烦请kfs帮忙看看日志``
[:32:][:32:][:32:][size=5]额``不知道电脑有虾米问题``
电脑莫名其妙的掉线``
请大大们帮偶看看日志```
[/size]
[:13:][:13:][:13:] 谢谢```
[:12:][:12:][:12:] 仙仙办法已经用了``还是掉线```看来``rp``
[[i] 本帖最后由 秋叶濛濛 于 2008-9-1 09:44 编辑 [/i]]
回复 1楼 尤加 的帖子
[code]2008-08-31,19:24:40
System Repair Engineer 2.6.12.1018
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
进程特权扫描
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SigmatelSysTrayApp><stsystra.exe> [SigmaTel, Inc.]
<NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<Microsoft Pinyin IME Migration><C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMESC\IMSCMIG.EXE /INSTALL> [(Verified)Microsoft Corporation]
<nod32kui><"C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE> [Eset ]
<SKYNET Personal FireWall><D:\PROGRA~1\SkyNet\Firewall\pfw.exe> [File is missing]
<360Safetray><D:\Program Files\360safe\safemon\360tray.exe /start> [(Verified)Qizhi Software (beijing) Co. Ltd]
<NvMediaCenter><RunDLL32.exe NvMCTray.dll,NvTaskbarInit> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<Dell QuickSet><C:\Program Files\Dell\QuickSet\Quickset.exe> [Dell Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
<WinlogonNotify: WgaLogon><WgaLogon.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
<IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
<NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Remove.PerUser.NT> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
<N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install> [Microsoft Corporation]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\4919~1.SCR> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<AVP><; > [N/A]
<NvCplDaemon><; RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
==================================
启动文件夹
N/A
==================================
服务
[Autodesk Licensing Service / Autodesk Licensing Service][Stopped/Manual Start]
<"C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe"><Autodesk>
[Contrl Center of Storm Media / ccosm][Running/Auto Start]
<d:\Program Files\StormII\stormliv.exe /asservice><北京暴风网际科技有限公司>
[MAPGIS DataStorage Service / DataStoreService][Stopped/Auto Start]
<><(File is missing)>
[Intel(R) PROSet/Wireless Event Log / EvtEng][Running/Auto Start]
<C:\Program Files\Intel\Wireless\Bin\EvtEng.exe><Intel Corporation>
[NetMeeting Remote Desktop Sharing / mnmsrvc][Stopped/Manual Start]
<><(File is missing)>
[NOD32 Kernel Service / NOD32krn][Running/Auto Start]
<"C:\Program Files\Eset\nod32krn.exe"><Eset>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
<C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[Intel(R) PROSet/Wireless Registry Service / RegSrvc][Running/Auto Start]
<C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe><Intel Corporation>
[Intel(R) PROSet/Wireless Service / S24EventMonitor][Running/Auto Start]
<C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe><Intel Corporation>
[SupportSoft Sprocket Service (dellsupportcenter) / sprtsvc_dellsupportcenter][Stopped/Auto Start]
<><(File is missing)>
[SigmaTel Audio Service / STacSV][Running/Auto Start]
<C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe><SigmaTel, Inc.>
[Intel(R) PROSet/Wireless SSO Service / WLANKEEPER][Running/Auto Start]
<C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe><Intel Corporation>
[XAudioService / XAudioService][Stopped/Auto Start]
<C:\WINDOWS\system32\DRIVERS\xaudio.exe><Conexant Systems, Inc.>
[MAPGIS Licence Service / zdLccSvc][Stopped/Auto Start]
<C:\WINDOWS\system32\zdLccSvc.exe><>
==================================
驱动程序
[AEGIS Protocol (IEEE 802.1x) v3.7.5.0 / AegisP][Running/Auto Start]
<system32\DRIVERS\AegisP.sys><Cisco Systems, Inc.>
[AMON / AMON][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\amon.sys><Eset>
[Alps Touch Pad Filter Driver for Windows 2000/XP/Vista / ApfiltrService][Running/Manual Start]
<system32\DRIVERS\Apfiltr.sys><Alps Electric Co., Ltd.>
[APPDRV / APPDRV][Running/System Start]
<\SystemRoot\SYSTEM32\DRIVERS\APPDRV.SYS><Dell Inc>
[Broadcom NetXtreme Gigabit Ethernet / b57w2k][Running/Manual Start]
<system32\DRIVERS\b57xp32.sys><Broadcom Corporation>
[CdaC15BA / CdaC15BA][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS><Macrovision Europe Ltd>
[DXEC02 / DXEC02][Stopped/Manual Start]
<system32\drivers\dxec02.sys><Knowles Acoustics>
[Microsoft UAA Bus Driver for High Definition Audio / HDAudBus][Running/Manual Start]
<system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HSF_DPV / HSF_DPV][Running/Manual Start]
<system32\DRIVERS\HSX_DPV.sys><Conexant Systems, Inc.>
[HSXHWAZL / HSXHWAZL][Running/Manual Start]
<system32\DRIVERS\HSXHWAZL.sys><Conexant Systems, Inc.>
[mdmxsdk / mdmxsdk][Running/Auto Start]
<system32\DRIVERS\mdmxsdk.sys><Conexant>
[Intel(R) Wireless WiFi Link 适配器驱动程序(适用于 Windows XP 32 位) / NETw4x32][Running/Manual Start]
<system32\DRIVERS\NETw4x32.sys><Intel Corporation>
[Netgroup Packet Filter / NPF][Stopped/Manual Start]
<system32\drivers\npf.sys><Politecnico di Torino>
[npkcrypt / npkcrypt][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\npkcrypt.sys><N/A>
[npkycryp / npkycryp][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\npkycryp.sys><N/A>
[nv / nv][Running/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[rimmptsk / rimmptsk][Running/Auto Start]
<system32\DRIVERS\rimmptsk.sys><REDC>
[rimsptsk / rimsptsk][Running/Auto Start]
<system32\DRIVERS\rimsptsk.sys><REDC>
[Ricoh xD-Picture Card Driver / rismxdp][Running/Auto Start]
<system32\DRIVERS\rixdptsk.sys><REDC>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
<system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[WLAN 传输 / s24trans][Running/Auto Start]
<system32\DRIVERS\s24trans.sys><Intel Corporation>
[SafeBoxKrnl / SafeBoxKrnl][Running/System Start]
<\??\C:\Program Files\360Safebox\SafeBoxKrnl.sys><360安全中心>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[SKNFW / SKNFW][Running/System Start]
<\??\C:\WINDOWS\system32\Drivers\SKNFW.sys><N/A>
[SkyProcs / SkyProcs][Stopped/Manual Start]
<\??\D:\PROGRA~1\SkyNet\Firewall\SkyProcs.sys><N/A>
[SigmaTel High Definition Audio CODEC / STHDA][Running/Manual Start]
<system32\drivers\sthda.sys><SigmaTel, Inc.>
[winachsf / winachsf][Running/Manual Start]
<system32\DRIVERS\HSX_CNXT.sys><Conexant Systems, Inc.>
[XAudio / XAudio][Running/Auto Start]
<system32\DRIVERS\xaudio.sys><Conexant Systems, Inc.>
==================================
浏览器加载项
[ThunderAtOnce Class]
{01443AEC-0FD1-40fd-9C87-E93D1494C233} <d:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <D:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[SafeMon Class]
{B69F34DD-F0F9-42DC-9EDD-957187DA688D} <D:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[启动迅雷5]
{09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <d:\Program Files\Thunder Network\Thunder\Thunder.exe, Thunder Networking Technologies,LTD>
[PPLive]
{95B3F550-91C4-4627-BCC4-521288C52977} <d:\Program Files\PPLive\PPLive.exe, (Signed) N/A>
[EditCtrl Class]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, (Signed) >
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[KooPlayer Control]
{C728DAB8-FDF5-4CD7-89DD-879D25794C77} <C:\WINDOWS\DOWNLO~1\CCTVKO~1.OCX, (Signed) CCTV.COM>
[ThunderAtOnce Class]
{01443AEC-0FD1-40FD-9C87-E93D1494C233} <d:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[Object for constructing type libraries for scriptlets]
{06290BD5-48AA-11D2-8432-006008C3FBFC} <C:\WINDOWS\system32\scrobj.dll, (Signed) Microsoft Corporation>
[]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <, >
[]
{09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <, >
[]
{11D9B8C0-4F69-42A0-AB33-ADB7E5534260} <, >
[KuGoo3Down Control]
{162AF25B-5A2A-448E-A842-194653EF3E05} <C:\WINDOWS\system32\KuGoo3DownXControl.ocx, 酷狗>
[Fade]
{16B280C5-EE70-11D1-9066-00C04FD9189D} <C:\WINDOWS\system32\Dxtmsft.dll, (Signed) Microsoft Corporation>
[]
{16C6167B-FED4-4CEE-8951-134C9A345DA2} <, >
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>
[InformationCardSigninHelper Class]
{19916E01-B44E-4E31-94A4-4696DF46157B} <C:\WINDOWS\system32\icardie.dll, (Signed) Microsoft Corporation>
[InstallHelper Class]
{1DABF8D5-8430-4985-9B7F-A30E53D709B3} <d:\Program Files\Tencent\QQLive\QQLiveInstaller.dll, >
[iTrusPTA Class]
{1E0DFFCF-27FF-4574-849B-55007349FEDA} <C:\WINDOWS\system32\aliedit\pta.dll, (Signed) >
[]
{1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <, >
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
[]
{2375BEE5-F175-4F1C-81EC-8E4E2E72E2DD} <, >
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, (Signed) Microsoft Corporation>
[RealPlayer RAM Download Handler]
{2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93} <d:\Program Files\StormII\Codec\rmoc3260.dll, (Signed) RealNetworks, Inc.>
[IETag Factory]
{38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, (Signed) Microsoft Corporation>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <d:\Program Files\StormII\Codec\QTSystem\QTPlugin.ocx, Apple Computer, Inc.>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Thunder Agent Class]
{485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <D:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[EditCtrl Class]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, (Signed) >
[]
{4E83D567-4697-4F7B-B1F0-A513B01DB89A} <, >
[HHCtrl Object]
{52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, (Signed) Microsoft Corporation>
[XML Data Source Object]
{550DDA30-0541-11D2-9CA9-0060B0EC3D39} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Shell Name Space]
{55136805-B2DE-11D1-B9F2-00A0C98BC547} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[]
{5EC7C511-CD0F-42E6-830C-1BD9882F3458} <, >
[BlogMusicControl Class]
{63F61B19-14AD-40EB-A2D5-5CD4A50888A8} <C:\Program Files\Thunder Network\Thunder\Components\Community\BlogMusicCtl.dll, 深圳市迅雷网络技术有限公司>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[XMP Class]
{6483F145-A768-4C41-AACC-52D4D7845851} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xplayer.dll_1_work, >
[QQMusicCreator Class]
{6927992D-6A89-4549-8A32-95901BF5D920} <, >
[XDRM]
{693571CB-54A3-4E90-9D52-EEAE1334E2D3} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xdrm.dll_1_work, >
[StormPlayer Object]
{6BE52E1D-E586-474F-A6E2-1A85A9B4D9FB} <d:\Program Files\StormII\mps.dll, (Signed) 北京暴风网际科技有限公司>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[WangWangObj Class]
{6E213FC7-DD5A-4115-B7E6-D4C7838C361E} <D:\Program Files\Alisoft\WangWang\WangWangX5.dll, 阿里巴巴软件(上海)有限公司>
[AxInputControl Class]
{73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\system32\INPUTC~1.DLL, >
[MediaComm Class]
{7670648D-461B-42AF-BDFE-46D26AF5EFF2} <d:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin17.dll, Thunder Networking Technologies,LTD>
[Peer Adapter]
{80E18282-3716-48CA-B50C-F7B7F6A32791} <, >
[360SafeLive]
{87515F61-A66C-4319-A0E0-D416CB8059E3} <D:\Program Files\360safe\live.dll, (Signed) 360.cn>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <D:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
[XML HTTP 4.0]
{88D969C5-F192-11D4-A65F-0040963251E5} <%SystemRoot%\system32\msxml4.dll, N/A>
[XML DOM Document 5.0]
{88D969E5-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 5.0]
{88D969E6-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, (Signed) Microsoft Corporation>
[XSL Template 5.0]
{88D969E8-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, (Signed) Microsoft Corporation>
[XML HTTP 5.0]
{88D969EA-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, (Signed) Microsoft Corporation>
[XML DOM Document 6.0]
{88D96A05-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XML HTTP 6.0]
{88D96A0A-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[AxSubmitControl Class]
{8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\WINDOWS\system32\SUBMIT~1.DLL, >
[]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
[]
{95B3F550-91C4-4627-BCC4-521288C52977} <, >
[RMGetLicense Class]
{A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\WINDOWS\system32\msnetobj.dll, (Signed) Microsoft Corporation>
[DapCtrl Class]
{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.1.5803.60.(397).dll, ShenZhen Thunder Networking Technologies Ltd.>
[SafeMon Class]
{B69F34DD-F0F9-42DC-9EDD-957187DA688D} <D:\Program Files\360safe\safemon\safemon.dll, (Signed) 360.CN>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, (Signed) Microsoft Corporation>
[]
{BF50AC63-19DA-487E-AD4A-0B452D823B59} <, >
[KooPlayer Control]
{C728DAB8-FDF5-4CD7-89DD-879D25794C77} <C:\WINDOWS\DOWNLO~1\CCTVKO~1.OCX, (Signed) CCTV.COM>
[Microsoft Office 12 Authorization Control]
{C9712B19-838B-45A5-ABF2-9A315DDDED50} <C:\PROGRA~1\MICROS~2\Office12\AUTHZAX.DLL, (Signed) Microsoft Corporation>
[QQPlayerSvr Proxy Control]
{CD108273-D434-43E6-AA90-1469F97EB398} <d:\Program Files\Tencent\QQ\QzoneMusic.dll, (Signed) 腾讯科技>
[AUDIO__MID Moniker Class]
{CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[AUDIO__MP3 Moniker Class]
{CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[AUDIO__WAV Moniker Class]
{CD3AFA7B-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[AUDIO__X_MS_WMA Moniker Class]
{CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[VIDEO__X_MS_ASF Moniker Class]
{CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
{CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[VIDEO__X_MS_WVX Moniker Class]
{CD3AFA95-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[RealPlayer G2 Control]
{CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <d:\Program Files\StormII\Codec\rmoc3260.dll, (Signed) RealNetworks, Inc.>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, (Signed) Adobe Systems, Inc.>
[Microsoft Agent Control 2.0]
{D45FD31B-5C6E-11D1-9EC1-00C04FD7081F} <, >
[AgControl Class]
{DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files\Microsoft Silverlight\npctrl.1.0.30401.0.dll, (Signed) Microsoft Corporation>
[PlayerCtrl Class]
{E05BC2A3-9A46-4A32-80C9-023A473F5B23} <D:\Program Files\Tencent\QQMusic\QzoneMusic.dll, (Signed) 深圳腾讯科技>
[TimwpDll.TimwpCheck]
{ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4} <D:\PROGRA~1\Tencent\QQ\Timwp.dll, (Signed) TENCENT>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Thunder DapPlayer]
{EEDD6FF9-13DE-496B-9A1C-D78B3215E266} <d:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DapPlayer3.0.5712.71.397.dll, ShenZhen Thunder Networking Technologies Ltd.>
[XPPlayer Class]
{F3E70CEA-956E-49CC-B444-73AFE593AD7F} <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.0.0.181.(397).dll, Xunlei Networking Technologies,LTD>
[XML DOM Document 3.0]
{F5078F32-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 3.0]
{F5078F33-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML HTTP 3.0]
{F5078F35-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XSL Template 3.0]
{F5078F36-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[使用迅雷下载]
<D:\Program Files\Thunder Network\Thunder\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
<D:\Program Files\Thunder Network\Thunder\Program\getallurl.htm, N/A>
[添加到QQ表情]
<d:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
==================================
正在运行的进程
[PID: 760 / SYSTEM][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 824 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 852 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[c:\windows\system32\netprovcredman.dll] [Intel Corporation, 11.5.0.0]
[PID: 896 / SYSTEM][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll] [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 908 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1088 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1156 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[PID: 1312 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[PID: 1344 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe] [Intel Corporation , 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll] [The OpenSSL Project, http://www.openssl.org/, 0.9.8]
[C:\Program Files\Intel\Wireless\Bin\IntStngs.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\IWMSPROV.DLL] [N/A, ]
[PID: 1476 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[PID: 1576 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[PID: 168 / Liziblue][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 17.0.54.0]
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] [Autodesk, 17.0.54.110]
[c:\windows\system32\netprovcredman.dll] [Intel Corporation, 11.5.0.0]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 8.1.0.0]
[C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.CHS] [Adobe Systems, Inc., 8.0.0.0]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.11.5619]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.11.5619]
[C:\WINDOWS\system32\nvapi.dll] [NVIDIA Corporation, 6.14.11.5619]
[C:\WINDOWS\system32\nvshell.dll] [, ]
[d:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.29]
[D:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 96]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\Dell\QuickSet\dadkeyb.dll] [N/A, ]
[PID: 1140 / SYSTEM][d:\Program Files\StormII\stormliv.exe] [北京暴风网际科技有限公司, 3, 8, 6, 20]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[PID: 1240 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\EvtEng.exe] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\DbEngine.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll] [The OpenSSL Project, http://www.openssl.org/, 0.9.8]
[C:\Program Files\Intel\Wireless\Bin\IntStngs.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\MurocApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll] [Intel Corporation, 11. 5. 0. 0]
[PID: 1332 / SYSTEM][C:\Program Files\Eset\nod32krn.exe] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\nod32krr.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\ps_amon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_amon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\ps_dmon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_dmon.dll] [N/A, ]
[C:\Program Files\Eset\ps_emon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_emon.dll] [N/A, ]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[C:\Program Files\Eset\ps_mirr.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_mirr.dll] [N/A, ]
[C:\Program Files\Eset\ps_nod32.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_nod32.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\ps_upd.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_upd.dll] [N/A, ]
[PID: 1380 / SYSTEM][C:\WINDOWS\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.11.5619]
[C:\WINDOWS\system32\nvapi.dll] [NVIDIA Corporation, 6.14.11.5619]
[PID: 1412 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe] [Intel Corporation, 11. 5. 0. 0]
[PID: 1508 / SYSTEM][C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe] [SigmaTel, Inc., 1.0.5511.0 nd595 cp1]
[C:\WINDOWS\system32\stacapi.dll] [SigmaTel, Inc., 1.0.5511.0 nd595 cp1]
[PID: 584 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\DbEngine.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll] [The OpenSSL Project, http://www.openssl.org/, 0.9.8]
[C:\Program Files\Intel\Wireless\Bin\IntStngs.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\MurocApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\C1XStngs.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\C8021CHS.dll] [Intel Corporation, 11. 5. 0. 0]
[PID: 1740 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[PID: 500 / Liziblue][C:\WINDOWS\stsystra.exe] [SigmaTel, Inc., 1.0.5511.0 nd595 cp1]
[C:\WINDOWS\system32\STLang.dll] [SigmaTel, Inc., 1.0.5469.0 nd575 cp1]
[C:\WINDOWS\system32\stacapi.dll] [SigmaTel, Inc., 1.0.5511.0 nd595 cp1]
[PID: 560 / Liziblue][C:\Program Files\Eset\nod32kui.exe] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\nod32rui.dll] [N/A, ]
[C:\Program Files\Eset\pu_amon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_amon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pu_dmon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_dmon.dll] [N/A, ]
[C:\Program Files\Eset\pu_emon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_emon.dll] [N/A, ]
[C:\Program Files\Eset\pu_imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[C:\Program Files\Eset\pu_mirr.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_mirr.dll] [N/A, ]
[C:\Program Files\Eset\pu_nod32.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_nod32.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pu_upd.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_upd.dll] [N/A, ]
[PID: 736 / Liziblue][C:\WINDOWS\system32\RunDLL32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\NvMCTray.dll] [NVIDIA Corporation, 6.14.11.5619]
[C:\WINDOWS\system32\nvapi.dll] [NVIDIA Corporation, 6.14.11.5619]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.11.5619]
[PID: 696 / Liziblue][C:\Program Files\Dell\QuickSet\Quickset.exe] [Dell Inc., 8, 3, 14, 0]
[C:\Program Files\Dell\QuickSet\IWH9.dll] [Dell Inc., 8, 3, 14, 0]
[C:\Program Files\Dell\QuickSet\IWH10.dll] [Dell Inc., 8, 3, 14, 0]
[C:\Program Files\Intel\Wireless\Bin\MurocApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\IntStngs.dll] [Intel Corporation, 11. 5. 0. 0]
[C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll] [The OpenSSL Project, http://www.openssl.org/, 0.9.8]
[C:\Program Files\Dell\QuickSet\dadkeyb.dll] [N/A, ]
[PID: 792 / Liziblue][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2336 / SYSTEM][C:\WINDOWS\system32\wbem\wmiprvse.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3476 / Liziblue][C:\WINDOWS\system32\wuauclt.exe] [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[PID: 3600 / Liziblue][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 7.00.6000.16705 (vista_gdr.080618-1506)]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 17.0.54.0]
[d:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.29]
[D:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 96]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[D:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 4, 23]
[C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0]
[PID: 964 / Liziblue][D:\Program Files\Tencent\QQ\QQ.exe] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQBaseClassInDll.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQHelperDll.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\BasicCtrlDll.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[D:\Program Files\Tencent\QQ\QQAPI.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\LoginCtrl.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\LoginCtrlRes.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQRes.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQMainFrame.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\UnReadMsgMgr.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\QQPlugin.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\CQQApplication.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\FlashAvatarDll.dll] [, 1, 4, 0, 1]
[D:\Program Files\Tencent\QQ\NewSkin.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\MailSummary.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQSpace.dll] [TENCENT, 8,0,775,1803]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[D:\Program Files\Tencent\QQ\QQKnowledgeSearch.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\OEMApplication.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQGroupMng.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQSysMsgMng.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\QQAllInOne.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\SCCore.dll] [TENCENT, 1, 6, 0, 2]
[D:\Program Files\Tencent\QQ\CameraDll.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\UserDefinedHead.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQPet.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQConfigPlugin.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQCustomFace.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\QRingMng.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\LongConnection.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQAvatar.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\PhoneAPI.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\DialerAllinOne.dll] [tencent, 1, 4, 0, 0]
[D:\Program Files\Tencent\QQ\ImageOle.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQLiveQMng.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQMagicFace.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQSceneMng.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\BQQApplication.dll] [N/A, ]
[D:\Program Files\Tencent\QQ\CommercesMng.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\PersonalDesktop.dll] [TENCENT, 8,0,775,1803]
[D:\Program Files\Tencent\QQ\QQAddr.dll] [深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
[D:\Program Files\Tencent\QQ\AddrSearch.dll] [腾讯科技(深圳)有限公司, 2, 2, 1, 15]
[D:\Program Files\Tencent\QQ\GroupConnection.dll] [TENCENT, 8,0,775,1803]
[C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0]
[C:\Program Files\Dell\QuickSet\dadkeyb.dll] [N/A, ]
[C:\WINDOWS\system32\SOGOUPY.IME] [Sogou.com Inc., 3.3.0.0]
[D:\Program Files\Tencent\QQ\QQFileTransfer.dll] [TENCENT, 8,0,775,1803]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 17.0.54.0]
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] [Autodesk, 17.0.54.110]
[PID: 3860 / Liziblue][d:\Program Files\Tencent\QQ\TXPlatform.exe] [Tencent, 1, 0, 170, 0]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[PID: 400 / Liziblue][D:\Program Files\KuGou\KuGou2008\KuGoo.exe] [酷狗音乐, 5.2.0.527]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[D:\Program Files\KuGou\KuGou2008\InExtend\kg_ksout.dll] [N/A, ]
[D:\Program Files\KuGou\KuGou2008\kgplaycomm.dll] [N/A, ]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[D:\Program Files\KuGou\KuGou2008\cdread.dll] [N/A, ]
[D:\Program Files\KuGou\KuGou2008\SkinRes.dll] [N/A, ]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 17.0.54.0]
[C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0]
[D:\Program Files\KuGou\KuGou2008\msdmo.dll] [Microsoft Corporation, 6.03.01.0400]
[PID: 2480 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 4804 / Liziblue][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 7.00.6000.16705 (vista_gdr.080618-1506)]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 17.0.54.0]
[d:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.29]
[D:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 96]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[C:\Program Files\Dell\QuickSet\dadkeyb.dll] [N/A, ]
[C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0]
[D:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 4, 23]
[PID: 1024 / Liziblue][D:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe] [Thunder Networking Technologies,LTD, 5.8.3.556]
[D:\Program Files\Thunder Network\Thunder\Program\BugReport.dll] [Thunder Networking Technologies,LTD, 1, 4, 1, 20]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[D:\Program Files\Thunder Network\Thunder\Program\TaskManager.dll] [Thunder Networking Technologies,LTD, 1, 3, 8, 68]
[D:\Program Files\Thunder Network\Thunder\Program\download_interface.dll] [Thunder Networking Technologies,LTD, 3, 1, 2, 318]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[D:\Program Files\Thunder Network\Thunder\Program\asyn_frame.dll] [Thunder Networking Technologies,LTD, 1, 1, 2, 21]
[D:\Program Files\Thunder Network\Thunder\Program\ATL71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
[D:\Program Files\Thunder Network\Thunder\Program\p2p_upload.dll] [Thunder Networking Technologies,LTD, 1, 1, 2, 8]
[D:\Program Files\Thunder Network\Thunder\Program\fs.dll] [Thunder Networking Technologies,LTD, 1, 1, 2, 10]
[D:\Program Files\Thunder Network\Thunder\Program\XLNet.Dll] [Thunder Networking Technologies,LTD, 1, 5, 2, 25]
[D:\Program Files\Thunder Network\Thunder\Program\BHOStub.dll] [Thunder Networking Technologies,LTD, 1, 1, 1, 10]
[D:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DownAndPlay.dll] [, 1, 0, 12, 30]
[D:\Program Files\Thunder Network\Thunder\Program\backend_agent.dll] [Thunder Networking Technologies,LTD, 1, 1, 2, 20]
[D:\Program Files\Thunder Network\Thunder\Program\emule.dll] [, 1, 1, 2, 20]
[D:\Program Files\Thunder Network\Thunder\Program\down_dispatcher.dll] [Thunder Networking Technologies,LTD, 1, 0, 2, 17]
[D:\Program Files\Thunder Network\Thunder\Program\ptl.dll] [Thunder Networking Technologies,LTD, 3, 1, 2, 24]
[D:\Program Files\Thunder Network\Thunder\Program\xl_stat.dll] [Thunder Networking Technologies,LTD, 1, 1, 2, 3]
[D:\Program Files\Thunder Network\Thunder\Program\p2p_network_com.dll] [, 1, 0, 2, 25]
[D:\Program Files\Thunder Network\Thunder\Program\p2sp.dll] [Thunder Networking Technologies,LTD, 1, 1, 2, 25]
[D:\Program Files\Thunder Network\Thunder\Program\iTargetAD.dll] [Thunder Networking Technologies,LTD, 1, 0, 4, 35]
[C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0]
[D:\Program Files\Thunder Network\Thunder\Program\p2p.dll] [Thunder Networking Technologies,LTD, 1,1,2,24]
[D:\Program Files\Thunder Network\Thunder\Program\xldc.dll] [Thunder Networking Technologies,LTD, 3, 6, 2, 15]
[D:\Program Files\Thunder Network\Thunder\Program\stream.dll] [Thunder Networking Technologies,LTD, 2, 1, 2, 382]
[D:\Program Files\Thunder Network\Thunder\Program\p2p_local_res.dll] [Thunder Networking Technologies,LTD, 1,1,2,12]
[D:\Program Files\Thunder Network\Thunder\Program\al.dll] [Thunder Networking Technologies,LTD, 1,1,2,15]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 17.0.54.0]
[D:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll] [ , 1, 0, 2, 25]
[d:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed17.dll] [Thunder Networking Technologies,LTD, 3, 4, 8, 107]
[d:\Program Files\Thunder Network\Thunder\Components\InMedia\PlayerHelper.dll] [thunder, 1, 2, 7, 61]
[d:\Program Files\Thunder Network\Thunder\Components\InMedia\XLIPC.DLL] [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
[D:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll] [Thunder Networking Technologies,LTD, 2, 2, 5, 70]
[D:\Program Files\Thunder Network\Thunder\Components\Community\XLCommunity.dll] [Thunder Networking Technologies,LTD, 2, 4, 0, 77]
[D:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll] [Thunder Networking Technologies,LTD, 2, 17, 0, 67]
[D:\Program Files\Thunder Network\Thunder\Program\MSVCIRT.dll] [Microsoft Corporation, 7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[D:\Program Files\Thunder Network\Thunder\Program\imdt.dll] [TODO: <Company name>, 1.1.2.5]
[D:\Program Files\Thunder Network\Thunder\Components\Security\ThunderSafe.dll] [深圳市迅雷网络技术有限公司, 2, 1, 1, 93]
[D:\Program Files\Thunder Network\Thunder\Components\Security\ConfigManager.dll] [深圳市迅雷网络技术有限公司, 1, 0, 0, 1]
[D:\Program Files\Thunder Network\Thunder\Components\Security\SafeManager.dll] [深圳市迅雷网络技术有限公司, 1, 0, 4, 16]
[D:\Program Files\Thunder Network\Thunder\Program\XLNetU.Dll] [Thunder Networking Technologies,LTD, 1, 5, 1, 24]
[D:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\XLSafeHost.dll] [深圳市迅雷网络技术有限公司, 1, 2, 5, 81]
[D:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\AutoHelp.dll] [Beijing Rising Technology Co., Ltd., 6.0.0.3]
[D:\Program Files\Thunder Network\Thunder\Components\Search\XLSearch.dll] [Thunder Networking Technologies,LTD, 1, 1, 6, 21]
[D:\Program Files\Thunder Network\Thunder\Program\LiveUpdate.dll] [Thunder Networking Technologies,LTD, 1, 2, 3, 25]
[D:\Program Files\Thunder Network\Thunder\Plugins\BhoAdv\bho_adv.dll] [深圳市迅雷网络技术有限公司, 1.0.1.0]
[D:\Program Files\Thunder Network\Thunder\Program\emule_id.dll] [, 1, 0, 2, 8]
[D:\Program Files\Thunder Network\Thunder\Plugins\KanKanTop\KanKanTop.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 4]
[D:\Program Files\Thunder Network\Thunder\Components\ExplorerHelper\ExplorerHelper.dll] [Thunder Networking Technologies,LTD, 1, 0, 4, 19]
[D:\Program Files\Thunder Network\Thunder\Components\Tips\TipsClient.dll] [Thunder Networking Technologies,LTD, 2, 2, 13, 118]
[D:\Program Files\Thunder Network\Thunder\Components\VPSHELL\VPSHELL.dll] [迅雷网络, 3, 0, 1, 33]
[D:\Program Files\Thunder Network\Thunder\Components\UserExperience\UserExperience.dll] [Thunder Networking Technologies,LTD, 1, 0, 3, 5]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsXlCom.dll] [, 1, 0, 0, 30]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
[D:\Program Files\Thunder Network\Thunder\Components\ResWorker\MediaWorker.dll] [Thunder Networking Technologies,LTD, 1, 2, 0, 22]
[D:\Program Files\Thunder Network\Thunder\Components\Tips\XLIPC.DLL] [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
[D:\Program Files\Thunder Network\Thunder\Components\DownloadStat\DownloadStat.dll] [Thunder Networking Technologies,LTD, 1, 4, 1, 6]
[D:\Program Files\Thunder Network\Thunder\Program\bd.dll] [Thunder Networking Technologies,LTD, 1, 0, 2, 17]
[PID: 2360 / Liziblue][C:\Documents and Settings\Liziblue\桌面\sreng2\SREngLdr.EXE] [Smallfrogs Studio, 2.6.12.1018]
[PID: 2532 / Liziblue][C:\Documents and Settings\Liziblue\桌面\sreng2\SREbaf6fd5e.EXE] [Smallfrogs Studio, 2.6.12.1018]
[D:\Program Files\360safe\safemon\safemon.dll] [360.CN, 4, 2, 0, 1005]
[C:\Documents and Settings\Liziblue\桌面\sreng2\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
[C:\WINDOWS\system32\imon.dll] [Eset , 2, 51, 12 ]
[C:\Program Files\Eset\pr_imon.dll] [N/A, ]
==================================
文件关联
.TXT Error. [C:\WINDOWS\notepad.exe %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. ["hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
NOD32 protected [MSAFD Tcpip [TCP/IP]]
C:\WINDOWS\system32\imon.dll(Eset , NOD32 IMON - Internet scanning support)
NOD32 protected [MSAFD Tcpip [UDP/IP]]
C:\WINDOWS\system32\imon.dll(Eset , NOD32 IMON - Internet scanning support)
NOD32 protected [MSAFD Tcpip [RAW/IP]]
C:\WINDOWS\system32\imon.dll(Eset , NOD32 IMON - Internet scanning support)
NOD32 protected [RSVP UDP Service Provider]
C:\WINDOWS\system32\imon.dll(Eset , NOD32 IMON - Internet scanning support)
NOD32 protected [RSVP TCP Service Provider]
C:\WINDOWS\system32\imon.dll(Eset , NOD32 IMON - Internet scanning support)
NOD32
C:\WINDOWS\system32\imon.dll(Eset , NOD32 IMON - Internet scanning support)
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
127.0.0.1 yu.8s7.net
127.0.0.1 2.joppnqq.com
127.0.0.1 1.joppnqq.com
127.0.0.1 1.jopenqc.com
127.0.0.1 xxx.vh7.biz
127.0.0.1 3.joppnqq.com
127.0.0.1 www.868wg.com
127.0.0.1 ilove.com
127.0.0.1 www.tomwg.com
127.0.0.1 www.22aaa.com
127.0.0.1 new.749571.com
127.0.0.1 cao.kv8.info
127.0.0.1 171817.171817.com
127.0.0.1 down.malasc.cn
127.0.0.1 nx.51ylb.cn
127.0.0.1 qqq.dzydhx.com
127.0.0.1 www.333292.com
127.0.0.1 up.22x44.com
127.0.0.1 bad.tqdlt.cn
127.0.0.1 c3.aishangai.net
127.0.0.1 xxx.188dm.com
127.0.0.1 d1.163500.net
127.0.0.1 mmsk.cn
127.0.0.1 www.mmsk.cn
127.0.0.1 www.soudong.com
==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1344, C:\PROGRAM FILES\INTEL\WIRELESS\BIN\S24EVMON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1508, C:\PROGRAM FILES\SIGMATEL\C-MAJOR AUDIO\WDM\STACSV.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 500, C:\WINDOWS\STSYSTRA.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 560, C:\PROGRAM FILES\ESET\NOD32KUI.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 696, C:\PROGRAM FILES\DELL\QUICKSET\QUICKSET.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 400, D:\PROGRAM FILES\KUGOU\KUGOU2008\KUGOO.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1024, D:\PROGRAM FILES\THUNDER NETWORK\THUNDER\PROGRAM\THUNDER5.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2360, C:\DOCUMENTS AND SETTINGS\LIZIBLUE\桌面\SRENG2\SRENGLDR.EXE]
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================
[/code]
[[i] 本帖最后由 秋叶濛濛 于 2008-9-1 09:45 编辑 [/i]]
回复 2楼 喜碧仙仙 的帖子
[:18:] [:18:] [:18:] ```hebe厉害的说``
回复 3楼 尤加 的帖子
嘿嘿嘿~~~乃得东西好多………………
戴尔笔记本?无线上网? 初步看应该没有病毒.
我是新手.准确率85%
入门教程[url=http://nkevin.blog.163.com/blog/#pn2]http://nkevin.blog.163.com/blog/#pn2[/url]
[[i] 本帖最后由 gaojing 于 2008-8-31 20:53 编辑 [/i]]
回复 4楼 喜碧仙仙 的帖子
[:xi23:] [:xi23:] [:xi23:] 不是偶滴```[:xi24:] [:xi24:] [:xi24:] 偶被拖的掉线了```这个是问题机``
回复 5楼 gaojing 的帖子
[:03:] 谢谢``回复 6楼 尤加 的帖子
有木马,我看到有了已经 删除c:\windows\system32\drivers\cdac15ba.sys启动项目 -- 服务-- 驱动程序之如下项禁用:
[CdaC15BA / CdaC15BA] <\??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS>
回复 9楼 喜碧仙仙 的帖子
[:05:] [:05:] [:05:]```果然```
[:13:][:13:]厉害的说``
回复 10楼 尤加 的帖子
表夸………………会骄傲的[:01:] [:14:] [:10:] [:03:] [:17:] [:18:] [:19:] [:24:] [:28:] [:26:] [:1:] [:xi10:] [:xi12:] [:xi11:] [:xi13:] [:xi14:] [:xi2:] [:xi20:] [:xi23:] [:xi27:] [:xi28:] [:xi30:] [:xi3:] [:xi33:] [:xi36:] [:xi37:] [:xi5:] [:xi21:] [:xi40:] [:xi41:] [:xi45:] [:xi46:] [:xi50:] [:xi54:] [:xi53:] [:xi55:]回复 11楼 喜碧仙仙 的帖子
[:xi40:] [:xi40:] [:xi40:] 那``么````今天米有人气可加了```
明天补上``
[[i] 本帖最后由 尤加 于 2008-8-31 21:03 编辑 [/i]]
回复 12楼 尤加 的帖子
mua~~乃能加ML~~?哇咔咔,不要赖哦~~赖皮素小狗狗[:10:] [:24:] 赖皮就自暴哦[:27:]回复 13楼 喜碧仙仙 的帖子
[:23:] [:23:] [:23:] 打错```改捏```不过可以帮乃换魅力```
回复 14楼 尤加 的帖子
笨笨[:xi34:] [:xi28:] [:xi5:] ~~回复 15楼 喜碧仙仙 的帖子
[:10:] [:10:] [:10:]看到hebe太佩服就容易出点错``` 日志 没 看出 什么 问题!
就是看着IE的负担够重的,迅雷,酷狗,360,kooplay,阿里旺旺……
PS.除了IE还习惯用其他浏览器吗?比如傲游,opera
可能引起掉线的软件原因主要就是防火墙和杀软,360safe也有可能(不建议在杀软运行后持续开360的防护)建议先将病毒木马排除,建议用绿蜘蛛扫描一下C盘,毕竟NOD32对一些国内木马不是很感冒
绿蜘蛛链接(官方):[url=ftp://ftp.drweb.com/pub/drweb/cureit/cureit.exe]ftp://ftp.drweb.com/pub/drweb/cureit/cureit.exe[/url]
[[i] 本帖最后由 边缘vip 于 2008-8-31 22:44 编辑 [/i]]
回复 17楼 边缘vip 的帖子
[:13:] [:13:] [:13:]只有ie``
[:xi6:]
[:xi6:] [:xi6:] 扫毒去先```
谢谢捏``` [b]1.建议使用XDelBox删除以下文件[/b]:([url=http://www.dodudou.com/down/index.php]XDelBox1.6下载[/url])
使用说明:删除时复制所有要删除文件的路径,在待删除文件列表里点击右键选择从剪贴板导入,导入后在要删除文件上点击右键,选择立刻重启删除,电脑会重启进入DOS界面进行删除操作。运行xdelbox前最好卸载所有可移动存储介质(包括U盘,MP3,手机存储卡等)。
[b]2.删除重启后使用SREng修复下面各项:[/b]
[color=green][b]**************以上分析报告由SREngLog分析助手提供******************[/b][/color]
[color=purple]分析:草莽书生
时间:2008-9-5
SREngLog分析助手 1.3 (20070808 更新 BY 草莽书生)[/color]
[color=red][b]自动清理方案操作步骤[/b]:[/color]
1。下载通用病毒杀灭机正式版([url=http://www.dodudou.com/down/]点击下载[/url]),请先参考软件帮助说明。
2。复制符号区域的修复指令或者下载附件中的修复指令文件*.dat 。
[color=green][b] ========指令正文,复制以下内容========[/b][/color]
[b][color=purple][code]复制指令区[/code][/color][/b]
[color=green][b]========指令结束,复制以上内容========[/b][/color]
3。打开通用病毒杀灭机(打不开的建议改名,如abc.exe,abc.bat等),复制修复指令者使用剪贴板导入;下载修复指令文件的使用文件导入
重启即可删除病毒,并帮助你删除自启动项和禁用服务。
(注:第一次重启有时候会弹出文件夹,那是由于自启动项目还没有删除,而文件已经被XDELBOX删除并用文件夹替代的结果)
页:
[1]