各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2007-04-10 11:58:12
诊断平台: Microsoft Windows XP Service Pack 1
IE版本: Internet Explorer V6.0.2800.1106 Build:62800.1106
计算机物理内存:254MB - 当前可用内存:46MB
100 - 未知 - Process: guard.exe [AVG Anti-Spyware guard] -
100 - 未知 - Process: jiajiasr.exe [加加输入法 4.01 作者:孙百川] - C:\Program Files\jj4\jiajiasr.exe
100 - 未知 - Process: msdtc.exe [] - C:\WINDOWS\msdtc.exe
R0 - 未知 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.qu123.com
R0 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.jjol.cn
O4 - 未知 - HKCU\..\Run: [jiajiasr] [加加输入法 4.01 作者:孙百川] C:\Program Files\jj4\jiajiasr.exe
O8 - 未知 - Extra context menu item: &使用快车(FlashGet)下载 - F:\PROGRA~1\FlashGet\jc_link.htm
O8 - 未知 - Extra context menu item: &使用快车(FlashGet)下载全部链接 - F:\PROGRA~1\FlashGet\jc_all.htm
O8 - 未知 - Extra context menu item: 上传到QQ网络硬盘 - D:\qq\AddToNetDisk.htm
O8 - 未知 - Extra context menu item: 添加到QQ自定义面板 - D:\qq\AddPanel.htm
O8 - 未知 - Extra context menu item: 添加到QQ表情 - D:\qq\AddEmotion.htm
O8 - 未知 - Extra context menu item: 用QQ彩信发送该图片 - D:\qq\SendMMS.htm
O9 - 未知 - Extra button: 启动迅雷5(HKLM) - E:\迅雷\Thunder.exe
O9 - 未知 - Extra button: 腾讯QQ(HKLM) - D:\qq\QQ.EXE
O9 - 未知 - Extra button: 快车(FlashGet)(HKLM) - F:\Program Files\FlashGet\FlashGet.exe
O14 - 未知 - IERESET.INF: START_PAGE_URL=about:blank
O23 - 未知 - Service: Windows Distributed Transaction Process Coordinator [Coordinates transactions that span multiple resource managers, such as databases, message queues, ] - "C:\WINDOWS\msdtc.exe" - (running)
=======================================
100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: WINLOGON.EXE [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: ati2evxx.exe [ati显卡相关后台程序。] - C:\WINDOWS\System32\Ati2evxx.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k LocalService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: p2psvr.exe [搜狗下载加速器。] - C:\Program Files\Common Files\Sogou PXP\p2psvr.exe
100 - 安全 - Process: snmp.exe [windows简单的网络协议代理(snmp)用于监听和发送请求到适当的网络部分。] - C:\WINDOWS\System32\snmp.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k imgsvc
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] - C:\WINDOWS\System32\wdfmgr.exe
100 - 安全 - Process: ati2evxx.exe [ati显卡相关后台程序。] - C:\WINDOWS\system32\Ati2evxx.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: CnxDslTb.exe [adsl modem相关软件。] - C:\Program Files\ADSL\AccessRunner ADSL\CnxDslTb.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: avgas.exe [一款杀毒软件AVG的相关程序。] - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\System32\ctfmon.exe
100 - 安全 - Process: 360tray.exe [360安全卫士实时保护模块] - D:\360\360safe\safemon\360Tray.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] - C:\WINDOWS\System32\conime.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - D:\360\360safe\360safe.exe
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\System32\blank.htm
O2 - 安全 - BHO: (Adobe PDF Reader Link Helper) - [Adobe Reader, 查看和打印 Adobe 便携文档格式 (PDF) 文件。] - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\CAJ浏览器\ActiveX\AcroIEHelper.dll
O2 - 安全 - BHO: (FGCatchUrl) - [网际快车,支持下载后的文件管理] - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - F:\PROGRA~1\FlashGet\jccatch.dll
O2 - 安全 - BHO: (FlashGet GetFlash Class) - [网际快车相关程序。] - {F156768E-81EF-470C-9057-481BA8380DBA} - F:\Program Files\FlashGet\getflash.dll
O3 - 安全 - Toolbar: (第三方IE工具栏) - [FlashGet IE工具条。] - {E0E899AB-F487-11D5-8D29-0050BA6940E3} -
O3 - 安全 - Toolbar: (电台(&R)) - [是Windows Media Player播放器ActiveX控制相关文件。] - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - 安全 - HKLM\..\Run: [IMJPMIG8.1] [微软Microsoft输入法编辑器程序。] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 安全 - HKLM\..\Run: [PHIME2002ASync] [输入法软件相关程序。] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 安全 - HKLM\..\Run: [PHIME2002A] [输入法软件相关程序。] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 默认 - HKLM\..\Run: [CnxDslTaskBar] [conexant的adsl相关程序] "C:\Program Files\ADSL\AccessRunner ADSL\CnxDslTb.exe"
O4 - 安全 - HKLM\..\Run: [kav] [卡巴斯基杀毒软件相关程序。] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - 安全 - HKLM\..\Run: [!AVG Anti-Spyware] [一款杀毒软件AVG的相关启动程序。] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - 安全 - HKLM\..\Run: [360Safetray] [360safe实时保护功能模块。] D:\360\360safe\safemon\360Tray.exe /start
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\System32\ctfmon.exe
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://F:\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - 安全 - Extra button: Windows Messenger(HKLM) - C:\Program Files\Messenger\MSMSGS.EXE
O16 - 安全 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (Windows升级工具V5) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1175490899859
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - 安全 - Service: Ati HotKey Poller [ati显卡相关后台程序。] - C:\WINDOWS\System32\Ati2evxx.exe - (running)
O23 - 安全 - Service: ATI Smart [是一个ati图形显示卡驱程的相关进程。] - C:\WINDOWS\system32\ati2sgag.exe - (not running)
O23 - 安全 - Service: AVG Anti-Spyware Guard [一款杀毒软件AVG的相关服务。] - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe - (running)
O23 - 安全 - Service: AVP [卡巴斯基杀毒软件相关程序。] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe -r - (running)
O23 - 安全 - Service: P4P Service [搜狐的搜狗下载加速工具。] - C:\Program Files\Common Files\Sogou PXP\p2psvr.exe - (running)
O23 - 安全 - Service: SNMP [微软Windows自带的网络相关进程,用于局域网LAN和局域网基础配置。] - C:\WINDOWS\System32\snmp.exe - (running)
O23 - 安全 - Service: SNMPTRAP [微软Microsoft Windows操作系统相关程序,用于监听简单网络管理协议SNMP的消息。] - C:\WINDOWS\System32\snmptrap.exe - (not running)
=======================================
O40 - winlogon.exe - Kaspersky Lab - C:\WINDOWS\System32\klogon.dll - Logon Visualizer - 7072750eb5c0f0cd54b48f972855ca61
O40 - Explorer.EXE - Adobe Systems, Inc. - E:\CAJ浏览器\ActiveX\PDFShell.dll - PDF Shell Extension - 4b0991cd076b617a2231b19a6663c1c9
O40 - Explorer.EXE - Microsoft Corporation - C:\WINDOWS\System32\MSVCR71.dll - Microsoft? C Runtime Library - 86f1895ae8c5e8b17d99ece768a70732
O40 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll - Windows Shell Extension - 62281a8da78c81f4f4695c3de52ba680
O40 - Explorer.EXE - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll - Context-Menu (Shell Extension) - 2aff6773501cefdda87bc6b1a0e29ac1
O40 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\pr_remote.dll - PR_REMOTE - 5f6e14e8290e10b4fac233b7cca87430
O40 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll - Prague Loader - ebf71aa09b2418a0c79a406255862ab5
=======================================
O41 - ALCXSENS - Sensaura WDM 3D Audio Driver - C:\WINDOWS\system32\drivers\alcxsens.sys - (running) - Sensaura WDM 3D Audio Driver - Sensaura Ltd - fbbcb95f677cbaa924140b6ea2d9a97b
O41 - AVG Anti-Spyware Driver - AVG Anti-Spyware Driver - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys - (running) - - - 7d78b7fd0ebe00f177b053a08c78e35b
O41 - AvgAsCln - AVG7 Clean Driver - C:\WINDOWS\system32\drivers\AvgAsCln.sys - (running) - AVG7 Clean Driver - GRISOFT, s.r.o. - 6d4a1da6e6d522b3ebbcbff4a3589ec5
O41 - CnxEtP - Conexant USB WDM - C:\WINDOWS\system32\drivers\CnxEtP.sys - (running) - Conexant USB WDM - Conexant - 0c0e075ad3700875c1eb231c054f9c1b
O41 - CnxEtU - Conexant USB WDM - C:\WINDOWS\system32\drivers\CnxEtU.sys - (running) - Conexant USB WDM - Conexant - 28775c3f6df8c1f364f67d7121191000
O41 - CnxTgN - NDIS 5.0 LAN driver for PCI ADSL adapter - C:\WINDOWS\system32\drivers\CnxTgN.sys - (running) - NDIS 5.0 LAN driver for PCI ADSL adapter - Conexant Systems Inc. - 5cba478c57054c9a44dfafe4117c619d
O41 - kl1 - Kaspersky Unified Driver - C:\WINDOWS\system32\drivers\kl1.sys - (running) - Kaspersky Unified Driver - Kaspersky Lab - 5445b03cd42dedf5f85b9daf712fdd09
O41 - klif - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys - (running) - spuper-ptor - Kaspersky Lab - 92210989cc1d06f997b9628d8e4b1819
O41 - npkcrypt - nProtect KeyCrypt Driver - D:\QQ\npkcrypt.sys - (running) - nProtect KeyCrypt Driver - INCA Internet Co., Ltd. - 8bcb281a2540e7aff0cd00f9878fe21f
O41 - ZSMC301b - Video streaming and Capture Device Driver - C:\WINDOWS\system32\drivers\usbVM31b.sys - (running) - Video streaming and Capture Device Driver - VM - 617c6711ea9049f39043cab2886418bf
O41 - d343bus - d343bus - C:\WINDOWS\System32\DRIVERS\d343bus.sys - (not running) - - -
O41 - d343port - d343port - C:\WINDOWS\System32\DRIVERS\d343port.sys - (not running) - - -
O41 - WINIO - WINIO - G:\DRIVER\Audio\winio.sys - (not running) - - -
=======================================
360Safe.exe=3.2.1.1001
AntiAdwa.dll=3.2.0.1001
AntiEng.dll=3.0.2.2000
AntiActi.dll=2.0.0.3000
CleanHis.dll=3.0.2.1000
safelive.exe=1.0.0.2007
live.dll=1.0.0.1011
=======================================
操作历史报告:
----------查杀恶意软件历史----------
2007-04-02 21:58
查杀恶意软件 - 沸点网络电视 - 危险 -
查杀恶意软件 - 百度超级搜霸 - 危险 - C:\Documents and Settings\liyingbin\Application Data\Microsoft\Internet Explorer\Quick Launch\因特网搜索.lnk
2007-04-08 14:56
查杀恶意软件 - 百度搜索伴侣 - 危险 -
查杀恶意软件 - 百度超级搜霸 - 危险 - C:\PROGRA~1\baidu\bar\BaiduBar.dll
2007-04-08 16:16
查杀恶意软件 - 百度超级搜霸 - 危险 -
查杀恶意软件 - 搜狗工具条 - 安全 -
----------插件卸载操作历史----------
2007-04-02 22:02
插件管理 - 迅雷下载组件 - E:\迅雷\ComDlls\XUNLEI~3.DLL
2007-04-08 12:07
插件管理 - 搜狗工具条 - C:\Program Files\Common Files\Sogou PXP
----------全面诊断修复历史----------
2007-04-09 18:49
O23 - 未知 - Windows Distributed Transaction Process Coordinator - "C:\WINDOWS\msdtc.exe"
2007-04-09 18:50
R0 - 未知 - IE首页 - HKCU\Software\Microsoft\Internet Explorer\Main
2007-04-09 18:50
R0 - 未知 - IE起始页的默认页 - HKLM\Software\Microsoft\Internet Explorer\Main
2007-04-10 11:54
100 - 未知 - msdtc.exe - C:\WINDOWS\msdtc.exe
2007-04-10 11:55
100 - 未知 - sib.exe - c:\sib.exe
=======================================
360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基V6.0
最新免费下载:http://www.360safe.com |