查看: 2038|回复: 1
收起左侧

[已解决] 求高手看看我的系统问题!以下是sreng扫描报告!

 关闭 [复制链接]
yq5858588
头像被屏蔽
发表于 2010-9-6 17:01:16 | 显示全部楼层 |阅读模式

  1. 2010-09-06,16:56:12
  2. System Repair Engineer 2.8.2.1321
  3. Smallfrogs (http://www.KZTechs.com)
  4. Windows XP Professional Service Pack 3 (Build 2600) - 管理权限用户 - 完整功能
  5. 以下内容被选中:
  6.     所有的启动项目(包括注册表、启动文件夹、服务等)
  7.     浏览器加载项
  8.     正在运行的进程(包括进程模块信息)
  9.     文件关联
  10.     Winsock 提供者
  11.     Autorun.inf
  12.     HOSTS 文件
  13.     进程特权扫描
  14.     计划任务
  15.     Windows 安全更新检查
  16.     API HOOK
  17.     隐藏进程

  18. 启动项目
  19. 注册表
  20. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  21.     <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Component Publisher]
  22. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  23.     <360Safetray><"D:\Program Files\360\360safe\safemon\360Tray.exe" /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
  24.     <avgnt><"D:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min /nosplash>  [Avira GmbH]
  25. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  26.     <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
  27.     <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Component Publisher]
  28. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  29.     <AppInit_DLLs><>  [N/A]
  30. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  31.     <UIHost><logonui.exe>  [(Verified)Microsoft Windows Component Publisher]
  32. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
  33.     <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
  34. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
  35.     <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
  36.     <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
  37.     <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Component Publisher]
  38.     <SysTray><C:\WINDOWS\system32\stobject.dll>  [(Verified)Microsoft Windows Component Publisher]
  39. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
  40.     <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Component Publisher]
  41. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
  42.     <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Component Publisher]
  43. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
  44.     <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Component Publisher]
  45. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
  46.     <WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
  47. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
  48.     <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  49. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
  50.     <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  51. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
  52.     <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
  53. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
  54.     <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  55. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
  56.     <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  57. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
  58.     <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  59. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
  60.     <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
  61.     <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
  62. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
  63.     <Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
  64. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
  65.     <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
  66. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
  67.     <浏览器自定义组件><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
  68. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
  69.     <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
  70. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
  71.     <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
  72. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
  73.     <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
  74. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
  75.     <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Component Publisher]
  76. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
  77.     <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Component Publisher]
  78. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
  79.     <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
  80. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
  81.     <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
  82. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
  83.     <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
  84. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
  85.     <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Component Publisher]
  86. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
  87.     <N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install>  [Microsoft Corporation]
  88. ==================================
  89. 启动文件夹
  90. N/A
  91. ==================================
  92. 服务
  93. [Avira AntiVir MailGuard / AntiVirMailService][Stopped/Disabled]
  94.   <"D:\Program Files\Avira\AntiVir Desktop\avmailc.exe"><Avira GmbH>
  95. [Avira AntiVir 计划程序 / AntiVirSchedulerService][Running/Auto Start]
  96.   <"D:\Program Files\Avira\AntiVir Desktop\sched.exe"><Avira GmbH>
  97. [Avira AntiVir Guard / AntiVirService][Running/Auto Start]
  98.   <"D:\Program Files\Avira\AntiVir Desktop\avguard.exe"><Avira GmbH>
  99. [Avira AntiVir WebGuard / AntiVirWebService][Stopped/Disabled]
  100.   <"D:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE"><Avira GmbH>
  101. [Contrl Center of Storm Media / ccosm][Stopped/Disabled]
  102.   <><(File is missing)>
  103. [Human Interface Device Access / HidServ][Stopped/Disabled]
  104.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  105. [MySQL / MySQL][Stopped/Manual Start]
  106.   <"D:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt" --defaults-file="D:\Program Files\MySQL\MySQL Server 5.0\my.ini" MySQL><(File is missing)>
  107. [NVIDIA Display Driver Service / NVSvc][Stopped/Manual Start]
  108.   <C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
  109. [PIPIStartSvr / PIPIStartSvr][Stopped/Auto Start]
  110.   <><(File is missing)>
  111. [Remote Packet Capture Protocol v.0 (experimental) / rpcapd][Stopped/Manual Start]
  112.   <"C:\Program Files\WinPcap\rpcapd.exe" -d -f "C:\Program Files\WinPcap\rpcapd.ini"><CACE Technologies, Inc.>
  113. [Sandboxie Service / SbieSvc][Stopped/Auto Start]
  114.   <><(File is missing)>
  115. [VJVodClientServices / vvdsvc][Stopped/Manual Start]
  116.   <C:\WINDOWS\System32\svchost.exe -k vvdsvc-->D:\Program Files\软件安装包\播放器\西瓜影视播放器绿色版\vjocx.dll><武汉蓝吉科技有限公司>
  117. [主动防御 / ZhuDongFangYu][Stopped/Disabled]
  118.   <"D:\Program Files\360\360safe\deepscan\ZhuDongFangYu.exe"><360.cn>
  119. ==================================
  120. 驱动程序
  121. [360AntiARP / 360AntiARP][Running/System Start]
  122.   <\??\C:\WINDOWS\system32\Drivers\360AntiARP.sys><360安全中心>
  123. [360netmon / 360netmon][Running/System Start]
  124.   <\??\C:\WINDOWS\system32\drivers\360netmon.sys><360.cn>
  125. [360SelfProtection / 360SelfProtection][Running/System Start]
  126.   <system32\drivers\360SelfProtection.sys><360安全中心>
  127. [AMD AGP Bus Filter Driver / amdagp][Running/Boot Start]
  128.   <\SystemRoot\system32\DRIVERS\amdagp.sys><Advanced Micro Devices, Inc.>
  129. [AMD Processor Driver / AmdK8][Running/System Start]
  130.   <system32\DRIVERS\AmdK8.sys><Advanced Micro Devices>
  131. [AMD Low Level Device Driver / AmdLLD][Running/Manual Start]
  132.   <system32\DRIVERS\AmdLLD.sys><AMD, Inc.>
  133. [avgio / avgio][Running/System Start]
  134.   <\??\D:\Program Files\Avira\AntiVir Desktop\avgio.sys><Avira GmbH>
  135. [avgntflt / avgntflt][Running/Auto Start]
  136.   <system32\DRIVERS\avgntflt.sys><Avira GmbH>
  137. [avipbb / avipbb][Running/System Start]
  138.   <system32\DRIVERS\avipbb.sys><Avira GmbH>
  139. [BAPIDRV / BAPIDRV][Running/System Start]
  140.   <\??\C:\WINDOWS\system32\drivers\BAPIDRV.SYS><360.cn>
  141. [BC / BC][Running/Boot Start]
  142.   <\SystemRoot\system32\Drivers\BC.sys><Kingsoft Corporation>
  143. [bootsafe / bootsafe][Running/Boot Start]
  144.   <\SystemRoot\system32\Drivers\bootsafe.sys><Kinsoft>
  145. [EfiSystemMon / EfiMon][Running/System Start]
  146.   <System32\Drivers\Efimon.sys><奇虎网>
  147. [Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]
  148.   <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
  149. [HookPort / HookPort][Running/Boot Start]
  150.   <\SystemRoot\System32\Drivers\Hookport.sys><360安全中心>
  151. [hptpro / hptpro][Stopped/Boot Start]
  152.   <\SystemRoot\system32\DRIVERS\hptpro.sys><HighPoint Technologies, Inc.>
  153. [Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
  154.   <system32\drivers\RtkHDAud.sys><Realtek Semiconductor Corp.>
  155. [WinPcap Packet Driver (NPF) / NPF][Stopped/Manual Start]
  156.   <system32\drivers\NPF.sys><CACE Technologies, Inc.>
  157. [nv / nv][Running/Manual Start]
  158.   <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
  159. [NVIDIA nForce 10/100 Mbps Ethernet  / NVENETFD][Running/Manual Start]
  160.   <system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
  161. [nvgts / nvgts][Running/Boot Start]
  162.   <\SystemRoot\system32\DRIVERS\nvgts.sys><NVIDIA Corporation>
  163. [NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start]
  164.   <system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
  165. [DDK PACKET Protocol / Packet][Running/System Start]
  166.   <system32\DRIVERS\ProtoDrv.sys><360安全中心>
  167. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  168.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  169. [Quantum DeepScanner Servers / qutmdserv][Running/System Start]
  170.   <\??\C:\WINDOWS\system32\drivers\qutmdrv.sys><360安全中心>
  171. [qutmipc / qutmipc][Running/System Start]
  172.   <\??\C:\WINDOWS\system32\drivers\qutmipc.sys><360安全中心>
  173. [SafeBoxKrnl / SafeBoxKrnl][Running/System Start]
  174.   <\??\C:\WINDOWS\system32\drivers\SafeBoxKrnl.sys><360安全中心>
  175. [SbieDrv / SbieDrv][Stopped/Manual Start]
  176.   <\??\C:\Program Files\360safe\Shield\SbieDrv.sys><N/A>
  177. [Secdrv / Secdrv][Stopped/Manual Start]
  178.   <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
  179. [SATALink driver accelerator / SiFilter][Stopped/Disabled]
  180.   <\SystemRoot\system32\DRIVERS\SiWinAcc.sys><Silicon Image, Inc.>
  181. [SATALink External Device Filter / SiRemFil][Running/Boot Start]
  182.   <\SystemRoot\system32\DRIVERS\SiRemFil.sys><Silicon Image, Inc.>
  183. [SIS AGP Bus Filter / sisagp][Running/Boot Start]
  184.   <\SystemRoot\system32\DRIVERS\sisagp.sys><Silicon Integrated Systems Corporation>
  185. [ssmdrv / ssmdrv][Running/System Start]
  186.   <system32\DRIVERS\ssmdrv.sys><Avira GmbH>
  187. [TCP/IP Protocol Driver / Tcpip][Running/System Start]
  188.   <system32\DRIVERS\tcpip.sys><Microsoft Corporation>
  189. [TYCNetManage Service / TYCNetManage][Stopped/Manual Start]
  190.   <system32\DRIVERS\TYCNetManage.sys><N/A>
  191. [WINIO / WINIO][Stopped/Manual Start]
  192.   <\??\H:\winio.sys><N/A>
  193. ==================================
  194. 浏览器加载项
  195. [PIPI Link Helper]
  196.   {1A3440C6-F123-4CAB-84EE-C814E1AE0D8F} <D:\Program Files\软件安装包\播放器\pipi\JfCheck.dll, (Signed) PIPI Tech.>
  197. [SafeMon Class]
  198.   {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <D:\Program Files\360\360safe\safemon\safemon.dll, (Signed) 360.cn>
  199. [启动迅雷5]
  200.   {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <C:\Program Files\Thunder Network\Thunder\Thunder.exe, (Signed) Thunder Networking Technologies,LTD>
  201. [Java Plug-in 1.6.0_10]
  202.   {8AD9C840-044E-11D1-B3E9-00805F499D93} <D:\Program Files\java\jdk1.6.0_10\jre\bin\jp2iexp.dll, >
  203. [Java Plug-in 1.6.0_10]
  204.   {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA} <D:\Program Files\java\jdk1.6.0_10\jre\bin\jp2iexp.dll, >
  205. [Java Plug-in 1.6.0_10]
  206.   {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <D:\Program Files\java\jdk1.6.0_10\jre\bin\npjpi160_10.dll, Sun Microsystems, Inc.>
  207. [ThunderAtOnce Class]
  208.   {01443AEC-0FD1-40FD-9C87-E93D1494C233} <C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
  209. []
  210.   {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <, >
  211. []
  212.   {11F2A418-94B2-4e16-9B0C-B00C0435F903} <, >
  213. [PIPI Link Helper]
  214.   {1A3440C6-F123-4CAB-84EE-C814E1AE0D8F} <D:\Program Files\软件安装包\播放器\pipi\JfCheck.dll, (Signed) PIPI Tech.>
  215. []
  216.   {1DABF8D5-8430-4985-9B7F-A30E53D709B3} <, >
  217. [Thunder Agent Class]
  218.   {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <C:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll, (Signed) Thunder Networking Technologies,LTD>
  219. [Shell Name Space]
  220.   {55136805-B2DE-11D1-B9F2-00A0C98BC547} <%SystemRoot%\system32\shdocvw.dll, (Signed) N/A>
  221. []
  222.   {6B232760-90F1-41c3-9902-C8552C1D8A72} <, >
  223. [Active Desktop Mover]
  224.   {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, (Signed) N/A>
  225. [360SafeLive]
  226.   {87515F61-A66C-4319-A0E0-D416CB8059E3} <D:\Program Files\360\360safe\Safelive.dll, (Signed) 360.cn>
  227. [Thunder Browser Helper]
  228.   {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
  229. []
  230.   {9701758C-4373-482E-B13C-776C048EC890} <, >
  231. []
  232.   {9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9B} <, >
  233. []
  234.   {A9322148-C691-4B9D-91FC-B9C461DBE9DD} <, >
  235. []
  236.   {ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} <, >
  237. [SafeMon Class]
  238.   {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <D:\Program Files\360\360safe\safemon\safemon.dll, (Signed) 360.cn>
  239. [Shockwave Flash Object]
  240.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10i.ocx, (Signed) Adobe Systems, Inc.>
  241. []
  242.   {D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62} <, >
  243. []
  244.   {DBC80044-A445-435B-BC74-9C25C1C588A9} <, >
  245. []
  246.   {E2E2DD38-D088-4134-82B7-F2BA38496583} <, >
  247. []
  248.   {E7E6F031-17CE-4C07-BC86-EABFE594F69C} <, >
  249. []
  250.   {EF0D1A14-1033-41A2-A589-240C01EDC078} <, >
  251. []
  252.   {F3E70CEA-956E-49CC-B444-73AFE593AD7F} <, >
  253. []
  254.   {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
  255. [使用迅雷下载]
  256.   <C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
  257. [使用迅雷下载全部链接]
  258.   <C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
  259. ==================================
  260. 正在运行的进程
  261. [PID: 676 / SYSTEM][\SystemRoot\System32\smss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  262. [PID: 728 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  263. [PID: 752 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
  264.     [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  265.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  266.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  267.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  268. [PID: 796 / SYSTEM][C:\WINDOWS\system32\services.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_gdr.090206-1234)]
  269. [PID: 808 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
  270.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  271. [PID: 1004 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  272.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  273. [PID: 1052 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  274.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  275. [PID: 1140 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  276.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  277. [PID: 1280 / SYSTEM][D:\Program Files\Avira\AntiVir Desktop\sched.exe]  [Avira GmbH, 9.00.00.09]
  278.     [D:\Program Files\Avira\AntiVir Desktop\schedr.dll]  [Avira GmbH, 8.00.05.00]
  279.     [D:\Program Files\Avira\AntiVir Desktop\avevtlog.dll]  [Avira GmbH, 9.00.00.07]
  280.     [D:\Program Files\Avira\AntiVir Desktop\sqlite3.dll]  [, 3.06.01.00]
  281.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  282. [PID: 1912 / Administrator][C:\WINDOWS\Explorer.EXE]  [(Verified) Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  283.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  284.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  285.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  286.     [C:\WINDOWS\system32\msi.dll]  [Microsoft Corporation, 4.5.6001.22159]
  287.     [C:\WINDOWS\system32\nvcpl.dll]  [NVIDIA Corporation, 6.14.11.8206]
  288.     [C:\WINDOWS\system32\nvapi.dll]  [NVIDIA Corporation, 6.14.11.8206]
  289.     [C:\WINDOWS\system32\browselc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  290.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  291.     [C:\WINDOWS\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  292. [PID: 2016 / Administrator][D:\Program Files\360\360safe\safemon\360Tray.exe]  [360.CN, 7, 3, 1, 1003]
  293.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  294.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  295.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  296.     [D:\Program Files\360\360safe\ipc\ipcservice.dll]  [360.CN, 6, 5, 5, 1003]
  297.     [D:\Program Files\360\360safe\ipc\fileMgr.dll]  [360.cn, 6, 6, 0, 1009]
  298.     [D:\Program Files\360\360safe\ipc\yhregd.dll]  [, 6, 6, 0, 1005]
  299.     [D:\Program Files\360\360safe\ipc\appd.dll]  [360.cn, 6, 5, 5, 1004]
  300.     [D:\Program Files\360\360safe\safemon\360compro.dll]  [360安全中心, 6, 2, 0, 1009]
  301.     [D:\Program Files\360\360safe\safemon\360webpro.dll]  [360.CN, 1, 3, 0, 1031]
  302.     [D:\Program Files\360\360safe\safemon\360traylive.dll]  [360安全中心, 7, 0, 0, 1003]
  303.     [D:\Program Files\360\360safe\safemon\360procmon.dll]  [360.CN, 6, 5, 5, 1004]
  304.     [D:\Program Files\360\360safe\safemon\SelfProtectAPI2.dll]  [360.CN, 6, 5, 5, 1001]
  305.     [D:\Program Files\360\360safe\safemon\360safemonpro.tpi]  [360.cn, 1, 3, 0, 1003]
  306.     [D:\Program Files\360\360safe\safemon\netm.tpi]  [360.cn, 1, 0, 2, 1013]
  307.     [D:\Program Files\360\360safe\safemon\netmon.tpi]  [360.CN, 1, 0, 2, 1011]
  308.     [D:\Program Files\360\360safe\deepscan\qutmload.dll]  [360安全中心, 6, 5, 3, 1001]
  309.     [D:\Program Files\360\360safe\ipc\qutmipc.dll]  [360安全中心, 6, 5, 3, 1001]
  310.     [D:\Program Files\360\360safe\deepscan\cloudsec.dll]  [360安全中心, 2, 1, 0, 1002]
  311.     [D:\Program Files\360\360safe\deepscan\deepscan.dll]  [360.cn, 3, 2, 3, 6004]
  312.     [D:\Program Files\360\360safe\deepscan\Bapi.dll]  [360.cn, 1.0.0.1013]
  313.     [D:\Program Files\360\360safe\deepscan\cloudcom.dll]  [360安全中心, 2, 1, 0, 1001]
  314.     [D:\Program Files\360\360safe\SafeLive.dll]  [360.cn, 1, 0, 0, 1008]
  315.     [D:\Program Files\360\360safe\pdown.dll]  [360.cn, 1, 2, 0, 1016]
  316.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  317.     [D:\Program Files\360\360safe\safemon\urlproc.dll]  [360.cn, 1, 2, 2, 1004]
  318.     [D:\Program Files\360\360safe\safemon\urlprocnet.dll]  [360.cn, 1, 2, 2, 1001]
  319.     [D:\Program Files\360\360safe\360ver.dll]  [奇虎网, 7, 3, 0, 2001]
  320.     [D:\Program Files\360\360safe\netmon\360netctrl.dll]  [360.CN, 1, 0, 3, 1010]
  321.     [D:\Program Files\360\360safe\ipc\PatchCheck.dll]  [360.cn, 1, 1, 0, 1002]
  322.     [D:\Program Files\360\360safe\deepscan\Cloudcom2.dll]  [360.cn, 3, 2, 3, 7001]
  323.     [D:\Program Files\360\360safe\efiproc.dll]  [奇虎360安全卫士, 1, 0, 0, 1005]
  324.     [D:\Program Files\360\360safe\LiveUpd360.dll]  [360.cn, 1, 2, 0, 1038]
  325.     [D:\Program Files\360\360safe\360net.dll]  [奇虎网, 1, 1, 18, 1021]
  326.     [D:\Program Files\360\360safe\360P2SP.dll]  [360.cn, 1, 3, 0, 1006]
  327.     [D:\Program Files\360\360safe\deepscan\heavygate.dll]  [360.cn, 3, 6, 21, 0]
  328. [PID: 2040 / Administrator][D:\Program Files\Avira\AntiVir Desktop\avgnt.exe]  [Avira GmbH, 9.00.00.12]
  329.     [D:\Program Files\Avira\AntiVir Desktop\cclib.dll]  [Avira GmbH, 9.00.00.10]
  330.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  331.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  332.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  333.     [d:\program files\avira\antivir desktop\ccgen.dll]  [Avira GmbH, 9.00.00.35]
  334.     [d:\program files\avira\antivir desktop\ccgenrc.dll]  [Avira GmbH, 9.00.17.02]
  335.     [d:\program files\avira\antivir desktop\ccguard.dll]  [Avira GmbH, 9.00.00.19]
  336.     [d:\program files\avira\antivir desktop\ccgrdrc.dll]  [Avira GmbH, 9.00.06.02]
  337.     [d:\program files\avira\antivir desktop\avipc.dll]  [Avira GmbH, 1.1.3.4]
  338.     [d:\program files\avira\antivir desktop\ccupdate.dll]  [Avira GmbH, 9.00.00.16]
  339.     [d:\program files\avira\antivir desktop\ccupdrc.dll]  [Avira GmbH, 9.00.06.02]
  340.     [d:\program files\avira\antivir desktop\cclic.dll]  [Avira GmbH, 9.00.00.06]
  341.     [d:\program files\avira\antivir desktop\cclicrc.dll]  [Avira GmbH, 9.00.01.00]
  342.     [d:\program files\avira\antivir desktop\ccmsg.dll]  [Avira GmbH, 9.00.02.01]
  343.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  344. [PID: 184 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
  345.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  346.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  347.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  348. [PID: 228 / SYSTEM][D:\Program Files\Avira\AntiVir Desktop\avguard.exe]  [Avira GmbH, 9.00.01.32]
  349.     [D:\Program Files\Avira\AntiVir Desktop\AVEvtLog.dll]  [Avira GmbH, 9.00.00.07]
  350.     [D:\Program Files\Avira\AntiVir Desktop\guardmsg.dll]  [Avira GmbH, 9.00.02.00]
  351.     [D:\Program Files\Avira\AntiVir Desktop\sqlite3.dll]  [, 3.06.01.00]
  352.     [D:\Program Files\Avira\AntiVir Desktop\AVPREF.DLL]  [Avira GmbH, 9.00.03.00]
  353.     [D:\Program Files\Avira\AntiVir Desktop\SMTPLIB.DLL]  [Avira GmbH, 9.02.00.25]
  354.     [D:\Program Files\Avira\AntiVir Desktop\AVGIO.DLL]  [Avira GmbH, 9.00.01.04]
  355.     [D:\Program Files\Avira\AntiVir Desktop\aecore.dll]  [Avira GmbH, 8.1.16.2]
  356.     [D:\Program Files\Avira\AntiVir Desktop\aevdf.dll]  [Avira GmbH, 8.1.2.1]
  357.     [D:\Program Files\Avira\AntiVir Desktop\aescript.dll]  [Avira GmbH, 8.1.3.44]
  358.     [D:\Program Files\Avira\AntiVir Desktop\aescn.dll]  [Avira GmbH, 8.1.6.1]
  359.     [D:\Program Files\Avira\AntiVir Desktop\aesbx.dll]  [Avira GmbH, 8.1.3.1]
  360.     [D:\Program Files\Avira\AntiVir Desktop\aerdl.dll]  [Avira GmbH, 8.1.8.2]
  361.     [D:\Program Files\Avira\AntiVir Desktop\aepack.dll]  [Avira GmbH, 8.2.3.5]
  362.     [D:\Program Files\Avira\AntiVir Desktop\unacev2.dll]  [ACE Compression Software, 2.6.0.2]
  363.     [D:\Program Files\Avira\AntiVir Desktop\aeoffice.dll]  [Avira GmbH, 8.1.1.8]
  364.     [D:\Program Files\Avira\AntiVir Desktop\aeheur.dll]  [Avira GmbH, 8.1.2.21]
  365.     [D:\Program Files\Avira\AntiVir Desktop\aehelp.dll]  [Avira GmbH, 8.1.13.3]
  366.     [D:\Program Files\Avira\AntiVir Desktop\aegen.dll]  [Avira GmbH, 8.1.3.20]
  367.     [D:\Program Files\Avira\AntiVir Desktop\aeemu.dll]  [Avira GmbH, 8.1.2.0]
  368.     [D:\Program Files\Avira\AntiVir Desktop\aebb.dll]  [Avira GmbH, 8.1.1.0]
  369.     [D:\Program Files\Avira\AntiVir Desktop\avipc.dll]  [Avira GmbH, 1.1.3.4]
  370. [PID: 948 / Administrator][C:\WINDOWS\system32\taskmgr.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
  371.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  372.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  373.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  374.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  375. [PID: 1848 / Administrator][D:\Program Files\QQ\QQ.exe]  [TENCENT, 8,0,830,1811]
  376.     [D:\Program Files\QQ\QQBaseClassInDll.dll]  [TENCENT, 8,0,830,1811]
  377.     [D:\Program Files\QQ\QQHelperDll.dll]  [TENCENT, 8,0,830,1811]
  378.     [D:\Program Files\QQ\BasicCtrlDll.dll]  [TENCENT, 8,0,830,1811]
  379.     [D:\Program Files\QQ\IPPlugin.dll]  [Softdiy, 飘云]
  380.     [D:\Program Files\QQ\ipaddr.dll]  [N/A, ]
  381.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  382.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  383.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  384.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  385.     [D:\Program Files\QQ\QQAPI.dll]  [TENCENT, 8,0,830,1811]
  386.     [D:\Program Files\QQ\LoginCtrl.dll]  [TENCENT, 8,0,830,1811]
  387.     [D:\Program Files\QQ\LoginCtrlRes.dll]  [TENCENT, 8,0,830,1811]
  388.     [D:\Program Files\QQ\QQRes.dll]  [TENCENT, 8, 0, 830, 1811]
  389.     [D:\Program Files\QQ\QQMainFrame.dll]  [N/A, ]
  390.     [D:\Program Files\QQ\QQPlugin.dll]  [N/A, ]
  391.     [D:\Program Files\QQ\UnReadMsgMgr.dll]  [N/A, ]
  392.     [D:\Program Files\QQ\CQQApplication.dll]  [N/A, ]
  393.     [D:\Program Files\QQ\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
  394.     [D:\Program Files\QQ\NewSkin.dll]  [TENCENT, 8,0,830,1811]
  395.     [D:\Program Files\QQ\MailSummary.dll]  [TENCENT, 8,0,773,1801]
  396.     [D:\Program Files\QQ\QQSpace.dll]  [TENCENT, 8,0,830,1811]
  397.     [C:\WINDOWS\system32\msdmo.dll]  [, ]
  398.     [D:\Program Files\QQ\QQKnowledgeSearch.dll]  [TENCENT, 8,0,830,1811]
  399.     [D:\Program Files\QQ\OEMApplication.dll]  [TENCENT, 8,0,830,1811]
  400.     [D:\Program Files\QQ\QQGroupMng.dll]  [TENCENT, 8,0,830,1811]
  401.     [D:\Program Files\QQ\UserDefinedHead.dll]  [TENCENT, 8,0,830,1811]
  402.     [D:\Program Files\QQ\QQSysMsgMng.dll]  [N/A, ]
  403.     [D:\Program Files\QQ\QQLiveQMng.dll]  [TENCENT, 8,0,830,1811]
  404.     [D:\Program Files\QQ\SCCore.dll]  [TENCENT, 1, 6, 0, 2]
  405.     [D:\Program Files\QQ\QQAllInOne.dll]  [TENCENT, 8,0,830,1811]
  406.     [D:\Program Files\QQ\CameraDll.dll]  [TENCENT, 8,0,830,1811]
  407.     [D:\Program Files\QQ\QQPet.dll]  [TENCENT, 8,0,830,1811]
  408.     [D:\Program Files\QQ\QQConfigPlugin.dll]  [TENCENT, 8,0,830,1811]
  409.     [D:\Program Files\QQ\QRingMng.dll]  [N/A, ]
  410.     [D:\Program Files\QQ\QQCustomFace.dll]  [N/A, ]
  411.     [D:\Program Files\QQ\LongConnection.dll]  [TENCENT, 8,0,830,1811]
  412.     [D:\Program Files\QQ\QQAvatar.dll]  [N/A, ]
  413.     [D:\Program Files\QQ\PhoneAPI.dll]  [TENCENT, 8,0,830,1811]
  414.     [D:\Program Files\QQ\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
  415.     [D:\Program Files\QQ\ImageOle.dll]  [TENCENT, 8,0,830,1811]
  416.     [D:\Program Files\QQ\QQSceneMng.dll]  [N/A, ]
  417.     [C:\WINDOWS\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  418.     [D:\Program Files\QQ\GroupConnection.dll]  [TENCENT, 8,0,830,1811]
  419.     [D:\Program Files\QQ\BQQApplication.dll]  [N/A, ]
  420.     [D:\Program Files\QQ\CommercesMng.dll]  [TENCENT, 8,0,830,1811]
  421.     [D:\Program Files\QQ\PersonalDesktop.dll]  [TENCENT, 8,0,830,1811]
  422.     [D:\Program Files\QQ\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
  423.     [D:\Program Files\QQ\AddrSearch.dll]  [Tencent, 2, 3, 16, 12]
  424. [PID: 1440 / Administrator][D:\Program Files\软件安装包\浏览器\GreenBrowser V5.5.0818\GreenBrowser.exe]  [MoreQuick.com, 5, 5, 818, 0]
  425.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  426.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  427.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  428.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  429.     [C:\WINDOWS\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  430.     [C:\WINDOWS\system32\Macromed\Flash\Flash10i.ocx]  [Adobe Systems, Inc., 10,1,82,76]
  431. [PID: 3160 / Administrator][D:\Program Files\360\360safe\LiveUpdate360.exe]  [360.cn, 1, 2, 0, 1022]
  432.     [D:\Program Files\360\360safe\LiveUpd360.dll]  [360.cn, 1, 2, 0, 1038]
  433.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  434.     [D:\Program Files\360\360safe\360net.dll]  [奇虎网, 1, 1, 18, 1021]
  435.     [D:\Program Files\360\360safe\360P2SP.dll]  [360.cn, 1, 3, 0, 1006]
  436. [PID: 2164 / Administrator][D:\Program Files\XueTr\SREng v2.8单文件版(附带插件).exe]  [Smallfrogs Studio, 2.8.2.1321]
  437.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  438.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  439.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  440.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  441. [PID: 3760 / Administrator][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~sfx00228C5BA8\SREngLdr.EXE]  [Smallfrogs Studio, 2.8.2.1321]
  442. [PID: 3772 / Administrator][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~sfx00228C5BA8\SRE1d8d5043.EXE]  [Smallfrogs Studio, 2.8.2.1321]
  443.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  444.     [D:\Program Files\360\360safe\safemon\safemon.dll]  [360.cn, 6, 7, 0, 1003]
  445.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 4.2.3.2812]
  446.     [C:\Program Files\SogouInput\4.2.3.2812\Resource.dll]  [Sogou.com Inc., 4.2.3.2812]
  447.     [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  448.     [C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~sfx00228C5BA8\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]
  449. ==================================
  450. 文件关联
  451. .TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  452. .EXE  OK. ["%1" %*]
  453. .COM  OK. ["%1" %*]
  454. .PIF  OK. ["%1" %*]
  455. .REG  OK. [regedit.exe "%1"]
  456. .BAT  OK. ["%1" %*]
  457. .SCR  OK. ["%1" /S]
  458. .CHM  OK. ["C:\WINDOWS\hh.exe" %1]
  459. .HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
  460. .INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  461. .INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  462. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  463. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  464. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]
  465. ==================================
  466. Winsock 提供者
  467. SogouIpFilter
  468.     C:\WINDOWS\system32\sogouipfilter.dll(Sogou.com, sogouipfilter.dll)
  469. SogouTcpFilter
  470.     C:\WINDOWS\system32\sogouipfilter.dll(Sogou.com, sogouipfilter.dll)
  471. SogouUdpFilter
  472.     C:\WINDOWS\system32\sogouipfilter.dll(Sogou.com, sogouipfilter.dll)
  473. SogouRawFilter
  474.     C:\WINDOWS\system32\sogouipfilter.dll(Sogou.com, sogouipfilter.dll)
  475. ==================================
  476. Autorun.inf
  477. N/A
  478. ==================================
  479. HOSTS 文件
  480. 127.0.0.1       localhost
  481. 0.0.0.0  img.alimama.cn
  482. 0.0.0.0  ad.funshion.com
  483. 0.0.0.0  adk.funshion.com
  484. 0.0.0.0  adm.funshion.com
  485. 0.0.0.0  img.alimama.cn
  486. 0.0.0.0  ad.funshion.com
  487. 0.0.0.0  adk.funshion.com
  488. 0.0.0.0  adm.funshion.com
  489. 0.0.0.0  img.alimama.cn
  490. 0.0.0.0  ad.funshion.com
  491. 0.0.0.0  adk.funshion.com
  492. 0.0.0.0  adm.funshion.com
  493. 0.0.0.0  img.alimama.cn
  494. 0.0.0.0  ad.funshion.com
  495. 0.0.0.0  adk.funshion.com
  496. 0.0.0.0  adm.funshion.com
  497. 0.0.0.0  img.alimama.cn
  498. 0.0.0.0  ad.funshion.com
  499. 0.0.0.0  adk.funshion.com
  500. 0.0.0.0  adm.funshion.com
  501. 0.0.0.0  img.alimama.cn
  502. 0.0.0.0  ad.funshion.com
  503. 0.0.0.0  adk.funshion.com
  504. 0.0.0.0  adm.funshion.com
  505. 0.0.0.0  img.alimama.cn
  506. 0.0.0.0  ad.funshion.com
  507. 0.0.0.0  adk.funshion.com
  508. 0.0.0.0  adm.funshion.com
  509. ==================================
  510. 进程特权扫描
  511. 特殊特权被允许: SeLoadDriverPrivilege [PID = 752, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
  512. 特殊特权被允许: SeLoadDriverPrivilege [PID = 1280, D:\PROGRAM FILES\AVIRA\ANTIVIR DESKTOP\SCHED.EXE]
  513. 特殊特权被允许: SeLoadDriverPrivilege [PID = 2040, D:\PROGRAM FILES\AVIRA\ANTIVIR DESKTOP\AVGNT.EXE]
  514. 特殊特权被允许: SeLoadDriverPrivilege [PID = 228, D:\PROGRAM FILES\AVIRA\ANTIVIR DESKTOP\AVGUARD.EXE]
  515. 特殊特权被允许: SeDebugPrivilege [PID = 1848, D:\PROGRAM FILES\QQ\QQ.EXE]
  516. 特殊特权被允许: SeLoadDriverPrivilege [PID = 1848, D:\PROGRAM FILES\QQ\QQ.EXE]
  517. 特殊特权被允许: SeLoadDriverPrivilege [PID = 1440, D:\PROGRAM FILES\软件安装包\浏览器\GREENBROWSER V5.5.0818\GREENBROWSER.EXE]
  518. 特殊特权被允许: SeLoadDriverPrivilege [PID = 4076, D:\PROGRAM FILES\软件安装包\播放器\西瓜影视播放器绿色版\XIGUAPLAYER.EXE]
  519. 特殊特权被允许: SeLoadDriverPrivilege [PID = 2164, D:\PROGRAM FILES\XUETR\SRENG V2.8单文件版(附带插件).EXE]
  520. ==================================
  521. 计划任务
  522. N/A
  523. ==================================
  524. Windows 安全更新检查
  525. N/A
  526. ==================================
  527. API HOOK
  528. N/A
  529. ==================================
  530. 隐藏进程
  531. N/A
  532. ==================================

复制代码

屁颠屁颠
发表于 2010-9-6 17:22:33 | 显示全部楼层
1.建议使用XDelBox删除以下文件:(XDelBox1.6下载)
使用说明:删除时复制所有要删除文件的路径,在待删除文件列表里点击右键选择剪贴板导入不检查路径,导入后在要删除文件上点击右键,选择立刻重启删除,电脑会重启进入DOS界面进行删除操作。

h:\winio.sys
c:\windows\system32\drivers\tycnetmanage.sys

2.删除重启后使用SREng修复下面各项:

    启动项目 -- 服务-- 驱动程序之如下项禁用:
[WINIO / WINIO]    <\??\H:\winio.sys>
[TYCNetManage Service / TYCNetManage]    <system32\DRIVERS\TYCNetManage.sys>
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-5-14 14:00 , Processed in 0.131603 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表