查看: 5669|回复: 2
收起左侧

[已解决] 应用程序正常初始化失败

 关闭 [复制链接]
c7h
发表于 2011-5-10 18:20:31 | 显示全部楼层 |阅读模式
开机提示userinit.exe应用程序正常初始化(0xc0000142)失败,不能自动进入桌面,手动运行userinit后正常
通过命令行注册动态链接库时任务管理器中多出数十个regsvr32.exe进程,安装了comodo墙和avast免费版

SREng报告


  1. 2011-05-10,17:37:03

  2. System Repair Engineer 2.8.4.1331
  3. Smallfrogs (http://www.KZTechs.com)

  4. Windows XP Professional Service Pack 3 (Build 2600) - 管理权限用户 - 完整功能

  5. 以下内容被选中:
  6.     所有的启动项目(包括注册表、启动文件夹、服务等)
  7.     浏览器加载项
  8.     正在运行的进程(包括进程模块信息)
  9.     文件关联
  10.     Winsock 提供者
  11.     Autorun.inf
  12.     HOSTS 文件
  13.     进程特权扫描
  14.     计划任务
  15.     Windows 安全更新检查
  16.     API HOOK
  17.     隐藏进程


  18. 启动项目
  19. 注册表
  20. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  21.     <ctfmon.exe><D:\WINDOWS.0\system32\ctfmon.exe>  [(Verified)Microsoft Windows Component Publisher]
  22. [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  23.     <load><>  [N/A]
  24. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  25.     <COMODO Internet Security><"D:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h>  [(Verified)Comodo Security Solutions, Inc.]
  26.     <KSafeTray><"D:\Program Files\KSafe\KSafeTray.exe" -autorun>  [(Verified)Kingsoft Security Co.,Ltd]
  27.     <AlcWzrd><ALCWZRD.EXE>  [(Verified)Realtek Semiconductor Corp]
  28.     <avast><"D:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui>  [(Verified)AVAST Software]
  29.     <VFTray><D:\Program Files\VFree\VFTray.exe>  [VirusFree Team.]
  30. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  31.     <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
  32.     <Userinit><D:\WINDOWS.0\system32\userinit.exe,>  [(Verified)Microsoft Windows Component Publisher]
  33. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  34.     <AppInit_DLLs>< D:\WINDOWS.0\system32\guard32.dll>  [(Verified)Comodo Security Solutions, Inc.]
  35. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  36.     <UIHost><logonui.exe>  [(Verified)Microsoft Windows Component Publisher]
  37. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
  38.     <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
  39. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
  40.     <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
  41.     <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
  42.     <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Component Publisher]
  43.     <SysTray><D:\WINDOWS.0\system32\stobject.dll>  [(Verified)Microsoft Windows Component Publisher]
  44.     <UPnPMonitor><D:\WINDOWS.0\system32\upnpui.dll>  [(Verified)Microsoft Windows Component Publisher]
  45. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
  46.     <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Component Publisher]
  47. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
  48.     <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Component Publisher]
  49. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
  50.     <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Component Publisher]
  51. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
  52.     <WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
  53. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
  54.     <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  55. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
  56.     <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  57. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
  58.     <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
  59. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
  60.     <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  61. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
  62.     <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  63. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
  64.     <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  65. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
  66.     <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
  67.     <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
  68. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
  69.     <Microsoft Windows Media Player><D:\WINDOWS.0\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
  70. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
  71.     <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
  72. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
  73.     <浏览器自定义组件><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
  74. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
  75.     <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
  76. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
  77.     <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
  78. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
  79.     <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
  80. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
  81.     <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection D:\WINDOWS.0\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  []
  82. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
  83.     <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection D:\WINDOWS.0\INF\wmp.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
  84. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
  85.     <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
  86. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
  87.     <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
  88. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
  89.     <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Component Publisher]

  90. ==================================
  91. 启动文件夹
  92. [EyeFoo.exe]
  93.   <D:\Documents and Settings\All Users.WINDOWS.0\「开始」菜单\程序\启动\EyeFoo.exe.lnk --> D:\mxf\lvse\EyeFoo\EyeFoo.exe [EyeFoo Software]><N>
  94. [ProcessTamerTray.exe]
  95.   <D:\Documents and Settings\All Users.WINDOWS.0\「开始」菜单\程序\启动\ProcessTamerTray.exe.lnk --> D:\mxf\lvse\PROCES~1\PROCES~3.EXE []><N>
  96. [SuperF4.exe]
  97.   <D:\Documents and Settings\All Users.WINDOWS.0\「开始」菜单\程序\启动\SuperF4.exe.lnk --> D:\mxf\lvse\SuperF4\SuperF4.exe [Stefan Sundin]><N>

  98. ==================================
  99. 服务
  100. [Ati External Event Utility / Ati External Event Utility][Stopped/Auto Start]
  101.   <D:\WINDOWS.0\system32\Ati2evxx.exe><ATI Technologies Inc.>
  102. [avast! Antivirus / avast! Antivirus][Running/Auto Start]
  103.   <"D:\Program Files\AVAST Software\Avast\AvastSvc.exe"><AVAST Software>
  104. [COMODO Internet Security Helper Service / cmdAgent][Running/Auto Start]
  105.   <"D:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"><COMODO>
  106. [Human Interface Device Access / HidServ][Stopped/Disabled]
  107.   <D:\WINDOWS.0\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  108. [KSafe service / KSafeSvc][Running/Auto Start]
  109.   <"D:\Program Files\KSafe\KSafeSvc.exe" -svc><Kingsoft Corporation>
  110. [VirusFree / VirusFree][Stopped/Auto Start]
  111.   <D:\Program Files\VFree\VFService.exe><VirusFree Inc.>
  112. [Kingsoft Rescue Service / Kingsoft Rescue Service][Running/Auto Start]
  113.   <D:\Program Files\Kingsoft\KSM\ksmsvc.exe><>

  114. ==================================
  115. 驱动程序
  116. [atikmdag / atikmdag][Stopped/Manual Start]
  117.   <system32\DRIVERS\atikmdag.sys><ATI Technologies Inc.>
  118. [COMODO Internet Security Sandbox Driver / cmdGuard][Running/System Start]
  119.   <System32\DRIVERS\cmdguard.sys><COMODO>
  120. [COMODO Internet Security Helper Driver / cmdHlp][Running/System Start]
  121.   <System32\DRIVERS\cmdhlp.sys><COMODO>
  122. [Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]
  123.   <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
  124. [COMODO Internet Security Firewall Driver / Inspect][Running/Boot Start]
  125.   <\SystemRoot\System32\DRIVERS\inspect.sys><COMODO>
  126. [Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
  127.   <system32\drivers\RtkHDAud.sys><Realtek Semiconductor Corp.>
  128. [kmodurl / kmodurl][Running/System Start]
  129.   <\??\D:\Program Files\KSafe\kmodurl.sys><Kingsoft Corporation>
  130. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  131.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  132. [Secdrv / Secdrv][Stopped/Manual Start]
  133.   <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
  134. [TCP/IP Protocol Driver / Tcpip][Running/System Start]
  135.   <system32\DRIVERS\tcpip.sys><Microsoft Corporation>
  136. [vfbinmon / vfbinmon][Running/Boot Start]
  137.   <\SystemRoot\system32\drivers\vfbinmon.sys><VirusFree Team Inc.>
  138. [WMDrive / WMDrive][Running/System Start]
  139.   <\??\D:\WINDOWS.0\system32\drivers\WMDrive.sys><WinMount International Inc>
  140. [NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller / yukonwxp][Running/Manual Start]
  141.   <system32\DRIVERS\yk51x86.sys><Marvell>
  142. [ksapi / ksapi][Running/Manual Start]
  143.   <\??\D:\WINDOWS.0\system32\drivers\ksapi.sys><Kingsoft Corporation>

  144. ==================================
  145. 浏览器加载项
  146. [VCUrlBHO Class]
  147.   {0130DA3D-8D24-4CC2-9C09-D85AC2AAF1AB} <D:\mxf\lvse\miniMule\modules\VCBHO.dll, (Signed) VeryCD.com>
  148. [IE2EMBHO Class]
  149.   {0A0DDBD3-6641-40B9-873F-BBDD26D6C14E} <D:\mxf\lvse\miniMule\modules\IE2EM.dll, (Signed) VeryCD.com>
  150. [BitComet Helper]
  151.   {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <D:\mxf\lvse\BitComet\tools\BitCometBHO_1.5.4.11.dll, (Signed) BitComet>
  152. [WanWanBrowerHelper Class]
  153.   {433FF083-4046-488D-B22F-1782BA0A284C} <D:\mxf\lvse\131玩玩2010\wwcom.dll, (Signed) 深圳市拾三意网络科技有限公司>
  154. [BitComet]
  155.   {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} <, >
  156. [VCUrlBHO Class]
  157.   {0130DA3D-8D24-4CC2-9C09-D85AC2AAF1AB} <D:\mxf\lvse\miniMule\modules\VCBHO.dll, (Signed) VeryCD.com>
  158. [IE2EMBHO Class]
  159.   {0A0DDBD3-6641-40B9-873F-BBDD26D6C14E} <D:\mxf\lvse\miniMule\modules\IE2EM.dll, (Signed) VeryCD.com>
  160. [BitComet Helper]
  161.   {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <D:\mxf\lvse\BitComet\tools\BitCometBHO_1.5.4.11.dll, (Signed) BitComet>
  162. [WanWanBrowerHelper Class]
  163.   {433FF083-4046-488D-B22F-1782BA0A284C} <D:\mxf\lvse\131玩玩2010\wwcom.dll, (Signed) 深圳市拾三意网络科技有限公司>
  164. [QQPYChecker Class]
  165.   {5052B4D0-9DF7-45ef-88EF-F42C0EA33A43} <D:\Program Files\Tencent\QQPinyin\4.1.1063.400\QQImeChecker.dll, (Signed) Tencent>
  166. [MUWebControl Class]
  167.   {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <D:\WINDOWS.0\system32\muweb1.dll, (Signed) Microsoft Corporation>
  168. []
  169.   {CF223950-14DC-4A1D-AEDB-47C356A8B993} <, >
  170. []
  171.   {D18A0B52-D63C-4ED0-AFC6-C1E3DC1AF43A} <, >
  172. [Shockwave Flash Object]
  173.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <D:\WINDOWS.0\system32\macromed\flash\Flash.ocx, (Signed) Adobe Systems, Inc.>
  174. [ 使用迷你电驴下载]
  175.   <D:\mxf\lvse\miniMule\IE2EM.htm, N/A>
  176. [&使用BitComet下载]
  177.   <res://D:\mxf\lvse\BitComet\BitComet.exe/AddLink.htm, N/A>
  178. [&使用BitComet下载全部链接]
  179.   <res://D:\mxf\lvse\BitComet\BitComet.exe/AddAllLink.htm, N/A>

  180. ==================================
  181. 正在运行的进程
  182. [PID: 688][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  183. [PID: 756][\??\D:\WINDOWS.0\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  184. [PID: 780][\??\D:\WINDOWS.0\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
  185.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  186.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  187.     [D:\WINDOWS.0\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  188.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  189. [PID: 824][D:\WINDOWS.0\system32\services.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  190.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  191.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  192. [PID: 836][D:\WINDOWS.0\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
  193.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  194.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  195.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  196. [PID: 1024][D:\WINDOWS.0\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  197.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  198.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  199.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  200. [PID: 1108][D:\WINDOWS.0\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  201.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  202.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  203.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  204. [PID: 1148][D:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe]  [COMODO, 5, 3, 176757, 1236]
  205.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  206.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  207.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  208.     [D:\Program Files\COMODO\COMODO Internet Security\Framework.dll]  [COMODO, 5, 3, 174622, 1216]
  209.     [D:\Program Files\COMODO\COMODO Internet Security\scanners\rkdscan.dll]  [COMODO, 5, 3, 174622, 1216]
  210.     [D:\Program Files\COMODO\COMODO Internet Security\platform.dll]  [COMODO, 5, 3, 174622, 1216]
  211.     [D:\Program Files\COMODO\COMODO Internet Security\scanners\common.cav]  [COMODO, 5, 3, 174622, 1216]
  212.     [D:\Program Files\COMODO\COMODO Internet Security\signmgr.dll]  [COMODO, 5, 3, 174622, 1216]
  213.     [D:\Program Files\COMODO\COMODO Internet Security\scanners\fileid.cav]  [COMODO, 5, 3, 174622, 1216]
  214.     [D:\Program Files\COMODO\COMODO Internet Security\scanners\pkann.dll]  [COMODO, 5, 3, 175443, 1225]
  215.     [D:\Program Files\COMODO\COMODO Internet Security\scanners\mach32.dll]  [COMODO, 5, 3, 174622, 1216]
  216.     [D:\Program Files\COMODO\COMODO Internet Security\scanners\white.cav]  [COMODO, 5, 3, 174622, 1216]
  217. [PID: 1172][D:\WINDOWS.0\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  218.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  219.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  220.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  221.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  222.     [D:\WINDOWS.0\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  223. [PID: 1244][D:\WINDOWS.0\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  224.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  225.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  226.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  227. [PID: 1356][D:\Program Files\AVAST Software\Avast\AvastSvc.exe]  [AVAST Software, 6.0.1091.0]
  228.     [D:\Program Files\AVAST Software\Avast\aswCmnBS.dll]  [AVAST Software, 6.0.1091.0]
  229.     [D:\Program Files\AVAST Software\Avast\aswCmnOS.dll]  [AVAST Software, 6.0.1091.0]
  230.     [D:\Program Files\AVAST Software\Avast\aswCmnIS.dll]  [AVAST Software, 6.0.1091.0]
  231.     [D:\Program Files\AVAST Software\Avast\ashBase.dll]  [AVAST Software, 6.0.1091.0]
  232.     [D:\Program Files\AVAST Software\Avast\aswEngLdr.dll]  [AVAST Software, 6.0.1091.0]
  233.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  234.     [D:\Program Files\AVAST Software\Avast\2052\Base.dll]  [AVAST Software, 6, 0, 999, 0]
  235.     [D:\Program Files\AVAST Software\Avast\ashServ.dll]  [AVAST Software, 6.0.1091.0]
  236.     [D:\Program Files\AVAST Software\Avast\aswAux.dll]  [AVAST Software, 6.0.1091.0]
  237.     [D:\Program Files\AVAST Software\Avast\ashTask.dll]  [AVAST Software, 6.0.1091.0]
  238.     [D:\Program Files\AVAST Software\Avast\ashTaskEx.dll]  [AVAST Software, 6.0.1091.0]
  239.     [D:\Program Files\AVAST Software\Avast\aswLog.dll]  [AVAST Software, 6.0.1091.0]
  240.     [D:\Program Files\AVAST Software\Avast\aswSqLt.dll]  [AVAST Software, 6.0.1091.0]
  241.     [D:\Program Files\AVAST Software\Avast\aswProperty.dll]  [AVAST Software, 6.0.1091.0]
  242.     [D:\Program Files\AVAST Software\Avast\Aavm4h.dll]  [AVAST Software, 6.0.1091.0]
  243.     [D:\Program Files\AVAST Software\Avast\AavmRpch.dll]  [AVAST Software, 6.0.1091.0]
  244.     [D:\Program Files\AVAST Software\Avast\aswIdle.dll]  [AVAST Software, 6.0.1091.0]
  245.     [D:\Program Files\AVAST Software\Avast\aswDld.dll]  [AVAST Software, 6.0.1091.0]
  246.     [D:\Program Files\AVAST Software\Avast\AhResBhv.dll]  [AVAST Software, 6.0.1091.0]
  247.     [D:\Program Files\AVAST Software\Avast\AhResJs.dll]  [AVAST Software, 6.0.1091.0]
  248.     [D:\Program Files\AVAST Software\Avast\AhResMai.dll]  [AVAST Software, 6.0.1091.0]
  249.     [D:\Program Files\AVAST Software\Avast\AhResMes.dll]  [AVAST Software, 6.0.1091.0]
  250.     [D:\Program Files\AVAST Software\Avast\AhResNS.dll]  [AVAST Software, 6.0.1091.0]
  251.     [D:\Program Files\AVAST Software\Avast\AhResP2P.dll]  [AVAST Software, 6.0.1091.0]
  252.     [D:\Program Files\AVAST Software\Avast\AhResStd.dll]  [AVAST Software, 6.0.1091.0]
  253.     [D:\Program Files\AVAST Software\Avast\AhResWS.dll]  [AVAST Software, 6.0.1091.0]
  254.     [D:\Program Files\AVAST Software\Avast\ashMaiSv.dll]  [AVAST Software, 6.0.1091.0]
  255.     [D:\Program Files\AVAST Software\Avast\ashWebSv.dll]  [AVAST Software, 6.0.1091.0]
  256.     [D:\Program Files\AVAST Software\Avast\ashWsFtr.dll]  [AVAST Software, 6.0.1091.0]
  257.     [D:\WINDOWS.0\system32\wininet.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  258.     [D:\Program Files\AVAST Software\Avast\defs\11051000\aswEngin.dll]  [AVAST Software, 6.0.1124.0]
  259.     [D:\Program Files\AVAST Software\Avast\defs\11051000\aswCmnOS.dll]  [AVAST Software, 6.0.1114.0]
  260.     [D:\Program Files\AVAST Software\Avast\defs\11051000\aswCmnIS.dll]  [AVAST Software, 6.0.1016.0]
  261.     [D:\Program Files\AVAST Software\Avast\defs\11051000\aswCmnBS.dll]  [AVAST Software, 6.0.1114.0]
  262.     [D:\Program Files\AVAST Software\Avast\defs\11051000\aswScan.dll]  [AVAST Software, 6.0.1117.0]
  263.     [D:\Program Files\AVAST Software\Avast\defs\11051000\algo.dll]  [N/A, ]
  264.     [D:\Program Files\AVAST Software\Avast\defs\11051000\arPot.dll]  [AVAST Software, 6.0.1085.0]
  265.     [D:\Program Files\AVAST Software\Avast\defs\11051000\aswCleanerDLL.dll]  [AVAST Software, 1, 0, 212, 0]
  266. [PID: 1852][D:\Program Files\KSafe\KSafeSvc.exe]  [Kingsoft Corporation, 2.6.3.1401]
  267.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  268.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  269.     [D:\Program Files\KSafe\kdump.dll]  [Kingsoft Corporation, 2011,03,08,1746]
  270.     [D:\Program Files\KSafe\kxebase.dll]  [Kingsoft Corporation, 2010,5,12,402]
  271.     [D:\Program Files\KSafe\scom.dll]  [Kingsoft Corporation, 2010,5,12,402]
  272.     [D:\Program Files\KSafe\kxecore\kxecore.dll]  [Kingsoft Corporation, 2010,5,12,402]
  273.     [D:\Program Files\KSafe\kse\ksbcommsp.dll]  [Kingsoft Corporation, 2011,02,14,1702]
  274.     [D:\Program Files\KSafe\kexectrl.dll]  [Kingsoft Corporation, 2010,09,18,1422]
  275.     [D:\Program Files\KSafe\kwssp.dll]  [Kingsoft Corporation, 2011.04.21.1401]
  276.     [D:\Program Files\KSafe\json.dll]  [N/A, ]
  277.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  278.     [D:\Program Files\KSafe\netstat.dll]  [Kingsoft Corporation, 2.6.3.1401]
  279.     [D:\Program Files\KSafe\fwproxy.dll]  [Kingsoft Corporation, 2.6.3.1401]
  280.     [D:\Program Files\KSafe\kse\BKReScan.dll]  [Kingsoft Corporation, 2011,03,04,1740]
  281.     [D:\Program Files\KSafe\kse\sqlite.dll]  [Kingsoft Corporation, 2010,03,30,781]
  282.     [D:\Program Files\KSafe\kse\ksbwdet2.dll]  [Kingsoft Corporation, 2011,04,28,1920]
  283.     [D:\Program Files\KSafe\kse\ksecansp.dll]  [Kingsoft Corporation, 2011,04,21,1878]
  284.     [D:\Program Files\KSafe\kse\ksecorex.dll]  [Kingsoft Corporation, 2011,03,29,1600]
  285.     [D:\Program Files\KSafe\KEng\kae\kaecore.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  286.     [D:\Program Files\KSafe\kse\wfs.dll]  [Kingsoft Corporation, 2011,04,20,1616]
  287.     [D:\Program Files\KSafe\KEng\kae\karchive.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  288.     [D:\Program Files\KSafe\KEng\kae\kaearcha.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  289.     [D:\Program Files\KSafe\KEng\kae\kaeolea.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  290.     [D:\Program Files\KSafe\KEng\kae\kaearchb.dat]  [Kingsoft Corporation, 2011,02,14,1540]
  291.     [D:\Program Files\KSafe\KEng\kae\kaeunpak.dat]  [Kingsoft Corporation, 2010,06,30,436]
  292.     [D:\Program Files\KSafe\KEng\kae\kaeunpack.dat]  [Kingsoft Corporation, 2010,07,18,365]
  293.     [D:\Program Files\KSafe\KEng\kae\kaecoref.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  294.     [D:\Program Files\KSafe\KEng\kae\kaecorem.dat]  [Kingsoft Corporation, 2010,10,26,1328]
  295.     [D:\Program Files\KSafe\KEng\kae\kaecorea.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  296. [PID: 2032][D:\WINDOWS.0\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
  297.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  298.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  299.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  300.     [D:\WINDOWS.0\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  301. [PID: 732][D:\WINDOWS.0\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  302.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  303.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  304.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  305.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  306.     [D:\Program Files\AVAST Software\Avast\ashShell.dll]  [AVAST Software, 6.0.1091.0]
  307.     [D:\mxf\lvse\winmount\WinMTExt.dll]  [WinMount International Inc., 3.4.1015]
  308.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  309.     [D:\WINDOWS.0\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  310. [PID: 2384][D:\Program Files\COMODO\COMODO Internet Security\cfp.exe]  [COMODO, 5, 3, 176757, 1236]
  311.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  312.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  313.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  314.     [D:\WINDOWS.0\system32\UXTHEME.DLL]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  315.     [D:\Program Files\AVAST Software\Avast\ashShell.dll]  [AVAST Software, 6.0.1091.0]
  316.     [D:\mxf\lvse\winmount\WinMTExt.dll]  [WinMount International Inc., 3.4.1015]
  317.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  318.     [D:\WINDOWS.0\system32\QQPINYIN.IME]  [Tencent, 4.1.1063.400]
  319. [PID: 2416][D:\Program Files\KSafe\KSafeTray.exe]  [Kingsoft Corporation, 2.6.3.1402]
  320.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  321.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  322.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  323.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  324.     [D:\Program Files\KSafe\kdump.dll]  [Kingsoft Corporation, 2011,03,08,1746]
  325.     [D:\Program Files\KSafe\ksafedb.dll]  [Kingsoft Corporation, 2.6.3.1401]
  326.     [D:\Program Files\KSafe\krunopt.dll]  [Kingsoft Corporation, 2.6.3.1401]
  327.     [D:\Program Files\KSafe\kwsctrl.dll]  [Kingsoft Corporation, 2.6.3.1401]
  328.     [D:\Program Files\KSafe\kse\bkrescan.dll]  [Kingsoft Corporation, 2011,03,04,1740]
  329.     [D:\Program Files\KSafe\kse\sqlite.dll]  [Kingsoft Corporation, 2010,03,30,781]
  330.     [D:\Program Files\KSafe\ksafeup.dll]  [Kingsoft Corporation, 2.6.3.1401]
  331.     [D:\Program Files\KSafe\zlib1.dll]  [, 1.2.3]
  332.     [D:\Program Files\KSafe\KEng\ksignup.dll]  [Kingsoft Corporation, 1.1.0.1401]
  333.     [D:\Program Files\KSafe\ksafevul.dll]  [Kingsoft Corporation, 2.6.3.1401]
  334.     [D:\Program Files\KSafe\kavmgr.dll]  [Kingsoft Corporation, 2.6.3.1401]
  335.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  336.     [D:\Program Files\AVAST Software\Avast\ashShell.dll]  [AVAST Software, 6.0.1091.0]
  337.     [D:\mxf\lvse\winmount\WinMTExt.dll]  [WinMount International Inc., 3.4.1015]
  338.     [D:\Program Files\KSafe\KEng\KSGMerge.DLL]  [Kingsoft Corporation, 2011,03,25,1594]
  339.     [D:\Program Files\KSafe\kplugeng.dll]  [Kingsoft Corporation, 2.6.3.1401]
  340. [PID: 2532][D:\Program Files\AVAST Software\Avast\avastUI.exe]  [AVAST Software, 6.0.1091.0]
  341.     [D:\Program Files\AVAST Software\Avast\aswUtil.dll]  [AVAST Software, 6.0.1091.0]
  342.     [D:\Program Files\AVAST Software\Avast\ashBase.dll]  [AVAST Software, 6.0.1091.0]
  343.     [D:\Program Files\AVAST Software\Avast\aswEngLdr.dll]  [AVAST Software, 6.0.1091.0]
  344.     [D:\Program Files\AVAST Software\Avast\aswCmnOS.dll]  [AVAST Software, 6.0.1091.0]
  345.     [D:\Program Files\AVAST Software\Avast\aswCmnIS.dll]  [AVAST Software, 6.0.1091.0]
  346.     [D:\Program Files\AVAST Software\Avast\aswCmnBS.dll]  [AVAST Software, 6.0.1091.0]
  347.     [D:\Program Files\AVAST Software\Avast\ashTask.dll]  [AVAST Software, 6.0.1091.0]
  348.     [D:\Program Files\AVAST Software\Avast\aswAux.dll]  [AVAST Software, 6.0.1091.0]
  349.     [D:\Program Files\AVAST Software\Avast\aswLog.dll]  [AVAST Software, 6.0.1091.0]
  350.     [D:\Program Files\AVAST Software\Avast\aswSqLt.dll]  [AVAST Software, 6.0.1091.0]
  351.     [D:\Program Files\AVAST Software\Avast\aswProperty.dll]  [AVAST Software, 6.0.1091.0]
  352.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  353.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  354.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  355.     [D:\Program Files\AVAST Software\Avast\2052\Base.dll]  [AVAST Software, 6, 0, 999, 0]
  356.     [D:\Program Files\AVAST Software\Avast\aswData.dll]  [AVAST Software, 6.0.1091.0]
  357.     [D:\Program Files\AVAST Software\Avast\ashTaskEx.dll]  [AVAST Software, 6.0.1091.0]
  358.     [D:\Program Files\AVAST Software\Avast\Aavm4h.dll]  [AVAST Software, 6.0.1091.0]
  359.     [D:\Program Files\AVAST Software\Avast\AavmRpch.dll]  [AVAST Software, 6.0.1091.0]
  360.     [D:\Program Files\AVAST Software\Avast\2052\UILangRes.dll]  [AVAST Software, 6, 0, 999, 0]
  361.     [D:\Program Files\AVAST Software\Avast\CommonRes.dll]  [AVAST Software, 6.0.1091.0]
  362.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  363.     [D:\WINDOWS.0\system32\l3codeca.acm]  [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]
  364.     [D:\Program Files\AVAST Software\Avast\ashShell.dll]  [AVAST Software, 6.0.1091.0]
  365.     [D:\mxf\lvse\winmount\WinMTExt.dll]  [WinMount International Inc., 3.4.1015]
  366.     [D:\WINDOWS.0\system32\QQPINYIN.IME]  [Tencent, 4.1.1063.400]
  367. [PID: 2568][D:\WINDOWS.0\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
  368.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  369.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  370.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  371. [PID: 2628][D:\mxf\lvse\EyeFoo\EyeFoo.exe]  [EyeFoo Software, 2, 98, 11, 0]
  372.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  373.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  374.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  375.     [D:\mxf\lvse\EyeFoo\Factory.dll]  [EyeFoo Software, 1.0.0.3]
  376.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  377.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  378.     [D:\WINDOWS.0\system32\quartz.dll]  [Microsoft Corporation, 6.05.2600.5596]
  379.     [D:\WINDOWS.0\system32\msdmo.dll]  [, ]
  380.     [D:\mxf\lvse\EyeFoo\efLock.dll]  [N/A, ]
  381. [PID: 2636][D:\mxf\lvse\ProcessTamer\ProcessTamerTray.exe]  [, 1, 0, 0, 1]
  382.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  383.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  384. [PID: 2660][D:\mxf\lvse\SuperF4\SuperF4.exe]  [Stefan Sundin, 1.1]
  385.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  386.     [D:\WINDOWS.0\system32\WININET.DLL]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  387.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  388.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  389. [PID: 1504][D:\Program Files\Tencent\QQPinyin\4.1.1063.400\QQPYClipboard.exe]  [Tencent, 4.1.1063.400]
  390.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  391.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  392.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  393.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  394. [PID: 3656][D:\Program Files\Kingsoft\KSM\ksmsvc.exe]  [, 2010,10,27,1479]
  395.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  396.     [D:\WINDOWS.0\system32\guard32.dll]  [COMODO, 5, 3, 174622, 1216]
  397.     [D:\Program Files\Kingsoft\KSM\kdump.dll]  [Kingsoft Corporation, 2010,10,11,1453]
  398.     [D:\Program Files\Kingsoft\KSM\kxestat.dll]  [Kingsoft Corporation, 2009,11,20,309]
  399.     [D:\Program Files\kingsoft\KSM\kxebase.dll]  [Kingsoft Corporation, 2009,11,20,309]
  400.     [D:\Program Files\kingsoft\KSM\scom.dll]  [Kingsoft Corporation, 2009,11,20,309]
  401.     [D:\Program Files\kingsoft\KSM\kxecore\kxelog.dll]  [Kingsoft Corporation, 2009,11,20,309]
  402.     [D:\Program Files\kingsoft\KSM\kxecore\kxecore.dll]  [Kingsoft Corporation, 2010,5,12,402]
  403.     [D:\Program Files\kingsoft\KSM\kxecore\kxestat.dll]  [Kingsoft Corporation, 2009,11,20,309]
  404.     [D:\Program Files\Kingsoft\KSM\ksmcorex.dll]  [Kingsoft Corporation, 2011,05,06,1940]
  405.     [D:\Program Files\Kingsoft\KSM\ksapi.dll]  [Kingsoft Corporation, 2011,05,04,30]
  406.     [D:\Program Files\Kingsoft\KSM\ksmbrfix.dll]  [Kingsoft Corporation, 2010,09,13,1403]
  407.     [D:\Program Files\Kingsoft\KSM\ksbwsspx.dll]  [Kingsoft Corporation, 2010,05,27,1072]
  408.     [D:\Program Files\Kingsoft\KSM\sqlite.dll]  [N/A, ]
  409.     [D:\Program Files\Kingsoft\KSM\ksecorex.dll]  [Kingsoft Corporation, 2011,05,04,1633]
  410.     [D:\Program Files\Kingsoft\KSM\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.258]
  411.     [D:\Program Files\Kingsoft\KSM\kae\kaecore.dat]  [Kingsoft Corporation, 2010,12,28,110]
  412.     [D:\Program Files\Kingsoft\KSM\khandler.dll]  [Kingsoft Corporation, 2011,04,08,1844]
  413.     [D:\Program Files\Kingsoft\KSM\ksreng3.dll]  [Kingsoft Corporation, 2011,05,05,1938]
  414.     [D:\Program Files\Kingsoft\KSM\kcldrep.dll]  [Kingsoft Corporation, 2011,04,25,1905]
  415.     [D:\Program Files\Kingsoft\KSM\ksbwdet2.dll]  [Kingsoft Corporation, 2011,04,28,1920]
  416.     [D:\Program Files\Kingsoft\KSM\kavifr.dll]  [Kingsoft Corporation, 2010,05,25,74]
  417.     [D:\Program Files\Kingsoft\KSM\kae\karchive.dat]  [Kingsoft Corporation, 2010,12,28,110]
  418.     [D:\Program Files\Kingsoft\KSM\kae\kaearcha.dat]  [Kingsoft Corporation, 2010,12,28,110]
  419.     [D:\Program Files\Kingsoft\KSM\kae\kaeolea.dat]  [Kingsoft Corporation, 2010,12,28,110]
  420.     [D:\Program Files\Kingsoft\KSM\kae\kaearchb.dat]  [Kingsoft Corporation, 2010,06,30,436]
  421.     [D:\Program Files\Kingsoft\KSM\kscanner.dll]  [Kingsoft Corporation, 2011,05,04,1936]
  422.     [D:\Program Files\Kingsoft\KSM\kplugeng.dll]  [Kingsoft Corporation, 2.3.0.1188]
  423.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  424.     [D:\Program Files\Kingsoft\KSM\report\kinfoc.dll]  [Kingsoft Corporation, 2010,12,13,213]
  425. [PID: 3988][D:\mxf\lvse\sreng\SREngLdr.EXE]  [Smallfrogs Studio, 2.8.4.1331]
  426.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  427. [PID: 2328][D:\mxf\lvse\sreng\SREb6ad46ea.EXE]  [Smallfrogs Studio, 2.8.4.1331]
  428.     [D:\Program Files\AVAST Software\Avast\snxhk.dll]  [AVAST Software, 6.0.1091.0]
  429.     [D:\WINDOWS.0\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5583 (xpsp_sp3_gdr.080417-1430)]
  430.     [D:\Program Files\KSafe\ksfmon.dll]  [Kingsoft Corporation, 2.6.3.1402]
  431.     [D:\WINDOWS.0\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  432.     [D:\WINDOWS.0\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

  433. ==================================
  434. 文件关联
  435. .TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  436. .EXE  OK. ["%1" %*]
  437. .COM  OK. ["%1" %*]
  438. .PIF  OK. ["%1" %*]
  439. .REG  OK. [regedit.exe "%1"]
  440. .BAT  OK. ["%1" %*]
  441. .SCR  OK. ["%1" /S]
  442. .CHM  OK. ["D:\WINDOWS.0\hh.exe" %1]
  443. .HLP  Error. [%SystemRoot%\winhlp32.exe %1]
  444. .INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  445. .INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
  446. .VBS  Error. ["%SystemRoot%\System32\WScript.exe" "%1" %*]
  447. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  448. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]

  449. ==================================
  450. Winsock 提供者
  451. N/A

  452. ==================================
  453. Autorun.inf
  454. N/A

  455. ==================================
  456. HOSTS 文件
  457. 127.0.0.1       localhost

  458. ==================================
  459. 进程特权扫描
  460. 特殊特权被允许: SeLoadDriverPrivilege [PID = 780, D:\WINDOWS.0\SYSTEM32\WINLOGON.EXE]
  461. 特殊特权被允许: SeDebugPrivilege [PID = 2628, D:\MXF\LVSE\EYEFOO\EYEFOO.EXE]
  462. 特殊特权被允许: SeLoadDriverPrivilege [PID = 2628, D:\MXF\LVSE\EYEFOO\EYEFOO.EXE]
  463. 特殊特权被允许: SeLoadDriverPrivilege [PID = 2636, D:\MXF\LVSE\PROCESSTAMER\PROCESSTAMERTRAY.EXE]
  464. 特殊特权被允许: SeLoadDriverPrivilege [PID = 2660, D:\MXF\LVSE\SUPERF4\SUPERF4.EXE]

  465. ==================================
  466. 计划任务
  467. [已启用] KsafeDelay.job
  468.         D:\Program Files\KSafe\KSafeTray.exe -delayruncheck

  469. ==================================
  470. Windows 安全更新检查
  471. N/A

  472. ==================================
  473. API HOOK
  474. 入口点错误:ChangeServiceConfigA (危险等级: 高,  被下面模块所HOOK: 0x003F0809)
  475. 入口点错误:ChangeServiceConfig2A (危险等级: 高,  被下面模块所HOOK: 0x003F0C11)
  476. 入口点错误:ChangeServiceConfigW (危险等级: 高,  被下面模块所HOOK: 0x003F0A0D)
  477. 入口点错误:ChangeServiceConfig2W (危险等级: 高,  被下面模块所HOOK: 0x003F0E15)
  478. 入口点错误:CreateServiceA (危险等级: 高,  被下面模块所HOOK: 0x003F01FD)
  479. 入口点错误:CreateServiceW (危险等级: 高,  被下面模块所HOOK: 0x003F0401)
  480. 入口点错误:DeleteService (危险等级: 高,  被下面模块所HOOK: 0x003F0605)
  481. 入口点错误:LoadLibraryExW (危险等级: 高,  被下面模块所HOOK: 0x00EF02F1)
  482. 入口点错误:CreateProcessA (危险等级: 高,  被下面模块所HOOK: 0x00E902F1)
  483. 入口点错误:CreateProcessW (危险等级: 高,  被下面模块所HOOK: 0x00EC02F1)
  484. 入口点错误:SetWindowsHookExA (危险等级: 高,  被下面模块所HOOK: 0x003E0605)
  485. 入口点错误:SetWindowsHookExW (危险等级: 高,  被下面模块所HOOK: 0x003E0809)
  486. 入口点错误:UnhookWindowsHookEx (危险等级: 高,  被下面模块所HOOK: 0x003E0A0D)

  487. ==================================
  488. 隐藏进程
  489. N/A

  490. ==================================


复制代码

txt475
发表于 2011-5-31 14:13:45 | 显示全部楼层
中了机器狗病毒。
gffgef
发表于 2011-5-31 15:07:18 | 显示全部楼层
建议将文件用RAR打包上传
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2026-4-5 23:19 , Processed in 0.089850 second(s), 4 queries , Redis On.

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表