hijackthis日志
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\VeriSign\NAVI\naviagent.exe
C:\Program Files\Rising\Rav\RavService.exe
C:\WINDOWS\System32\Rundll32.exe
C:\PROGRA~1\VeriSign\NAVI\NAVICL~1.EXE
C:\Program Files\Rising\Rav\CCenter.exe
C:\Program Files\Rising\Rav\RavMonD.exe
C:\Program Files\System Safety Monitor\SSMService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\Program Files\System Safety Monitor\sysSafe.exe
D:\Program Files\VMware\VMware Workstation\vmware-authd.exe
C:\WINDOWS\System32\vmnat.exe
C:\WINDOWS\System32\vmnetdhcp.exe
C:\Program Files\D-Tools\daemon.exe
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\VM_STI.EXE
C:\Herosoft\HeroV8\SysExplr.EXE
C:\Program Files\Rising\Rav\RavTray.exe
C:\Program Files\Rising\Rav\RavMon.exe
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
C:\WINDOWS\System32\inetsrv\DavCData.exe
C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\ctfmon.exe
D:\Program Files\Tencent\qq\QQ.exe
C:\Program Files\Netease\popo2004\popo.exe
C:\Program Files\Tencent\QQ\TIMPlatform.exe
D:\Program Files\Tencent\qq\QQMail.exe
C:\WINDOWS\System32\cidaemon.exe
D:\Program Files\FlashFXP\FlashFXP.exe
C:\WINDOWS\System32\cidaemon.exe
c:\program files\rising\rav\RavTimer.exe
D:\Program Files\FlashFXP\FlashFXP.exe
C:\WINDOWS\System32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe
C:\Documents and Settings\All Users\Documents\software\HijaclThis是一个非常优秀的辅助杀毒小软件,对于恶意网页代码尤其有效!\新建文件夹\HijackThis.exe