Logfile of Kaka v2. 0. 0. 9 Scan Module v2. 0. 0. 1
Scan saved at 17:29:32, on 2006-08-04
Platform: Microsoft Windows XP Professional Service Pack 2 (Build 2600)
MSIE: Internet Explorer v6.00 SP2; (6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
Running processes:
[smss.exe]
CommandLine =
[csrss.exe]
CommandLine = C:\WINDOWS\system32\csrss.exe
ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
[winlogon.exe]
CommandLine = winlogon.exe
[services.exe]
CommandLine = C:\WINDOWS\system32\services.exe
[lsass.exe]
CommandLine = C:\WINDOWS\system32\lsass.exe
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k DcomLaunch
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost -k rpcss
[CCenter.exe]
CommandLine = "C:\Program Files\Rising\Rav\CCenter.exe"
[svchost.exe]
CommandLine = C:\WINDOWS\System32\svchost.exe -k netsvcs
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k NetworkService
[svchost.exe]
CommandLine = C:\WINDOWS\system32\svchost.exe -k LocalService
[RavMonD.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmond.exe"
[explorer.exe]
CommandLine = C:\WINDOWS\Explorer.EXE
[rfwsrv.exe]
CommandLine = "c:\program files\rising\rfw\rfwsrv.exe"
[spoolsv.exe]
CommandLine = C:\WINDOWS\system32\spoolsv.exe
[RavStub.exe]
CommandLine = "C:\Program Files\Rising\Rav\RavStub.exe" /RAVMOND
[rfwmain.exe]
CommandLine = -StartUp
[SOUNDMAN.EXE]
CommandLine = "C:\WINDOWS\SOUNDMAN.EXE"
[igfxtray.exe]
CommandLine = "C:\WINDOWS\system32\igfxtray.exe"
[hkcmd.exe]
CommandLine = "C:\WINDOWS\system32\hkcmd.exe"
[RavTask.exe]
CommandLine = "C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM
[RavMon.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM
[ctfmon.exe]
CommandLine = "C:\WINDOWS\system32\ctfmon.exe"
[rundll32.exe]
CommandLine = C:\WINDOWS\system32\rundll32.exe C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\894a7b6\1.dll,Always
[alg.exe]
CommandLine = C:\WINDOWS\System32\alg.exe
[wuauclt.exe]
CommandLine = "C:\WINDOWS\system32\wuauclt.exe"
[conime.exe]
CommandLine = C:\WINDOWS\system32\conime.exe
[KkScan.exe]
CommandLine = "C:\Program Files\Rising\KakaToolBar\KkScan.exe"
R3 - Default URLSearchHook is missing
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.cctv8.net
O1 - Hosts: 127.0.0.1 www.kuliao.com
O1 - Hosts: 127.0.0.1 www.yyqy.com
O1 - Hosts: 127.0.0.1 winzheng.126.com
O1 - Hosts: 127.0.0.1 www.sunvod.com
O1 - Hosts: 127.0.0.1 www.t168.com
O1 - Hosts: 127.0.0.1 www.boliwo.com
O1 - Hosts: 127.0.0.1 www.coolcdrom.com
O1 - Hosts: 127.0.0.1 www.zhengdian.com
O1 - Hosts: 127.0.0.1 girlchinese.com
O1 - Hosts: 127.0.0.1 www.yibinren.com
O1 - Hosts: 127.0.0.1 www.mtv51.com
O1 - Hosts: 127.0.0.1 www.163[1].com
O1 - Hosts: 127.0.0.1 www.37021.com
O1 - Hosts: 127.0.0.1 www.cnqb.net
O1 - Hosts: 127.0.0.1 www.qq3344.com
O1 - Hosts: 127.0.0.1 www.qq3344.net
O1 - Hosts: 127.0.0.1 youlove.3322.net
O1 - Hosts: 127.0.0.1 www.58589.com
O1 - Hosts: 127.0.0.1 www.ftlink.net
O1 - Hosts: 127.0.0.1 home.kimo.com.tw/avnvyou520/
O1 - Hosts: 127.0.0.1 www.pixpox.com
O1 - Hosts: 127.0.0.1 www.k163.com
O1 - Hosts: 127.0.0.1 www.pk.com
O1 - Hosts: 127.0.0.1 www.xxx.com
O1 - Hosts: 127.0.0.1 204.177.92.68/rotate/r3.jhtml
O1 - Hosts: 127.0.0.1 www.fassia.net/wmed/index1.html
O1 - Hosts: 127.0.0.1 www.ehomeday.com
O1 - Hosts: 127.0.0.1 www.jinpin.net
O1 - Hosts: 127.0.0.1 www.cnqb.net
O1 - Hosts: 127.0.0.1 www.myxq.net
O1 - Hosts: 127.0.0.1 www.5dsoft.com
O1 - Hosts: 127.0.0.1 www.wokoo.net
O1 - Hosts: 127.0.0.1 movie.sx.zj.cn
O1 - Hosts: 127.0.0.1 h444.net
O1 - Hosts: 127.0.0.1 www.dj3344.com
O1 - Hosts: 127.0.0.1 www.qq168.net
O1 - Hosts: 127.0.0.1 www.777888.com
O1 - Hosts: 127.0.0.1 www.5dsoft.com
O1 - Hosts: 127.0.0.1 www.wokoo.net
O1 - Hosts: 127.0.0.1 movie.sx.zj.cn
O1 - Hosts: 127.0.0.1 yeaple.com
O1 - Hosts: 127.0.0.1 xyxy68.8u8.net
O1 - Hosts: 127.0.0.1 www.youmiss.com
O1 - Hosts: 127.0.0.1 young-erotic.com
O1 - Hosts: 127.0.0.1 aifind.info
O1 - Hosts: 127.0.0.1 80pictures.com
O1 - Hosts: 127.0.0.1 www.88dvd.com
O1 - Hosts: 127.0.0.1 www.sex591.com
O1 - Hosts: 127.0.0.1 www.qq3344.com
O1 - Hosts: 127.0.0.1 www.dj3344.com
O1 - Hosts: 127.0.0.1 www.yysky.net
O1 - Hosts: 127.0.0.1 www.qq168.net
O1 - Hosts: 127.0.0.1 www.777888.com
O1 - Hosts: 127.0.0.1 www.5dsoft.com
O1 - Hosts: 127.0.0.1 www.wokoo.net
O1 - Hosts: 127.0.0.1 movie.sx.zj.cn
O1 - Hosts: 127.0.0.1 yeapple.com
O1 - Hosts: 127.0.0.1 xyxy68.8u8.net
O1 - Hosts: 127.0.0.1 www.youmiss.com
O1 - Hosts: 127.0.0.1 www.cctv8.net
O1 - Hosts: 127.0.0.1 www.kuliao.com
O1 - Hosts: 127.0.0.1 www.yyqy.com
O1 - Hosts: 127.0.0.1 winzheng.126.com
O1 - Hosts: 127.0.0.1 www.sunvod.com
O1 - Hosts: 127.0.0.1 www.t168.com
O1 - Hosts: 127.0.0.1 www.boliwo.com
O1 - Hosts: 127.0.0.1 www.coolcdrom.com
O1 - Hosts: 127.0.0.1 www.zhengdian.comoe
O1 - Hosts: 127.0.0.1 www.zhengdian.com
O1 - Hosts: 127.0.0.1 girlchinese.comie
O1 - Hosts: 127.0.0.1 girlchinese.com
O1 - Hosts: 127.0.0.1 www.yibinren.com
O1 - Hosts: 127.0.0.1 www.mtv51.com
O1 - Hosts: 127.0.0.1 www.163[1].com
O1 - Hosts: 127.0.0.1 www.37021.com
O1 - Hosts: 127.0.0.1 www.cnqb.net
O1 - Hosts: 127.0.0.1 www.qq3344.net
O1 - Hosts: 127.0.0.1 youlove.3322.net/picture.exe
O1 - Hosts: 127.0.0.1 youlove.3322.net
O1 - Hosts: 127.0.0.1 www.58589.com
O1 - Hosts: 127.0.0.1 tty.yyun.net
O1 - Hosts: 127.0.0.1 www.ftlink.net
O1 - Hosts: 127.0.0.1 home.kimo.com.tw/avnvyou520/
O1 - Hosts: 127.0.0.1 home.kimo.com.tw
O1 - Hosts: 127.0.0.1 www.pixpox.com
O1 - Hosts: 127.0.0.1 www.k163.com
O1 - Hosts: 127.0.0.1 www.pk.com
O1 - Hosts: 127.0.0.1 www.xxx.com
O1 - Hosts: 127.0.0.1 204.177.92.68/rotate/r3.jhtml
O1 - Hosts: 127.0.0.1 204.177.92.68
O1 - Hosts: 127.0.0.1 www.fassia.net/wmed/index1.html
O1 - Hosts: 127.0.0.1 www.fassia.net/wmed
O1 - Hosts: 127.0.0.1 www.fassia.net
O1 - Hosts: 127.0.0.1 www.ehomeday.com
O1 - Hosts: 127.0.0.1 www.jinpin.net
O1 - Hosts: 127.0.0.1 hothack.home.chinaren.com
O1 - Hosts: 127.0.0.1 www.777888.com
O1 - Hosts: 127.0.0.1 xyxy68.8u8.net
O1 - Hosts: 127.0.0.1 www.t168.com
O1 - Hosts: 127.0.0.1 www.wokoo.net
O1 - Hosts: 127.0.0.1 www.coolcdrom.com
O1 - Hosts: 127.0.0.1 www.zhengdian.com
O1 - Hosts: 127.0.0.1 girlchinese.com
O1 - Hosts: 127.0.0.1 www.girl008.com
O1 - Hosts: 127.0.0.1 xajh.15888.ne
O1 - Hosts: 127.0.0.1 www.51bug.com
O1 - Hosts: 127.0.0.1 www.wplune.com
O1 - Hosts: 127.0.0.1 www.777888.net
O1 - Hosts: 127.0.0.1 pollen.my001.net
O1 - Hosts: 127.0.0.1 www.yule21.com
O1 - Hosts: 127.0.0.1 www.fish3000.com
O1 - Hosts: 127.0.0.1 www.kuliao.com
O1 - Hosts: 127.0.0.1 www.666e.com
O1 - Hosts: 127.0.0.1 qm.8ok.com
O1 - Hosts: 127.0.0.1 www.guosir.ccoo.com
O1 - Hosts: 127.0.0.1 www.163mm.com
O1 - Hosts: 127.0.0.1 www.cnooo.com
O1 - Hosts: 127.0.0.1 www.es158.com
O1 - Hosts: 127.0.0.1 www.aisa-girl.net
O1 - Hosts: 127.0.0.1 www.boliwu.com
O1 - Hosts: 127.0.0.1 www.cctv1.net
O1 - Hosts: 127.0.0.1 www.play.cn.gs
O1 - Hosts: 127.0.0.1 newyouth.3322.net
O1 - Hosts: 127.0.0.1 newyouth.3322.net
O1 - Hosts: 127.0.0.1 chinabdkx.363.net
O1 - Hosts: 127.0.0.1 www.zknew.com/
O1 - Hosts: 127.0.0.1 www.dhchao.com/
O1 - Hosts: 127.0.0.1 www.top666.net
O1 - Hosts: 127.0.0.1 www.amoisonic.com/
O1 - Hosts: 127.0.0.1 www.markguide.com
O1 - Hosts: 127.0.0.1 www.xyxc.ccoo.com
O1 - Hosts: 127.0.0.1 www.flyingwalk.com
O1 - Hosts: 127.0.0.1 www.yezine.net
O1 - Hosts: 127.0.0.1 www.mmgirls.com
O1 - Hosts: 127.0.0.1 www.net5w.com
O1 - Hosts: 127.0.0.1 www.fbstu.com
O1 - Hosts: 127.0.0.1 www.qlwl.com
O1 - Hosts: 127.0.0.1 www.yibinren.com
O1 - Hosts: 127.0.0.1 www.yinshang.com
O1 - Hosts: 127.0.0.1 www.ncunet.com
O1 - Hosts: 127.0.0.1 www.555666.net
O1 - Hosts: 127.0.0.1 www.fm1058.cc/
O1 - Hosts: 127.0.0.1 meim.y365.com
O1 - Hosts: 127.0.0.1 meim.y365.cn
O1 - Hosts: 127.0.0.1 www.qq520.net
O1 - Hosts: 127.0.0.1 jjkafei.longcity.net
O1 - Hosts: 127.0.0.1 jjkafei.longcity.net
O1 - Hosts: 127.0.0.1 chow.yesky.net
O1 - Hosts: 127.0.0.1 oicq.hk.st
O1 - Hosts: 127.0.0.1 www.my288.com
O1 - Hosts: 127.0.0.1 www.youmiss.com
O1 - Hosts: 127.0.0.1 www.laws-online.net
O1 - Hosts: 127.0.0.1 www.hj168.net
O1 - Hosts: 127.0.0.1 16888.6to23.com
O1 - Hosts: 127.0.0.1 www.love520.net
O1 - Hosts: 127.0.0.1 www.qq520.com
O1 - Hosts: 127.0.0.1 www.ezhgc.com
O1 - Hosts: 127.0.0.1 www.eastedu.com.cn
O1 - Hosts: 127.0.0.1 www.435000.com
O1 - Hosts: 127.0.0.1 sdik.8ok.net
O1 - Hosts: 127.0.0.1 feiying.coolwww.net
O1 - Hosts: 127.0.0.1 feiying.coolwww.net
O1 - Hosts: 127.0.0.1 zhongxuesheng.myrice.com
O1 - Hosts: 127.0.0.1 yes9999.com
O1 - Hosts: 127.0.0.1 yes9999.com.cn
O1 - Hosts: 127.0.0.1 www.nnptt.com/tv/
O1 - Hosts: 127.0.0.1 www.nnptt.com
O1 - Hosts: 127.0.0.1 vod.hengshui.com/
O1 - Hosts: 127.0.0.1 vod.hengshui.cn/
O1 - Hosts: 127.0.0.1 tv.megajoy.com/video/movies/
O1 - Hosts: 127.0.0.1 tv.megajoy.com/video/movies/
O1 - Hosts: 127.0.0.1 tv.megajoy.com/video
O1 - Hosts: 127.0.0.1 tv.megajoy.com/
O1 - Hosts: 127.0.0.1 h444.net/
O1 - Hosts: 127.0.0.1 update.myxq.com/ads.htm
O1 - Hosts: 127.0.0.1 update.myxq.com
O1 - Hosts: 127.0.0.1 www.happy666.net
O1 - Hosts: 127.0.0.1 www.myxq.com
O1 - Hosts: 127.0.0.1 bbs.ccjz.com
O1 - Hosts: 127.0.0.1 91mm.net/join.php
O1 - Hosts: 127.0.0.1 91mm.net
O1 - Hosts: 127.0.0.1 www.film888.com/film.asp
O1 - Hosts: 127.0.0.1 www.film888.com
O1 - Hosts: 127.0.0.1 vod.52en.com/index.asp
O1 - Hosts: 127.0.0.1 vod.52en.com
O1 - Hosts: 127.0.0.1 www.6mb.net/movie/
O1 - Hosts: 127.0.0.1 www.6mb.net
O1 - Hosts: 127.0.0.1 www.nic2000.com/?huyantao
O1 - Hosts: 127.0.0.1 www.nic2000.com
O1 - Hosts: 127.0.0.1 www.getfreedomain.biz/index.php
O1 - Hosts: 127.0.0.1 www.getfreedomain.biz
O1 - Hosts: 127.0.0.1 chinaour.com
O1 - Hosts: 127.0.0.1 chinaour.com/
O1 - Hosts: 127.0.0.1 www.ttjj.com/index.php
O1 - Hosts: 127.0.0.1 lingaonbvm.myrice.com