HijackThis_815汉化版扫描日志 V1.99.1
保存于 19:18:00, 日期 2006-7-31
操作系统: Windows XP SP2 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP2 (6.00.2900.2180)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
D:\Program Files\瑞星杀毒\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
D:\Program Files\瑞星杀毒\Rising\Rav\Ravmond.exe
d:\program files\瑞星杀毒\防火墙\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\瑞星杀毒\Rising\Rav\RavStub.exe
d:\program files\瑞星杀毒\防火墙\RfwMain.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\Program Files\瑞星杀毒\Rising\Rav\RavTask.exe
D:\Program Files\瑞星杀毒\Rising\Rav\Ravmon.exe
D:\Program Files\Gmail邮件通知\Gmail Notifier\G001-1.0.25.0\gnotify.exe
D:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
D:\Program Files\暴风影音\Storm Downloader\StormDownloader.exe
D:\PROGRA~1\MMT\TraCQ\TraCQ.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\Program Files\PowerDVD\PDVDServ.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
D:\Program Files\雪狐精灵\DesktopSprite2\DesktopSprite.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Thunder Network\ThunderMini\program\ThunderMini.exe
D:\Program Files\MSN\MsnShell4.2.27.8\MSNShell\BIN\MSNShell.exe
D:\Program Files\Tencent\TT\TTraveler.exe
D:\李晓明\软件\专杀工具\Hijackthis1991zww\HijackThis1991zww.exe
R3 - URLSearchHook: (no name) - {2E30E260-B3FA-4BA8-AF84-857381298676} - C:\WINDOWS\system32\Cgagrw.dll (file missing)
R3 - URLSearchHook: (no name) - {7D5D55BA-4907-4CF7-A817-B1F3321D8718} - C:\WINDOWS\system32\Flls.dll (file missing)
R3 - URLSearchHook: (no name) - {C5B45697-EFE5-45C3-AD48-8B2DDAAFF9BD} - C:\WINDOWS\system32\Wmpcm.dll (file missing)
R3 - URLSearchHook: (no name) - {B979CED4-38C3-4A44-B9EE-A518C91C58B4} - C:\WINDOWS\system32\Qftch.dll (file missing)
R3 - URLSearchHook: (no name) - {07BA43B9-BE6D-44FF-B2B9-B793E3700C6E} - C:\WINDOWS\system32\Eqwd.dll (file missing)
R3 - URLSearchHook: (no name) - {41B730D5-D2E8-4E2A-A09E-68224027BA53} - C:\WINDOWS\system32\Hoyr.dll (file missing)
R3 - URLSearchHook: (no name) - {B7CD83E9-8465-4302-8A81-53D5B8551670} - C:\WINDOWS\system32\Wvtcj.dll (file missing)
R3 - URLSearchHook: (no name) - {967FCCE0-6AEE-48E2-A314-AF84B64A29DC} - C:\WINDOWS\system32\Dmaqs.dll (file missing)
R3 - URLSearchHook: (no name) - {C2095504-7A13-41AB-8146-852715D64AED} - C:\WINDOWS\system32\Jkak.dll (file missing)
R3 - URLSearchHook: (no name) - {C91773F0-8AF6-498D-BDED-E8D39AFBDACA} - C:\WINDOWS\system32\Lrzzi.dll
R3 - URLSearchHook: (no name) - {D67EE44B-F3FB-4AB4-963D-B8D5D6E73D4F} - C:\WINDOWS\system32\Mqivuj.dll
R3 - URLSearchHook: (no name) - {FBBBC45F-36AF-480E-B462-8EE2F426E0C7} - C:\WINDOWS\system32\Mnxjtn.dll
R3 - URLSearchHook: (no name) - {AB5DB088-C805-4CF6-ABD5-B47B1039E74D} - C:\WINDOWS\system32\Aerh.dll
R3 - URLSearchHook: (no name) - {2ECF0357-B3AE-4B89-A338-A749AE252686} - C:\WINDOWS\system32\Larrqn.dll
R3 - URLSearchHook: (no name) - {FB561AD3-8DFA-4C2A-833C-471AB03A9AE5} - C:\WINDOWS\system32\Kndmfg.dll
R3 - URLSearchHook: (no name) - {67F214A2-7F70-484A-95B1-A5B467B67763} - C:\WINDOWS\system32\Euhe.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ThunderIEHelper Class - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v4.dll
O2 - BHO: (no name) - {07BA43B9-BE6D-44FF-B2B9-B793E3700C6E} - C:\WINDOWS\system32\Eqwd.dll (file missing)
O2 - BHO: (no name) - {2E30E260-B3FA-4BA8-AF84-857381298676} - C:\WINDOWS\system32\Cgagrw.dll (file missing)
O2 - BHO: (no name) - {2ECF0357-B3AE-4B89-A338-A749AE252686} - C:\WINDOWS\system32\Larrqn.dll
O2 - BHO: (no name) - {41B730D5-D2E8-4E2A-A09E-68224027BA53} - C:\WINDOWS\system32\Hoyr.dll (file missing)
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - D:\Program Files\Tencent\QQ\QQIEHelper.dll
O2 - BHO: (no name) - {67F214A2-7F70-484A-95B1-A5B467B67763} - C:\WINDOWS\system32\Euhe.dll
O2 - BHO: BandIE Class - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\baidubar.dll
O2 - BHO: (no name) - {7D5D55BA-4907-4CF7-A817-B1F3321D8718} - C:\WINDOWS\system32\Flls.dll (file missing)
O2 - BHO: ThunderMiniBHO - {8E6C1C49-F9CE-4311-9FB4-D70E8B0AEAEB} - C:\Program Files\Thunder Network\ThunderMini\ComDlls\XunLeiMiniBHO_002.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {967FCCE0-6AEE-48E2-A314-AF84B64A29DC} - C:\WINDOWS\system32\Dmaqs.dll (file missing)
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - D:\PROGRA~1\flashget\FLASHGET\jccatch.dll
O2 - BHO: (no name) - {AB5DB088-C805-4CF6-ABD5-B47B1039E74D} - C:\WINDOWS\system32\Aerh.dll
O2 - BHO: (no name) - {B7CD83E9-8465-4302-8A81-53D5B8551670} - C:\WINDOWS\system32\Wvtcj.dll (file missing)
O2 - BHO: (no name) - {B979CED4-38C3-4A44-B9EE-A518C91C58B4} - C:\WINDOWS\system32\Qftch.dll (file missing)
O2 - BHO: (no name) - {C2095504-7A13-41AB-8146-852715D64AED} - C:\WINDOWS\system32\Jkak.dll (file missing)
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:\Program Files\Xi\NetTransport 2\NTIEHelper.dll
O2 - BHO: (no name) - {C5B45697-EFE5-45C3-AD48-8B2DDAAFF9BD} - C:\WINDOWS\system32\Wmpcm.dll (file missing)
O2 - BHO: (no name) - {C91773F0-8AF6-498D-BDED-E8D39AFBDACA} - C:\WINDOWS\system32\Lrzzi.dll
O2 - BHO: (no name) - {D67EE44B-F3FB-4AB4-963D-B8D5D6E73D4F} - C:\WINDOWS\system32\Mqivuj.dll
O2 - BHO: (no name) - {FB561AD3-8DFA-4C2A-833C-471AB03A9AE5} - C:\WINDOWS\system32\Kndmfg.dll
O2 - BHO: (no name) - {FBBBC45F-36AF-480E-B462-8EE2F426E0C7} - C:\WINDOWS\system32\Mnxjtn.dll
O3 - IE工具栏增项: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\flashget\FLASHGET\fgiebar.dll
O3 - IE工具栏增项: 百度超级搜霸 - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\baidubar.dll
O4 - 启动项HKLM\\Run: [nwiz] nwiz.exe /install
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 启动项HKLM\\Run: [RfwMain] "D:\Program Files\瑞星杀毒\防火墙\rfwmain.exe" -Startup
O4 - 启动项HKLM\\Run: [RavTask] "D:\Program Files\瑞星杀毒\Rising\Rav\RavTask.exe" -system
O4 - 启动项HKLM\\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Gmail邮件通知\Gmail Notifier\G001-1.0.25.0\gnotify.exe
O4 - 启动项HKLM\\Run: [iTunesHelper] "d:\Program Files\iTunes\iTunesHelper.exe"
O4 - 启动项HKLM\\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - 启动项HKLM\\Run: [StormCodec_Helper] "D:\Program Files\暴风影音\Storm Codec\StormSet.exe" /S /opti
O4 - 启动项HKLM\\Run: [MINI_BFYY] D:\Program Files\暴风影音\Storm Downloader\StormDownloader.exe
O4 - 启动项HKLM\\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - 启动项HKLM\\Run: [EPSON ME 1] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3W1.EXE /P10 "EPSON ME 1" /O6 "USB001" /M "ME 1"
O4 - 启动项HKLM\\Run: [tracq] D:\PROGRA~1\MMT\TraCQ\TraCQ.exe
O4 - 启动项HKLM\\Run: [RemoteControl] "D:\Program Files\PowerDVD\PDVDServ.exe"
O4 - 启动项HKLM\\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup