瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 我的HijackThis 扫描日志,帮看看有啥问题,哪些可直接修复?

1   1  /  1  页   跳转

我的HijackThis 扫描日志,帮看看有啥问题,哪些可直接修复?

我的HijackThis 扫描日志,帮看看有啥问题,哪些可直接修复?

Logfile of HijackThis v1.99.1
Scan saved at 13:56:03, on 2005-11-4
Platform: Windows XP SP2 (WinNT我的HijackThis 扫描日志,5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\FWRITE\Fahid.exe
C:\Program Files\联想\联想键盘驱动\hidSevice.exe
C:\Program Files\联想\联想键盘驱动\usbkbdriver.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\kv2004\KV2005\KVMonXP_2.kxp
C:\Program Files\联想\联想键盘驱动\fastkey.exe
D:\工具\傲游(Maxthon)(原名MyIE2) V1.5 Build 95 豪华版\Maxthon\Thundermini\ThunderMini.exe
C:\Program Files\Eset\nod32kui.exe
D:\工具\网络狂飙(NetSpeeder) V3.33 简体中文注册版\NetSpeeder.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft Office\Office\2052\OLFSNT40.EXE
D:\工具\DUDU\DuDuProsvc.exe
D:\工具\木马克星\security suite\ewidoctrl.exe
C:\WINDOWS\system32\ircomm2k.exe
D:\kv2004\KV2005\KVSrvXP.exe
D:\kv2004\KV2005\kvwsc.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\联想\联想键盘驱动\TGESrvLogon.exe
D:\工具\网络伴侣(iCompanion) V2.20\ic.exe
D:\工具\傲游(Maxthon)(原名MyIE2) V1.5 Build 95 豪华版\Maxthon\Maxthon.exe
D:\工具\Hijackthis\HijackThis\HijackThis.exe

O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v4.dll
O2 - BHO: URLMonitor Class - {3ED9FFDA-79DB-4B2D-99B7-16EA3C4A3A92} - C:\WINDOWS\system32\hap.dll (file missing)
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\工具\QQ2005\QQIEHelper.dll
O2 - BHO: DownloadValue Class - {616D4040-5712-4F0F-BCF1-5C6420A99E14} - C:\WINDOWS\system32\winhtp.dll (file missing)
O2 - BHO: DDDMon Class - {6BDE1669-B490-48E3-B668-456314F2D6C3} - D:\工具\DUDU\dddiemon.dll
O2 - BHO: BrowseHelper Class - {80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} - D:\kv2004\KV2005\KvShell.dll
O2 - BHO: (no name) - {9AFD91F9-6B03-4D22-A1E1-67D224CB7AB1} - (no file)
O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - (no file)
O3 - Toolbar: 江民杀毒工具栏 - {B5A34A93-D538-43A7-8371-864CB6148D12} - D:\kv2004\KV2005\KvShell.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [FAhid] C:\FWRITE\Fahid.exe
O4 - HKLM\..\Run: [HuaShanTGEUSBKbd] C:\Program Files\联想\联想键盘驱动\hidSevice.exe
O4 - HKLM\..\Run: [HuaShanTGEUSBKbd1] C:\Program Files\联想\联想键盘驱动\usbkbdriver.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [KvMonXP] "D:\kv2004\KV2005\KVMonXP_2.kxp" /auto
O4 - HKLM\..\Run: [Windows内存整理] D:\工具\Windows优化大师 V6.3\Wom657\Wom657_hcty\WinMem.exe
O4 - HKLM\..\Run: [thunder_mini] D:\工具\傲游(Maxthon)(原名MyIE2) V1.5 Build 95 豪华版\Maxthon\Thundermini\ThunderMini.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [NetSpeeder] "D:\工具\网络狂飙(NetSpeeder) V3.33 简体中文注册版\NetSpeeder.exe" hide
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Symantec Fax Starter Edition Port.lnk = C:\Program Files\Microsoft Office\Office\2052\OLFSNT40.EXE
O8 - Extra context menu item: &使用DuDu 加速器下载 - res://D:\工具\DUDU\dddiemon.dll/202
O8 - Extra context menu item: &使用迷你迅雷下载 - D:\工具\傲游(Maxthon)(原名MyIE2) V1.5 Build 95 豪华版\Maxthon\Thundermini\geturl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - D:\工具\QQ2005\AddToNetDisk.htm
O8 - Extra context menu item: 添加到QQ自定义面板 - D:\工具\QQ2005\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - D:\工具\QQ2005\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - D:\工具\QQ2005\SendMMS.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java 控制台 - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: 卓越 - {8DE0FCD4-5EB5-11D3-AD25-00002100131B} - c:\HAPPYH~1\XDict\IEPlugin.dll
O9 - Extra button: 金山词霸 - {C8CE29C5-7589-11D3-B81B-0080C8DC5DC8} - c:\HAPPYH~1\XDict\IEPlugin.dll
O9 - Extra button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\工具\QQ2005\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - D:\工具\QQ2005\QQ.EXE
O9 - Extra button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\工具\QQ2005\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - D:\工具\QQ2005\QQIEHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\kvwspxp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\kvwspxp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\kvwspxp.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.legend.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/0597b3ef373f3a4a8c05/netzip/RdxIE601_cn.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1099633330559
O20 - Winlogon Notify: ZGNotify - C:\WINDOWS\MyNotification.dll
O23 - Service: DuDu Accelerator (DuDuProsvc) - DuDu - D:\工具\DUDU\DuDuProsvc.exe
O23 - Service: ewido security suite control - ewido networks - D:\工具\木马克星\security suite\ewidoctrl.exe
O23 - Service: Virtual IR COM Port, Service Program (IrCOMM2kSvc) - Jan Kiszka - C:\WINDOWS\system32\ircomm2k.exe
O23 - Service: KVSrvXP - JiangMin New Tech Ltd. - D:\kv2004\KV2005\KVSrvXP.exe
O23 - Service: KVWSC - Jiangmin Co.Ltd - D:\kv2004\KV2005\kvwsc.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset  - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: TGE CardReader Mgr Host v2 (TGECardReaderMgrHost.2) - Unknown owner - C:\Program Files\联想\联想键盘驱动\TGESrvLogon.exe

最后编辑2005-11-04 14:51:36
分享到:
gototop
 

log没什么问题,
以下两项可以修复一下
O2 - BHO: URLMonitor Class - {3ED9FFDA-79DB-4B2D-99B7-16EA3C4A3A92} - C:\WINDOWS\system32\hap.dll (file missing)
O2 - BHO: DownloadValue Class - {616D4040-5712-4F0F-BCF1-5C6420A99E14} - C:\WINDOWS\system32\winhtp.dll (file missing)
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT