设为首页收藏本站

剑盟反病毒社区JANMENG.COM

 找回密码
 注册

QQ登录

只需一步,快速开始

搜索
热搜: 活动 交友 discuz
剑盟中国社区总版规专注开发网上商城
12
返回列表 发新帖
楼主: 没主意

[已解决] 帮忙,看一下,反复杀不掉,暂已解决,谢谢

 关闭 [复制链接]
  • TA的每日心情
    难过
    2012-3-6 22:38
  • 签到天数: 4 天

    [LV.2]偶尔看看I

     楼主| 发表于 2008-12-22 23:11 | 显示全部楼层

    请各位老大帮忙分析,我是一点也看不懂了

    已经用ATF,windows清理助手清理过。
    SREngLOG.log中的报告
    [CODE]

    2008-12-22,23:06:56

    System Repair Engineer 2.6.16.1161
    Smallfrogs (http://www.KZTechs.com)

    Windows XP Home Edition Service Pack 3 (Build 2600) - Administrative User - Completed Functions Allowed

    Follow item(s) have been selected:
        All Boot Items (Including Registry, Startup Folders, Services and so on)
        Browser Add-ons
        Running Processes (Including process model information)
        File Associations
        Winsock Provider
        Autorun.Inf
        HOSTS File
        Process Privileges Scan
        Scheduled Tasks
        API HOOK
        Hidden Process


    Boot Items
    Registry
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
        <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Component Publisher]
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
        <SynTPLpr><C:\Program Files\Synaptics\SynTP\SynTPLpr.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
        <SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
        <SunKist><C:\Program Files\Digital Media Reader\shwicon2k.exe>  [Alcor Micro, Corp.]
        <IgfxTray><; C:\WINDOWS\system32\igfxtray.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
        <HotKeysCmds><C:\WINDOWS\system32\hkcmd.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
        <NeroFilterCheck><; C:\WINDOWS\system32\NeroCheck.exe>  [Ahead Software Gmbh]
        <IMJPMIG8.1><; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Windows Publisher]
        <MSPY2002><C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC>  [(Verified)Microsoft Windows Publisher]
        <PHIME2002ASync><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]
        <PHIME2002A><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Publisher]
        <Norton Ghost 10.0><"C:\Program Files\Norton Ghost\Agent\GhostTray.exe">  [(Verified)Symantec Corporation]
        <BigDog305><C:\WINDOWS\VM305_STI.EXE VIMICRO USB PC Camera (ZC0305)>  [File is missing]
        <WangWang><F:\Program Files\淘宝网\淘宝旺旺\WangWang.exe>  [(Verified)"Alibaba Software(Shanghai)Co,. Ltd"]
        <TkBellExe><; "F:\Program Files\VistaCodecPack\rm\Update_OB\realsched.exe"  -osboot>  [File is missing]
        <wdcertm_ccb><C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdcertm_ccb.exe>  [ Beijing WatchData System Co., Ltd.]
        <KernelFaultCheck><%systemroot%\system32\dumprep 0 -k>  [File is missing]
        <SmartPrinter><; SmartFaxtool.exe>  []
        <egui><"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice>  [(Verified)"ESET, spol. s r.o."]
        <Symantec PIF AlertEng><"C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll">  [File is missing]
        <Google IME Autoupdater><f:\Program Files\Google\Google Pinyin\GooglePinyinDaemon.exe>  [(Verified)Google Inc]
        <360Safetray><f:\Program Files\360\360Safe\safemon\360tray.exe /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
        <SunJavaUpdateSched><"C:\Program Files\Java\jre6\bin\jusched.exe">  [(Verified)"Sun Microsystems, Inc."]
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
        <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
        <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Component Publisher]
        <UIHost><logonui.exe>  [(Verified)Microsoft Windows Component Publisher]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
        <CDBurn><C:\WINDOWS\system32\fdcpodbc.dll>  [File is missing]
        <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
        <WinlogonNotify: WgaLogon><WgaLogon.dll>  [(Verified)Microsoft Corporation]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
        <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows Component Publisher]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
        <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
        <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
        <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
        <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
        <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
        <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
        <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
        <Address Book 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
        <N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install>  [(Verified)Microsoft Corporation]

    ==================================
    Startup Folders
    N/A

    ==================================
    Services
    [Application Management / AppMgmt][Stopped/Manual Start]
      <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
    [Automatic LiveUpdate Scheduler / Automatic LiveUpdate Scheduler][Running/Auto Start]
      <"C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe"><Symantec Corporation>
    [Symantec Event Manager / ccEvtMgr][Stopped/Auto Start]
      <"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon"><Symantec Corporation>
    [Symantec Password Validation / ccPwdSvc][Stopped/Manual Start]
      <"C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"><Symantec Corporation>
    [Symantec Settings Manager / ccSetMgr][Stopped/Auto Start]
      <"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon"><Symantec Corporation>
    [Cmb WebProtect Support / CMBWPS][Running/Auto Start]
      <C:\Program Files\CMBCHINA\WebProtect\WPService.exe /start><China Merchants Bank>
    [Eset HTTP Server / EhttpSrv][Stopped/Manual Start]
      <"C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe"><ESET>
    [Eset Service / ekrn][Running/Auto Start]
      <"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"><ESET>
    [GEARSecurity / GEARSecurity][Running/Auto Start]
      <C:\WINDOWS\System32\GEARSec.exe><GEAR Software>
    [Human Interface Device Access / HidServ][Stopped/Disabled]
      <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
    [InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
      <"C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe"><Macrovision Corporation>
    [LiveUpdate / LiveUpdate][Stopped/Manual Start]
      <"C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE"><Symantec Corporation>
    [LiveUpdate Notice Service Ex / LiveUpdate Notice Ex][Running/Auto Start]
      <"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon><Symantec Corporation>
    [LiveUpdate Notice Service / LiveUpdate Notice Service][Stopped/Auto Start]
      <"C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifEng.dll"><Symantec Corporation>
    [Norton Ghost / Norton Ghost][Running/Auto Start]
      <C:\Program Files\Norton Ghost\Agent\VProSvc.exe><Symantec Corporation>
    [npkcmsvc / npkcmsvc][Stopped/Auto Start]
      <><(File is missing)>
    [PrismXL / PrismXL][Running/Auto Start]
      <C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS><New Boundary Technologies, Inc.>
    [Symantec Core LC / Symantec Core LC][Running/Auto Start]
      <C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe><>
    [Java Quick Starter / JavaQuickStarterService][Running/Auto Start]
      <"C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"><Sun Microsystems, Inc.>

    ==================================
    Drivers
    [360webpro / 360webpro][Running/Manual Start]
      <\??\F:\Program Files\360\360Safe\safemon\360webpro.sys><奇虎网>
    [AliIde / AliIde][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
    [AMD AGP Bus Filter Driver / amdagp][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\amdagp.sys><Advanced Micro Devices, Inc.>
    [asc / asc][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\asc.sys><Advanced System Products, Inc.>
    [asc3550 / asc3550][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\asc3550.sys><Advanced System Products, Inc.>
    [atksgt / atksgt][Running/Auto Start]
      <system32\DRIVERS\atksgt.sys><N/A>
    [Broadcom 802.11 Network Adapter Driver / BCM43XX][Stopped/Manual Start]
      <system32\DRIVERS\bcmwl5.sys><Broadcom Corporation>
    [Broadcom 440x 10/100 Integrated Controller XP Driver / bcm4sbxp][Running/Manual Start]
      <system32\DRIVERS\bcm4sbxp.sys><Broadcom Corporation>
    [Conexant AMC Audio / CAMCAUD][Running/Manual Start]
      <system32\drivers\camcaud.sys><Conexant Systems Inc.>
    [CAMCHALA / CAMCHALA][Running/Manual Start]
      <system32\drivers\camchal.sys><Conexant Systems Inc.>
    [CMB8100 / CMB8100][Running/Auto Start]
      <\??\C:\WINDOWS\system32\Drivers\CertClient.dat><N/A>
    [CMBProtector / CMBProtector][Running/Auto Start]
      <\??\C:\WINDOWS\system32\Drivers\CMBProtector.dat><N/A>
    [CmdIde / CmdIde][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
    [Microsoft Composite Battery Driver / Compbatt][Stopped/Boot Start]
      <\SystemRoot\System32\DRIVERS\compbatt.sys><N/A>
    [dac2w2k / dac2w2k][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\dac2w2k.sys><Mylex Corporation>
    [eamon / eamon][Running/Auto Start]
      <system32\DRIVERS\eamon.sys><ESET>
    [easdrv / easdrv][Running/System Start]
      <system32\DRIVERS\easdrv.sys><ESET>
    [Alcor Micro Corp for Emachine- 9361 / EMCFILT][Stopped/Manual Start]
      <\??\C:\WINDOWS\System32\Drivers\EMcFilt.sys><Alcor Micro Corp.>
    [epfw / epfw][Running/Auto Start]
      <system32\DRIVERS\epfw.sys><ESET>
    [Eset Personal Firewall / Epfwndis][Running/Manual Start]
      <system32\DRIVERS\Epfwndis.sys><ESET>
    [epfwtdi / epfwtdi][Running/System Start]
      <system32\DRIVERS\epfwtdi.sys><ESET>
    [HSFHWICH / HSFHWICH][Running/Manual Start]
      <system32\DRIVERS\HSFHWICH.sys><Conexant Systems, Inc.>
    [HSF_DP / HSF_DP][Running/Manual Start]
      <system32\DRIVERS\HSF_DP.sys><Conexant Systems, Inc.>
    [ialm / ialm][Running/Manual Start]
      <system32\DRIVERS\ialmnt5.sys><Intel Corporation>
    [lirsgt / lirsgt][Running/Auto Start]
      <system32\DRIVERS\lirsgt.sys><N/A>
    [mdmxsdk / mdmxsdk][Running/Auto Start]
      <system32\DRIVERS\mdmxsdk.sys><Conexant>
    [mraid35x / mraid35x][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\mraid35x.sys><American Megatrends Inc.>
    [Macronix MX987xx Family Fast Ethernet NT Driver / mxnic][Stopped/Manual Start]
      <system32\DRIVERS\mxnic.sys><Macronix International Co., Ltd.>
    [npkcrypt / npkcrypt][Stopped/Manual Start]
      <\??\F:\Program Files\tiantang\Lineage-盛世庆典\npkcrypt.sys><INCA Internet Co., Ltd.>
    [nv / nv][Stopped/Manual Start]
      <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
    [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
      <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
    [ql1080 / ql1080][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\ql1080.sys><QLogic Corporation>
    [ql12160 / ql12160][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\ql12160.sys><QLogic Corporation>
    [ql1280 / ql1280][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\ql1280.sys><QLogic Corporation>
    [SafeBoxKrnl / SafeBoxKrnl][Running/System Start]
      <\??\C:\WINDOWS\system32\Drivers\safeboxkrnl.sys><360安全中心>
    [Secdrv / Secdrv][Running/Auto Start]
      <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
    [SIS AGP Bus Filter / sisagp][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\sisagp.sys><Silicon Integrated Systems Corporation>
    [Sony USB Filter Driver (SONYPVU1) / SONYPVU1][Stopped/Manual Start]
      <system32\DRIVERS\SONYPVU1.SYS><Sony Corporation>
    [Sparrow / Sparrow][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\sparrow.sys><Adaptec, Inc.>
    [SAMSUNG Mobile USB Device 1.0 driver (WDM) / ss_bus][Stopped/Manual Start]
      <system32\DRIVERS\ss_bus.sys><MCCI>
    [SAMSUNG Mobile USB Modem 1.0 Filter / ss_mdfl][Stopped/Manual Start]
      <system32\DRIVERS\ss_mdfl.sys><MCCI>
    [SAMSUNG Mobile USB Modem 1.0 Drivers / ss_mdm][Stopped/Manual Start]
      <system32\DRIVERS\ss_mdm.sys><MCCI>
    [symc810 / symc810][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\symc810.sys><Symbios Logic Inc.>
    [symc8xx / symc8xx][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\symc8xx.sys><LSI Logic>
    [symlcbrd / symlcbrd][Running/Auto Start]
      <\??\C:\WINDOWS\system32\drivers\symlcbrd.sys><Symantec Corporation>
    [sym_hi / sym_hi][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\sym_hi.sys><LSI Logic>
    [sym_u3 / sym_u3][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\sym_u3.sys><LSI Logic>
    [Synaptics TouchPad Driver / SynTP][Running/Manual Start]
      <system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
    [ultra / ultra][Running/Boot Start]
      <\SystemRoot\system32\DRIVERS\ultra.sys><Promise Technology, Inc.>
    [WAN Miniport (ATW) / wanatw][Stopped/Manual Start]
      <system32\DRIVERS\wanatw4.sys><N/A>
    [winachsf / winachsf][Running/Manual Start]
      <system32\DRIVERS\HSF_CNXT.sys><Conexant Systems, Inc.>
    [Vimicro USB PC Camera (VC0305) / ZSMC0305][Stopped/Manual Start]
      <System32\Drivers\usbVM305.sys><N/A>
    [Intel(R) Graphics Platform (SoftBIOS) Driver / {6080A529-897E-4629-A488-ABA0C29B635E}][Running/Manual Start]
      <system32\drivers\ialmsbw.sys><Intel Corporation>
    [Intel(R) Graphics Chipset (KCH) Driver / {D31A0762-0CEB-444e-ACFF-B049A1F6FE91}][Running/Manual Start]
      <system32\drivers\ialmkchw.sys><Intel Corporation>
    [360procmon / 360procmon][Running/Manual Start]
      <\??\F:\Program Files\360\360Safe\safemon\360procmon.sys><>

    ==================================
    Browser Add-ons
    [ThunderAtOnce Class]
      {01443AEC-0FD1-40fd-9C87-E93D1494C233} <F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
    [Adobe PDF Reader Link Helper]
      {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
    [WebProtect]
      {53763D1D-9CA8-4C7C-9756-A8E6B8FC063B} <C:\Program Files\CMBCHINA\WebProtect\WebProtect.dll, (Signed) China Merchants Bank>
    [Java(tm) Plug-In SSV Helper]
      {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre6\bin\ssv.dll, (Signed) Sun Microsystems, Inc.>
    []
      {7E853D72-626A-48EC-A868-BA8D5E23E045} <, >
    [Thunder Browser Helper]
      {889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
    [SafeMon Class]
      {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <f:\Program Files\360\360Safe\safemon\safemon.dll, (Signed) 360.CN>
    [Java(tm) Plug-In 2 SSV Helper]
      {DBC80044-A445-435b-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, Sun Microsystems, Inc.>
    [JQSIEStartDetectorImpl Class]
      {E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, Sun Microsystems, Inc.>
    [启动迅雷5]
      {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <F:\Program Files\Thunder Network\Thunder\Thunder.exe, (Signed) Thunder Networking Technologies,LTD>
    [个人超级助理]
      {87199151-8467-467E-94ED-91192DE87266} <, >
    [&Research]
      {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, (Signed) Microsoft Corporation>
    []
      {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} <, >
    []
      {e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, (Signed) N/A>
    [Messenger]
      {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, (Signed) Microsoft Corporation>
    [Edit Class]
      {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} <C:\WINDOWS\system32\CMBEdit.dll, >
    [SwxCrypt Control]
      {1B7F63FD-BDD9-44DC-AFF3-8E4263B6644B} <C:\WINDOWS\DOWNLO~1\SwxCrypt.ocx, M&W>
    [CMBSafeHelper Class]
      {26BCA338-BB94-4E8F-A082-3E5735875B79} <C:\WINDOWS\system32\CMBGUARD.dll, >
    [Office Update Installation Engine]
      {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
    [EditCtrl Class]
      {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, (Signed) >
    [Application Class]
      {4A94D373-EA05-4259-AD4F-D02462838F6B} <C:\Program Files\EToall\SIPComp\SIPComp.dll, N/A>
    [AxInputControl Class]
      {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
    [Java Plug-in 1.6.0_11]
      {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [MsnMessengerSetupDownloadControl Class]
      {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} <C:\WINDOWS\Downloaded Program Files\MsnMessengerSetupDownloader.ocx, Microsoft Corporation>
    [Java Plug-in 1.5.0_02]
      {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.5.0_06]
      {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.5.0_09]
      {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.5.0_10]
      {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_01]
      {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_02]
      {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_03]
      {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_05]
      {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_07]
      {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_11]
      {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [Java Plug-in 1.6.0_11]
      {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\npjpi160_11.dll, (Signed) Sun Microsystems, Inc.>
    []
      {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} <, >
    [Shockwave Flash Object]
      {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\FlDbg10a.ocx, (Signed) Adobe Systems, Inc.>
    [PasswordEditCtrl Class]
      {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <C:\WINDOWS\system32\qqedit\qqedit.dll, (Signed) 腾讯科技(深圳)有限公司>
    [PBActiveX40 Control]
      {F2EB8999-766E-4BF6-AAAD-188D398C0D0B} <C:\WINDOWS\system32\PersonalBankMain.ocx, China Merchants Bank>
    []
      {00000000-12C9-4305-82F9-43058F20E8D2} <, >
    []
      {00000AAA-A363-466E-BEF5-9BB68697AA7F} <, >
    []
      {000123B3-9B42-4900-B3F7-F4B073EFC214} <, >
    []
      {000123B4-9B42-4900-B3F7-F4B073EFC214} <, >
    []
      {0005A87B-D626-4B3A-84F9-1D9571695F55} <, >
    []
      {0005A87C-D626-4B3A-84F9-1D9571695F55} <, >
    []
      {00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <, >
    []
      {01010E00-5E80-11D8-9E86-0007E96C65AE} <, >
    []
      {01012101-5E80-11D8-9E86-0007E96C65AE} <, >
    [ThunderAtOnce Class]
      {01443AEC-0FD1-40FD-9C87-E93D1494C233} <F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>
    [QuickTime Object]
      {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <f:\Program Files\StormPlayer\QTSystem\QTPlugin.ocx, N/A>
    []
      {03507A1A-E0C5-4404-AA26-205385C0892D} <, >
    [ActiveMovieControl Object]
      {05589FA1-C356-11CE-BF01-00AA0055595A} <C:\WINDOWS\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
    []
      {06849E9E-C8D7-4D59-B87D-784B7D6BE0B3} <, >
    [Adobe PDF Reader Link Helper]
      {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
    []
      {08B0E5C0-4FCB-11CF-AAA5-00401C608501} <, >
    []
      {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <, >
    []
      {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} <, >
    []
      {0B97608A-BD41-49F9-B740-B485DF1D78F6} <, >
    [Edit Class]
      {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} <C:\WINDOWS\system32\CMBEdit.dll, >
    [CEnroll Class]
      {127698E4-E730-4E5C-A2B1-21490A70C8A1} <C:\WINDOWS\system32\xenroll.dll, (Signed) Microsoft Corporation>
    [TextEdit Class]
      {13B1792D-012A-4C8D-9E0A-08AE09FFFB4B} <C:\WINDOWS\system32\SECURI~1.DLL, N/A>
    [Windows Genuine Advantage Validation Tool]
      {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>
    [SuperBuddy Class]
      {189504B8-50D1-4AA8-B4D6-95C8F58A6414} <C:\PROGRA~1\AMERIC~1.0\sb.dll, N/A>
    [SwxCrypt Control]
      {1B7F63FD-BDD9-44DC-AFF3-8E4263B6644B} <C:\WINDOWS\DOWNLO~1\SwxCrypt.ocx, M&W>
    [CXLGameShell.XLGameShellProxy]
      {1DC1F424-0876-485D-A4E9-9E568548BF37} <, >
    [iTrusPTA Class]
      {1E0DFFCF-27FF-4574-849B-55007349FEDA} <C:\WINDOWS\system32\aliedit\pta.dll, (Signed) >
    []
      {1E8A6170-7264-4D0F-BEAE-D42A53123C75} <, >
    [LSSupCtl Class]
      {1F2F4C9E-6F09-47BC-970D-3C54734667FE} <C:\Program Files\Common Files\Symantec Shared\LiveReg\LSSUPCTL.DLL, (Signed) Symantec Corporation>
    []
      {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <, >
    [Windows Media Player]
      {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
    []
      {2318C2B1-4965-11D4-9B18-009027A5CD4F} <, >
    [HTML Document]
      {25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, (Signed) Microsoft Corporation>
    [XML DOM Document]
      {2933BF90-7B36-11D2-B20E-00C04F983E60} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    [PGEdit Class]
      {2BFAA61B-5C83-4865-8281-D8BDBF863061} <C:\Program Files\GnetSecCtrl\PG_ATL_Edit.dll, 银联网络支付集团有限公司>
    [DHTML Edit Control Safe for Scripting for IE5]
      {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, (Signed) Microsoft Corporation>
    []
      {2EEDA47E-8D5C-4d7e-B4B6-E16E19218555} <, >
    []
      {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} <, >
    [RealPlayer RAM Download Handler]
      {2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93} <C:\WINDOWS\system32\rmoc3260.dll, (Signed) RealNetworks, Inc.>
    []
      {3049C3E9-B461-4BC5-8870-4C09146192CA} <, >
    []
      {37E1A9E5-00D4-4203-8E58-B91F383A3809} <, >
    [IETag Factory]
      {38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, (Signed) Microsoft Corporation>
    [Office Update Installation Engine]
      {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
    []
      {3F1ABCDB-A875-46C1-8345-B72A4567E486} <, >
    []
      {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} <, >
    [超级兔子上网精灵]
      {43869BB3-22FD-4F15-9B46-238106BA2F4E} <, >
    [XML Document]
      {48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    [Thunder Agent Class]
      {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <F:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll, (Signed) Thunder Networking Technologies,LTD>
    [EditCtrl Class]
      {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, (Signed) >
    []
      {4982D40A-C53B-4615-B15B-B5B5E98D167C} <, >
    [Application Class]
      {4A94D373-EA05-4259-AD4F-D02462838F6B} <C:\Program Files\EToall\SIPComp\SIPComp.dll, N/A>
    [Microsoft Terminal Services Client Control (redist)]
      {4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
    [Microsoft Terminal Services Client Control (redist)]
      {4EDCB26C-D24C-4e72-AF07-B576699AC0DE} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
    []
      {4EF4CC49-DFD1-4E3B-80AC-122061F24D67} <, >
    [WebProtect]
      {53763D1D-9CA8-4C7C-9756-A8E6B8FC063B} <C:\Program Files\CMBCHINA\WebProtect\WebProtect.dll, (Signed) China Merchants Bank>
    [Shell Name Space]
      {55136805-B2DE-11D1-B9F2-00A0C98BC547} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
    []
      {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} <, >
    []
      {5EC7C511-CD0F-42E6-830C-1BD9882F3458} <, >
    [InfoSecNetSign Class]
      {62B938C4-4190-4F37-8CF0-A92B0A91CC77} <C:\WINDOWS\system32\NetSign.dll, Infosec Technologies Co., Ltd.>
    [XMP Class]
      {6483F145-A768-4C41-AACC-52D4D7845851} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xplayer.dll_1_work, Xunlei Networking Technologies,LTD>
    [XDRM]
      {693571CB-54A3-4E90-9D52-EEAE1334E2D3} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xdrm.dll_1_work, >
    [Windows Media Player]
      {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
    [CCtInf Class]
      {6DBB2904-082D-4DB0-944A-21C22BA121F4} <C:\WINDOWS\system32\BANKCE~1.DLL, >
    [WangWangObj Class]
      {6E213FC7-DD5A-4115-B7E6-D4C7838C361E} <F:\Program Files\淘宝网\淘宝旺旺\WangWangX6.dll, (Signed) 阿里巴巴软件(上海)有限公司>
    [Windows Script Host Shell Object]
      {72C24DD5-D70A-438B-8A42-98424B88AFB8} <C:\WINDOWS\system32\wshom.ocx, (Signed) Microsoft Corporation>
    [超级兔子上网精灵]
      {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <, >
    [Microsoft Terminal Services Client Control (redist)]
      {7390f3d8-0439-4c05-91e3-cf5cb290c3d0} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
    [AxInputControl Class]
      {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >
    [Microsoft Terminal Services Client Control (redist)]
      {7584c670-2274-4efb-b00b-d6aaba6d3850} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
    [Java(tm) Plug-In SSV Helper]
      {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre6\bin\ssv.dll, (Signed) Sun Microsystems, Inc.>
    [MediaComm Class]
      {7670648D-461B-42AF-BDFE-46D26AF5EFF2} <F:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin18.dll, (Signed) Thunder Networking Technologies,LTD>
    []
      {7E853D72-626A-48EC-A868-BA8D5E23E045} <, >
    [Pdg2 Control]
      {7F5E27CE-4A5C-11D3-9232-0000B48A05B2} <C:\WINDOWS\system32\pdg2.dll, >
    []
      {7FC22A16-79E6-4787-9C96-B6359BB1106D} <, >
    []
      {8686F2A6-DC01-4E8F-BDE3-DCC7DBBAD6AE} <, >
    []
      {87199151-8467-467E-94ED-91192DE87266} <, >
    [360SafeLive]
      {87515F61-A66C-4319-A0E0-D416CB8059E3} <f:\Program Files\360\360Safe\live.dll, (Signed) 360.cn>
    [Microsoft Web Browser]
      {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
    [Thunder Browser Helper]
      {889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>
    [XML HTTP 4.0]
      {88D969C5-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml4.dll, (Signed) Microsoft Corporation>
    [XML DOM Document 5.0]
      {88D969E5-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSXML5.DLL, Microsoft Corporation>
    [XML HTTP 5.0]
      {88D969EA-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSXML5.DLL, Microsoft Corporation>
    [XML DOM Document 6.0]
      {88D96A05-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
    [Free Threaded XML DOM Document 6.0]
      {88D96A06-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
    [XSL Template 6.0]
      {88D96A08-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
    [XML HTTP 6.0]
      {88D96A0A-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
    [Java Plug-in 1.6.0_11]
      {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
    [AxSubmitControl Class]
      {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\WINDOWS\DOWNLO~1\SUBMIT~1.DLL, >
    []
      {8FA6910E-3ED5-4D95-86D5-761928F61910} <, >
    []
      {90222687-F593-4738-B738-FBEE9C7B26DF} <, >
    [Microsoft Terminal Services Client Control (redist)]
      {9059f30f-4eb1-4bd2-9fdc-36f43a218f4a} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
    []
      {92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
    []
      {962EFB8E-2683-42D4-AC74-AAA4C759B9C6} <, >
    []
      {9ADACAA6-533E-4383-AFA7-F0A66650B6D8} <, >
    []
      {9ECB9560-04F9-4BBC-943D-298DDF1699E1} <, >
    []
      {A01EB014-728E-44A0-9D1E-A4FC50ABE890} <, >
    []
      {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} <, >
    [RMGetLicense Class]
      {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\WINDOWS\system32\msnetobj.dll, (Signed) Microsoft Corporation>
    []
      {AA58ED58-01DD-4D91-8333-CF10577473F7} <, >
    [DapCtrl Class]
      {ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.3.5807.112.(925).dll, (Signed) ShenZhen Thunder Networking Technologies Ltd.>
    [Microsoft Scriptlet Component]
      {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, (Signed) Microsoft Corporation>
    [MsnMessengerSetupDownloadControl Class]
      {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} <C:\WINDOWS\Downloaded Program Files\MsnMessengerSetupDownloader.ocx, Microsoft Corporation>
    [SafeMon Class]
      {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <f:\Program Files\360\360Safe\safemon\safemon.dll, (Signed) 360.CN>
    [RDS.DataSpace]
      {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, (Signed) Microsoft Corporation>
    []
      {BDF3E430-B101-42AD-A544-FADC6B084872} <, >
    []
      {C4069E3A-68F1-403E-B40E-20066696354B} <, >
    []
      {C661F36D-DF85-4EF4-83C7-E107B83D04B1} <, >
    []
      {C95FE080-8F5D-11D2-A20B-00AA003C157B} <, >
    [Adobe PDF Reader]
      {CA8A9780-280D-11CF-A24D-444553540000} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll, (Signed) Adobe Systems, Inc.>
    [QQPlayerSvr Proxy Control]
      {CD108273-D434-43E6-AA90-1469F97EB398} <f:\Program Files\Tencent\QQ\QQPlayerProxy.dll, N/A>
    [AUDIO__MP3 Moniker Class]
      {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
    [AUDIO__X_MS_WMA Moniker Class]
      {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
    [VIDEO__X_MS_ASF Moniker Class]
      {CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
    []
      {CD67F990-D8E9-11D2-98FE-00C0F0318AFE} <, >
    [WDCCBCtrl Class]
      {CE0460F5-48BD-4DC1-A046-0BDCB5A06CEB} <C:\WINDOWS\system32\WDCCB.dll, (Signed) >
    []
      {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} <, >
    []
      {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} <, >
    [RealPlayer G2 Control]
      {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, (Signed) RealNetworks, Inc.>
    [Shockwave Flash Object]
      {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\FlDbg10a.ocx, (Signed) Adobe Systems, Inc.>
    []
      {D6E814A0-E0C5-11D4-8D29-0050BA6940E3} <, >
    [TencentVmpCtl Class]
      {D9819BD5-422B-4281-8523-726466ED692B} <C:\Program Files\Tencent\Viewpoint Media Player\AxMetaStream.dll, N/A>
    [Java(tm) Plug-In 2 SSV Helper]
      {DBC80044-A445-435B-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, Sun Microsystems, Inc.>
    [TGSearch]
      {DD069A98-B494-487D-B0B3-C2F56ECB6DAA} <f:\Program Files\Thunder Network\Thunder\ComDlls\TGSearch.dll, N/A>
    []
      {DEDEB80D-FA35-45D9-9460-4983E5A8AFE6} <, >
    []
      {E1771B7F-98BE-407F-BA67-AA16ADA5D0C5} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, (Signed) Microsoft Corporation>
    []
      {E2E2DD38-D088-4134-82B7-F2BA38496583} <, >
    [PasswordEditCtrl Class]
      {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <C:\WINDOWS\system32\qqedit\qqedit.dll, (Signed) 腾讯科技(深圳)有限公司>
    [JQSIEStartDetectorImpl Class]
      {E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, Sun Microsystems, Inc.>
    [TimwpDll.TimwpCheck]
      {ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4} <F:\PROGRA~1\Tencent\QQ\Timwp.dll, (Signed) TENCENT>
    [XML HTTP Request]
      {ED8C108E-4349-11D2-91A4-00C04F7969E8} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    [Thunder DapPlayer]
      {EEDD6FF9-13DE-496B-9A1C-D78B3215E266} <F:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DapPlayer3.0.5712.71.262.dll, ShenZhen Thunder Networking Technologies Ltd.>
    []
      {EF1EA76E-5428-4e40-85A1-D4DD2893183A} <, >
    []
      {F06608C7-1874-4EEA-B3B2-DF99EBB144B8} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, (Signed) Microsoft Corporation>
    []
      {F156768E-81EF-470C-9057-481BA8380DBA} <, >
    [PBActiveX40 Control]
      {F2EB8999-766E-4BF6-AAAD-188D398C0D0B} <C:\WINDOWS\system32\PersonalBankMain.ocx, China Merchants Bank>
    [XPPlayer Class]
      {F3E70CEA-956E-49CC-B444-73AFE593AD7F} <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.5880.234.(926).dll, (Signed) Xunlei Networking Technologies,LTD>
    [XML DOM Document 3.0]
      {F5078F32-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    [XML HTTP 3.0]
      {F5078F35-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    [XML DOM Document]
      {F6D90F11-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    [XML HTTP]
      {F6D90F16-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\MSXML3.DLL, (Signed) Microsoft Corporation>
    []
      {F90D830D-C175-4bbe-82C7-FF94669A4C42} <, >
    []
      {FB5DA724-162B-11D3-8B9B-AA70B4B0B524} <, >
    []
      {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
    [IERPCtl Class]
      {FDC7A535-4070-4B92-A0EA-D9994BCC0DC5} <f:\Program Files\Real\RealPlayer\rpplugins\ierpplug.dll, (Signed) RealNetworks, Inc.>
    []
      {FFB8C97E-39D4-4E8A-9FE4-B451A0D6CA65} <, >
    [E&xport to Microsoft Excel]
      <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
    [使用迅雷下载]
      <F:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
    [使用迅雷下载全部链接]
      <F:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
    [添加到QQ表情]
      <F:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
    [病毒预扫描并下载]
      <C:\Program Files\Thunder Network\SafeAssistant\Plugins\SafeDown\geturl.htm, N/A>
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    难过
    2012-3-6 22:38
  • 签到天数: 4 天

    [LV.2]偶尔看看I

     楼主| 发表于 2008-12-22 23:12 | 显示全部楼层

    多谢各位了

    ==================================
    Running Processes
    [PID: 604 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 940 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 968 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 1012 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1024 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
    [PID: 1200 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1324 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1448 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1492 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1616 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1724 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1796 / SYSTEM][C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe]  [Symantec Corporation, 106.2.0.21]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [C:\Program Files\Common Files\Symantec Shared\ccL60U.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccSvc.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccSet.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\PROGRA~1\COMMON~1\SYMANT~1\PIF\{B8E1D~1\PIFENG.DLL]  [Symantec Corporation, 1.2.0.18]
        [C:\PROGRA~1\COMMON~1\SYMANT~1\PIF\{B8E1D~1\PollMgr.dll]  [Symantec Corporation, 1.2.0.18]
        [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.4.3]
    [PID: 1912 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
        [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\Smproc.dll]  [Windows (R) 2000 DDK provider, 5.1.2600.0 built by: WinDDK]
    [PID: 176 / Owner][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
        [C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
        [F:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 120]
        [F:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 20]
        [F:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 16]
        [F:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.34]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll]  [Adobe Systems Incorporated, 7.0.9.2006121800]
        [F:\Program Files\WinRAR\rarext.dll]  [N/A, ]
        [C:\Program Files\ESET\ESET Smart Security\shellExt.dll]  [ESET, 3.0.658 ]
    [PID: 288 / SYSTEM][C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe]  [Symantec Corporation, 3.2.0.68]
        [C:\Program Files\Symantec\LiveUpdate\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\Program Files\Symantec\LiveUpdate\MSVCR71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccL60U.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Symantec\LiveUpdate\PSLuComServer_3_2.DLL]  [Symantec Corporation, 3.2.0.41]
    [PID: 352 / SYSTEM][C:\Program Files\CMBCHINA\WebProtect\WPService.exe]  [China Merchants Bank, 1, 0, 0, 1]
        [C:\Program Files\CMBCHINA\WebProtect\WebProtectPlus.dll]  [China Merchants Bank, 1, 0, 0, 1]
    [PID: 400 / SYSTEM][C:\Program Files\ESET\ESET Smart Security\ekrn.exe]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnScan.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnAmon.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnEmon.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnEpfw.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnSmon.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnUpdate.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\updater.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\ekrnMailPlugins.dll]  [ESET, 3.0.658 ]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 420 / SYSTEM][C:\WINDOWS\System32\GEARSec.exe]  [GEAR Software, 1, 0, 0, 6]
    [PID: 656 / SYSTEM][C:\Program Files\Norton Ghost\Agent\VProSvc.exe]  [Symantec Corporation, 10.0.3.20387]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.4.3]
        [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccL60U.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccSvc.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Norton Ghost\Shared\VProSvcPS.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Shared\VProObj.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Shared\NotifyHandler.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\shared\ErrorGui.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Shared\VProScheduler.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Agent\VProImaging.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Agent\gwrks32.dll]  [GEAR-Software, 3.52.001.03]
        [C:\Program Files\Norton Ghost\Agent\GEARAW32.dll]  [GEAR-Software, 3.52.001.03]
        [C:\Program Files\Norton Ghost\Agent\gwlangEN.dll]  [GEAR-Software, 3.52.001.03]
    [PID: 1100 / SYSTEM][C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS]  [New Boundary Technologies, Inc., 6.0.1.22]
    [PID: 1172 / Owner][C:\Program Files\Synaptics\SynTP\SynTPLpr.exe]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SynCOM.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 1232 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
    [PID: 1240 / Owner][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SynCOM.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [C:\WINDOWS\system32\SynTPAPI.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
    [PID: 1384 / SYSTEM][C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe]  [, ]
        [C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcnet.dll]  [, ]
    [PID: 1632 / Owner][C:\Program Files\Digital Media Reader\shwicon2k.exe]  [Alcor Micro, Corp., 1, 5, 0, 8]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 712 / Owner][C:\WINDOWS\system32\hkcmd.exe]  [Intel Corporation, 3.0.0.2209]
        [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.2209]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\igfxdev.dll]  [Intel Corporation, 3.0.0.2209]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.2209]
        [C:\WINDOWS\system32\igfxhk.dll]  [Intel Corporation, 3.0.0.2209]
        [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.2209]
    [PID: 916 / Owner][C:\Program Files\Norton Ghost\Agent\GhostTray.exe]  [Symantec Corporation, 10.0.3.20387]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\Program Files\Common Files\Symantec Shared\ccAlert.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [C:\Program Files\Common Files\Symantec Shared\ccL60U.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [C:\Program Files\Norton Ghost\Shared\VProAuto.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Shared\VProSvcPS.dll]  [Symantec Corporation, 10.0.3.20387]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
        [C:\Program Files\Norton Ghost\Agent\DrmLicense.DLL]  [Symantec Corporation, 10.0.3.20387]
        [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.6041.0]
        [f:\Program Files\Samsung\Samsung PC Studio 3\MFC71ENU.DLL]  [Microsoft Corporation, 7.10.3077.0]
        [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.4.3]
        [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\ccSvc.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Common Files\Symantec Shared\rcAlert.dll]  [Symantec Corporation, 106.2.0.21]
        [C:\Program Files\Norton Ghost\EasySetupInt.dll]  [Symantec Corporation, 10.0.3.20387]
        [C:\Program Files\Norton Ghost\Agent\gwrks32.dll]  [GEAR-Software, 3.52.001.03]
        [C:\Program Files\Norton Ghost\Agent\GEARAW32.dll]  [GEAR-Software, 3.52.001.03]
    [PID: 1028 / Owner][C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdcertm_ccb.exe]  [ Beijing WatchData System Co., Ltd., 3, 2, 0, 0]
        [C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\TokenMgr.dll]  [ Beijing WatchData System Co., Ltd., 3, 6, 3, 2]
        [C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDAlg.DLL]  [ Beijing WatchData System C0., Ltd., 3, 5, 12, 20]
        [C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdudk.dll]  [北京握奇数据系统有限公司, 7, 0, 3, 1]
        [C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdcrwv.dll]  [Watchdata System Co., Ltd., 5, 0, 3, 0]
        [C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdpkcs.dll]  [ Beijing WatchData System Co., Ltd., 3, 6, 2, 15]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 1392 / Owner][C:\Program Files\ESET\ESET Smart Security\egui.exe]  [ESET, 3.0.658 ]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [C:\Program Files\ESET\ESET Smart Security\eguiScan.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\eguiAmon.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\eguiEmon.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\eguiEpfw.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\eguiSmon.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\eguiUpdate.dll]  [ESET, 3.0.658 ]
        [C:\Program Files\ESET\ESET Smart Security\eguiMailPlugins.dll]  [ESET, 3.0.658 ]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
    [PID: 1408 / Owner][C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe]  [Symantec Corporation, 1.2.0.18]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll]  [Symantec Corporation, 1.2.0.18]
        [C:\PROGRA~1\COMMON~1\SYMANT~1\PIF\{B8E1D~1\AlertUi.dll]  [Symantec Corporation, 1.2.0.18]
    [PID: 1480 / Owner][F:\Program Files\Google\Google Pinyin\GooglePinyinDaemon.exe]  [Google Inc., 1, 0, 0, 1]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
    [PID: 1668 / Owner][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 2976 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
    [PID: 2444 / SYSTEM][C:\Program Files\Java\jre6\bin\jusched.exe]  [Sun Microsystems, Inc., 6.0.110.3]
    [PID: 756 / SYSTEM][C:\Program Files\Java\jre6\bin\jqs.exe]  [Sun Microsystems, Inc., 6.0.110.3]
        [C:\Program Files\Java\jre6\bin\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [PID: 5448 / Owner][f:\Program Files\360safe\360se\360SE.exe]  [360安全中心 & 凤凰工作室, 1, 4, 0, 1]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
        [f:\PROGRA~1\360safe\360se\360\360core\favup.dll]  [360安全中心, 1.0.0.1]
        [C:\WINDOWS\system32\Macromed\Flash\FlDbg10a.ocx]  [Adobe Systems, Inc., 10,0,12,36]
        [F:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll]  [Thunder Networking Technologies,LTD, 6, 0, 5, 47]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [F:\Program Files\360\360Safe\antispy.dll]  [奇虎网, 4, 2, 0, 1007]
        [f:\Program Files\360\360Safe\live.dll]  [360.cn, 1, 0, 1, 1029]
    [PID: 5480 / Owner][F:\Program Files\Thunder Network\Thunder\Components\Tips\TipsExtend.exe]  [Thunder Networking Technologies,LTD, 1, 1, 5, 25]
        [C:\WINDOWS\system32\ATL71.DLL]  [Microsoft Corporation, 7.10.3077.0]
        [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.6030.0]
        [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [F:\Program Files\Thunder Network\Thunder\Components\Tips\XLSkin.dll]  [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
        [F:\Program Files\Thunder Network\Thunder\Components\Tips\XLIPC.DLL]  [Thunder Networking Technologies,LTD, 1, 0, 0, 2]
    [PID: 3940 / Owner][G:\Downloads\sreng1161\SREngLdr.EXE]  [Smallfrogs Studio, 2.6.16.1161]
    [PID: 3276 / Owner][G:\Downloads\sreng1161\SREec1249c4.EXE]  [Smallfrogs Studio, 2.6.16.1161]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]
    [PID: 4712 / Owner][G:\Downloads\sreng1161\SREngLdr.EXE]  [Smallfrogs Studio, 2.6.16.1161]
    [PID: 5556 / Owner][C:\DOCUME~1\Owner\LOCALS~1\Temp\SREB56.EXE]  [Smallfrogs Studio, 2.6.16.1161]
        [F:\Program Files\360\360Safe\safemon\safemon.dll]  [360.CN, 5, 0, 0, 1003]
        [C:\WINDOWS\system32\SynTPFcs.dll]  [Synaptics, Inc., 7.10.4 26Mar04]
        [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.6.0.1653]

    ==================================
    File Associations
    .TXT  Error. [C:\WINDOWS\notepad.exe %1]
    .EXE  OK. ["%1" %*]
    .COM  OK. ["%1" %*]
    .PIF  OK. ["%1" %*]
    .REG  OK. [regedit.exe "%1"]
    .BAT  OK. ["%1" %*]
    .SCR  OK. ["%1" /S]
    .CHM  Error. ["hh.exe" %1]
    .HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
    .INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
    .INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
    .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
    .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
    .LNK  OK. [{00021401-0000-0000-C000-000000000046}]

    ==================================
    Winsock Provider
    N/A

    ==================================
    Autorun.Inf
    N/A

    ==================================
    HOSTS File
    127.0.0.1       localhost

    ==================================
    Process Privileges Scan
    Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1632, C:\PROGRAM FILES\DIGITAL MEDIA READER\SHWICON2K.EXE]
    Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1028, C:\WINDOWS\SYSTEM32\WATCHDATA\WATCHDATA CCB CSP V3.2\WDCERTM_CCB.EXE]
    Special Privileges Enabled: SeLoadDriverPrivilege [PID = 5448, F:\PROGRAM FILES\360SAFE\360SE\360SE.EXE]
    Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3940, G:\DOWNLOADS\SRENG1161\SRENGLDR.EXE]
    Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3276, G:\DOWNLOADS\SRENG1161\SREEC1249C4.EXE]
    Special Privileges Enabled: SeLoadDriverPrivilege [PID = 4712, G:\DOWNLOADS\SRENG1161\SRENGLDR.EXE]

    ==================================
    Scheduled Tasks
    N/A

    ==================================
    API HOOK
    N/A

    ==================================
    Hidden Process
    N/A

    ==================================


    [/CODE]
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    无聊
    2010-11-14 09:12
  • 签到天数: 233 天

    [LV.7]常住居民III

    发表于 2008-12-23 08:22 | 显示全部楼层
    转换为中文日志后用分析助手出错。

    大概看了一下日志,没什么问题。
    回复 支持 反对

    使用道具 举报

    该用户从未签到

    发表于 2008-12-23 16:07 | 显示全部楼层
    启动项目 -->服务-->驱动程序的如下项删除(如果删不掉,就设置类型为disabled!)
    [atksgt / atksgt][Running/Auto Start]
      <system32\DRIVERS\atksgt.sys><N/A>
    [lirsgt / lirsgt][Running/Auto Start]
      <system32\DRIVERS\lirsgt.sys><N/A>
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    无聊
    2010-11-14 09:12
  • 签到天数: 233 天

    [LV.7]常住居民III

    发表于 2008-12-23 16:14 | 显示全部楼层

    回复 14楼 木木雨 的帖子

    查了一下
    [atksgt / atksgt][Running/Auto Start]

    <system32\DRIVERS\atksgt.sys><N/A>

    [lirsgt / lirsgt][Running/Auto Start]

    <system32\DRIVERS\lirsgt.sys><N/A>

    atksgt.sys和lirsgt.sys两者一般同时存在,是Tages SA公司用于防止非法复制光盘的保护程序中的文件,并非病毒。
    http://stormcn.zhan.cn.yahoo.com/apps/ncpcontent/?module_id=22300000009202&action=read&articleid=161
    回复 支持 反对

    使用道具 举报

  • TA的每日心情
    开心
    2011-5-26 11:19
  • 签到天数: 1 天

    [LV.1]初来乍到

    发表于 2008-12-23 16:32 | 显示全部楼层
    报错的地方很多啊,查到卡卡论坛和老崔的百度帖吧都有删除的记录
    回复 支持 反对

    使用道具 举报

    该用户从未签到

    发表于 2008-12-23 16:57 | 显示全部楼层
    像这种查不出来可先禁用不确定的,可先禁上面两件出问题在打开~~~
    回复 支持 反对

    使用道具 举报

    您需要登录后才可以回帖 登录 | 注册

    本版积分规则

    QQ|Archiver|手机版|小黑屋|剑盟反病毒社区    

    GMT+8, 2014-7-29 18:42

    Powered by Discuz! X3.2

    © 2001-2013 Comsenz Inc.

    快速回复 返回顶部 返回列表