瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » 系统超慢 急救
princescl - 2012-12-25 14:02:00
新装系统 超慢,程序超慢

2012-12-25,13:55:53
System Repair Engineer 2.8.4.1331
Smallfrogs ([url]http://www.KZTechs.com[/url])
Windows XP Home Edition Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描
    计划任务
    Windows 安全更新检查
    API HOOK
    隐藏进程

启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <360sd><"D:\Program Files\360\360sd\360sd.exe" /autorun>  [(Verified)360.cn]
    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
    <WinlogonNotify: igfxcui><igfxdev.dll>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
    <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
    <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Publisher]
==================================
启动文件夹
N/A
==================================
服务
[360 杀毒实时防护加载服务 / 360rp][Stopped/Auto Start]
  <"D:\Program Files\360\360sd\360rps.exe"><360.cn>
[Adobe Flash Player Update Service / AdobeFlashPlayerUpdateSvc][Stopped/Manual Start]
  <C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe><Adobe Systems Incorporated>
[Symantec Event Manager / ccEvtMgr][Stopped/Disabled]
  <><(File is missing)>
[Symantec Internet Security Password Validation / ccISPwdSvc][Stopped/Disabled]
  <><(File is missing)>
[Symantec Network Proxy / ccProxy][Stopped/Disabled]
  <><(File is missing)>
[Symantec Settings Manager / ccSetMgr][Stopped/Disabled]
  <><(File is missing)>
[COM Host / comHost][Stopped/Disabled]
  <><(File is missing)>
[Kingsoft Rescue Service / Kingsoft Rescue Service][Stopped/Manual Start]
  <d:\Program Files\kingsoft\KSM\ksmsvc.exe><>
[Norton AntiVirus 自动防护服务 / navapsvc][Stopped/Disabled]
  <><(File is missing)>
[Norton Protection Center Service / NSCService][Stopped/Disabled]
  <><(File is missing)>
[Symantec AVScan / SAVScan][Stopped/Disabled]
  <><(File is missing)>
[Symantec Network Drivers Service / SNDSrvc][Stopped/Disabled]
  <><(File is missing)>
[Symantec SPBBCSvc / SPBBCSvc][Stopped/Disabled]
  <><(File is missing)>
[Symantec Core LC / Symantec Core LC][Stopped/Disabled]
  <><(File is missing)>
[主动防御 / ZhuDongFangYu][Stopped/Manual Start]
  <"D:\Program Files\360\360Safe\deepscan\ZhuDongFangYu.exe"><360.cn>
==================================
驱动程序
[360Safe Anti Hacker Service / 360AntiHacker][Running/System Start]
  <System32\Drivers\360AntiHacker.sys><360.cn>
[360AvFlt mini-filter driver / 360AvFlt][Running/Manual Start]
  <system32\DRIVERS\360AvFlt.sys><360.cn>
[360Box mini-filter driver / 360Box][Running/System Start]
  <system32\DRIVERS\360Box.sys><360安全中心>
[360Safe Camera Filter Service / 360Camera][Stopped/Manual Start]
  <System32\Drivers\360Camera.sys><360.cn>
[360SelfProtection / 360SelfProtection][Running/System Start]
  <system32\drivers\360SelfProtection.sys><360安全中心>
[ADI UAA Function Driver for High Definition Audio Service / ADIHdAudAddService][Running/Manual Start]
  <system32\drivers\ADIHdAud.sys><Analog Devices, Inc.>
[AEGIS Protocol (IEEE 802.1x) v3.5.3.0 / AegisP][Running/Auto Start]
  <system32\DRIVERS\AegisP.sys><Meetinghouse Data Communications>
[BAPIDRV / BAPIDRV][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\BAPIDRV.SYS><360.cn>
[EfiSystemMon / EfiMon][Running/System Start]
  <System32\Drivers\Efimon.sys><360安全中心>
[Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]
  <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HookPort / HookPort][Running/Boot Start]
  <\SystemRoot\System32\Drivers\Hookport.sys><360安全中心>
[ialm / ialm][Running/Manual Start]
  <system32\DRIVERS\igxpmp32.sys><Intel Corporation>
[ipswuio / ipswuio][Stopped/Manual Start]
  <System32\DRIVERS\ipswuio.sys><Windows (R) 2000 DDK provider>
[ksapi / ksapi][Running/Manual Start]
  <\??\C:\WINDOWS\system32\drivers\ksapi.sys><Kingsoft Corporation>
[Logitech SetPoint Keyboard Driver / L8042Kbd][Running/Manual Start]
  <system32\DRIVERS\L8042Kbd.sys><Logitech, Inc.>
[ATK0100 ACPI UTILITY / MTsensor][Running/Manual Start]
  <system32\DRIVERS\ATKACPI.sys><>
[用于 Windows XP 32 Bit 版的英特尔(R) PRO/无线 3945ABG 适配器驱动程序 / NETw3x32][Running/Manual Start]
  <system32\DRIVERS\NETw3x32.sys><Intel? Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[QQProtect / QQProtect][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\QQProtect.sys><Tencent>
[Quantum DeepScanner Servers / quxxxserv][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\quxxxrv.sys><360.cn>
[qutmipc / qutmipc][Running/System Start]
  <\??\C:\WINDOWS\system32\drivers\qutmipc.sys><360.cn>
[rimmptsk / rimmptsk][Running/Manual Start]
  <system32\DRIVERS\rimmptsk.sys><REDC>
[rimsptsk / rimsptsk][Running/Manual Start]
  <system32\DRIVERS\rimsptsk.sys><REDC>
[Ricoh xD-Picture Card Driver / rismxdp][Running/Manual Start]
  <system32\DRIVERS\rixdptsk.sys><REDC>
[Realtek 10/100/1000 NIC Family all in one NDIS XP Driver / RTL8023xp][Running/Manual Start]
  <system32\DRIVERS\Rtenicxp.sys><Realtek Semiconductor Corporation>
[WLAN Transport / s24trans][Running/Auto Start]
  <system32\DRIVERS\s24trans.sys><Intel Corporation>
[smserial / smserial][Running/Manual Start]
  <system32\DRIVERS\smserial.sys><Motorola Inc.>
[SymEvent / SymEvent][Running/Manual Start]
  <\??\C:\Program Files\Symantec\SYMEVENT.SYS><Symantec Corporation>
[symlcbrd / symlcbrd][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\symlcbrd.sys><Symantec Corporation>
[SYMREDRV / SYMREDRV][Stopped/Manual Start]
  <\SystemRoot\System32\Drivers\SYMREDRV.SYS><Symantec Corporation>
[SYMTDI / SYMTDI][Running/System Start]
  <\SystemRoot\System32\Drivers\SYMTDI.SYS><Symantec Corporation>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
  <system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[Vimicro USB PC Camera (VC0321) / usbvm321][Running/Manual Start]
  <System32\Drivers\usbvm321.sys><Vimicro Corporation>
==================================
浏览器加载项
[]
  {A849E2DF-E0E3-4EB7-ACF4-403807D90000} <, >
[]
  {00000ADA-7E0D-47C1-986C-F017D09C4304} <, >
[PlayCtrl Class]
  {02E2D748-67F8-48B4-8AB4-0A085374BB99} <d:\Program Files\Baidu\BaiduPlayer\1.19.0.78\xbdyy.dll, (Signed) >
[]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <, >
[]
  {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} <, >
[]
  {0EA37B17-6B8B-4085-8257-F3A4AA69C27A} <, >
[]
  {4248FE82-7FCB-46AC-B270-339F08212110} <, >
[]
  {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} <, >
[]
  {5C4500A9-0BE9-434E-B807-118E6E5EA3B6} <, >
[迅雷发行IE支持]
  {5FFF24BC-DC02-4808-B4E0-A8E2C93FE407} <d:\Program Files\Thunder Network\Thunder\BHO\xlfxctrl1.0.1.64.dll, (Signed) 深圳市迅雷网络技术有限公司>
[360SafeLive]
  {87515F61-A66C-4319-A0E0-D416CB8059E3} <D:\Program Files\360\360Safe\Safelive.dll, (Signed) 360.cn>
[]
  {889D2FEB-5411-4565-8998-1DD2C5261283} <, >
[SetupCtrl Class]
  {8C891026-0BE9-434E-B807-118E6E5EA3B6} <C:\WINDOWS\Downloaded Program Files\9705281\BaiduSetupAx_0.dll, (Signed) Baidu Inc.>
[]
  {9ECB9560-04F9-4BBC-943D-298DDF1699E1} <, >
[]
  {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} <, >
[APlayer3 Control]
  {A9332148-C691-4B9D-91FC-B9C461DBE9DD} <C:\Documents and Settings\All Users\Application Data\Thunder Network\APlayer\APlayer_3.0.4.533.dll, (Signed) ShenZhen Thunder Networking Technologies, LTD>
[]
  {C4069E3A-68F1-403E-B40E-20066696354B} <, >
[]
  {CCF151D8-D089-449F-A5A4-D9909053F20F} <, >
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash32_11_5_502_135.ocx, (Signed) Adobe Systems, Inc.>
[]
  {E33CF602-D945-461A-83F0-819F76A199F8} <, >
[]
  {F3E70CEA-956E-49CC-B444-73AFE593AD7F} <, >
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
==================================
正在运行的进程
[PID: 1020 / SYSTEM][\SystemRoot\System32\smss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1828 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\CSRSRV.dll]  [Microsoft Corporation, 5.1.2600.3657 (xpsp_sp2_gdr.091211-1419)]
[PID: 1108 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.3625 (xpsp_sp2_gdr.090909-1233)]
[PID: 1280 / SYSTEM][C:\WINDOWS\system32\services.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1288 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.3625 (xpsp_sp2_gdr.090909-1233)]
[PID: 1624 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
[PID: 1772 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1964 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [C:\WINDOWS\System32\rastls.dll]  [Microsoft Corporation, 5.1.2600.3632 (xpsp_sp2_gdr.091012-1238)]
    [C:\WINDOWS\System32\raschap.dll]  [Microsoft Corporation, 5.1.2600.3632 (xpsp_sp2_gdr.091012-1238)]
    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.3625 (xpsp_sp2_gdr.090909-1233)]
[PID: 572 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 556 / s][C:\WINDOWS\Explorer.EXE]  [(Verified) Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [C:\WINDOWS\system32\igfxpph.dll]  [Intel Corporation, 3.0.0.4670]
    [C:\WINDOWS\system32\hccutils.DLL]  [Intel Corporation, 3.0.0.4670]
    [C:\WINDOWS\system32\igfxres.dll]  [Intel Corporation, 3.0.0.4670]
    [C:\WINDOWS\system32\igfxress.dll]  [Intel Corporation, 3.0.0.4670]
    [C:\WINDOWS\system32\igfxsrvc.dll]  [Intel Corporation, 3.0.0.4670]
[PID: 772 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
[PID: 2040 / s][D:\Program Files\360\360sd\360sd.exe]  [360.cn, 4, 0, 0, 3120]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [D:\Program Files\360\360sd\UIDll.dll]  [360.cn, 1, 0, 0, 1006]
    [D:\Program Files\360\360sd\CrashReport.dll]  [360.cn, 3, 0, 0, 3013]
    [D:\Program Files\360\360sd\360Conf.dll]  [360.cn, 1, 0, 0, 1004]
[PID: 300 / s][C:\WINDOWS\system32\ctfmon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 620 / s][D:\Program Files\360\360sd\360rp.exe]  [360.cn, 4, 0, 0, 3105]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [D:\Program Files\360\360sd\360rp.dll]  [360.cn, 4, 0, 0, 3120]
    [D:\Program Files\360\360sd\CrashReport.dll]  [360.cn, 3, 0, 0, 3013]
    [D:\Program Files\360\360Safe\deepscan\cloudcom2.dll]  [360.cn, 3, 3, 8, 3031]
    [D:\Program Files\360\360Safe\360base.dll]  [360.cn, 1, 0, 0, 1006]
    [D:\Program Files\360\360Safe\360conf.dll]  [360.cn, 1, 0, 0, 1004]
    [D:\Program Files\360\360Safe\360NetBase.dll]  [360.cn, 7, 25, 0, 3]
    [D:\Program Files\360\360Safe\deepscan\Bapi.dll]  [360.cn, 2.0.0.1039]
    [D:\Program Files\360\360Safe\deepscan\heavygate.dll]  [360.cn, 3, 7, 9, 3]
    [D:\Program Files\360\360sd\QtQuart.dll]  [360.cn, 4, 0, 0, 3105]
    [D:\Program Files\360\360sd\WhiteCache.dll]  [360.cn, 3, 2, 0, 3052]
    [D:\Program Files\360\360sd\360AvFlt.dll]  [360.cn, 1.1.0.1015]
    [D:\Program Files\360\360sd\AVEI.dll]  [360.cn, 1, 0, 0, 1011]
    [D:\Program Files\360\360sd\AVEngine.dll]  [360.cn, 1, 0, 0, 1011]
    [D:\Program Files\360\360Safe\deepscan\CQhCltHttpW.dll]  [360.cn, 1, 0, 6, 1002]
    [D:\Program Files\360\360sd\QEX.dll]  [360.cn, 4, 0, 1, 3105]
    [D:\Program Files\360\360sd\SDPlugin\AntiDel.dll]  [360.cn, 3, 1, 0, 3027]
    [D:\Program Files\360\360sd\pluginmgr.dll]  [360.cn, 3, 0, 0, 2113]
    [D:\Program Files\360\360sd\immplugin\Dllhijack.dll]  [360.cn, 4, 0, 0, 3111]
    [D:\Program Files\360\360sd\immplugin\LockAcad.dll]  [360.cn, 4, 0, 0, 3085]
    [D:\Program Files\360\360sd\immplugin\OfficeMacro.dll]  [360.cn, 4, 0, 0, 3120]
    [D:\Program Files\360\360sd\immplugin\PopTrojan.dll]  [360.cn, 3, 2, 0, 3052]
    [D:\Program Files\360\360Safe\safemon\somproxy.dll]  [360.cn, 1, 0, 0, 1260]
    [D:\Program Files\360\360Safe\netmon\360netctrl.dll]  [360.cn, 5, 3, 13, 2056]
[PID: 3396 / s][D:\Program Files\Opera\opera.exe]  [Opera Software, 1707]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
    [D:\Program Files\Opera\Opera.dll]  [Opera Software, 1707]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_135.dll]  [, ]
    [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 6.5.0.8544]
    [d:\Program Files\SogouInput\Components\AddressSearch\1.0.0.1097\AddressSearch.dll]  [Sogou.com Inc., 1.0.0.1097]
    [C:\WINDOWS\system32\WBJJU.IME]  [北京六合源软件技术有限公司, 2, 5, 0, 0]
    [C:\WINDOWS\system32\WbCodeU.dll]  [, 2, 5, 0, 0]
    [C:\WINDOWS\system32\wbjju.dll]  [N/A, ]
[PID: 3984 / s][C:\DOCUME~1\s\LOCALS~1\Temp\Rar$EX00.906\SREngLdr.EXE]  [Smallfrogs Studio, 2.8.4.1331]
[PID: 932 / s][C:\DOCUME~1\s\LOCALS~1\Temp\Rar$EX00.906\SRE8c4890f.EXE]  [Smallfrogs Studio, 2.8.4.1331]
    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.3624 (xpsp_sp2_gdr.090904-1413)]
==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1      localhost
==================================
进程特权扫描
N/A
==================================
计划任务
N/A
==================================
Windows 安全更新检查
N/A
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================


用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
networkedition - 2012-12-25 16:33:00
清理清理系统垃圾
十动然拒 - 2012-12-25 18:53:00
远离流氓
9876532 - 2012-12-25 21:36:00
建议把360系列软件全部卸载
南国东东 - 2012-12-26 14:38:00
该用户帖子内容已被屏蔽

附件: 剪贴板01.jpg
1
查看完整版本: 系统超慢 急救