD9-0090271D075B} <D:\各骼类喟安瞺~1\网?际士快斐车礬\FLASHGET\jccatch.dll, N/A>
  147. [RDS.DataSpace]
  148.   {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
  149. [Shockwave Flash Object]
  150.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
  151. [d549]
  152.   {DFCB34B6-902D-426E-AE2B-1B294AE19F4F} <C:\WINDOWS\system32\4a45ntos.dll, N/A>
  153. [&使用迅雷下载]
  154.   <D:\各类安装程序\迅雷\Program\geturl.htm, N/A>
  155. [&使用迅雷下载全部链接]
  156.   <D:\各类安装程序\迅雷\Program\getallurl.htm, N/A>
  157. [上传到QQ网络硬盘]
  158.   <D:\各类安装程序\qq2004\QQ2006\新建文件夹\AddToNetDisk.htm, N/A>
  159. [使用网际快车下载]
  160.   <, N/A>
  161. [使用网际快车下载全部链接]
  162.   <, N/A>
  163. [导出到 Microsoft Office Excel(&X)]
  164.   <res://D:\各类安~1\office\OFFICE11\EXCEL.EXE/3000, N/A>
  165. [添加到QQ自定义面板]
  166.   <D:\各类安装程序\qq2004\QQ2006\新建文件夹\AddPanel.htm, N/A>
  167. [添加到QQ表情]
  168.   <D:\各类安装程序\qq2004\QQ2006\新建文件夹\AddEmotion.htm, N/A>
  169. [用QQ彩信发送该图片]
  170.   <D:\各类安装程序\qq2004\QQ2006\新建文件夹\SendMMS.htm, N/A>

  171. ==================================
  172. 正在运行的进程
  173. [PID: 500][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  174. [PID: 556][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  175.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  176. [PID: 580][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  177.     [C:\WINDOWS\system32\klogon.dll]  [Kaspersky Lab, 6.0.0.299]
  178.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  179.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  180.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  181. [PID: 624][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  182.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  183. [PID: 636][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  184.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  185.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  186. [PID: 800][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  187.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  188. [PID: 844][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  189.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  190.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  191. [PID: 940][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  192.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  193.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  194. [PID: 1032][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  195.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  196.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  197. [PID: 1112][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  198.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  199. [PID: 1228][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
  200.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  201.     [C:\WINDOWS\system32\mdimon.dll]  [Microsoft Corporation, 11.3.1897.0]
  202.     [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll]  [Microsoft Corporation, 11.3.1897.0]
  203.     [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll]  [Windows (R) 2000 DDK provider, 5.00.2195.1620]
  204. [PID: 560][C:\WINDOWS\Explorer.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  205.     [C:\WINDOWS\system32\51067C7B.DLL]  [Microsoft Corporation, ]
  206.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  207.     [C:\WINDOWS\system32\ntmsusr.dll]  [N/A, ]
  208.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  209.     [D:\各类安装程序\迅雷\ComDlls\XunLeiBHO_006.dll]  [Thunder Networking Technologies,LTD, 5, 0, 0, 3]
  210.     [D:\各类安装程序\office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
  211.     [D:\各类安装程序\解压缩\rarext.dll]  [N/A, ]
  212.     [D:\各类安装程序\强制删除工具\Unlocker\UnlockerCOM.dll]  [N/A, ]
  213.     [D:\各类安装程序\卡巴斯基\shellex.dll]  [Kaspersky Lab, 6.0.0.299]
  214. [PID: 1084][C:\WINDOWS\system32\crs.exe]  [N/A, ]
  215. [PID: 1320][C:\Program Files\D-Tools\daemon.exe]  [DAEMON'S HOME, 3.47.0.0]
  216.     [C:\WINDOWS\daemon.dll]  [, 3.47.0.0]
  217.     [C:\Program Files\D-Tools\PFCTOC.DLL]  [Padus(R), Inc., 1, 0, 0, 12]
  218.     [C:\Program Files\D-Tools\Plugins\Images\ccdmount.dll]  [GENERIC, 1.02.0.0]
  219.     [C:\Program Files\D-Tools\Plugins\Images\mdsmount.dll]  [GENERIC, 1.01.0.0]
  220.     [C:\Program Files\D-Tools\Plugins\Images\pdimount.dll]  [GENERIC, 1.01.0.0]
  221.     [C:\Program Files\D-Tools\Plugins\Images\nrgmount.dll]  [GENERIC, 1.02.0.0]
  222.     [C:\Program Files\D-Tools\Plugins\Images\bw5mount.dll]  [, 1.0.2.0]
  223. [PID: 1588][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  224. [PID: 1632][D:\各类安装程序\陈桥五笔\jj4\jjsvr4.exe]  [加加在线, 4.0.0.15]
  225. [PID: 1044][D:\各类安装程序\傲游浏览器\Maxthon\Maxthon.exe]  [Maxthon International Ltd., 1, 5, 9, 80]
  226.     [D:\各类安装程序\傲游浏览器\Maxthon\maxzlib.dll]  [ , 1, 0, 0, 2]
  227.     [D:\各类安装程序\迅雷\ComDlls\XunLeiBHO_006.dll]  [Thunder Networking Technologies,LTD, 5, 0, 0, 3]
  228.     [C:\WINDOWS\system32\odbcbcp.dll]  [Microsoft Corporation, 2000.085.1117.00 (xpsp_sp2_rtm.040803-2158)]
  229.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  230.     [D:\各类安装程序\傲游浏览器\Maxthon\Services\RealTime\real_time.dll]  [, 1, 0, 0, 1]
  231.     [C:\WINDOWS\system32\CHENHU4.IME]  [chenhu, 5.5]
  232.     [C:\WINDOWS\system32\PYJJ4.IME]  [加加在线, 4.0.0.12]
  233.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  234.     [C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
  235. [PID: 3524][D:\各类安装程序\迅雷\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5, 5, 2, 252]
  236.     [D:\各类安装程序\迅雷\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
  237.     [D:\各类安装程序\迅雷\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 11, 2, 22]
  238.     [D:\各类安装程序\迅雷\Program\stlport_vc646.dll]  [STLport Consulting, Inc., 4.6.2003.1031]
  239.     [D:\各类安装程序\迅雷\Program\log4cplus.dll]  [, 1, 0, 2, 1]
  240.     [D:\各类安装程序\迅雷\Program\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 11, 2, 22]
  241.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]
  242.     [D:\各类安装程序\迅雷\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 8]
  243.     [D:\各类安装程序\迅雷\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
  244.     [D:\各类安装程序\迅雷\Program\iTargetAD.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 12]
  245.     [C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
  246.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  247.     [D:\各类安装程序\迅雷\Components\DTAG\DTAG.dll]  [, 1, 0, 0, 1]
  248.     [D:\各类安装程序\迅雷\Program\LiveUpdate.dll]  [, 1, 0, 0, 9]
  249.     [D:\各类安装程序\迅雷\Program\UpdateDownload.dll]  [Thunder Networking Technologies,LTD, 1, 0, 1, 8]
  250.     [D:\各类安装程序\迅雷\Components\InMedia\iEmbedShell.dll]  [ , 1, 0, 0, 14]
  251.     [D:\各类安装程序\迅雷\Components\InMedia\iEmbed07.dll]  [ , 3, 1, 0, 58]
  252.     [D:\各类安装程序\迅雷\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
  253.     [D:\各类安装程序\迅雷\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 2, 1, 42]
  254.     [D:\各类安装程序\迅雷\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
  255.     [D:\各类安装程序\迅雷\Components\P4PClient\P4PClient.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 3]
  256.     [D:\各类安装程序\迅雷\Plugins\BhoAdv\bho_adv.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.0]
  257.     [D:\各类安装程序\迅雷\Program\msgmanage.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 15]
  258. [PID: 2496][D:\各类安装程序\解压缩\WinRAR.exe]  [N/A, ]
  259.     [C:\WINDOWS\system32\Audiodev.dll]  [Microsoft Corporation, 5.2.3790.3646 built by: DNSRV(bld4act)]
  260. [PID: 2576][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.032\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
  261.     [C:\WINDOWS\system32\KvWspXp_1.dll]  [JiangMin Ltd., 9, 0, 5, 324]

  262. ==================================
  263. 文件关联
  264. .TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  265. .EXE  OK. ["%1" %*]
  266. .COM  OK. ["%1" %*]
  267. .PIF  OK. ["%1" %*]
  268. .REG  OK. [regedit.exe "%1"]
  269. .BAT  OK. ["%1" %*]
  270. .SCR  OK. ["%1" /S]
  271. .CHM  OK. ["C:\WINDOWS\hh.exe" %1]
  272. .HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
  273. .INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
  274. .INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
  275. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  276. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  277. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]

  278. ==================================
  279. Winsock 提供者
  280. MSAFD Tcpip [TCP/IP]
  281.     C:\WINDOWS\system32\KvWspXp_1.dll(JiangMin Ltd., KVWspXP)
  282. MSAFD Tcpip [UDP/IP]
  283.     C:\WINDOWS\system32\KvWspXp_1.dll(JiangMin Ltd., KVWspXP)
  284. MSAFD Tcpip [RAW/IP]
  285.     C:\WINDOWS\system32\KvWspXp_1.dll(JiangMin Ltd., KVWspXP)

  286. ==================================
  287. Autorun.inf
  288. N/A

  289. ==================================
  290. HOSTS 文件
  291. 127.0.0.1       localhost

  292. ==================================
  293. API HOOK
  294. RVA  错误: LoadLibraryA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF8126B25)
  295. RVA  错误: LoadLibraryExA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF8126D67)
  296. RVA  错误: LoadLibraryExW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF8126F0B)
  297. RVA  错误: LoadLibraryW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF8126C49)
  298. RVA  错误: GetProcAddress (危险等级: 高,  被下面模块所HOOK: Dest Addr: 0xF8126E8F)

  299. ==================================
  300. 隐藏进程
  301. N/A

  302. ==================================


复制代码
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-24 22:59 , Processed in 0.125636 second(s), 17 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表