12   2  /  2  页   跳转

(仙侣奇缘2)帮杀广告

==================================
浏览器加载项
[ThunderIEHelper Class]
  {0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\system32\xunleibho_v3.dll, >
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <D:\腾讯\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[DragSearch]
  {62EED7C6-9F02-42f9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\ydragsearch.dll, N/A>
[BandIE Class]
  {77FEF28E-EB96-44FF-B511-3185DEA48697} <C:\PROGRA~1\baidu\bar\baidubar.dll, Baidu.com, Inc.>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <C:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[Google Toolbar Helper]
  {AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[上网助手]
  {BB936323-19FA-4521-BA29-ECA6A121BC78} <C:\PROGRA~1\3721\Assist\asbar.dll, 3721>
[CnsHook Class]
  {D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINDOWS\downlo~1\CnsHook.dll, 北京三七二一科技有限公司>
[Yahoo 1G电邮]
  {507F9113-CD77-4866-BA92-0E86DA3D0B97} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail, N/A>
[寻宝乐趣多]
  {59BC54A2-56B3-44a0-93E5-432D58746E26} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=taobao, N/A>
[雅虎助手]
  {5D73EE86-05F1-49ed-B850-E423120EC338} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <D:\腾讯\QQ\QQ.EXE, TENCENT>
[情景聊天]
  {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomsg, N/A>
[]
  {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair, N/A>
[]
  {FD00D911-7529-4084-9946-A29F1BDF4FE5} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean, N/A>
[FlashGet Bar]
  {E0E899AB-F487-11D5-8D29-0050BA6940E3} <C:\PROGRA~1\FLASHGET\fgiebar.dll, Amaze Soft>
[&Google]
  {2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[上网助手]
  {BB936323-19FA-4521-BA29-ECA6A121BC78} <C:\PROGRA~1\3721\Assist\asbar.dll, 3721>
[百度超级搜霸]
  {B580CF65-E151-49C3-B73F-70B13FCA8E86} <C:\PROGRA~1\baidu\bar\baidubar.dll, Baidu.com, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx, Macromedia, Inc.>
[ThunderIEHelper Class]
  {0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\system32\xunleibho_v3.dll, >
[Google Script Object]
  {00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[ActiveMovieControl Object]
  {05589FA1-C356-11CE-BF01-00AA0055595A} <C:\WINDOWS\SYSTEM\MSDXM.OCX, N/A>
[MonitorURL Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\PROGRA~1\DESKAD~1\deskipn.dll, >
[Tencent Browser Helper]
  {0C7C23EF-A848-485B-873C-0ED954731014} <C:\Program Files\TENCENT\Adplus\SSAddr.dll, Tencent>
[BhoApp Class]
  {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} <C:\WINDOWS\system32\BhoNew.dll, >
[177g 工具条]
  {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} <C:\WINDOWS\system32\ToolBand.dll, >
[实用搜索]
  {15ADF205-4C54-4CFE-AC88-1EA0BA6D06A0} <C:\Program Files\ScanToolbar\ScanBar.dll, >
[QuickBtn]
  {1A199C20-DE2B-4838-AE3F-B5257ECE2B7E} <C:\Program Files\CoolWebsite\QuickLink.dll, N/A>
[assist]
  {1B0E7716-898E-48CC-9690-4E338E8DE1D3} <C:\PROGRA~1\3721\Assist\assist.dll, >
[KAVIEHelper Class]
  {1B2F92A1-CDAF-4511-9382-91E3F5CE0880} <C:\Program Files\Kos\KOSIEBar.dll, 金山软件股份有限公司>
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[&Google]
  {2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[HTML Document]
  {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>
[FnvPlayer Control]
  {26792EB0-86EB-497D-9A4D-907F21E4ABE1} <C:\WINDOWS\system32\FNVPLA~1.OCX, Founder Net Video>
[Zhongsou Browser Helper]
  {2A0176FE-008B-4706-90F5-BBA532A49731} <C:\Program Files\SearchNet\SNHpr.dll, N/A>
[RealPlayer RAM Download Handler]
  {2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Tabular Data Control]
  {333C7BC4-460F-11D0-BC04-0080C7055A83} <C:\WINDOWS\system32\tdc.ocx, Microsoft Corporation>
[BitCometBar]
  {3F1ABCDB-A875-46C1-8345-B72A4567E486} <E:\BT\BitComet\BitCometBar\BitCometBar0.3.dll, N/A>
[updatePanelX Control]
  {43E839C5-E10F-443A-BC1F-F09CFD2ABC77} <D:\频道\UUTV\updateC.ocx, N/A>
[HHCtrl Object]
  {52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[金山毒霸安全助手]
  {52DF16E3-6C4F-4B22-8BAF-09263E463B48} <C:\PROGRA~1\Kos\KOSInit.ocx, 金山软件股份有限公司>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <D:\腾讯\QQ\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Shell Name Space]
  {55136805-B2DE-11D1-B9F2-00A0C98BC547} <%SystemRoot%\system32\shdocvw.dll, N/A>
[DragSearch]
  {62EED7C6-9F02-42F9-B634-98E2899E147B} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\ydragsearch.dll, N/A>
[IMCv1 Control]
  {6924091F-CD97-41E1-B1D4-D9079409D413} <C:\PROGRA~1\LtUcx\1003\c0.dll, 北京莲塘软件技术有限公司 Liantang Software Tech. Inc. (http://www.lotuspond.com.cn)>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Active Desktop Mover]
  {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
[BDC Control]
  {7253A666-8D4A-11D7-A4DC-00E04C504779} <C:\PROGRA~1\BDC\Bdc.ocx, BLUE>
[BandIE Class]
  {77FEF28E-EB96-44FF-B511-3185DEA48697} <C:\PROGRA~1\baidu\bar\baidubar.dll, Baidu.com, Inc.>
[ltmenu Class]
  {78C21EFD-53BA-406C-AF1A-33A38ABD3958} <C:\Program Files\LtUcx\1002\c0.dll, N/A>
[AutoLive]
  {7CA83CF1-3AEA-42D0-A4E3-1594FC6E48B2} <C:\PROGRA~1\3721\autolive.dll, >
[Microsoft Web 浏览器]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[NewWebController Class]
  {9ACEEE30-143F-471A-AA45-72B061FE7D60} <C:\WINDOWS\system32\WinSC32.dll, N/A>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <C:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[]
  {A9930D97-9CF0-42A0-A10D-4F28836579D5} <D:\PROGRA~1\KuGoo3\KUGOO3~1.OCX, N/A>
[Google Toolbar Helper]
  {AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Qzone Media Tools]
  {AC3A36A8-9BFF-410A-A33D-2279FFEB69D2} <D:\腾讯\QQ\VQQPLA~1.OCX, Tencent Technology (Shenzhen) Company Limited>
[Microsoft Scriptlet Component]
  {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[百度超级搜霸]
  {B580CF65-E151-49C3-B73F-70B13FCA8E86} <C:\PROGRA~1\baidu\bar\baidubar.dll, Baidu.com, Inc.>
[Messenger Object]
  {B69003B3-C55E-4B48-836C-BC5946FC3B28} <C:\Program Files\Messenger\msgsc.dll, Microsoft Corporation>
[Microsoft DirectAnimation Control]
  {B6FFC24C-7E13-11D0-9B47-00C04FC2F51D} <C:\WINDOWS\system32\danim.dll, Microsoft Corporation>
[3721]
  {B83FC273-3522-4CC6-92EC-75CC86678DA4} <C:\WINDOWS\Downloaded Program Files\CnsMin.dll, 北京三七二一科技有限公司>
[上网助手]
  {BB936323-19FA-4521-BA29-ECA6A121BC78} <C:\PROGRA~1\3721\Assist\asbar.dll, 3721>
[AUDIO__MID Moniker Class]
  {CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__MP3 Moniker Class]
  {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_ASF Moniker Class]
  {CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[RealPlayer G2 Control]
  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[CnsHook Class]
  {D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINDOWS\downlo~1\CnsHook.dll, 北京三七二一科技有限公司>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx, Macromedia, Inc.>
[OfficeObj Class]
  {D2BD7935-05FC-11D2-9059-00C04FD7A1BD} <, N/A>
[Microsoft DirectAnimation Path]
  {D7A7D7C3-D47F-11D0-89D3-00A0C90833E6} <C:\WINDOWS\system32\daxctle.ocx, Microsoft Corporation>
[FlashGet Bar]
  {E0E899AB-F487-11D5-8D29-0050BA6940E3} <C:\PROGRA~1\FLASHGET\fgiebar.dll, Amaze Soft>
[金山毒霸安全助手]
  {EF72500A-C234-46C4-BF0A-9AA6913DDF34} <C:\Program Files\Kos\KOSIEBar.dll, 金山软件股份有限公司>
[JScript Language]
  {F414C260-6AC0-11CF-B6D1-00AA00BBBB58} <C:\KAV2005\KAScript.DLL, Kingsoft Corporation>
[Windows Script Host Shell Object]
  {F935DC22-1CF0-11D0-ADB9-00C04FD58A0B} <C:\WINDOWS\system32\wshom.ocx, Microsoft Corporation>
[IERPCtl Class]
  {FDC7A535-4070-4B92-A0EA-D9994BCC0DC5} <D:\Program Files\rpplugins\ierpplug.dll, RealNetworks, Inc.>
[上传到QQ网络硬盘]
  <D:\腾讯\QQ\AddToNetDisk.htm, N/A>
[使用KuGoo3下载(&K)]
  <D:\Program Files\KuGoo3\KuGoo3DownX.htm, N/A>
[使用网际快车下载]
  <C:\Program Files\FLASHGET\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <C:\Program Files\FLASHGET\jc_all.htm, N/A>
[添加到QQ自定义面板]
  <D:\腾讯\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\腾讯\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\腾讯\QQ\SendMMS.htm, N/A>
[百度--MP3搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUMP3.HTM, N/A>
[百度--图片搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUIMG.HTM, N/A>
[百度--新闻搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUNEWS.HTM, N/A>
[百度--歌词搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDULYRIC.HTM, N/A>
[百度--网页搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUSEARCH.HTM, N/A>
[百度--词典搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDU_DIC.HTM, N/A>
[百度--贴吧搜索]
  <RES://C:\PROGRA~1\baidu\bar\baidubar.dll/BAIDUPOST.HTM, N/A>
gototop
 

正在运行的进程
[PID: 572][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 628][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 652][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
[PID: 696][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 708][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 864][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 928][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1056][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1104][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1160][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1360][C:\KAV2005\KWatch.EXE]  <Kingsoft Corporation><2005, 4, 24, 48>
    [C:\KAV2005\KAVIPC2.DLL]  <Kingsoft Corporation><2004, 12, 28, 20>
    [C:\KAV2005\KAEPlat.DLL]  <Kingsoft Corp.><2004, 11, 26, 53>
    [C:\KAV2005\KAEMem.DAT]  <Kingsoft><2004, 11, 9, 11>
[PID: 1420][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll]  <Windows (R) 2000 DDK provider><5.00.2195.1620>
[PID: 1576][C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE]  <C-Dilla Ltd><3.24.010>
[PID: 1612][C:\KAV2005\KPfwSvc.EXE]  <Kingsoft Corporation><2004, 12, 19, 24>
[PID: 1648][C:\WINDOWS\SYSTEM32\RUNDLL32.EXE]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1844][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1956][C:\WINDOWS\system32\wdfmgr.exe]  <Microsoft Corporation><5.2.3790.1230 built by: dnsrv(bld4act)>
[PID: 160][C:\Program Files\Common Files\COMM\Network.exe]  <COMENET TECHNOLOGY><1, 563, 15, 5>
[PID: 256][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\downlo~1\CnsHook.dll]  <北京三七二一科技有限公司><1, 0, 2, 4>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
    [C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\f3\pnxpwf.dll]  <><1, 0, 0, 0>
    [C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX2\HNETPO~1.DLL]  <><1, 0, 0, 1>
    [C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX4\DTSERV~1.DLL]  <><1, 3, 0, 0>
    [C:\PROGRA~1\COMMON~1\system\msdc32.dll]  <Microsoft Corporation><1, 0, 0, 1>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\PROGRA~1\3721\alrex.dll]  <><1, 0, 1, 1001>
    [C:\PROGRA~1\COMMON~1\system\mod\msdw.dll]  <N/A><N/A>
    [C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX2\modules\wrapper.dll]  <><1, 0, 0, 1>
    [C:\PROGRA~1\COMMON~1\system\mod\mstd.dll]  <N/A><N/A>
    [C:\PROGRA~1\COMMON~1\system\mod\ca32.dll]  <N/A><N/A>
    [C:\WINDOWS\Downloaded Program Files\Ikdj.dll]  <Tencent><4, 0, 7, 72>
    [C:\WINDOWS\Downloaded Program Files\Smujfh.dll]  <Tencent><4, 0, 7, 72>
    [C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\f3\ex\mcl.dll]  <N/A><N/A>
    [C:\PROGRA~1\3721\autolive.dll]  <><1, 1, 4, 1026>
    [C:\PROGRA~1\3721\alliveex.dll]  < ><1, 0, 3, 1006>
    [C:\PROGRA~1\3721\Assist\asbar.dll]  <3721><1, 0, 1, 1021>
    [C:\PROGRA~1\3721\Assist\tbwrap.dll]  <3721><1, 0, 0, 2>
    [C:\PROGRA~1\3721\Assist\asnoad.dll]  <><1, 0, 0, 9>
    [C:\PROGRA~1\3721\Assist\aswiper.dll]  <3721><1, 0, 1, 1004>
    [C:\PROGRA~1\3721\Assist\asiesec.dll]  <yahoo><1, 0, 0, 9>
    [C:\WINDOWS\system32\xunleibho_v3.dll]  <><4, 3, 1, 28>
    [C:\PROGRA~1\baidu\bar\baidubar.dll]  <Baidu.com, Inc.><2, 0, 2, 77>
    [C:\PROGRA~1\FLASHGET\jccatch.dll]  <Amaze Soft><1, 1, 4, 0>
[PID: 612][C:\WINDOWS\system32\Rundll32.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
[PID: 624][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1900][C:\WINDOWS\system32\rundll32.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\PROGRA~1\3721\autolive.dll]  <><1, 1, 4, 1026>
    [C:\PROGRA~1\3721\alliveex.dll]  < ><1, 0, 3, 1006>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
    [C:\WINDOWS\Downloaded Program Files\Ikdj.dll]  <Tencent><4, 0, 7, 72>
    [C:\PROGRA~1\3721\notifier.dll]  <><1, 0, 0, 5>
[PID: 1528][C:\PROGRA~1\3721\assistse.exe]  <yahoo><1, 0, 1, 1001>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\PROGRA~1\3721\shell\Assecblk.dll]  <3721><1, 0, 1, 1001>
    [C:\PROGRA~1\3721\shell\MenuInfo.dll]  <yahoo><1, 0, 0, 2>
    [C:\PROGRA~1\3721\shell\IEAngel.dll]  <yahoo><1, 0, 0, 3>
    [C:\PROGRA~1\3721\shell\AsMenu.dll]  <3721><1, 0, 1, 1006>
    [C:\PROGRA~1\3721\Assist\assist.dll]  <><2, 0, 3, 3>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
[PID: 1724][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  <RealNetworks, Inc.><0.1.0.3292>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
[PID: 1892][C:\WINDOWS\svchost.exe]  <Microsoft Corporation><2.12.2602>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
[PID: 320][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
gototop
 

[C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
[PID: 1316][D:\腾讯\QQ\QQ.exe]  <TENCENT><0, 0, 0, 0>
    [D:\腾讯\QQ\QQBaseClassInDll.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQHelperDll.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\BasicCtrlDll.dll]  <Tencent><5, 0, 200, 14>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [D:\腾讯\QQ\QQAPI.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\TIMProxy.dll]  <tencent><0, 3, 2, 4>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\LoginCtrl.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\npkcntc.dll]  <INCA Internet Co., Ltd.><2005, 9, 1, 1>
    [D:\腾讯\QQ\npkpdb.dll]  <INCA Internet Co., Ltd.><2003, 10, 1, 1>
    [D:\腾讯\QQ\QQRes.dll]  <tencent><1, 0, 0, 1>
    [D:\腾讯\QQ\QQMainFrame.dll]  <N/A><N/A>
    [D:\腾讯\QQ\CQQApplication.dll]  <N/A><N/A>
    [D:\腾讯\QQ\NewSkin.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\HostingMgr.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\CameraDll.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\MailSummary.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQSpace.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQAllInOne.dll]  <N/A><N/A>
    [D:\腾讯\QQ\SCCore.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\msdmo.dll]  <N/A><N/A>
    [D:\腾讯\QQ\QQGroupMng.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQCustomFace.dll]  <N/A><N/A>
    [D:\腾讯\QQ\UserDefinedHead.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQPlugin.dll]  <N/A><N/A>
    [D:\腾讯\QQ\QQConfigPlugin.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQPet.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QRingMng.dll]  <N/A><N/A>
    [D:\腾讯\QQ\PhoneAPI.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\DialerAllinOne.dll]  <tencent><1, 4, 0, 0>
    [C:\WINDOWS\downlo~1\CnsHook.dll]  <北京三七二一科技有限公司><1, 0, 2, 4>
    [D:\腾讯\QQ\QQSysMsgMng.dll]  <N/A><N/A>
    [D:\腾讯\QQ\LongConnection.dll]  <tencent><5, 0, 201, 14>
    [D:\腾讯\QQ\QQAvatar.dll]  <N/A><N/A>
    [D:\腾讯\QQ\FlashAvatarDll.dll]  <><1, 4, 0, 1>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [D:\腾讯\QQ\QQSceneMng.dll]  <N/A><N/A>
    [D:\腾讯\QQ\ImageOle.dll]  <TODO: <Company name>><1.0.0.1>
    [D:\腾讯\QQ\GroupConnection.dll]  <Tencent><5, 0, 202, 30>
    [D:\腾讯\QQ\BQQApplication.dll]  <N/A><N/A>
    [D:\腾讯\QQ\QQAddr.dll]  <深圳市腾讯计算机系统有限公司><5, 0, 101, 140>
    [D:\腾讯\QQ\CommercesMng.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\PersonalDesktop.dll]  <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
    [D:\腾讯\QQ\QQUdpGetFileLib.dll]  <tencent><0, 2, 2, 3>
    [D:\腾讯\QQ\QQPhoneHelper.dll]  <腾讯科技(深圳)有限公司><2, 0, 3, 30>
    [C:\WINDOWS\Downloaded Program Files\Ikdj.dll]  <Tencent><4, 0, 7, 72>
[PID: 1284][D:\腾讯\QQ\TIMPlatform.exe]  <tencent><0, 3, 1, 8>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\TIMProxy.dll]  <tencent><0, 3, 2, 4>
[PID: 2196][D:\腾讯\TT\TTraveler.exe]  <腾讯公司><3.0.0.250>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\PROGRA~1\3721\autolive.dll]  <><1, 1, 4, 1026>
    [C:\WINDOWS\downlo~1\CnsHook.dll]  <北京三七二一科技有限公司><1, 0, 2, 4>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
    [C:\PROGRA~1\3721\alliveex.dll]  < ><1, 0, 3, 1006>
    [D:\腾讯\TT\PersonalDesktop.dll]  <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 4>
    [C:\KAV2005\KAScript.DLL]  <Kingsoft Corporation><2005, 4, 1, 53>
    [C:\KAV2005\KAEPlat.DLL]  <Kingsoft Corp.><2004, 11, 26, 53>
    [C:\KAV2005\KAEMem.DAT]  <Kingsoft><2004, 11, 9, 11>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [C:\WINDOWS\Downloaded Program Files\Ikdj.dll]  <Tencent><4, 0, 7, 72>
    [C:\PROGRA~1\3721\Assist\asbar.dll]  <3721><1, 0, 1, 1021>
[PID: 2456][D:\腾讯\QQ\QQexternal.exe]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\BasicCtrlDll.dll]  <Tencent><5, 0, 200, 14>
    [D:\腾讯\QQ\QQHelperDll.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQBaseClassInDll.dll]  <><1, 0, 0, 1>
    [D:\腾讯\QQ\QQRes.dll]  <tencent><1, 0, 0, 1>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
    [C:\WINDOWS\Downloaded Program Files\Ikdj.dll]  <Tencent><4, 0, 7, 72>
    [C:\KAV2005\KAScript.DLL]  <Kingsoft Corporation><2005, 4, 1, 53>
    [C:\KAV2005\KAEPlat.DLL]  <Kingsoft Corp.><2004, 11, 26, 53>
    [C:\KAV2005\KAEMem.DAT]  <Kingsoft><2004, 11, 9, 11>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
[PID: 3048][E:\IE修复\SREng.exe]  <Smallfrogs Studio><2.0.12.350>
    [C:\WINDOWS\Downloaded Program Files\Ikdj.dll]  <Tencent><4, 0, 7, 72>
    [C:\PROGRA~1\3721\helper.dll]  <><1, 0, 9, 1324>
    [C:\WINDOWS\downlo~1\CnsMin.dll]  <北京三七二一科技有限公司><1, 5, 3, 2>
    [C:\WINDOWS\system32\inetdm.dll]  <><1, 0, 0, 1>
gototop
 

文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]
gototop
 

先解决流氓软件的问题
下载超级兔子。
http://dl.pconline.com.cn/html_2/1/75/id=273&pn=0.html
安装好后,打开“超级兔子优化王”“专业卸载,卸载除迅雷外,所有提示的垃圾软件。解决以下选项
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<HNETPOLCY><rundll32.exe C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX2\HNETPO~1.DLL,Start>

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<HNETPOLCY><rundll32.exe C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX2\HNETPO~1.DLL,Start>

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<HNETPOLCY><rundll32.exe C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX2\HNETPO~1.DLL,Start>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<DTService><rundll32.exe C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\RarSFX4\DTSERV~1.DLL,Load>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<Power><rundll32.exe C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp\f3\pnxpwf.dll,Start>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<ip_sec><rundll32.exe C:\PROGRA~1\COMMON~1\system\msdc32.dll,_S1>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<DM><rundll32.exe C:\WINDOWS\system32\inetdm.dll,Start>
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<YDTMain.exe><; C:\PROGRA~1\YDT\YDTMain.exe>

重启
请到www.27814939.ys168.com下载诺顿进程管理器终止所有C:\WINDOWS\SYSTEM\runonce.exe,C:\WINDOWS\svchost.exe 的进程(注意目录,不要终止错,如果有的话。)
运行System Repair Engineer,使用“启动项目,注册表”来删除以下选项。
(如果在注册表里无法识别那一下,可以选中一项后,点“编辑”这样会有很明细的路径)
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<mdac_runonce><C:\WINDOWS\SYSTEM\runonce.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<MicrosoftRedirectionProgram><C:\WINDOWS\svchost.exe>
双击我的电脑--工具---文件夹选项--查看--单击选取"显示隐藏文件或文件夹"清除"隐藏受保护的操作系统文件(推荐)"复选框。在提示您确定更改时,单击“是”
删除
C:\WINDOWS\svchost.exe
C:\WINDOWS\SYSTEM\runonce.exe
C:\PROGRA~1\YDT
C:\WINDOWS\system32\inetdm.dll
C:\PROGRA~1\COMMON~1\system\msdc32.dll
C:\DOCUME~1\OUYANG~1\LOCALS~1\Temp删除这个文件中所有能删除的东东。
修复后,请重启,烦再扫份报告粘上来。
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT