鐵之狂傲

 取回密碼
 註冊
搜尋

切換到指定樓層
1#
10鐵幣
病毒名稱:Trojan.Farfil

中毒檔案:aayv43z9.sys、ewur6cnk.dll

位置:C:\WINDOWS\system32\ewur6cnk.dll
         C:\WINDOWS\system32\drivers\aayv43z9.sys

用賽門鐵客只能隔離砍不掉
那兩個檔案殺掉會有什麼影響嗎??

最佳解答

藤乃紫音 檢視完整內容

下載Icesword後進入到安全模式(重開機一直按F8就行) http://gin77729.myweb.hinet.net/IceSword.rar 進入安全模式後執行Icesowrd,點選左邊的File,找到以下檔案後在檔案上按右鍵選擇"force delete" c:\windows\system32\com\xafrjiktp.dll C:\WINDOWS\system32\drivers\x0ua.sys C:\WINDOWS\system32\drivers\nmpkg.sys C:\WINDOWS\system32\DRIVERS\aayv43z9.sys 開啟SREng,點選"啟動專案"的"服務"(右邊分頁的最後一個)選擇左 ...
 
轉播0 分享0 收藏0

回覆 使用道具 檢舉

下載Icesword後進入到安全模式(重開機一直按F8就行)
http://gin77729.myweb.hinet.net/IceSword.rar

進入安全模式後執行Icesowrd,點選左邊的File,找到以下檔案後在檔案上按右鍵選擇"force delete"
c:\windows\system32\com\xafrjiktp.dll
C:\WINDOWS\system32\drivers\x0ua.sys
C:\WINDOWS\system32\drivers\nmpkg.sys
C:\WINDOWS\system32\DRIVERS\aayv43z9.sys

開啟SREng,點選"啟動專案"的"服務"(右邊分頁的最後一個)選擇左邊的"Win32服務應用程式",找到下面東西後點選"刪除服務"後選擇"設置",然後按"否"刪除該服務,注意,要按"否"才會刪除。
[Secondary Logon / seclogon]

開啟SREng,點選"啟動專案"的"服務"(右邊分頁的最後一個)選擇右邊的"驅動程式",找到下面東西後點選"刪除服務"後選擇"設置",然後按"否"刪除該驅動程式,注意,要按"否"才會刪除。
[aayv43z / aayv43z9]
[nmpkg / nmpkg]
[x0ua / x0ua]

完成後重開機再看看有沒有問題
 


回覆 使用道具 檢舉

無名的勇者

そばにいるね

 

回覆 使用道具 檢舉

用那個跑出來的記事本貼上來嗎??
 

回覆 使用道具 檢舉

無名的勇者

そばにいるね

沒錯

請全選複製
 

回覆 使用道具 檢舉


  1. 2008-02-16,02:30:44
  2. System Repair Engineer 2.5.16.900
  3. Smallfrogs (http://www.KZTechs.com)
  4. Windows XP Professional Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed
  5. Follow item(s) have been choosed:
  6.     All Boot Items (Including Registry, Startup Folders, Services and so on)
  7.     Browser Add-ons
  8.     Runing Processes (Including process model information)
  9.     File Associations
  10.     Winsock Provider
  11.     Autorun.Inf
  12.     HOSTS File
  13.     Process Privileges Scan

  14. Boot Items
  15. Registry
  16. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  17.     <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
  18.     <MsnMsgr><"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background>  [(Verified)Microsoft Corporation]
  19.     <ezHelper><C:\Program Files\ezHelper\ezHelper.exe 300>  [N/A]
  20.     <Yahoo! Pager><"C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet>  [(Verified)Yahoo! Inc.]
  21. [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  22.     <load><>  [N/A]
  23.     <run><>  [N/A]
  24. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  25.     <IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>  [(Verified)Microsoft Windows Publisher]
  26.     <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Windows Publisher]
  27.     <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Windows Publisher]
  28.     <IgfxTray><C:\WINDOWS\System32\igfxtray.exe>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
  29.     <HotKeysCmds><C:\WINDOWS\System32\hkcmd.exe>  [N/A]
  30.     <SoundMan><SOUNDMAN.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
  31.     <Ulead AutoDetector v2><C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe>  [Ulead Systems, Inc.]
  32.     <NeroFilterCheck><C:\WINDOWS\system32\NeroCheck.exe>  [Ahead Software Gmbh]
  33.     <RemoteControl><"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe">  [Cyberlink Corp.]
  34.     <ccApp><"C:\Program Files\Common Files\Symantec Shared\ccApp.exe">  [(Verified)Symantec Corporation]
  35.     <vptray><C:\PROGRA~1\SYMANT~1\VPTray.exe>  [(Verified)Symantec Corporation]
  36.     <TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot>  [(Verified)"RealNetworks, Inc."]
  37.     <Flashget><"C:\Program Files\FlashGet\FlashGet.exe" /min>  [FlashGet.com]
  38.     <YSearchProtection><"C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe">  [(Verified)Yahoo! Inc.]
  39.     <Super Rabbit SRRestore><C:\Program Files\Super Rabbit\magicset\srrest.exe /autosave>  [Super Rabbit Soft]
  40.     <Super Rabbit IEPro><C:\Program Files\Super Rabbit\magicset\SRIECLI.EXE /LOAD>  [N/A]
  41. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  42.     <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
  43.     <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
  44. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  45.     <AppInit_DLLs><>  [N/A]
  46. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  47.     <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
  48. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
  49.     <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
  50. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]
  51.     <WinlogonNotify: NavLogon><C:\WINDOWS\system32\NavLogon.dll>  [(Verified)Symantec Corporation]
  52. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
  53.     <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [N/A]
  54. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
  55.     <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [N/A]
  56. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
  57.     <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [N/A]
  58. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
  59.     <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [N/A]
  60. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
  61.     <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
  62. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
  63.     <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
  64. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
  65.     <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
  66. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
  67.     <Address Book 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [N/A]
  68. ==================================
  69. Startup Folders
  70. N/A
  71. ==================================
  72. Services
  73. [Symantec Event Manager / ccEvtMgr][Running/Auto Start]
  74.   <"C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"><Symantec Corporation>
  75. [Symantec Password Validation / ccPwdSvc][Stopped/Manual Start]
  76.   <"C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"><Symantec Corporation>
  77. [Symantec Settings Manager / ccSetMgr][Running/Auto Start]
  78.   <"C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"><Symantec Corporation>
  79. [Symantec AntiVirus Definition Watcher / DefWatch][Running/Auto Start]
  80.   <"C:\Program Files\Symantec AntiVirus\DefWatch.exe"><Symantec Corporation>
  81. [Google Updater Service / gusvc][Stopped/Manual Start]
  82.   <"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"><Google>
  83. [Human Interface Device Access / HidServ][Stopped/Disabled]
  84.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  85. [InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
  86.   <"C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe"><Macrovision Corporation>
  87. [npkcmsvc / npkcmsvc][Stopped/Auto Start]
  88.   <C:\Program Files\Gamania\TalesWeaver\npkcmsvc.exe><N/A>
  89. [SavRoam / SavRoam][Stopped/Manual Start]
  90.   <"C:\Program Files\Symantec AntiVirus\SavRoam.exe"><symantec>
  91. [Secondary Logon / seclogon][Running/Auto Start]
  92.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->c:\windows\system32\com\xafrjiktp.dll><N/A>
  93. [Symantec Network Drivers Service / SNDSrvc][Stopped/Manual Start]
  94.   <"C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe"><Symantec Corporation>
  95. [Symantec SPBBCSvc / SPBBCSvc][Stopped/Manual Start]
  96.   <"C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe"><Symantec Corporation>
  97. [Symantec AntiVirus / Symantec AntiVirus][Running/Auto Start]
  98.   <"C:\Program Files\Symantec AntiVirus\Rtvscan.exe"><Symantec Corporation>
  99. ==================================
  100. Drivers
  101. [a347bus / a347bus][Running/Boot Start]
  102.   <\SystemRoot\system32\DRIVERS\a347bus.sys><>
  103. [a347scsi / a347scsi][Running/Boot Start]
  104.   <\SystemRoot\System32\Drivers\a347scsi.sys><>
  105. [aayv43z / aayv43z9][Running/Boot Start]
  106.   <\SystemRoot\System32\DRIVERS\aayv43z9.sys><N/A>
  107. [Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  108.   <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
  109. [Symantec Eraser Control driver / eeCtrl][Running/System Start]
  110.   <\??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys><Symantec Corporation>
  111. [ialm / ialm][Running/Manual Start]
  112.   <System32\DRIVERS\ialmnt5.sys><Intel Corporation>
  113. [NAVENG / NAVENG][Stopped/Manual Start]
  114.   <\??\C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20080214.003\naveng.sys><Symantec Corporation>
  115. [NAVEX15 / NAVEX15][Stopped/Manual Start]
  116.   <\??\C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20080214.003\navex15.sys><Symantec Corporation>
  117. [nmpkg / nmpkg][Stopped/Auto Start]
  118.   <\??\C:\WINDOWS\system32\drivers\nmpkg.sys><N/A>
  119. [npkcrypt / npkcrypt][Stopped/Auto Start]
  120.   <\??\C:\Program Files\Gamania\TalesWeaver\npkcrypt.sys><N/A>
  121. [直接平行連接埠連結驅動程式 / Ptilink][Running/Manual Start]
  122.   <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  123. [PxHelp20 / PxHelp20][Running/Boot Start]
  124.   <\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
  125. [Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Running/Manual Start]
  126.   <System32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
  127. [SAVRT / SAVRT][Running/System Start]
  128.   <\??\C:\Program Files\Symantec AntiVirus\savrt.sys><Symantec Corporation>
  129. [SAVRTPEL / SAVRTPEL][Running/System Start]
  130.   <\??\C:\Program Files\Symantec AntiVirus\Savrtpel.sys><Symantec Corporation>
  131. [Secdrv / Secdrv][Stopped/Manual Start]
  132.   <System32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
  133. [SPBBCDrv / SPBBCDrv][Stopped/Manual Start]
  134.   <\??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys><Symantec Corporation>
  135. [sptd / sptd][Running/Boot Start]
  136.   <\SystemRoot\System32\Drivers\sptd.sys><N/A>
  137. [STEC3 / STEC3][Running/Auto Start]
  138.   <\??\C:\WINDOWS\system32\STEC3.sys><AntiCracking>
  139. [SymEvent / SymEvent][Running/Manual Start]
  140.   <\??\C:\Program Files\Symantec\SYMEVENT.SYS><Symantec Corporation>
  141. [SYMREDRV / SYMREDRV][Running/Manual Start]
  142.   <\SystemRoot\System32\Drivers\SYMREDRV.SYS><Symantec Corporation>
  143. [SYMTDI / SYMTDI][Running/System Start]
  144.   <\SystemRoot\System32\Drivers\SYMTDI.SYS><Symantec Corporation>
  145. [x0ua / x0ua][Stopped/Auto Start]
  146.   <\??\C:\WINDOWS\system32\drivers\x0ua.sys><N/A>
  147. [Intel(R) Graphics Platform (SoftBIOS) Driver / {6080A529-897E-4629-A488-ABA0C29B635E}][Running/System Start]
  148.   <system32\drivers\ialmsbw.sys><Intel Corporation>
  149. [Intel(R) Graphics Chipset (KCH) Driver / {D31A0762-0CEB-444e-ACFF-B049A1F6FE91}][Running/Manual Start]
  150.   <system32\drivers\ialmkchw.sys><Intel Corporation>
  151. ==================================
  152. Browser Add-ons
  153. [&Yahoo! Toolbar Helper]
  154.   {02478D38-C3F9-4EFB-9B51-7695ECA05670} <C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll, Yahoo! Inc.>
  155. [FGCatchUrl]
  156.   {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} <C:\Program Files\FlashGet\jccatch.dll, www.flashget.com>
  157. [Google Toolbar Helper]
  158.   {AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar1.dll, Google Inc.>
  159. [超級兔子上網精靈]
  160.   {FEDF637B-F631-4583-A210-33CC828D42DB} <C:\PROGRA~1\SUPERR~1\magicset\HAOKAN~2.DLL, 超?兔子>
  161. [@shdoclc.dll,-866]
  162.   {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
  163. [Yahoo!奇摩捷徑列]
  164.   {EF99BD32-C1FB-11D2-892F-0090271D4F88} <C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll, Yahoo! Inc.>
  165. [Alcohol Toolbar]
  166.   {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} <C:\Program Files\Alcohol Toolbar\v3.2.0.0\Alcohol_Toolbar.dll, >
  167. [ALiBaBar]
  168.   {0A1375E1-56C2-11D6-8E45-8933A0FB5235} <C:\PROGRA~1\ALiBaBar\ALiBaBar.dll, Alfred, C. S. Li>
  169. [&Google]
  170.   {2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar1.dll, Google Inc.>
  171. [Megaupload Toolbar]
  172.   {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} <C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL, MEGAUPLOAD>
  173. [超級兔子上網精靈]
  174.   {FEDF637B-F631-4583-A210-33CC828D42DB} <C:\PROGRA~1\SUPERR~1\magicset\HAOKAN~2.DLL, 超?兔子>
  175. [Windows Genuine Advantage Validation Tool]
  176.   {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
  177. [YInstStarter Class]
  178.   {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} <C:\Program Files\Yahoo!\Common\yinsthelper.dll, Yahoo! Inc.>
  179. [Office Update Installation Engine]
  180.   {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
  181. [NowStarter Control]
  182.   {A22B8FD2-4CAA-4EFB-82F7-680CD656D9B0} <C:\WINDOWS\DOWNLO~1\GNOWST~1.OCX, (C) NOWCOM>
  183. [????????????]
  184.   {E0BE586C-7C66-4909-94D6-D18BBBDD6373} <C:\WINDOWS\DOWNLO~1\fbx2.ocx, Gretech Japan>
  185. [Google Script Object]
  186.   {00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <c:\program files\google\googletoolbar1.dll, Google Inc.>
  187. [&Yahoo! Toolbar Helper]
  188.   {02478D38-C3F9-4EFB-9B51-7695ECA05670} <C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll, Yahoo! Inc.>
  189. [ActiveMovieControl Object]
  190.   {05589FA1-C356-11CE-BF01-00AA0055595A} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
  191. [Web Browser Applet Control]
  192.   {08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\WINDOWS\System32\msjava.dll, Microsoft Corporation>
  193. [ALiBaBar]
  194.   {0A1375E1-56C2-11D6-8E45-8933A0FB5235} <C:\PROGRA~1\ALiBaBar\ALiBaBar.dll, Alfred, C. S. Li>
  195. [PeerDraw Class]
  196.   {10072CEC-8CC1-11D1-986E-00A0C955B42E} <C:\Program Files\Common Files\Microsoft Shared\VGX\vgx.dll, Microsoft Corporation>
  197. [Windows Genuine Advantage Validation Tool]
  198.   {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
  199. [RealPlayer SMIL Download Handler]
  200.   {224E833B-2CC6-42D9-AE39-90B6A38A4FA2} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
  201. [Windows Media Player]
  202.   {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
  203. [&Google]
  204.   {2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar1.dll, Google Inc.>
  205. [HTML Document]
  206.   {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>
  207. [DHTML Edit Control Safe for Scripting for IE5]
  208.   {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\WINDOWS\system32\dllcache\dhtmled.ocx, Microsoft Corporation>
  209. [FGCatchUrl]
  210.   {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} <C:\Program Files\FlashGet\jccatch.dll, www.flashget.com>
  211. [HtmlDlgSafeHelper Class]
  212.   {3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\system32\mshtmled.dll, Microsoft Corporation>
  213. [YInstStarter Class]
  214.   {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} <C:\Program Files\Yahoo!\Common\yinsthelper.dll, Yahoo! Inc.>
  215. [IETag Factory]
  216.   {38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, Microsoft Corporation>
  217. [BitComet Helper]
  218.   {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.4.29.dll, BitComet>
  219. [Office Update Installation Engine]
  220.   {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
  221. [XML Document]
  222.   {48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\System32\msxml3.dll, N/A>
  223. []
  224.   {4D2EAF15-81D0-42DA-8C39-19EDD39E0FB3} <C:\WINDOWS\system32\ptnodqhhcbice.dll, >
  225. [Megaupload Toolbar]
  226.   {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} <C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL, MEGAUPLOAD>
  227. [Shell Name Space]
  228.   {55136805-B2DE-11D1-B9F2-00A0C98BC547} <%SystemRoot%\System32\shdocvw.dll, N/A>
  229. [WUWebControl Class]
  230.   {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
  231. [DivXBrowserPlugin Object]
  232.   {67DABFBF-D0AB-41FA-9C46-CC0F21721616} <C:\Program Files\DivX\DivX Web Player\npdivx32.dll, DivX,Inc.>
  233. [Windows Media Player]
  234.   {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  235. [Active Desktop Mover]
  236.   {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
  237. [Alcohol Toolbar Helper]
  238.   {8126A4A5-BFD3-46FE-BBDF-BFB5CF78E489} <C:\Program Files\Alcohol Toolbar\v3.2.0.0\Alcohol_Toolbar.dll, >
  239. [Microsoft Web Browser]
  240.   {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\System32\shdocvw.dll, Microsoft Corporation>
  241. [Windows Live Sign-in Helper]
  242.   {9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
  243. [NowStarter Control]
  244.   {A22B8FD2-4CAA-4EFB-82F7-680CD656D9B0} <C:\WINDOWS\DOWNLO~1\GNOWST~1.OCX, (C) NOWCOM>
  245. [RMGetLicense Class]
  246.   {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>
  247. [Google Toolbar Helper]
  248.   {AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar1.dll, Google Inc.>
  249. [Microsoft Scriptlet Component]
  250.   {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
  251. [Google Toolbar Notifier BHO]
  252.   {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll, Google Inc.>
  253. [SearchAssistantOC]
  254.   {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\System32\shdocvw.dll, N/A>
  255. [RDS.DataSpace]
  256.   {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
  257. [AUDIO__MID Moniker Class]
  258.   {CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  259. [AUDIO__MP3 Moniker Class]
  260.   {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  261. [AUDIO__MPEGURL Moniker Class]
  262.   {CD3AFA78-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  263. [AUDIO__X_MS_WMA Moniker Class]
  264.   {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  265. [VIDEO__AVI Moniker Class]
  266.   {CD3AFA88-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  267. [VIDEO__MPEG Moniker Class]
  268.   {CD3AFA89-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  269. [VIDEO__X_MS_ASF Moniker Class]
  270.   {CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  271. [VIDEO__X_MS_WM Moniker Class]
  272.   {CD3AFA92-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  273. [VIDEO__X_MS_WMV Moniker Class]
  274.   {CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
  275. [ALiBaBar_Helper]
  276.   {CE439C63-384A-747A-A357-23D96B5D652B} <C:\PROGRA~1\ALiBaBar\ALiBaBar.dll, Alfred, C. S. Li>
  277. [RealPlayer G2 Control]
  278.   {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
  279. [Windows Live Sign-in Control]
  280.   {D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
  281. [Shockwave Flash Object]
  282.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx, Adobe Systems, Inc.>
  283. [GetInfo Class]
  284.   {D5184A39-CBDF-4A4F-AC1A-7A45A852C883} <C:\PROGRA~1\YAHOO!\COMMON\yverinfo.dll, Yahoo! Inc.>
  285. [MessengerChecker Class]
  286.   {DA4F543C-C8A9-4E88-9A79-548CBB46F18F} <C:\Program Files\Yahoo!\Messenger\YPagerChecker.dll, Yahoo! Inc.>
  287. [????????????]
  288.   {E0BE586C-7C66-4909-94D6-D18BBBDD6373} <C:\WINDOWS\DOWNLO~1\fbx2.ocx, Gretech Japan>
  289. [Alcohol Toolbar]
  290.   {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} <C:\Program Files\Alcohol Toolbar\v3.2.0.0\Alcohol_Toolbar.dll, >
  291. [Yahoo!奇摩捷徑列]
  292.   {EF99BD32-C1FB-11D2-892F-0090271D4F88} <C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll, Yahoo! Inc.>
  293. [FlashGet GetFlash Class]
  294.   {F156768E-81EF-470C-9057-481BA8380DBA} <C:\Program Files\FlashGet\getflash.dll, www.flashget.com>
  295. [FGAutoLive]
  296.   {F90D830D-C175-4bbe-82C7-FF94669A4C42} <C:\Program Files\FlashGet\fgupdate.dll, www.flashget.com>
  297. [FGCatchUrl]
  298.   {FB5DA724-162B-11D3-8B9B-AA70B4B0B524} <C:\Program Files\FlashGet\jccatch.dll, www.flashget.com>
  299. [超級兔子上網精靈]
  300.   {FEDF637B-F631-4583-A210-33CC828D42DB} <C:\PROGRA~1\SUPERR~1\magicset\HAOKAN~2.DLL, 超?兔子>
  301. [&使用 FlashGet 下載]
  302.   <C:\Program Files\FlashGet\jc_link.htm, N/A>
  303. [&全部使用 FlashGet 下載]
  304.   <C:\Program Files\FlashGet\jc_all.htm, N/A>
  305. [&・ウ。ィマ・ホ FlashGet 、Uク]
  306.   <, N/A>
  307. [&ィマ・ホ FlashGet 、Uク]
  308.   <, N/A>
  309. [Foxy 下載]
  310.   <res://C:\Program Files\Foxy\Foxy.exe/download.htm, N/A>
  311. [Foxy 搜尋]
  312.   <res://C:\Program Files\Foxy\Foxy.exe/search.htm, N/A>
  313. [Foxy 、Uク]
  314.   <, N/A>
  315. [匯出至 Microsoft Excel(&X)]
  316.   <res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000, N/A>
  317. ==================================
  318. Running Processes
  319. [PID: 384 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  320. [PID: 432 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  321. [PID: 456 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  322.     [C:\WINDOWS\system32\NavLogon.dll]  [Symantec Corporation, 10.0.0.359]
  323. [PID: 500 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  324. [PID: 512 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  325. [PID: 668 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  326. [PID: 744 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  327. [PID: 800 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  328.     [c:\windows\system32\com\xafrjiktp.dll]  [N/A, ]
  329. [PID: 864 / NETWORK SERVICE][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  330. [PID: 916 / LOCAL SERVICE][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  331. [PID: 960 / SYSTEM][C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe]  [Symantec Corporation, 103.5.1.9]
  332.     [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
  333.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  334.     [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.1.9]
  335.     [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 103.5.1.9]
  336.     [C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll]  [Symantec Corporation, 103.5.1.9]
  337. [PID: 996 / SYSTEM][C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe]  [Symantec Corporation, 103.5.1.9]
  338.     [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
  339.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  340.     [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.1.9]
  341.     [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 103.5.1.9]
  342.     [C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\BB.DLL]  [Symantec Corporation, 1,5,1,3]
  343.     [C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\SPBBCEVT.DLL]  [Symantec Corporation, 1,5,1,3]
  344.     [C:\Program Files\Common Files\Symantec Shared\ccSet.dll]  [Symantec Corporation, 103.5.1.9]
  345.     [C:\PROGRA~1\COMMON~1\SYMANT~1\CCSETEVT.DLL]  [Symantec Corporation, 103.5.1.9]
  346. [PID: 1124 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
  347. [PID: 1384 / user][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
  348.     [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
  349.     [C:\Program Files\7-Zip\7-zip.dll]  [N/A, ]
  350.     [C:\Program Files\Common Files\Symantec Shared\SSC\vpshell2.dll]  [Symantec Corporation, 10.0.0.359]
  351.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  352. [PID: 1616 / user][C:\WINDOWS\System32\igfxtray.exe]  [Intel Corporation, 3,0,0,1918]
  353.     [C:\WINDOWS\System32\hccutils.DLL]  [Intel Corporation, 3,0,0,1918]
  354.     [C:\WINDOWS\System32\igfxdev.dll]  [Intel Corporation, 3,0,0,1918]
  355.     [C:\WINDOWS\System32\igfxsrvc.dll]  [Intel Corporation, 3,0,0,1918]
  356.     [C:\WINDOWS\System32\igfxres.dll]  [Intel Corporation, 3,0,0,1918]
  357.     [C:\WINDOWS\System32\igfxress.dll]  [Intel Corporation, 3,0,0,1918]
  358. [PID: 1624 / user][C:\WINDOWS\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.0.12]
  359. [PID: 1632 / user][C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe]  [Ulead Systems, Inc., 2.0.0.0]
  360.     [C:\Program Files\Common Files\Ulead Systems\AutoDetector\u32Comm.dll]  [Ulead Systems, Inc., 10.0.0.0]
  361.     [C:\Program Files\Common Files\Ulead Systems\AutoDetector\DetMethod.dll]  [, 1, 0, 0, 1]
  362.     [C:\Program Files\Common Files\Ulead Systems\AutoDetector\Monitor_Res.dll]  [Ulead Systems, Inc., 2.0.0.0]
  363. [PID: 1676 / user][C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe]  [Cyberlink Corp., 6.00.1027]
  364.     [C:\Program Files\CyberLink\PowerDVD\CLRCEngine2.dll]  [CyberLink Corp., 3.2.2021 ]
  365. [PID: 1696 / user][C:\Program Files\Common Files\Symantec Shared\ccApp.exe]  [Symantec Corporation, 103.5.1.9]
  366.     [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
  367.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  368.     [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.1.9]
  369.     [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 103.5.1.9]
  370.     [C:\PROGRA~1\COMMON~1\SYMANT~1\CCALERT.DLL]  [Symantec Corporation, 103.5.1.9]
  371.     [C:\PROGRA~1\COMMON~1\SYMANT~1\CCEMLPXY.DLL]  [Symantec Corporation, 103.5.1.9]
  372.     [C:\WINDOWS\system32\SYMREDIR.DLL]  [Symantec Corporation, 5.5.1.6]
  373.     [C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll]  [Symantec Corporation, 103.5.1.9]
  374.     [C:\Program Files\Common Files\Symantec Shared\ccProSub.dll]  [Symantec Corporation, 103.5.1.9]
  375.     [C:\Program Files\Symantec AntiVirus\SavEmail.dll]  [Symantec Corporation, 10.0.0.359]
  376. [PID: 1736 / user][C:\PROGRA~1\SYMANT~1\VPTray.exe]  [Symantec Corporation, 10.0.0.359]
  377.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  378.     [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
  379.     [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  [Symantec Corporation, 9.5.0.44]
  380.     [C:\Program Files\Symantec AntiVirus\Cliscan.dll]  [Symantec Corporation, 10.0.0.359]
  381.     [C:\PROGRA~1\SYMANT~1\NAVNTUTL.DLL]  [Symantec Corporation, 10.0.0.359]
  382.     [C:\Program Files\Symantec AntiVirus\Cliproxy.dll]  [Symantec Corporation, 10.0.0.359]
  383. [PID: 1744 / user][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  [RealNetworks, Inc., 0.1.0.3760]
  384. [PID: 1852 / user][C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe]  [Yahoo! Inc., 2007, 6, 8, 1]
  385.     [C:\Program Files\Yahoo!\Search Protection\fdload.dll]  [Yahoo! Inc., 2007, 11, 7, 1]
  386. [PID: 1868 / user][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  387. [PID: 416 / SYSTEM][C:\Program Files\Symantec AntiVirus\DefWatch.exe]  [Symantec Corporation, 10.0.0.359]
  388.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  389. [PID: 820 / SYSTEM][C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe]  [Microsoft Corporation, 7.00.9466]
  390. [PID: 1328 / SYSTEM][C:\Program Files\Symantec AntiVirus\Rtvscan.exe]  [Symantec Corporation, 10.0.0.359]
  391.     [C:\WINDOWS\system32\CBA.DLL]  [IntelR Corporation, 6.12.0.130 E]
  392.     [C:\WINDOWS\system32\MsgSys.dll]  [IntelR Corporation, 6.12.0.130 E]
  393.     [C:\WINDOWS\system32\NTS.dll]  [IntelR Corporation, 6.12.0.130 E]
  394.     [C:\WINDOWS\system32\PDS.DLL]  [IntelR Corporation, 6.12.0.130 E]
  395.     [C:\Program Files\Symantec AntiVirus\NAVLU.dll]  [Symantec Corporation, 10.0.0.359]
  396.     [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
  397.     [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
  398.     [C:\Program Files\Symantec AntiVirus\NAVNTUTL.DLL]  [Symantec Corporation, 10.0.0.359]
  399.     [c:\program files\common files\symantec shared\ssc\ScsComms.dll]  [Symantec Corporation, 10.0.0.359]
  400.     [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
  401.     [C:\Program Files\Symantec AntiVirus\I2ldvp3.dll]  [Symantec Corporation, 10.0.0.359]
  402.     [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 103.5.1.9]
  403.     [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  [Symantec Corporation, 103.5.1.9]
  404.     [C:\Program Files\Common Files\Symantec Shared\ccDec.dll]  [Symantec Corporation, 103.5.1.9]
  405.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\decsdk.dll]  [Symantec Corporation, 3.02.12.35]
  406.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2.dll]  [Symantec Corporation, 3.02.12.35]
  407.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2ID.dll]  [Symantec Corporation, 3.02.12.35]
  408.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2Zip.dll]  [Symantec Corporation, 3.02.12.35]
  409.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2SS.dll]  [Symantec Corporation, 3.02.12.35]
  410.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2GZIP.dll]  [Symantec Corporation, 3.02.12.35]
  411.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2CAB.dll]  [Symantec Corporation, 3.02.12.35]
  412.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2LHA.dll]  [Symantec Corporation, 3.02.12.35]
  413.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2ARJ.dll]  [Symantec Corporation, 3.02.12.35]
  414.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2TNEF.dll]  [Symantec Corporation, 3.02.12.35]
  415.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2LZ.dll]  [Symantec Corporation, 3.02.12.35]
  416.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2AMG.dll]  [Symantec Corporation, 3.02.12.35]
  417.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2RAR.dll]  [Symantec Corporation, 3.02.12.35]
  418.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2TAR.dll]  [Symantec Corporation, 3.02.12.35]
  419.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2RTF.dll]  [Symantec Corporation, 3.02.12.35]
  420.     [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2Text.dll]  [Symantec Corporation, 3.02.12.35]
  421.     [C:\Program Files\Common Files\Symantec Shared\ccScan.dll]  [Symantec Corporation, 103.5.1.9]
  422.     [C:\Program Files\Common Files\Symantec Shared\ecmldr32.DLL]  [Symantec Corporation, 1.4.0.11]
  423.     [C:\Program Files\Symantec AntiVirus\DefUtDCD.dll]  [Symantec Corporation, 3.1.13a.0]
  424.     [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  [Symantec Corporation, 9.5.0.44]
  425.     [C:\Program Files\Symantec AntiVirus\IMail.dll]  [Symantec Corporation, 10.0.0.359]
  426.     [C:\Program Files\Symantec AntiVirus\NotesExt.dll]  [Symantec Corporation, 10.0.0.359]
  427.     [C:\Program Files\Symantec AntiVirus\vpmsece3.dll]  [Symantec Corporation, 10.0.0.359]
  428.     [C:\Program Files\Symantec AntiVirus\SymProtectStorage.dll]  [Symantec Corporation, 10.0.0.359]
  429.     [C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCEvt.dll]  [Symantec Corporation, 1,5,1,3]
  430.     [C:\Program Files\Symantec\LiveUpdate\LuComServerPS_2_6.DLL]  [Symantec Corporation, 2.6.18.0]
  431.     [C:\Program Files\Common Files\Symantec Shared\SSC\scandlgs.dll]  [Symantec Corporation, 10.0.0.359]
  432.     [C:\Program Files\Symantec AntiVirus\Cliscan.dll]  [Symantec Corporation, 10.0.0.359]
  433.     [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20080214.003\ccEraser.dll]  [Symantec Corporation, 107.4.1.2]
  434.     [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20080214.003\ecmsvr32.dll]  [Symantec Corporation, 71.4.0.15]
  435.     [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20080214.003\NAVEX32a.DLL]  [Symantec Corporation, 20071.4.1.10]
  436.     [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20080214.003\NAVENG32.DLL]  [Symantec Corporation, 20071.4.1.10]
  437.     [C:\Program Files\Symantec AntiVirus\NAVAP32.DLL]  [Symantec Corporation, 9.5.0.44]
  438. [PID: 2320 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  439. [PID: 3484 / user][C:\WINDOWS\system32\wuauclt.exe]  [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
  440. [PID: 3440 / user][C:\Program Files\Windows Media Player\wmplayer.exe]  [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
  441.     [C:\WINDOWS\system32\msdmo.dll]  [, ]
  442.     [C:\WINDOWS\system32\l3codeca.acm]  [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]
  443. [PID: 3868 / user][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  444.     [c:\program files\google\googletoolbar1.dll]  [Google Inc., 4, 0, 1601, 4978]
  445.     [C:\PROGRA~1\ALiBaBar\ALiBaBar.dll]  [Alfred, C. S. Li, 5.1.0.0]
  446.     [C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll]  [Yahoo! Inc., 2007, 10, 19, 1]
  447.     [C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTabBar.dll]  [Yahoo!, 2007, 8, 21, 1]
  448.     [C:\Program Files\FlashGet\jccatch.dll]  [www.flashget.com, 1, 8, 4, 1007]
  449.     [C:\PROGRA~1\SUPERR~1\magicset\HAOKAN~2.DLL]  [超?兔子, 1.0.7.7]
  450.     [C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTBM.dll]  [Yahoo! Inc., 2007, 10, 17, 1]
  451.     [C:\Program Files\Yahoo!\Companion\Installs\cpn0\pubmod.dll]  [Yahoo! Inc., 2007, 10, 17, 1]
  452.     [C:\Program Files\Yahoo!\Companion\Installs\cpn0\YPUBC.dll]  [Yahoo! Inc., 2006, 12, 4, 1]
  453.     [C:\WINDOWS\System32\MSTCIPHA.IME]  [Microsoft Corporation, 5.1.0.62]
  454.     [C:\Program Files\Common Files\Microsoft Shared\Ink\PENCHT.DLL]  [Microsoft Corporation, 1.0.1038.0]
  455.     [C:\Program Files\Common Files\Microsoft Shared\IME\MSTCIA\Applet\chtskdic.dll]  [Microsoft Corporation, 8.0.0.1912]
  456.     [C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx]  [Adobe Systems, Inc., 9,0,115,0]
  457. [PID: 3980 / user][C:\Documents and Settings\user\BBS\SREngPS\SREngPS.EXE]  [Smallfrogs Studio, 2.5.16.900]
  458.     [C:\Documents and Settings\user\BBS\SREngPS\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15]
  459. ==================================
  460. File Associations
  461. .TXT  Error. [UltraEdit.txt]
  462. .EXE  OK. ["%1" %*]
  463. .COM  OK. ["%1" %*]
  464. .PIF  OK. ["%1" %*]
  465. .REG  OK. [regedit.exe "%1"]
  466. .BAT  OK. ["%1" %*]
  467. .SCR  OK. ["%1" /S]
  468. .CHM  OK. ["C:\WINDOWS\hh.exe" %1]
  469. .HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
  470. .INI  Error. [UltraEdit.ini]
  471. .INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
  472. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  473. .JS   Error. [UltraEdit.js]
  474. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]
  475. ==================================
  476. Winsock Provider
  477. N/A
  478. ==================================
  479. Autorun.Inf
  480. N/A
  481. ==================================
  482. HOSTS File
  483. 127.0.0.1       localhost
  484. ==================================
  485. Process Privileges Scan
  486. Special Privilege Enabled: SeLoadDriverPrivilege [PID = 1632, C:\PROGRAM FILES\COMMON FILES\ULEAD SYSTEMS\AUTODETECTOR\MONITOR.EXE]
  487. Special Privilege Enabled: SeLoadDriverPrivilege [PID = 1676, C:\PROGRAM FILES\CYBERLINK\POWERDVD\PDVDSERV.EXE]
  488. ==================================
  489. API HOOK
  490. N/A
  491. ==================================
  492. Hidden Process
  493. N/A
  494. ==================================
複製代碼
 

回覆 使用道具 檢舉

應該是解決了感謝二位
 

回覆 使用道具 檢舉

你需要登入後才可以回覆 登入 | 註冊

存檔|手機版|聯絡我們|新聞提供|鐵之狂傲

GMT+8, 24-9-30 20:27 , Processed in 2.020759 second(s), 16 queries , Gzip On.

回頂部