查看: 1874|回复: 17
收起左侧

[已解决] 怪事,真是怪事!!

 关闭 [复制链接]
tracydk
发表于 2007-4-15 11:04:47 | 显示全部楼层 |阅读模式
这几天我的电脑会经常的掉线,今天我又掉线了,突然从电脑了传出一句话:做人要厚道!!而且还是用四川话传出来的!!我惊呆了!!

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
发表于 2007-4-15 11:18:31 | 显示全部楼层
扫个报告看看
tracydk
 楼主| 发表于 2007-4-15 11:22:23 | 显示全部楼层
原帖由 wangjay1980 于 2007-4-15 11:18 发表
扫个报告看看

请问下用什么扫描啊??
tracydk
 楼主| 发表于 2007-4-15 11:24:13 | 显示全部楼层
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2007-04-15  11:24:21
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V7.0.5730.11 Build:75730
计算机物理内存:1023MB - 当前可用内存:494MB

100 - 未知 - Process: FYFireWall.exe [风云防火墙个人版] - E:\fengyun\FengYun\FYFireWall.exe
100 - 未知 - Process: QQ.exe [QQ] - E:\qq\QQ.exe
100 - 未知 - Process: TIMPlatform.exe [TIMPlatform] - E:\qq\TIMPlatform.exe -Embedding
100 - 未知 - Process: QQ.exe [QQ] - E:\qq\QQ.exe
O4 - 未知 - HKLM\..\Run: [FY_FireWall] [风云防火墙个人版] E:\fengyun\FengYun\FYFireWall.exe
O4 - 未知 - Startup folder: [网通宽带.lnk] [] C:\Documents and Settings\Panic\「开始」菜单\程序\启动\网通宽带.lnk
O8 - 未知 - Extra context menu item: &使用BitComet下载 - res://E:\bitcomet0.86\BitComet\BitComet.exe/AddLink.htm
O8 - 未知 - Extra context menu item: &使用BitComet下载全部链接 - res://E:\bitcomet0.86\BitComet\BitComet.exe/AddAllLink.htm
O8 - 未知 - Extra context menu item: &使用BitComet下载本页视频 - res://E:\bitcomet0.86\BitComet\BitComet.exe/AddVideo.htm
O8 - 未知 - Extra context menu item: 上传到QQ网络硬盘 - E:\qq\AddToNetDisk.htm
O8 - 未知 - Extra context menu item: 添加到QQ自定义面板 - E:\qq\AddPanel.htm
O8 - 未知 - Extra context menu item: 添加到QQ表情 - E:\qq\AddEmotion.htm
O8 - 未知 - Extra context menu item: 用QQ彩信发送该图片 - E:\qq\SendMMS.htm
O9 - 未知 - Extra button: 启动迅雷5(HKLM) - E:\xunlei\Thunder.exe
O9 - 未知 - Extra button: 浩方对战平台(HKLM) - E:\浩方对战平台\GameClient.exe
O9 - 未知 - Extra button: 腾讯QQ(HKLM) - E:\qq\QQ.EXE
O18 - 未知 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - E:\KuGoo2007\InExtend\KuGoo3DownXControl.ocx
O23 - 未知 - Service: AVP [保护计算机远离病毒、间谍软件、黑客攻击、计算机犯罪和垃圾邮件.] - E:\kav621\avp.exe -r - (running)
O28 - 未知 - IELINK: C:\DOCUME~1\Panic\「开始~1\程序\附件\系统工具\INTERN~1.LNK -  -extoff

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: soundman.exe [一个软声卡控制台软件。] - C:\WINDOWS\SOUNDMAN.EXE
100 - 安全 - Process: rundll32.exe [windows rundll32为了需要调用dlls的程序。] - C:\WINDOWS\system32\RUNDLL32.EXE
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32\ctfmon.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] - C:\WINDOWS\system32\nvsvc32.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: PPStream.exe [PPStream P2P流媒体播放器相关进程。] - E:\PPStream\PPStream.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] - C:\WINDOWS\system32\conime.exe
100 - 安全 - Process: iexplore.exe [microsoft internet explorer浏览器用于浏览网页。] - C:\Program Files\Internet Explorer\iexplore.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - E:\360safe\360Safe.exe
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=about:blank
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=about:blank
O2 - 安全 - BHO: (BitComet Helper) - [下载软件BitComet的相关程序。] - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - E:\bitcomet0.86\BitComet\tools\BitCometBHO_1.1.3.28.dll
O4 - 安全 - HKLM\..\Run: [IMJPMIG8.1] [微软Microsoft输入法编辑器程序。] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 安全 - HKLM\..\Run: [PHIME2002ASync] [输入法软件相关程序。] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 安全 - HKLM\..\Run: [PHIME2002A] [输入法软件相关程序。] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 安全 - HKLM\..\Run: [SoundMan] [Realtek声卡相关程序。] SOUNDMAN.EXE
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [nwiz] [是NVidia的Nview特性相关程序。该程序用于用户对其特性进行配置,将桌面扩展到多台显示器上。 ] nwiz.exe /install
O4 - 安全 - HKLM\..\Run: [NvMediaCenter] [是NVidia显示卡相关文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - 安全 - HKLM\..\Run: [AVP] [卡巴斯基杀毒软件相关程序。] "E:\kav621\avp.exe"
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O8 - 安全 - Extra context menu item: &使用迅雷下载 - E:\xunlei\Program\geturl.htm
O8 - 安全 - Extra context menu item: &使用迅雷下载全部链接 - E:\xunlei\Program\getallurl.htm
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://E:\OFFICE~2\OFFICE11\EXCEL.EXE/3000
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - E:\kav621\scieplugin.dll
O9 - 安全 - Extra button: Windows Messenger(HKLM) - C:\Program Files\Messenger\msmsgs.exe
O11 - 安全 - Options Group: International*
O16 - 安全 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Flash播放器) - http://download.macromedia.com/p ... s/flash/swflash.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\WINDOWS\system32\nvsvc32.exe - (running)
O25 - 安全 - ABOUT: DesktopItemNavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationCanceled - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: OfflineInformation - res://ieframe.dll/offcancl.htm
O25 - 安全 - ABOUT: PostNotCached - res://ieframe.dll/repost.htm

=======================================

O40 - winlogon.exe - Kaspersky Lab - C:\WINDOWS\system32\klogon.dll - Logon Visualizer - 2fb94ab158eb54a2212c8087b7e72340
O40 - Explorer.EXE - Kaspersky Lab - E:\kav621\scrchpg.dll - Script Checker - 632a777961e99cb61b28599555a2f7a7
O40 - Explorer.EXE - www.218.cc - E:\fengyun\FengYun\fymon.dll - 风云防火墙 DLL - f4feffadf7e977d41d6268b946264fd5
O40 - Explorer.EXE - NVIDIA Corporation - C:\WINDOWS\system32\NVRSZHC.DLL - NVIDIA Simplified Chinese language resource library - d0eafce083770369ca57c5b27d5c1fcc
O40 - Explorer.EXE -  - C:\WINDOWS\system32\nvshell.dll -  - f5af99f102d64092e6117b7a1d986036
O40 - Explorer.EXE -  - E:\winrar\rarext.dll -  - 0bf971b9a6af0c5ad358fea8330b663d
O40 - Explorer.EXE - Kaspersky Lab - E:\kav621\ShellEx.dll - Windows Shell Extension - 0904502f01d0d2a42082f0f35b18071c
O40 - Explorer.EXE - Microsoft Corporation - E:\kav621\MSVCR80.dll - Microsoft? C Runtime Library - 16d7ddf3b659f7cf1cb9f4dcff4219f0
O40 - Explorer.EXE - Microsoft Corporation - E:\kav621\MSVCP80.dll - Microsoft? C++ Runtime Library - 2bc650257fb0867abd54fd460ec2bafc
O40 - RUNDLL32.EXE - NVIDIA Corporation - C:\WINDOWS\system32\NVRSZHC.DLL - NVIDIA Simplified Chinese language resource library - d0eafce083770369ca57c5b27d5c1fcc
O40 - RUNDLL32.EXE - www.218.cc - E:\fengyun\FengYun\fymon.dll - 风云防火墙 DLL - f4feffadf7e977d41d6268b946264fd5

=======================================

O41 - klif - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys - (running) - spuper-ptor - Kaspersky Lab - 64a31d211df5f118a258fa37f5d2fd47
O41 - KxTdifltDrv - KxTdifltDrv - E:\fengyun\FengYun\KxTdiDrv.sys - (running) -  -  - 387e576112a52018812d7dc2f9e1c285
O41 - npkcrypt - nProtect KeyCrypt Driver - E:\qq\npkcrypt.sys - (running) - nProtect KeyCrypt Driver - INCA Internet Co., Ltd. - 8bcb281a2540e7aff0cd00f9878fe21f
O41 - GMSIPCI - GMSIPCI - G:\INSTALL\GMSIPCI.SYS - (not running) -  -  -
O41 - MSICPL - MSICPL - G:\install4\MSICPL.sys - (not running) -  -  -
O41 - NTACCESS - NTACCESS - G:\NTACCESS.sys - (not running) -  -  -
O41 - SetupNTGLM7X - SetupNTGLM7X - G:\NTGLM7X.sys - (not running) -  -  -
O41 - TSP - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys - (not running) - spuper-ptor - Kaspersky Lab - 64a31d211df5f118a258fa37f5d2fd47

=======================================
360Safe.exe=3.3.0.1001
AntiAdwa.dll=3.3.0.1001
AntiEng.dll=3.3.0.1001
AntiActi.dll=2.0.0.3000
CleanHis.dll=3.0.2.1000
safelive.exe=1.0.0.2007
live.dll=1.0.0.1012

=======================================
操作历史报告:

----------插件卸载操作历史----------

2007-04-09 22:20
插件管理 - aatievv.exe -

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基V6.0
最新免费下载:http://www.360safe.com
准葛尔伯爵
发表于 2007-4-15 11:28:18 | 显示全部楼层
你说的真玄呀,会是闹鬼吗?你最近没干过什么吧?开个玩笑。我的办法是不理它。
£随风£
发表于 2007-4-15 11:29:30 | 显示全部楼层
第一 掉线一般是线路的问题 建议楼主找服务商
第二 出现做人要厚道 楼主看一下是不是安装了spx截图软件
tracydk
 楼主| 发表于 2007-4-15 11:31:26 | 显示全部楼层
原帖由 £随风£ 于 2007-4-15 11:29 发表
第一 掉线一般是线路的问题 建议楼主找服务商
第二 出现做人要厚道 楼主看一下是不是安装了spx截图软件

是啊,我装了SPX的,会说做人要厚道??
£随风£
发表于 2007-4-15 11:38:58 | 显示全部楼层
是的 当你截图保存的时候它会有那样的提示 楼主不妨试试看 在实验的时候打开音箱
tracydk
 楼主| 发表于 2007-4-15 11:41:42 | 显示全部楼层
[CODE]

2007-04-15,11:40:01

System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
    <MSMSGS><; "C:\Program Files\Messenger\msmsgs.exe" /background>  [(Verified)Microsoft Windows XP Publisher]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
    <run><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]
    <PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Publisher]
    <SoundMan><SOUNDMAN.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <nwiz><nwiz.exe /install>  []
    <NvMediaCenter><RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <AVP><"E:\kav621\avp.exe">  [Kaspersky Lab]
    <FY_FireWall><E:\fengyun\FengYun\FYFireWall.exe>  [www.218.cc]
    <!AVG Anti-Spyware><; "E:\AVG\AVG Anti-Spyware 7.5\avgas.exe" /minimized>  [N/A]
    <Lingoes><; "E:\Translator\Lingoes.exe" -cphs>  [N/A]
    <miniqqlive><; "E:\qqlive\MiniQQLive.exe">  [Tencent]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
    <WinlogonNotify: klogon><C:\WINDOWS\system32\klogon.dll>  [Kaspersky Lab]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
    <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows Component Publisher]

==================================
启动文件夹
[网通宽带]
  <C:\Documents and Settings\Panic\「开始」菜单\程序\启动\网通宽带.lnk -->  [N/A]><N>

==================================
服务
[卡巴斯基反病毒6.0个人版 / AVP][Running/Auto Start]
  <E:\kav621\avp.exe -r><Kaspersky Lab>
[Human Interface Device Access / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
  <C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>

==================================
驱动程序
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[AMD Processor Driver / AmdK8][Running/System Start]
  <system32\DRIVERS\AmdK8.sys><Advanced Micro Devices>
[GMSIPCI / GMSIPCI][Stopped/Manual Start]
  <\??\G:\INSTALL\GMSIPCI.SYS><N/A>
[kl1 / kl1][Running/Boot Start]
  <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
[klif / klif][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[KxTdifltDrv / KxTdifltDrv][Running/System Start]
  <\??\E:\fengyun\FengYun\KxTdiDrv.sys><N/A>
[MSICPL / MSICPL][Stopped/Manual Start]
  <\??\G:\install4\MSICPL.sys><N/A>
[npkcrypt / npkcrypt][Running/Auto Start]
  <\??\E:\qq\npkcrypt.sys><INCA Internet Co., Ltd.>
[NTACCESS / NTACCESS][Stopped/Manual Start]
  <\??\G:\NTACCESS.sys><N/A>
[nv / nv][Running/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[nvata / nvata][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\nvata.sys><NVIDIA Corporation>
[NVIDIA nForce Networking Controller Driver / NVENETFD][Running/Manual Start]
  <system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
[NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start]
  <system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><N/A>
[SetupNTGLM7X / SetupNTGLM7X][Stopped/Manual Start]
  <\??\G:\NTGLM7X.sys><N/A>

==================================
浏览器加载项
[BitComet Helper]
  {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <E:\bitcomet0.86\BitComet\tools\BitCometBHO_1.1.3.28.dll, BitComet>
[启动迅雷5]
  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <E:\xunlei\Thunder.exe, Thunder Networking Technologies,LTD>
[浩方对战平台]
  {0A155D3C-68E2-4215-A47A-E800A446447A} <E:\浩方对战平台\GameClient.exe, N/A>
[Web反病毒统计]
  {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <E:\kav621\scieplugin.dll, Kaspersky Lab>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <E:\qq\QQ.EXE, TENCENT>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[Fade]
  {16B280C5-EE70-11D1-9066-00C04FD9189D} <C:\WINDOWS\system32\Dxtmsft.dll, Microsoft Corporation>
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[XML DOM Document]
  {2933BF90-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\system32\msxml3.dll, N/A>
[Thunder Browser Helper]
  {39F7E360-828A-4B5A-BCAF-5B79BFDFEA60} <E:\xunlei\ComDlls\XunLeiBHO_007.dll, Thunder Networking Technologies,LTD>
[BitComet Helper]
  {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <E:\bitcomet0.86\BitComet\tools\BitCometBHO_1.1.3.28.dll, BitComet>
[Microsoft Office Control]
  {4453D895-F2A1-4A38-A285-1EF9BD3F6D5D} <E:\OFFICE~2\OFFICE11\AUTHZAX.DLL, Microsoft Corporation>
[XML Document]
  {48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\system32\msxml3.dll, N/A>
[Thunder Agent Class]
  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <E:\xunlei\ComDlls\ThunderAgent_007.dll, Thunder Networking Technologies,LTD>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[MediaComm Class]
  {7670648D-461B-42AF-BDFE-46D26AF5EFF2} <E:\xunlei\Components\InMedia\MediaAddin11.dll, Thunder Networking Technologies,LTD>
[Microsoft Web Browser]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[Thunder Browser Helper]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <E:\xunlei\ComDlls\XunLeiBHO_007.dll, Thunder Networking Technologies,LTD>
[Wipe]
  {AF279B30-86EB-11D1-81BF-0000F87557DB} <C:\WINDOWS\system32\Dxtmsft.dll, Microsoft Corporation>
[QQPlayerSvr Proxy Control]
  {CD108273-D434-43E6-AA90-1469F97EB398} <E:\qq\QQPlayerProxy.dll, Tencent>
[AUDIO__MP3 Moniker Class]
  {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__X_MS_WMA Moniker Class]
  {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
  {CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[QuickTimeCheck Class]
  {DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <E:\KLPlayer\QTSystem\QuickTimeCheck.ocx, Apple Computer, Inc.>
[RevealTrans]
  {E31E87C4-86EA-4940-9B8A-5BD5D179A737} <C:\WINDOWS\system32\Dxtmsft.dll, Microsoft Corporation>
[XML HTTP Request]
  {ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML DOM Document 3.0]
  {F5078F32-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML HTTP 3.0]
  {F5078F35-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML DOM Document]
  {F6D90F11-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML HTTP]
  {F6D90F16-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[&使用BitComet下载]
  <res://E:\bitcomet0.86\BitComet\BitComet.exe/AddLink.htm, N/A>
[&使用BitComet下载全部链接]
  <res://E:\bitcomet0.86\BitComet\BitComet.exe/AddAllLink.htm, N/A>
[&使用BitComet下载本页视频]
  <res://E:\bitcomet0.86\BitComet\BitComet.exe/AddVideo.htm, N/A>
[&使用迅雷下载]
  <E:\xunlei\Program\geturl.htm, N/A>
[&使用迅雷下载全部链接]
  <E:\xunlei\Program\getallurl.htm, N/A>
[上传到QQ网络硬盘]
  <E:\qq\AddToNetDisk.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
  <res://E:\OFFICE~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
  <E:\qq\AddPanel.htm, N/A>
[添加到QQ表情]
  <E:\qq\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <E:\qq\SendMMS.htm, N/A>
tracydk
 楼主| 发表于 2007-4-15 11:42:04 | 显示全部楼层
==================================
正在运行的进程
[PID: 636][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 704][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 728][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\klogon.dll]  [Kaspersky Lab, 6.0.2.621]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 780][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 792][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 948][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1008][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1104][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
[PID: 1636][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\kav621\scrchpg.dll]  [Kaspersky Lab, 6.0.2.621]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [C:\WINDOWS\system32\nvcpl.dll]  [NVIDIA Corporation, 6.14.10.8421]
    [C:\WINDOWS\system32\NVRSZHC.DLL]  [NVIDIA Corporation, 6.14.10.8421]
    [C:\WINDOWS\system32\nvshell.dll]  [, ]
    [E:\winrar\rarext.dll]  [N/A, ]
    [E:\kav621\ShellEx.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\office 2003\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
    [E:\kav621\prremote.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\prloader.dll]  [Kaspersky Lab, 6.0.2.621]
[PID: 1852][C:\WINDOWS\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5, 1, 0, 46]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
[PID: 1876][C:\WINDOWS\system32\RUNDLL32.EXE]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\NvMcTray.dll]  [NVIDIA Corporation, 6.14.10.8421]
    [C:\WINDOWS\system32\NVRSZHC.DLL]  [NVIDIA Corporation, 6.14.10.8421]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
[PID: 1896][E:\fengyun\FengYun\FYFireWall.exe]  [www.218.cc, 1.2.0.191]
    [E:\fengyun\FengYun\arpinfo.dll]  [N/A, ]
    [E:\fengyun\FengYun\portinfo.dll]  [www.218.cc, 1.2.0.5]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\kav621\scrchpg.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\office 2003\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
[PID: 1904][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
[PID: 3380][E:\qq\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [E:\qq\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [E:\qq\BasicCtrlDll.dll]  [Tencent, 6, 0, 200, 320]
    [E:\qq\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [E:\qq\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [E:\qq\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [E:\qq\QQAPI.dll]  [, 1, 0, 0, 1]
    [E:\qq\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [E:\qq\LoginCtrl.dll]  [, 1, 0, 0, 1]
    [E:\qq\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 6, 27, 1]
    [E:\qq\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [E:\qq\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [E:\qq\QQMainFrame.dll]  [N/A, ]
    [E:\qq\CQQApplication.dll]  [N/A, ]
    [E:\qq\NewSkin.dll]  [, 1, 0, 0, 1]
    [E:\qq\HostingMgr.dll]  [, 1, 0, 0, 1]
    [E:\qq\CameraDll.dll]  [, 1, 0, 0, 1]
    [E:\qq\MailSummary.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQKnowledgeSearch.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQAllInOne.dll]  [N/A, ]
    [E:\qq\GroupLive.dll]  [N/A, ]
    [E:\qq\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [E:\qq\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\qq\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [E:\qq\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQSpace.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQSysMsgMng.dll]  [N/A, ]
    [E:\qq\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQPlugin.dll]  [N/A, ]
    [E:\qq\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [E:\qq\QRingMng.dll]  [N/A, ]
    [E:\qq\QQAvatar.dll]  [N/A, ]
    [E:\qq\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [E:\qq\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [E:\qq\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [E:\qq\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [E:\qq\QQPet.dll]  [, 1, 0, 0, 1]
    [E:\qq\BQQApplication.dll]  [N/A, ]
    [E:\qq\CommercesMng.dll]  [, 1, 0, 0, 1]
    [E:\qq\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [E:\qq\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 271]
    [E:\qq\QQSceneMng.dll]  [N/A, ]
    [E:\qq\QQPhoneHelper.dll]  [腾讯科技(深圳)有限公司, 2, 1, 6, 60]
[PID: 3444][E:\qq\TIMPlatform.exe]  [tencent, 0, 3, 1, 8]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [E:\qq\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
[PID: 2108][E:\qq\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [E:\qq\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [E:\qq\BasicCtrlDll.dll]  [Tencent, 6, 0, 200, 320]
    [E:\qq\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [E:\qq\RICHED32.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [E:\qq\RICHED20.dll]  [Microsoft Corporation, 5.31.23.1218]
    [E:\qq\QQAPI.dll]  [, 1, 0, 0, 1]
    [E:\qq\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [E:\qq\LoginCtrl.dll]  [, 1, 0, 0, 1]
    [E:\qq\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 6, 27, 1]
    [E:\qq\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [E:\qq\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [E:\qq\QQMainFrame.dll]  [N/A, ]
    [E:\qq\CQQApplication.dll]  [N/A, ]
    [E:\qq\NewSkin.dll]  [, 1, 0, 0, 1]
    [E:\qq\HostingMgr.dll]  [, 1, 0, 0, 1]
    [E:\qq\CameraDll.dll]  [, 1, 0, 0, 1]
    [E:\qq\MailSummary.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQKnowledgeSearch.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQAllInOne.dll]  [N/A, ]
    [E:\qq\GroupLive.dll]  [N/A, ]
    [E:\qq\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [E:\qq\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\qq\vbscript.dll]  [Microsoft Corporation, 5.6.0.7426]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [E:\qq\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQSpace.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQSysMsgMng.dll]  [N/A, ]
    [E:\qq\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [E:\qq\QQPlugin.dll]  [N/A, ]
    [E:\qq\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\kav621\scrchpg.dll]  [Kaspersky Lab, 6.0.2.621]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [E:\qq\QRingMng.dll]  [N/A, ]
    [E:\qq\QQAvatar.dll]  [N/A, ]
    [E:\qq\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [E:\qq\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [E:\qq\QQPet.dll]  [, 1, 0, 0, 1]
    [E:\qq\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [E:\qq\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [E:\qq\BQQApplication.dll]  [N/A, ]
    [E:\qq\CommercesMng.dll]  [, 1, 0, 0, 1]
    [E:\qq\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [E:\qq\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 271]
    [E:\qq\QQSceneMng.dll]  [N/A, ]
[PID: 304][E:\PPStream\PPStream.exe]  [PPStream.com, 1, 0, 4, 730]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [E:\PPStream\POWERP~1.DLL]  [PPStream Inc., 1,0,0,3310]
    [E:\PPStream\PSNetwork.dll]  [PPStream, inc., 1, 0, 0, 2468]
    [E:\PPStream\POWERL~1.OCX]  [PPStream.com, 1, 0, 0, 2013]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\kav621\scrchpg.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\klscav.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\prremote.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\prloader.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\prkernel.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\params.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\pxstub.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\tempfile.ppl]  [Kaspersky Lab, 6.0.2.621]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [E:\KLPlayer\Codecs\ffdshow.ax]  [, 1.0.3.1024]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [E:\KLPlayer\Codecs\mpeg2dmx.ax]  [Moonlight Cordless Ltd., 3, 1, 200, 50117]
    [E:\KLPlayer\Codecs\vsfilter.dll]  [Gabest, 1, 0, 1, 3]
    [E:\qqlive\VideoDsp.dll]  [Tencent, 3,5,200,2281]
[PID: 1680][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
[PID: 2744][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\IEFRAME.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [C:\WINDOWS\system32\IEUI.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
    [C:\WINDOWS\system32\xmllite.dll]  [Microsoft Corporation, 1.00.1018.0]
    [E:\office 2003\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
    [C:\Program Files\Internet Explorer\ieproxy.dll]  [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [E:\bitcomet0.86\BitComet\tools\BitCometBHO_1.1.3.28.dll]  [BitComet, 20070328]
    [C:\WINDOWS\system32\ieapfltr.dll]  [Microsoft Corporation, 7.0.5825.0]
    [C:\WINDOWS\system32\msfeeds.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [E:\kav621\scrchpg.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\klscav.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\prremote.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\prloader.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\prkernel.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\params.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\pxstub.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\tempfile.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\nfio.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\fsdrvplgn.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\basegui.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\thpimpl.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\FSSync.dll]  [Kaspersky Lab, 6.0.5.621]
    [e:\kav621\winreg.ppl]  [Kaspersky Lab, 6.0.2.621]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
[PID: 3044][E:\xunlei\Program\Thunder5.exe]  [Thunder Networking Technologies,LTD, 5, 5, 6, 274]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [E:\xunlei\Program\TaskManager.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 14]
    [E:\xunlei\Program\download_interface.dll]  [Thunder Networking Technologies,LTD, 2, 12, 2, 56]
    [E:\xunlei\Program\asyn_dns.dll]  [Thunder Networking Technologies,LTD, 2, 12, 2, 56]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\xunlei\Program\BHOStub.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 8]
    [E:\xunlei\Program\FloatBar.dll]  [Giganology Inc., 1, 0, 0, 2]
    [E:\xunlei\Program\iTargetAD.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 16]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx]  [Adobe Systems, Inc., 9,0,28,0]
    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\ieframe.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\xunlei\Components\DiagnoseHelper\DiagnoseHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
    [E:\xunlei\Components\PortVerify\PortVerify.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [E:\xunlei\Components\ExplorerHelper\ExplorerHelper.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [E:\xunlei\Components\DTAG\DTAG.dll]  [Thunder Networking Technologies,LTD, 1, 1, 0, 2]
    [E:\xunlei\Components\DTAG\ExtractMediaTag.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [E:\xunlei\Program\LiveUpdate.dll]  [, 1, 0, 1, 17]
    [E:\xunlei\Components\InMedia\iEmbedShell.dll]  [ , 1, 0, 0, 15]
    [E:\xunlei\Components\InMedia\iEmbed08.dll]  [ , 3, 2, 0, 63]
    [E:\xunlei\Components\Community\XLCommunity.dll]  [Thunder Networking Technologies,LTD, 1, 0, 4, 15]
    [E:\xunlei\Program\RegisterDll.dll]  [Thunder Networking Technologies,LTD, 2, 2, 1, 43]
    [E:\xunlei\Components\Search\XLSearch.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 7]
    [E:\xunlei\Components\P4PClient\P4PClient.dll]  [Thunder Networking Technologies,LTD, 1, 0, 2, 14]
    [E:\xunlei\Components\VPSHELL\VPSHELL.dll]  [, 1, 1, 0, 4]
    [E:\xunlei\Components\VPSHELL\VideoPicture.dll]  [XunLei, 1, 1, 0, 4]
    [E:\xunlei\Components\Tips\TipsClient.dll]  [Thunder Networking Technologies,LTD, 2, 1, 1, 50]
    [E:\xunlei\Plugins\BhoAdv\bho_adv.dll]  [深圳市迅雷网络技术有限公司, 1.0.1.0]
    [E:\kav621\scrchpg.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\klscav.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\prremote.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.42]
    [E:\kav621\prloader.dll]  [Kaspersky Lab, 6.0.2.621]
    [E:\kav621\prkernel.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\params.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\pxstub.ppl]  [Kaspersky Lab, 6.0.2.621]
    [e:\kav621\tempfile.ppl]  [Kaspersky Lab, 6.0.2.621]
[PID: 1064][E:\sreng2.4.12.806\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINDOWS\system32\Normaliz.dll]  [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
    [C:\WINDOWS\system32\iertutil.dll]  [Microsoft Corporation, 7.00.6000.16414 (vista_gdr.070108-1520)]
    [E:\fengyun\FengYun\fymon.dll]  [www.218.cc, 1.2.3.1]
    [E:\sreng2.4.12.806\sreng2\Plugins\NWMON.SRE]  [Smallfrogs Studio, 1, 0, 0, 8]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1       localhost

==================================
API HOOK
RVA  错误: LoadLibraryA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF4627AF0)
RVA  错误: LoadLibraryExA (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF4627CD0)
RVA  错误: LoadLibraryExW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF4627E30)
RVA  错误: LoadLibraryW (危险等级: 一般,  被下面模块所HOOK: Dest Addr: 0xF4627BE0)
RVA  错误: GetProcAddress (危险等级: 高,  被下面模块所HOOK: Dest Addr: 0xF4627DE0)

==================================
隐藏进程
N/A

==================================


[/CODE]
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-25 03:56 , Processed in 0.148200 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表