1234567   5  /  7  页   跳转

奇怪的灰鸽子,求救!

[D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
[PID: 412][C:\Program Files\cFosSpeed\cFosSpeed.exe]  <cFos Software GmbH><2.02.943>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
[PID: 276][C:\WINDOWS\system32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
[PID: 2216][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2724][C:\Program Files\Rising\Rav\RsAgent.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
[PID: 2752][C:\WINDOWS\msagent\AgentSvr.exe]  <Microsoft Corporation><2.00.0.3422>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
[PID: 336][C:\Program Files\Real\RealPlayer\realplay.exe]  <RealNetworks, Inc.><6.0.12.1056>
    [C:\WINDOWS\system32\PNCRT.dll]  <Real Networks, Inc><6.0.0.0>
    [C:\Program Files\Common Files\Real\Update_OB\rnms3270.dll]  <RealNetworks, Inc.><7.0.1.3041>
gototop
 

[C:\Program Files\Common Files\Real\Common\objb3201.dll]  <RealNetworks, Inc.><0.1.0.6032>
    [C:\Program Files\Common Files\Real\RCAPlugins\uisy3201.dll]  <RealNetworks, Inc.><0.1.0.3537>
    [C:\Program Files\Real\RealPlayer\lang\gemctl_cn.dll]  <RealNetworks, Inc.><6.0.12.298>
    [C:\Program Files\Common Files\Real\Common\pnrs3260.dll]  <RealNetworks, Inc.><6.0.9.3775>
    [C:\Program Files\Common Files\Real\Update_OB\rnad3201.dll]  <RealNetworks, Inc.><0.1.0.3208>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
    [C:\Program Files\Common Files\Real\Update_OB\rnqu3270.dll]  <RealNetworks, Inc.><7.0.0.3461>
    [C:\Program Files\Common Files\Real\Update_OB\setu3270.dll]  <RealNetworks, Inc.><7.0.0.4074>
    [C:\Program Files\Common Files\Real\Plugins\httpfsys.dll]  <RealNetworks, Inc.><10.0.0.2015>
[PID: 2240][D:\软件\Program Files\Maxthon(myie)\Maxthon.exe]  <Maxthon International Ltd.><1, 5, 1, 39>
    [D:\软件\Program Files\Maxthon(myie)\maxzlib.dll]  < ><1, 0, 0, 2>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
    [D:\软件\Program Files\Maxthon(myie)\Services\RealTime\real_time.dll]  <><1, 0, 0, 1>
gototop
 

[C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
[PID: 3288][C:\WINDOWS\system32\DllHost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
[PID: 2564][D:\软件\Program Files\Thunder\Thunder.exe]  <Thunder Networking Technologies,LTD><5.1.5.189>
    [D:\软件\Program Files\Thunder\UpdateDownload.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 2>
    [D:\软件\Program Files\Thunder\download_interface.dll]  <Thunder Networking Technologies,LTD><1, 0, 2, 74>
    [D:\软件\Program Files\Thunder\log4cplus.dll]  <><1, 0, 2, 1>
    [D:\软件\Program Files\Thunder\stlport_vc646.dll]  <STLport Consulting, Inc.><4.6.2003.1031>
    [D:\软件\Program Files\Thunder\msgmanage.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 15>
    [D:\软件\Program Files\Thunder\historyinfo_manage.dll]  <Thunder Networking Technologies,LTD><5, 2, 0, 148>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
    [D:\软件\Program Files\Thunder\iEmbed.dll]  <Thunder Networking Technologies,LTD><1, 1, 0, 22>
    [D:\软件\Program Files\Thunder\RegisterDll.dll]  <Thunder Networking Technologies,LTD><1, 2, 0, 7>
    [D:\软件\Program Files\Thunder\FloatBar.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 2>
    [D:\软件\Program Files\Thunder\Plugins\TingTing\TingTing.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 7>
    [D:\软件\Program Files\Thunder\iTargetAd.dll]  <Thunder Networking Technologies,LTD><1, 0, 0, 59>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx]  <Macromedia, Inc.><8,0,22,0>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
[PID: 128][C:\WINDOWS\system32\conime.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
[PID: 584][D:\软件\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [D:\软件\Program Files\木马专杀大师\Sockethook.dll]  <N/A><N/A>
gototop
 

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

贴完了,谢谢!

(现在网页时不时会被改掉,越来越频繁~~~哭~~~~)
gototop
 

winxp里有WINLOGON.EXE这个进程(只有一个),正常吗?
是:C:\WINDOWS\System32\WINLOGON.EXE

SREng里看“注册表”,有一个名字是WinlogonNotify: AtiExtEvent,数据是:ati2evxx.dll,显示为蓝色,是病毒吗?

(越来越乱了~~~~……)
gototop
 

下了个ewido3.5没法升级,先杀杀看看~~~

没人来,自己顶着~~~
gototop
 

今天好萧条~~~~~~

我无邪呢?进来坐坐阿~~~~
gototop
 

日志以看不出问题
你有异常请描述一下。
gototop
 

欢迎光临~~~谢谢!

遨游关闭时选中“下次浏览时打开本次网页”,再开时原来的网页变成“上海电信”或其他,
有时改主页
有时改搜索页
(看它喜欢,不固定的改改改~~)
gototop
 
1234567   5  /  7  页   跳转
页面顶部
Powered by Discuz!NT