查看: 3313|回复: 11
收起左侧

今天刚刚会用SRE·扫了一下,貌似有问题,是不中毒了么?

[复制链接]
marliy
发表于 2007-4-5 21:04:04 | 显示全部楼层 |阅读模式


ssseeerrr.jpg
======
marliy
 楼主| 发表于 2007-4-5 21:04:44 | 显示全部楼层
下面的是日志:


  1. 2007-04-05,15:19:01

  2. System Repair Engineer 2.4.12.806
  3. Smallfrogs ([url]http://www.KZTechs.com[/url])

  4. Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

  5. 以下内容被选中:
  6.     所有的启动项目(包括注册表、启动文件夹、服务等)
  7.     浏览器加载项
  8.     正在运行的进程(包括进程模块信息)
  9.     文件关联
  10.     Winsock 提供者
  11.     Autorun.inf
  12.     HOSTS 文件


  13. 启动项目
  14. 注册表
  15. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  16.     <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
  17. [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  18.     <load><>  [N/A]
  19.     <run><>  [N/A]
  20. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  21.     <Zone Labs Client><C:\Program Files\CA\eTrust Internet Security Suite\eTrust Personal Firewall\ca.exe>  [(Verified)Check Point Software Technologies Inc.]
  22.     <AVP><"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe">  [Kaspersky Lab]
  23.     <Vistadrv><C:\Program Files\Vista\systool\Vistadrive\vsdrv.exe>  []
  24.     <360Safetray><D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\safemon\360Tray.exe /start>  [奇虎网]
  25. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  26.     <shell><Explorer.exe>  [(Verified)]
  27.     <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
  28. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  29.     <AppInit_DLLs><>  [N/A]
  30. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  31.     <UIHost><"\Program Files\Logonui\Logonui.exe">  [N/A]
  32. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
  33.     <WinlogonNotify: klogon><C:\WINDOWS\system32\klogon.dll>  [Kaspersky Lab]
  34. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
  35.     <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows]

  36. ==================================
  37. 启动文件夹
  38. N/A

  39. ==================================
  40. 服务
  41. [ASP.NET State Service / aspnet_state][Stopped/Manual Start]
  42.   <C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><Microsoft Corporation>
  43. [Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
  44.   <C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
  45. [ATI Smart / ATI Smart][Stopped/Auto Start]
  46.   <C:\WINDOWS\system32\ati2sgag.exe><>
  47. [卡巴斯基反病毒6.0 / AVP][Running/Auto Start]
  48.   <"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r><Kaspersky Lab>
  49. [Human Interface Device Access / HidServ][Stopped/Disabled]
  50.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  51. [TrueVector Internet Monitor / vsmon][Running/Auto Start]
  52.   <C:\WINDOWS\system32\ZoneLabs\vsmon.exe -service><Zone Labs, LLC>

  53. ==================================
  54. 驱动程序
  55. [Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  56.   <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
  57. [ati2mtag / ati2mtag][Running/Manual Start]
  58.   <system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
  59. [HelloNet PPPoE 虚拟网卡 / BRPPPOE][Running/Manual Start]
  60.   <system32\DRIVERS\brpppoe.sys><N/A>
  61. [713x_Genius TV Card Capture / Cap7134][Running/Manual Start]
  62.   <system32\DRIVERS\Cap7134.sys><Philips Semiconductors>
  63. [DSDrv4 / DSDrv4][Stopped/Manual Start]
  64.   <\??\c:\PROGRA~1\DScaler\DSDrv4.sys><>
  65. [kl1 / kl1][Running/Boot Start]
  66.   <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
  67. [klif / klif][Running/System Start]
  68.   <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
  69. [nvatabus / nvatabus][Running/Boot Start]
  70.   <\SystemRoot\system32\DRIVERS\nvatabus.sys><NVIDIA Corporation>
  71. [NVIDIA Disk Cache Filter Driver / nvcchflt][Running/Boot Start]
  72.   <\SystemRoot\system32\DRIVERS\nvcchflt.sys><NVIDIA Corporation>
  73. [NVIDIA nForce Networking Controller Driver / NVENETFD][Running/Manual Start]
  74.   <system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
  75. [NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start]
  76.   <system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
  77. [Philips WDM TVTuner (FM1216ME) / PhTVTune][Running/Manual Start]
  78.   <system32\DRIVERS\PhTVTune.sys><Philips Semiconductors>
  79. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  80.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  81. [Secdrv / Secdrv][Stopped/Manual Start]
  82.   <system32\DRIVERS\secdrv.sys><N/A>
  83. [TSP / TSP][Stopped/Manual Start]
  84.   <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
  85. [vsdatant / vsdatant][Running/System Start]
  86.   <System32\vsdatant.sys><Zone Labs, LLC>
  87. [World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
  88.   <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>

  89. ==================================
  90. 浏览器加载项
  91. [超级兔子上网精灵]
  92.   {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <D:\Program Files\MagicSet\haokanbar.dll, Xiang Feng Technology>
  93. [NavigatMon Class]
  94.   {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\safemon\safemon.dll, N/A>
  95. [IE7pro ToolsExt]
  96.   {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} <, N/A>
  97. [Web反病]
  98.   {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll, Kaspersky Lab>
  99. [超级兔子上网精灵]
  100.   {43869BB3-22FD-4F15-9B46-238106BA2F4E} <D:\Program Files\MagicSet\haokanbar.dll, Xiang Feng Technology>
  101. [WUWebControl Class]
  102.   {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
  103. [IE7pro BHO]
  104.   {00011268-E188-40DF-A514-835FCD78B1BF} <, N/A>
  105. [超级兔子上网精灵]
  106.   {43869BB3-22FD-4F15-9B46-238106BA2F4E} <D:\Program Files\MagicSet\haokanbar.dll, Xiang Feng Technology>
  107. [Shell Name Space]
  108.   {55136805-B2DE-11D1-B9F2-00A0C98BC547} <C:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
  109. [WUWebControl Class]
  110.   {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
  111. [超级兔子上网精灵]
  112.   {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <D:\Program Files\MagicSet\haokanbar.dll, Xiang Feng Technology>
  113. [NavigatMon Class]
  114.   {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\safemon\safemon.dll, N/A>
  115. [Shockwave Flash Object]
  116.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
  117. [XML HTTP Request]
  118.   {ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\system32\msxml3.dll, N/A>
  119. [使用迅雷下载]
  120.   <D:\Program Files\Thunder\Program\geturl.htm, N/A>
  121. [使用迅雷下载全部链接]
  122.   <D:\Program Files\Thunder\Program\getallurl.htm, N/A>
  123. [用比特精灵下载(&B)]
  124.   <D:\BitSpirit_3.2.2.160\BitSpirit\bsurl.htm, N/A>

  125. ==================================
  126. 正在运行的进程
  127. [PID: 712][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  128. [PID: 816][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  129. [PID: 932][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  130.     [C:\WINDOWS\system32\Ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4116]
  131.     [C:\WINDOWS\system32\klogon.dll]  [Kaspersky Lab, 6.0.1.411]
  132.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  133. [PID: 1056][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  134. [PID: 1084][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  135. [PID: 1272][C:\WINDOWS\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4116]
  136.     [C:\WINDOWS\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2497]
  137. [PID: 1312][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  138. [PID: 1392][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  139. [PID: 1476][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  140.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  141.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  142. [PID: 1988][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  143.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  144.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  145.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
  146.     [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  147.     [c:\windows\ContextBG.dll]  [Grigri, 1, 0, 0, 1]
  148.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  149.     [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
  150.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\ShellEx.dll]  [Kaspersky Lab, 6.0.1.411]
  151.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
  152.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
  153.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HSTxtCap.dll]  [Hyperionics Technology LLC, 1, 0, 3, 0]
  154. [PID: 552][D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\safemon\360Tray.exe]  [奇虎网, 3, 2, 1, 1001]
  155.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  156.     [D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\safemon\SafeKrnl.dll]  [奇虎网, 3, 2, 0, 1001]
  157.     [D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\AntiAdwa.dll]  [360Safe.com, 3, 2, 0, 1001]
  158.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  159.     [D:\精品优化系统软件\360safe_3.0b3\360safe_3.0b3\live.dll]  [360safe.COM, 1, 0, 0, 1011]
  160. [PID: 564][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  161. [PID: 492][C:\Program Files\ADSL拨号王\HNMainUI.exe]  [, 2, 3, 0, 1]
  162.     [C:\Program Files\ADSL拨号王\HNKernel.dll]  [HelloNet, 2.2.0.1]
  163.     [C:\Program Files\ADSL拨号王\HNUtils.dll]  [, 2, 2, 0, 1]
  164.     [C:\Program Files\ADSL拨号王\HNRes_0804.dll]  [, 2, 2, 0, 1]
  165.     [C:\Program Files\ADSL拨号王\plugins\Diagnose.dll]  [HelloNet, 2.2.0.1]
  166. [PID: 736][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  167.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  168.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  169.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
  170.     [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  171.     [c:\windows\ContextBG.dll]  [Grigri, 1, 0, 0, 1]
  172.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\ShellEx.dll]  [Kaspersky Lab, 6.0.1.411]
  173.     [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
  174. [PID: 348][D:\Program Files\Thunder\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5, 5, 4, 268]
  175.     [D:\Program Files\Thunder\Program\msgmanage.dll]  [, 1, 0, 0, 1]
  176.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  177.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  178.     [D:\Program Files\Thunder\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 14]
  179.     [D:\Program Files\Thunder\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 12, 2, 44]
  180.     [D:\Program Files\Thunder\Program\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 12, 2, 44]
  181.     [D:\Program Files\Thunder\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 8]
  182.     [D:\Program Files\Thunder\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
  183.     [D:\Program Files\Thunder\Program\iTargetAD.dll]  [N/A, ]
  184.     [D:\Program Files\Thunder\Components\DiagnoseHelper\DiagnoseHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
  185.     [D:\Program Files\Thunder\Components\PortVerify\PortVerify.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
  186.     [D:\Program Files\Thunder\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
  187.     [D:\Program Files\Thunder\Components\DTAG\DTAG.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
  188.     [D:\Program Files\Thunder\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 1, 0, 3, 14]
  189.     [D:\Program Files\Thunder\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 2, 1, 43]
  190.     [D:\Program Files\Thunder\Components\VPSHELL\VPSHELL.dll]  [, 1, 0, 0, 1]
  191.     [D:\Program Files\Thunder\Components\VPSHELL\VideoPicture.dll]  [XunLei, 1, 0, 0, 1]
  192.     [D:\Program Files\Thunder\Plugins\TingTing\TingTing.dll]  [Thunder Networking Technologies,LTD, 1, 1, 1, 12]
  193.     [D:\Program Files\Thunder\Plugins\BhoAdv\bho_adv.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.0]
  194.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HSTxtCap.dll]  [Hyperionics Technology LLC, 1, 0, 3, 0]
  195. [PID: 2620][D:\Program Files\GreenBrowser380112_DIY\GreenBrowser\GreenBrowser.ExE]  [MoreQuick, 1, 0, 0, 0]
  196.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  197.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  198.     [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  199.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
  200.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\klscav.dll]  [Kaspersky Lab, 6.0.1.411]
  201.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prremote.dll]  [Kaspersky Lab, 6.0.1.411]
  202.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll]  [Kaspersky Lab, 6.0.1.411]
  203.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prkernel.ppl]  [Kaspersky Lab, 6.0.1.411]
  204.     [c:\program files\kaspersky lab\kaspersky anti-virus 6.0\params.ppl]  [Kaspersky Lab, 6.0.1.411]
  205.     [c:\program files\kaspersky lab\kaspersky anti-virus 6.0\pxstub.ppl]  [Kaspersky Lab, 6.0.1.411]
  206.     [c:\program files\kaspersky lab\kaspersky anti-virus 6.0\tempfile.ppl]  [Kaspersky Lab, 6.0.1.411]
  207.     [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
  208.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  209.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HSTxtCap.dll]  [Hyperionics Technology LLC, 1, 0, 3, 0]
  210. [PID: 2892][D:\System Repair Engineer\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
  211.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  212.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
  213.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HSTxtCap.dll]  [Hyperionics Technology LLC, 1, 0, 3, 0]
  214. [PID: 3832][D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HprSnap6.exe]  [Hyperionics Technology LLC, 6, 11, 2, 0]
  215.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTFIL10N.DLL]  [LEAD Technologies, Inc., 10.0.0.024]
  216.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTKRN10N.dll]  [LEAD Technologies, Inc., 10.0.0.024]
  217.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTIMG10N.dll]  [LEAD Technologies, Inc., 10.0.0.018]
  218.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTDIS10N.dll]  [LEAD Technologies, Inc., 10.0.0.024]
  219.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTTWN10N.dll]  [LEAD Technologies, Inc., 10.0.0.024]
  220.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTDLG10N.dll]  [LEAD Technologies, Inc., 10.0.0.024]
  221.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LTEFX10N.dll]  [LEAD Technologies, Inc., 10.0.0.018]
  222.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HprRes6.dll]  [Hyperionics Technology LLC, 6, 10, 1, 0]
  223.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\HSTxtCap.dll]  [Hyperionics Technology LLC, 1, 0, 3, 0]
  224.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
  225.     [C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scrchpg.dll]  [Kaspersky Lab, 1.0.6.411]
  226.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LFFAX10N.DLL]  [LEAD Technologies, Inc., 10.0.0.018]
  227.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LFCMP10N.DLL]  [LEAD Technologies, Inc., 10.0.0.024]
  228.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LFTIF10N.DLL]  [LEAD Technologies, Inc., 10.0.0.022]
  229.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LFLMB10N.DLL]  [LEAD Technologies, Inc., 10.0.0.011]
  230.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LFBMP10N.DLL]  [LEAD Technologies, Inc., 10.0.0.013]
  231.     [D:\Program Files\专业级屏幕抓图工具、可支持游戏和视频\LFPCX10N.DLL]  [LEAD Technologies, Inc., 10.0.0.009]
  232.     [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
  233.     [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]

  234. ==================================
  235. 文件关联
  236. .TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  237. .EXE  OK. ["%1" %*]
  238. .COM  OK. ["%1" %*]
  239. .PIF  OK. ["%1" %*]
  240. .REG  OK. [regedit.exe "%1"]
  241. .BAT  OK. ["%1" %*]
  242. .SCR  OK. ["%1" /S]
  243. .CHM  OK. ["C:\WINDOWS\hh.exe" %1]
  244. .HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
  245. .INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
  246. .INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
  247. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  248. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  249. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]

  250. ==================================
  251. Winsock 提供者
  252. N/A

  253. ==================================
  254. Autorun.inf
  255. N/A

  256. ==================================
  257. HOSTS 文件
  258. 127.0.0.1       localhost

  259. ==================================
  260. API HOOK
  261. RVA  错误: LoadLibraryA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xAAE1BB25)
  262. RVA  错误: LoadLibraryExA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xAAE1BD67)
  263. RVA  错误: LoadLibraryExW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xAAE1BF0B)
  264. RVA  错误: LoadLibraryW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xAAE1BC49)
  265. RVA  错误: GetProcAddress (危险等级: 高,  被下面模块所HOOK: Dest Addr: 0xAAE1BE8F)

  266. ==================================
  267. 隐藏进程
  268. N/A

  269. ==================================


复制代码
marliy
 楼主| 发表于 2007-4-5 21:05:05 | 显示全部楼层
各位大大帮忙看一下吧???
neu21
发表于 2007-4-5 21:32:35 | 显示全部楼层
是卡巴的启动画面
没有问题
wangjay1980
发表于 2007-4-5 21:51:05 | 显示全部楼层
<UIHost><"\Program Files\Logonui\Logonui.exe">  [N/A]
把这个修改为 <UIHost><Logonui.exe>
lynnken
发表于 2007-4-5 21:58:40 | 显示全部楼层
原帖由 wangjay1980 于 2007-4-5 21:51 发表
  [N/A]
把这个修改为  

这样修改,我也试过
但是,重启时WINDOWS会出现一个'BOOT.in'非法的提示画面
倒是可以正常启动
不知道是怎么回事?
会不会是系统优化软件把什么地方改的不能完全恢复了
wangjay1980
发表于 2007-4-5 23:09:37 | 显示全部楼层
你是不是用什么软件修改了启动画面
wangjay1980
发表于 2007-4-5 23:15:12 | 显示全部楼层
用SRE查看你的BOOT.ini,是不是正常的内容
marliy
 楼主| 发表于 2007-4-6 01:33:55 | 显示全部楼层
原帖由 wangjay1980 于 2007-4-5 23:09 发表
你是不是用什么软件修改了启动画面

我的确是把原来系统的启动画面给换了··怎么, 是这个的原因么?
wangjay1980
发表于 2007-4-6 08:39:53 | 显示全部楼层
那就正常了,你还是用这个吧<UIHost><"\Program Files\Logonui\Logonui.exe">  [N/A]这个就是你修改后造成的
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-12-23 03:54 , Processed in 0.127465 second(s), 20 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表