1   1  /  1  页   跳转

紧急求助啊!小弟跪拜

紧急求助啊!小弟跪拜

昨天晚上浏览一个网页卡巴斯基不断的报病毒,后来就自动关闭,发现进程表内有jvxnypf.exe  kndncso.exe两个可疑进程,然后无法关闭,卡巴斯基不能启动,本机上存在的ghost不能启动,不能用以前的备份恢复,然后重新格式化系统盘和安装软件所在的d盘重新安装系统,等安装到杀毒软件时这两个进程又重新出现,然后安装完杀毒软件之后重启计算机又不能启动了。从注册表里找删除相关项,启动项里也删除相关项,还是没用。且看不到隐藏文件,不能修改相关设置。求助高手们帮个忙给解决一下!!小弟在这里不胜感激!!!
最后编辑2007-05-15 00:58:30
分享到:
gototop
 

各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2007-05-15  00:50:40
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180  Build: 62900.2180

FormVersion: 1.1
100 - Process: smss.exe - \SystemRoot\System32\smss.exe
100 - Process: csrss.exe - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThZM?
100 - Process: winlogon.exe - winlogon.exe
100 - Process: services.exe - C:\WINDOWS\system32\services.exe
100 - Process: lsass.exe - C:\WINDOWS\system32\lsass.exe
100 - Process: svchost.exe - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - Process: svchost.exe - C:\WINDOWS\system32\svchost -k rpcss
100 - Process: svchost.exe - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - Process: svchost.exe - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - Process: svchost.exe - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - Process: symlcsvc.exe - "C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCPD-LC\SYMLCSVC.EXE"
100 - Process: spoolsv.exe - C:\WINDOWS\system32\spoolsv.exe
100 - Process: avp.exe -
100 - Process: guard.exe -
100 - Process: explorer.exe - C:\WINDOWS\Explorer.EXE
100 - Process: LSSrvc.exe - "C:\Program Files\Common Files\LightScribe\LSSrvc.exe"
100 - Process: wdfmgr.exe - C:\WINDOWS\system32\wdfmgr.exe
100 - Process: hpqwmiex.exe - "C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe"
100 - Process: HP Wireless Assistant.exe - "C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe"
100 - Process: jusched.exe - "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
100 - Process: igfxtray.exe - "C:\WINDOWS\system32\igfxtray.exe"
100 - Process: hkcmd.exe - "C:\WINDOWS\system32\hkcmd.exe"
100 - Process: igfxpers.exe - "C:\WINDOWS\system32\igfxpers.exe"
100 - Process: SynTPEnh.exe - "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
100 - Process: QPService.exe - "C:\Program Files\HP\QuickPlay\QPService.exe"
100 - Process: HPWuSchd2.exe - "C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe"
100 - Process: QLBCTRL.exe - "C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" /Start
100 - Process: StormDownloader.exe - "C:\Program Files\Ringz Studio\Storm Downloader\StormDownloader.exe"
100 - Process: hffsrv.exe - "C:\windows\hffext\hffsrv.exe"
100 - Process: avp.exe -
100 - Process: ewido.exe - "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
100 - Process: wmiprvse.exe - C:\WINDOWS\system32\wbem\wmiprvse.exe
100 - Process: xfilter.exe - "C:\Program Files\Filseclab\xfilter\xfilter.exe" -a
100 - Process: ico.exe - "C:\WINDOWS\system32\ICO.EXE"
100 - Process: ctfmon.exe - "C:\WINDOWS\system32\ctfmon.exe"
100 - Process: FSRremoS.EXE - FSRremoS.EXE
100 - Process: msnmsgr.exe - "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
100 - Process: PELMICED.EXE - Pelmiced.exe
100 - Process: FilMsg.exe - "C:\Program Files\Common Files\Filseclab\FilMsg.exe"
100 - Process: hpqimzone.exe - "C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe" -s
100 - Process: Maxthon.exe - "F:\Maxthon\Maxthon.exe"
100 - Process: conime.exe - C:\WINDOWS\system32\conime.exe
100 - Process: wmplayer.exe - "C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:8 /SHELLHLP_V9 Play /DataObject:NEFEPEHFBAAAAAAAOABAAAAAAAAAAAAAAMAAAAAAAAAAAAGEAAAAAAAAFAAAAAAAELEJGMOFGFLDCOIJHIFPIHMHDFBFMAELIAIMAAAAIIHAEGGAJJFMKBHLANNIBHOKAAAAAAAA
gototop
 

100 - Process: dianlei.exe - "F:\Dianlei\dianlei.exe"
100 - Process: 360Safe.exe - "C:\DOCUME~1\hp\LOCALS~1\Temp\360Safe.exe"
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=ZH_CN&c=64&bd=presario&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=ZH_CN&c=64&bd=presario&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
O2 - BHO: (DLMgr Class) - {00000000-0000-0000-0000-000000000000} - F:\Dianlei\Plugins\DLManager.dll
O2 - BHO: (ThunderIEHelper Class) - {0005A87D-D626-4B3A-84F9-1D9571695F55} - C:\WINDOWS\system32\xunleibho_v4.dll
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (Info cache) - {385AB8C6-FB22-4D17-8834-064E2BA0A6F0} - C:\Documents and Settings\All Users\Application Data\Microsoft\PCTools\pctools.dll
O2 - BHO: (DLMgr Class) - {4FA955E8-C73C-4D72-BDCC-EA12227B45D9} - F:\Dianlei\Plugins\DLManager.dll
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (BandIE Class) - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\BaiduBar.dll
O2 - BHO: (浏览器辅助对象(BHO)) - {7E853D72-626A-48EC-A868-BA8D5E23E045} -
O2 - BHO: (NXIECatcher Class) - {83B80A9C-D91A-4F22-8DCF-EA7204039F79} - F:\NetXfer\NXIEHelper.dll
O3 - Toolbar: (百度超级搜霸) - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\BaiduBar.dll
O3 - Toolbar: (NetXfer) - {C16CBAAC-A75C-4DB5-A0DD-CDF5CAFCDD3A} - F:\Program Files\NetXfer\NXToolBar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
O4 - HKLM\..\Run: [StormCodec_Helper] "C:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti
O4 - HKLM\..\Run: [MINI_BFYY] C:\Program Files\Ringz Studio\Storm Downloader\StormDownloader.exe
O4 - HKLM\..\Run: [Vistadrv] F:\download\Vistadrive\vsdrv.exe
O4 - HKLM\..\Run: [hffsrv] c:\windows\hffext\hffsrv.exe
O4 - HKLM\..\Run: [kav] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKLM\..\Run: [XFILTER] "C:\Program Files\Filseclab\xfilter\xfilter.exe" -a
O4 - HKLM\..\Run: [Windows木马防火墙] C:\Program Files\ftc\Trojanwall.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Startup folder: [Adobe Reader Speed Launch.lnk] C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Adobe Reader Speed Launch.lnk
O4 - Startup folder: [HP Photosmart Premier 快速启动 .lnk] C:\Documents and Settings\All Users\「开始」菜单\程序\启动\HP Photosmart Premier 快速启动 .lnk
O4 - Startup folder: [费尔消息服务.lnk] C:\Documents and Settings\All Users\「开始」菜单\程序\启动\费尔消息服务.lnk
O4 - Startup folder: [PowerReg Scheduler.exe] C:\Documents and Settings\hp\「开始」菜单\程序\启动\PowerReg Scheduler.exe
gototop
 

O8 - Extra context menu item: &使用暴风下载器下载 - C:\Program Files\Ringz Studio\Storm Downloader\geturl.htm
O8 - Extra context menu item: &使用电雷下载 - F:\Dianlei\geturl.htm
O8 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\getallurl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - F:\QQ\AddToNetDisk.htm
O8 - Extra context menu item: 使用网络传送带下载 - F:\Program Files\NetXfer\NXAddLink.html
O8 - Extra context menu item: 使用网络传送带下载全部链接 - F:\Program Files\NetXfer\NXAddList.html
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - F:\QQ\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - F:\QQ\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - F:\QQ\SendMMS.htm
O8 - Extra context menu item: 用比特精灵下载(&B) - G:\BitSpirit\bsurl.htm
O8 - Extra context menu item: 百度-搜索MP3 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDUMP3.HTM
O8 - Extra context menu item: 百度-搜索图片 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDUIMG.HTM
O8 - Extra context menu item: 百度-搜索新闻 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDUNEWS.HTM
O8 - Extra context menu item: 百度-搜索歌词 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDULYRIC.HTM
O8 - Extra context menu item: 百度-搜索网页 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDUSEARCH.HTM
O8 - Extra context menu item: 百度-搜索贴吧 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDUPOST.HTM
O8 - Extra context menu item: 百度-词典搜索 - res://C:\PROGRA~1\baidu\bar\BaiduBar.dll/BAIDU_DIC.HTM
O9 - Extra button: Sun Java 控制台(HKLM)
O9 - Extra button: Web反病毒保护(HKLM)
O9 - Extra button: &电雷超级下载(HKLM)
O9 - Extra button: 腾讯QQ(HKLM)
O9 - Extra button: Windows Messenger(HKLM)
O10 - Winsock LSP: C:\Program Files\Filseclab\xfilter\XFILTER.DLL
O10 - Winsock LSP: C:\Program Files\Filseclab\xfilter\XFILTER.DLL
O10 - Winsock LSP: C:\Program Files\Filseclab\xfilter\XFILTER.DLL
O10 - Winsock LSP: C:\Program Files\Filseclab\xfilter\XFILTER.DLL
O10 - Winsock LSP: C:\Program Files\Filseclab\xfilter\XFILTER.DLL
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O10 - Winsock LSP: C:\WINDOWS\system32\mswsock.dll
O11 - Options Group: Java (Sun)
O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=ZH_CN&c=64&bd=presario&pf=laptop
O15 - Trusted Zone: https://mybank.icbc.com.cn
O15 - Trusted Zone: http://www.icbc.com.cn
O16 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (CEditCtrl Object) - https://img.alipay.com/download/1101/aliedit.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} (Java Plug-in 1.5.0_06) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.5.0_10) - http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
O18 - Protocol: Cor MIME Filter, CorFltr, CorFltr 1 - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\system32\mscoree.dll
O18 - Protocol: Cor MIME Filter, CorFltr, CorFltr 1 - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\system32\mscoree.dll
O18 - Protocol: Cor MIME Filter, CorFltr, CorFltr 1 - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\system32\mscoree.dll
O18 - Protocol: AP Class Install Handler filter - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: AP lzdhtml encoding/decoding Filter - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: AP lzdhtml encoding/decoding Filter - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: AP lzdhtml encoding/decoding Filter - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: WebView MIME Filter - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\SHELL32.dll
O18 - Protocol: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O18 - Protocol: Microsoft HTML About Pluggable Protocol - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
O18 - Protocol: CDL: Asychronous Pluggable Protocol Handler - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: DVD: 可插入协议 - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll
O18 - Protocol: file:, local: Asychronous Pluggable Protocol Handler - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: ftp: Asychronous Pluggable Protocol Handler - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: gopher: Asychronous Pluggable Protocol Handler - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: http: Asychronous Pluggable Protocol Handler - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: https: Asychronous Pluggable Protocol Handler - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: Microsoft InfoTech Protocols for IE 4.0 - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll
O18 - Protocol: Microsoft HTML Javascript Pluggable Protocol - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: file:, local: Asychronous Pluggable Protocol Handler - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: Microsoft HTML Mailto Pluggable Protocol - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
O18 - Protocol: MHTML Asychronous Pluggable Protocol Handler - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll
O18 - Protocol: mk: Asychronous Pluggable Protocol Handler - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: Microsoft InfoTech Protocols for IE 4.0 - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: Data Page Pluggable Protocol mso-offdap Handler - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
O18 - Protocol: Microsoft HTML Resource Pluggable Protocol - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
O18 - Protocol: Microsoft HTML Resource Pluggable Protocol - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll
O18 - Protocol: TV: 可插入协议 - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll
O18 - Protocol: Microsoft HTML Javascript Pluggable Protocol - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
O18 - Protocol: WiaProtocol - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll
O21 - Protocol Icons: HKCR\http\shell\open\command - "C:\Program Files\Internet Explorer\iexplore.exe" "%1"
O21 - Protocol Icons: HKCR\htmlfile\shell\open\command - "C:\Program Files\Internet Explorer\iexplore.exe" %1
O21 - Protocol Icons: HKCR\ftp\DefaultIcon - C:\WINDOWS\system32\msieftp.dll,0
O21 - Protocol Icons: HKCR\htmlfile\DefaultIcon - "%1"
gototop
 

O23 - Service: AddFiltr - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Alerter - C:\WINDOWS\system32\alrsvc.dll
O23 - Service: ALG - C:\WINDOWS\system32\alg.exe
O23 - Service: AppMgmt - C:\WINDOWS\System32\appmgmts.dll
O23 - Service: aspnet_state - C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
O23 - Service: AudioSrv - C:\WINDOWS\system32\audiosrv.dll
O23 - Service: AVP - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
O23 - Service: BITS - C:\WINDOWS\system32\qmgr.dll
O23 - Service: Browser - C:\WINDOWS\system32\browser.dll
O23 - Service: CiSvc - C:\WINDOWS\system32\cisvc.exe
O23 - Service: ClipSrv - C:\WINDOWS\system32\clipsrv.exe
O23 - Service: COMSysApp - C:\WINDOWS\system32\dllhost.exe
O23 - Service: CryptSvc - C:\WINDOWS\system32\cryptsvc.dll
O23 - Service: DcomLaunch - C:\WINDOWS\system32\rpcss.dll
O23 - Service: Dhcp - C:\WINDOWS\system32\dhcpcsvc.dll
O23 - Service: dmadmin - C:\WINDOWS\system32\dmadmin.exe
O23 - Service: dmserver - C:\WINDOWS\system32\dmserver.dll
O23 - Service: Dnscache - C:\WINDOWS\system32\dnsrslvr.dll
O23 - Service: ERSvc - C:\WINDOWS\system32\ersvc.dll
O23 - Service: Eventlog - C:\WINDOWS\system32\services.exe
O23 - Service: EventSystem - C:\WINDOWS\system32\es.dll
O23 - Service: ewido anti-spyware 4.0 guard - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: FastUserSwitchingCompatibility - C:\WINDOWS\system32\shsvcs.dll
O23 - Service: helpsvc - C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll
O23 - Service: HidServ - C:\WINDOWS\System32\hidserv.dll
O23 - Service: hpqwmiex - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HTTPFilter - C:\WINDOWS\system32\w3ssl.dll
O23 - Service: IDriverT - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: ImapiService - C:\WINDOWS\system32\imapi.exe
O23 - Service: lanmanserver - C:\WINDOWS\system32\srvsvc.dll
O23 - Service: lanmanworkstation - C:\WINDOWS\system32\wkssvc.dll
O23 - Service: LightScribeService - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LmHosts - C:\WINDOWS\system32\lmhsvc.dll
O23 - Service: Messenger - C:\WINDOWS\system32\msgsvc.dll
O23 - Service: mnmsrvc - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: MSDTC - C:\WINDOWS\system32\msdtc.exe
O23 - Service: MSIServer - C:\WINDOWS\system32\msiexec.exe
O23 - Service: NetDDE - C:\WINDOWS\system32\netdde.exe
O23 - Service: NetDDEdsdm - C:\WINDOWS\system32\netdde.exe
O23 - Service: Netlogon - C:\WINDOWS\system32\lsass.exe
O23 - Service: Netman - C:\WINDOWS\system32\netman.dll
O23 - Service: Nla - C:\WINDOWS\system32\mswsock.dll
O23 - Service: NtLmSsp - C:\WINDOWS\system32\lsass.exe
O23 - Service: NtmsSvc - C:\WINDOWS\system32\ntmssvc.dll
O23 - Service: ose - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service: PlugPlay - C:\WINDOWS\system32\services.exe
O23 - Service: PolicyAgent - C:\WINDOWS\system32\lsass.exe
O23 - Service: ProtectedStorage - C:\WINDOWS\system32\lsass.exe
O23 - Service: RasAuto - C:\WINDOWS\system32\rasauto.dll
O23 - Service: RasMan - C:\WINDOWS\system32\rasmans.dll
O23 - Service: RDSessMgr - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: RemoteAccess - C:\WINDOWS\system32\mprdim.dll
O23 - Service: RpcLocator - C:\WINDOWS\system32\locator.exe
O23 - Service: RpcSs - C:\WINDOWS\system32\rpcss.dll
O23 - Service: RSVP - C:\WINDOWS\system32\rsvp.exe
O23 - Service: SamSs - C:\WINDOWS\system32\lsass.exe
O23 - Service: SCardSvr - C:\WINDOWS\system32\scardsvr.exe
O23 - Service: Schedule - C:\WINDOWS\system32\schedsvc.dll
O23 - Service: seclogon - C:\WINDOWS\system32\seclogon.dll
O23 - Service: SENS - C:\WINDOWS\system32\sens.dll
O23 - Service: SharedAccess - C:\WINDOWS\system32\ipnathlp.dll
O23 - Service: ShellHWDetection - C:\WINDOWS\system32\shsvcs.dll
O23 - Service: Spooler - C:\WINDOWS\system32\spoolsv.exe
O23 - Service: srservice - C:\WINDOWS\system32\srsvc.dll
O23 - Service: SSDPSRV - C:\WINDOWS\system32\ssdpsrv.dll
O23 - Service: stisvc - C:\WINDOWS\system32\wiaservc.dll
O23 - Service: SwPrv - C:\WINDOWS\system32\dllhost.exe
O23 - Service: Symantec Core LC - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SysmonLog - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: TapiSrv - C:\WINDOWS\system32\tapisrv.dll
O23 - Service: TermService - C:\WINDOWS\system32\termsrv.dll
O23 - Service: Themes - C:\WINDOWS\system32\shsvcs.dll
O23 - Service: TrkWks - C:\WINDOWS\system32\trkwks.dll
O23 - Service: UMWdf - C:\WINDOWS\system32\wdfmgr.exe
O23 - Service: upnphost - C:\WINDOWS\system32\upnphost.dll
O23 - Service: UPS - C:\WINDOWS\system32\ups.exe
O23 - Service: usnjsvc - C:\Program Files\MSN Messenger\usnsvc.exe
O23 - Service: VSS - C:\WINDOWS\system32\vssvc.exe
O23 - Service: W32Time - C:\WINDOWS\system32\w32time.dll
O23 - Service: WebClient - C:\WINDOWS\system32\webclnt.dll
O23 - Service: winmgmt - C:\WINDOWS\system32\wbem\wmisvc.dll
O23 - Service: WMConnectCDS - C:\Program Files\Windows Media Connect 2\wmccds.exe
O23 - Service: WmdmPmSN - C:\WINDOWS\system32\MsPMSNSv.dll
O23 - Service: WmiApSrv - C:\WINDOWS\system32\wbem\wmiapsrv.exe
O23 - Service: wscsvc - C:\WINDOWS\system32\wscsvc.dll
O23 - Service: wuauserv - C:\WINDOWS\system32\wuauserv.dll
O23 - Service: WZCSVC - C:\WINDOWS\system32\wzcsvc.dll
O23 - Service: xmlprov - C:\WINDOWS\system32\xmlprov.dll
O23 - Service: 自动 LiveUpdate 调度程序 - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

360安全卫士,为您的系统提供最全面的保护
最新下载:http://download.360safe.com
gototop
 

上面的是我的360检测报告!请高手帮我看看
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT