2000FUN論壇

 

 

搜索
2000FUN論壇 綜合論壇 電腦技術問題交流 未解決呀= ="
返回列表 發新帖 回覆
查看: 3162|回覆: 59
go

未解決呀= =" [複製鏈接]

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
1#
發表於 06-11-3 11:57 PM |只看該作者 |倒序瀏覽 |打印
Logfile of HijackThis v1.99.1
Scan saved at 23:55:45, on 2006/11/3
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ieupsvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\HijackThis\HijackThis.exe
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: (no name) - {3441C39E-8BBE-4D9F-D681-56B2CBD1CBC2} - C:\DOCUME~1\gersang\APPLIC~1\showamen\dog four.exe (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Little Fighter 2 Toolbar Helper - {AB41010D-4804-4793-A6A2-3B5EBE2348DD} - C:\Program Files\Little Fighter 2 Toolbar\v2.0.0.1\Little_Fighter_2_Toolbar.dll (file missing)
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\zh-tw\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\zh-tw\msntb.dll
O3 - Toolbar: (no name) - {F60C7D81-8471-4D40-AAFE-56D318F34C2D} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: ICQ  Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQToolbar\toolbaru.dll (file missing)
O3 - Toolbar: Little Fighter 2 Toolbar - {C11483F7-D7D8-4804-98D8-6055470BB989} - C:\Program Files\Little Fighter 2 Toolbar\v2.0.0.1\Little_Fighter_2_Toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [foxy] "C:\Program Files\Foxy\Foxy.exe" -tray
O9 - Extra button: 浩方??平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - C:\Documents and Settings\gersang\桌面\HFGame3\GameClient.exe (file missing)
O9 - Extra button: 參考資料 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: 情景聊天 - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/ (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {C3C46E1D-4929-4FE8-853E-5CD43938047D} - http://222.239.77.92/program/install/g2.cab
O18 - Protocol: mbox - {7DEE9D05-FA0A-4416-A6F3-6537D0EAB6A6} - (no file)
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Ineterner Explorer Update Services (updateservice) - Unknown owner - C:\WINDOWS\system32\ieupsvc.exe


spoolsv.exe整到部機cpu使用率100%所以我關左- -"


唔該哂thx

[ 本帖最後由 影月* 於 2006-11-6 10:49 PM 編輯 ]

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
2#
發表於 06-11-4 12:01 AM |只看該作者
關閉瀏覽器,開啟HijackThis 按do a system scan only勾選以下內容:
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: (no name) - {3441C39E-8BBE-4D9F-D681-56B2CBD1CBC2} - C:\DOCUME~1\gersang\APPLIC~1\showamen\dog four.exe (file missing)
O3 - Toolbar: (no name) - {F60C7D81-8471-4D40-AAFE-56D318F34C2D} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: ICQ  Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQToolbar\toolbaru.dll (file missing)
O3 - Toolbar: Little Fighter 2 Toolbar - {C11483F7-D7D8-4804-98D8-6055470BB989} - C:\Program Files\Little Fighter 2 Toolbar\v2.0.0.1\Little_Fighter_2_Toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O9 - Extra button: 浩方平台 - {0A155D3C-68E2-4215-A47A-E800A446447A} - C:\Documents and Settings\gersang\桌面\HFGame3\GameClient.exe (file missing)
O9 - Extra button: 情景聊天 - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - http://cn.rd.yahoo.com/home/mess ... essenger.yahoo.com/ (file missing)
O16 - DPF: {C3C46E1D-4929-4FE8-853E-5CD43938047D} - http://222.239.77.92/program/install/g2.cab
O18 - Protocol: mbox - {7DEE9D05-FA0A-4416-A6F3-6537D0EAB6A6} - (no file)
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Ineterner Explorer Update Services (updateservice) - Unknown owner - C:\WINDOWS\system32\ieupsvc.exe
按 fix checked

刪除C:\WINDOWS\system32\ieupsvc.exe

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
3#
發表於 06-11-4 12:11 AM |只看該作者
整左啦.........仲有我唔知點解cpu使用率成日100- -"
關唔關spoolsv.exe事- -"
我開工作管理員關左就冇事- -"

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
4#
發表於 06-11-4 12:24 AM |只看該作者
.............spoolsv.exe 染毒了嗎?
使用  Kaspersky Online Scanner :
http://www.kaspersky.com/virusscanner
1. 按 Kaspersky Online Scanner--->Accept
2. 之後 Kaspersky Online Scanner 會進行安裝及更新,完成後按 Next
3. 按 Scan Settings--->extended---> Ok
4. 按 My Computer 進行掃描.
5. 掃描結束後,按 Save Report As 儲存Kaspersky Online Scanner 掃描報告

之後貼上Kaspersky Online Scanner 掃描報告上來

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
5#
發表於 06-11-4 12:34 AM |只看該作者
找不到伺服器- -""""""

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
6#
發表於 06-11-4 12:45 AM |只看該作者
用呢個
下載 Dr.Web CureIT!

ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe
---------------------------------
執行 Dr.Web CureIT!


按 Start

按確定進行 Express Scan
完成 Express Scan 後點選本機磁碟 ( C : ),然後按箭咀圖示進行掃描.
假如 Dr.Web CureIT! 發現問題,按 Yes to All
完成掃描後,關閉 Dr.Web CureIT!


注意: Dr.Web CureIT! 會將掃描記錄儲存於以下位罝:

C:\Documents and Settings\你的帳戶\DoctorWeb\CureIt.log

把CureIt.log內容全選貼上來
-------------------------------------
開始 > 執行 > 貼上以下內容 > 確定

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
7#
發表於 06-11-4 01:13 AM |只看該作者
掃左好耐- -'''''
唔好訓住-v-
fix checked之後就得?

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
8#
發表於 06-11-4 01:17 AM |只看該作者
log 在那????

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
9#
發表於 06-11-4 01:17 AM |只看該作者
咩野log?- -"
哦- -
e家得16%- -
so叫你唔好訓住- -

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
10#
發表於 06-11-4 01:21 AM |只看該作者
我冇咁早訓-.-""放心

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
11#
發表於 06-11-4 01:24 AM |只看該作者
@@@@@@@@@@@@@@@@@@@@@@@@@@@
宥野彈出來@@@@@"
C:\Documents and Settings\0-0\Local Settings\Temporary Internet Files\Content.IE5\K1IR8P2Z\popup[1].htm
infected with  trojan.click.1394
cure?
yes                   yes to all                          no                       no to all

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
32061 
帖子
8319 
積分
9638 
Good
2  
註冊時間
02-5-26 
在線時間
592 小時 
12#
發表於 06-11-4 01:34 AM |只看該作者
C:\Documents and Settings\0-0\Local Settings\Temporary Internet Files\Content.IE5\K1IR8P2Z\popup[1].htm
好似係廣告個d木馬黎
之前我都中過,用卡把擋左

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
13#
發表於 06-11-4 01:43 AM |只看該作者
YES TO ALL =-= 我上面有寫

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
14#
發表於 06-11-4 11:16 AM |只看該作者
[Scan path] C:\
C:\hiberfil.sys - read error
C:\Documents and Settings\0-0\NTUSER.DAT - read error
C:\Documents and Settings\0-0\NTUSER~1.LOG - read error
C:\Documents and Settings\0-0\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error
C:\Documents and Settings\0-0\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error
C:\Documents and Settings\0-0\Local Settings\Temporary Internet Files\Content.IE5\K1IR8P2Z\popup[1].htm infected with Trojan.Click.1394 - deleted
C:\Documents and Settings\0-0\Local Settings\Temporary Internet Files\Content.IE5\K1IR8P2Z\popup[2].htm infected with Trojan.Click.1394 - deleted
C:\Documents and Settings\0-0\Local Settings\Temporary Internet Files\Content.IE5\K1IR8P2Z\popup[3].htm infected with Trojan.Click.1394 - deleted
C:\Documents and Settings\LocalService\NTUSER.DAT - read error
C:\Documents and Settings\LocalService\NTUSER~1.LOG - read error
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\5CTBJS5S\UpSchAS[1].exe infected with Trojan.DownLoader.10941 - deleted
C:\Documents and Settings\NetworkService\NTUSER.DAT - read error
C:\Documents and Settings\NetworkService\NTUSER~1.LOG - read error
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - read error
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\USRCLA~1.LOG - read error
C:\Program Files\GameFlier\Ghostonline\interface\Guild\01_~1.BMP - read error
C:\Program Files\GameFlier\Ghostonline\interface\Guild\01_~1.BMP - read error
>C:\Program Files\WinRAR\Dos.SFX>C:\WINDOWS\IFinst25.exe infected with BackDoor.Ifinst - deleted
C:\WINDOWS\system32\CodeLib.dll is adware program Adware.Cdn
C:\WINDOWS\system32\hookdll.dll is adware program Adware.Cdn
C:\WINDOWS\system32\nsp.dll is adware program Adware.Cdn
C:\WINDOWS\system32\system_yes.dll infected with Trojan.DownLoader.12546 - deleted
C:\WINDOWS\system32\wbapiex.dll is adware program Adware.Sinabar
C:\WINDOWS\system32\zunins.exe is adware program Adware.Cdn
C:\WINDOWS\system32\config\default - read error
C:\WINDOWS\system32\config\default.LOG - read error
C:\WINDOWS\system32\config\SAM - read error
C:\WINDOWS\system32\config\SAM.LOG - read error
C:\WINDOWS\system32\config\SECURITY - read error
C:\WINDOWS\system32\config\SECURITY.LOG - read error
C:\WINDOWS\system32\config\software - read error
C:\WINDOWS\system32\config\software.LOG - read error
C:\WINDOWS\system32\config\system - read error
C:\WINDOWS\system32\config\system.LOG - read error

-----------------------------------------------------------------------------
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 97751
Infected objects found: 2
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 5
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 2
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 333 Kb/s
Scan time: 01:40:01
-----------------------------------------------------------------------------

Scanning interrupted by user! - viruses found
=============================================================================
Total session statistics
=============================================================================
Objects scanned: 97751
Infected objects found: 2
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 5
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 2
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 333 Kb/s
Scan time: 01:40:01
=============================================================================

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
15#
發表於 06-11-4 11:24 AM |只看該作者
如發現以下檔案 刪除
C:\WINDOWS\system32\CodeLib.dll
C:\WINDOWS\system32\hookdll.dll
C:\WINDOWS\system32\nsp.dll
C:\WINDOWS\system32\system_yes.dll
C:\WINDOWS\system32\wbapiex.dll
C:\WINDOWS\system32\zunins.exe

之後re機 睇下ok未

如果重係唔得既就
下載 http://www.kztechs.com/sreng/sreng2.zip
解壓並執行SREng.exe
按 Smart Scan,確認已選取所有項目,按 Scan
最後,按 Save Reports ----> 儲存到桌面, SREngLOG.log

將SREngLOG.log send,到 uhthn2002@yahoo.com.hk
標題以會員名字 顯示

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
16#
發表於 06-11-4 11:47 AM |只看該作者
SEND左比你啦-3-
你係咪冇訓過- -

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
17#
發表於 06-11-4 12:27 PM |只看該作者
訓左一個鐘lu-.-" 算唔算訓過

1執行 SREng.exe --> Boot Items ---> Registry
逐一選取以下項目名稱 ----> 按 Delete ----> Yes

<{69B9C68D-B256-4B43-8976-AE7F53D090EC}>
<16 2 Bone Hole>
<ADScan>
<CnsMin>
<ezurl>
<G2>
<mstcenter>
<PCRPopup>
<PC_Radar>
<TITLE HECK>


2執行 SREng.exe --> Boot Items ---> Services ---> WIN32Services
Hide verified Microsoft items ---> 逐一選取以下項目名稱 ----> Delete service ----> Set ---> 按 No

[SearchAS Match Services / asksrvc]
[Ineterner Explorer Add Update Services / updatecheck]
[Ineterner Explorer Update Services / updateservice]



3執行 SREng.exe --> Boot Items ---> Services ---> Drivers
Hide verified Microsoft items ---> 逐一選取以下項目名稱 ----> Delete service ----> Set ---> 按 No

[EagleNT / EagleNT]
[Secdrv / Secdrv]



4執行 SREng.exe --> System Repair ---> Browser Add-ons
逐一選取以下項目名稱 ----> 按 Delete Selected ----> Yes

[ST]
[Little Fighter 2 Toolbar Helper]
[ICQ  Toolbar]
[ST]
[Little Fighter 2 Toolbar Helper]
[SearchAssistantOC]


--------------------------------------------------
複製以下粗黑文字

Files to delete:
C:\Program Files\Common Files\Microsoft Shared\MSINFO\xiaran.sys
C:\Documents and Settings\All Users\Application Data\upload bits 16 2\Trust itch.exe
C:\WINDOWS\mstcenter.exe
C:\DOCUME~1\gersang\APPLIC~1\16once\fork third.exe
C:\WINDOWS\DOWNLO~1\CnsMin.dll
C:\WINDOWS\system32\ieupsvc.exe
C:\WINDOWS\system32\drivers\EagleNT.sys
C:\Program Files\ICQToolbar\toolbaru.dll

Folders to delete:
C:\Program Files\ADScan
C:\Program Files\ezurl
C:\Program Files\G2
C:\Program Files\Little Fighter 2 Toolbar


下載 The Avenger http://swandog46.geekstogo.com/avenger.zip ,儲存到桌面並解壓出來
執行 The Avenger , 按 Input script manually 再按 放大鏡
按 Ctrl + V/右click貼上剛才複製的內容 ,按 Done ,按 綠燈 開始,當有提示彈出, 按 Yes 兩次
The Avenger 會重新啟動你的電腦大約一至兩次,如果重新啟動時有黑色視窗彈出,這是正常情況
當重新啟動後,把 C:\avenger.txt 的內容貼上來,掃個新的HijackThis上來

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
18#
發表於 06-11-4 12:44 PM |只看該作者
個記事我關左- -
邊到有得搵- -

Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7Rank: 7

UID
336761 
帖子
7084 
積分
7701 
Good
391  
註冊時間
05-1-18 
在線時間
1425 小時 
19#
發表於 06-11-4 12:46 PM |只看該作者
整完之後 你貼晒 d log上黎
我而家要出一出去  我返到黎 再跟進

Rank: 1

UID
552849 
帖子
534 
積分
36 
Good
1  
註冊時間
06-2-4 
在線時間
737 小時 
20#
發表於 06-11-4 12:46 PM |只看該作者
Logfile of HijackThis v1.99.1
Scan saved at 12:47:30, on 2006/11/4
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\HijackThis\HijackThis.exe

O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\zh-tw\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\zh-tw\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] ; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [QuickTime Task] ; "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [16 2 Bone Hole] ; C:\Documents and Settings\All Users\Application Data\upload bits 16 2\Trust itch.exe
O4 - HKLM\..\Run: [ccApp] ; C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [CJIMETIPSYNC] ; C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\CHANGJIE\CINTLCFG.EXE /CJIMETIPSync
O4 - HKLM\..\Run: [HotKeysCmds] ; C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [ICQ Lite] ; C:\Program Files\ICQLite\ICQLite.exe -minimize
O4 - HKLM\..\Run: [IgfxTray] ; C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [IMEKRMIG6.1] ; C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [IMJPMIG8.1] ; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [KernelFaultCheck] ; %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [MSPY2002] ; C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [NMGameX_AutoRun] ; C:\WINDOWS\system32\Rundll32.exe NMGameX.dll,LiveProcess /aa
O4 - HKLM\..\Run: [PHIME2002A] ; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [PHIME2002ASync] ; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIMETIPSYNC] ; C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLCFG.EXE /PHIMETIPSync
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] ; C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] ; "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [foxy] ; "C:\Program Files\Foxy\Foxy.exe" -tray
O9 - Extra button: 參考資料 - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
‹ 上一主題|下一主題
你需要登錄後才可以回帖 登錄 | 免費註冊

聯絡我們|Archiver| 2000FUN論壇

SERVER: 2 GMT+8, 24-5-15 04:59 PM , Processed in 0.045158 second(s), 12 queries , Gzip On.

Sponsor:迷你倉 , 網頁寄存

Powered by Discuz! X1.5.1

© 2001-2010 Comsenz Inc.