瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 请大家看看我的LOG 里面有没有 恶意插件..谢谢...

1   1  /  1  页   跳转

请大家看看我的LOG 里面有没有 恶意插件..谢谢...

请大家看看我的LOG 里面有没有 恶意插件..谢谢...

各位高手,你们好.我最近在进一些网站的时候,不知道怎么回事.总是进不去.(其中就以腾讯的网站尤甚.基本上进一次就要半个小时.还经常无法显示)后来,我看了一下我的插件管理.竟然全部变成启用了..郁闷之后.我自己试着紧用了一些.可是我的水平有限.所以.请大家看看.还有没有什么需要禁用的..我在这里先谢谢你们了 ^_^


Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\PROGRAM FILES\RISING\RAV\RavStub.exe
C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
C:\PROGRA~1\RISING\RAV\RAVMON.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
E:\qitaanzhuangdi\qq\QQ.exe
E:\qitaanzhuangdi\qq\TIMPlatform.exe
E:\qitaanzhuangdi\qq\qqpet\qqpet.exe
E:\qita\hijackthis1.97_qoo\HijackThis.exe


O2 - BHO: (no name) - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v5.dll
O2 - BHO: (no name) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - E:\anzhuangdi\snagit\SnagItBHO.dll
O2 - BHO: (no name) - {3D898C55-74CC-4B7C-B5F1-45913F368388} - C:\WINDOWS\system32\mewin.dll (file missing)
O2 - BHO: (no name) - {3ED9FFDA-79DB-4B2D-99B7-16EA3C4A3A92} - C:\WINDOWS\system32\hap.dll
O2 - BHO: (no name) - {616D4040-5712-4F0F-BCF1-5C6420A99E14} - C:\WINDOWS\system32\winhtp.dll
O2 - BHO: (no name) - {6BDE1669-B490-48E3-B668-456314F2D6C3} - C:\Program Files\DuDu\DddClient\dddiemon.dll (file missing)
O2 - BHO: (no name) - {78C21EFD-53BA-406C-AF1A-33A38ABD3958} - C:\Program Files\LtUcx\1002\c0.dll
O2 - BHO: (no name) - {A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E} - C:\Program Files\Common Files\justDo\Jd2002.dll
O2 - BHO: (no name) - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - E:\anzhuangd\NetTransport 2\NTIEHelper.dll
O2 - BHO: (no name) - {F236CC5A-F6E4-4011-9EED-C52FDF51CE3D} - C:\WINDOWS\system32\Sbhoplin.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - E:\ANZHUA~2\FLASHGET\fgiebar.dll
O3 - Toolbar: (no name) - {6C3797D2-3FEF-4cd4-B654-D3AE55B4128C} - (no file)
O3 - Toolbar: ????? - {F43BD772-ABDD-43b7-A96A-3E9E61946EC0} - C:\WINDOWS\WORLD2\TOOLBAR\hmtoolbar.dll
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - E:\anzhuangdi\snagit\SnagItIEAddin.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
O4 - HKLM\..\Run: [RavTimer] C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
O4 - HKLM\..\Run: [SKYNET Personal FireWall] C:\Program Files\SkyNet\FireWall\PFW.EXE
O4 - HKLM\..\Run: [RavMon] C:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
O4 - HKLM\..\Run: [迅雷4] E:\qitaanzhuangdi\xunlei\TDUpdate.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [winup] C:\WINDOWS\system32\winup.exe
O4 - Startup: ntuser.dat
O4 - Startup: ntuser.dat.LOG
O4 - Startup: ntuser.ini

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present



O9 - Extra button: Flash Catcher (HKLM)
O9 - Extra 'Tools' menuitem: Flash Catcher (HKLM)
O9 - Extra button: QQ (HKLM)
O9 - Extra button: FlashGet (HKLM)
O9 - Extra 'Tools' menuitem: &FlashGet (HKLM)
O9 - Extra button: D.S.Lite (HKLM)
O9 - Extra 'Tools' menuitem: &D.S.Lite (HKLM)
O16 - DPF: {0065FF33-9CBC-4D39-898E-E2E8F61DAF7C} (ActiveFormX Control) - file://C:\Documents and Settings\aa\Local

Settings\Temp\Rar$EX09.125\www1110\webexplorer.ocx
O16 - DPF: {0400AC1C-EEF0-4638-A501-31D5A0DC2002} (VTPlug3 Class) - http://61.152.160.50:1995/VTrans.cab
O16 - DPF: {1C960AA3-FAEE-11D0-9262-00A0243D2412} (TegoSoft SmartLoader ActiveX Control) -

http://web.cy07.com/ActiveX/TegoLoad.cab
O16 - DPF: {2E28242B-A689-11D4-80F2-0040266CBB8D} (KX-HCM10 Control) - http://lobby.yumemisaki.co.jp:8080/kxhcm10.ocx
O16 - DPF: {3359C0B1-2363-40B3-AFCA-1ABC799AC486} - http://reg.ssreader.com/ssreaderplug.ocx
O16 - DPF: {58CDB34C-B4D7-418B-A0FB-C4C8A01C2F0E} - http://pi2.51.net/download/diybar.cab
O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) - http://61.152.160.50:1995/talk.cab
O16 - DPF: {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} (AxInputControl Class) -

https://mybank.icbc.com.cn/icbc/perbank/AxSafeControls.cab
O16 - DPF: {BCA9A936-F557-408E-8301-D5B2B302EFD6} (SiUpdaterCtrl Class) -

http://web.spaceillusion.com/help/iDanceUpdater1013.cab
O16 - DPF: {DA984A6D-508E-11D6-AA49-0050FF3C628D} (Ravonline) - http://download.rising.com.cn/ravkill/rsonline.cab
O16 - DPF: {E2F9D054-D2B5-4CE8-9BDF-8BF3A81DB7E9} (ProductIDGatherer.WindowsGatherer) -

http://download.microsoft.com/download/a/3/7/a377aea1-7b14-4fa1-933c-43e657b37995/ProductIDGatherer.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{02BD199E-E809-4305-939D-F3AD677EC992}: NameServer = 61.232.202.158,211.98.2.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{02BD199E-E809-4305-939D-F3AD677EC992}: NameServer = 61.232.202.158,211.98.2.4
O17 - HKLM\System\CS2\Services\Tcpip\..\{02BD199E-E809-4305-939D-F3AD677EC992}: NameServer = 61.232.202.158,211.98.2.4
O17 - HKLM\System\CS3\Services\Tcpip\..\{02BD199E-E809-4305-939D-F3AD677EC992}: NameServer = 61.232.202.158,211.98.2.4

最后编辑2005-07-17 10:47:04
分享到:
gototop
 

有的,日志不全啊,用新版的扫描一下贴上来
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT