HijackThis_zww汉化版扫描日志 V1.99.1
保存于 17:27:59, 日期 2005-11-2
操作系统: Windows XP SP2 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP2 (6.00.2900.2180)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\KAV2005\KWatch.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\KAV2005\KPfwSvc.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\KAV2005\KAVStart.exe
C:\Program Files\ftc\Trojanwall.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\ctfmon.exe
C:\KAV2005\KavPFW.exe
C:\KAV2005\KMailMon.EXE
C:\WINDOWS\System32\svchost.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\TIMPlatform.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\QQ.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\QQ.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\QQ.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\QQ.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\QQ.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\QQ.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\qqpet\qqpet.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\qqpet\qqpet.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\qqpet\qqpet.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\qqpet\qqpet.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\qqpet\qqpet.exe
H:\其他软件\QQ2005Beta3珊瑚虫版3.1.6\qqpet\qqpet.exe
C:\Documents and Settings\挺\桌面\快捷方式\Q宠保姆\QQPetBonne2Build1028\QQPetBonne.exe
D:\legend\外挂\Sfmir2jsy307\jsy.exe
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
D:\legend\外挂\Sfmir2jsy307\Mir2Tianji.Dat
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\挺\LOCALS~1\Temp\Rar$EX00.578\HijackThis1991zww.exe
R3 - URLSearchHook: 上网助手 - {BB936323-19FA-4521-BA29-ECA6A121BC78} - C:\Program Files\3721\Assist\asbar.dll (file missing)
O2 - BHO: KOSIE HelperInternet Explorer Web Content Guard - {1B2F92A1-CDAF-4511-9382-91E3F5CE0880} - C:\Program Files\KOS\KOSIEBar.dll
O2 - BHO: (no name) - {40E3A34A-3282-41F8-AD2C-051BAB96AD4A} - (no file)
O2 - BHO: MMSAssist - {6671A431-5C3D-463d-A7CF-5587F9B7E191} - C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL (file missing)
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:\Program Files\Xi\NetTransport 2\NTIEHelper.dll (file missing)
O3 - IE工具栏增项: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - C:\PROGRA~1\Yahoo!\Assistant\Assist\yasbar.dll (file missing)
O3 - IE工具栏增项: 金山毒霸安全助手 - {EF72500A-C234-46C4-BF0A-9AA6913DDF34} - C:\Program Files\KOS\KOSIEBar.dll
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - IE右键菜单中的新增项目: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\getallurl.htm
O9 - 浏览器额外的按钮: (no name) - {6671A433-5C3D-463d-A7CF-5587F9B7E191} - C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL (file missing)
O9 - 浏览器额外的“工具”菜单项: MMSAssist工具条设置 - {6671A433-5C3D-463d-A7CF-5587F9B7E191} - C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL (file missing)
O9 - 浏览器额外的按钮: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - 浏览器额外的“工具”菜单项: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [!CNS] 上网助手-地址栏搜索
O17 - HKLM\System\CCS\Services\Tcpip\..\{436BBE5A-F6A7-433A-A37D-4705C789A912}: NameServer = 202.96.128.86 202.96.128.166
O17 - HKLM\System\CCS\Services\Tcpip\..\{A4443575-98A0-4C37-9234-78F01D598E05}: NameServer = 192.168.1.156
O23 - NT 服务: Kingsoft Personal Firewall Service (KPfwSvc) - Kingsoft Corporation - C:\KAV2005\KPfwSvc.EXE
O23 - NT 服务: Kingsoft Antivirus KWatch Service (KWatchSvc) - Kingsoft Corporation - C:\KAV2005\KWatch.EXE
O23 - NT 服务: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - NT 服务: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe