瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » Trojan.PSW.LMir.atc 我有日志谁帮我看看
漂4625 - 2006-8-14 2:36:00
[C:\NVIDIA\NetworkAccessManager\bin\nv_common.dll]  <N/A><N/A>
    [C:\NVIDIA\NetworkAccessManager\bin\nv_resource_L1033.dll]  <NVIDIA Corporation><1, 0, 1, 0>
[PID: 2000][C:\WINDOWS\system32\wbem\wmiprvse.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\NVIDIA\NetworkAccessManager\bin\nmp.dll]  <NVIDIA Corporation><1, 0, 0, 2>
    [C:\NVIDIA\NetworkAccessManager\bin\nv_common.dll]  <N/A><N/A>
[PID: 2004][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\nvappfilter.dll]  <N/A><N/A>
[PID: 868][C:\WINDOWS\system32\wscntfy.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
[PID: 2276][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2564][C:\NVIDIA\NetworkAccessManager\bin\nTrayFw.exe]  <NVIDIA Corporation><>
    [C:\NVIDIA\NetworkAccessManager\bin\nv_common.dll]  <N/A><N/A>
    [C:\NVIDIA\NetworkAccessManager\bin\nv_common_firewall.dll]  <N/A><N/A>
    [C:\NVIDIA\NetworkAccessManager\bin\NMI.dll]  <NVIDIA Corporation><1, 0, 2, 0>
    [C:\NVIDIA\NetworkAccessManager\bin\SpecialCase.dll]  <N/A><N/A>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
[PID: 2676][C:\WINDOWS\SOUNDMAN.EXE]  <Realtek Semiconductor Corp.><5.1.0.34>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
[PID: 2688][C:\Program Files\FarStone\VirtualDrive\VDTask.exe]  <FarStone Technology Inc.><7, 0, 0, 1>
    [C:\WINDOWS\system32\FsLodLib.dll]  <><1, 0, 0, 1>
    [C:\Program Files\FarStone\VirtualDrive\vdtask_RC.dll]  <FarStone Technology Inc.><7, 0, 0, 1>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
[PID: 2708][C:\Program Files\Rising\Rav\RavTask.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
[PID: 2760][C:\Program Files\Rising\Rav\Ravmon.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 1, 30>
    [C:\Program Files\Rising\Rav\RsGuiLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
    [C:\Program Files\Rising\Rav\BWList.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\PngDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
[PID: 2764][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  <RealNetworks, Inc.><0.1.0.3208>
[PID: 2788][C:\Program Files\D-Tools\daemon.exe]  <DAEMON'S HOME><3.47.0.0>
    [C:\WINDOWS\daemon.dll]  <N/A><3.47.0.0>
    [C:\Program Files\D-Tools\PFCTOC.DLL]  <Padus(R), Inc.><1, 0, 0, 12>
    [C:\Program Files\D-Tools\Plugins\Images\ccdmount.dll]  <GENERIC><1.02.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\mdsmount.dll]  <GENERIC><1.01.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\pdimount.dll]  <GENERIC><1.01.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\nrgmount.dll]  <GENERIC><1.02.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\bw5mount.dll]  <N/A><1.0.2.0>
[PID: 2876][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3260][E:\QQ\qq\TIMPlatfrom.exe]  <tencent><0, 3, 1, 8>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
    [E:\QQ\qq\TIMProxy.dll]  <tencent><0, 3, 2, 4>
[PID: 3656][E:\QQ\qq\QQ.exe]  <TENCENT><0, 0, 0, 0>
    [E:\QQ\qq\QQBaseClassInDll.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\QQHelperDll.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\BasicCtrlDll.dll]  <Tencent><5, 0, 200, 160>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
    [E:\QQ\qq\QQAPI.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\TIMProxy.dll]  <tencent><0, 3, 2, 4>
    [E:\QQ\qq\LoginCtrl.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\npkcntc.dll]  <INCA Internet Co., Ltd.><2006, 3, 2, 1>
    [E:\QQ\qq\npkpdb.dll]  <INCA Internet Co., Ltd.><2003, 10, 1, 1>
    [E:\QQ\qq\QQRes.dll]  <tencent><1, 0, 0, 1>
    [E:\QQ\qq\QQMainFrame.dll]  <N/A><N/A>
    [E:\QQ\qq\CQQApplication.dll]  <N/A><N/A>
    [E:\QQ\qq\NewSkin.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\HostingMgr.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\CameraDll.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\MailSummary.dll]  <><1, 0, 0, 1>
    [C:\WINDOWS\system32\nvappfilter.dll]  <N/A><N/A>
    [E:\QQ\qq\QQSpace.dll]  <><1, 0, 0, 1>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [E:\QQ\qq\QQGroupMng.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\GroupLive.dll]  <N/A><N/A>
    [E:\QQ\qq\UserDefinedHead.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\QQPlugin.dll]  <N/A><N/A>
    [E:\QQ\qq\QQConfigPlugin.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\QRingMng.dll]  <N/A><N/A>
    [E:\QQ\qq\PhoneAPI.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\DialerAllinOne.dll]  <tencent><1, 4, 0, 0>
    [E:\QQ\qq\QQAvatar.dll]  <N/A><N/A>
    [E:\QQ\qq\FlashAvatarDll.dll]  <><1, 4, 0, 1>
    [E:\QQ\qq\LongConnection.dll]  <tencent><5, 0, 200, 160>
    [E:\QQ\qq\QQPet.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\QQAllInOne.dll]  <N/A><N/A>
    [E:\QQ\qq\SCCore.dll]  <N/A><N/A>
    [E:\QQ\qq\QQCustomFace.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\macromed\flash\Flash.ocx]  <Macromedia, Inc.><7,0,19,0>
    [E:\QQ\qq\ImageOle.dll]  <TODO: <Company name>><1.0.0.1>
    [E:\QQ\qq\QQSceneMng.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\KIme.ime]  <金山软件公司><1, 0, 0, 1>
    [C:\Program Files\Common Files\kingsoft\Extract\KSEngine.dll]  <金山软件有限公司><2, 0, 1, 0>
    [E:\QQ\qq\QQSysMsgMng.dll]  <N/A><N/A>
    [E:\QQ\qq\BQQApplication.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [E:\QQ\qq\CommercesMng.dll]  <><1, 0, 0, 1>
    [E:\QQ\qq\PersonalDesktop.dll]  <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
    [E:\QQ\qq\QQAddr.dll]  <深圳市腾讯计算机系统有限公司><5, 0, 101, 200>
    [E:\QQ\qq\GroupConnection.dll]  <Tencent><5, 0, 202, 170>
    [E:\QQ\qq\QQPhoneHelper.dll]  <腾讯科技(深圳)有限公司><2, 0, 6, 60>
[PID: 3300][C:\Program Files\TouchNet\TouchNet.exe]  <TouchingSoft.com><1, 0, 0, 0>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
    [C:\WINDOWS\system32\nvappfilter.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\system32\macromed\flash\Flash.ocx]  <Macromedia, Inc.><7,0,19,0>
[PID: 1856][E:\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [C:\Program Files\TENCENT\Adplus\Adplus1.dll]  <Tencent><4, 1, 10, 110>
    [C:\WINDOWS\system32\nvappfilter.dll]  <N/A><N/A>
1
查看完整版本: Trojan.PSW.LMir.atc 我有日志谁帮我看看