瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 病毒wn.exe,首页无法修改,烦请好心人帮助!(有日志)

12   1  /  2  页   跳转

病毒wn.exe,首页无法修改,烦请好心人帮助!(有日志)

病毒wn.exe,首页无法修改,烦请好心人帮助!(有日志)

首页总是ooooos.com,现在开机有时都不行,急死人了。恳请高手相助,非常感谢!
电脑装的东西有点多,如果有其它问题也请赐教!

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\System32\ctfmon.exe>  [(Verified)Microsoft Corporation]
    <Yahoo! Pager><C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet>  [Yahoo! Inc.]
    <RealPlayer><"C:\Program Files\Real\RealOne Player\realplay.exe" /RunUPGToolCommandReBoot>  [RealNetworks, Inc.]
    <PcSync><C:\Nokia\PC 套件\Nokia PC Suite 6\PcSync2.exe /NoDialog>  [Time Information Services Ltd.]
    <pit><C:\WINDOWS\SVCHOST.EXE>  [N/A]
    <shell><"C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe">  [N/A]
    <updatereal><C:\WINDOWS\realupdate.exe other>  [N/A]
    <msnnt><C:\WINDOWS\winamph.exe>  []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <{04716C4D-04A9-2052-0708-020213200056}><"C:\Program Files\Common Files\{04716C4D-04A9-2052-0708-020213200056}\Update.exe" te-110-12-0000057>  [N/A]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><C:\WINDOWS\system\tpkIM32.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <IMJPMIG8.1><C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Corporation]
    <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Corporation]
    <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Corporation]
    <Mouse Suite 98 Daemon><ICO.EXE>  [N/A]
    <HKSERV.EXE><C:\Program Files\Sony\HotKey Utility\HKserv.exe>  [Sony Corporation]
    <JOGSERV2.EXE><C:\Program Files\Sony\Jog Dial Navigator\JogServ2.exe>  [Sony Corporation]
    <TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot>  [RealNetworks, Inc.]
    <RavTimeXP><C:\WINDOWS\WEB\FD.exe>  [N/A]
    <system><C:\WINDOWS\system....exe>  [N/A]
    <PCSuiteTrayApplication><C:\Nokia\PC套件~1\NOKIAP~1\LAUNCH~1.EXE -onlytray>  [Nokia]
    <QuickTime Task><"C:\Program Files\QuickTime\qttask.exe" -atboottime>  [Apple Computer, Inc.]
    <D-Link AirPlus G><C:\Program Files\D-Link\AirPlus G\AirGCFG.exe>  [D-Link]
    <ANIWZCS2Service><C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe>  [Alpha Networks Inc.]
    <autolog><>  [N/A]
    <RavTask><"C:\Program Files\rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <HPDJ Taskbar Utility><C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe>  [(Verified)HP]
    <HP Software Update><"C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe">  [Hewlett-Packard]
    <HP Component Manager><"C:\Program Files\HP\hpcoretech\hpcmpmgr.exe">  [Hewlett-Packard Company]
    <DeviceDiscovery><C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe>  [Hewlett-Packard]
    <CdnCtr><C:\Program Files\CNNIC\Cdn\cdnup.exe>  [N/A]
    <Desktop><C:\WINDOWS\System32\rundll32.exe "C:\Program Files\DeskAdTop\Run.dll" ,Rundll>  [N/A]
    <spoolsv><C:\WINDOWS\System32\spoolsv\spoolsv.exe -printer>  [广州傲讯信息科技有限公司]
    <winla><c:\winla\winla.exe>  []
    <wdfmgr32><C:\WINDOWS\System32\wdfmgr32.exe>  [N/A]
    <SOUNDM><winsmd.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    <Chfa><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <KernelFaultCheck><C:\WINDOWS\winabc3.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Corporation]
    <Userinit><userinit.exe,>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><350217M.BMP>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{B83FC273-3522-4CC6-92EC-75CC86678DA4}><>  [N/A]
    <{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll>  [Beijing Rising Technology Co., Ltd.]
    <{993B960F-A6FF-11E0-9A84-00C04FD8DBD8}><C:\WINDOWS\System32\h93b960f.log>  [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
最后编辑2006-11-02 17:02:34
分享到:
gototop
 

<QQHelper><C:\WINDOWS\Downloaded Program Files\jvm.dll>  [N/A]

==================================
启动文件夹
N/A

==================================
服务
[Human Interface Device Access / HidServ]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[IMAPI CD-Burning COM Service / ImapiService]
  <C:\WINDOWS\system32\imapi.exe><Microsoft Corporation>
[Network Logons / NetWorkLogons]
  <rundll32.exe KB27861012.log,start><Microsoft Corporation>
[Rising Process Communication Center / RsCCenter]
  <"C:\Program Files\rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
  <"C:\Program Files\rising\Rav\Ravmond.exe"><N/A>
[Distributed Link Tracking Server / TrkWks]
  <C:\WINDOWS\system32\svchost.exe -k netsvsc-->%SystemRoot%\system32\est.dll><Microsoft Corporation>
[Portable Media Serial Number Service / WmdmPmSN]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\System32\mspmsnsv.dll><Microsoft Corporation>
[MRTServ / MRTServ]
  <C:\WINDOWS\System32\MRTServ.exe><Microsoft Corporation>

==================================
驱动程序
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc]
  <system32\drivers\ac97intc.sys><Intel Corporation>
[ANIO Service / ANIO]
  <\??\C:\WINDOWS\System32\ANIO.SYS><Alpha Networks Inc.>
[Rising TDI Base Driver / BaseTDI]
  <System32\DRIVERS\BaseTDI.SYS><Beijing Rising Technology Co., Ltd.>
[cdnprot / cdnprot]
  <\SystemRoot\system32\drivers\cdnprot.sys><中国互联网络信息中心(CNNIC)>
[cdntran / cdntran]
  <system32\drivers\cdntran.sys><CNNIC>
[Sony DMI Call service / DMICall]
  <System32\DRIVERS\DMICall.sys><Sony Corporation>
[Intel(R) PRO Adapter Driver / E100B]
  <System32\DRIVERS\e100b325.sys><Intel Corporation>
[ExpScaner / ExpScaner]
  <\??\C:\Program Files\rising\Rav\ExpScan.sys><>
[Fallback / Fallback]
  <System32\DRIVERS\fallback.sys><Conexant Systems>
[Fsks / Fsks]
  <System32\DRIVERS\fsksnt.sys><Conexant Systems>
[HookCont / HookCont]
  <\??\C:\Program Files\rising\Rav\HOOKCONT.sys><Rising tech Co. ltd>
[HookReg / HookReg]
  <\??\C:\Program Files\rising\Rav\HookReg.sys><>
[HookSys / HookSys]
  <\??\C:\Program Files\rising\Rav\HookSys.sys><Rising>
[ialm / ialm]
  <System32\DRIVERS\ialmnt5.sys><Intel Corporation>
[Ich / Ich]
  <System32\DRIVERS\Ich.sys><Conexant Systems>
[jcicbhgi / jcicbhgi]
  <C:\WINDOWS\SYSTEM32\DRIVERS\jcicbhgi.SYS><中国互联网络信息中心(CNNIC)>
[K56 / K56]
  <System32\DRIVERS\k56nt.sys><Conexant Systems>
[mdmxsdk / mdmxsdk]
  <System32\DRIVERS\mdmxsdk.sys><Conexant>
[MEMSCAN / MEMSCAN]
  <\??\C:\Program Files\rising\Rav\MEMSCAN.sys><瑞星软件有限公司>
[MZU_RK / MZU_RK]
  <\??\C:\WINDOWS\System32\MZU_DRV.sys><N/A>
[Nokia USB Generic / Nokia USB Generic]
  <system32\drivers\nmwcdc.sys><Nokia>
[Nokia USB Modem / Nokia USB Modem]
  <system32\drivers\nmwcdcm.sys><Nokia>
[Nokia USB Phone Parent / Nokia USB Phone Parent]
  <system32\drivers\nmwcd.sys><Nokia>
[nrbtoe9 / nrbtoe98]
  <\SystemRoot\System32\DRIVERS\nrbtoe98.sys><N/A>
[PCANDIS5 Protocol Driver / PCANDIS5]
  <\??\C:\WINDOWS\System32\PCANDIS5.SYS><Printing Communications Assoc., Inc. (PCAUSA)>
[Direct Parallel Link Driver / Ptilink]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Rksample / Rksample]
  <System32\DRIVERS\rksample.sys><Conexant Systems>
[WAN 微型端口 (PPP over Ethernet 协议) / RMSPPPOE]
  <System32\DRIVERS\RMSPPPOE.SYS><Robert Schlabbach>
[DWL-G122(rev.B) USB Wireless LAN Driver / rt2500usb]
  <System32\DRIVERS\rt2500usb.sys><Ralink Technology Inc.>
[Secdrv / Secdrv]
  <System32\DRIVERS\secdrv.sys><N/A>
[Sony Notebook Control Device / SNC]
  <System32\DRIVERS\SonyNC.sys><Sony Corporation>
[SoftFax / SoftFax]
  <System32\DRIVERS\faxnt.sys><Conexant Systems>
[Sony USB Filter Driver (SONYPVU1) / SONYPVU1]
  <System32\DRIVERS\SONYPVU1.SYS><Sony Corporation>
[Sony Programmable I/O Control Device / SPI]
  <System32\DRIVERS\SonyPI.sys><Sony Corporation>
[Tones / Tones]
  <System32\DRIVERS\tonesnt.sys><Conexant Systems>
[V124 / V124]
  <System32\DRIVERS\v124nt.sys><Conexant Systems>
[winachsf / winachsf]
  <System32\DRIVERS\HSF_CNXT.sys><Conexant Systems>
[World Standard Teletext Codec / WSTCODEC]
  <System32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[AIM 3.0 Part 01 Codec Driver VCH-A / {A7E39B01-B403-11d4-BD18-00D0B7A1821E}]
  <system32\drivers\Vch.sys><Intel Corporation>
gototop
 

==================================
浏览器加载项
[]
  {003169BC-AB68-482F-AEA6-B51A47BDDB83} <C:\WINDOWS\system32\ATIDEMGREDEM.dll, N/A>
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[IEMonitor Class]
  {08A312BB-5409-49FC-9347-54BB7D069AC6} <C:\Program Files\DeskAdTop\deskipn.dll, >
[wmpdrm]
  {0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\System32\wmpdrm.dll, Allsum Info. Tech. Ltd.>
[MyIEHelper Class]
  {16B770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\UserData\IEHelper_5025.dll, Microsoft Corporation>
[CdnForIE Class]
  {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[TBSB00889 Class]
  {5C908B42-EB90-44d2-9A01-0881F727F99B} <C:\PROGRA~1\ABOBEF~1\ABOBEF~1.DLL, IE Toolbar>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <E:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[AcroIEToolbarHelper Class]
  {AE7CD045-E861-484f-8273-0445EE161910} <C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll, N/A>
[888Bar]
  {C004DEC2-2623-438e-9CA2-C9043AB28508} <C:\Program Files\Common Files\{34716C4D-04A9-2052-0708-020213200056}\888Bar.dll, N/A>
[IEHlprObj Class]
  {EAACBF9E-4B91-45FF-93ED-B297093951EA} <C:\Program Files\Internet Explorer\PLUGINS\Flash_Player.dll, Adobe System>
[WMHlprObj Class]
  {F5824EFB-728A-4726-A5A5-85A68B20EDC3} <C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll, CNNIC>
[手机短信]
  {00000000-0000-0001-0001-596BAEDD1289} <http://sms.3721.com/ie/index.htm?pid=200, N/A>
[]
  {2499216C-4BA5-11D5-BD9C-000103C116D5} <C:\Program Files\Yahoo!\Common\ylogin.dll, Yahoo! Inc.>
[]
  {4528BBE0-4E08-11D5-AD55-00010333D0AD} <C:\Program Files\Yahoo!\Messenger\yhexbmes1107_2.dll, Yahoo! Inc.>
[Yahoo 1G电邮]
  {507F9113-CD77-4866-BA92-0E86DA3D0B97} <http://cn.mail.yahoo.com/promo/rd1, N/A>
[CdnForIE Class]
  {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} <C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll, CNNIC>
[上网助手]
  {5D73EE86-05F1-49ed-B850-E423120EC338} <http://assistant.3721.com/index.htm?fb=Cns, N/A>
[CibaCtrl Class]
  {8DE0FCD4-5EB5-11D3-AD25-00002100131B} <C:\PROGRA~1\KINGSO~1\Setup\IEPlugin.dll, >
[金山毒霸网站]
  {ABFC18BB-ED0C-425d-9EF4-42624205BBA4} <url:http://www.iduba.net, N/A>
[JoyoCtrl Class]
  {C8CE29C5-7589-11D3-B81B-0080C8DC5DC8} <C:\PROGRA~1\KINGSO~1\Setup\IEPlugin.dll, >
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, N/A>
[FlashGet]
  {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <E:\PROGRA~1\FLASHGET\JETCAR.EXE, Amaze Soft>
[情景聊天]
  {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/, N/A>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\MSMSGS.EXE, Microsoft Corporation>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINDOWS\System32\msdxm.ocx, Microsoft Corporation>
[IE伴郎]
  {B225B89D-5E95-4194-98E8-149993071B31} <C:\PROGRA~1\NETMEE~1\CALLCO~1.DLL, 5522 Soft>
[Adobe PDF]
  {47833539-D0C5-4125-9FA8-0819E2EAAC93} <C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll, N/A>
[888Bar]
  {C004DEC2-2623-438e-9CA2-C9043AB28508} <C:\Program Files\Common Files\{34716C4D-04A9-2052-0708-020213200056}\888Bar.dll, N/A>
[Abobe Flash Play9]
  {BD328E49-38AB-42CB-8EEA-73AA4CD2A6FD} <C:\Program Files\Abobe Flash Play9\Abobe Flash Player 9.dll, IE Toolbar>
[MMCPlayer Class]
  {05C1004E-2596-48E5-8E26-39362985EEB9} <C:\WINDOWS\Downloaded Program Files\MMCShell.dll, Sohu.com Inc.>
[Update Class]
  {9F1C11AA-197B-4942-BA54-47A8489BB47F} <C:\WINDOWS\System32\iuctl.dll, Microsoft Corporation>
[YahooYMailTo Class]
  {A17E30C4-A9BA-11D4-8673-60DB54C10000} <C:\WINDOWS\Downloaded Program Files\ymmapi.dll, Yahoo! Inc.>
[Ppinstall Control]
  {CF051549-EDE1-40F5-B440-BCD646CF2C25} <C:\WINDOWS\DOWNLO~1\PPINST~1.OCX, 网易 NetEase>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash9.ocx, Adobe Systems, Inc.>
[MultiDist]
  {FC87A650-207D-4392-A6A1-82ADBC56FA64} <C:\WINDOWS\DOWNLO~1\MulDist.ocx, N/A>
[使用网际快车下载]
  <E:\Program Files\FlashGet\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <E:\Program Files\FlashGet\jc_all.htm, N/A>
[添加到QQ自定义面板]
  <C:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <C:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
[访问通用网址]
  <C:\Program Files\CNNIC\Cdn\cnnic.htm, N/A>

==================================
正在运行的进程
[PID: 788][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 836][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 864][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 916][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.1_x-ww_8d353f14\gdiplus.dll]  [Microsoft Corporation, 5.1.3100.0 (xpclnt_qfe.010827-1803)]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 928][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1128][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1216][C:\Program Files\rising\Rav\CCenter.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 1240][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\shell32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\System32\winhttp.dll]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1476][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 1512][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1744][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.0 (XPClient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\AdobePDF.dll]  [Adobe Systems Incorporated., 6.0.000]
    [C:\Program Files\Adobe\Acrobat 6.0\Distillr\adistres.dll]  [Adobe Systems Incorporated., 6.0.0.2003051500]
    [C:\WINDOWS\system32\hpzsnt09.dll]  [HP, 2.236.4.0]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
[PID: 1892][C:\Program Files\rising\Rav\RavStub.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 16]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[PID: 360][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
gototop
 

[PID: 388][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [c:\windows\system32\est.dll]  [Microsoft Corporation, 5.2.2600.2180]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
[PID: 1360][C:\Program Files\CNNIC\Cdn\cdnup.exe]  [, 2, 4, 0, 10]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdntdns.dll]  [CNNIC, 2, 2, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 428][C:\Program Files\Sony\HotKey Utility\HKserv.exe]  [Sony Corporation, Version 2.3.00.01301]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Sony\HotKey Utility\HKRes.dll]  [Sony Corporation, Version 2.1.01.08140]
    [C:\Program Files\Common Files\Sony Shared\Jog Dial Utility\JogDial.dll]  [Sony Corporation, 7, 0, 1, 2140]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  [Sony Corporation, 2.4.00.12040]
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  [Sony Corporation, 4.02.8170]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 192][C:\Program Files\Sony\Jog Dial Navigator\JogServ2.exe]  [Sony Corporation, 7, 0, 2, 3050]
    [C:\Program Files\Sony\Jog Dial Navigator\ComCenter.dll]  [Sony Corporation, 1, 0, 1, 2140]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Sony\Jog Dial Navigator\JogLocale.dll]  [Sony, 1, 0, 2, 4050]
    [C:\Program Files\Sony\Jog Dial Navigator\StateMgr.dll]  [Sony Corporation, 1, 0, 2, 4030]
    [C:\Program Files\Sony\Jog Dial Navigator\View.dll]  [Sony Corporation, 1, 0, 2, 4040]
    [C:\Program Files\Sony\Jog Dial Navigator\TrayIcon.dll]  [Sony Corporation, 1, 0, 1, 2140]
    [C:\Program Files\Sony\Jog Dial Navigator\Remocon.dll]  [Sony Corporation, 1, 0, 1, 2260]
    [C:\Program Files\Sony\Jog Dial Navigator\Sound.dll]  [Sony Corporation, 1, 0, 1, 2140]
    [C:\Program Files\Sony\Jog Dial Navigator\Indctr.dll]  [Sony Corporation, 1, 0, 2, 4040]
    [C:\Program Files\Sony\Jog Dial Navigator\Setting.dll]  [Sony Corporation, 1, 0, 2, 3050]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  [Sony Corporation, 2.4.00.12040]
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  [Sony Corporation, 4.02.8170]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 284][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  [RealNetworks, Inc., 0.1.0.1622]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 996][C:\Nokia\PC套件~1\NOKIAP~1\LAUNCH~1.EXE]  [Nokia, 6, 70, 41, 5]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\System32\ConnAPI.DLL]  [Nokia., 6, 70, 39, 5]
    [C:\Nokia\PC套件~1\NOKIAP~1\PCSCM.dll]  [Nokia, 6, 70, 58, 3]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Common Files\PCSuite\ConfServer\ConfServer.dll]  [Nokia, 6, 70, 14, 1]
    [C:\WINDOWS\System32\MSXML4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Nokia\PC套件~1\NOKIAP~1\Lang\LaunchApplication_chi-sc.NLR]  [Nokia, 6, 70, 31, 1]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 1380][C:\Program Files\QuickTime\qttask.exe]  [Apple Computer, Inc., 6.5]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 1404][C:\Program Files\D-Link\AirPlus G\AirGCFG.exe]  [D-Link, 3, 3, 1, 50422]
    [C:\WINDOWS\System32\wlanapi.dll]  [Alpha Networks Inc., 1, 3, 21, 50328]
    [C:\WINDOWS\System32\ANIOApi.dll]  [Alpha Networks Inc., 2, 0, 0, 40127]
    [C:\WINDOWS\System32\AQCKGen.dll]  [Alpha Networks Inc., 1, 0, 0, 30603]
    [C:\WINDOWS\System32\WlanApp.dll]  [Alpha Networks Inc., 1, 0, 10, 50322]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\D-Link\AirPlus G\WlanMon.dll]  [D-Link, 3, 3, 1, 50324]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2076][C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE]  [Nokia., 6, 70, 45, 1]
    [C:\WINDOWS\system32\NclTools.dll]  [Nokia., 6, 70, 12, 0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLIrDAMM.dll]  [Nokia Corp., 6, 70, 20, 1]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLRSMM.dll]  [Nokia, 6, 70, 30, 0]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLUSBMM.dll]  [Nokia, 6, 70, 32, 1]
    [C:\Program Files\Common Files\PCSuite\Services\NclDS.dll]  [Nokia, 6, 70, 9, 0]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2264][C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe]  [Alpha Networks Inc., 1, 0, 6, 41216]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\ANIWZCS2.DLL]  [Alpha Networks Inc., 2, 4, 14, 50421]
    [C:\WINDOWS\System32\AQCKGen.dll]  [Alpha Networks Inc., 1, 0, 0, 30603]
    [C:\WINDOWS\System32\ANIOApi.dll]  [Alpha Networks Inc., 2, 0, 0, 40127]
    [C:\WINDOWS\System32\WlanApp.dll]  [Alpha Networks Inc., 1, 0, 10, 50322]
    [C:\WINDOWS\System32\wlanapi.dll]  [Alpha Networks Inc., 1, 3, 21, 50328]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2320][C:\Program Files\rising\Rav\RavTask.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 22]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [C:\Program Files\rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 11]
    [C:\Program Files\rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
gototop
 

[PID: 2364][C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe]  [HP, 2.236.4.0]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\spool\drivers\w32x86\3\HPZR3209.dll]  [HP, 2.236.4.0]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2380][C:\Program Files\rising\Rav\Ravmon.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 1, 33]
    [C:\Program Files\rising\Rav\RsGuiLib.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 26]
    [C:\Program Files\rising\Rav\BWList.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 19]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\rising\Rav\RSAPPMGR.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
    [C:\Program Files\rising\Rav\CfgDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 11]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\Program Files\rising\Rav\PngDll.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2396][C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe]  [Hewlett-Packard, 1, 0, 0, 2]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2424][C:\Program Files\HP\hpcoretech\hpcmpmgr.exe]  [Hewlett-Packard Company, 2.1.1]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\HP\hpcoretech\HPVCR70.dll]  [Microsoft Corporation, 7.00.9466.0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\WINDOWS\System32\MSXML4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2456][C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe]  [Hewlett-Packard, 1, 0, 0, 1]
    [C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpodvd08.dll]  [Hewlett-Packard, 2, 0, 2, 2]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxm08.dll]  [Hewlett-Packard Co., 4.2.0.127]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2564][C:\WINDOWS\System32\rundll32.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\Run.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\Macromed\Flash\Flash9.ocx]  [Adobe Systems, Inc., 9,0,16,0]
[PID: 2636][C:\WINDOWS\command\rundll32.exe]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\c99xop.dll]  [N/A, N/A]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 3140][C:\WINDOWS\System32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
[PID: 3312][C:\Nokia\PC 套件\Nokia PC Suite 6\PcSync2.exe]  [Time Information Services Ltd., 2.00 (467)]
    [C:\Nokia\PC 套件\Nokia PC Suite 6\PCSCM.dll]  [Nokia, 6, 70, 58, 3]
    [C:\WINDOWS\System32\ConnAPI.DLL]  [Nokia., 6, 70, 39, 5]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Nokia\PC 套件\Nokia PC Suite 6\PCSL.dll]  [Nokia, 6, 70, 4, 0]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\NOKIA\PC 套件\NOKIA PC SUITE 6\Lang\PcSync2_chi-sc.nlr]  [Time Information Services Ltd., 8.00 (467)]
    [C:\NOKIA\PC 套件\NOKIA PC SUITE 6\Resource\PcSync2_Nokia.ngr]  [Time Information Services Ltd., 8.00 (467)]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Common Files\Nokia\Adapters\NclSet.dll]  [Nokia, 6.70.9.0]
    [C:\Program Files\Common Files\Nokia\Adapters\Nclaeo.dsc]  [Nokia Mobile Phones Ltd., 4.00.008]
    [C:\Program Files\Common Files\Nokia\MPAPI\MPAPIps.dll]  [Nokia Corporation, 6.70.73.0]
    [C:\Program Files\Common Files\PCSuite\ConfServer\ConfServer.dll]  [Nokia, 6, 70, 14, 1]
    [C:\WINDOWS\System32\MSXML4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Nokia\PC 套件\Nokia PC Suite 6\CommonSelectDevice.dll]  [Nokia, 6, 70, 65, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
gototop
 

[PID: 3368][C:\WINDOWS\SVCHOST.EXE]  [N/A, N/A]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\krnln.fnr]  [, 1, 0, 0, 1]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\shell.fne]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\shellEx.fne]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\EThread.fne]  [N/A, N/A]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\internet.fne]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\MyLib.fne]  [, 1, 0, 0, 1]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 3520][C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe]  [N/A, N/A]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Yahoo!\Messenger\res_msgr.dll]  [Yahoo! Inc., 4, 0, 0, 961]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 4024][C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe]  [Nokia Corporation, 6.70.161.0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\Common Files\Nokia\MPAPI\MPAPIps.dll]  [Nokia Corporation, 6.70.73.0]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 3924][C:\WINDOWS\System32\conime.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
[PID: 2436][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Common Files\Microsoft Shared\MSInfo\ms993b96.dll]  [N/A, N/A]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\WINDOWS\System32\vb5chs.dll]  [Microsoft Corporation, 05.00.4319 (SP2)]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
[PID: 5040][C:\WINDOWS\System32\MRTServ.exe]  [Microsoft Corporation, 1.18.1507.0]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
[PID: 4092][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\WINDOW~3\wmpband.dll]  [Microsoft Corporation, 9.00.00.2980]
    [C:\WINDOWS\Downloaded Program Files\ymmapi.dll]  [Yahoo! Inc., 2001, 11, 14, 1]
    [C:\Program Files\Adobe\Acrobat 6.0\Acrobat Elements\ContextMenu.dll]  [Adobe Systems Inc., 1.0.0.2003051500]
    [C:\WINDOWS\Downloaded Program Files\jar1.4.2.dll]  [N/A, N/A]
    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 21]
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [C:\WINDOWS\System32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\as.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\bm.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\bse.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\lup.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\msicn\plugins\navangel.dll]  [广州傲讯信息科技有限公司, 2, 0, 0, 1]
    [C:\WINDOWS\System32\h93b960f.log]  [N/A, N/A]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
    [E:\PROGRA~1\FLASHGET\jccatch.dll]  [Amaze Soft, 1, 1, 3, 0]
    [C:\Program Files\rising\Rav\RavScrCh.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[PID: 3500][C:\Documents and Settings\viviantxy\桌面\sreng2\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2600.0000 (xpclient.010817-1148)]
    [C:\WINDOWS\350217M.BMP]  [N/A, N/A]
    [C:\Program Files\Sony\Jog Dial Navigator\WMHook.dll]  [Sony Corporation, 3, 9, 1, 2140]
    [C:\Program Files\CNNIC\Cdn\imaoe.dll]  [CNNIC, 2, 2, 0, 1]
    [C:\Program Files\CNNIC\Cdn\cdnforie.dll]  [CNNIC, 2, 0, 0, 6]
    [C:\Program Files\CNNIC\Cdn\cdndet.dll]  [CNNIC, 2, 4, 0, 3]
    [C:\Program Files\993b960f\b1cb2191.dll]  [N/A, N/A]
    [C:\Program Files\DeskAdTop\fshook.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\cdnns.dll]  [CNNIC, 2, 0, 0, 0]
gototop
 

文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
61.135.150.114 www.8000qq.com
61.135.150.114 www.800f.net
61.135.150.114 www.1000sf.cn
61.135.150.114 jfengsha.comfb
61.135.150.114 www.1000yf.net
61.135.150.114 www.159sifu.com
61.135.150.114 www.9s5.cn
61.135.150.114 www.spbuy.net
61.135.150.114 www.wym.cn
61.135.150.114 www.cc4f.cn
61.135.150.114 mafan.net
61.135.150.114 www.6688qn.net
61.135.150.114 www.177z.com
61.135.150.114 www.131sf.net
61.135.150.114 tj.cntg.cn
61.135.150.114 www.spbuy.net
61.135.150.114 www.china45.net
61.135.150.114 www.ok22.com
61.135.150.114 www.17mi.net
61.135.150.114 www.sf8.com.cn
61.135.150.114 www.13177.com
61.135.150.114 ip94.fd4f.com
61.135.150.114 www.521it.net
61.135.150.114 www.ytdj.cn
61.135.150.114 www.fwoool.cn
61.135.150.114 www.5u37.net
61.135.150.114 www.87sf.com
61.135.150.114 ww1.swoool.com
61.135.150.114 wooljsz.cn
61.135.150.114 www.57wool.com
61.135.150.114 www.58816.com
61.135.150.114 www.spbuy.net
61.135.150.114 chuanqisjsf.blwool.com
61.135.150.114 www.woool188.com
61.135.150.114 www.sf1260.com
61.135.150.114 linf23.b12.cnwg.cn
61.135.150.114 www.wooolweb.com
61.135.150.114 www.yq520.net
61.135.150.114 www.cs222.com
61.135.150.114 www.ok22.com
61.135.150.114 www.7100sf.com
61.135.150.114 www.1352sf.com
61.135.150.114 www.458wool.cn
61.135.150.114 www.555woool.cn
61.135.150.114 www.kaosf.com
61.135.150.114 www.siyuwl.com
61.135.150.114 www.csjsz.cn
61.135.150.114 www.13177.com
61.135.150.114 www.458cs.com
61.135.150.114 www.5573.com
61.135.150.114 www.02945.com
61.135.150.114 www.pkchina.net
61.135.150.114 www.5181314.com
61.135.150.114 www.fknf2.com
61.135.150.114 www2.yoursf.com
61.135.150.114 www.paocs.com
61.135.150.114 www.sfboke.com
61.135.150.114 www.tt878.com
61.135.150.114 ww1.woool188.com
61.135.150.114 www.cs119.com
61.135.150.114 www.xdwoool.net
61.135.150.114 www.tt515.com
61.135.150.114 www.cs176.com
61.135.150.114 www.552sf.com
61.135.150.114 www.ipmir.com
61.135.150.114 www.898woool.com
61.135.150.114 www.qqks.com
61.135.150.114 www.368idc.com
61.135.150.114 www.csbaba.com
61.135.150.114 www.4745.cn
61.135.150.114 www.636400.com
61.135.150.114 www.oursf.cn
61.135.150.114 www.laiba173.com
61.135.150.114 www.14455.com
61.135.150.114 www.zheshan.net
61.135.150.114 zt.aaaaasf.cn
61.135.150.114 www.zt1314.cn
61.135.150.114 www.zt4f.net
61.135.150.114 www.zt002.com
61.135.150.114 www.amir3.com
61.135.150.114 www.sf1717.com
61.135.150.114 www.cq333.cn
61.135.150.114 www.3316.cn
61.135.150.114 www.sosmir3.com
61.135.150.114 www.95279.com
61.135.150.114 www.sf1788.com
61.135.150.114 www.4fboss.com
61.135.150.114 www.45net.net
61.135.150.114 www.ytdj.cn
61.135.150.114 www.laiba173.com
61.135.150.114 www.wow1314.com
61.135.150.114 www.zgwow.com
61.135.150.114 www.1000wow.net
61.135.150.114 www.gowowsf.com
61.135.150.114 www.wowsf.com
61.135.150.114 www.wxwow.com
61.135.150.114 520.xinwow.com
61.135.150.114 www.wowhelp.cn
61.135.150.114 www.800wow.com
61.135.150.114 www.56wow.com
61.135.150.114 www.45wow.com
61.135.150.114 www.sfhao123.net
61.135.150.114 www.lian2.cn
61.135.150.114 www.14455.com
61.135.150.114 www.sfgoogle.cn
61.135.150.114 www.45top.com
61.135.150.114 www.915mu.com
61.135.150.114 www.gm911.net
61.135.150.114 www.4000mu.com
61.135.150.114 www.99musf.com
61.135.150.114 www.mu45.com
61.135.150.114 www.369mu.com
61.135.150.114 www.525sf.com
61.135.150.114 www.2345w.com
61.135.150.114 www.3jsf.net
61.135.150.114 www.ttfsf.com
61.135.150.114 www.521ee.com
61.135.150.114 www.997j.com
61.135.150.114 www.wz4f.net
61.135.150.114 www.hott2.com
61.135.150.114 www.398q.com
61.135.150.114 www.tt1314.com
61.135.150.114 www.tt2sf.net
61.135.150.114 www.sifu114.com
61.135.150.114 www.2z2.cn
61.135.150.114 www.haosf.com
61.135.150.114 www.cqsf999.com
61.135.150.114 www.zhaosf.com
61.135.150.114 www.920666.com
61.135.150.114 www.450666.com
61.135.150.114 www.3000ok.com
61.135.150.114 www.3000ok.net
61.135.150.114 www.sf001.com
61.135.150.114 www.92045.com
61.135.150.114 www.45bang.com
61.135.150.114 www.30ok.com
61.135.150.114 www.cqsf999.com
61.135.150.114 www.sf123.com
61.135.150.114 www.sf920.com
61.135.150.114 www.99945.com
61.135.150.114 www.176sf.com
61.135.150.114 www.mir2mir2.com
61.135.150.114 www.33520.com
61.135.150.114 www.xp13.com
61.135.150.114 www.45yes.com
61.135.150.114 www.920666.com
61.135.150.114 www.450666.com
61.135.150.114 www.92095.com
61.135.150.114 www.17ww.com
61.135.150.114 www.4000sf.com
61.135.150.114 www.haouc.com
61.135.150.114 www.921uc.com
61.135.150.114 17126.uc999.com
61.135.150.114 www.45pao.com
61.135.150.114 www.177g.com
61.135.150.114 www.95217.com
61.135.150.114 www.2345sf.com
gototop
 

请求帮助!自己顶!
gototop
 

重新启动电脑,自动检测完后, 按[F8]键(可以一直按到启动菜单出来为止), 选择安全模式(Safe Mode)进入Windows。)

运行(双击)SRENG2,点“启动项目,服务,点“驱动程序”
勾选“隐藏已认证的微软项目”选中病毒服务MZU_RK ,选择“删除服务”
点“设置”选择“否”


运行(双击)SRENG2,点“启动项目,服务,点“Win32服务应用程序”
勾选“隐藏微软服务”选中病毒服务Network Logons ,选择“删除服务”
点“设置”选择“否”

关闭所有浏览窗口以及一些不必要的程序
运行SREng2,使用“启动项目”--注册表--选中以下的项删除
C:\WINDOWS\SVCHOST.EXE
"C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"> [N/A]
C:\WINDOWS\realupdate.exe other
C:\WINDOWS\winamph.exe>
C:\Program Files\Common Files\{04716C4D-04A9-2052-0708-020213200056}\Update.exe" te-110-12-0000057
C:\WINDOWS\system\tpkIM32.exe
C:\WINDOWS\WEB\FD.exe
C:\WINDOWS\system....exe
c:\winla\winla.exe
C:\WINDOWS\System32\wdfmgr32.exe
<SOUNDM><winsmd.exe
C:\WINDOWS\winabc3.exe
C:\WINDOWS\System32\h93b960f.log
C:\WINDOWS\Downloaded Program Files\jvm.dll

运行SREng2,使用:系统修复--浏览器加载项--选中以下的项删除
C:\WINDOWS\system32\ATIDEMGREDEM.dll
C:\Program Files\DeskAdTop\deskipn.dll
C:\Documents and Settings\All Users\Application Data\Microsoft\UserData\IEHelper_5025.dll, Microsoft Corporation>
C:\PROGRA~1\ABOBEF~1\ABOBEF~1.DLL
C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll

编辑这个值数据:
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><350217M.BMP>  [N/A]
把“AppInit_DLLs”的值数据修改为空,删除“350217M.BMP”。

在C:\WINDOWS\system32\drivers\etc下,用记事本打开HOSTS文件,将里面的内容清空,
留下这一项:127.0.0.1      localhost,保存




显示隐藏文件
删除:
C:\WINDOWS\System32\MZU_DRV.sys
C:\WINDOWS\System32\DRIVERS\nrbtoe98.sys
C:\WINDOWS\system32\ATIDEMGREDEM.dll
C:\Program Files\DeskAdTop\deskipn.dll
C:\Documents and Settings\All Users\Application Data\Microsoft\UserData\IEHelper_5025.dll, Microsoft Corporation>
C:\PROGRA~1\ABOBEF~1\ABOBEF~1.DLL
C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
C:\WINDOWS\350217M.BMP
C:\Program Files\DeskAdTop\fshook.dll
[C:\Program Files\993b960f\b1cb2191.dll
C:\WINDOWS\SVCHOST.EXE
"C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"> [N/A]
C:\WINDOWS\realupdate.exe other
C:\WINDOWS\winamph.exe>
C:\Program Files\Common Files\{04716C4D-04A9-2052-0708-020213200056}\Update.exe" te-110-12-0000057
C:\WINDOWS\system\tpkIM32.exe
C:\WINDOWS\WEB\FD.exe
C:\WINDOWS\system....exe
c:\winla\winla.exe
C:\WINDOWS\System32\wdfmgr32.exe
<SOUNDM><winsmd.exe
C:\WINDOWS\winabc3.exe
C:\WINDOWS\System32\h93b960f.log
C:\WINDOWS\Downloaded Program Files\jvm.dll
gototop
 

O10 - Unknown file in Winsock LSP: C:\WINDOWS\system32\cdnns.dll
请下载LSPFix和WinsockXPFix这两个软件,
小软件下载
http://free5.ys168.com/?ufwihgu168
  重新启动电脑, 进入安全模式。运行LSPFix.exe,删除:cdnns.dll,如果无法上网,请运行WinsockXPFix,让它修复一下。


C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
这项是正常的

删除
C:\DOCUME~1\VIVIAN~1\LOCALS~1\Temp\E_4\文件夹
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT