win7系统,桌面上有两个IE,知道哪一个是假的,就是删不掉,用了最新版本也修复不了!
[code]2010-03-09,17:22:38
SysLog Scanner 3.0 - build 20091220
Arswp (http://www.arswp.com)
Windows 7 Ultimate Edition, 32-bit (build 7600)
================================================================
注册项
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<360sd> <"C:\Program Files\360\360sd\360sd.exe" /autorun> [(Verified)360.cn, 1, 1, 0, 1100]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<RtHDVCpl> <C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s> [(Verified)Realtek Semiconductor, 1, 0, 0, 477]
<360Safetray> <"C:\Program Files\360\360Safe\safemon\360tray.exe" /start> [(Verified)360.CN, 6, 2, 0, 5001]
<SuperKiller> <"C:\Program Files\360\360Safe\firstaid\SuperKiller.exe" /REG> [(Verified)360.cn, 4, 3, 0, 1010 | (Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt]
<使用迅雷下载> <C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm> [N/A]
<使用迅雷下载全部链接> <C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm> [N/A]
================================================================
启动组
================================================================
任务计划
================================================================
组件
--------------------------------
Shell Extension
[HaoZip Shell Extension]
<{5FED836A-C96C-4d88-A91E-F63F07726585}> <C:\Program Files\HaoZip\HaoZipExt.dll> [好压软件工作室, 1.8.1.3942]
--------------------------------
Context Menu
[HaoZip]
<{5FED836A-C96C-4d88-A91E-F63F07726585}> <C:\Program Files\HaoZip\HaoZipExt.dll> [好压软件工作室, 1.8.1.3942]
[OpenFolder]
<{0DE1378D-F811-40E6-B60A-1CC56F57D3E9}> <C:\Program Files\AliWangWang\AliIMExt.dll> [(Verified)Alibaba software (Shanghai) Corporation., 1.0.0.1]
[QvodMenu]
<{9F44453E-1E46-4D5C-B57C-112FF2EDAE82}> <C:\QvodPlayer\QvodBand.dll> [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 0, 0, 0]
[SD360]
<{086F171D-5ED1-4ED2-B736-CFF3AD6A128E}> <C:\Program Files\360\360sd\MenuEx.dll> [(Verified)360.cn, 1, 1, 0, 1080]
--------------------------------
ActiveX Extension
[ThunderAtOnce Class]
<{01443AEC-0FD1-40FD-9C87-E93D1494C233}> <C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll> [(Verified)深圳市迅雷网络技术有限公司, 5,9,16,1306]
[WWPicUploadCtrl Class]
<{1D63232D-4F15-4A42-890D-EE617AA1537D}> <C:\Program Files\AliWangWang\modules\1685\WWPictureUpload.dll> [Alibaba software (Shanghai) Corporation, 1.0.0.1]
[iTrusPTA Class]
<{1E0DFFCF-27FF-4574-849B-55007349FEDA}> <C:\Windows\system32\aliedit\pta.dll> [(Verified)Copyright 2001, 2, 5, 1, 509]
[GDGetTokenInfo Class]
<{3AA9CF07-DF20-48FF-98BE-DED276E40146}> <C:\Windows\System32\GDREAD~1.DLL> [Copyright 2007, 1, 0, 0, 2]
[Thunder Agent Class]
<{485463B7-8FB2-4B3B-B29B-8B919B0EACCE}> <C:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent5.9.16.1306.dll> [(Verified)深圳市迅雷网络技术有限公司, 5,9,16,1306]
[EditCtrl Class]
<{488A4255-3236-44B3-8F27-FA1AECAA8844}> <C:\Windows\system32\aliedit\aliedit.dll> [(Verified)Copyright 2008, 2, 2, 0, 1]
[QvodExtend]
<{53AC8551-0DE0-4606-8A1E-A51AF20ADD60}> <C:\QvodPlayer\QvodExtend.dll> [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 0, 0, 0]
[WangWangX Class]
<{5D09DD40-CDC4-4C56-B615-0D1E3B357C2B}> <C:\Program Files\AliWangWang\AliIMX.dll> [(Verified)Alibaba software (Shanghai) Corporation., 1.0.0.1]
[CAntiVersion Object]
<{5EFE0AA6-B28B-41BD-9B3C-02AA3F79EA9A}> <C:\Program Files\ICBCEbankTools\ICBCAntiPhishing\AntiPhishingVer.dll> [(Verified)中国工商银行, 1.0.5.27]
[SpeedTest Class]
<{6DC46AC0-7EC9-44EB-8CF7-5371B2008904}> <C:\Windows\system32\SpeedTE.dll> [AKAZAM Communicati** Inc., 3, 0, 7, 903]
[AxInputControl Class]
<{73E4740C-08EB-4133-896B-8D0A7C9EE3CD}> <C:\Windows\System32\INPUTC~1.DLL> [Copyright 2003, 1, 0, 0, 12]
[XDownloaddManager Class]
<{802F530B-A8F6-4631-AE49-6BACAAC6373E}> <C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll> [(Verified)深圳市迅雷网络技术有限公司, 5,9,16,1306]
[360SafeLive]
<{87515F61-A66C-4319-A0E0-D416CB8059E3}> <C:\Program Files\360\360Safe\Safelive.dll> [(Verified)Copyright 2008, 1, 0, 0, 1006]
[TTPlayer ActiveX Control]
<{89AE5F82-410A-4040-9387-68D1144EFD03}> <C:\Program Files\TTPlayer\ttpctrl.dll> [(Verified)Alen Soft, 5.6.3.0]
[AxSubmitControl Class]
<{8D9E0B29-563C-4226-86C1-5FF2AE77E1D2}> <C:\Windows\System32\SUBMIT~1.DLL> [Copyright 2003, 1, 0, 0, 5]
[SSOForPTLogin Class]
<{8FC1EE75-72B3-4A23-B987-2B1C4C8A611B}> <C:\Program Files\Common Files\Tencent\TXSSO\Bin\SSOAxCtrlForPTLogin.dll> [(Verified)Tencent, 1.0.0.5]
[OFrameObject Class]
<{9701758C-4373-482E-B13C-776C048EC890}> <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.3.5915.268.(384).dll> [(Verified)深圳市迅雷网络技术有限公司, 2, 3, 5915, 268]
[VersionDetector Class]
<{9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9B}> <C:\Program Files\Common Files\Thunder Network\KanKan\vd.1.1.0.29.(457).dll> [(Verified)深圳市迅雷网络技术有限公司, 1, 1, 0, 29]
[APlayer Control]
<{A9322148-C691-4B9D-91FC-B9C461DBE9DD}> <C:\Program Files\Common Files\Thunder Network\APlayer\APlayer_001.dll> [(Verified)ShenZhen Thunder Networking Technologies, LTD, 2.0.1.232]
[InfoSecICBCNetSign Class]
<{B1FBC1AD-5644-4084-882A-0F8BA85E7506}> <C:\Windows\System32\ICBC_N~1.DLL> [(Verified)Infosec Technologies Co., Ltd., 1, 0, 75, 5]
[SafeMon Class]
<{B69F34DD-F0F9-42DC-9EDD-957187DA688D}> <C:\Program Files\360\360Safe\safemon\safemon.dll> [(Verified)360安全中心, 6, 3, 1, 1006]
[ICBC Anti-Phishing class]
<{BB4491A2-D11A-4C6B-91C0-B53246A3122B}> <C:\Program Files\ICBCEbankTools\ICBCAntiPhishing\Icbc_AntiPhishing.dll> [(Verified)中国工商银行, 1.0.6.29]
[QQPlayerCtrl Class]
<{CD108273-D434-43E6-AA90-1469F97EB398}> <C:\Program Files\Tencent\QQMusic\QzoneMusic.dll> [(Verified)Tencent, 3, 2, 165, 710]
[Shockwave Flash Object]
<{D27CDB6E-AE6D-11CF-96B8-444553540000}> <C:\Windows\system32\Macromed\Flash\Flash10e.ocx> [(Verified)Adobe Systems, Inc., 10,0,45,2]
[TimwpDll.TimwpCheck]
<{ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4}> <C:\PROGRA~1\Tencent\QQ\Bin\Timwp.dll> [(Verified)Tencent, 1, 45, 1530, 0]
[QvodCtrl Class]
<{F3D0D36F-23F8-4682-A195-74C92B03D4AF}> <C:\QvodPlayer\QvodInsert.dll> [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 5, 0, 64]
[XPPlayer Class]
<{F3E70CEA-956E-49CC-B444-73AFE593AD7F}> <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.59150.261.(384).dll> [(Verified)深圳市迅雷网络技术有限公司, 2, 1, 59150, 261]
[webmod Class]
<{FEE3C8C5-9BEA-4079-AB36-63ECABFC7392}> <C:\Program Files\AliWangWang\alidcp.dll> [(Verified)Alipay.com Co.,Ltd, 1, 0, 0, 4]
================================================================
服务
[Machine Debug Manager / MDM][Running/Auto Start]
<"C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"> [Microsoft Corporation, 7.10.3077]
[360 杀毒全盘扫描辅助服务 / scan][Stopped/Manual Start]
<%SystemRoot%\System32\svchost.exe -k bdx --> "C:\Program Files\360\360sd\Scan.dll"> [(Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255) | S.C. BitDefender S.R.L, 12, 0, 53, 0]
[360 杀毒实时防护服务 / 360rp][Running/Auto Start]
<"C:\Program Files\360\360sd\360rp.exe"> [(Verified)360.cn, 1, 1, 0, 1101]
[ICBC Daemon Service / ICBC Daemon Service][Stopped/Auto Start]
<C:\Program Files\ICBCEbankTools\ICBCAntiPhishing\IcbcDaemon.exe> [(Verified)N/A]
[Tencent Software Update Service / TSUSVC][Stopped/Manual Start]
<"C:\Program Files\Tencent\QQSoftMgr\1.0.338.203\TencentUpdateSvc.exe" -run> [(Verified)Tencent, 1.0 Beta3 Build 338]
[主动防御 / ZhuDongFangYu][Running/Auto Start]
<"C:\Program Files\360\360Safe\deepscan\ZhuDongFangYu.exe"> [(Verified)360.cn, 3, 2, 0, 1001]
================================================================
驱动
[360SelfProtection / 360SelfProtection][Running/System Start]
<system32\drivers\360SelfProtection.sys> [(Verified)360安全中心, 1, 0, 0, 1028]
[adp94xx / adp94xx][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\adp94xx.sys> [(Verified)Adaptec, Inc., 1.6.000** (1.080528-1658)]
[adpahci / adpahci][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\adpahci.sys> [(Verified)Adaptec, Inc., 1.6.0006.1 (1.070222-1720)]
[adpu320 / adpu320][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\adpu320.sys> [(Verified)Adaptec, Inc., 7.2.000.000 (NT.070221-1245)]
[aic78xx / aic78xx][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\djsvs.sys> [(Verified)Adaptec, Inc., 6.0.0.0]
[aliide / aliide][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\aliide.sys> [(Verified)Acer Laboratories Inc., 1.20]
[amdsata / amdsata][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\amdsata.sys> [(Verified)Advanced Micro Devices, 1.1.2.4 (NT.080820-1745)]
[amdsbs / amdsbs][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\amdsbs.sys> [(Verified)AMD Technologies Inc., 3.6.1540.127 (NT.080925-1721)]
[amdxata / amdxata][Running/Boot Start]
<system32\DRIVERS\amdxata.sys> [(Verified)Advanced Micro Devices, 1.1.2.4 (NT.080820-1745)]
[arc / arc][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\arc.sys> [(Verified)Adaptec, Inc., 5.2.0.10384 (NT.070222-1720)]
[arcsas / arcsas][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\arcsas.sys> [(Verified)Adaptec, Inc., 5.2.0.16119 (NT.080820-1745)]
[Broadcom NetXtreme II VBD / b06bdrv][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\bxvbdx.sys> [(Verified)Broadcom Corporation, 4.8.2.0 built by: WinDDK]
[Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 / b57nd60x][Stopped/Manual Start]
<system32\DRIVERS\b57nd60x.sys> [(Verified)Broadcom Corporation, 10.100.4.0 (cbuild.04262009-413,b57nd6x-rel_11.4-lhdepot1106.CL-70171)]
[BAPIDRV / BAPIDRV][Running/System Start]
<\??\C:\Windows\system32\drivers\BAPIDRV.SYS> [(Verified)360.cn, 1.0.0.1005]
[bdfsfltr / bdfsfltr][Running/System Start]
<system32\DRIVERS\bdfsfltr.sys> [(Verified)BitDefender S.R.L. Bucharest, ROMANIA, 0.4.182.4891, RELEASE, built by: WinDDK]
[Brother USB Mass-Storage Lower Filter Driver / BrFiltLo][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\BrFiltLo.sys> [(Verified)Brother Industries, Ltd., 1.10.000 (vbl_wcp_d2_drivers.060616-1619)]
[Brother USB Mass-Storage Upper Filter Driver / BrFiltUp][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\BrFiltUp.sys> [(Verified)Brother Industries, Ltd., 1.04.000 (vbl_wcp_d2_drivers.060616-1619)]
[Brother MFC Serial Port Interface Driver (WDM) / Brserid][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\Brserid.sys> [(Verified)Brother Industries Ltd., 1.0.1.6 (vbl_wcp_d2_drivers.060616-1619)]
[Brother WDM Serial driver / BrSerWdm][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\BrSerWdm.sys> [(Verified)Brother Industries Ltd., 1.0.0.20 (vbl_wcp_d2_drivers.060616-1619)]
[Brother MFC USB Fax Only Modem / BrUsbMdm][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\BrUsbMdm.sys> [(Verified)Brother Industries Ltd., 1,0,0,12 (vbl_wcp_d2_drivers.060616-1619)]
[Brother MFC USB Serial WDM Driver / BrUsbSer][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\BrUsbSer.sys> [(Verified)Brother Industries Ltd., 1,0,1,3 (vbl_wcp_d2_drivers.060809-0459)]
[cmdide / cmdide][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\cmdide.sys> [(Verified)CMD Technology, Inc., 2.0.7 (win7_rtm.090713-1255)]
[Broadcom NetXtreme II 10 GigE VBD / ebdrv][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\evbdx.sys> [(Verified)Broadcom Corporation, 4.8.13.0 built by: WinDDK]
[EfiSystemMon / EfiMon][Running/System Start]
<System32\Drivers\Efimon.sys> [(Verified)奇虎网, 1, 0, 0, 1004]
[elxstor / elxstor][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\elxstor.sys> [(Verified)Emulex, 5-2.10.211 01/23/2009 WS2K3 32 bit (NT.090122-1157)]
[Hauppauge C**umer Infrared Receiver / hcw85cir][Stopped/Manual Start]
<\SystemRoot\system32\drivers\hcw85cir.sys> [(Verified)Hauppauge Computer Works, Inc., 1.31.27127 (winmain(edkeith).090129-0050)]
[HookPort / HookPort][Running/Boot Start]
<System32\Drivers\Hookport.sys> [(Verified)360安全中心, 1, 0, 0, 1009]
[HpSAMD / HpSAMD][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\HpSAMD.sys> [(Verified)Hewlett-Packard Company, 6.12.4.32 Build 13 Media Driver (x86) (NT.080820-1745)]
[iaStorV / iaStorV][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\iaStorV.sys> [(Verified)Intel Corporation, 8.6.2.1012]
[IDDRV / IDDRV][Stopped/Manual Start]
<\??\C:\Program Files\DriveTheLife\iodrv.sys> [(Verified)[your company here], 1.0.0.20]
[iirsp / iirsp][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\iirsp.sys> [(Verified)Intel Corp./ICP vortex GmbH, 5.4.22.0]
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
<system32\drivers\RTKVHDA.sys> [(Verified)Realtek Semiconductor Corp., 6.0.1.6029 built by: WinDDK]
[LSI_FC / LSI_FC][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\lsi_fc.sys> [(Verified)LSI Corporation, 1.28.03.52 (NT.080528-1658)]
[LSI_SAS / LSI_SAS][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\lsi_sas.sys> [(Verified)LSI Corporation, 1.28.03.52 (NT.080820-1745)]
[LSI_SAS2 / LSI_SAS2][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\lsi_sas2.sys> [(Verified)LSI Corporation, 2.00.02.71 (NT.080820-1745)]
[LSI_SCSI / LSI_SCSI][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\lsi_scsi.sys> [(Verified)LSI Corporation, 1.28.03.67 (NT.080820-1745)]
[megasas / megasas][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\megasas.sys> [(Verified)LSI Corporation, 4.5.1.32 (NT.080820-1745)]
[MegaSR / MegaSR][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\MegaSR.sys> [(Verified)LSI Corporation, Inc., 13.05.0409.2009]
[nfrd960 / nfrd960][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\nfrd960.sys> [(Verified)IBM Corporation, 7.10.56 (NT.060601-1710)]
[nvlddmkm / nvlddmkm][Running/Manual Start]
<system32\DRIVERS\nvlddmkm.sys> [(Verified)NVIDIA Corporation, 8.15.11.8593]
[nvraid / nvraid][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\nvraid.sys> [(Verified)NVIDIA Corporation, 10.6.0.16 (NT.080820-1745)]
[nvstor / nvstor][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\nvstor.sys> [(Verified)NVIDIA Corporation, 10.6.0.16 (NT.080820-1745)]
[ql2300 / ql2300][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\ql2300.sys> [(Verified)QLogic Corporation, 9.1.8.6]
[ql40xx / ql40xx][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\ql40xx.sys> [(Verified)QLogic Corporation, 2.1.3.20 (STOR w32)]
[Quantum DeepScanner Servers / qutmdserv][Running/System Start]
<\??\C:\Windows\system32\drivers\qutmdrv.sys> [(Verified)360.cn, 6.3.0.1009]
[qutmipc / qutmipc][Running/System Start]
<\??\C:\Windows\system32\drivers\qutmipc.sys> [(Verified)360安全中心, 6.2.0.1007]
[Realtek 8167 NT Driver / RTL8167][Running/Manual Start]
<system32\DRIVERS\Rt86win7.sys> [(Verified)Realtek , 7.009.1105.2009 built by: WinDDK]
[SiSRaid2 / SiSRaid2][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\SiSRaid2.sys> [(Verified)Silicon Integrated Systems Corp., 2.60.01 (NT.080528-1658)]
[SiSRaid4 / SiSRaid4][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\sisraid4.sys> [(Verified)Silicon Integrated Systems, 3.60.03 (NT.080528-1658)]
[stexstor / stexstor][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\stexstor.sys> [(Verified)Promise Technology, 5.00 (1.080528-1658)]
[TesSafe / TesSafe][Stopped/Manual Start]
<\??\C:\Windows\system32\TesSafe.sys> [(Verified)TENCENT, 1.11.3.3182]
[viaide / viaide][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\viaide.sys> [(Verified)VIA Technologies, Inc., 6,0,6000,170]
[vsmraid / vsmraid][Stopped/Manual Start]
<\SystemRoot\system32\DRIVERS\vsmraid.sys> [(Verified)VIA Technologies Inc.,Ltd, 6.0.6000.6210]
================================================================
活动进程
[PID: 908 / LOCAL SERVICE] C:\Windows\System32\svchost.exe [(Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
C:\Windows\system32\RtkAPO.dll [(Verified)Realtek Semiconductor Corp., 11, 0, 6000, 132]
[PID: 1220 / SYSTEM] C:\Program Files\360\360Safe\deepscan\ZhuDongFangYu.exe [(Verified)360.cn, 3, 2, 0, 1001]
C:\Program Files\360\360Safe\deepscan\CloudCom2.dll [(Verified)360.cn, 3, 2, 1, 1005]
C:\Program Files\360\360Safe\deepscan\heavygate.dll [360.cn, 3, 6, 21, 0]
C:\Program Files\360\360Safe\SoftMgr\360SoftMgrS.dll [(Verified)奇虎网, 2, 1, 5, 1010]
C:\Program Files\360\360Safe\deepscan\qutmload.dll [(Verified)360.cn, 6, 2, 0, 1007]
[PID: 1504 / zhou] C:\Windows\system32\Dwm.exe [(Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
C:\Windows\system32\nvwgf2um.dll [(Verified)NVIDIA Corporation, 8.15.11.8593]
[PID: 1524 / zhou] C:\Windows\system32\taskhost.exe [(Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
C:\Windows\System32\l3codeca.acm [(Verified)Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0401]
[PID: 1596 / zhou] C:\Windows\Explorer.EXE [(Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
C:\Program Files\360\360sd\MenuEx.dll [(Verified)360.cn, 1, 1, 0, 1080]
C:\Program Files\HaoZip\HaoZipExt.dll [好压软件工作室, 1.8.1.3942]
C:\QvodPlayer\QvodBand.dll [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 0, 0, 0]
C:\Program Files\AliWangWang\AliIMExt.dll [(Verified)Alibaba software (Shanghai) Corporation., 1.0.0.1]
C:\Windows\System32\l3codeca.acm [(Verified)Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0401]
[PID: 1780 / SYSTEM] C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [Microsoft Corporation, 7.10.3077]
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\2052\mdmui.dll [Microsoft Corporation, 7.10.3077]
[PID: 1292 / zhou] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [(Verified)Realtek Semiconductor, 1, 0, 0, 477]
[PID: 1244 / zhou] C:\QvodPlayer\QvodTerminal.exe [(Verified)Shenzhen QVOD Technology Co.,Ltd, 3, 5, 0, 64]
[PID: 1696 / zhou] C:\Program Files\arswp3\ArSwp3.exe [(Verified)Windows 清理助手, 3.0.14.0130]
C:\Program Files\360\360Safe\safemon\safemon.dll [(Verified)360安全中心, 6, 3, 1, 1006]
C:\Windows\system32\Macromed\Flash\Flash10e.ocx [(Verified)Adobe Systems, Inc., 10,0,45,2]
C:\Windows\system32\nvd3dum.dll [(Verified)NVIDIA Corporation, 8.15.11.8593]
[PID: 2740 / zhou] C:\Program Files\Internet Explorer\iexplore.exe [(Verified)Microsoft Corporation, 8.00.7600.16385 (win7_rtm.090713-1255)]
C:\Program Files\360\360Safe\safemon\safemon.dll [(Verified)360安全中心, 6, 3, 1, 1006]
C:\Program Files\360\360Safe\safemon\LoadWDUI.dll [(Verified)360安全中心, 1, 0, 0, 1013]
C:\Program Files\360\360Safe\safemon\wdui.dll [(Verified)360安全中心, 1, 0, 0, 1006]
[PID: 3180 / zhou] C:\Program Files\Internet Explorer\iexplore.exe [(Verified)Microsoft Corporation, 8.00.7600.16385 (win7_rtm.090713-1255)]
C:\Program Files\360\360Safe\safemon\safemon.dll [(Verified)360安全中心, 6, 3, 1, 1006]
C:\Program Files\360\360Safe\safemon\urlproc.dll [(Verified)360安全中心, 1, 2, 0, 1002]
C:\Program Files\360\360Safe\safemon\urlprocnet.dll [(Verified)360安全中心, 1, 1, 0, 1003]
C:\Windows\system32\nvd3dum.dll [(Verified)NVIDIA Corporation, 8.15.11.8593]
C:\Windows\system32\Macromed\Flash\Flash10e.ocx [(Verified)Adobe Systems, Inc., 10,0,45,2]
[PID: 3856 / zhou] C:\Program Files\Internet Explorer\iexplore.exe [(Verified)Microsoft Corporation, 8.00.7600.16385 (win7_rtm.090713-1255)]
C:\Program Files\360\360Safe\safemon\safemon.dll [(Verified)360安全中心, 6, 3, 1, 1006]
C:\Program Files\360\360Safe\safemon\urlproc.dll [(Verified)360安全中心, 1, 2, 0, 1002]
C:\Program Files\360\360Safe\safemon\urlprocnet.dll [(Verified)360安全中心, 1, 1, 0, 1003]
C:\Windows\system32\nvd3dum.dll [(Verified)NVIDIA Corporation, 8.15.11.8593]
C:\Program Files\360\360Safe\safemon\LoadWDUI.dll [(Verified)360安全中心, 1, 0, 0, 1013]
C:\Program Files\360\360Safe\safemon\wdui.dll [(Verified)360安全中心, 1, 0, 0, 1006]
================================================================
文件关联
[.hlp] <%SystemRoot%\System32\winhlp32.exe %1> []
================================================================
Autorun.Inf
================================================================
Winsock**者
================================================================
隐藏进程
[PID: 1112] C:\Windows\System32\audiodg.exe [(Verified)Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
================================================================
可疑文件
================================================================
HOSTS
127.0.0.1 localhost
[/code] 对了,想粉碎的话,桌面上的好运个假的IE图标就好像隐藏了。请大虾帮忙啊! 假的IE默认打的主页是:[url]http://www.wz4321.com/?vip[/url] 高手进来看了吗??我等的急啊 留个QQ远程看看! 我给你发消息了,,告诉我QQ加你。我的是601489158 用今天才升级的360安全卫士解决了 用金山急救箱可以解决.....不过这东西很麻烦.....取消不掉自动启动..一次性物品用完就删..
页:
[1]