风微香轻的博客   点击复制博客地址 加入收藏夹
推荐索尼朋友圈
用户数 947
帖子数 112
回复数 814
[加入收藏]
用户数 530
帖子数 38
回复数 208
[加入收藏]
用户数 340
帖子数 497
回复数 2224
[加入收藏]
风微香轻的博客
 活力地带
给我留言
登录社区
用户注册
访问次数:10107118
文章数量:19233
评论数量:81054
 最新文章列表
航嘉冷静王钻石版2.3电源 额定300W好不好?
数码相机
我想买一个五千元以内的电脑,3D设计型的。请内行给个配置建...
[200高分!!!] 求KOTOKO的完整歌集...(请看清要求)
请大家帮我看看哪台电脑比较好!
神舟优雅260好不好?
帮忙!评价电脑配置!
请帮大家忙推荐一款手机
诺基亚N72 水货
【求助】s500i内存卡读卡的问题~
标题: 为什么我上网时会弹出一个空白页??? 收起 
2008-03-19 09:43:10
帖子标题:
为什么我上网时会弹出一个空白页???

帖子内容:
现象:
历史操作:我用360修补过好多漏洞还是无用

备注: 之前好像弹出过什么脚本出错的东西~~

我的诊断报告:
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2008-03-07  17:32:37
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180 Build:62900.2180
计算机物理内存:255.47MB - 当前可用内存:84.41MB

100 - 未知 - Process: TudouVa.exe [飞速Tudou] - C:\Program Files\Tudou\飞速Tudou\TudouVA.exe
100 - 未知 - Process: TudouVAMonitor.exe [飞速土豆监控程序] - c:\program files\tudou\飞速tudou\TudouVAMonitor.exe
100 - 未知 - Process: QQ.exe [QQ] - D:\Program Files\Tencent\QQ\QQ.exe
100 - 未知 - Process: TIMPlatform.exe [TIMPlatform] - D:\Program Files\Tencent\QQ\TIMPlatform.exe
100 - 未知 - Process: WgaTray.exe [Windows 正版增值计划通知] - C:\WINDOWS\system32\WgaTray.exe
O4 - 未知 - HKCU\..\Run: [TudouVAStart] [飞速Tudou] C:\Program Files\Tudou\飞速Tudou\TudouVA.exe
O10 - 未知 - Winsock LSP: [GCSoft] [{9D60A9E0-337A-11D0-BD88-0000C082E69A}]C:\WINDOWS\system32\winhlp.DLL
O10 - 未知 - Winsock LSP: [GCSoft] [{9D60A9E0-337A-11D0-BD88-0000C082E69A}]C:\WINDOWS\system32\winhlp.DLL
O16 - 未知 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - 未知 - DPF: {C661F36D-DF85-4EF4-83C7-E107B83D04B1} (WebActivater Control) - http://dl_dir.qq.com/3dshow/3DShowVM.cab
O16 - 未知 - DPF: {E787FD25-8D7C-4693-AE67-9406BC6E22DF} (PasswordEditCtrl) - https://www.tenpay.com/download/qqedit.cab
O18 - 未知 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - D:\PROGRA~1\KUGOO2~1\InExtend\KUGOO3~1.OCX

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: 360tray.exe [360安全卫士实时保护模块] - D:\Program Files\360safe\safemon\360tray.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: realsched.exe [realone播放器安装时附带的升级提醒程序。] - C:\Program Files\Common Files\Real\Update_OB\realsched.exe
100 - 安全 - Process: SOUNDMAN.EXE [一个软声卡控制台软件。] - C:\WINDOWS\SOUNDMAN.EXE
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32\ctfmon.exe
100 - 安全 - Process: MiniQQLive.exe [QQLive相关进程。] - C:\Program Files\Tencent\QQLive\MiniQQLive.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] - C:\WINDOWS\system32\nvsvc32.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k imgsvc
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] - C:\WINDOWS\system32\wdfmgr.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: wuauclt.exe [windows操作系统后台程序,用于系统升级。] - C:\WINDOWS\system32\wuauclt.exe
100 - 安全 - Process: wuauclt.exe [windows操作系统后台程序,用于系统升级。] - C:\WINDOWS\system32\wuauclt.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - D:\Program Files\360safe\360safe.exe
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
O2 - 安全 - BHO: (BandIE Class) - [百度超级搜霸相关插件。] - {77FEF28E-EB96-44FF-B511-3185DEA48697} - C:\PROGRA~1\baidu\bar\BaiduBar.dll
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll
O3 - 安全 - Toolbar: (百度超级搜霸) - [百度超级搜霸相关程序。] - {B580CF65-E151-49C3-B73F-70B13FCA8E86} - C:\PROGRA~1\baidu\bar\BaiduBar.dll
O4 - 安全 - HKLM\..\Run: [nwiz] [是NVidia的Nview特性相关程序。该程序用于用户对其特性进行配置,将桌面扩展到多台显示器上。 ] nwiz.exe /install
O4 - 安全 - HKLM\..\Run: [360Safetray] [360safe实时保护功能模块。] D:\Program Files\360safe\safemon\360tray.exe /start
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [kav] [卡巴斯基杀毒软件相关程序。] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - 安全 - HKLM\..\Run: [TkBellExe] [是Real Networks产品定时升级检测程序。] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - 安全 - HKLM\..\Run: [IMJPMIG8.1] [微软Microsoft输入法编辑器程序。] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 安全 - HKLM\..\Run: [MSPY2002] [是微软Microsoft翻译工具的一部分。] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - 安全 - HKLM\..\Run: [PHIME2002ASync] [输入法软件相关程序。] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 安全 - HKLM\..\Run: [PHIME2002A] [输入法软件相关程序。] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 安全 - HKLM\..\Run: [NvMediaCenter] [是NVidia显示卡相关文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - 安全 - HKLM\..\Run: [SoundMan] [Realtek声卡相关程序。] SOUNDMAN.EXE
O4 - 安全 - HKLM\..\RunOnce: [BaiduInstall] [是百度搜霸工具条相关启动项。] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\baidu\bar\BDBAR_~1\BaiduBar.dll,Install
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O4 - 安全 - HKCU\..\Run: [miniqqlive] [QQLive视频播放软件相关程序。] "C:\Program Files\Tencent\QQLive\MiniQQLive.exe"
O8 - 安全 - Extra context menu item: &使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm
O8 - 安全 - Extra context menu item: &使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm
O8 - 安全 - Extra context menu item: 使用影音传送带下载 -
O8 - 安全 - Extra context menu item: 使用影音传送带下载全部链接 -
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O11 - 安全 - Options Group: International*
O16 - 安全 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Flash播放器) - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - 安全 - Service: AVP [卡巴斯基杀毒软件相关程序。] - "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r - (running)
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\WINDOWS\system32\nvsvc32.exe - (running)
O25 - 安全 - ABOUT: PostNotCached - res://ieframe.dll/repost.htm

=======================================

O31 - 未知 - Notify: klogon - C:\WINDOWS\system32\klogon.dll - Kaspersky Lab - Logon Visualizer - 6.0.0.299 - 28778 - 7072750eb5c0f0cd54b48f972855ca61
O31 - 未知 - SEApproved: {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Shell extensions for file compression -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:加密上下文菜单 -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {0DF44EAA-FF21-4412-828E-260A8728E7F1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {7A9D77BD-5403-11d2-8785-2E0420524153} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 124416 - 1b089bd70767a1ca5419a24b581cc753
O31 - 未知 - SEApproved: {640167b4-59b0-47a6-b335-a6b3c0695aea} - C:\WINDOWS\system32\Audiodev.dll - Microsoft Corporation - 便携媒体设备命令行解释器扩展 - 5.2.3802.3802 - 484352 - d56ea61a4265c0cd19764ed7b13c4b30
O31 - 未知 - SEApproved: {cc86590a-b60a-48e6-996b-41d25ed39a1e} - C:\WINDOWS\system32\Audiodev.dll - Microsoft Corporation - 便携媒体设备命令行解释器扩展 - 5.2.3802.3802 - 484352 - d56ea61a4265c0cd19764ed7b13c4b30
O31 - 未知 - SEApproved: {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - C:\Program Files\Real\RealPlayer\rpshell.dll - RealNetworks, Inc. - RealPlayer Shell Extensions - 1.0.1.2156 - 49198 - 9ac5a66c293fef3858f442589e4b33eb
O31 - 未知 - SEApproved: {1CDB2949-8F65-4355-8456-263E7C208A5D} - C:\WINDOWS\system32\nvshell.dll -  -  - 6.14.10.11010 - 466944 - 766bc8f56b557b44a0ce89e4c631831e
O31 - 未知 - SEApproved: {1E9B04FB-F9E5-4718-997B-B8DA88302A47} - C:\WINDOWS\system32\nvshell.dll -  -  - 6.14.10.11010 - 466944 - 766bc8f56b557b44a0ce89e4c631831e
O31 - 未知 - SEApproved: {1E9B04FB-F9E5-4718-997B-B8DA88302A48} - C:\WINDOWS\system32\nvshell.dll -  -  - 6.14.10.11010 - 466944 - 766bc8f56b557b44a0ce89e4c631831e
O31 - 未知 - SEApproved: {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll - Kaspersky Lab - Script Monitor Internet Explorer plugin - 6.0.0.299 - 184430 - 3f6db09f466b9e4f252549e62a21d6a5
O31 - 未知 - SEApproved: {07C45BB1-4A8C-4642-A1F5-237E7215FF66} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {1C1EDB47-CE22-4bbb-B608-77B48F83C823} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {205D7A97-F16D-4691-86EF-F3075DCCA57D} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {3028902F-6374-48b2-8DC6-9725E775B926} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {43886CD5-6529-41c4-A707-7B3C92C05E68} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {44C76ECD-F7FA-411c-9929-1B77BA77F524} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {4B78D326-D922-44f9-AF2A-07805C2A3560} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {6038EF75-ABFC-4e59-AB6F-12D397F6568D} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {6B4ECC4F-16D1-4474-94AB-5A763F2A54AE} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {6CF48EF8-44CD-45d2-8832-A16EA016311B} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {73CFD649-CD48-4fd8-A272-2070EA56526B} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {9D958C62-3954-4b44-8FAB-C4670C1DB4C2} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {B31C5FAE-961F-415b-BAF0-E697A5178B94} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {BC476F4C-D9D7-4100-8D4E-E043F6DEC409} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {E6EE9AAC-F76B-4947-8260-A9F136138E11} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {F2CF5485-4E02-4f68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - SEApproved: {FDE7673D-2E19-4145-8376-BBD58C4BC7BA} - C:\WINDOWS\system32\ieframe.dll - Microsoft Corporation - Internet Explorer - 7.0.6000.16608 - 6066176 -
O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 124416 - 1b089bd70767a1ca5419a24b581cc753
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -

=======================================

O40 - winlogon.exe - Kaspersky Lab - C:\WINDOWS\system32\klogon.dll - Logon Visualizer - 7072750eb5c0f0cd54b48f972855ca61
O40 - Explorer.EXE - NVIDIA Corporation - C:\WINDOWS\system32\NVRSZHC.DLL - NVIDIA Simplified Chinese language resource library - c52f4d63c1b889c4733163dfa5fe6429
O40 - Explorer.EXE -  - C:\WINDOWS\system32\nvshell.dll -  - 766bc8f56b557b44a0ce89e4c631831e
O40 - Explorer.EXE - Baidu.com, Inc. - C:\PROGRA~1\baidu\bar\BaiduBar.dll - BaiduBar Module - f082a992f1de45e8fd0eb1365f07cc4d
O40 - Explorer.EXE - Thunder Networking Technologies,LTD - C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll - XunLeiBHO - 8915c81b9c015cf5571fad917a614a85
O40 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scr_ch_pg.dll - Script Checker - c15736f474624083153ee37826a4001b
O40 - Explorer.EXE - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\klscav.dll - Script Checker AV Plugin - 65d848acdb0d41a6317726b7df376d92

=======================================

O41 - BdGuard - BDGUARD Dynamic Link Library - C:\WINDOWS\system32\drivers\BDGuard.SYS - (running) - BDGUARD Dynamic Link Library -  - d8ad2f959208197455aa4a2a67be9f69
O41 - kl1 - Kaspersky Unified Driver - C:\WINDOWS\system32\drivers\kl1.sys - (running) - Kaspersky Unified Driver - Kaspersky Lab - 5445b03cd42dedf5f85b9daf712fdd09
O41 - klif - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys - (running) - spuper-ptor - Kaspersky Lab - 2985985b39e13643f941b6396fb915dd
O41 - QKeyService - KeyCrypt - C:\WINDOWS\system32\KeyCrypt.sys - (running) - KeyCrypt -  Tencent Technology (Shenzhen) Company Limited - ecaa6d40a70bee079f3817601bec1692
O41 - a320raid - Adaptec HostRAID for Ultra320 SCSI - C:\WINDOWS\system32\drivers\a320raid.sys - (not running) - Adaptec HostRAID for Ultra320 SCSI - Adaptec, Inc. - 0532434d53314ee8858b7bfdbe761837
O41 - AAC - Adaptec RAID Miniport Driver - C:\WINDOWS\system32\drivers\aac.sys - (not running) - Adaptec RAID Miniport Driver - Adaptec, Inc. - f9ee3c7a185d121b145164cb10c057a7
O41 - aar1210 - Adaptec HostRAID for Serial ATA - C:\WINDOWS\system32\drivers\aar1210.sys - (not running) - Adaptec HostRAID for Serial ATA - Adaptec, Inc. - 316945ebc9398f222a6fff3d04d41fcb
O41 - aeaudio - Andrea Audio Noise Cancellation Driver - C:\WINDOWS\system32\drivers\aeaudio.sys - (not running) - Andrea Audio Noise Cancellation Driver - Andrea Electronics Corporation - 3cb6ae5435987b1f8c83fd2730479878
O41 - aec6210 - aec6210 - C:\WINDOWS\system32\drivers\AEC6210.sys - (not running) -  - ACARD Technology Corp. - 38e6c035e89fb8b079301e71b2523f3d
O41 - aec6260 - ID=0006, 0007 - C:\WINDOWS\system32\drivers\AEC6260.sys - (not running) - ID=0006, 0007 - ACARD Technology Corp. - db227bd0ba1f29bb38950f8fd97caa35
O41 - aec6280 - AEC6280 Miniport Driver - C:\WINDOWS\system32\drivers\AEC6280.SYS - (not running) - AEC6280 Miniport Driver - ACARD Technology Corp. - 71c3ab81b22c151a2e2ba97ec53430ca
O41 - AEC6290 - AEC6280 Miniport Driver - C:\WINDOWS\system32\drivers\AEC6290.SYS - (not running) - AEC6280 Miniport Driver - ACARD Technology Corp. - 71c3ab81b22c151a2e2ba97ec53430ca
O41 - AEC67160 - AEC67160 PCI Ultra3 LVD/SE Adapter Driver - C:\WINDOWS\system32\drivers\AEC67160.SYS - (not running) - AEC67160 PCI Ultra3 LVD/SE Adapter Driver - ACARD Technology Corp. - f2b276e8f4057dd1ba2bd40ecaf1ac57
O41 - AEC671X - AEC671X PCI Ultra/W SCSI3 Adapter Driver - C:\WINDOWS\system32\drivers\AEC671X.SYS - (not running) - AEC671X PCI Ultra/W SCSI3 Adapter Driver - ACARD Technology Corp. - 9493824293585203212d0157cb2430a7
O41 - AEC6880 - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver - C:\WINDOWS\system32\drivers\AEC6880.SYS - (not running) - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver - ACARD Technology Corp. - 415f252cee34bbf839acbcadb2bc85ce
O41 - AEC6890 - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver - C:\WINDOWS\system32\drivers\AEC6890.SYS - (not running) - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver - ACARD Technology Corp. - 415f252cee34bbf839acbcadb2bc85ce
O41 - aec68x5 - AEC6885/95/96 PCI ATA133 4 Channel RAID Adapter Driver - C:\WINDOWS\system32\drivers\aec68X5.sys - (not running) - AEC6885/95/96 PCI ATA133 4 Channel RAID Adapter Driver - ACARD Technology Corp. - 6275261ebb499358ff5c5cf901f7ad6c
O41 - ALCXSENS - Sensaura WDM 3D Audio Driver - C:\WINDOWS\system32\drivers\ALCXSENS.SYS - (not running) - Sensaura WDM 3D Audio Driver - Sensaura - ba88534a3ceb6161e7432438b9ea4f54
O41 - FASTSX - Promise FastTRAK SX4/SX4000 Driver for WindowsXP - C:\WINDOWS\system32\drivers\fastsx.sys - (not running) - Promise FastTRAK SX4/SX4000 Driver for WindowsXP - Promise Technology, Inc. - 21ab10bc1c78a68cdf0cbd304dbfb7fa
O41 - fasttrak - Promise FastTrak Series Driver for WinXP - C:\WINDOWS\system32\drivers\fasttrak.sys - (not running) - Promise FastTrak Series Driver for WinXP - Promise Technology, Inc. - eb1c078d99cc081c1d2ae3a19e2284cc
O41 - fasttx2k - Promise Driver for Windows XP - C:\WINDOWS\system32\drivers\fasttx2k.sys - (not running) - Promise Driver for Windows XP - Promise Technology, Inc. - 5d95724d3c3923449c02be1106657bcd
O41 - fasttx2k2 - Promise FastTrak Series Driver for WindowsXP - C:\WINDOWS\system32\drivers\fasttx2k2.sys - (not running) - Promise FastTrak Series Driver for WindowsXP - Promise Technology, Inc. - c127946de07bbb00f69f78923577dae4
O41 - Hpt366 - ATAPI IDE Miniport Driver - C:\WINDOWS\system32\drivers\hpt366.sys - (not running) - ATAPI IDE Miniport Driver - Microsoft Corporation - 4e4c5dde3eb4e9392c9659818790ed6c
O41 - HPT371 - HPT3xx Miniport Driver - C:\WINDOWS\system32\drivers\hpt371.sys - (not running) - HPT3xx Miniport Driver - HighPoint Technologies, Inc. - cac96d5be76a3d20c41759b12167c09b
O41 - hpt374 - HPT374 Miniport Driver - C:\WINDOWS\system32\drivers\hpt374.sys - (not running) - HPT374 Miniport Driver - HighPoint Technologies, Inc. - ccee236589335d118e22d0fe400233a6
O41 - hpt3xx - HPT3xx Miniport Driver - C:\WINDOWS\system32\drivers\hpt3xx.sys - (not running) - HPT3xx Miniport Driver - HighPoint Technologies, Inc. - 9f2dfe54317b1cd38143686935a278d9
O41 - hptmv - hptmv Miniport Driver - C:\WINDOWS\system32\drivers\hptmv.sys - (not running) - hptmv Miniport Driver - HighPoint Technologies, Inc. - 4f92f14095d52ca870039b192a3319b0
O41 - hptpro - Hptpro - C:\WINDOWS\system32\drivers\hptpro.sys - (not running) - Hptpro - HighPoint Technologies, Inc. - 977716f8a6edda986fdb41de52bdb689
O41 - iaStor - Intel Application Accelerator driver - C:\WINDOWS\system32\drivers\iastor.sys - (not running) - Intel Application Accelerator driver - Intel Corporation - bdce6b54e1d7d8399175a83a02274b7a
O41 - m5228 - M5228 ATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5228.sys - (not running) - M5228 ATA RAID Controller Driver - ALi Corporation. - 4bc8aa133cdb516392ac76d9948138bc
O41 - m5281 - M5281 SATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5281.sys - (not running) - M5281 SATA RAID Controller Driver - ALi Corporation - 3bb7e4f0d880c57b75ab2197f6e21897
O41 - mraid2k - MEGARAID SCSI Controller Driver for Windows 2000 PAE - C:\WINDOWS\system32\drivers\MRAID2K.SYS - (not running) - MEGARAID SCSI Controller Driver for Windows 2000 PAE - American Megatrends, Inc. - a7bb113a38b04c0296bfa76b41d92f95
O41 - npkcrypt - npkcrypt - C:\WINDOWS\system32\npkcrypt.sys - (not running) -  -  -
O41 - npkycryp - npkycryp - C:\WINDOWS\system32\npkycryp.sys - (not running) -  -  -
O41 - NvAtaBus - NVIDIA? nForce(TM) IDE Performance Driver - C:\WINDOWS\system32\drivers\NvAtaBus.sys - (not running) - NVIDIA? nForce(TM) IDE Performance Driver - NVIDIA Corporation - a1f88223528aadbb6374132becbbdcc1
O41 - PNP649R - IDE RAID miniport driver - C:\WINDOWS\system32\drivers\PnP649r.sys - (not running) - IDE RAID miniport driver - CMD Technology, Inc. - 5a5a6a1003eecd15df2f383972e86188
O41 - Pnp680 - DMA capable ATA miniport driver - C:\WINDOWS\system32\drivers\Pnp680.sys - (not running) - DMA capable ATA miniport driver - Silicon Image, Inc. - 023657a82e76ad98f3fafbd1ec425a71
O41 - Pnp680r - DMA capable ATA RAID miniport driver  - C:\WINDOWS\system32\drivers\PnP680r.sys - (not running) - DMA capable ATA RAID miniport driver  - Silicon Image, Inc - a1d7a9214b71ebbb6f31cb84aac15525
O41 - RAIDSRC - Intel(r)/ICP Miniport Driver - C:\WINDOWS\system32\drivers\raidsrc.sys - (not running) - Intel(r)/ICP Miniport Driver - Intel/ICP - 4ba4a4ac184ed0cf15faa62e2375883f
O41 - S150SX8 - Promise SATAII150 SX8 Driver for WindowsXP - C:\WINDOWS\system32\drivers\S150sx8.sys - (not running) - Promise SATAII150 SX8 Driver for WindowsXP - Promise Technology, Inc. - 13d1e68b006ae72276079f5fcbe5a471
O41 - SI3112 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3112.sys - (not running) - Serial ATA miniport driver - Silicon Image, Inc. - 77f5cf403657f5086df7f4ed1f497cbb
O41 - SI3112r - Serial ATA RAID Miniport Driver - C:\WINDOWS\system32\drivers\Si3112r.sys - (not running) - Serial ATA RAID Miniport Driver - Silicon Image, Inc - d89dde61753a3b5d64e15a1a925588cc
O41 - SI3114 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3114.sys - (not running) - Serial ATA miniport driver - Silicon Image, Inc. - 9c67403714df81c8bdf177ce440c9d84
O41 - SI3114r - SATARAID Miniport Driver - C:\WINDOWS\system32\drivers\Si3114r.sys - (not running) - SATARAID Miniport Driver - Silicon Image, Inc - 53ee85fa0b48eb64031a190adf23c8d8
O41 - SI3124 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3124.sys - (not running) - Serial ATA miniport driver - Silicon Image, Inc. - da09038c6d12cf69031b515741250f7b
O41 - SI3124r - SATARAID miniport driver (PRE-RELEASE) - C:\WINDOWS\system32\drivers\Si3124r.sys - (not running) - SATARAID miniport driver (PRE-RELEASE) - Silicon Image, Inc - 0c71855057883e63ca2c19736cbab018
O41 - SiFilter - Windows Accelerator Driver - C:\WINDOWS\system32\drivers\SiWinAcc.sys - (not running) - Windows Accelerator Driver - Silicon Image, Inc. - 1582e88c6f340627247b1ecd00fa84fe
O41 - SISIDE - SiS PCI Mini IDE Driver - C:\WINDOWS\system32\drivers\siside.sys - (not running) - SiS PCI Mini IDE Driver - Silicon Integrated Systems Corp. - b4485881bd8aed9b157a2e6cf43c2d51
O41 - SiSRaid - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\sisraid.sys - (not running) - SiS RAID Miniport Driver - Silicon Integrated Systems - 4c597e4de6edf6453990059ba0eac7d0
O41 - SiSRaid1 - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\sisraid1.sys - (not running) - SiS RAID Miniport Driver - Silicon Integrated Systems - 52192d1a30ae56a203c047213b0f596b
O41 - SISRAIDS - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\SISRAIDS.SYS - (not running) - SiS RAID Miniport Driver - Silicon Integrated Systems Corp - 46cecd8f57e63bdb9d6c9f130be2d97c
O41 - smwdm - SoundMAX Integrated Digital Audio  - C:\WINDOWS\system32\drivers\smwdm.sys - (not running) - SoundMAX Integrated Digital Audio  - Analog Devices, Inc. - bf2c8d0875d669bd64726fcf24099aba
O41 - sptrak - Promise SuperTrak Family Driver for WindowsNT - C:\WINDOWS\system32\drivers\Sptrak.sys - (not running) - Promise SuperTrak Family Driver for WindowsNT - Promise Technology, Inc. - b04bdc24f80ecb319f64189194399989
O41 - SYMMPI - LSI Logic Fusion-MPT MiniPort Driver (ScsiPort) - C:\WINDOWS\system32\drivers\symmpi.sys - (not running) - LSI Logic Fusion-MPT MiniPort Driver (ScsiPort) - LSI Logic - 3adffb39782474652f4ea2cf1345b340
O41 - TesSafe - TesSafe NT Driver - C:\WINDOWS\system32\TesSafe.sys - (not running) - TesSafe NT Driver - TENCENT - 14fe65e8752252acd5b177dddc4308ee
O41 - ULSATAS - Promise SATAII150 Series Driver for Win2003 - C:\WINDOWS\system32\drivers\ulsatas.sys - (not running) - Promise SATAII150 Series Driver for Win2003 - Promise Technology, Inc. - 0c5583d3bb02e78e639eac234e97d515
O41 - viamraid - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - C:\WINDOWS\system32\drivers\viamraid.sys - (not running) - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - VIA Technologies inc,.ltd - f199939205dccc7836ae5ab8b5dd5e83
O41 - viapdsk - VIA VT4149 PATA Driver - C:\WINDOWS\system32\drivers\viapdsk.sys - (not running) - VIA VT4149 PATA Driver - VIA Technologies, Inc. - f314359357b6960eb727620470ffc9cf
O41 - viaraid - VT6410 RAID DRIVER FOR WINXP - C:\WINDOWS\system32\drivers\viaraid.sys - (not running) - VT6410 RAID DRIVER FOR WINXP - VIA Technologies inc,.ltd - 29d02cee410d4ed80014bbf0fc98bd2d
O41 - viasraid - VIA SATA RAID DRIVER FOR WINXP - C:\WINDOWS\system32\drivers\viasraid.sys - (not running) - VIA SATA RAID DRIVER FOR WINXP - VIA Technologies inc,.ltd - ebe101c01d80a42868f57b327be1b564
O41 - vmscsi - VMware SCSI Controller - C:\WINDOWS\system32\drivers\vmscsi.sys - (not running) - VMware SCSI Controller - VMware, Inc. - cd8a1f04836111dc0e6c0cd904b3c660

=======================================
360Safe.exe=4.0.3.1007
AntiAdwa.dll=4.0.0.1002
AntiEng.dll=4.0.0.1001
AntiActi.dll=2.0.0.3000
CleanHis.dll=4.0.0.1001
safelive.exe=1.0.0.2007
live.dll=1.0.1.1023

=======================================
操作历史报告:

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基7.0
最新免费下载:http://www.360safe.com
点击此处查看原文、参与讨论
固定链接┆ 评论(1)┆阅读(70)
标题: 漏洞下载了但提示无法安装 收起 
2008-03-19 09:42:53
帖子标题:
漏洞下载了但提示无法安装

帖子内容:
现象:
历史操作:无法安装,怎么办
谁会快来帮帮忙

备注:

我的诊断报告:
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2008-03-07  22:50:56
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180 Build:62900.2180
计算机物理内存:511.36MB - 当前可用内存:194.66MB

R0 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.baidu.com/
O2 - 未知 - BHO: (ThunderAtOnce Class) - [迅雷浏览器高级特性支持模块] - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll
O8 - 未知 - Extra context menu item: 使用迅雷下载 - C:\Program Files\Thunder\Program\geturl.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载全部链接 - C:\Program Files\Thunder\Program\getallurl.htm
O9 - 未知 - Extra button: 启动迅雷5(HKLM) - C:\Program Files\Thunder Network\Thunder\Thunder.exe
O9 - 未知 - Extra button: 浩方对战平台(HKLM) - E:\硬盘游戏\h浩方\安装程序\浩方对战平台 Loader V1.25c 优化绿色版 完美免踢_直接关闭窗口.asp\HFGameOPT\GameClient.exe
O23 - 未知 - Service: 3wareSrv [3ware Controller Service] - C:\WINDOWS\System32\3wareSrv.exe - (not running)
O23 - 未知 - Service: AVP [保护计算机远离病毒、间谍软件、黑客攻击、计算机犯罪和垃圾邮件.] - D:\卡巴斯基\avp.exe -r - (running)

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: 360tray.exe [360安全卫士实时保护模块] - D:\360安全卫士\360safe\safemon\360tray.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32\ctfmon.exe
100 - 安全 - Process: Thunder5.exe [迅雷P2P下载软件。] - C:\Program Files\Thunder\Program\Thunder5.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] - C:\WINDOWS\system32\nvsvc32.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] - C:\WINDOWS\system32\wdfmgr.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - D:\360安全卫士\360safe\360safe.exe
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=about:blank
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=about:blank
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [racer] [网通客户端相关程序。] C:\Program Files\racer-ccn-racerpc-ha\racer.exe
O4 - 安全 - HKLM\..\Run: [360Safetray] [360safe实时保护功能模块。] D:\360安全卫士\360safe\safemon\360tray.exe /start
O4 - 安全 - HKLM\..\Run: [Thunder] [迅雷下载器软件相关程序。] "C:\Program Files\Thunder\Thunder.exe" /s
O4 - 安全 - HKLM\..\Run: [AVP] [卡巴斯基杀毒软件相关程序。] "D:\卡巴斯基\avp.exe"
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - D:\卡巴斯基\scieplugin.dll
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\WINDOWS\system32\nvsvc32.exe - (running)

=======================================

O31 - 未知 - Notify: klogon - C:\WINDOWS\system32\klogon.dll - Kaspersky Lab - Logon Visualizer - 6.0.2.621 - 200768 - 2fb94ab158eb54a2212c8087b7e72340
O31 - 未知 - SEApproved: {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Shell extensions for file compression -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:加密上下文菜单 -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {0DF44EAA-FF21-4412-828E-260A8728E7F1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {7A9D77BD-5403-11d2-8785-2E0420524153} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {143A62C8-C33B-11D1-84FE-00C04FA34A14} - C:\WINDOWS\msagent\AgentPsh.dll - Microsoft Corporation - Microsoft Agent Property Sheet Handler - 2.0.0.2115 - 36864 - b4ac608ebf5a8fdefa2d635e83b7c0e8
O31 - 未知 - SEApproved: 无效的CLSID:Windows Media Player Play as Playlist Context Menu Handler -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Windows Media Player Burn Audio CD Context Menu Handler -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Windows Media Player Add to Playlist Context Menu Handler -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Portable Media Devices -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Portable Media Devices Menu -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 129024 - 47b2797941b4c6f9c233b09afa5f6298
O31 - 未知 - SEApproved: {A70C977A-BF00-412C-90B7-034C51DA2439} - C:\WINDOWS\system32\nvcpl.dll - NVIDIA Corporation - NVIDIA Display Properties Extension - 6.14.11.6375 - 8491008 -
O31 - 未知 - SEApproved: {FFB699E0-306A-11d3-8BD1-00104B6F7516} - C:\WINDOWS\system32\nvcpl.dll - NVIDIA Corporation - NVIDIA Display Properties Extension - 6.14.11.6375 - 8491008 -
O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 129024 - 47b2797941b4c6f9c233b09afa5f6298
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -

=======================================

O40 - winlogon.exe - Kaspersky Lab - C:\WINDOWS\system32\klogon.dll - Logon Visualizer - 2fb94ab158eb54a2212c8087b7e72340
O40 - Explorer.EXE - Kaspersky Lab - D:\卡巴斯基\scrchpg.dll - Script Checker - 632a777961e99cb61b28599555a2f7a7

=======================================

O41 - aaatimeo - SRB Timout Control Driver - C:\WINDOWS\system32\drivers\aaatimeo.sys - (running) - SRB Timout Control Driver - Microsoft Corporation - 700eedfd930871e73999e86e86b6e2e4
O41 - AFAMgt - Dell Management Driver - C:\WINDOWS\system32\drivers\afamgt.sys - (running) - Dell Management Driver - Adaptec, Inc. - f08fa97a7eaea09390e743b3fe3468ab
O41 - ahcix86 - ATI Technology AHCI Compatible Controller Driver for Windows family - C:\WINDOWS\system32\drivers\ahcix86.sys - (running) - ATI Technology AHCI Compatible Controller Driver for Windows family - ATI Technologies Inc. - f1b9e3a223ca684d98bb91fd82157601
O41 - amdbusdr - AMD IDE Bus Driver - C:\WINDOWS\system32\drivers\AmdBusDr.sys - (running) - AMD IDE Bus Driver - AMD - eb7fa9d456b37c80e87f2957bb0ba066
O41 - amdeide - AMD IDE Miniport Driver - C:\WINDOWS\system32\drivers\AmdEide.sys - (running) - AMD IDE Miniport Driver - AMD - 3733b54ceadaddde88f0c30413ea9207
O41 - ASH1205 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\ASH1205.sys - (running) - Serial ATA miniport driver - Silicon Image, Inc. - 83409d0f9c886db038dcc4d377955c6a
O41 - ata1200a - ATA1200A Miniport Driver - C:\WINDOWS\system32\drivers\ata1200a.sys - (running) - ATA1200A Miniport Driver - Adaptec, Inc. - 0193b0f844d08563d4c546798a4a6071
O41 - atiide - ATI PCI BUS MASTER IDE Controller Driver - C:\WINDOWS\system32\drivers\atiide.sys - (running) - ATI PCI BUS MASTER IDE Controller Driver - ATI Technologies Inc. - 15fc040d4e946ba968ba83d49d8ad151
O41 - bb-run - Promise Disk Accelerator - C:\WINDOWS\system32\drivers\bb-run.sys - (running) - Promise Disk Accelerator - Promise Technology, Inc. - 7270d070173b20ac9487ea16bb08b45f
O41 - cercsr6 - DELL CERC SATA1.5/6ch Miniport Driver - C:\WINDOWS\system32\drivers\cercsr6.sys - (running) - DELL CERC SATA1.5/6ch Miniport Driver - Adaptec, Inc. - b4dda22fcba9af3eb5f6b58a671a447d
O41 - Cpq32fs2 - Hewlett-Packard 32-Bit SCSI-2 Controllers SCSI Miniport Driver - pnp - C:\WINDOWS\system32\drivers\CPQ32FS2.SYS - (running) - Hewlett-Packard 32-Bit SCSI-2 Controllers SCSI Miniport Driver - pnp - Hewlett-Packard Company - e6c48d714d083d5bd078aa12b826a2c9
O41 - dontgo - Promise Removable Disk Control - C:\WINDOWS\system32\drivers\dontgo.sys - (running) - Promise Removable Disk Control - Promise Technology, Inc. - ee1cf616037552f4e75fd6592d0677b6
O41 - fttxr52P - Promise FastTRAK TX4200/TX4300 Driver for Windows family - C:\WINDOWS\system32\drivers\fttxr52P.sys - (running) - Promise FastTRAK TX4200/TX4300 Driver for Windows family - Promise Technology, Inc. - 449e63b8cf7935df63fc4576ee0f1fc8
O41 - HpCISSm2 - Smart Array SAS/SATA Controller Scsiport Driver - C:\WINDOWS\system32\drivers\HpCISSm2.sys - (running) - Smart Array SAS/SATA Controller Scsiport Driver - Hewlett-Packard Company - f574e2f0da565eb7953426bd08c77642
O41 - iaStor55 - Intel Matrix Storage Manager driver - C:\WINDOWS\system32\drivers\iaStor55.sys - (running) - Intel Matrix Storage Manager driver - Intel Corporation - 309c4d86d989fb1fcf64bd30dc81c51b
O41 - klif - spuper-ptor - C:\WINDOWS\system32\drivers\klif.sys - (running) - spuper-ptor - Kaspersky Lab - 850db2e2e8f6588c6715cea4aa77419c
O41 - mv61xx - Marvell Thor and Odin Windows Driver - C:\WINDOWS\system32\drivers\mv61xx.sys - (running) - Marvell Thor and Odin Windows Driver - Marvell Semiconductor, Inc. - a1b3c2fbad3cf585c64065a3c64bea46
O41 - mvSata - MV88SX50XX/MV88SX60X1 WINDOWS 2000/XP/2003 driver - C:\WINDOWS\system32\drivers\mvsata.sys - (running) - MV88SX50XX/MV88SX60X1 WINDOWS 2000/XP/2003 driver - Marvell Semiconductors Inc. - 2c9ac0974bbc1bef1c9c24a3f1917a8e
O41 - NPF - npf - C:\WINDOWS\system32\drivers\npf.sys - (running) - npf - CACE Technologies - 2c19036687354db0ed375040afa0d735
O41 - nvgts - NVIDIA? nForce(TM) Sata Performance Driver - C:\WINDOWS\system32\drivers\nvgts.sys - (running) - NVIDIA? nForce(TM) Sata Performance Driver - NVIDIA Corporation - f0bf71e77bb6d96d0a34537d151b78d1
O41 - nvrd32 - NVIDIA? nForce(TM) RAID Driver - C:\WINDOWS\system32\drivers\nvrd32.sys - (running) - NVIDIA? nForce(TM) RAID Driver - NVIDIA Corporation - b42efd48258527426231b584a9b23b86
O41 - ql2100 - Miniport Driver for QLA2100 Adapter - C:\WINDOWS\system32\drivers\ql2100.sys - (running) - Miniport Driver for QLA2100 Adapter - QLogic Corporation - f45653edd1fad90b2e3d97d5978f8b09
O41 - ql2200 - Miniport Driver for QLA2200 Adapter - C:\WINDOWS\system32\drivers\ql2200.sys - (running) - Miniport Driver for QLA2200 Adapter - QLogic Corporation - dae89cadc5ad026f5f0b15baf2a5837b
O41 - SiRemFil - Filter driver for Silicon Image SATALink controllers. - C:\WINDOWS\system32\drivers\SiRemFil.sys - (running) - Filter driver for Silicon Image SATALink controllers. - Silicon Image, Inc. - 41a59f484188be629087ba391ff60d74
O41 - sisraidx - SiS RAID Miniport Driver - C:\WINDOWS\system32\drivers\sisraidx.sys - (running) - SiS RAID Miniport Driver - Silicon Integrated Systems Corp. - 5ddfc6750d2d65a3d43aa7021c4efc28
O41 - ViBus - VIA SATA IDE Driver - C:\WINDOWS\system32\drivers\ViBus.sys - (running) - VIA SATA IDE Driver - VIA Technologies, Inc. - fd85c55b66797542a8c8a7348ed0675a
O41 - videX32 - VIA Generic PCI IDE Bus Driver - C:\WINDOWS\system32\drivers\videX32.sys - (running) - VIA Generic PCI IDE Bus Driver - VIA Technologies, Inc. - f95c0fcfbcbda6d8f202d2df4052f88d
O41 - ViPrt - VIA SATA IDE Driver - C:\WINDOWS\system32\drivers\ViPrt.sys - (running) - VIA SATA IDE Driver - VIA Technologies, Inc. - 7c69b1b6dec5f8584aa352e522af1476
O41 - xfilt - ATA/ATAPI devices hot-plug monitor - C:\WINDOWS\system32\drivers\xfilt.sys - (running) - ATA/ATAPI devices hot-plug monitor - VIA Technologies,Inc - bec604cdc548a528ebd3d7aa1dd46a89
O41 - hptmv6 - hptmv6 Miniport Driver - C:\WINDOWS\system32\drivers\hptmv6.sys - (not running) - hptmv6 Miniport Driver - HighPoint Technologies, Inc. - ca91cb60e08f18f4d678b74040f7c58e
O41 - rr172x - rr172x Miniport Driver - C:\WINDOWS\system32\drivers\rr172x.sys - (not running) - rr172x Miniport Driver - HighPoint Technologies, Inc. - a203f18d51cebdf181f6259c6bed5842
O41 - rr174x - rr174x Miniport Driver - C:\WINDOWS\system32\drivers\rr174x.sys - (not running) - rr174x Miniport Driver - HighPoint Technologies, Inc. - 3744bfaf89093d47f64e47a94073fe1b
O41 - rr2340 - RR2340 Miniport Driver - C:\WINDOWS\system32\drivers\rr2340.sys - (not running) - RR2340 Miniport Driver - HighPoint Technologies, Inc. - 4d53eca8b80101685be689031672b0b9

=======================================
360Safe.exe=4.0.3.1008
AntiAdwa.dll=4.0.0.1002
AntiEng.dll=4.0.0.1001
AntiActi.dll=2.0.0.3000
CleanHis.dll=4.0.0.1001
live.dll=1.0.1.1024

=======================================
操作历史报告:

----------全面诊断修复历史----------

2008-03-07 22:39
100 - 未知 - racer.exe - C:\Program Files\racer-ccn-racerpc-ha\racer.exe
100 - 未知 - RacerKp.exe - C:\Program Files\racer-ccn-racerpc-ha\RacerKp.exe
O2 - 未知 - 浏览器辅助对象(BHO) -
2008-03-07 22:40
R1 - 未知 - 启用备用搜索引擎 - HKCU\Software\Microsoft\Internet Explorer\Main
2008-03-07 22:40
O15 - 未知 - 信任网站 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\221.208.242.29
O15 - 未知 - 信任网站 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\221.208.250.138
O15 - 未知 - 信任网站 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\cncmax.hl.cn
O15 - 未知 - 信任网站 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\cncmax.tj.cn
O15 - 未知 - 信任网站 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\passport.cncmax.cn
2008-03-07 22:40
O28 - 未知 - IE链接的参数 - C:\DOCUME~1\ADMINI~1\APPLIC~1\MICROS~1\INTERN~1\QUICKL~1\启动IN~1.LNK
2008-03-07 22:40
O23 - 未知 - 3wareSrv - C:\WINDOWS\System32\3wareSrv.exe

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基7.0
最新免费下载:http://www.360safe.com
点击此处查看原文、参与讨论
固定链接┆ 评论(0)┆阅读(100)
标题: 有网页弹出怎么办啊 收起 
2008-03-19 09:41:55
帖子标题:
有网页弹出怎么办啊

帖子内容:
现象:
历史操作:没装什么软件啊
就是下了些东西
它的网址是变换的

备注:

我的诊断报告:
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2008-03-07  23:35:58
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180 Build:62900.2180
计算机物理内存:511.48MB - 当前可用内存:176.88MB

O6 - 低危险 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel
O6 - 低危险 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions
100 - 未知 - Process: RavTask.exe [RavTimer] - F:\Program Files\Rising\Rav\RavTask.exe
100 - 未知 - Process: RsAgent.exe [RsAgent Application] - F:\Program Files\Rising\Rav\RsAgent.exe
100 - 未知 - Process: Rav.exe [Rising Antivirus 2008] - F:\Program Files\Rising\Rav\RAV.EXE
100 - 未知 - Process: RavMonD.exe [Rising Realtime Moniter] - F:\PROGRAM FILES\RISING\RAV\ravmond.exe
100 - 未知 - Process: RavMon.exe [Rising realtime monitor shell] - F:\Program Files\Rising\Rav\RAVMON.EXE
100 - 未知 - Process: RavStub.exe [Rising RavStub] - F:\PROGRAM FILES\RISING\RAV\RavStub.exe
100 - 未知 - Process: rfwProxy.exe [Rising Personal Proxy Service] - f:\Program Files\Rising\Rfw\rfwProxy.exe
100 - 未知 - Process: QQ.exe [] -
100 - 未知 - Process: TXPlatform.exe [TM2008] - C:\Program Files\Tencent\QQ\TXPlatform.exe
R0 - 未知 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL=about:blank
O2 - 未知 - BHO: (ThunderAtOnce Class) - [迅雷浏览器高级特性支持模块] - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll
O4 - 未知 - HKLM\..\Run: [SkyTel] [Realtek Voice  Manager] SkyTel.EXE
O4 - 未知 - HKLM\..\Run: [Adobe Reader Speed Launcher] [Adobe Acrobat SpeedLauncher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - 未知 - HKLM\..\RunOnce: [KKDelay] [RunOnce Application] F:\工具\卡卡网上助手\RunOnce.exe
O4 - 未知 - HKLM\..\Run: [ccwl] [] rundll32.exe C:\WINDOWS\system32\ccwld16_080305.dll start
O4 - 未知 - HKCU\..\Run: [ShengDianGou] [省电狗 版本1.31] F:\工具\省电狗\sdg\shengdiangou.exe
O4 - 未知 - Startup folder: [msword.lnk] [] C:\Documents and Settings\All Users\「开始」菜单\程序\启动\msword.lnk
O8 - 未知 - Extra context menu item: 使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\geturl.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\getallurl.htm
O8 - 未知 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\QQ\AddEmotion.htm
O9 - 未知 - Extra button: 浩方对战平台(HKLM) - F:\工具\浩方对战平台\GameClient.exe
O16 - 未知 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - 未知 - DPF: {1E0DFFCF-27FF-4574-849B-55007349FEDA} (iTrusPTA) - https://img.alipay.com/download/1101/aliedit.cab
O23 - 未知 - Service: ccosm [Contrl Center of Storm Media] - C:\Program Files\StormII\stormliv.exe /asservice - (not running)
O23 - 未知 - Service: RsCCenter [Rising Process Communication Center] - "F:\Program Files\Rising\Rav\CCenter.exe" - (running)
O23 - 未知 - Service: RsRavMon [Rising RealTime Monitor] - "F:\PROGRAM FILES\RISING\RAV\Ravmond.exe" - (not running)
O23 - 未知 - Service: RfwService [Rising Personal Firewall Service] - f:\Program Files\Rising\Rfw\rfwsrv.exe - (not running)
O23 - 未知 - Service: RfwProxySrv [Rising Personal Proxy Service] - f:\Program Files\Rising\Rfw\rfwProxy.exe - (running)

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: CCenter.exe [瑞星杀毒软件控制台相关程序。] - F:\Program Files\Rising\Rav\CCenter.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: ChannelRg.exe [还原精灵的一个服务,该文件夹中还有diskid32.dll和PizzaSvr.exe等文件,还原精灵6.0的程序的一个部件. ] - C:\Program Files\Common Files\GoldenSoft\ChannelRg.exe
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] - C:\WINDOWS\system32\nvsvc32.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: agentsvr.exe [是一个ActiveX插件,用于多媒体程序。] - C:\WINDOWS\msagent\AgentSvr.exe -Embedding
100 - 安全 - Process: RTHDCPL.EXE [瑞昱出品的声卡相关程序。] - C:\WINDOWS\RTHDCPL.EXE
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32\ctfmon.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] - C:\WINDOWS\system32\conime.exe
100 - 安全 - Process: rundll32.exe [windows rundll32为了需要调用dlls的程序。] - C:\WINDOWS\system32\rundll32.exe
100 - 安全 - Process: IEXPLORE.EXE [microsoft internet explorer浏览器用于浏览网页。] - C:\program files\internet explorer\iexplore.exe
100 - 安全 - Process: 360tray.exe [360安全卫士实时监控程序。] - C:\Program Files\360safe\safemon\360Tray.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士相关程序。] - C:\Program Files\360safe\360safe.exe
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll
O3 - 安全 - Toolbar: (卡卡上网安全助手) - [卡卡安全助手工具条软件相关程序。] - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\kakatool.dll
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [nwiz] [是NVidia的Nview特性相关程序。该程序用于用户对其特性进行配置,将桌面扩展到多台显示器上。 ] nwiz.exe /install
O4 - 安全 - HKLM\..\Run: [NvMediaCenter] [是NVidia显示卡相关文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - 安全 - HKLM\..\Run: [360Safetray] [360safe实时保护功能模块。] C:\Program Files\360safe\safemon\360Tray.exe /start
O4 - 安全 - HKLM\..\Run: [RTHDCPL] [realtek声卡特性设置软件相关程序。] RTHDCPL.EXE
O4 - 安全 - HKLM\..\Run: [Alcmtr] [一款声卡相关程序。] ALCMTR.EXE
O4 - 安全 - HKLM\..\Run: [runeip] [卡卡上网安全助手相关程序。] "F:\工具\卡卡网上助手\runiep.exe" /startup
O4 - 安全 - HKLM\..\Run: [RavTask] [瑞星杀毒软件的任务计划程序。] "F:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - 安全 - HKLM\..\Run: [RfwMain] [瑞星防火墙程序,抵御黑客攻击。] "f:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - 安全 - HKLM\..\RunOnce: [Rfw] [瑞星企业级防火墙] "f:\Program Files\Rising\Rfw\Update\Setup.exe" /UPDATE /ONCE
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O16 - 安全 - DPF: {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} (招商银行个人版) - https://site.cmbchina.com/download/CMBEdit.cab
O16 - 安全 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (Windows升级工具V5) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1156754453019
O16 - 安全 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Flash播放器) - http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O21 - 安全 - Protocol Icons: HKCR\http\shell\open\command - "C:\Program Files\internet explorer\iexplore.exe" "%1"
O21 - 安全 - Protocol Icons: HKCR\ftp\shell\open\command - "C:\Program Files\internet explorer\iexplore.exe" "%1"
O21 - 安全 - Protocol Icons: HKCR\https\shell\open\command - "C:\Program Files\internet explorer\iexplore.exe" "%1"
O21 - 安全 - Protocol Icons: HKCR\htmlfile\shell\open\command - "C:\Program Files\internet explorer\iexplore.exe" "%1"
O23 - 安全 - Service: ChannelRg [还原精灵的一个服务。] - C:\Program Files\Common Files\GoldenSoft\ChannelRg.exe - (running)
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\WINDOWS\system32\nvsvc32.exe - (running)

=======================================

O31 - 未知 - Folder Menu: {F9DB5320-233E-11D1-9F84-707F02C10627} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll - Adobe Systems, Inc. - PDF Shell Extension - 8.1.0.0 - 372736 - 2094bc9a0fc9c0e15eea5f4a9581dd14
O31 - 未知 - SEApproved: {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Shell extensions for file compression -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:加密上下文菜单 -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {0DF44EAA-FF21-4412-828E-260A8728E7F1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {7A9D77BD-5403-11d2-8785-2E0420524153} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 128512 - a6848472777fbcfa17236deb3f518d7c
O31 - 未知 - SEApproved: {1CDB2949-8F65-4355-8456-263E7C208A5D} - C:\WINDOWS\system32\nvshell.dll -  -  - 6.14.10.11044 - 466944 - 64b7edf5a424b25508be1026879ff6dc
O31 - 未知 - SEApproved: {1E9B04FB-F9E5-4718-997B-B8DA88302A47} - C:\WINDOWS\system32\nvshell.dll -  -  - 6.14.10.11044 - 466944 - 64b7edf5a424b25508be1026879ff6dc
O31 - 未知 - SEApproved: {1E9B04FB-F9E5-4718-997B-B8DA88302A48} - C:\WINDOWS\system32\nvshell.dll -  -  - 6.14.10.11044 - 466944 - 64b7edf5a424b25508be1026879ff6dc
O31 - 未知 - SEApproved: 无效的CLSID:Eazshell Extensions -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {6B19FEC2-A45B-11CF-9045-00A0C9039735} - C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin\IDE\DEVXPGL.DLL - Microsoft Corporation - Microsoft(R) Developer Studio Explorer Shell Extensions - 6.0.8168.0 - 65611 - bc953942ee7b7994eabedb710a42a84e
O31 - 未知 - SEApproved: {D545EBD1-BD92-11CF-8772-00A0C9039735} - C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin\IDE\DEVXPGL.DLL - Microsoft Corporation - Microsoft(R) Developer Studio Explorer Shell Extensions - 6.0.8168.0 - 65611 - bc953942ee7b7994eabedb710a42a84e
O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 128512 - a6848472777fbcfa17236deb3f518d7c
O31 - 未知 - BootExecute:  bsmain -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -

=======================================

O40 - Explorer.EXE - Beijing Rising Technology Co., Ltd. - C:\WINDOWS\system32\shlhook.dll - shlhook Module - 47c020cafb8486eb33061f7ccdf206b6
O40 - Explorer.EXE - Beijing Rising Technology Co., Ltd. - F:\工具\卡卡网上助手\ieprot.dll - IE Protector - c03fc56e7d933a2478f65ddb371353bb
O40 - Explorer.EXE -  - C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_01.dll - DsBho - 02ea7ad2a4d4cac3fe9f2d2889ee7d8a
O40 - Explorer.EXE - Thunder Networking Technologies,LTD - C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_01.dll - DataProcessor - 018219ae6f6ddcb24482ca7fc31ec587
O40 - Explorer.EXE - Adobe Systems, Inc. - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll - PDF Shell Extension - 2094bc9a0fc9c0e15eea5f4a9581dd14
O40 - Explorer.EXE - NVIDIA Corporation - C:\WINDOWS\system32\NVRSZHC.DLL - NVIDIA Simplified Chinese language resource library - c6dc3f24769092723c09a55c057af7bb
O40 - Explorer.EXE -  - C:\WINDOWS\system32\nvshell.dll -  - 64b7edf5a424b25508be1026879ff6dc
O40 - rundll32.exe -  - C:\WINDOWS\system32\ccwld16_080307.dll -  - db0589823ef7f81a90a721c830651d85
O40 - rundll32.exe - Beijing Rising Technology Co., Ltd. - F:\工具\卡卡网上助手\ieprot.dll - IE Protector - c03fc56e7d933a2478f65ddb371353bb

=======================================

O41 - ayfnxwee - ayfnxwee - C:\WINDOWS\system32\drivers\ayfnxwee.sys - (running) -  - Yahoo! China Corporation - 4e37a88d3fa05668058cc502772a372f
O41 - dtscsi - dtscsi - C:\WINDOWS\system32\drivers\dtscsi.sys - (running) -  -  -
O41 - FTSATA2 - Promise Driver for Windows Server 2003 - C:\WINDOWS\system32\drivers\ftsata2.sys - (running) - Promise Driver for Windows Server 2003 - Promise Technology, Inc. - 65b50b303ff74a5517117ba3d25dbe7f
O41 - kjmapakf - sys 应用程序 - C:\WINDOWS\system32\drivers\kjmapakf.sys - (running) - sys 应用程序 - 北京三七二一科技有限公司 - 5b9f4a9bdb7328bcfd08dc30ce805cc3
O41 - RsAntiSpyware - Anti-RootKit Driver - C:\WINDOWS\system32\drivers\RsBoot.sys - (running) - Anti-RootKit Driver - Beijing Rising Technology Co., Ltd. - f9edc97f228c046832a24b5a76017912
O41 - sptd - sptd - C:\WINDOWS\system32\drivers\sptd.sys - (running) -  -  -
O41 - A320RAID - Adaptec HostRAID for Ultra320 SCSI - C:\WINDOWS\system32\drivers\a320raid.sys - (not running) - Adaptec HostRAID for Ultra320 SCSI - Adaptec, Inc. - ec8c685100387d4a7a7be2dce922c6d3
O41 - ahci8086 - ATI Technology AHCI Compatible Controller Driver for Windows family - C:\WINDOWS\system32\drivers\ahci8086.sys - (not running) - ATI Technology AHCI Compatible Controller Driver for Windows family - ATI Technologies Inc. - 3162702a838386f7bc6f6b4711044cf2
O41 - CSB6IDE - ServerWorks CSB6 PCI IDE Bus Driver - C:\WINDOWS\system32\drivers\csb6ide.sys - (not running) - ServerWorks CSB6 PCI IDE Bus Driver - ServerWorks Corporation - 7a49f7091e79cc364d8df1c6ea845756
O41 - FASTTRAK - Promise FastTrak Series Driver for Win2000 - C:\WINDOWS\system32\drivers\fasttrak.sys - (not running) - Promise FastTrak Series Driver for Win2000 - Promise Technology, Inc. - d3a41b9167c11b0fa0cb7c61fc876982
O41 - IASTOR - Intel Matrix Storage Manager driver - C:\WINDOWS\system32\drivers\iastor.sys - (not running) - Intel Matrix Storage Manager driver - Intel Corporation - 580bfec487c55264bfe3d60c3c24eee1
O41 - JRAID - JMicron JR036X RAID Driver - C:\WINDOWS\system32\drivers\Jraid.sys - (not running) - JMicron JR036X RAID Driver - JMicron Technology Corp. - f64fc8ff777ca76a81c097df7641306d
O41 - ku0tn81t - ku0tn81t - C:\WINDOWS\System32\DRIVERS\ku0tn81t.sys - (not running) -  -  -
O41 - M5228 - M5228 ATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5228.sys - (not running) - M5228 ATA RAID Controller Driver - ALi Corporation. - 06c174e5c7845055c3d6317709af6423
O41 - M5281 - ALi SATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5281.sys - (not running) - ALi SATA RAID Controller Driver - ALi Corporation - a51cd61975297508d4483fcbf931d86c
O41 - M5289 - ULi SATA RAID Controller Driver - C:\WINDOWS\system32\drivers\m5289.sys - (not running) - ULi SATA RAID Controller Driver - ULi Electronics Inc. - e1ca1ea9ad7c8c50ea533829a6854d63
O41 - NPF - NPF - C:\WINDOWS\system32\drivers\npf.sys - (not running) -  -  -
O41 - npkcrypt - npkcrypt - C:\WINDOWS\system32\npkcrypt.sys - (not running) -  -  -
O41 - npkycryp - npkycryp - C:\WINDOWS\system32\npkycryp.sys - (not running) -  -  -
O41 - NVATABUS - NVIDIA? nForce(TM) IDE Performance Driver - C:\WINDOWS\system32\drivers\NVATABUS.SYS - (not running) - NVIDIA? nForce(TM) IDE Performance Driver - NVIDIA Corporation - b7fb72492b753930ec70a0f49d04f12f
O41 - SI3112R - Serial ATA RAID miniport driver - C:\WINDOWS\system32\drivers\Si3112r.sys - (not running) - Serial ATA RAID miniport driver - Silicon Image, Inc - c82f9b4993f502361067e3ab61d46f7a
O41 - SI3114R - SATARAID miniport driver - C:\WINDOWS\system32\drivers\Si3114r.sys - (not running) - SATARAID miniport driver - Silicon Image, Inc - d78d5bcf78d38cf846f1f1fdde718acc
O41 - SI3114R5 - SATA SoftRAID 5 miniport driver - C:\WINDOWS\system32\drivers\Si3114r5.sys - (not running) - SATA SoftRAID 5 miniport driver - Silicon Image, Inc - bf4177bfa0397c6a01ed493240318eae
O41 - SI3124 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3124.sys - (not running) - Serial ATA miniport driver - Silicon Image, Inc. - c48aaff4947d87ebf6c42d9fced3df7a
O41 - SI3124R - SATARAID miniport driver (PRE-RELEASE) - C:\WINDOWS\system32\drivers\Si3124r.sys - (not running) - SATARAID miniport driver (PRE-RELEASE) - Silicon Image, Inc - 0c71855057883e63ca2c19736cbab018
O41 - SI3124R5 - SATA SoftRAID 5 miniport driver - C:\WINDOWS\system32\drivers\Si3124r5.sys - (not running) - SATA SoftRAID 5 miniport driver - Silicon Image, Inc - 085200d2a56c58ad77ef733082cb6ad4
O41 - SI3132 - Serial ATA miniport driver - C:\WINDOWS\system32\drivers\Si3132.sys - (not running) - Serial ATA miniport driver - Silicon Image, Inc. - 6e42ca2af3516cda7f3776a186ca4f78
O41 - SI3132R5 - SATA SoftRAID 5 miniport driver - C:\WINDOWS\system32\drivers\Si3132r5.sys - (not running) - SATA SoftRAID 5 miniport driver - Silicon Image, Inc - 07adf4521fe169623cc13fc8303bb519
O41 - SYMMPI - LSI Logic Fusion-MPT MiniPort Driver (ScsiPort) - C:\WINDOWS\system32\drivers\symmpi.sys - (not running) - LSI Logic Fusion-MPT MiniPort Driver (ScsiPort) - LSI Logic - 10258f3ff6ebaa3e00f1ffb4724764d9
O41 - VIAMRAID - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - C:\WINDOWS\system32\drivers\viamraid.sys - (not running) - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - VIA Technologies inc,.ltd - f199939205dccc7836ae5ab8b5dd5e83
O41 - vmscsi - VMware SCSI Controller - C:\WINDOWS\system32\drivers\vmscsi.sys - (not running) - VMware SCSI Controller - VMware, Inc. - cd8a1f04836111dc0e6c0cd904b3c660

=======================================
360Safe.exe=4.0.3.1008
AntiAdwa.dll=4.0.0.1002
AntiEng.dll=4.0.0.1001
AntiActi.dll=2.0.0.3000
CleanHis.dll=4.0.0.1001
live.dll=1.0.1.1024

=======================================
操作历史报告:
----------清理恶评及系统插件历史----------

2008-03-02 17:00
清理恶评软件 - MY123/allxun/飘雪/飞雪 -
2008-03-05 13:06
清理恶评软件 - 百度超级搜霸 -
2008-03-07 22:08
清理恶评软件 - 流行木马残留文件 -
2008-03-07 22:52
清理恶评软件 - 迅雷下载组件 -

2008-03-02 16:40
清理恶评插件 - MY123/allxun/飘雪/飞雪 - C:\WINDOWS\system32\DRIVERS\ku0tn81t.sys
2008-03-02 16:42
清理其它插件 - TOM-Skype - C:\WINDOWS\system32\promote.dll
2008-03-05 12:54
清理其它插件 - 百度超级搜霸 - C:\PROGRA~1\baidu\bar\baidubar.dll
清理其它插件 - KooWo - C:\WINDOWS\system32\lylk.dat
清理其它插件 - 卡卡上网安全助手 - C:\WINDOWS\system32\kakatool.dll
2008-03-05 14:21
清理其它插件 - 迅雷下载组件 -
2008-03-07 22:05
清理恶评插件 - 流行木马残留文件 - C:\WINDOWS\system32\CCWLD1~1.DLL
2008-03-07 22:05
清理恶评插件 - 流行木马残留文件 - C:\WINDOWS\system32\CCWLD1~1.DLL
2008-03-07 22:23
清理其它插件 - 悠视网络电视 -
清理其它插件 - KooWo - C:\WINDOWS\system32\lylk.dat
清理其它插件 - 迅雷下载组件 - C:\PROGRA~1\THUNDE~1\Thunder\ComDlls\XUNLEI~4.DLL

----------全面诊断修复历史----------

2008-03-05 12:46
O2 - 未知 - ThunderAtOnce Class - C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll
2008-03-05 12:56
O2 - 安全 - BandIE Class - C:\PROGRA~1\baidu\bar\baidubar.dll
O3 - 安全 - 百度超级搜霸 - C:\PROGRA~1\baidu\bar\baidubar.dll
2008-03-05 14:23
O6 - 危险 - 禁止IE首页相关设置 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基7.0
最新免费下载:http://www.360safe.com
点击此处查看原文、参与讨论
固定链接┆ 评论(0)┆阅读(90)
标题: 怎么杀Trojan/Win32 收起 
2008-03-19 09:41:23
帖子标题:
怎么杀Trojan/Win32

帖子内容:
现象:
历史操作:复制了一个EXPLORER插件

备注: 我是菜鸟啊,请高手帮忙啊

我的诊断报告:
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2008-03-08  01:44:15
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V7.0.5730.11 Build:75730
计算机物理内存:511.23MB - 当前可用内存:263.00MB

100 - 未知 - Process: RavMonD.exe [Rising Realtime Moniter] - E:\RAV\RISING\RAV\ravmond.exe -step
100 - 未知 - Process: RavStub.exe [Rising RavStub] - E:\RAV\RISING\RAV\RavStub.exe /RAVMOND=1023
100 - 未知 - Process: stormliv.exe [暴风影音媒体控制中心] - E:\暴风影音\stormliv.exe /asservice
100 - 未知 - Process: smService.exe [] - C:\WINDOWS\system32\smService.exe
100 - 未知 - Process: RavMon.exe [Rising realtime monitor shell] - E:\RAV\RISING\RAV\RavMon.exe -SYSTEM
100 - 未知 - Process: RavTask.exe [RavTimer] - E:\Rav\Rising\Rav\RavTask.exe
100 - 未知 - Process: AntiArp.exe [360ARP防火墙] - E:\360\360safe\antiarp\AntiArp.exe
R0 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.baidu.com/
O1 - 未知 - Host: 127.0.0.2 localhost
O2 - 未知 - BHO: (ThunderAtOnce Class) - [迅雷浏览器高级特性支持模块] - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - E:\Thunder5.7.4.404\ComDlls\TDAtOnce_Now.dll
O8 - 未知 - Extra context menu item: 使用迅雷下载 - E:\Thunder5.7.4.404\Program\GetUrl.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载全部链接 - E:\Thunder5.7.4.404\Program\GetAllUrl.htm
O8 - 未知 - Extra context menu item: 添加到QQ表情 - E:\QQ\AddEmotion.htm
O9 - 未知 - Extra button: 启动迅雷5(HKLM) - E:\Thunder5.7.4.404\Thunder.exe
O9 - 未知 - Extra button: 番茄花园(HKLM) - http://www.tomatolei.com
O23 - 未知 - Service: ccosm [Contrl Center of Storm Media] - E:\暴风影音\stormliv.exe /asservice - (running)
O23 - 未知 - Service: idsvc [Securely enables the creation, management, and disclosure of digital identities.] - "C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe" - (error)
O23 - 未知 - Service: NetTcpPortSharing [Provides ability to share TCP ports over the net.tcp protocol.] - "C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe" - (not running)
O23 - 未知 - Service: RsCCenter [Rising Process Communication Center] - "e:\Rav\Rising\Rav\CCenter.exe" - (running)
O23 - 未知 - Service: RsRavMon [Rising RealTime Monitor] - "E:\RAV\RISING\RAV\Ravmond.exe" - (not running)
O23 - 未知 - Service: smService [smService] - C:\WINDOWS\system32\smService.exe - (running)
O28 - 未知 - IELINK: C:\DOCUME~1\ADMINI~1\「开始~1\程序\附件\系统工具\INTERN~1.LNK -  -extoff
O30 - 未知 - HKCU\..\Desktop: [Scrnsave.exe] [] C:\WINDOWS\system32\梦幻水~1.SCR

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: CCenter.exe [瑞星杀毒软件控制台相关程序。] - e:\Rav\Rising\Rav\CCenter.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: inetinfo.exe [microsoft internet infomation services (iis)的一部分,用于debug调试除错。] - C:\WINDOWS\system32\inetsrv\inetinfo.exe
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] - C:\WINDOWS\system32\nvsvc32.exe
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] - C:\WINDOWS\system32\wdfmgr.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32\ctfmon.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - E:\360\360safe\360Safe.exe
100 - 安全 - Process: 360tray.exe [360安全卫士实时保护模块] - E:\360\360safe\safemon\360Tray.exe
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page=http://go.microsoft.com/fwlink/?LinkId=69157
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL=http://go.microsoft.com/fwlink/?LinkId=69157
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-1DD2C5261283} - E:\Thunder5.7.4.404\ComDlls\xunleiBHO_Now.dll
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [RavTask] [瑞星杀毒软件的任务计划程序。] "e:\Rav\Rising\Rav\RavTask.exe" -system
O4 - 安全 - HKLM\..\Run: [360Antiarp] [360安全卫士ARP防火墙相关程序。] E:\360\360safe\antiarp\AntiArp.exe /start
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O4 - 安全 - Startup folder: [QQ游戏启动加速程序.lnk] [qq游戏启动加速相关程序。] C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O11 - 安全 - Options Group: International*
O16 - 安全 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Flash播放器) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\WINDOWS\system32\nvsvc32.exe - (running)
O25 - 安全 - ABOUT: DesktopItemNavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationCanceled - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: OfflineInformation - res://ieframe.dll/offcancl.htm
O25 - 安全 - ABOUT: PostNotCached - res://ieframe.dll/repost.htm

=======================================

O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 126464 - fbbab7ee3c52a35a24e6aeae024dd133
O31 - 未知 - BootExecute:  bsmain -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -

=======================================

O40 - Explorer.EXE - NVIDIA Corporation - C:\WINDOWS\system32\NVRSZHC.DLL - NVIDIA Simplified Chinese language resource library - a49c2d1c05ec8a9dc547dfac821dd1fc
O40 - Explorer.EXE -  - C:\WINDOWS\system32\nvshell.dll -  - 4450bbaf1b77f2b87ab9c5ee4e69532c
O40 - Explorer.EXE -  - E:\Thunder5.7.4.404\Components\ResWorker\DsBho_01.dll - DsBho - 02ea7ad2a4d4cac3fe9f2d2889ee7d8a
O40 - Explorer.EXE - Thunder Networking Technologies,LTD - E:\Thunder5.7.4.404\Components\ResWorker\DataProcessor_01.dll - DataProcessor - 018219ae6f6ddcb24482ca7fc31ec587

=======================================

O41 - QKeyService - KeyCrypt - C:\WINDOWS\system32\KeyCrypt.sys - (running) - KeyCrypt -  Tencent Technology (Shenzhen) Company Limited - ecaa6d40a70bee079f3817601bec1692
O41 - 360IceBreaker - 360IceBreaker - C:\WINDOWS\system32\drivers\360IceBreaker.sys - (not running) -  -  -
O41 - EagleNT - EagleNT - C:\WINDOWS\system32\drivers\EagleNT.sys - (not running) -  -  -
O41 - k3kifu3 - k3kifu3 - C:\WINDOWS\System32\DRIVERS\k3kifu3.sys - (not running) -  -  -
O41 - npkcrypt - npkcrypt - C:\Program Files\QQ2006\npkcrypt.sys - (not running) -  -  -
O41 - TesSafe - TesSafe NT Driver - C:\WINDOWS\system32\TesSafe.sys - (not running) - TesSafe NT Driver - TENCENT - 14fe65e8752252acd5b177dddc4308ee
O41 - VIAMRAID - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - C:\WINDOWS\system32\drivers\viamraid.sys - (not running) - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 - VIA Technologies inc,.ltd - f199939205dccc7836ae5ab8b5dd5e83

=======================================
360Safe.exe=4.0.3.1007
AntiAdwa.dll=4.0.0.1002
AntiEng.dll=4.0.0.1001
AntiActi.dll=2.0.0.3000
CleanHis.dll=4.0.0.1001
live.dll=1.0.1.1023

=======================================
操作历史报告:
----------清理恶评及系统插件历史----------

2007-12-22 11:42
清理恶评软件 - 迅雷下载组件 -
2008-02-29 12:55
清理恶评软件 - 百度超级搜霸 -
清理恶评软件 - MY123/allxun/飘雪/飞雪 -

2007-12-21 18:02
清理其它插件 - 迅雷下载组件 - E:\THUNDE~1.404\ComDlls\XUNLEI~2.DLL
2007-12-21 20:27
清理其它插件 - 迅雷下载组件 - E:\THUNDE~1.404\ComDlls\XUNLEI~2.DLL
2008-02-29 12:52
清理恶评插件 - vipxxxx木马程序 -
清理恶评插件 - MY123/allxun/飘雪/飞雪 - C:\WINDOWS\system32\DRIVERS\k3kifu3.sys
2008-02-29 12:52
清理恶评插件 - MY123/allxun/飘雪/飞雪 -
2008-02-29 12:53
清理其它插件 - 百度超级搜霸 - C:\PROGRA~1\baidu\bar\baidubar.dll
2008-02-29 12:53
清理其它插件 - 百度超级搜霸 - C:\PROGRA~1\baidu\bar\baidubar.dll
2008-02-29 15:56
清理其它插件 - QQ工具栏 -
清理其它插件 - 中文搜搜 - C:\PROGRA~1\TENCENT\SSPlus\SAddr.dll
清理其它插件 - 超级旋风下载组件 -
2008-02-29 15:56
清理其它插件 - 中文搜搜 -
2008-02-29 20:27
清理其它插件 - 中文搜搜 -
2008-03-02 10:54
清理其它插件 - KooWo - C:\WINDOWS\KwYl.dat
2008-03-06 17:11
清理其它插件 - KooWo - C:\WINDOWS\system32\lylk.dat

----------全面诊断修复历史----------

2008-02-29 15:57
100 - 未知 - QQ.exe - ?
2008-02-29 15:58
R0 - 安全 - IE默认搜索页 - HKLM\Software\Microsoft\Internet Explorer\Main

----------修复IE浏览器操作历史----------

2007-12-02 16:56
R0 - 危险 - IE首页 - HKCU\Software\Microsoft\Internet Explorer\Main
R0 - 危险 - IE搜索页 - HKCU\Software\Microsoft\Internet Explorer\Main
R1 - 危险 - IE起始页的默认页 - HKCU\Software\Microsoft\Internet Explorer\Main
R1 - 危险 - IE默认搜索页 - HKCU\Software\Microsoft\Internet Explorer\Main
R1 - 危险 - IE标题栏文字后缀 - HKLM\Software\Microsoft\Internet Explorer\Main
R1 - 危险 - IE标题栏文字后缀 - HKCU\Software\Microsoft\Internet Explorer\Main
O6 - 危险 - 禁止IE首页相关设置 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel
O6 - 危险 - 禁止IE相关功能 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions
O6 - 危险 - 禁止IE相关功能 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions
2007-12-09 20:47
O28 - 危险 - IE链接的参数 - C:\DOCUME~1\ADMINI~1\APPLIC~1\MICROS~1\INTERN~1\QUICKL~1\启动IN~1.LNK
2007-12-09 20:50
R0 - 危险 - IE首页 - HKCU\Software\Microsoft\Internet Explorer\Main

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基7.0
最新免费下载:http://www.360safe.com
点击此处查看原文、参与讨论
固定链接┆ 评论(0)┆阅读(142)
标题: http://gdclt.vnet.cn/UI/AdvertiseShowforNewVersion.aspx?怎么弄 收起 
2008-03-19 09:40:21
帖子标题:
http://gdclt.vnet.cn/UI/AdvertiseShowforNewVersion.aspx?怎么弄

帖子内容:
现象:
历史操作:用了很多东西都没用 我哭了

备注:

我的诊断报告:
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2008-03-08  09:09:22
诊断平台: Microsoft Windows XP  Service Pack 2
IE版本: Internet Explorer V7.0.5730.11 Build:75730
计算机物理内存:511.24MB - 当前可用内存:190.42MB

100 - 未知 - Process: PPSAP.exe [PPS 网络加速器] - E:\我的音乐\PPStream\ppsap.exe
100 - 未知 - Process: usnsvc.exe [Messenger Sharing USN Journal Reader Service] - C:\Program Files\Windows Live\Messenger\usnsvc.exe
100 - 未知 - Process: QQ.exe [QQ] - D:\QQ\QQ.exe
100 - 未知 - Process: QQ.exe [QQ] - D:\QQ\QQ.exe
100 - 未知 - Process: TXPlatform.exe [TM2008] - D:\QQ\TXPlatform.exe
100 - 未知 - Process: QQ.exe [QQ] - D:\QQ\QQ.exe
100 - 未知 - Process: my.exe [梦幻西游] - F:\新建文件夹\梦幻西游\my.exe
O2 - 未知 - BHO: (浏览器辅助对象(BHO)) - [无效的CLSID:{7E853D72-626A-48EC-A868-BA8D5E23E045}] - {7E853D72-626A-48EC-A868-BA8D5E23E045} -
O8 - 未知 - Extra context menu item: Foxy 下載 - res://E:\foxy\Foxy.exe/download.htm
O8 - 未知 - Extra context menu item: Foxy 搜尋 - res://E:\foxy\Foxy.exe/search.htm
O8 - 未知 - Extra context menu item: Foxy 穓碝 - res://E:\Foxy\Foxy.exe/search.htm
O8 - 未知 - Extra context menu item: Foxy 更 - res://E:\Foxy\Foxy.exe/download.htm
O8 - 未知 - Extra context menu item: 使用WEB迅雷下载 - C:\Program Files\Thunder Network\WebThunder\GetUrl.htm
O8 - 未知 - Extra context menu item: 使用WEB迅雷下载全部链接 - C:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm
O8 - 未知 - Extra context menu item: 添加到QQ表情 - D:\QQ\AddEmotion.htm
O9 - 未知 - Extra button: 浩方对战平台(HKLM) - D:\qq對戰平台\浩方对战平台\GameClient.exe
O9 - 未知 - Extra button: 启动WEB迅雷(HKLM) - http://my.xunlei.com
O18 - 未知 - Protocol: KuGoo - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\system32\KuGoo3DownXControl.ocx
O18 - 未知 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - C:\WINDOWS\system32\KuGoo3DownXControl.ocx
O18 - 未知 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - 未知 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O23 - 未知 - Service: usnjsvc [Messenger 上安装的启用共享情况的服务] - "C:\Program Files\Windows Live\Messenger\usnsvc.exe" - (running)
O23 - 未知 - Service: WLSetupSvc [Windows Live Setup Service] - "C:\Program Files\Windows Live\installer\WLSetupSvc.exe" - (not running)

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] - C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: 360tray.exe [360安全卫士实时保护模块] - E:\光线飞车\360safe\safemon\360tray.exe
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32\ctfmon.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: VnetClient.exe [vnet虚拟拨号软件,用于adsl宽带拨号。] - C:\Program Files\ChinaNet\VnetClient.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] - C:\WINDOWS\system32\conime.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - E:\光线飞车\360safe\360safe.exe
100 - 安全 - Process: realsched.exe [realone播放器安装时附带的升级提醒程序。] - C:\Program Files\Common Files\Real\Update_OB\realsched.exe
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL=http://go.microsoft.com/fwlink/?LinkId=69157
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\WINDOWS\system32\blank.htm
O2 - 安全 - BHO: (WebThunder Browser Helper) - [Web迅雷, 支持多资源超线程技术的下载工具。] - {00000AAA-A363-466E-BEF5-9BB68697AA7F} - C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_Now.dll
O2 - 安全 - BHO: (VnetCookie Class) - [星空极速, 拨号软件。] - {4E83D567-4697-4F7B-B1F0-A513B01DB89A} - c:\PROGRA~1\chinanet\VNETTR~1.DLL
O2 - 安全 - BHO: (Windows Live 登录帮助程序) - [windows live多用户登陆助手相关插件。] - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - 安全 - Toolbar: (StylerToolBar) - [一款名为StylerToolbar的美化调整工具栏的相关文件。] - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\WINDOWS\system32\IME\Styler\TB\StylerTB.dll
O4 - 安全 - HKLM\..\Run: [TkBellExe] [是Real Networks产品定时升级检测程序。] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - 安全 - HKLM\..\Run: [360Safebox] [360安全卫士保险箱相关程序。] "F:\新建文件夹 (3)\360Safebox\safeboxTray.exe" /r
O4 - 安全 - HKLM\..\Run: [360Safetray] [360safe实时保护功能模块。] E:\光线飞车\360safe\safemon\360tray.exe /start
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32\ctfmon.exe
O4 - 安全 - HKCU\..\Run: [bgswitch] [微软出品的自动换壁纸程序。] C:\WINDOWS\system32\bgswitch.exe
O4 - 安全 - HKCU\..\Run: [MsnMsgr] [微软msn即时通讯工具] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - 安全 - Startup folder: [QQ游戏启动加速程序.lnk] [qq游戏启动加速相关程序。] C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O11 - 安全 - Options Group: International*
O16 - 安全 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/5/b/0/5b0d4654-aa20-495c-b89f-c1c34c691085/LegitCheckControl.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O25 - 安全 - ABOUT: DesktopItemNavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationCanceled - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: OfflineInformation - res://ieframe.dll/offcancl.htm
O25 - 安全 - ABOUT: PostNotCached - res://ieframe.dll/repost.htm

=======================================

O31 - 未知 - Notify: WBSrv - C:\WINDOWS\system32\drivers\WindowBlinds\wbsrv.dll - Stardock - WBSrv.dll - 5.0.0.1 - 176128 - 67f401bb54ebbec5bbfa8107bc689866
O31 - 未知 - SODL: {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll - Microsoft Corporation - Systray shell service object - 5.1.2600.2135 - 89600 - 0b35c8fc446b224389444c3a07ecd0c6
O31 - 未知 - SEApproved: {00022613-0000-0000-C000-000000000046} - C:\WINDOWS\system32\mmsys.cpl - Microsoft Corporation - Control Panel Drivers Applet - 5.1.2600.2180 - 892928 - ef2eefbd9ec701b7a87fd2318c05ae95
O31 - 未知 - SEApproved: {41E300E0-78B6-11ce-849B-444553540000} - C:\WINDOWS\system32\themeui.dll - Microsoft Corporation - Windows Theme API - 6.0.2900.2180 - 584704 - 4dcc911ceedbf45d142427befb192478
O31 - 未知 - SEApproved: {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Shell extensions for file compression -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:加密上下文菜单 -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {BD84B380-8CA2-1069-AB1D-08000948F534} - C:\WINDOWS\system32\fontext.dll - Microsoft Corporation - Windows Font Folder - 5.1.2600.2180 - 395776 - 89dbbd62e87f85bb732fe5750e1f9ec4
O31 - 未知 - SEApproved: {7007ACC7-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll - Microsoft Corporation - Network Connections Shell - 5.1.2600.2180 - 2182144 -
O31 - 未知 - SEApproved: {992CFFA0-F557-101A-88EC-00DD010CCC48} - C:\WINDOWS\system32\NETSHELL.dll - Microsoft Corporation - Network Connections Shell - 5.1.2600.2180 - 2182144 -
O31 - 未知 - SEApproved: {E211B736-43FD-11D1-9EFB-0000F8757FCD} - C:\WINDOWS\system32\wiashext.dll - Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 751616 - d7f5e7133b559c5a51006fe47f77464a
O31 - 未知 - SEApproved: {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} - C:\WINDOWS\system32\wiashext.dll - Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 751616 - d7f5e7133b559c5a51006fe47f77464a
O31 - 未知 - SEApproved: {905667aa-acd6-11d2-8080-00805f6596d2} - C:\WINDOWS\system32\wiashext.dll - Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 751616 - d7f5e7133b559c5a51006fe47f77464a
O31 - 未知 - SEApproved: {3F953603-1008-4f6e-A73A-04AAC7A992F1} - C:\WINDOWS\system32\wiashext.dll - Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 751616 - d7f5e7133b559c5a51006fe47f77464a
O31 - 未知 - SEApproved: {83bbcbf3-b28a-4919-a5aa-73027445d672} - C:\WINDOWS\system32\wiashext.dll - Microsoft Corporation - Imaging Devices Shell Folder UI - 5.1.2600.2180 - 751616 - d7f5e7133b559c5a51006fe47f77464a
O31 - 未知 - SEApproved: {F0152790-D56E-4445-850E-4F3117DB740C} - C:\WINDOWS\system32\remotepg.dll - Microsoft Corporation - Remote Sessions CPL Extension - 5.1.2600.2180 - 57344 - c4b22c68daa447e8197b1f25e5c289d4
O31 - 未知 - SEApproved: {DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll - Microsoft Corporation - Task Scheduler interface DLL - 5.1.2600.2180 - 316928 - c3a3b3023e68e3aedb046ba881aac0af
O31 - 未知 - SEApproved: {797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll - Microsoft Corporation - Task Scheduler interface DLL - 5.1.2600.2180 - 316928 - c3a3b3023e68e3aedb046ba881aac0af
O31 - 未知 - SEApproved: {D6277990-4C6A-11CF-8D87-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll - Microsoft Corporation - Task Scheduler interface DLL - 5.1.2600.2180 - 316928 - c3a3b3023e68e3aedb046ba881aac0af
O31 - 未知 - SEApproved: {0DF44EAA-FF21-4412-828E-260A8728E7F1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {352EC2B7-8B9A-11D1-B8AE-006008059382} - C:\WINDOWS\system32\appwiz.cpl - Microsoft Corporation - Shell Application Manager - 5.1.2600.2180 - 593408 - 1720d82b36cea310f2937a5c9473ed9d
O31 - 未知 - SEApproved: {0B124F8F-91F0-11D1-B8B5-006008059382} - C:\WINDOWS\system32\appwiz.cpl - Microsoft Corporation - Shell Application Manager - 5.1.2600.2180 - 593408 - 1720d82b36cea310f2937a5c9473ed9d
O31 - 未知 - SEApproved: {CFCCC7A0-A282-11D1-9082-006008059382} - C:\WINDOWS\system32\appwiz.cpl - Microsoft Corporation - Shell Application Manager - 5.1.2600.2180 - 593408 - 1720d82b36cea310f2937a5c9473ed9d
O31 - 未知 - SEApproved: {e84fda7c-1d6a-45f6-b725-cb260c236066} - C:\WINDOWS\system32\shimgvw.dll - Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 519168 - 6528e994d2ccc4b476214fc3739d8e1e
O31 - 未知 - SEApproved: {66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} - C:\WINDOWS\system32\shimgvw.dll - Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 519168 - 6528e994d2ccc4b476214fc3739d8e1e
O31 - 未知 - SEApproved: {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {3F30C968-480A-4C6C-862D-EFC0897BB84B} - C:\WINDOWS\system32\shimgvw.dll - Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 519168 - 6528e994d2ccc4b476214fc3739d8e1e
O31 - 未知 - SEApproved: {9DBD2C50-62AD-11d0-B806-00C04FD706EC} - C:\WINDOWS\system32\shimgvw.dll - Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 519168 - 6528e994d2ccc4b476214fc3739d8e1e
O31 - 未知 - SEApproved: {EAB841A0-9550-11cf-8C16-00805F1408F3} - C:\WINDOWS\system32\shimgvw.dll - Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 519168 - 6528e994d2ccc4b476214fc3739d8e1e
O31 - 未知 - SEApproved: {eb9b1153-3b57-4e68-959a-a3266bc3d7fe} - C:\WINDOWS\system32\shimgvw.dll - Microsoft Corporation - Windows 图片和传真查看器 - 6.0.2900.2180 - 519168 - 6528e994d2ccc4b476214fc3739d8e1e
O31 - 未知 - SEApproved: {7A9D77BD-5403-11d2-8785-2E0420524153} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {0D45D530-764B-11d0-A1CA-00AA00C16E65} - C:\WINDOWS\system32\dsuiext.dll - Microsoft Corporation - Directory Service Common UI - 5.1.2600.2180 - 198656 - deaaa5d07ea68400fbc17a4edbd7395b
O31 - 未知 - SEApproved: {62AE1F9A-126A-11D0-A14B-0800361B1103} - C:\WINDOWS\system32\dsuiext.dll - Microsoft Corporation - Directory Service Common UI - 5.1.2600.2180 - 198656 - deaaa5d07ea68400fbc17a4edbd7395b
O31 - 未知 - SEApproved: {ECF03A33-103D-11d2-854D-006008059367} - C:\WINDOWS\system32\mydocs.dll - Microsoft Corporation - My Documents Folder UI - 6.0.2900.2180 - 88576 - a3b27bd74805c111c01ea60930e207e6
O31 - 未知 - SEApproved: {ECF03A32-103D-11d2-854D-006008059367} - C:\WINDOWS\system32\mydocs.dll - Microsoft Corporation - My Documents Folder UI - 6.0.2900.2180 - 88576 - a3b27bd74805c111c01ea60930e207e6
O31 - 未知 - SEApproved: {4a7ded0a-ad25-11d0-98a8-0800361b1103} - C:\WINDOWS\system32\mydocs.dll - Microsoft Corporation - My Documents Folder UI - 6.0.2900.2180 - 88576 - a3b27bd74805c111c01ea60930e207e6
O31 - 未知 - SEApproved: {750fdf0e-2a26-11d1-a3ea-080036587f03} - C:\WINDOWS\System32\cscui.dll - Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 698368 - 9b70f96d718a69f5e9229df8240d5502
O31 - 未知 - SEApproved: {10CFC467-4392-11d2-8DB4-00C04FA31A66} - C:\WINDOWS\System32\cscui.dll - Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 698368 - 9b70f96d718a69f5e9229df8240d5502
O31 - 未知 - SEApproved: {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} - C:\WINDOWS\System32\cscui.dll - Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 698368 - 9b70f96d718a69f5e9229df8240d5502
O31 - 未知 - SEApproved: {143A62C8-C33B-11D1-84FE-00C04FA34A14} - C:\WINDOWS\msagent\agentpsh.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 126464 - eb6dd474b60390c082ed42abca0e963c
O31 - 未知 - SEApproved: {68f32140-2ca3-11d0-acc1-444553540000} - C:\Program Files\ACDSee\picaview.dll - ACD Systems, Ltd. - PicaView 系统扩展 DLL - 2.0.0.78 - 487424 - 053432fff82198e62c0162be6c5c60f9
O31 - 未知 - SEApproved: {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - E:\新陆建ㄎ文募件夹衆\rpshell.dll -  -  -  - 0 -
O31 - 未知 - SEApproved: {376305F3-4C23-4DE5-AD69-7205BA2DA2C8} - C:\Documents and Settings\Administrator\Application Data\Foxy\LinkMaker.dll -  - Foxy連結產生工具 - 2.0.0.0 - 111104 - 3226eeb281d17e5e535161ab10e95b24
O31 - 未知 - SEApproved: {e82a2d71-5b2f-43a0-97b8-81be15854de8} - C:\WINDOWS\system32\dfshim.dll - Microsoft Corporation - Application Deployment Support Library - 2.0.50727.42 - 83456 - b3511383c8be3a8c5b88a78971fc1141
O31 - 未知 - SEApproved: {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} - C:\WINDOWS\system32\dfshim.dll - Microsoft Corporation - Application Deployment Support Library - 2.0.50727.42 - 83456 - b3511383c8be3a8c5b88a78971fc1141
O31 - 未知 - Directory Menu: {750fdf0e-2a26-11d1-a3ea-080036587f03} - C:\WINDOWS\System32\cscui.dll - Microsoft Corporation - Client Side Caching UI - 5.1.2600.2180 - 698368 - 9b70f96d718a69f5e9229df8240d5502
O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 126464 - eb6dd474b60390c082ed42abca0e963c
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -