高手来指点下,谢谢。
HijackThis_zww汉化版扫描日志 V1.99.1
保存于 15:56:24, 日期 2006-02-13
操作系统: Windows XP (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 (6.00.2600.0000)
当前运行的进程:
G:\Windows\System32\smss.exe
G:\Windows\system32\winlogon.exe
G:\Windows\system32\services.exe
G:\Windows\system32\lsass.exe
G:\Windows\system32\svchost.exe
G:\Windows\System32\svchost.exe
G:\Windows\Explorer.EXE
G:\Program Files\FarStone\VirtualDrive\vdtask.exe
G:\Program Files\Logitech\MouseWare\system\em_exec.exe
G:\Windows\System32\ctfmon.exe
G:\Program Files\Tencent\TT\TTraveler.exe
G:\Windows\system32\NOTEPAD.EXE
G:\Documents and Settings\123\桌面\temp\HijackThis1991汉化版\HijackThis1991zww.exe
O4 - 启动项HKLM\\Run: [VirtualDrive] G:\Program Files\FarStone\VirtualDrive\vdtask.exe /AutoRestore
O4 - 启动项HKLM\\Run: [Logitech Utility] Logi_MwX.Exe
O4 - 启动项HKLM\\Run: [RavTask] "G:\Program Files\rising\Rav\RavTask.exe" -system
O4 - HKCU\..\Run: [ctfmon.exe] G:\Windows\System32\ctfmon.exe
O9 - 浏览器额外的按钮: 浩方对战平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - G:\浩方对战平台\GameClient.exe
O10 - 未知的文件在 Winsock LSP: g:\windows\system32\winspl.dll
O10 - 未知的文件在 Winsock LSP: g:\windows\system32\winspl.dll
O10 - 未知的文件在 Winsock LSP: g:\windows\system32\winspl.dll
O10 - 未知的文件在 Winsock LSP: g:\windows\system32\winspl.dll
O10 - 未知的文件在 Winsock LSP: g:\windows\system32\winspl.dll
O10 - 未知的文件在 Winsock LSP: g:\windows\system32\winspl.dll
O16 - DPF: {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} (AxInputControl Class) - https://mybank.icbc.com.cn/icbc/perbank/AxSafeControls.cab
O16 - DPF: {EDD78530-5F45-4BC9-991F-EBFB891FC26D} (RoxControl Class) - http://www.rox.com.cn/market/vsa/RoxControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{ADCEBD46-117D-4300-B9C8-BA713FA4013A}: NameServer = 202.106.0.20 202.106.46.151
O18 - 列举现有的协议: dic - {C21F5C32-F57A-4A0D-8E0A-B672691C52D0} - C:\POWERW~1\XDictExB.dll
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - G:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - G:\Program Files\rising\Rav\Ravmond.exe