HijackThis_zww汉化版扫描日志 V1.99.1
保存于 13:29:09, 日期 2006-9-21
操作系统: Windows XP SP2 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP2 (6.00.2900.2180)
当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Sogou PXP\p2psvr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\淘宝网\淘宝旺旺\WangWang.EXE
C:\Program Files\Hewlett-Packard\Toolbox\StatusClient\StatusClient.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\igfxtray.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\WINPENJR\Win32\pphidpad.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\DrvMon.exe
C:\Program Files\Legend\HotKey\HotKeyB.exe
C:\HW99\HWVOICE\hwshell.exe
C:\Program Files\Hewlett-Packard\Toolbox\jre\bin\javaw.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\zhanghao\LOCALS~1\Temp\Rar$EX00.531\HijackThis1991zww.exe
R3 - URLSearchHook: (no name) - {982CB676-38F0-4D9A-BB72-D9371ABE876E} - (no file)
R3 - URLSearchHook: SgUrlSearHook Class - {BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D} - C:\WINDOWS\system32\socul.dll
R3 - URLSearchHook: VeryCD Search Class - {88351CEF-BAC0-4A9B-8380-31A173E2926F} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll (file missing)
R3 - URLSearchHook: (no name) - {306C835E-2318-49F0-9573-6AE858E90596} - (no file)
R3 - URLSearchHook: (no name) - {C492A2FC-0418-454B-9605-D5E9FAE2B877} - (no file)
R3 - URLSearchHook: (no name) - {5D6D38FD-4F27-413D-9AEB-175717E1E46E} - (no file)
R3 - URLSearchHook: (no name) - {0C2637B1-F436-44EE-9804-1CC9A73F8D3B} - (no file)
R3 - URLSearchHook: (no name) - {23AFE59E-885A-40A4-A3B9-C5D530B1BF7F} - (no file)
R3 - URLSearchHook: (no name) - {1214F728-3453-4803-B82B-E7FA72953590} - (no file)
R3 - URLSearchHook: (no name) - {5956FA0E-443A-4159-B262-295A1322DFB4} - (no file)
R3 - URLSearchHook: (no name) - {D6979BBC-3326-4EAE-AF2E-1BE12A93868A} - (no file)
R3 - URLSearchHook: (no name) - {A35BECCB-742C-4CA5-95EF-52E4655C0995} - (no file)
R3 - URLSearchHook: (no name) - {45A332A0-D2A2-432D-B66D-1D60562E2EE6} - (no file)
R3 - URLSearchHook: (no name) - {418EFBF4-A995-4718-8821-F23B5C3BD513} - (no file)
R3 - URLSearchHook: (no name) - {F861E69A-EC8D-47B1-882A-38C5FA1B7779} - (no file)
R3 - URLSearchHook: (no name) - {1E003EDA-1A37-46DA-8942-311BE24609CD} - (no file)
R3 - URLSearchHook: (no name) - {9AB61ACE-7220-49B3-AC29-B2E445E5C10B} - (no file)
R3 - URLSearchHook: (no name) - {F6CFDF56-9D0F-4681-B14B-F592FB70601A} - (no file)
R3 - URLSearchHook: (no name) - {B9600236-DC90-483A-84A8-178C92CD1D29} - (no file)
R3 - URLSearchHook: (no name) - {66F97C0B-0A66-411B-A6AE-FFB33EC02163} - (no file)
R3 - URLSearchHook: (no name) - {1F02DC4F-6076-46C1-BE31-BC664954CC51} - (no file)
R3 - URLSearchHook: (no name) - {37610A05-19CE-4DB0-94C8-08C8ABF7F4A3} - (no file)
R3 - URLSearchHook: (no name) - {C6673A6D-2848-4060-B6A2-03D88CDB85DD} - (no file)
R3 - URLSearchHook: (no name) - {63C02097-F5BB-4CE7-8667-D6C12DB07516} - (no file)
R3 - URLSearchHook: (no name) - {5BF354B0-8F5E-45AF-AC04-BFE033D24FC9} - (no file)
R3 - URLSearchHook: (no name) - {F61E5052-8BBF-40EC-8749-8A5431CDD564} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)
O2 - BHO: (no name) - {0C2637B1-F436-44EE-9804-1CC9A73F8D3B} - (no file)
O2 - BHO: SohuDAIEHelper - {0CA51D02-7739-43EA-8D9A-1E8AD4327B03} - (no file)
O2 - BHO: (no name) - {1214F728-3453-4803-B82B-E7FA72953590} - (no file)
O2 - BHO: (no name) - {1E003EDA-1A37-46DA-8942-311BE24609CD} - (no file)
O2 - BHO: (no name) - {1F02DC4F-6076-46C1-BE31-BC664954CC51} - (no file)
O2 - BHO: (no name) - {23AFE59E-885A-40A4-A3B9-C5D530B1BF7F} - (no file)
O2 - BHO: WinSearch - {27E96DE0-8211-42CF-9A1E-FA6246A95B77} - (no file)
O2 - BHO: (no name) - {306C835E-2318-49F0-9573-6AE858E90596} - (no file)
O2 - BHO: Yahoo!Photo - {33BBE430-0E42-4f12-B075-8D21ACB10DCB} - (no file)
O2 - BHO: (no name) - {37610A05-19CE-4DB0-94C8-08C8ABF7F4A3} - (no file)
O2 - BHO: AntiFish Class - {38928D50-8A48-44C2-945F-D2F23F771410} - (no file)
O2 - BHO: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - (no file)
O2 - BHO: (no name) - {418EFBF4-A995-4718-8821-F23B5C3BD513} - (no file)
O2 - BHO: (no name) - {45A332A0-D2A2-432D-B66D-1D60562E2EE6} - (no file)
O2 - BHO: QQIEHelper - {54EBD53A-9BC1-480B-966A-843A333CA162} - (no file)
O2 - BHO: (no name) - {5956FA0E-443A-4159-B262-295A1322DFB4} - (no file)
O2 - BHO: (no name) - {5BF354B0-8F5E-45AF-AC04-BFE033D24FC9} - (no file)
O2 - BHO: (no name) - {5D6D38FD-4F27-413D-9AEB-175717E1E46E} - (no file)
O2 - BHO: DragSearch BHO - {62EED7C6-9F02-42f9-B634-98E2899E147B} - (no file)
O2 - BHO: (no name) - {63C02097-F5BB-4CE7-8667-D6C12DB07516} - (no file)
O2 - BHO: (no name) - {66F97C0B-0A66-411B-A6AE-FFB33EC02163} - (no file)
O2 - BHO: VeryCD超级搜索 - {75FE2B5A-D3A4-4EFA-AC11-ADC9C9459688} - (no file)
O2 - BHO: (no name) - {9AB61ACE-7220-49B3-AC29-B2E445E5C10B} - (no file)
O2 - BHO: (no name) - {A35BECCB-742C-4CA5-95EF-52E4655C0995} - (no file)
O2 - BHO: (no name) - {B9600236-DC90-483A-84A8-178C92CD1D29} - (no file)
O2 - BHO: (no name) - {C492A2FC-0418-454B-9605-D5E9FAE2B877} - (no file)
O2 - BHO: (no name) - {C6673A6D-2848-4060-B6A2-03D88CDB85DD} - (no file)
O2 - BHO: (no name) - {D6979BBC-3326-4EAE-AF2E-1BE12A93868A} - (no file)
O2 - BHO: (no name) - {F61E5052-8BBF-40EC-8749-8A5431CDD564} - (no file)
O2 - BHO: (no name) - {F6CFDF56-9D0F-4681-B14B-F592FB70601A} - (no file)
O2 - BHO: (no name) - {F861E69A-EC8D-47B1-882A-38C5FA1B7779} - (no file)
O3 - IE工具栏增项: 雅虎助手 - {406F94F0-504F-4a40-8DFD-58B0666ABEBD} - (no file)
O3 - IE工具栏增项: VeryCD超级搜索 - {F869BB38-FFEF-4589-B986-610B7AD0ADA2} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll (file missing)
O3 - IE工具栏增项: 捜狗直通车 - {DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C} - C:\Program Files\P4P\ToolBar.dll
O3 - IE工具栏增项: Yahoo! 导航条 - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - 启动项HKLM\\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 启动项HKLM\\Run: [YLive.exe] C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
O4 - 启动项HKLM\\Run: [yassistse] "C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe"
O4 - 启动项HKLM\\Run: [WangWang] "C:\Program Files\淘宝网\淘宝旺旺\WangWang.EXE"
O4 - 启动项HKLM\\Run: [TomcatStartup 2.5] C:\Program Files\Hewlett-Packard\Toolbox\hpbpsttp.exe
O4 - 启动项HKLM\\Run: [stup.exe] C:\PROGRA~1\TENCENT\Adplus\stup.exe
O4 - 启动项HKLM\\Run: [StatusClient 2.6] C:\Program Files\Hewlett-Packard\Toolbox\StatusClient\StatusClient.exe /auto
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - 启动项HKLM\\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - 启动项HKLM\\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - 启动项HKLM\\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 启动项HKLM\\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - 启动项HKLM\\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
O4 - 启动项HKLM\\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - 启动项HKLM\\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - 启动项HKLM\\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - 启动项HKLM\\Run: [PPHIDPAD] C:\WINPENJR\Win32\pphidpad.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DrvMon.exe] C:\WINDOWS\system32\DrvMon.exe
O4 - Startup: 腾讯QQ.lnk = C:\Program Files\Tencent\QQ\QQ.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE