HijackThis Logo如下:
2005-11-25(卸载了杀毒软件后):
HijackThis_815汉化版扫描日志 V1.99.1
保存于 17:56:24, 日期 2005-11-25
操作系统: Windows XP (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP1 (6.00.2600.0000)
当前运行的进程:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\SYSTEM32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\System32\ctfmon.exe
F:\应用程序\HijachThis V1.99.2汉化版\HijackThis1991zww.exe
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\System32\ctfmon.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - IE右键菜单中的新增项目: 用比特精灵下载(&B) - F:\应用程序\比特精灵2.7\BitSpirit\bsurl.htm
O16 - DPF: {371B29D9-4563-4E7F-B93D-F85ED5682ABC} (CoRaise Player
Object) - http://202.104.212.55/tsplay/tsplay.cab
O20 - AppInit_DLLs: PAVWAIT.DLL
------------------------------------------------------------
2005-11-25(卸载了杀毒软件上网后):
HijackThis_815汉化版扫描日志 V1.99.1
保存于 17:58:11, 日期 2005-11-25
操作系统: Windows XP (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP1 (6.00.2600.0000)
当前运行的进程:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\SYSTEM32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\System32\ctfmon.exe
D:\Program Files\VnetClient1.6\VnetClient.exe
F:\应用程序\HijachThis V1.99.2汉化版\HijackThis1991zww.exe
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\System32\ctfmon.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - IE右键菜单中的新增项目: 用比特精灵下载(&B) - F:\应用程序\比特精灵2.7\BitSpirit\bsurl.htm
O16 - DPF: {371B29D9-4563-4E7F-B93D-F85ED5682ABC} (CoRaise Player
Object) - http://202.104.212.55/tsplay/tsplay.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3A5220D4-E0CA-4A7C-810F-455C11C140B3}: NameServer = 202.96.128.86 202.96.128.166
O20 - AppInit_DLLs: PAVWAIT.DLL
------------------------------------------------------------
以上是两篇Logo,请老大帮忙分析分析,谢了!