Google
      
发新话题
打印

我的360安全卫士诊断结果

我的360安全卫士诊断结果

各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2007-09-22  22:49:21
诊断平台: Windows Vista (TM) Home Premium  
IE版本: Internet Explorer V7.0.6000.16512 Build:76000
计算机物理内存:2.00GB - 当前可用内存:843.94MB

100 - 未知 - Process: lsm.exe [本地会话管理器服务] -
100 - 未知 - Process: audiodg.exe [] -
100 - 未知 - Process: DQLWinService.exe [DQLWinSe Application] -
100 - 未知 - Process: DTSRVC.exe [] -
100 - 未知 - Process: GoogleUpdaterService.exe [gusvc] -
100 - 未知 - Process: iviRegMgr.exe [RegMgr Module] -
100 - 未知 - Process: HWAPI.exe [McAfee HackerWatch Service] -
100 - 未知 - Process: mcmscsvc.exe [MISP User Manager] -
100 - 未知 - Process: McNASvc.exe [McAfee Network Agent] -
100 - 未知 - Process: mcods.exe [McAfee VirusScan - On Demand Scan] -
100 - 未知 - Process: mcpromgr.exe [McAfee Integrated Security Platform] -
100 - 未知 - Process: RedirSvc.exe [McAfee Redirector Service Module] -
100 - 未知 - Process: Mcshield.exe [On-Access Scanner service] -
100 - 未知 - Process: mcsysmon.exe [McAfee SystemGuards Service] -
100 - 未知 - Process: MpfSrv.exe [McAfee Personal Firewall Service] -
100 - 未知 - Process: PhCore.exe [花生壳客户端5.0服务程序] -
100 - 未知 - Process: SearchIndexer.exe [Microsoft Windows Search Indexer] -
100 - 未知 - Process: WUDFHost.exe [Windows 驱动程序基础 - 用户模式驱动程序框架主机进程] -
100 - 未知 - Process: hpsysdrv.exe [hpsysdrv] -
100 - 未知 - Process: OSD.exe [OsdMaestro main program] -
100 - 未知 - Process: RtHDVCpl.exe [HD Audio Control Panel] -
100 - 未知 - Process: wpCtrl.exe [] -
100 - 未知 - Process: GooglePinyinDaemon.exe [Google Pinyin Network Daemon] -
100 - 未知 - Process: jusched.exe [Java(TM) Platform SE binary] -
100 - 未知 - Process: p2phost.exe [网络邻居] -
100 - 未知 - Process: GoogleToolbarNotifier.exe [GoogleToolbarNotifier] -
100 - 未知 - Process: wmpnscfg.exe [Windows Media Player 网络共享服务配置应用程序] -
100 - 未知 - Process: SnagIt32.exe [SnagIt 8] -
100 - 未知 - Process: soffice.exe [StarOffice 8] -
100 - 未知 - Process: Floater.exe [] -
100 - 未知 - Process: HookManager.exe [Context Menu Utility] -
100 - 未知 - Process: wmpnetwk.exe [Windows Media Player 网络共享服务] -
100 - 未知 - Process: soffice.bin [StarOffice 8] -
100 - 未知 - Process: ServiceLayer.exe [ServiceLayer Module] -
100 - 未知 - Process: SnagPriv.exe [SnagIt RPC Helper] -
100 - 未知 - Process: IEMonitor.exe [Internet Download Manager agent for click monitoring in IE-based browsers] -
100 - 未知 - Process: emproxy.exe [McAfee Email Proxy] -
R0 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=https://www.google.com/adsense/login/zh_CN/?gsessionid=9tSSlTLEexk
R0 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page=http://www.google.com
R1 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar=http://www.google.com/ie
R1 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant=http://www.google.com/ie
R1 - 未知 - HKCU\Software\Microsoft\Internet Explorer\Main,Use Search Asst=no
O2 - 未知 - BHO: (IDMIEHlprObj Class) - [IDM BHO Module] - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - 未知 - BHO: (&Google Web Accelerator Helper) - [] - {69A87B7D-DE56-4136-9655-716BA50C19C7} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O2 - 未知 - BHO: (SSVHelper Class) - [Java(TM) Platform SE binary] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - 未知 - BHO: (scriptproxy) - [VSCore Script Scanner] - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptcl.dll
O2 - 未知 - BHO: (浏览器辅助对象(BHO)) - [无效的CLSID:{7E853D72-626A-48EC-A868-BA8D5E23E045}] - {7E853D72-626A-48EC-A868-BA8D5E23E045} -
O2 - 未知 - BHO: (Google Toolbar Notifier BHO) - [GoogleToolbarNotifier] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O3 - 未知 - Toolbar: (Google Web Accelerator) - [] - {DB87BFA2-A2E3-451E-8E5A-C89982D87CBF} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O4 - 未知 - HKLM\..\Run: [OsdMaestro] [OsdMaestro main program] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - 未知 - HKLM\..\Run: [NvSvc] [NVIDIA Driver Helper Service, Version 158.22] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - 未知 - HKLM\..\Run: [RtHDVCpl] [HD Audio Control Panel] RtHDVCpl.exe
O4 - 未知 - HKLM\..\Run: [CCUTRAYICON] [] FactoryMode
O4 - 未知 - HKLM\..\Run: [PivotSoftware] [] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe"
O4 - 未知 - HKLM\..\Run: [DT HPW] [] C:\Program Files\Portrait Displays\HP My Display\DTHtml.exe -startup_folder
O4 - 未知 - HKLM\..\Run: [Google IME Autoupdater] [Google Pinyin Network Daemon] "C:\Program Files\Google\Google Pinyin\GooglePinyinDaemon.exe"
O4 - 未知 - HKLM\..\Run: [Microsoft Pinyin IME Migration] [Microsoft Pinyin IME 2007] C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMESC\IMSCMIG.EXE /INSTALL
O4 - 未知 - HKLM\..\Run: [ISUSPM] [InstallShield Update Service Update Manager] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - 未知 - HKLM\..\Run: [Storm2Set] [] C:\Windows\system32\rundll32.exe "C:\PROGRA~1\StormII\StormSet.dll",CheckEnv
O4 - 未知 - HKLM\..\RunOnce: [RegisteringDll0] [Microsoft(C) 注册服务器] C:\Windows\system32\regsvr32.exe /s "C:\Program Files\Walker\DrvInst\Bin\DrvCertC.dll"
O4 - 未知 - HKLM\..\RunOnce: [RegisteringDll1] [Microsoft(C) 注册服务器] C:\Windows\system32\regsvr32.exe /s "C:\Program Files\Walker\DrvInst\Bin\DrvInst.dll"
O4 - 未知 - HKLM\..\RunOnce: [RegisteringDll2] [Microsoft(C) 注册服务器] C:\Windows\system32\regsvr32.exe /s "C:\Program Files\Walker\DrvInst\Bin\DrvInf.dll"
O4 - 未知 - HKLM\..\RunServices: [SSDPSRV] [SSDP Service on Windows Millennium] C:\Windows\system32\ssdpsrv.exe
O4 - 未知 - HKCU\..\Run: [ehTray.exe] [Media Center Tray Applet] C:\Windows\ehome\ehTray.exe
O4 - 未知 - HKCU\..\Run: [CollaborationHost] [] C:\Windows\system32\p2phost.exe -s
O4 - 未知 - HKCU\..\Run: [WMPNSCFG] [Windows Media Player 网络共享服务配置应用程序] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - 未知 - Startup folder: [Canon LBP-810 Status Window.LNK] [] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Canon LBP-810 Status Window.LNK
O4 - 未知 - Startup folder: [Google Updater.lnk] [] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Google Updater.lnk
O4 - 未知 - Startup folder: [Run Google Web Accelerator.lnk] [] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Run Google Web Accelerator.lnk
O4 - 未知 - Startup folder: [StarOffice 8.lnk] [] C:\Users\郑界涵\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StarOffice 8.lnk
O8 - 未知 - Extra context menu item: Alexa Web Search - http://client.alexa.com/holiday/script/actions/search.htm
O8 - 未知 - Extra context menu item: Get Alexa Data - http://client.alexa.com/holiday/script/actions/sitedata.htm
O8 - 未知 - Extra context menu item: Google AdSense Preview Tool - http://pagead2.googlesyndication ... iew/en/preview.html
O8 - 未知 - Extra context menu item: Mail to a Friend... - http://client.alexa.com/holiday/script/actions/mailto.htm
O8 - 未知 - Extra context menu item: See Related Links - http://client.alexa.com/holiday/script/actions/related.htm
O8 - 未知 - Extra context menu item: Write a Review... - http://client.alexa.com/holiday/script/actions/review.htm
O8 - 未知 - Extra context menu item: 使用 IDM 下载 - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - 未知 - Extra context menu item: 使用 IDM 下载 FLV 视频内容 - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - 未知 - Extra context menu item: 使用 IDM 下载所有链接 - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载 - C:\Program Files\Thunderdted\Program\geturl.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载全部链接 - C:\Program Files\Thunderdted\Program\getallurl.htm
O8 - 未知 - Extra context menu item: 导出到 Microsoft Excel(&X) - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - 未知 - Extra context menu item: 添加到QQ表情 - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - 未知 - Extra context menu item: 用比特精灵下载(&B) - C:\Program Files\BitSpirit\bsurl.htm
O8 - 未知 - Extra context menu item: 设为 Messenger Live 头像 - \SetMSNDP.htm
O9 - 未知 - Extra button: Windows Live Writer 中的“写入博客”(&B)(HKLM) - C:\Program Files\Windows Live Writer\WriterBrowserExtension.dll
O9 - 未知 - Extra button: Research(HKLM) - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O10 - 未知 - Winsock LSP: [WPC LSP] [{A1501250-A8ED-4844-84B8-A221C03A3A53}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{FD240675-277C-4DCC-9E8E-699E4FE53125}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{992520B4-119D-48BA-B76C-1D7E48D413B2}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{A746733E-126B-49A1-A1E1-97FAD7D69CA6}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{948F7BE1-DAD8-40CF-A0A5-7AE5596584F6}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{53E3FB98-256D-40D3-870C-06A9D22AE0FD}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{6954CDC8-C4DC-462A-968B-921AB6913F69}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{646CA99C-D7DE-4C5D-8758-BAAF3257D15C}]C:\Windows\system32\wpclsp.dll
O10 - 未知 - Winsock LSP: [WPC LSP] [{572F18CF-62F6-4456-BE0E-AF2D8FDBCE0B}]C:\Windows\system32\wpclsp.dll
O15 - 未知 - Trusted Zone: http:221.208.242.29
O15 - 未知 - Trusted Zone: http:221.208.250.138
O15 - 未知 - Trusted Zone: https:alipay.com
O15 - 未知 - Trusted Zone: http:alipay.com
O15 - 未知 - Trusted Zone: https:alisoft.com
O15 - 未知 - Trusted Zone: http:alisoft.com
O15 - 未知 - Trusted Zone: http:cncmax.cn
O15 - 未知 - Trusted Zone: http:cncmax.hl.cn
O15 - 未知 - Trusted Zone: http:cncmax.tj.cn
O15 - 未知 - Trusted Zone: http://edrivers.lenovo.com.cn
O16 - 未知 - DPF: {2FD68643-4BCE-4EF5-B7B8-F0F1192FDE86} (DrvCert) - http://edrivers.lenovo.com.cn/vista/cab/cn-Vista.cab
O16 - 未知 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com ... zh-cn/wlscctrl2.cab
O16 - 未知 - DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} (EditCtrl) - https://img.alipay.com/download/1103/aliedit.cab
O16 - 未知 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://zjh1212.spaces.live.com/PhotoUpload/VistaMsnPUpldzh-cn.cab
O16 - 未知 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0 ... 02-windows-i586.cab
O16 - 未知 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) - http://java.sun.com/update/1.6.0 ... 02-windows-i586.cab
O18 - 未知 - Protocol: Microsoft Office InfoPath XML Mime Filter - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O18 - 未知 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - 未知 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - 未知 - Service: AlertService [This service reports the notices from Intel Viiv software. If this service is stopped or disabled, components of Intel Viiv software that depend on the notices will not receive them.] - "C:\Program Files\Intel\IntelDH\CCU\AlertService.exe" - (not running)
O23 - 未知 - Service: CPUCooLServer [CPUCooLServer Service] - C:\Program Files\CPUCooL\CooLSrv.exe - (running)
O23 - 未知 - Service: DPS [@%systemroot%\system32\dps.dll,-501] - C:\Windows\system32\dps.dll - (error)
O23 - 未知 - Service: DQLWinService [DQLWinService] - "C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe" - (running)
O23 - 未知 - Service: DTSRVC [Provides support for applications that control display settings.] - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe - (running)
O23 - 未知 - Service: ehRecvr [@%SystemRoot%\ehome\ehrecvr.exe,-102] - C:\Windows\ehome\ehRecvr.exe - (running)
O23 - 未知 - Service: ehSched [@%SystemRoot%\ehome\ehsched.exe,-102] - C:\Windows\ehome\ehsched.exe - (running)
O23 - 未知 - Service: ehstart [@%SystemRoot%\ehome\ehstart.dll,-102] - C:\Windows\ehome\ehstart.dll - (not running)
O23 - 未知 - Service: Emproxy [Scans inbound (POP3) and outbound (SMTP) e-mail messages and attachments for viruses and other threats.] - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe - (running)
O23 - 未知 - Service: Eventlog [@%SystemRoot%\system32\wevtsvc.dll,-201] - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted - (running)
O23 - 未知 - Service: GoogleDesktopManager [GoogleDesktopManager] - "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" - (not running)
O23 - 未知 - Service: gusvc [Google Updater Service] - "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe" - (running)
O23 - 未知 - Service: IntelDHSvcConf [Intel DH Service] - "C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe" - (not running)
O23 - 未知 - Service: ISSM [Intel(R) Software Services Manager] - "C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe" - (not running)
O23 - 未知 - Service: IviRegMgr [IviRegMgr] - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe - (running)
O23 - 未知 - Service: M1 Server [Intel(R) Viiv(TM) Media Server] - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe - (not running)
O23 - 未知 - Service: McAfee HackerWatch Service [McAfee HackerWatch Service] - "C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe" - (running)
O23 - 未知 - Service: MCLServiceATL [Intel(R) Application Tracker] - "C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe" - (not running)
O23 - 未知 - Service: mcmispupdmgr [Downloads and installs updates for McAfee programs.] - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe - (not running)
O23 - 未知 - Service: mcmscsvc [Manages McAfee users.] - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe - (running)
O23 - 未知 - Service: McNASvc [Allows McAfee applications to communicate securely on the local network.] - "c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe" - (running)
O23 - 未知 - Service: McODS [Scans specified locations on this computer for viruses and other threats. The service runs for scheduled scans and manual scans.] - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe - (running)
O23 - 未知 - Service: mcpromgr [Manages protection problems on this computer for McAfee programs.] - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe - (running)
O23 - 未知 - Service: McRedirector [McAfee Redirector Service] - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe - (running)
O23 - 未知 - Service: McShield [Scans files for viruses and other threats when they are accessed by this computer.] - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe - (error)
O23 - 未知 - Service: McSysmon [Monitors potentially unauthorized changes to this computer.] - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe - (running)
O23 - 未知 - Service: Mcx2Svc [@%SystemRoot%\ehome\ehres.dll,-15502] - C:\Windows\system32\Mcx2Svc.dll - (not running)
O23 - 未知 - Service: MpfService [MpfService] - "C:\Program Files\McAfee\MPF\MPFSrv.exe" - (running)
O23 - 未知 - Service: MSiSCSI [@%SystemRoot%\system32\iscsidsc.dll,-5001] - C:\Windows\system32\iscsiexe.dll - (not running)
O23 - 未知 - Service: msiserver [@%SystemRoot%\system32\msimsg.dll,-32] - C:\Windows\system32\msiexec /V - (not running)
O23 - 未知 - Service: nsi [@%SystemRoot%\system32\nsisvc.dll,-201] - C:\Windows\system32\nsisvc.dll - (running)
O23 - 未知 - Service: odserv [运行部分 Microsoft Office 诊断。] - "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE" - (not running)
O23 - 未知 - Service: Peanuthull5Core [DDNS Service Provided by Shanghai Best Oray.] - C:\Program Files\Oray\PeanutHull5\PhCore.exe -service - (running)
O23 - 未知 - Service: pla [@%systemroot%\system32\pla.dll,-501] - C:\Windows\system32\pla.dll - (not running)
O23 - 未知 - Service: PolicyAgent [@%SystemRoot%\system32\polstore.dll,-5011] - C:\Windows\System32\ipsecsvc.dll - (running)
O23 - 未知 - Service: Remote UI Service [Intel(R) Remoting Service] - "C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe" - (not running)
O23 - 未知 - Service: RoxMediaDB9 [Roxio RoxMediaDB9 Service] - "c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe" - (not running)
O23 - 未知 - Service: SCardSvr [@%SystemRoot%\System32\SCardSvr.dll,-5] - C:\Windows\System32\SCardSvr.dll - (error)
O23 - 未知 - Service: ServiceLayer [ServiceLayer] - "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe" - (running)
O23 - 未知 - Service: simptcp [@%SystemRoot%\system32\simptcp.dll,-201] - C:\Windows\System32\tcpsvcs.exe - (running)
O23 - 未知 - Service: stllssvr [stllssvr] - "c:\Program Files\Common Files\SureThing Shared\stllssvr.exe" - (not running)
O23 - 未知 - Service: usnjsvc [Messenger 上安装的启用共享情况的服务] - "C:\Program Files\MSN Messenger\usnsvc.exe" - (not running)
O23 - 未知 - Service: WAS [@%windir%\system32\inetsrv\iisres.dll,-30002] - C:\Windows\system32\inetsrv\iisw3adm.dll - (not running)
O23 - 未知 - Service: WLSetupSvc [Windows Live Setup Service] - "C:\Program Files\Windows Live\installer\WLSetupSvc.exe" - (not running)
O23 - 未知 - Service: WPCSvc [@%SystemRoot%\system32\wpcsvc.dll,-101] - C:\Windows\System32\wpcsvc.dll - (not running)
O23 - 未知 - Service: wuauserv [@%systemroot%\system32\wuaueng.dll,-106] - C:\Windows\system32\wuaueng.dll - (running)
O23 - 未知 - Service: drvsvc [drvsvc] - C:\Program Files\Walker\DrvInst\Bin\DrvSvc.dll - (running)
O28 - 未知 - IELINK: C:\Users\郑界涵\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\ACCESS~1\SYSTEM~1\INTERN~1.LNK -  -extoff

=======================================

100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] -
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] -
100 - 安全 - Process: wininit.exe [Windows启动应用程序。] -
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] -
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] -
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] -
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: SLsvc.exe [微软软件授权服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: CAPRPCSK.EXE [佳能相关产品。] -
100 - 安全 - Process: CAPPSWK.EXE [佳能公司出品的激光打印机相关驱动程序。] -
100 - 安全 - Process: dwm.exe [Windows桌面窗口管理器。] -
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: CooLSRV.exe [在 windows 环境中让 cpu 降温的程序。] -
100 - 安全 - Process: LSSrvc.exe [一款名为LightScribe(光雕技术)的刻录机,可以在光盘上光雕个性化图案。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: TCPSVCS.EXE [tcp/ip services application支持透过tcp/ip连接局域网和internet。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: taskeng.exe [Windows任务计划程序引擎。] -
100 - 安全 - Process: taskeng.exe [Windows任务计划程序引擎。] -
100 - 安全 - Process: rundll32.exe [windows rundll32为了需要调用dlls的程序。] -
100 - 安全 - Process: rundll32.exe [windows rundll32为了需要调用dlls的程序。] -
100 - 安全 - Process: hpwuSchd2.exe [惠普公司出品的相关产品的更新升级程序。] -
100 - 安全 - Process: GoogleDesktop.exe [google.com出品的桌面搜索软件。] -
100 - 安全 - Process: LaunchApplication.exe [诺基亚公司出品的手机套件相关程序。] -
100 - 安全 - Process: 360tray.exe [360安全卫士实时监控程序。] -
100 - 安全 - Process: ehtray.exe [微软出品的winxp媒体中心软件的相关程序。] -
100 - 安全 - Process: msnmsgr.exe [msn messenger是一款即时通讯客户端软件。] -
100 - 安全 - Process: IDMan.exe [internet download manager下载软件,支持断点续传。] -
100 - 安全 - Process: GoogleWebAccWarden.exe [google出品的网页加速软件相关程序。] -
100 - 安全 - Process: GoogleDesktop.exe [google.com出品的桌面搜索软件。] -
100 - 安全 - Process: CAPPSWK.EXE [佳能公司出品的激光打印机相关驱动程序。] -
100 - 安全 - Process: CAPPSWK.EXE [佳能公司出品的激光打印机相关驱动程序。] -
100 - 安全 - Process: ehmsas.exe [微软出品的winxp媒体中心软件的相关程序。] -
100 - 安全 - Process: ehsched.exe [微软出品的winxp媒体中心软件的相关程序。] -
100 - 安全 - Process: mcagent.exe [是McAfee Internet Security网络安全套装的一部分。该进程用于对其病毒特征库进行升级。] -
100 - 安全 - Process: GoogleDesktop.exe [google.com出品的桌面搜索软件。] -
100 - 安全 - Process: GoogleDesktopQQPlugin.exe [google 桌面搜索软件相关程序。] -
100 - 安全 - Process: TscHelp.exe [一款名为snagit的屏幕、文本和视频捕获与转换程序相关插件。] -
100 - 安全 - Process: ehrecvr.exe [微软出品的winxp媒体中心软件的相关程序。] -
100 - 安全 - Process: googlewebaccclient.exe [一款网络加速软件,用于同时支持ie和firefox两种浏览器。] -
100 - 安全 - Process: kbd.exe [惠普公司出品的相关软件。] -
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] -
100 - 安全 - Process: firefox.exe [mozilla firefox浏览器相关程序,支持弹出广告拦截。] -
100 - 安全 - Process: wmplayer.exe [windows media player媒体播放器,支持wma、wmv媒体格式。] -
100 - 安全 - Process: 360Safe.exe [360安全卫士相关程序。] -
100 - 安全 - Process: TrustedInstaller.exe [Windows 模块安装程序。] -
100 - 安全 - Process: WmiPrvSE.exe [wmi 提供程序 (wmi provider) 在 wmi 和操作系统、应用程序以及其他系统的组件之间充当中介.此进程为合法的系统进程。] -
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
R0 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=C:\Windows\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=C:\Windows\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default)=http://www.google.com/keyword/%s
O2 - 安全 - BHO: (SnagIt Toolbar Loader) - [SnagIt 8, 屏幕、文本和视频捕获与转换程序。] - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll
O2 - 安全 - BHO: (Adobe PDF Reader Link Helper) - [Adobe Reader, 查看和打印 Adobe 便携文档格式 (PDF) 文件。] - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - 安全 - BHO: (Windows Live Sign-in Helper) - [windows live多用户登陆助手相关插件。] - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - 安全 - BHO: (Google Toolbar Helper) - [Google搜索工具条。] - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - 安全 - BHO: (FlashFXP Helper for Internet Explorer) - [iniCom出品的FlashFXP,是最新版本的流行FTP/FXP客户端软件。] - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - 安全 - Toolbar: (&Google) - [Google IE 客户端工具栏。] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - 安全 - Toolbar: (SnagIt) - [一款名为snagit的屏幕、文本和视频捕获与转换程序相关插件。] - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 8\SnagItIEAddin.dll
O3 - 安全 - Toolbar: (Alexa) - [Alexa工具条相关文件。] - {3CEFF6CD-6F08-4e4d-BCCD-FF7415288C3B} - C:\Windows\system32\SHDOCVW.DLL
O4 - 安全 - HKLM\..\Run: [hpsysdrv] [hp公司软件。] c:\hp\support\hpsysdrv.exe
O4 - 安全 - HKLM\..\Run: [KBD] [惠普出品的相关软件。] C:\HP\KBD\KbdStub.EXE
O4 - 安全 - HKLM\..\Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - 安全 - HKLM\..\Run: [NvMediaCenter] [是NVidia显示卡相关文件。] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - 安全 - HKLM\..\Run: [HP Software Update] [惠普软件升级程序。] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - 安全 - HKLM\..\Run: [CAPON] [佳能公司出品的打印机相关程序。] C:\Windows\system32\Spool\Drivers\w32x86\3\CAPONN.EXE
O4 - 安全 - HKLM\..\Run: [Google Desktop Search] [google推出的一款桌面搜索软件。] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - 安全 - HKLM\..\Run: [TkBellExe] [是Real Networks产品定时升级检测程序。] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - 安全 - HKLM\..\Run: [PCSuiteTrayApplication] [诺基亚公司出品的一款手机同步的软件,用于数据传输。] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - 安全 - HKLM\..\Run: [SunJavaUpdateSched] [java升级相关软件。] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - 安全 - HKLM\..\Run: [ICSDCLT] [windows网络连接共享程序。] C:\Windows\rundll32.exe C:\Windows\system32\icsdclt.dll,ICSClient
O4 - 安全 - HKLM\..\Run: [360Safetray] [360safe实时保护功能模块。] C:\Program Files\360safe\safemon\360tray.exe /start
O4 - 安全 - HKCU\..\Run: [WindowsWelcomeCenter] [Windows Vista操作系统欢迎中心] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - 安全 - HKCU\..\Run: [MsnMsgr] [微软msn即时通讯工具] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - 安全 - HKCU\..\Run: [swg] [Goolge工具栏相关程序。] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - 默认 - HKCU\..\Run: [IDMan] [一款名为internet download manager 的p2p软件。] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - 安全 - HKCU\..\Run: [googletalk] [google公司推出的即时通讯软件。] C:\Users\郑界涵\AppData\Roaming\Google\Google Talk\googletalk.exe /autostart
O4 - 安全 - Startup folder: [SnagIt 8.lnk] [SnagIt 8, 屏幕、文本和视频捕获与转换程序,是一个截图工具。] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SnagIt 8.lnk
O4 - 安全 - Startup folder: [腾讯QQ.lnk] [qq:即时通讯软件] C:\Users\郑界涵\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\腾讯QQ.lnk
O9 - 安全 - Extra button: 电台(HKLM) - C:\Windows\web\related.htm
O11 - 安全 - Options Group: International*
O16 - 安全 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in) - http://java.sun.com/update/1.6.0 ... 02-windows-i586.cab
O16 - 安全 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Flash播放器) - http://fpdownload2.macromedia.co ... current/swflash.cab
O23 - 安全 - Service: Adobe LM Service [adobe公司相关产品的许可服务程序。] - "C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe" - (not running)
O23 - 安全 - Service: BthServ [蓝牙支持服务。] - C:\Windows\System32\bthserv.dll - (running)
O23 - 安全 - Service: LightScribeService [一个来自dvd刻录机\\\"光雕\\\"软件的相关程序,通过用户许可协议安装。] - "c:\Program Files\Common Files\LightScribe\LSSrvc.exe" - (running)
O23 - 安全 - Service: SNMPTRAP [微软Microsoft Windows操作系统相关程序,用于监听简单网络管理协议SNMP的消息。] - C:\Windows\System32\snmptrap.exe - (not running)
O25 - 安全 - ABOUT: DesktopItemNavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationCanceled - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: NavigationFailure - res://ieframe.dll/navcancl.htm
O25 - 安全 - ABOUT: OfflineInformation - res://ieframe.dll/offcancl.htm
O25 - 安全 - ABOUT: PostNotCached - res://ieframe.dll/repost.htm

=======================================

O31 - 未知 - Other Autoruns: Kmode - \SystemRoot\System32\win32k.sys -  -  -  - 0 -
O31 - 未知 - Other Autoruns:  - C:\Windows\Explorer.exe /separate,/e -  -  -  - 0 -
O31 - 未知 - Folder Menu: {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} - "C:\Program Files\Sun\StarOffice 8\program\shlxthdl.dll" -  -  -  - 0 -
O31 - 未知 - Folder Menu: {F9DB5320-233E-11D1-9F84-707F02C10627} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll - Adobe Systems, Inc. - PDF Shell Extension - 8.0.0.0 - 372736 - a9b3b4a762963be8cac715bef5068232
O31 - 未知 - SEApproved: {b2c761c6-29bc-4f19-9251-e6195265baf1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {7A979262-40CE-46ff-AEEE-7884AC3B6136} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {3e7efb4c-faf1-453d-89eb-56026875ef90} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {0DF44EAA-FF21-4412-828E-260A8728E7F1} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:ActiveDirectory Folder -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:ActiveDirectory Folder -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Sam Account Folder -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Sam Account Folder -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {E44E5D18-0652-4508-A4E2-8A090067BCB0} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {6dfd7c5c-2451-11d3-a299-00c04f8ef6af} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Explorer Query Band -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {38a98528-6cbf-4ca9-8dc0-b1e1d10f7b1b} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Contacts folder -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {4026492f-2f69-46b8-b9bf-5654fc07e423} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {fcfeecae-ee1b-4849-ae50-685dcf7717ec} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {a304259d-52b8-4526-8b1a-a1d6cecc8243} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:.cab or .zip files -  -  -  -  - 0 -
O31 - 未知 - SEApproved: 无效的CLSID:Windows Search Shell Service -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {d3e34b21-9d75-101a-8c3d-00aa001a1652} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {00f2886f-cd64-4fc9-8ec5-30ef6cdbe8c3} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {9D687A4C-1404-41ef-A089-883B6FBECDE6} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {37efd44d-ef8d-41b1-940d-96973a50e9e0} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {67718415-c450-4f3c-bf8a-b487642dc39b} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {d8559eb9-20c0-410e-beda-7ed416aecc2a} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {5ea4f148-308c-46d7-98a9-49041b1dd468} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {031EE060-67BC-460d-8847-E4A7C5E45A27} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {7A9D77BD-5403-11d2-8785-2E0420524153} -  -  -  -  - 0 -
O31 - 未知 - SEApproved: {7F67036B-66F1-411A-AD85-759FB9C5B0DB} - C:\Windows\System32\ShellvRTF.dll - XSS - ShellvRTF - 1.1.0.5 - 237568 - 91fa8d1db1ec243cecd4a0977c91cc6f
O31 - 未知 - SEApproved: {654D0431-C930-43C4-B8DA-9AA01BA5B486} - C:\Program Files\Common Files\Portrait Displays\Shared\HtmlEngine.dll - Portrait Displays, Inc - HTML UI Engine - 1.0.0.1 - 139264 - ac85ddbf80848ee56f063fa82953a095
O31 - 未知 - SEApproved: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 128512 - 2b7421a2351fbfa6e29141c46aea6b57
O31 - 未知 - SEApproved: {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - C:\Program Files\Real\RealPlayer\rpshell.dll - RealNetworks, Inc. - RealPlayer Shell Extensions - 1.0.1.1946 - 49198 - 68718fbfe1513aaeed9bf319d912bb47
O31 - 未知 - SEApproved: {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} - C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll - Nokia - Phone Browser - 6.82.63.9 - 566784 - d1d12242118ccef2e2279df2182ca2d6
O31 - 未知 - SEApproved: {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} - "C:\Program Files\Sun\StarOffice 8\program\shlxthdl.dll" -  -  -  - 0 -
O31 - 未知 - SEApproved: {087B3AE3-E237-4467-B8DB-5A38AB959AC9} - "C:\Program Files\Sun\StarOffice 8\program\shlxthdl.dll" -  -  -  - 0 -
O31 - 未知 - SEApproved: {63542C48-9552-494A-84F7-73AA6A7C99C1} - "C:\Program Files\Sun\StarOffice 8\program\shlxthdl.dll" -  -  -  - 0 -
O31 - 未知 - SEApproved: {3B092F0C-7696-40E3-A80F-68D74DA84210} - "C:\Program Files\Sun\StarOffice 8\program\shlxthdl.dll" -  -  -  - 0 -
O31 - 未知 - Directory Menu: {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Program Files\WinRAR\rarext.dll -  -  -  - 128512 - 2b7421a2351fbfa6e29141c46aea6b57
O31 - 未知 - LSA: Security Packages - sv1_0.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - channel.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - digest.dll -  -  -  - 0 -
O31 - 未知 - LSA: Security Packages - spkg.dll -  -  -  - 0 -

=======================================

O40 - Explorer.EXE - Nokia - C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll - Phone Browser - d1d12242118ccef2e2279df2182ca2d6
O40 - Explorer.EXE - Nokia - C:\Program Files\Nokia\Nokia PC Suite 6\PCSCM.dll - PC Suite Common Modules - ca33b4b0aafe8c667b330738c8623a61
O40 - Explorer.EXE - Nokia. - C:\Program Files\PC Connectivity Solution\ConnAPI.DLL - Nokia Connectivity API - 3a42e0ce06b4ad78c07c80a419ad039c
O40 - Explorer.EXE - Microsoft Corporation - C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCP80.dll - Microsoft? C++ Runtime Library - 4c8a880eabc0b4d462cc4b2472116ea1
O40 - Explorer.EXE - Microsoft Corporation - C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCR80.dll - Microsoft? C Runtime Library - e4fece18310e23b1d8fee993e35e7a6f
O40 - Explorer.EXE - Microsoft Corporation - C:\Windows\system32\MSVCP71.dll - Microsoft? C++ Runtime Library - 561fa2abb31dfa8fab762145f81667c2
O40 - Explorer.EXE - Microsoft Corporation - C:\Windows\system32\MSVCR71.dll - Microsoft? C Runtime Library - 86f1895ae8c5e8b17d99ece768a70732
O40 - Explorer.EXE -  - C:\Program Files\Portrait Displays\Pivot Software\winphook.dll -  - 2b7f2d5b4c86f06d931a14441d4f187b
O40 - Explorer.EXE -  - C:\Program Files\Common Files\Portrait Displays\Shared\dthook.dll -  - fadefb390846b3a5be0bf4e8e53defea
O40 - Explorer.EXE -  - C:\Program Files\Common Files\Portrait Displays\Shared\PresetsCOM.dll -  - f26cb98b91afd7be723c80909ae5f418
O40 - Explorer.EXE - Microsoft Corporation - C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.762_none_0c178a139ee2a7ed\MFC80.DLL - MFCDLL Shared Library - Retail Version - 1b7524806d0270b81360c63a2fa047cb
O40 - Explorer.EXE - Microsoft Corporation - C:\Windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.762_none_43efccf17831d131\MFC80CHS.DLL - MFC Language Specific Resources - afa7e91c8c9566e03fb1620f95230b93
O40 - Explorer.EXE - bome.com - C:\Windows\system32\RestoratorContextMenu.dll - Restorator 上下文菜单扩展 - 96b5d4ff738b78f69d1fe0dc8922c3af
O40 - rundll32.exe -  - C:\Program Files\Portrait Displays\Pivot Software\winphook.dll -  - 2b7f2d5b4c86f06d931a14441d4f187b
O40 - rundll32.exe -  - C:\Program Files\Portrait Displays\Pivot Software\winphook.dll -  - 2b7f2d5b4c86f06d931a14441d4f187b
O40 - svchost.exe - 北京易软健计算机技术有限公司 - c:\program files\walker\drvinst\bin\drvsvc.dll - 该程序提供WindowsVista系统下的设备驱动管理服务 - 0107205bbdd75d5782ed92f39bc5da9b

=======================================

O41 - BaseTDI - basetdi - C:\Windows\System32\drivers\basetdi.sys - (running) - basetdi - Beijing Rising Technology Co., Ltd. - 0064810c1b03f2c889130b669a4ce937
O41 - PxHelp20 - Px Engine Device Driver for Windows 2000/XP - C:\Windows\System32\drivers\pxhelp20.sys - (running) - Px Engine Device Driver for Windows 2000/XP - Sonic Solutions - f7bb4e7a7c02ab4a2672937e124e306e
O41 - WINIO - WINIO - C:\Program Files\简单游\hknms.sys - (running) -  -  - 4d0cb92cdbc1088d247f832deb752d24
O41 - Cdsys - Cdsys - C:\Windows\system32\cdcd.sys - (not running) -  -  -
O41 - ENTECH - ENTECH - C:\Windows\System32\drivers\Entech.sys - (not running) -  - EnTech Taiwan - fd9fc82f134b1c91004ffc76a5ae494b
O41 - NPF - npf - C:\Windows\System32\drivers\npf.sys - (not running) - npf - CACE Technologies - 2c19036687354db0ed375040afa0d735
O41 - TesSafe - TesSafe - C:\Windows\System32\TesSafe.sys - (not running) -  -  - dc41942275c39ff85e8b122250590548

=======================================
360Safe.exe=3.6.1.2002
AntiAdwa.dll=3.6.1.1001
AntiEng.dll=3.6.1.1001
AntiActi.dll=2.0.0.3000
CleanHis.dll=3.0.2.1000
live.dll=1.0.1.1020

=======================================
操作历史报告:
----------清理恶评及系统插件历史----------

2007-09-08 20:11
清理恶评软件 - MSN 搜索工具栏 -

2007-07-20 16:48
清理好评插件 - 百度搜索伴侣 - C:\Windows\system32\realname.dat
2007-07-20 16:48
清理好评插件 - 新浪UC -
清理好评插件 - 卡卡上网安全助手 - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\卡卡上网安全助手
2007-07-26 18:26
清理好评插件 - PC蛋蛋 - C:\Windows\system32\PCEggs.dll
2007-08-13 22:06
清理恶评插件 - 百度超级搜霸 - C:\PROGRA~1\baidu\bar\BaiduBar.dll
2007-08-13 22:07
清理好评插件 - 百度搜索伴侣 -
2007-08-15 12:27
清理恶评插件 - 腾讯QQ附带的QQIEHelper插件 -
2007-08-17 20:52
清理恶评插件 - 腾讯QQ附带的QQIEHelper插件 -
2007-09-08 12:52
清理好评插件 - IESpeed Module - C:\Windows\system32\yg.dll
清理好评插件 - MSN 搜索工具栏 - C:\PROGRA~1\WI81E8~1\msntb.dll
清理好评插件 - 新浪UC -
清理好评插件 - 超级旋风下载组件 -
2007-09-21 22:08
清理好评插件 - 迅雷下载组件 - C:\PROGRA~1\THUNDE~1\ComDlls\XUNLEI~2.DLL
2007-09-22 22:46
清理好评插件 - 超级旋风下载组件 -

----------修复IE浏览器操作历史----------

2007-08-13 22:08
R0 - 危险 - IE首页 - HKLM\Software\Microsoft\Internet Explorer\Main
R0 - 危险 - IE首页 - HKCU\Software\Microsoft\Internet Explorer\Main
R0 - 危险 - IE搜索页 - HKCU\Software\Microsoft\Internet Explorer\Main
R0 - 危险 - IE起始页的默认页 - HKLM\Software\Microsoft\Internet Explorer\Main
R1 - 危险 - IE左侧搜索页 - HKCU\Software\Microsoft\Internet Explorer\Main
R1 - 危险 - 启用备用搜索引擎 - HKCU\Software\Microsoft\Internet Explorer\Main
2007-08-15 23:09
R0 - 危险 - IE首页 - HKCU\Software\Microsoft\Internet Explorer\Main
O20 - 危险 - 自启动项AppInit_DLLs - C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL

=======================================

360安全卫士,彻底查杀各种流氓软件,全面保护系统安全,并赠送正版卡巴斯基7.0
最新免费下载:http://www.360safe.com

TOP

看晕了...

TOP

发新话题